<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: VSP5520 SSH/Mgmt in ExtremeSwitching (VSP/Fabric Engine)</title>
    <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62029#M583</link>
    <description>&lt;P&gt;Success. It was the RADIUS attribute. Here are screenshots of NPS.&lt;/P&gt;&lt;FIGURE&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="ca62521bcc4543949d387fe9553a990e_8806b98a-bea7-49c2-af2c-b58e7a5b194e.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/3583iD00FC207141C7DFA/image-size/large?v=v2&amp;amp;px=999" role="button" title="ca62521bcc4543949d387fe9553a990e_8806b98a-bea7-49c2-af2c-b58e7a5b194e.png" alt="ca62521bcc4543949d387fe9553a990e_8806b98a-bea7-49c2-af2c-b58e7a5b194e.png" /&gt;&lt;/span&gt;&lt;/FIGURE&gt;&lt;FIGURE&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="ca62521bcc4543949d387fe9553a990e_fe9f2c2c-e48e-4367-8216-1d510a506e62.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/5207iCD7A82007F9C3429/image-size/large?v=v2&amp;amp;px=999" role="button" title="ca62521bcc4543949d387fe9553a990e_fe9f2c2c-e48e-4367-8216-1d510a506e62.png" alt="ca62521bcc4543949d387fe9553a990e_fe9f2c2c-e48e-4367-8216-1d510a506e62.png" /&gt;&lt;/span&gt;&lt;/FIGURE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 26 Aug 2021 21:13:15 GMT</pubDate>
    <dc:creator>bfaltys</dc:creator>
    <dc:date>2021-08-26T21:13:15Z</dc:date>
    <item>
      <title>VSP5520 SSH/Mgmt</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62017#M571</link>
      <description>&lt;P&gt;I’m trying to test one of our new VSP5520s. I had been under the impression that VOSS is VOSS regardless of which switch, but maybe I was wrong. I have configured a loopback with an IP and SPBM/ISIS. I have an adjacency and I can ping the switch via that loopback. However, I cannot SSH to the switch and pings from the switch only work if I specify the loopback as the source. We also have new VSP4900 and VSP7400 that didn’t require anything special to be able to SSH to the loopback IP. Pings from those models also didn’t require me to specify a source. What am I missing? SSHD is enabled. I see a route to the subnet I’m SSHing from. I’m guessing this has something to do with the mgmt VRF or something along those lines, but I’ve not been able to sort it out.&lt;/P&gt;</description>
      <pubDate>Tue, 24 Aug 2021 21:36:08 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62017#M571</guid>
      <dc:creator>bfaltys</dc:creator>
      <dc:date>2021-08-24T21:36:08Z</dc:date>
    </item>
    <item>
      <title>Re: VSP5520 SSH/Mgmt</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62018#M572</link>
      <description>&lt;P&gt;bfaltys,&lt;/P&gt;&lt;P&gt;read here: &lt;A href="https://extremeportal.force.com/ExtrArticleDetail?an=000079664&amp;amp;q=voSS%208.2%20mgmt" target="_blank" rel="noreferrer noopener nofollow ugc"&gt;https://extremeportal.force.com/ExtrArticleDetail?an=000079664&amp;amp;q=voSS%208.2%20mgmt&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Mig&lt;/P&gt;</description>
      <pubDate>Tue, 24 Aug 2021 21:42:24 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62018#M572</guid>
      <dc:creator>Miguel-Angel_RO</dc:creator>
      <dc:date>2021-08-24T21:42:24Z</dc:date>
    </item>
    <item>
      <title>Re: VSP5520 SSH/Mgmt</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62019#M573</link>
      <description>&lt;P&gt;We have introduced a new segmented management stack with Release 8.2 which provides a set of benefits. So management of the systems has changed, this includes all VOSS switches which support 8.2 and onwards. I suggest you review the documentation for the Segmented Management Stack.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Roger&lt;/P&gt;</description>
      <pubDate>Tue, 24 Aug 2021 21:43:26 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62019#M573</guid>
      <dc:creator>Roger_Lapuh</dc:creator>
      <dc:date>2021-08-24T21:43:26Z</dc:date>
    </item>
    <item>
      <title>Re: VSP5520 SSH/Mgmt</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62020#M574</link>
      <description>&lt;P&gt;It looks like this is really separated. As in I cannot use this IP as the source/destination for any tunnel and cannot enable OSPF so it can be advertised.&lt;/P&gt;</description>
      <pubDate>Tue, 24 Aug 2021 22:11:11 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62020#M574</guid>
      <dc:creator>bfaltys</dc:creator>
      <dc:date>2021-08-24T22:11:11Z</dc:date>
    </item>
    <item>
      <title>Re: VSP5520 SSH/Mgmt</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62021#M575</link>
      <description>&lt;P&gt;bfaltys,&lt;/P&gt;&lt;P&gt;This IP (CLIP/OoB/mgmt) is to be used for management purposes only (Web/SSH/SNMP/TELNET).&lt;/P&gt;&lt;P&gt;You need another CLIP for service purposes (routing, tunnels, etc).&lt;/P&gt;&lt;P&gt;For the ping, you can use “ping a.b.c.d mgmt” if your mgmt interface is in the same VRF as what you want to reach.&lt;/P&gt;&lt;P&gt;Mig&lt;/P&gt;</description>
      <pubDate>Tue, 24 Aug 2021 22:23:51 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62021#M575</guid>
      <dc:creator>Miguel-Angel_RO</dc:creator>
      <dc:date>2021-08-24T22:23:51Z</dc:date>
    </item>
    <item>
      <title>Re: VSP5520 SSH/Mgmt</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62022#M576</link>
      <description>&lt;P&gt;I have things mostly working with this newer method, but SSH isn’t working. I get prompted for credentials and the NPS server shows event 6272 so it should work, but the 5520 displays a message for invalid username/password. These credentials work on other devices so that rules out the server.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;**UPDATE**&lt;/P&gt;&lt;P&gt;Wireshark capture shows access-request and access-accept so I am at a loss as to why the switch says invalid username or password.&lt;/P&gt;</description>
      <pubDate>Wed, 25 Aug 2021 20:19:16 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62022#M576</guid>
      <dc:creator>bfaltys</dc:creator>
      <dc:date>2021-08-25T20:19:16Z</dc:date>
    </item>
    <item>
      <title>Re: VSP5520 SSH/Mgmt</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62023#M577</link>
      <description>&lt;P&gt;Usual suspect is the shared secret.&lt;/P&gt;&lt;P&gt;Could you double check?&lt;/P&gt;</description>
      <pubDate>Wed, 25 Aug 2021 20:46:25 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62023#M577</guid>
      <dc:creator>Miguel-Angel_RO</dc:creator>
      <dc:date>2021-08-25T20:46:25Z</dc:date>
    </item>
    <item>
      <title>Re: VSP5520 SSH/Mgmt</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62024#M578</link>
      <description>&lt;P&gt;Just did a confirmation. Both keys are the same. I would expect the server to not even get to the point of&amp;nbsp; access-accept if the switch had the wrong key. Here is the Wireshark capture that shows the success and the switch showing invalid credentials.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;FIGURE&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="699909d14a3941d6889afdd2af8716ac_9fc16539-80ca-48b8-94a2-0a27a9918ccf.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/5121iBB113FDF997C677B/image-size/large?v=v2&amp;amp;px=999" role="button" title="699909d14a3941d6889afdd2af8716ac_9fc16539-80ca-48b8-94a2-0a27a9918ccf.png" alt="699909d14a3941d6889afdd2af8716ac_9fc16539-80ca-48b8-94a2-0a27a9918ccf.png" /&gt;&lt;/span&gt;&lt;/FIGURE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 25 Aug 2021 21:10:06 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62024#M578</guid>
      <dc:creator>bfaltys</dc:creator>
      <dc:date>2021-08-25T21:10:06Z</dc:date>
    </item>
    <item>
      <title>Re: VSP5520 SSH/Mgmt</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62025#M579</link>
      <description>&lt;P&gt;I also see a message stating “x509v3 host certificate is unavailable”&lt;/P&gt;</description>
      <pubDate>Wed, 25 Aug 2021 21:22:32 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62025#M579</guid>
      <dc:creator>bfaltys</dc:creator>
      <dc:date>2021-08-25T21:22:32Z</dc:date>
    </item>
    <item>
      <title>Re: VSP5520 SSH/Mgmt</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62026#M580</link>
      <description>&lt;P&gt;Please review this to be sure that you send the correct radius attributes with the NPS:&lt;/P&gt;&lt;P&gt;&lt;CODE&gt;Filter-Id=Enterasys:version=1:%MANAGEMENT%policy=%POLICY_NAME%&lt;/CODE&gt;&lt;/P&gt;&lt;P&gt;&lt;CODE&gt;Service-Type=%MGMT_SERV_TYPE%&lt;/CODE&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color:#000000;"&gt;&lt;CODE&gt;Passport-Access-Priority=%CUSTOM1%&lt;/CODE&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&lt;A href="https://extremeportal.force.com/ExtrArticleDetail?an=000082104&amp;amp;q=voss%20radius%20attribute" target="_blank" rel="noreferrer noopener nofollow ugc"&gt;https://extremeportal.force.com/ExtrArticleDetail?an=000082104&amp;amp;q=voss%20radius%20attribute&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 26 Aug 2021 14:51:38 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62026#M580</guid>
      <dc:creator>Miguel-Angel_RO</dc:creator>
      <dc:date>2021-08-26T14:51:38Z</dc:date>
    </item>
    <item>
      <title>Re: VSP5520 SSH/Mgmt</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62027#M581</link>
      <description>&lt;P&gt;I’ll see if I can make sense of that. We’re using Windows Server for NPS and it has worked for all other Extreme models without setting other attributes.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I’m trying another switch this morning to see if it has the same issue. Of course now I get a different error. When trying to configure an IP on the mgmt CLIP it give the message “&lt;STRONG&gt;Error: Cannot use Dynamic nick-name subnet 172.16.0.0/12.&lt;/STRONG&gt;”&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;**UPDATE**&lt;/P&gt;&lt;P&gt;I don’t get the error after a factory default and then configure the CLIP.&lt;/P&gt;</description>
      <pubDate>Thu, 26 Aug 2021 20:28:27 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62027#M581</guid>
      <dc:creator>bfaltys</dc:creator>
      <dc:date>2021-08-26T20:28:27Z</dc:date>
    </item>
    <item>
      <title>Re: VSP5520 SSH/Mgmt</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62028#M582</link>
      <description>&lt;P&gt;After getting the new switch up and running I get the same error when trying to SSH with RADIUS authentication. If I don’t enable RADIUS, local login works.&lt;/P&gt;</description>
      <pubDate>Thu, 26 Aug 2021 20:53:17 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62028#M582</guid>
      <dc:creator>bfaltys</dc:creator>
      <dc:date>2021-08-26T20:53:17Z</dc:date>
    </item>
    <item>
      <title>Re: VSP5520 SSH/Mgmt</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62029#M583</link>
      <description>&lt;P&gt;Success. It was the RADIUS attribute. Here are screenshots of NPS.&lt;/P&gt;&lt;FIGURE&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="ca62521bcc4543949d387fe9553a990e_8806b98a-bea7-49c2-af2c-b58e7a5b194e.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/3583iD00FC207141C7DFA/image-size/large?v=v2&amp;amp;px=999" role="button" title="ca62521bcc4543949d387fe9553a990e_8806b98a-bea7-49c2-af2c-b58e7a5b194e.png" alt="ca62521bcc4543949d387fe9553a990e_8806b98a-bea7-49c2-af2c-b58e7a5b194e.png" /&gt;&lt;/span&gt;&lt;/FIGURE&gt;&lt;FIGURE&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="ca62521bcc4543949d387fe9553a990e_fe9f2c2c-e48e-4367-8216-1d510a506e62.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/5207iCD7A82007F9C3429/image-size/large?v=v2&amp;amp;px=999" role="button" title="ca62521bcc4543949d387fe9553a990e_fe9f2c2c-e48e-4367-8216-1d510a506e62.png" alt="ca62521bcc4543949d387fe9553a990e_fe9f2c2c-e48e-4367-8216-1d510a506e62.png" /&gt;&lt;/span&gt;&lt;/FIGURE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 26 Aug 2021 21:13:15 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62029#M583</guid>
      <dc:creator>bfaltys</dc:creator>
      <dc:date>2021-08-26T21:13:15Z</dc:date>
    </item>
    <item>
      <title>Re: VSP5520 SSH/Mgmt</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62030#M584</link>
      <description>&lt;P&gt;Glad to see it solved.&lt;/P&gt;&lt;P&gt;Enjoy&lt;/P&gt;&lt;P&gt;Mig&lt;/P&gt;</description>
      <pubDate>Thu, 26 Aug 2021 23:09:27 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62030#M584</guid>
      <dc:creator>Miguel-Angel_RO</dc:creator>
      <dc:date>2021-08-26T23:09:27Z</dc:date>
    </item>
    <item>
      <title>Re: VSP5520 SSH/Mgmt</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62031#M585</link>
      <description>&lt;P&gt;Just wanted to add a couple of notes for anyone else that might run into this. The vendor code is 1584 (Nortel) and the attribute number is 192 (Access-Priority), format is decimal and value is 6 (RWA access).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;FIGURE&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="bac2d89fb3604ea5b9c5f7652a479091_8a984eeb-fe0c-450e-a61c-7e0b0dead185.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/3847i1A2F9449C4338B46/image-size/large?v=v2&amp;amp;px=999" role="button" title="bac2d89fb3604ea5b9c5f7652a479091_8a984eeb-fe0c-450e-a61c-7e0b0dead185.png" alt="bac2d89fb3604ea5b9c5f7652a479091_8a984eeb-fe0c-450e-a61c-7e0b0dead185.png" /&gt;&lt;/span&gt;&lt;/FIGURE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 27 Aug 2021 22:52:03 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/vsp5520-ssh-mgmt/m-p/62031#M585</guid>
      <dc:creator>bfaltys</dc:creator>
      <dc:date>2021-08-27T22:52:03Z</dc:date>
    </item>
  </channel>
</rss>

