Configuring the SSH service by using the IBM MQ Appliance web UI

You can configure the SSH service by using the SSH Service pane in the IBM® MQ Appliance web UI.

About this task

You configure the SSH service, and can then optionally go on to configure the ciphers that the SSH service uses. By default the service uses 16 ciphers in a recommended order. You can, if required, disable or re-enable certain ciphers and reorder them.

Procedure

  1. Start the IBM MQ Appliance web UI, and click the object icon shows the object icon.
  2. Select Device Management > SSH service.
  3. Ensure that Administrative state is set to On.
  4. In the Local address field, enter the local address the appliance monitors for incoming SSH requests.
  5. In the Port number field, you can change the port on which the appliance monitors for incoming SSH requests (this is set to 22 by default).
  6. If required, define an SSH Access control list to specify a list of client IP addresses that are allowed or denied access.
  7. If required, specify a limit to the number of concurrent CLI sessions that can be supported in the Connection limit field.
  8. Click Apply to save the changes to the running configuration.
  9. If you want to work with the SSH profile ciphers, click the object icon shows the object icon, then select Crypto configuration > SSH Server profile.
  10. Ensure that Administrative state is set to On.
  11. Select or deselect and reorder the ciphers as required.
  12. Click Apply to save the changes to the running configuration.