测试环境:Cisco CSR1000V虚拟化环境
Step 1:开启Cisco设备netconf-Yang,如下图:
CSR1000V(config)#netconf-yang
CSR1000V(config)#netconf-yang ssh port 830
Step 2:配置AAA
CSR1000V(config)#aaa new-model
CSR1000V(config)#aaa authorization exec default local
Step 3:查看netconf-Yang配置
CSR1000V#show platform software yang-management process
confd : Running
nesd : Running
syncfd : Running
ncsshd : Running
dmiauthd : Running
vtyserverutild : Running
opdatamgrd : Running
ngnix : Running
Step 4:使用SSH登录Cisco设备
[root@docker ~]# ssh -s admin@192.168.188.150 -p 830 netconf
admin@192.168.188.150's password:
<?xml version="1.0" encoding="UTF-8"?>
<hello xmlns="urn:ietf:params:xml:ns:netconf:base:1.0">
<capabilities>
<capability>urn:ietf:params:netconf:base:1.0</capability>
<capability>urn:ietf:params:netconf:base:1.1</capability>
<capability>urn:ietf:params:netconf:capability:writable-running:1.0</capability>
<capability>urn:ietf:params:netconf:capability:xpath:1.0</capability>
<capability>urn:ietf:params:netconf:capability:validate:1.0</capability>
<capability>urn:ietf:params:netconf:capability:validate:1.1</capability>
<capability>urn:ietf:params:netconf:capability:rollback-on-error:1.0</capability>
<capability>urn:ietf:params:netconf:capability:notification:1.0</capability>
<capability>urn:ietf:params:netconf:capability:interleave:1.0</capability>
<capability>http://tail-f.com/ns/netconf/actions/1.0</capability>
<capability>http://tail-f.com/ns/netconf/extensions</capability>
<