Sample code for 30+ languages & platforms
Tcl

SSH Commands to a Sophos Router Device Console

See more SSH Examples

Demonstrates establishing an SSH session with a Sophos XG router and sending commands in its device console session. The router presents a numbered main menu; the example selects the Device Console entry and then runs commands at the resulting console> prompt.

Note: QuickShell allocates a PTY, which is what a network device console expects. The device presents an interactive prompt, and each command's output is read up to the next prompt.

Background: Menu-driven appliances require the client to navigate the interface exactly as a human would — read the menu, send the keystroke that selects an entry, then wait for the next prompt. Because the prompt changes as you move between menu levels, the pattern you match on must change too, which is why this example matches the menu text first and console> afterward.

Chilkat Tcl Downloads

Tcl

load ./chilkat.dll

set success 0

#  This example requires the Chilkat API to have been previously unlocked.
#  See Global Unlock Sample for sample code.

#  Demonstrates establishing an SSH session with a Sophos XG router and sending commands in its
#  device console session.
#  
#  Note: QuickShell allocates a PTY, which is what a device console expects.  Navigating the
#  device's menus is a matter of reading up to each prompt and sending the expected keystrokes.

set ssh [new_CkSsh]

set port 22
set success [CkSsh_Connect $ssh "172.16.16.16" $port]
if {$success == 0} then {
    puts [CkSsh_lastErrorText $ssh]
    delete_CkSsh $ssh
    exit
}

#  Normally you would not hard-code the password in source.  You should instead obtain it
#  from an interactive prompt, environment variable, or a secrets vault.
set password "mySshPassword"

set success [CkSsh_AuthenticatePw $ssh "mySshLogin" $password]
if {$success == 0} then {
    puts [CkSsh_lastErrorText $ssh]
    delete_CkSsh $ssh
    exit
}

set channelNum [CkSsh_QuickShell $ssh]
if {$channelNum < 0} then {
    puts [CkSsh_lastErrorText $ssh]
    delete_CkSsh $ssh
    exit
}

#  IMPORTANT: Set a read timeout before receiving until a match.  ReadTimeoutMs defaults to 0,
#  which means no limit -- without it, this call waits forever if the received data never
#  contains a match.
CkSsh_put_ReadTimeoutMs $ssh 15000

set caseSensitive 1

#  The router presents a numbered main menu ending with "Select Menu Number [0-7]: ".
set success [CkSsh_ChannelReceiveUntilMatch $ssh $channelNum "Select Menu Number" "utf-8" $caseSensitive]
if {$success == 0} then {
    puts [CkSsh_lastErrorText $ssh]
    delete_CkSsh $ssh
    exit
}

set cmdOutput [CkSsh_getReceivedText $ssh $channelNum "utf-8"]
if {[CkSsh_get_LastMethodSuccess $ssh] == 0} then {
    puts [CkSsh_lastErrorText $ssh]
    delete_CkSsh $ssh
    exit
}

puts "$cmdOutput"

#  Choose menu item 4 (Device Console), exactly as if typing it in a terminal.
set success [CkSsh_ChannelSendString $ssh $channelNum "4\n" "utf-8"]
if {$success == 0} then {
    puts [CkSsh_lastErrorText $ssh]
    delete_CkSsh $ssh
    exit
}

#  The device console prompt is "console>".
set success [CkSsh_ChannelReceiveUntilMatch $ssh $channelNum "console>" "utf-8" $caseSensitive]
if {$success == 0} then {
    puts [CkSsh_lastErrorText $ssh]
    delete_CkSsh $ssh
    exit
}

set cmdOutput [CkSsh_getReceivedText $ssh $channelNum "utf-8"]
if {[CkSsh_get_LastMethodSuccess $ssh] == 0} then {
    puts [CkSsh_lastErrorText $ssh]
    delete_CkSsh $ssh
    exit
}

puts "$cmdOutput"

#  Send a console command and read its output up to the next prompt.
set success [CkSsh_ChannelSendString $ssh $channelNum "dnslookup host google.com\n" "utf-8"]
if {$success == 0} then {
    puts [CkSsh_lastErrorText $ssh]
    delete_CkSsh $ssh
    exit
}

set success [CkSsh_ChannelReceiveUntilMatch $ssh $channelNum "console>" "utf-8" $caseSensitive]
if {$success == 0} then {
    puts [CkSsh_lastErrorText $ssh]
    delete_CkSsh $ssh
    exit
}

set cmdOutput [CkSsh_getReceivedText $ssh $channelNum "utf-8"]
if {[CkSsh_get_LastMethodSuccess $ssh] == 0} then {
    puts [CkSsh_lastErrorText $ssh]
    delete_CkSsh $ssh
    exit
}

puts "$cmdOutput"

#  Additional commands follow the same pattern.
set success [CkSsh_ChannelSendString $ssh $channelNum "dnslookup host microsoft.com\n" "utf-8"]
if {$success == 0} then {
    puts [CkSsh_lastErrorText $ssh]
    delete_CkSsh $ssh
    exit
}

set success [CkSsh_ChannelReceiveUntilMatch $ssh $channelNum "console>" "utf-8" $caseSensitive]
if {$success == 0} then {
    puts [CkSsh_lastErrorText $ssh]
    delete_CkSsh $ssh
    exit
}

set cmdOutput [CkSsh_getReceivedText $ssh $channelNum "utf-8"]
if {[CkSsh_get_LastMethodSuccess $ssh] == 0} then {
    puts [CkSsh_lastErrorText $ssh]
    delete_CkSsh $ssh
    exit
}

puts "$cmdOutput"

CkSsh_Disconnect $ssh

delete_CkSsh $ssh