Tcl
Tcl
SSH Commands to a Sophos Router Device Console
See more SSH Examples
Demonstrates establishing an SSH session with a Sophos XG router and sending commands in its device console session. The router presents a numbered main menu; the example selects the Device Console entry and then runs commands at the resulting console> prompt.
Note: QuickShell allocates a PTY, which is what a network device console expects. The device presents an interactive prompt, and each command's output is read up to the next prompt.
Background: Menu-driven appliances require the client to navigate the interface exactly as a human would — read the menu, send the keystroke that selects an entry, then wait for the next prompt. Because the prompt changes as you move between menu levels, the pattern you match on must change too, which is why this example matches the menu text first and
console> afterward.Chilkat Tcl Downloads
load ./chilkat.dll
set success 0
# This example requires the Chilkat API to have been previously unlocked.
# See Global Unlock Sample for sample code.
# Demonstrates establishing an SSH session with a Sophos XG router and sending commands in its
# device console session.
#
# Note: QuickShell allocates a PTY, which is what a device console expects. Navigating the
# device's menus is a matter of reading up to each prompt and sending the expected keystrokes.
set ssh [new_CkSsh]
set port 22
set success [CkSsh_Connect $ssh "172.16.16.16" $port]
if {$success == 0} then {
puts [CkSsh_lastErrorText $ssh]
delete_CkSsh $ssh
exit
}
# Normally you would not hard-code the password in source. You should instead obtain it
# from an interactive prompt, environment variable, or a secrets vault.
set password "mySshPassword"
set success [CkSsh_AuthenticatePw $ssh "mySshLogin" $password]
if {$success == 0} then {
puts [CkSsh_lastErrorText $ssh]
delete_CkSsh $ssh
exit
}
set channelNum [CkSsh_QuickShell $ssh]
if {$channelNum < 0} then {
puts [CkSsh_lastErrorText $ssh]
delete_CkSsh $ssh
exit
}
# IMPORTANT: Set a read timeout before receiving until a match. ReadTimeoutMs defaults to 0,
# which means no limit -- without it, this call waits forever if the received data never
# contains a match.
CkSsh_put_ReadTimeoutMs $ssh 15000
set caseSensitive 1
# The router presents a numbered main menu ending with "Select Menu Number [0-7]: ".
set success [CkSsh_ChannelReceiveUntilMatch $ssh $channelNum "Select Menu Number" "utf-8" $caseSensitive]
if {$success == 0} then {
puts [CkSsh_lastErrorText $ssh]
delete_CkSsh $ssh
exit
}
set cmdOutput [CkSsh_getReceivedText $ssh $channelNum "utf-8"]
if {[CkSsh_get_LastMethodSuccess $ssh] == 0} then {
puts [CkSsh_lastErrorText $ssh]
delete_CkSsh $ssh
exit
}
puts "$cmdOutput"
# Choose menu item 4 (Device Console), exactly as if typing it in a terminal.
set success [CkSsh_ChannelSendString $ssh $channelNum "4\n" "utf-8"]
if {$success == 0} then {
puts [CkSsh_lastErrorText $ssh]
delete_CkSsh $ssh
exit
}
# The device console prompt is "console>".
set success [CkSsh_ChannelReceiveUntilMatch $ssh $channelNum "console>" "utf-8" $caseSensitive]
if {$success == 0} then {
puts [CkSsh_lastErrorText $ssh]
delete_CkSsh $ssh
exit
}
set cmdOutput [CkSsh_getReceivedText $ssh $channelNum "utf-8"]
if {[CkSsh_get_LastMethodSuccess $ssh] == 0} then {
puts [CkSsh_lastErrorText $ssh]
delete_CkSsh $ssh
exit
}
puts "$cmdOutput"
# Send a console command and read its output up to the next prompt.
set success [CkSsh_ChannelSendString $ssh $channelNum "dnslookup host google.com\n" "utf-8"]
if {$success == 0} then {
puts [CkSsh_lastErrorText $ssh]
delete_CkSsh $ssh
exit
}
set success [CkSsh_ChannelReceiveUntilMatch $ssh $channelNum "console>" "utf-8" $caseSensitive]
if {$success == 0} then {
puts [CkSsh_lastErrorText $ssh]
delete_CkSsh $ssh
exit
}
set cmdOutput [CkSsh_getReceivedText $ssh $channelNum "utf-8"]
if {[CkSsh_get_LastMethodSuccess $ssh] == 0} then {
puts [CkSsh_lastErrorText $ssh]
delete_CkSsh $ssh
exit
}
puts "$cmdOutput"
# Additional commands follow the same pattern.
set success [CkSsh_ChannelSendString $ssh $channelNum "dnslookup host microsoft.com\n" "utf-8"]
if {$success == 0} then {
puts [CkSsh_lastErrorText $ssh]
delete_CkSsh $ssh
exit
}
set success [CkSsh_ChannelReceiveUntilMatch $ssh $channelNum "console>" "utf-8" $caseSensitive]
if {$success == 0} then {
puts [CkSsh_lastErrorText $ssh]
delete_CkSsh $ssh
exit
}
set cmdOutput [CkSsh_getReceivedText $ssh $channelNum "utf-8"]
if {[CkSsh_get_LastMethodSuccess $ssh] == 0} then {
puts [CkSsh_lastErrorText $ssh]
delete_CkSsh $ssh
exit
}
puts "$cmdOutput"
CkSsh_Disconnect $ssh
delete_CkSsh $ssh