06-25-2009 01:55 AM - edited 03-06-2019 06:27 AM
Hi,
in a customer project we are evaluating if it's possible to connect from cisco ios switches via "ssh -l <user> <ip address>" to an enterasys n series dfe modul which is running a ssh server v2.
Unfortunately this doesn't work as expected, every connection attempt is resetted.
We did a trace of the ssh connection attempt where you can see that there is some problem in the algorithm negotiation (see attachment).
Does anybody know if there is any configuration possibility to solve this problem?
Equipment/OS:
- Cisco IOS Software, C2960 Software (C2960-LANBASEK9-M), Version 12.2(44)SE1
- Enterasys 7H4382-49, Fw: 05.42.10
Best Regards,
Thorsten Steffen
06-25-2009 03:22 AM
Did you try specifying the version number in the string maybe it's trying to use V1 . You could also try clearing the crypto keys on both sides and recreating them and see if that helps..
ssh -l
06-25-2009 04:07 AM
I tried with version 1 and 2 on the cisco switch, without success.
When you have a look at the trace file you see that there is a difference between cisco and enterasys in the following algorithm exchange:
Cisco ->
server_host_key_algorithms string: ssh-rsa
Enterasys:
server_host_key_algorithms string: ssh-dss
So perhaps this is the reason for the negotiation problem?
12-07-2011 06:39 AM
Same issue with connecting to an Ayava 430 unit using SSH from a C3750.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide