10-11-2009 03:14 AM - edited 03-10-2019 04:47 AM
We want disable SSH version 1 from our ips, we have checked document but we couldn't find any solution please say your inputs thanks
10-12-2009 05:09 AM
This is just simple openssh changes needed.
in service mode change /etc/ssh/sshd_config
Where is
#Protocol 2,1
must be
Protocol 2
Make shure that you in super user mode, than save file and reboot ips
10-12-2009 05:30 AM
thanks for reply can you guide me step by step commands for this
10-12-2009 05:43 AM
#configure term
(conf t)#username serviceAdmin priviledge service password XxxXX
#exit
....
login: serviceAdmin
password: ...
...
bash$su
password:...
bash# vi /etc/ssh/sshd_config
Than delete '#' and ',1' in
#Protocol 2,1
To make changes you need press 'Shift+I'
result:
Protocol 2
type 'esc' and ':wq'
bash# /etc/init.d/S60ssh restart
may be sshd or other ssh
10-18-2009 03:17 AM
i try to do this config but it saying that
"/etc/ssh/sshd_config" File is read only
10-18-2009 08:18 AM
This is because you not in super user mode. Type 'su' first then type your password, then you will see '#'
10-18-2009 11:49 AM
thanks Sergey
first i have edited protocol 2 even after ssh version 1 was working, after that i have deleted version key file then it stopped, thanks for your help
06-11-2013 10:03 AM
So this works for incoming SSH but not for outgoing. I couldn't find another file in /etc/ssh that applied to outgoing so my thought was I could do "ssh -2" from the command line in the service acct to be able to do the scp to send a copy of the config to our server that has the backups on it.
1.anyone know what subdir the configs are in?
2. any help on getting the IPS to do ONLY v2 going out? (on a copy current-config scp://xxxxxxxxxx
06-11-2013 11:20 AM
1. /usr/cids/ids/Root/etc
06-11-2013 12:50 PM
Thanks, that allowed the scp from the service acct.
syntax error, though. Correct sp. is /usr/cids/idsRoot/etc
Still would like to get SSH 2 working though..
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: