Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Community Member

SSH version warning!

Now that I have Cat4006 Switch - SSH version 8.4.11.GLX-K9, when I connect with the SSH clent, it keeps giving me a warning that the switch is using SSH1 which has many issues with it. How do I ensure I am using the right SSH and how can I get the Switch to be SSH verion 2.

Thanks

9 REPLIES
Community Member

Re: SSH version warning!

Hi,

Can you give us CatOS or IOS version that 4506 runs.

Community Member

Re: SSH version warning!

Its a Cat 4006. It is running Cat Cat4000-K9-8-4.11 GLX.

Its an old switch

Thanks

Community Member

Re: SSH version warning!

here what you can do,

to set ssh server version

router(config)# ip ssh version [1|2]

to see what version you use

router# show ip ssh

Please Rate if it helps

Purple

Re: SSH version warning!

Ahmet it is catos , it would have to be a "set" command . It would be "set ssh mode v2".

Community Member

Re: SSH version warning!

Yes, it is CatOS but this command is not on the Switch. It is a Cat 4006.

Thanks

Cisco Employee

Re: SSH version warning!

Guys,

SSH Version 2 is not supported on CatOS sup engine on Cat4500.As CatOS on Cat4500 is already EOL/EOS so there will be no future support for the same.

http://www.cisco.com/en/US/products/hw/switches/ps4324/prod_eol_notice0900aecd80324aee.html

SSHV2 is only suported on IOS based sup engine. Please see the release notes for the same:

http://www.cisco.com/univercd/cc/td/doc/product/lan/cat4000/relnotes/ol_2170.htm#wp429996

HTH,Please rate if it does.

-amit singh

Community Member

Re: SSH version warning!

Thanks Guys

Does that mean I will just have to use the SSH v 1 version on the Cat4003/4006. How can I get this to be more secure then? Becos the SSHv1 is kind of worrying.

bjw Silver
Silver

Re: SSH version warning!

Yes you need IOS.

Cat 4006, Sup III

cat4000-i9k91s-mz.122-25.EWA5.bin

Cat 4006, Sup II+

cat4500-ipbasek9-mz.122-31.SGA1.bin

Cisco Employee

Re: SSH version warning!

Yes, you have to just use SHHv1 with Cat4003/4006 using Sup1/2. As these sup only supports CatsOS. As cat4000 is EOL/EOS, I would suggest you to upgrade the Cat4000 to Cat4500 and get the IOS sup engine which will support more enhanced featureset.

HTH,please rate if it does.

-amit singh

339
Views
0
Helpful
9
Replies
CreatePlease to create content