cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
378
Views
0
Helpful
2
Replies

ssh with CA for Cat Switches and Firewall devices

rkumares
Cisco Employee
Cisco Employee

I have requirement to mannage the Cat6500 switches, FWSM, PIX and other network devices via ssh.However, ssh should not use the local Username/password configured on the device instead to use 3rd party CA like Microsoft.

I know CA part for IPSec implementation (you can define auth preshare/ RSA) but I couldnot get any iputs for SSH.How can you configure in the device to direct to CA for ssh traffic.

2 Replies 2

ebreniz
Level 6
Level 6

PIX do not use certificate authentication for SSH tunnel setup.

http://www.cisco.com/warp/customer/707/ssh_cat_switches.html

as per this link cisco IOS doesnt support ssh authentication with CA

http://www.cisco.com/en/US/tech/tk583/tk617/technologies_q_and_a_item09186a0080267e0f.shtml#qa4

Q. Does Cisco IOS support SSH authentication with digital certificates?

A. Cisco IOS does not support SSH authentication with digital certificates.

Thanks,

rkumares