Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

4507R+E with "k9" type IOS cannot use "crypto key generate rsa" command

Hi all,

We just upgraded the IOS on our SUP7L-E supervisor in a 4507R+E from a non-k9 (crypto) image to a k9 (crypto) image so we could use SSH to manage it. The specific image we are using is: cat4500e-universalk9.SPA.03.04.04.SG.151-2.SG4.bin. We also have a pair of 2960CG-8TS-L's that are running on: c2960c405ex-universalk9-mz.152-2.E.bin. We have given the devices new hostnames and specified a domain according to instructions.


Our problem seems to be that we cannot use the "crypto key generate rsa" command to generate the keys we need to use SSH. We use this command all the time on our other 2960 and 4510 switches with no problems. We can issue other "crypto" commands but just cant generate the keys. Has anyone else experienced/fixed this problem? <!--break-->

  • WAN Routing and Switching
Everyone's tags (2)
Hall of Fame Super Gold

Switch#crypto key generate

Switch#crypto key generate rsa modulus ?
  <360-4096>  size of the key modulus [360-4096]

I am running IOS version 3.5.3E and I can regenerate the key using the command "crypto key generate rsa modulus" command.

New Member

you have to configure

you have to configure terminal then issue the command.This command appears in privileged mode also. The crypto key generate rsa appears under config t mode.