Generates the crypto client key to enable SSH2.
Syntax
crypto key client
generate
rsa
modulus
key-size
Command Default
The crypto client key is not generated and SSH2 is not enabled.
Parameters
- rsa
- Generates an RSA client key pair.
- modulus
key-size
- Specifies the modulus size of the RSA key pair,
in bits. The default value for the modulus size is 2048.
Modes
Global configuration mode
Usage Guidelines
To use the SSH client for public key
authentication, you must generate SSH client authentication keys and export the
public key to the SSH servers to which you want to connect.
To disable SSH, you delete all of the client keys from the device. When a client key
is deleted, it is deleted from the flash memory of all management modules.
An RSA key with modulus 2048 must be used in FIPS or Common Criteria mode.
Examples
The following example shows how to generate the RSA key pair.
device# conifgure terminal
device(config)# crypto key client generate rsa modulus 2048
History
| Release version |
Command history |
| 09.0.00 |
This command was modified to remove
the modulus 1024 option and make modulus
2048 the default. The dsa
keyword was removed. |