crypto key client generate

Generates the crypto client key to enable SSH2.
Syntax
crypto key client generate rsa modulus key-size
Command Default

The crypto client key is not generated and SSH2 is not enabled.

Parameters
rsa
Generates an RSA client key pair.
modulus key-size
Specifies the modulus size of the RSA key pair, in bits. The default value for the modulus size is 2048.
Modes

Global configuration mode

Usage Guidelines

To use the SSH client for public key authentication, you must generate SSH client authentication keys and export the public key to the SSH servers to which you want to connect.

To disable SSH, you delete all of the client keys from the device. When a client key is deleted, it is deleted from the flash memory of all management modules.

An RSA key with modulus 2048 must be used in FIPS or Common Criteria mode.

Examples

The following example shows how to generate the RSA key pair.

device# conifgure terminal
device(config)# crypto key client generate rsa modulus 2048
History
Release version Command history
09.0.00 This command was modified to remove the modulus 1024 option and make modulus 2048 the default. The dsa keyword was removed.