Deleting DSA and RSA Key Pairs

You can delete both key pairs with the crypto key zeroize command, or you can specify a key pair to delete. The command deletes specified host key pairs from flash memory. If the command removes all key pairs from flash memory, SSH is disabled.

To delete both DSA and RSA key pairs from the flash memory, enter the following command:

device(config)# crypto key zeroize

To delete the RSA host key pair, enter the following command.

device(config)# crypto key zeroize rsa

To delete the DSA host key pair, enter the following command.

device(config)# crypto key zeroize dsa