crypto key client generate
The crypto client key is not generated and SSH2 is not enabled.
Global configuration mode
The dsa keyword is optional. If you do not enter the dsa keyword, the crypto key generate command generates a DSA key pair by default.
To use the SSH client for public key authentication, you must generate SSH client authentication keys and export the public key to the SSH servers to which you want to connect.
To disable SSH, you delete all of the client keys from the device. When a client key is deleted, it is deleted from the flash memory of all management modules.
An RSA key with modulus 2048 must be used in FIPS or Common Criteria mode.