Deleting ECDSA and RSA Key Pairs
You can delete both ECDSA and RSA key pairs with
the crypto key
zeroize command, or you can specify a key pair to be deleted. When a
host key is deleted, it is deleted from the flash memory of all management modules.
If all key pairs are removed from the flash memory, SSH will get disabled.
crypto key zeroize command, with or without the key pair
specified, will kill all the active ssh connections irrespective of the host
key
pair (ec or rsa) used to establish the
sessions. After you use the crypto key zeroize command,
RUCKUS recommends that you reestablish the ssh session with the configured host
key.To delete both ECDSA and RSA key pairs from the flash memory, complete the following steps.
- Enter global configuration mode.
- Delete both ECDSA and RSA key
pairs from the flash memory. You can also specify a key pair if you want to delete only a particular key pair.
To delete the RSA host key pair from flash memory, enter the following command.
device(config)# crypto key zeroize rsa
To delete the ECDSA host key pair from flash memory, enter the following command.
device(config)# crypto key zeroize ec