crypto key zeroize

Deletes the crypto host key pair from the flash memory.
Syntax
crypto key zeroize [ ec | rsa ] [ label label_name ]
Command Default

SSH is not enabled and the host key pair is saved in the flash memory.

Parameters
ec
Deletes the ECDSA host key pair.
rsa
Deletes the RSA host key pair.
Modes

Global configuration mode

Usage Guidelines

When a host key is generated, it is saved to the flash memory of all management modules. The time to initially generate SSH keys varies depending on the configuration, and can be from a under a minute to several minutes. To disable SSH, you delete all of the host keys from the device. When a host key is deleted, it is deleted from the flash memory of all management modules.

The crypto key zeroize command, with or without the key pair specified, will kill all the active ssh connections irrespective of the host key pair (ec or rsa) used to establish the sessions. After you use the crypto key zeroize command, RUCKUS recommends that you reestablish the ssh session with the configured host key.

Examples

The following example deletes the ECDSA key pair.

device(config)# crypto key zeroize ec

The following example deletes the RSA key pair.

device(config)# crypto key zeroize rsa

The following example deletes both ECDSA and RSA key pairs from flash memory.

device(config)# crypto key zeroize