Deleting ECDSA and RSA Key Pairs
You can delete both ECDSA and RSA key pairs with
the crypto key
zeroize command, or you can specify a key pair to be deleted. When a
host key is deleted, it is deleted from the flash memory of all management modules.
If all key pairs are removed from the flash memory, SSH will get disabled.
To delete both ECDSA and RSA key pairs from the flash memory, complete the following steps:
- Enter global configuration mode.
- Delete both ECDSA and RSA key
pairs from the flash memory. You can also specify a key pair if you want to delete only a particular key pair.
To delete the RSA host key pair from flash memory, enter the following command.
device(config)# crypto key zeroize rsa
To delete the ECDSA host key pair from flash memory, enter the following command.
device(config)# crypto key zeroize ec