Impact of zeroize on frame-relay encryption
Posted on 2009-12-30
I have a hub and spoke layout and i am using dmvpn to secure my traffic.( PRESHARE KEYS IS USE FOR MY SECURE CHANNEL)
this is a frame-relay environment.
Recently i have encounter a few corrupt rsa key on several of my spokes and was advise to regenerate my rsa key.
I tested this in my lab but found i have to zeroize all my rsa key then regenerate same.
In my lab i can only test the effect on one router since i am unable to simulate a frame-relay cloud to test the effect on my dmvpn tunnels.
I need to verify if the zeroizing and regenetion of my rsa key is just confined to my ssl connection from pc to remote router or will this affect my secure tunnel encryption
crypto key zeroize
(config)#crypto key zeroize rsa
% All RSA keys will be removed.
% All router certs issued using these keys will also be removed.
Do you really want to remove these keys? [yes/no]: y
(config)#crypto key gen rsa