Solved

Remote Login to Cisco Router Fails

Posted on 2010-09-21
2
3,092 Views
Last Modified: 2012-05-10
When attempting to use Cisco Configuration Professional to "Discover" and connect to my Cisco 2921 ISR (Second Generation), I receive the error: "Discovery could not be completed because the security certificate was rejected." SSHv2 login also fails, but with no errors.

There has been no change to the router configuration since the last time it worked.
The certificate being used is self signed.
Yes. I've already restarted the router (pulling a known good startup-config), which had not impact.

On reboot, the console indicates the following errors:
SSHv2  RSA Signature Generation Failed: Status 8
SSHv2  Signature creation failed: Status 22

show ip ssh, displays the key info as expected, and show ssh shows SSHv2 running, but with no connected sessions.

Any thoughts on why remote access spontaneously stopped working?

 
0
Comment
Question by:Matthew England
2 Comments
 
LVL 2

Accepted Solution

by:
fs40490 earned 500 total points
Comment Utility
Have you tried to regenerate a new self signed key?

I know that this does not get to the root cause but it should be able to get you back up and running.

0
 
LVL 7

Author Closing Comment

by:Matthew England
Comment Utility
Yes. Creating a new self signed key works and is fine for this time, but it'd be nice to know why this occurred. And how to prevent it from happening again.

crypto key zeroize rsa
crypto key generate rsa
2048

This time I was onsite and able to get in to the router, but there's a point to having remote access. If it's going to randomly fail... what's the point in having it?
0

Featured Post

Highfive Gives IT Their Time Back

Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

Join & Write a Comment

This article is a guide to configure bridging on Cisco Routers.  This is something I never knew was possible until after making a few phone calls to Cisco.  Using bridging saved our company money by not requiring us to purchase a new switch.  Bridgi…
We've been using the Cisco/Linksys RV042 for years as: - an internet Gateway - a site-to-site VPN device - a leased line site-to-site subnet-to-subnet interface (And, here I'm assuming that any RV0xx behaves the same way as an RV042.  So that's …
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

763 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now