Solved

How to change SSH v1 to v2 or 3 on IPS SSM-10 on ASA5510

Posted on 2011-03-11
1
1,440 Views
Last Modified: 2012-05-11
Hi,

I have IPS SSM-10 on ASA5510. I need to change SSH version. No we use version 1 which should be chanaged to 2 or 3.

Thanks for help !

Maxim.
0
Comment
Question by:Maxim33
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 3

Accepted Solution

by:
VespaMaru earned 125 total points
ID: 35113386
I don't think you can do it.  The Cisco IPS module supports SSH 1.5 with a 1024 bit RSA key.

From an NMAP
PORT   STATE SERVICE VERSION
22/tcp open  ssh     OpenSSH 3.7.1p2 (protocol 1.99)
|_sshv1: Server supports SSHv1
| ssh-hostkey: 1024 c4:xx:xx:xx:b9 (RSA1)
|_1024 5a:xx:xx:xx:ae (DSA)

Open in new window


Also from their web site:
http://www.cisco.com/en/US/docs/security/ips/7.0/configuration/guide/cli/cli_setup.html#wp1035869

The ASA server however will support SSH version 2 with a key size of 2048
PORT   STATE SERVICE VERSION
22/tcp open  ssh     Cisco SSH 1.25 (protocol 2.0)
|_ssh-hostkey: 2048 2f:xx:xx:xx:3b (RSA)

Open in new window


I would suspect that the reason they differ is because the IPS sensor is an embedded Linux image and theredore runs a different SSH server.
0

Featured Post

Technology Partners: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Bandwidth cap???? 8 97
upgrade Cisco Aironet AP 3 42
Advice on router and switch 25 83
Ping issue with M.M.M.M 13 41
Problem Description:   Couple of months ago we upgraded the ADSL line at our branch office from Home to Business line. The purpose of transforming the service to have static public IP’s. We were in need for public IP’s to publish our web resour…
When speed and performance are vital to revenue, companies must have complete confidence in their cloud environment.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …

732 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question