<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Changing diffie-hellman key size on sg500x-48p in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/changing-diffie-hellman-key-size-on-sg500x-48p/m-p/4101793#M1070966</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;I am not sure about the specific switch but you can change the same "&lt;SPAN&gt;ip ssh server algorithm &amp;lt;&amp;gt;"&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Are you using any old version of SecureCRT or Putty? Try with an updated version SSH client.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 11 Jun 2020 19:21:55 GMT</pubDate>
    <dc:creator>Deepak Kumar</dc:creator>
    <dc:date>2020-06-11T19:21:55Z</dc:date>
    <item>
      <title>Changing diffie-hellman key size on sg500x-48p</title>
      <link>https://community.cisco.com/t5/network-security/changing-diffie-hellman-key-size-on-sg500x-48p/m-p/4101759#M1070964</link>
      <description>&lt;P&gt;Greetings,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I've recently been tasked with making some of my servers FIPS-compliant.&amp;nbsp; In the process I've run into a problem accessing my sg500x-48p switch via SSH.&amp;nbsp; I get the following error:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;no matching key exchange method found. Their offer: diffie-hellman-group-exchange-sha1,diffie-hellman-group1-sha1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I've searched and found similar issues here and elsewhere which were solved by increasing the size of the&amp;nbsp; diffie-hellman key used to something like 2048 or 4096 with the cli command `ip ssh dh min size 2048`.&amp;nbsp; This command doesn't seem to be supported by my switch though, I've searched the CLI manual and can't find an equivalent command.&amp;nbsp; I've updated my switch to the latest available firmware.&amp;nbsp; According to cisco the switch is still supported but no longer sold.&amp;nbsp; Thanks to any who can offer some insight.&lt;/P&gt;</description>
      <pubDate>Thu, 11 Jun 2020 18:16:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/changing-diffie-hellman-key-size-on-sg500x-48p/m-p/4101759#M1070964</guid>
      <dc:creator>TauTech65610</dc:creator>
      <dc:date>2020-06-11T18:16:31Z</dc:date>
    </item>
    <item>
      <title>Re: Changing diffie-hellman key size on sg500x-48p</title>
      <link>https://community.cisco.com/t5/network-security/changing-diffie-hellman-key-size-on-sg500x-48p/m-p/4101793#M1070966</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;I am not sure about the specific switch but you can change the same "&lt;SPAN&gt;ip ssh server algorithm &amp;lt;&amp;gt;"&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Are you using any old version of SecureCRT or Putty? Try with an updated version SSH client.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 11 Jun 2020 19:21:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/changing-diffie-hellman-key-size-on-sg500x-48p/m-p/4101793#M1070966</guid>
      <dc:creator>Deepak Kumar</dc:creator>
      <dc:date>2020-06-11T19:21:55Z</dc:date>
    </item>
  </channel>
</rss>

