<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cannot access ASDM and SSH in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355435#M857678</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi thanks for that i've passed the information on to TAC.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm not sure if its 100% related thats the thing.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've done a bit further debug and i've noticed the following error when re-starting http server enable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"Could not start admin"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;According to this guy on tektips he has had the same problem&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.tek-tips.com/viewthread.cfm?qid=1419872&amp;amp;page=1"&gt;http://www.tek-tips.com/viewthread.cfm?qid=1419872&amp;amp;page=1&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;He mentioned speaking to Cisco but did not provide a solution.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I think tonight i'll reload and upgrade to 8.0.4, however i'd prefer to fix without a reload as if this happens in a remote site i'm screwed!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 09 Dec 2009 15:14:07 GMT</pubDate>
    <dc:creator>mikedelafield</dc:creator>
    <dc:date>2009-12-09T15:14:07Z</dc:date>
    <item>
      <title>Cannot access ASDM and SSH</title>
      <link>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355427#M857670</link>
      <description>&lt;P&gt;All of a sudden today I can no longer access ASDM and SSH on my firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Console login and even telnet work fine.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is not a permissions problem&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;http server enable is there&lt;/P&gt;&lt;P&gt;and appropriate HTTP and SSH permissions are in place&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It has literally just happened overnight.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We are using ASA 8.0.3 and ASDM 6.1.5 and SSH v1 and v2.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I was wondering if it was a known bug similar to the 366 day bug on ASDM 6.1.3.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It is just strange that it also effects SSH this time as if its some kind of SSL/SSH/certificate bug.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can someone please help?&lt;/P&gt;&lt;P&gt;I'd prefer not to reboot if I can.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HELP!&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 16:46:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355427#M857670</guid>
      <dc:creator>mikedelafield</dc:creator>
      <dc:date>2019-03-11T16:46:33Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot access ASDM and SSH</title>
      <link>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355428#M857671</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Try to zeroize the crypto keys as follows:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;crpto key zeroize rsa&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Br,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 08 Dec 2009 18:25:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355428#M857671</guid>
      <dc:creator>resoares</dc:creator>
      <dc:date>2009-12-08T18:25:00Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot access ASDM and SSH</title>
      <link>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355429#M857672</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Good plan and I was confident but no joy&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I don't understand what has happened to be honest.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Telnet and serial access are okay, but ASDM and SSH are out.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've tried no http server enable; http server enable&lt;/P&gt;&lt;P&gt;I've reset all the keys on the firewall and the client&lt;/P&gt;&lt;P&gt;I've done shut/no shut on the management interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Whats going on!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Dec 2009 09:54:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355429#M857672</guid>
      <dc:creator>mikedelafield</dc:creator>
      <dc:date>2009-12-09T09:54:20Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot access ASDM and SSH</title>
      <link>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355430#M857673</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If i telnet to the firewall on port 22 I get the following....&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;SSH-2.0-Cisco-1.25&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But I cannot connect via SSH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Everything looks fine&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Dec 2009 10:42:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355430#M857673</guid>
      <dc:creator>mikedelafield</dc:creator>
      <dc:date>2009-12-09T10:42:53Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot access ASDM and SSH</title>
      <link>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355431#M857674</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;On the SSH connection I get the following messages;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2009-12-09 10:50:40&amp;nbsp;&amp;nbsp;&amp;nbsp; Local4.Info&amp;nbsp;&amp;nbsp;&amp;nbsp; 192.168.1.239&amp;nbsp;&amp;nbsp;&amp;nbsp; Dec 09 2009 10:50:15: %ASA-6-315011: SSH session from 10.101.5.13 on interface inside for user "" disconnected by SSH server, reason: "Internal error" (0x00)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2009-12-09 10:50:40&amp;nbsp;&amp;nbsp;&amp;nbsp; Local4.Info&amp;nbsp;&amp;nbsp;&amp;nbsp; 192.168.1.239&amp;nbsp;&amp;nbsp;&amp;nbsp; Dec 09 2009 10:50:15: %ASA-6-106015: Deny TCP (no connection) from 10.101.5.13/2207 to 172.20.3.1/22 flags FIN ACK&amp;nbsp; on interface inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On the TLS connection I get the following message;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2009-12-09 10:50:46&amp;nbsp;&amp;nbsp;&amp;nbsp; Local4.Info&amp;nbsp;&amp;nbsp;&amp;nbsp; 192.168.1.239&amp;nbsp;&amp;nbsp;&amp;nbsp; Dec 09 2009 10:50:21: %ASA-6-725001: Starting SSL handshake with client inside:10.101.5.13/2209 for TLSv1 session.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Dec 2009 10:55:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355431#M857674</guid>
      <dc:creator>mikedelafield</dc:creator>
      <dc:date>2009-12-09T10:55:06Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot access ASDM and SSH</title>
      <link>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355432#M857675</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;SSH1: send SSH message: outdata is NULL&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;server version string:SSH-2.0-Cisco-1.25SSH1: receive SSH message: 83 (83)&lt;BR /&gt;SSH1: client version is - SSH-2.0-PuTTY_Release_0.60&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;client version string:SSH-2.0-PuTTY_Release_0.60SSH1: begin server key generatio&lt;BR /&gt;n&lt;BR /&gt;SSH1: complete server key generation, elapsed time = 910 ms&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;SSH2 1: SSH2_MSG_KEXINIT sent&lt;BR /&gt;SSH2 1: SSH2_MSG_KEXINIT received&lt;BR /&gt;SSH2: kex: client-&amp;gt;server aes256-cbc hmac-sha1 none&lt;BR /&gt;SSH2: kex: server-&amp;gt;client aes256-cbc hmac-sha1 none&lt;BR /&gt;SSH2 0: Generate DH key operation failed.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;SSH2 0: DH key generation failed. status 255SSH1: Session disconnected by SSH se&lt;BR /&gt;rver - error 0x00 "Internal error"&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Dec 2009 11:12:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355432#M857675</guid>
      <dc:creator>mikedelafield</dc:creator>
      <dc:date>2009-12-09T11:12:53Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot access ASDM and SSH</title>
      <link>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355433#M857676</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;As for ASDM I get the following error in the Java console&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;javax.net.ssl.SSLHandshakeException: Received fatal alert: handshake_failure&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I cannot find any means to debug the firewall itself for ASDM logon.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Anyone have any ideas?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Dec 2009 12:10:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355433#M857676</guid>
      <dc:creator>mikedelafield</dc:creator>
      <dc:date>2009-12-09T12:10:13Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot access ASDM and SSH</title>
      <link>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355434#M857677</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Take a look at the following bug id CSCsh91747 at:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://tools.cisco.com/Support/BugToolKit/action.do?hdnAction=searchBugs"&gt;http://tools.cisco.com/Support/BugToolKit/action.do?hdnAction=searchBugs&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You must use your cco id account.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Br,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Dec 2009 14:53:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355434#M857677</guid>
      <dc:creator>resoares</dc:creator>
      <dc:date>2009-12-09T14:53:05Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot access ASDM and SSH</title>
      <link>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355435#M857678</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi thanks for that i've passed the information on to TAC.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm not sure if its 100% related thats the thing.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've done a bit further debug and i've noticed the following error when re-starting http server enable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"Could not start admin"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;According to this guy on tektips he has had the same problem&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.tek-tips.com/viewthread.cfm?qid=1419872&amp;amp;page=1"&gt;http://www.tek-tips.com/viewthread.cfm?qid=1419872&amp;amp;page=1&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;He mentioned speaking to Cisco but did not provide a solution.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I think tonight i'll reload and upgrade to 8.0.4, however i'd prefer to fix without a reload as if this happens in a remote site i'm screwed!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Dec 2009 15:14:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355435#M857678</guid>
      <dc:creator>mikedelafield</dc:creator>
      <dc:date>2009-12-09T15:14:07Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot access ASDM and SSH</title>
      <link>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355436#M857679</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes, sounds good and probably your issue will be fixed with 8.0.4.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Br,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Dec 2009 15:26:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355436#M857679</guid>
      <dc:creator>resoares</dc:creator>
      <dc:date>2009-12-09T15:26:00Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot access ASDM and SSH</title>
      <link>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355437#M857680</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This looks like the bug although my initial problem was not adding a host as it was already added&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;CSCsx95377&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;amp;bugId=CSCsx95377"&gt;http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;amp;bugId=CSCsx95377&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Gonna skip 8.0.4 and upgrade to 8.0.5 instead based on that!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Dec 2009 15:29:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355437#M857680</guid>
      <dc:creator>mikedelafield</dc:creator>
      <dc:date>2009-12-09T15:29:49Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot access ASDM and SSH</title>
      <link>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355438#M857681</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;So, it is definetly not your issue. Do you have webvpn? If you have probably you are hitting the previous one that I've sent you earlier.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;br,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Dec 2009 15:42:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355438#M857681</guid>
      <dc:creator>resoares</dc:creator>
      <dc:date>2009-12-09T15:42:00Z</dc:date>
    </item>
    <item>
      <title>Cannot access ASDM and SSH</title>
      <link>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355439#M857682</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Have faced the same issue with one ASA firewall , so we tried to generate the crypto key manually and it worked.... Not sure whether this will be the proper solution , but for us it worked.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Feb 2013 19:25:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355439#M857682</guid>
      <dc:creator>arjunsrsh</dc:creator>
      <dc:date>2013-02-08T19:25:15Z</dc:date>
    </item>
    <item>
      <title>I could connect via asdm</title>
      <link>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355440#M857683</link>
      <description>&lt;P&gt;I could connect via asdm adding this and sotp/start http service&lt;/P&gt;
&lt;P&gt;ssl encryption rc4-sha1 aes128-sha1 aes256-sha1 3des-sha1&lt;/P&gt;</description>
      <pubDate>Fri, 13 Nov 2015 10:04:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355440#M857683</guid>
      <dc:creator>lmediavilla</dc:creator>
      <dc:date>2015-11-13T10:04:30Z</dc:date>
    </item>
    <item>
      <title>You are correct that your</title>
      <link>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355441#M857684</link>
      <description>&lt;P&gt;You are correct that your command fixes that problem. &amp;nbsp;However I have the same issue right now running&amp;nbsp;Version 9.2(4) code and can't enable rc4 or 3des encryption or will fail PCI Audits. &amp;nbsp;I will try and post back if I get this working with TLSv1.0+ only and&amp;nbsp;ssl encryption aes256-sha1 dhe-aes256-sha1&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;-Raul&lt;/P&gt;</description>
      <pubDate>Thu, 14 Jan 2016 23:37:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-access-asdm-and-ssh/m-p/1355441#M857684</guid>
      <dc:creator>Raul Ricano</dc:creator>
      <dc:date>2016-01-14T23:37:53Z</dc:date>
    </item>
  </channel>
</rss>

