<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: failed to paste the authorised keys for ssh on ips in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681944#M88110</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If your router is accessible by IPS (and vice-versa), can you add the router's IP as trusted host to IPS, and skip the key portion?  This is because if the router is accessible at the moment the command is issued, no key is required to be entered. Try to ssh again to the IPS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The "ssh host-key ip-address [key-modulus-length public-exponent public-modulus]" command is needed if the router is unreachable. This is to confirm the fingerprint of the key displayed for security purposes.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/customer/products/hw/vpndevc/ps4077/products_configuration_guide_chapter09186a008055df9a.html#wp1035869" target="_blank"&gt;http://www.cisco.com/en/US/customer/products/hw/vpndevc/ps4077/products_configuration_guide_chapter09186a008055df9a.html#wp1035869&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;P&gt;AK&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 11 Dec 2006 02:31:03 GMT</pubDate>
    <dc:creator>a.kiprawih</dc:creator>
    <dc:date>2006-12-11T02:31:03Z</dc:date>
    <item>
      <title>failed to paste the authorised keys for ssh on ips</title>
      <link>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681943#M88103</link>
      <description>&lt;P&gt;hi i am new to cisco ips. i wanted to ssh into the ips from a cisco router. i generated ssh keys on the router with the crypto key generate rsa command. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;on the ips i tried to add the authorised keys for ssh. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;when  i copied the keys from the router and pasted in the public modulus field it gives me a error saying . it does not match the pattern &lt;/P&gt;&lt;P&gt;^[0-9]+$. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;can someone pls help. where i am going wrong. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sebastan&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 10:22:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681943#M88103</guid>
      <dc:creator>sebastan_bach</dc:creator>
      <dc:date>2019-03-10T10:22:00Z</dc:date>
    </item>
    <item>
      <title>Re: failed to paste the authorised keys for ssh on ips</title>
      <link>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681944#M88110</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If your router is accessible by IPS (and vice-versa), can you add the router's IP as trusted host to IPS, and skip the key portion?  This is because if the router is accessible at the moment the command is issued, no key is required to be entered. Try to ssh again to the IPS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The "ssh host-key ip-address [key-modulus-length public-exponent public-modulus]" command is needed if the router is unreachable. This is to confirm the fingerprint of the key displayed for security purposes.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/customer/products/hw/vpndevc/ps4077/products_configuration_guide_chapter09186a008055df9a.html#wp1035869" target="_blank"&gt;http://www.cisco.com/en/US/customer/products/hw/vpndevc/ps4077/products_configuration_guide_chapter09186a008055df9a.html#wp1035869&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;P&gt;AK&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 11 Dec 2006 02:31:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681944#M88110</guid>
      <dc:creator>a.kiprawih</dc:creator>
      <dc:date>2006-12-11T02:31:03Z</dc:date>
    </item>
    <item>
      <title>Re: failed to paste the authorised keys for ssh on ips</title>
      <link>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681945#M88113</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi ak i guess u didn;t get my question properly. i am not asking abt adding known host keys of routers for the ids to communicate to the routers. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i want to ssh from a router to the ips. for which i want to add the authorised ssh keys of the router to access the ips. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;can u pls tell me abt that. as i told u the problem i am facing while pasting the public key of router onto the ips. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;waiting for ur reply. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sebastan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 11 Dec 2006 14:42:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681945#M88113</guid>
      <dc:creator>sebastan_bach</dc:creator>
      <dc:date>2006-12-11T14:42:36Z</dc:date>
    </item>
    <item>
      <title>Re: failed to paste the authorised keys for ssh on ips</title>
      <link>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681946#M88117</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Not sure if I wrongly understand it. But as far as I know, the ssh key you generated in router is good when you need to SSH into that router, and that ssh key will not be recognized by IPS. When you ssh to the router, you should noticed that it will ask you whether to keep permanent or temporary the router's ssh key.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But if you need to add allow host and add ssh to the IPS, you need to use different steps as explained in the above Cisco IPS doc link:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sensor# configure terminal&lt;/P&gt;&lt;P&gt;sensor(config)# ssh host-key 10.1.1.1 &lt;MODULUS_KEY_VALUE&gt;  ---&amp;gt; enter, if you skip modulus key, it will use 512 as default value&lt;/MODULUS_KEY_VALUE&gt;&lt;/P&gt;&lt;P&gt;sensor(config)#exit&lt;/P&gt;&lt;P&gt;sensor# show ssh host-keys 10.1.1.1   --&amp;gt; view the ssh key authorised for the router&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1024 35 &lt;/P&gt;&lt;P&gt;139306213541835240385332922253968814685684523520064131997839905113640120217816869696708721&lt;/P&gt;&lt;P&gt;704631322844292073851730565044879082670677554157937058485203995572114631296604552161309712&lt;/P&gt;&lt;P&gt;601068614812749969593513740598331393154884988302302182922353335152653860589163651944997842&lt;/P&gt;&lt;P&gt;874583627883277460138506084043415861927&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;MD5: 49:3F:FD:62:26:58:94:A3:E9:88:EF:92:5F:52:6E:7B&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Bubble Babble: xebiz-vykyk-fekuh-rukuh-cabaz-paret-gosym-serum-korus-fypop-huxyx &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sensor#&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;AK&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 11 Dec 2006 23:50:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681946#M88117</guid>
      <dc:creator>a.kiprawih</dc:creator>
      <dc:date>2006-12-11T23:50:00Z</dc:date>
    </item>
    <item>
      <title>Re: failed to paste the authorised keys for ssh on ips</title>
      <link>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681947#M88121</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, &lt;/P&gt;&lt;P&gt;I guess tht you need to copy the public key(not the private key) from the router and pasted it in the authorised key file for ssh.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;RSA generations will create a public key and private key. Public key remain in the router and only public key be copied.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hopes that help&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 12 Dec 2006 02:10:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681947#M88121</guid>
      <dc:creator>akhmal</dc:creator>
      <dc:date>2006-12-12T02:10:18Z</dc:date>
    </item>
    <item>
      <title>Re: failed to paste the authorised keys for ssh on ips</title>
      <link>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681948#M88130</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ak u are completely wrong and not understanding my question at all. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i said the ips could easily added the ssh keys of the router as known keys. means the ips can access the router via ssh for blocking actions on the router. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i want is to add the router;s ssh keys as the authorised keys . so that i can ssh from the router to the ips. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i hope atleast now u get the question properly.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;when i try to paste the keys from the router to the ips it gives a error as i mentioned it above. is there a seperate format for it. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;can someone pls help me on this. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sebastan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Dec 2006 09:00:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681948#M88130</guid>
      <dc:creator>sebastan_bach</dc:creator>
      <dc:date>2006-12-13T09:00:06Z</dc:date>
    </item>
    <item>
      <title>Re: failed to paste the authorised keys for ssh on ips</title>
      <link>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681949#M88134</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We have similar problem with the public key, and eventually give-up. The IPS-ssh device registration obviously was a good option, and it works well.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Dec 2006 10:27:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681949#M88134</guid>
      <dc:creator>tedohara1</dc:creator>
      <dc:date>2006-12-13T10:27:47Z</dc:date>
    </item>
    <item>
      <title>Re: failed to paste the authorised keys for ssh on ips</title>
      <link>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681950#M88136</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think IPS use different key format than router:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;border_ro1#sh crypto key mypubkey rsa&lt;/P&gt;&lt;P&gt;% Key pair was generated at: 00:07:28 UTC Dec 12  2006&lt;/P&gt;&lt;P&gt;Key name: border_ro1.xxxxx.com&lt;/P&gt;&lt;P&gt; Usage: General Purpose Key&lt;/P&gt;&lt;P&gt; Key Data:&lt;/P&gt;&lt;P&gt;  305C300D 06092A86 4886F70D 01010105 00034B00 30480241 00C166E8 D6456A39 &lt;/P&gt;&lt;P&gt;  744CE5A7 C95D2F1C EFE9F11F 8A2E6F08 2CFA4968 EE8AB1CE 2B8F4159 6B1C6E51 &lt;/P&gt;&lt;P&gt;  6993DD24 AAB79B18 ED098F0E 00F3BDE9 68819020 1CE94869 D5020301 0001&lt;/P&gt;&lt;P&gt;border_ro1#&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Dec 2006 11:11:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681950#M88136</guid>
      <dc:creator>tedohara1</dc:creator>
      <dc:date>2006-12-13T11:11:24Z</dc:date>
    </item>
    <item>
      <title>Re: failed to paste the authorised keys for ssh on ips</title>
      <link>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681951#M88138</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi u are very right. pn the ips when i retrived the ssh of the router with the retrive key command. the ssh key shows on the ips was completely different as to what key the router shows me. i guess the ips changes the format in which the ssh keys are stored. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sebastan&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Dec 2006 13:18:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681951#M88138</guid>
      <dc:creator>sebastan_bach</dc:creator>
      <dc:date>2006-12-13T13:18:41Z</dc:date>
    </item>
    <item>
      <title>Re: failed to paste the authorised keys for ssh on ips</title>
      <link>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681952#M88140</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Sebastan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm one of the Student from Univesity in Malaysia. Currently I'm doing thesis related to Intrusion Prevention System at Host level. I need your help to revert back threats which unable to resolve by current IPS system. I have to investigate on the threats and find the solution. Appreciate if you could share your idea with me. Please do not hesitate to send your email to &lt;A href="mailto:m.thangavelu@shell.com"&gt;m.thangavelu@shell.com&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in adavnce,&lt;/P&gt;&lt;P&gt;Murugan &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Dec 2006 14:02:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681952#M88140</guid>
      <dc:creator>murugan20</dc:creator>
      <dc:date>2006-12-13T14:02:40Z</dc:date>
    </item>
    <item>
      <title>Re: failed to paste the authorised keys for ssh on ips</title>
      <link>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681953#M88141</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi murugan can u tell me in detail what u want to do and what kind of help u need from me. i would like to help u .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;see ya &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sebastan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Dec 2006 18:23:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/failed-to-paste-the-authorised-keys-for-ssh-on-ips/m-p/681953#M88141</guid>
      <dc:creator>sebastan_bach</dc:creator>
      <dc:date>2006-12-13T18:23:02Z</dc:date>
    </item>
  </channel>
</rss>

