cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3742
Views
0
Helpful
2
Replies

Can't Generate RSA Keys

Hamood Rehman
Level 1
Level 1

ASA5510, Can't generate RSA keys, so can't SSH:

Any ideas?  

ASAXXX(config)# crypto key generate rsa general-keys modulus 1024

INFO: The name for the keys will be: <Default-RSA-Key>

Keypair generation process begin. Please wait...

% Attempt to generate RSA keys failed:

Thanks,

2 Replies 2

mwinnett
Level 3
Level 3

Might be defect CSCtb58989 (fixed in 8.2(2.3))

Symptom:

ASDM fails to load on ASA 8.2, due to no available DMA memory.

This issue occurs if logging is enabled along with crypto tunnels.

Conditions:

Logging is enabled.

Crypto (IPSec, SSL) is also enabled.

Workaround:

Downgrade ASA to 8.0.x or configure the logging queue to a value of 512. After

restoring the logging queue to default, need to reload the box to reclaim DMA

memory.

Matthew

nkarthikeyan
Level 7
Level 7

Hi Hamood,

Can you try all other ways of generating the keys.....

crypto key generate rsa modulus 2048 and few other ways to create the key.....

before that do crypto key zeroize rsa command and then do create the key

By

Karthik

Please do rate if the given information helps.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card