cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements

Welcome to Cisco Firewalls Community


201
Views
0
Helpful
1
Replies
Beginner

Cannot SSH or ASDM to Active ASA (5515)

Recently lost the ability to SSH/ASDM into the active ASA - any suggestions ?

CS-FW1/stby/sec# sho run | i ssh
aaa authentication ssh console LOCAL
no ssh stricthostkeycheck
ssh 10.50.0.0 255.255.0.0 inside
ssh timeout 30
ssh key-exchange group dh-group1-sha1

!

CS-FW1/stby/sec# failover exec active sho run | in ssh
aaa authentication ssh console LOCAL
no ssh stricthostkeycheck
ssh 10.50.0.0 255.255.0.0 inside
ssh timeout 30
ssh key-exchange group dh-group1-sha1

1 REPLY 1
Participant

Re: Cannot SSH or ASDM to Active ASA (5515)

When you try to SSH to the firewall do you get a timeout or is the connection refused?

 

If you are getting a timeout the SSH connection is likely being blocked, check that you are in the allowed subnet and SSH access is enabled on the correct interface. 

 

If the connection is refused it may be an issue with the crypto key that SSH is using you can try generating a new one to see if that helps with the crypto key generate command.

CreatePlease to create content
Content for Community-Ad
FusionCharts will render here