02-09-2022 06:26 AM
Hi,
My stig checklist is asking for "ip ssh server algorithm mac hmac-sha2-512 hmac-sha2-256",
My switch is unable to do this command. We do have "p ssh server algorithm encryption aes256-ctr aes192-ctr aes128-ctr"
What is the mac entry used for on a switch?
Thank you.
Solved! Go to Solution.
02-09-2022 08:36 AM
Look at the IOS requirement :
02-09-2022 07:29 AM - edited 02-09-2022 07:30 AM
we need to show log ( show logg and post here)
or follow below guide for SSH
https://www.cisco.com/c/en/us/support/docs/security-vpn/secure-shell-ssh/4145-ssh.html
add some keys based on the outout error :
02-09-2022 07:43 AM
Balaji,
Sorry, I may have mis-worded my question. I currently have no issue with the operation of the switch. Everything is fine.
A checklist wants me to enter that command but my switch is incompatible with it.
I'm curious what that command "ip ssh server algorithm mac hmac-sha2-512 hmac-sha2-256" does as I already have "ip ssh server algorithm encryption aes256-ctr aes192-ctr aes128-ctr" in my configuration.
02-09-2022 08:19 AM
what device is this, what version IOS code running on it.
post below output :
show version
show ip ssh (if you ssh version 2 then you can use that ciphers) - again IOS need to support.
02-09-2022 08:23 AM
WS-C6506-E
155.5.1 sy3
SSH Version 2
02-09-2022 08:36 AM
Look at the IOS requirement :
02-09-2022 11:32 AM
Balaji,
Thanks, your link alerted me that there are statements in the config invisible until changed by the user.
I didn't know that it was already running sufficient hmac algorithms.
Thanks
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide