Hello -
I am using Cisco Prime Infrastructure to archive my device configurations nightly. However, my 2900 ISRs fail to archive when 'ip ssh dh min size 2048' i s applied. I several Catalyst 2960XR switches with this set and can archive with no issues.
Looking at the router logs gives this:
003727: Jul 28 11:45:29.950 EDT: %SSH-3-NO_MATCH: No matching kex algorithm found: client diffie-hellman-group1-sha1 server diffie-hellman-group-exchange-sha1,diffie-hellman-group14-sha1
Anyone know how I can resolve this? I have an open ticket with TAC, but thus far they have not resolved it.
Thanks
-Jericho