cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
870
Views
0
Helpful
0
Replies

Prime 3.x can't connect with ssh dh min set to 2048

Hello -

I am using Cisco Prime Infrastructure to archive my device configurations nightly.  However, my 2900 ISRs fail to archive when 'ip ssh dh min size 2048' i s applied.  I several Catalyst 2960XR switches with this set and can archive with no issues.

Looking at the router logs gives this:

003727: Jul 28 11:45:29.950 EDT: %SSH-3-NO_MATCH: No matching kex algorithm found: client diffie-hellman-group1-sha1 server diffie-hellman-group-exchange-sha1,diffie-hellman-group14-sha1

Anyone know how I can resolve this?  I have an open ticket with TAC, but thus far they have not resolved it.

Thanks

-Jericho

0 Replies 0