cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3978
Views
0
Helpful
2
Replies

Can't Generate RSA Keys

Hamood Rehman
Level 1
Level 1

ASA5510, Can't generate RSA keys, so can't SSH:

Any ideas?  

ASAXXX(config)# crypto key generate rsa general-keys modulus 1024

INFO: The name for the keys will be: <Default-RSA-Key>

Keypair generation process begin. Please wait...

% Attempt to generate RSA keys failed:

Thanks,

2 Replies 2

mwinnett
Level 3
Level 3

Might be defect CSCtb58989 (fixed in 8.2(2.3))

Symptom:

ASDM fails to load on ASA 8.2, due to no available DMA memory.

This issue occurs if logging is enabled along with crypto tunnels.

Conditions:

Logging is enabled.

Crypto (IPSec, SSL) is also enabled.

Workaround:

Downgrade ASA to 8.0.x or configure the logging queue to a value of 512. After

restoring the logging queue to default, need to reload the box to reclaim DMA

memory.

Matthew

nkarthikeyan
Level 7
Level 7

Hi Hamood,

Can you try all other ways of generating the keys.....

crypto key generate rsa modulus 2048 and few other ways to create the key.....

before that do crypto key zeroize rsa command and then do create the key

By

Karthik

Please do rate if the given information helps.

Review Cisco Networking for a $25 gift card