04-02-2017 09:07 PM - edited 03-12-2019 02:09 AM
hi,
i'll be configuring SSH version 2 and can see some of our ASA have existing RSA/general purpose keys (some ASA have several keys) with modulus 1024.
can i re-use the existing 1024 RSA key for SSH version 2?
or do i need to generate a new RSA key with 2048 modulus?
my worry is some are old 5510 and 5520 with limited 256MB or 512MB RAM and CPU is around 50-70%.
04-03-2017 05:23 AM
If you already have a "Default-RSA-Key" with modulus 1024, you can re-use that without having to generate another key. For higher security, you can regenerate the same key as modulus 2048, but this may affect other certs which are using the existing key.
04-03-2017 07:55 PM
hi,
will generating a new 2048 rsa key affect CPU performance?
some of our older ASA has more than 50% CPU.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide