Hi all,
Iam about to update a stack of two C3850 switches from a 3.x version to a 16.x version.
Somewhere I read that you have to generate a new RSA key before the update. Is that correct?
And are there any other things to keep in mind?
Thanks for any help!
Solved! Go to Solution.
@flokki123 wrote:
Somewhere I read that you have to generate a new RSA key before the update. Is that correct?
No, I don't think so.
@flokki123 wrote:
And are there any other things to keep in mind?
@flokki123 wrote:
Somewhere I read that you have to generate a new RSA key before the update. Is that correct?
No, I don't think so.
@flokki123 wrote:
And are there any other things to keep in mind?
Hey guys,
thanks a lot for your help!
Apparently the new RSA key is only necessary with version 16.3.5.
"When you upgrade to Cisco IOS XE Denali 16.3.5 the SSH access is lost, because it cannot use the CISCO_IDEVID_SUDI_LEGACY RSA server key. Before upgrade, generate the server key using the crypto key generate rsa command in global configuration mode.
To verify whether the RSA server key is available on your device, run the show crypto key command."
BR