cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
130
Views
0
Helpful
0
Replies

IOS import AES keys

Hermozol
Level 1
Level 1

Hello Community.

I would like to establish Certificate-based SIP-trunk to WxC. When tried to import crypto key generated outside router

crypto key import rsa ownKEY general-purpose exportable terminal p@ssword

there is a problem. Only 3DES ecrypted password is accepted. No AES, no unencrypted only 3DES.

Other thing is that debug do not shows it in clear alert but some numbers like -1 or 11.

Next thing that key export allows to AES key encryption but You are not able to import it back.

So in 2024 it should be shame that Cisco accept only weak algorithm.

Tested on Virtual XE Software (X86_64_LINUX_IOSD-UNIVERSALK9-M), Version 17.9.4a

Regards
Hermozol

0 Replies 0
Review Cisco Networking for a $25 gift card