cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
7961
Views
5
Helpful
1
Replies

4506 SSH Error - SSH-3-BAD_PACK_LEN: Bad packet length, Bug CSCve64732

martinezaw
Level 1
Level 1

I keep receiving the below log on my 4506

 

Dec 11 17:25:14.000: %SSH-3-BAD_PACK_LEN: Bad packet length 1952022780

 

It started after I upgraded to the current version 3.09.02.

 

I found the below link that seems to be my issue but there is no workaround given.

 

Cisco Bug: CSCve64732 - Prime Infrastructure does not support newer SSH/SCP ciphers.

 

I believe it is affecting my config backup software because it has not been able to backup the config since the IOS upgrade.

 

I have two 4506 with the same IOS. Both are affected. Both can't be backed up. My backup config software can backup all my other switches. Show ver below. Any ideas on what I can do? I can't manually remove the ip ssh server config unfortunately.

 

=========================

sh ver
Cisco IOS Software, IOS-XE Software, Catalyst 4500 L3 Switch  Software (cat4500e-UNIVERSALK9-M), Version 03.09.02.E RELEASE SOFTWARE (fc4)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2017 by Cisco Systems, Inc.
Compiled Mon 01-May-17 02:17 by prod_rel_team



Cisco IOS-XE software, Copyright (c) 2005-2015 by cisco Systems, Inc.
All rights reserved.  Certain components of Cisco IOS-XE software are
licensed under the GNU General Public License ("GPL") Version 2.0.  The
software code licensed under GPL Version 2.0 is free software that comes
with ABSOLUTELY NO WARRANTY.  You can redistribute and/or modify such
GPL code under the terms of GPL Version 2.0.
(http://www.gnu.org/licenses/gpl-2.0.html) For more details, see the
documentation or "License Notice" file accompanying the IOS-XE software,
or the applicable URL provided on the flyer accompanying the IOS-XE
software.



ROM: 15.0(1r)SG5
BOE4506-SEC uptime is 10 weeks, 6 days, 6 hours, 54 minutes
System returned to ROM by reload
System restarted at 11:57:14 EDT Wed Sep 26 2018
System image file is "bootflash:cat4500e-universalk9.SPA.03.09.02.E.152-5.E2.bin"
Jawa Revision 7, Snowtrooper Revision 0x0.0x1C

Last reload reason: Reload command



This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.

A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html

If you require further assistance please contact us by sending email to
export@cisco.com.


License Information for 'WS-X45-SUP7-E'
    License Level: entservices   Type: Permanent Right-To-Use
    Next reboot license Level: entservices

cisco WS-C4506-E (MPC8572) processor (revision 10) with 2097152K bytes of physical memory.
Processor board ID FXS1751Q11K
MPC8572 CPU at 1.5GHz, Supervisor 7
Last reset from Reload
3 Virtual Ethernet interfaces
48 Gigabit Ethernet interfaces
28 Ten Gigabit Ethernet interfaces
511K bytes of non-volatile configuration memory.

Configuration register is 0x2102

1 Reply 1

tommi.hokkanen
Level 1
Level 1

Hi,

 

I had a similar issue with C9300. For me, problem got fixed after enabling "ip ssh version 2"

 

Review Cisco Networking for a $25 gift card