06-12-2020 05:45 AM
Hello,
I have a problem.
I lost connection with switch via SSH and Telnet, but Web GUI still works Ok;
I can connect via console as well;
Someone known what happened
06-12-2020 05:56 AM
add below line to VTY lines:
transport input ssh and telnet
06-12-2020 08:58 AM
Hi,
What is an error on the screen and what is the switch model number? It is very important. try as:
Line-Line vty 0 4
line vty 0 4
transport input all
logging synchronous
login local
length 0
Line-Line vty 5 15
line vty 5 15
transport input all
logging synchronous
login local
If it is Small business switch like 350 or 550 then logins in WebGui and
Goto security Tab >TCT/UDP services and tick the telnet service. Save.
06-12-2020 09:48 AM
Hi,
error when trying to connect with Putty is:
connection to 192.x.x.x ... can not connect, error on port 23
WS-C3650-24PS-S
06-13-2020 12:06 AM
Hi,
Login using the console cable and trying the below configuration as:
Line-Line vty 0 4
line vty 0 4
transport input all
logging synchronous
login local
length 0
Line-Line vty 5 15
line vty 5 15
transport input all
logging synchronous
login local
Also, make sure that there will no ACL under the VTY line or Telnet port is not blocked in the path.
06-13-2020 03:04 AM
In this case, we need your complete config to assist better, there may be small information which is missing in this post.
if you have this model of switch WS-C3650-24PS-S - also post-show version.
if this is standard configuration or verify below document for the config (i would also suggest to post here)
06-13-2020 12:15 AM
Hello,
have you tried to zeroize the RSA key, reboot the router, and then enter a new key ?
1. crypto key zeroize rsa
2. reboot
3. crypto key generate rsa
06-14-2020 07:19 AM
Hello
@BorislavPenchev0962 wrote:
I have a problem.
I lost connection with switch via SSH and Telnet, but Web GUI still works Ok;
I can connect via console as well;
Seems to suggest you once had remote access via 22/23 so what change did you make to negate this access?
Have you tried using a different terminal session client or just a command line from you pc to see if the ports are open
cmd
telnet x.x.x.x - does this work?
telnet x.x.x.x 22 - does this work?
telnet x.x.x.x 80 - this should work as you have stated
Lasty remove any access-lists, AAA config and make sure as others have suggested make you vty lines are allowing telnet/ssh.
06-15-2020 01:25 AM
Hi all,
thanks for reply's, we are still under investigation,
switch is 300 km from us and there is no way to reboot over GUI or ? - would l be able to login afterwards ?
l can ping the switch; cmd telnet test work on port 80, but not on other ports:
C:\Users\rsp>telnet 192.168.x.x 22
Connecting To 192.168.x.x...Could not open connection to the host, on port 80: Connect failed
l also tried to connect over ssh/telnet from another core switch:
Core#ssh 192.168.x.x
% Connection refused by remote host
we will have to send someone on site to try configure transport input all on the vty lines;
when l try to telnet/ssh on cmd or putty l get the connection drop asap - which makes me think is access list/firewall related...
------------------ show version ------------------
Cisco IOS Software, IOS-XE Software, Catalyst L3 Switch Software (CAT3K_CAA-UNIVERSALK9-M), Version 03.06.02aE RELEASE SOFTWARE (fc1)
Compiled Fri 03-Apr-15 14:45 by
ROM: IOS-XE ROMMON
BOOTLDR: CAT3K_CAA Boot Loader (CAT3K_CAA-HBOOT-M) Version 1.2, RELEASE SOFTWARE (P)
Core uptime is 2 years, 12 weeks, 4 days
06-15-2020 10:26 AM
yes, it is worth someone available on the remote site and post full configures here for review.
Looks like some VTY line issue for now as per recent post.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide