10-30-2009 03:48 PM - edited 03-06-2019 08:24 AM
Hi,
Can anyone help on this . Actually i have configured a 2960. In line vty 0 4 we cinfugured transport input ssh. But it is login in telnet also.What was mistake i have done. Can anyone rectify this... I need to login in SSH only.
Below is the configuration
line con 0
exec-timeout 30 0
password 7 1311121103200B292A286C303A0F435E
login local
full-help
line vty 0 4
access-class 1 in
no exec-banner
exec-timeout 0 0
timeout login response 300
logging synchronous
login local
full-help
transport input ssh
line vty 5 15
no login
Thanks in advance
10-30-2009 03:58 PM
Can you post the output of show version?
Regards,
jerry
10-30-2009 04:01 PM
Hi,
pls find the output below
Cisco IOS Software, C2960 Software (C2960-LANBASEK9-M), Version 12.2(44)SE6, REL
EASE SOFTWARE (fc1)
Copyright (c) 1986-2009 by Cisco Systems, Inc.
Compiled Mon 09-Mar-09 18:10 by gereddy
Image text-base: 0x00003000, data-base: 0x01100000
ROM: Bootstrap program is C2960 boot loader
BOOTLDR: C2960 Boot Loader (C2960-HBOOT-M) Version 12.2(44)SE6, RELEASE SOFTWARE
(fc1)
uptime is 6 weeks, 3 days, 14 hours, 0 minutes
System returned to ROM by power-on
System restarted at 15:57:37 Th Tue Sep 15 2009
System image file is "flash:c2960-lanbasek9-mz.122-44.SE6/c2960-lanbasek9-mz.122
-44.SE6.bin"
This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.
A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
If you require further assistance please contact us by sending email to
cisco WS-C2960G-24TC-L (PowerPC405) processor (revision F0) with 61440K/4088K by
tes of memory.
Processor board ID FOC1330X0DV
Last reset from power-on
3 Virtual Ethernet interfaces
24 Gigabit Ethernet interfaces
The password-recovery mechanism is enabled.
64K bytes of flash-simulated non-volatile configuration memory.
Base ethernet MAC Address : 00:26:98:E8:C5:00
Motherboard assembly number : 73-10015-07
Power supply part number : 341-0098-02
Motherboard serial number : FOC13301624
Power supply serial number : AZS132503ED
Model revision number : F0
Motherboard revision number : A0
Model number : WS-C2960G-24TC-L
System serial number : FOC1330XOVD
Top Assembly Part Number : 800-26673-04
Top Assembly Revision Number : C0
Version ID : V04
CLEI Code Number : COMFX00BRA
Hardware Board Revision Number : 0x01
Switch Ports Model SW Version SW Image
------ ----- ----- ---------- ----------
* 1 24 WS-C2960G-24TC-L 12.2(44)SE6 C2960-LANBASEK9-M
Configuration register is 0xF
thanks
10-30-2009 04:19 PM
Can you try to put transport preferred none in line vty 0 4 and try again?
Also, can you post the output of sh crypto key mypubkey rsa?
Regards,
jerry
10-30-2009 04:35 PM
Hi,
Please find the output
sh crypto key mypubkey rsa
% Key pair was generated at: 06:52:05 Th Sep 24 2009
Key name: abcd.yyyyy.com
Storage Device: not specified
Usage: General Purpose Key
Key is not exportable.
Key Data:
30819F30 0D06092A 864886F7 0D010101 05000381 8D003081 89028181 00B33E15
89EDA4B1 05A82D97 FCF6C8BF F91DC7CC F9CDF4B5 EAE0DDB6 6D4D30EB 7E5FA581
36B53F52 29FA3B9C 67F2F5A0 CF43EBEE B778BD4A E118B8B3 5D2681AC 406AA9BD
C222951E A17DA8D6 3300CA57 04BFB6CE 7DB15882 5FEABAE4 A595708F C623D065
0847085E F18FBEF9 2BDF60F9 059B2634 C50CBBAB DB6D52A6 D7D5BBCC D3020301 000
% Key pair was generated at: 06:14:20 Th Oct 31 2009
Key name: ABCD.yyyyy.com.server
Temporary key
Usage: Encryption Key
Key is not exportable.
Key Data:
307C300D 06092A86 4886F70D 01010105 00036B00 30680261 00CD2311 72D25C39
0EA491A4 D21A8F1B C305116A 4C9035A8 DE9BEB6B EA89A44E F4446DEC 530787D1
6A2C627C 2335561B D7041060 81B4C6BC 9CDE6AFC 34FCC472 EF18C81B 8F2B5251
5F01F73D 014CCD5E 36CB60E2 0A1CCF0B FF1C6F10 E9B1C574 41020301 0001
10-30-2009 06:42 PM
The crypto key looks fine. Have you tried to put transport preferred none in line vty 0 4 and test telnet?
Regards,
jerry
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide