in a customer project we are evaluating if it's possible to connect from cisco ios switches via "ssh -l <user> <ip address>" to an enterasys n series dfe modul which is running a ssh server v2.
Unfortunately this doesn't work as expected, every connection attempt is resetted.
We did a trace of the ssh connection attempt where you can see that there is some problem in the algorithm negotiation (see attachment).
Does anybody know if there is any configuration possibility to solve this problem?
- Cisco IOS Software, C2960 Software (C2960-LANBASEK9-M), Version 12.2(44)SE1
- Enterasys 7H4382-49, Fw: 05.42.10
Did you try specifying the version number in the string maybe it's trying to use V1 . You could also try clearing the crypto keys on both sides and recreating them and see if that helps..
I tried with version 1 and 2 on the cisco switch, without success.
When you have a look at the trace file you see that there is a difference between cisco and enterasys in the following algorithm exchange:
server_host_key_algorithms string: ssh-rsa
server_host_key_algorithms string: ssh-dss
So perhaps this is the reason for the negotiation problem?