RE: ssh problem

From: James Bone (cciehead@yahoo.com)
Date: Mon May 26 2003 - 16:54:13 GMT-3


Thanks Connie. Just tested this too and it worked like a charm and also solved my other question regarding AAA and ssh.
 
Rgds
James
 

Connie Nie <CNie@EPLUS.com> wrote:
Line vty 0 4
Login local
Transport input ssh
---do not use password here.

Connie

-----Original Message-----
From: James Bone [mailto:cciehead@yahoo.com]
Sent: Monday, May 26, 2003 10:47 AM
To: ccielab@groupstudy.com
Subject: ssh problem

Hi Group,

I'm trying to get ssh running on my test terminal server 2511 but to no
avail. The IOS is 12.1(5)T9. I'm using secureCRT as the client. I have no
problem when using secureCRT to telnet to the router. There's no ACL on the
router. I thought its secureCRT so I tried teraterm pro but the same result.
I appreciate any suggestions or inputs.

Thanks in advance.
James

SecureCRT settings:*************************************
Protocol: ssh1
Username: ccie
Ciphere: DES
Authentication: Password

Relevant Router Configuration****************************

r2# username ccie password cisco
r2# ip domain-name ccie.com
r2(config)# crypto key generate rsa (using 550 bits)

line vty 0 4
password cisco
login
transport input ssh

Show output********************************
r2#sh ip ssh
SSH Enabled - version 1.5
Authentication timeout: 120 secs; Authentication retries: 3

Debug output*******************************

r2#debug ip ssh
Incoming SSH debugging is on
r2#
01:04:44: SSH0: starting SSH control process
01:04:44: SSH0: sent protocol version id SSH-1.5-Cisco-1.25
01:04:44: SSH0: protocol version id is - SSH-1.5-1.0
01:04:44: SSH0: SSH_SMSG_PUBLIC_KEY msg
01:04:45: SSH0: SSH_CMSG_SESSION_KEY msg - length 112, type 0x03
01:04:45: SSH: RSA decrypt started
01:04:52: SSH: RSA decrypt finished
01:04:52: SSH: RSA decrypt started
01:04:55: SSH: RSA decrypt finished
01:04:55: SSH0: sending encryption confirmation
01:04:55: SSH0: keys exchanged and encryption on
01:04:56: SSH0: SSH_CMSG_USER message received
01:04:56: SSH0: authentication request for userid ccie
01:04:56: SSH0: invalid old access type configured - 0x01
01:04:56: SSH0: SSH_SMSG_FAILURE message sent
01:04:56: SSH0: SSH_SMSG_FAILURE message sent
01:05:13: SSH0: SSH_SMSG_FAILURE message sent
01:05:18: SSH0: authentication failed for ccie (code=1)
01:05:18: SSH0: Session disconnected - error 0x09

---------------------------------
Do you Yahoo!?
The New Yahoo! Search - Faster. Easier. Bingo.

---------------------------------
Do you Yahoo!?
The New Yahoo! Search - Faster. Easier. Bingo.



This archive was generated by hypermail 2.1.4 : Mon Jun 02 2003 - 15:13:48 GMT-3