Admin Guide

Table Of Contents
Rekey data limit : 1 GB
Rekey time interval : 1 hours
Field descriptions
The following table describes the output for the show ssh rekey command.
Name Description
Rekey status
Displays the status (TRUE or FALSE) of SSH
rekeying.
Rekey data limit
Displays the configured SSH rekey data
transmission limit GB.
Rekey time interval
Displays the configured SSH rekey time interval in
hours.
Downgrading or upgrading from releases that support different
key sizes
Use this procedure if you need to downgrade or upgrade from a release that supports different key
sizes.
Different releases can support different DSA host key, RSA host key, and DSA user key sizes. If you
need to upgrade or downgrade to an earlier release that does not support the same key size, you
must delete all of the keys from the .ssh directory and generate new keys for SSH. If you do not do
this, key sizes that are no longer supported will no longer function.
For more information about supported software, see Release Notes for VSP Operating System
Software, NN47227-401.
You only need to perform this procedure if you have previously generated DSA host, RSA host, or
DSA user keys with a release that supports different key sizes.
Procedure
1. Use the following command to disable SSH:
no ssh
2. From the config terminal go to the .ssh directory using the command:
cd /intflash/.ssh
3. After you upgrade or downgrade, delete the following keys from the .ssh directory.
ssh_dss.key
ssh_rsa.key
moc_sshc_dsa_file
moc_sshc_rsa_file
id_dsa_rwa
id_dsa_rwa.pub
id_rsa_rwa
id_rsa_rwa.pub
moc_sshc_dsa_file_fed
Secure Shell configuration using ACLI
January 2017 Administering Avaya VSP 7200 Series and 8000 Series 173
Comments on this document? infodev@avaya.com