Owner's Manual

SSH Commands 403
Syntax
crypto key generate rsa
Default Configuration
RSA key pairs do not exist.
Command Mode
Global Configuration mode
User Guidelines
RSA keys are generated in pairs: one public RSA key and one private RSA key. If the device
already has RSA keys, a warning and prompt to replace the existing keys with new keys is
displayed.
The maximum supported size for the DSA key is 2,048.
This command is not saved in the startup configuration; however, the keys generated by this
command are saved in the running configuration, which is never displayed to the user or
backed up to another device.
This command may take a considerable period of time to execute.
Example
The following example generates RSA key pairs.
ip ssh pubkey-auth
The
ip ssh pubkey-auth
global configuration command enables public key authentication for
incoming SSH sessions. To disable this function, use the
no
form of this command.
Syntax
ip ssh pubkey-auth
no ip ssh pubkey-auth
Default Configuration
The function is disabled.
Command Mode
Global Configuration mode
User Guidelines
AAA authentication is independent.
Console (config)# crypto key generate rsa