Access Security Guide K/KA/KB.15.15

Figure 164 A public key generated by the switch
NOTE: The generated public key on the switch is always 896 bits.
With a direct serial connection from a management station to the switch:
a. Use a terminal application such as HyperTerminal to display the switch public key with
the show crypto host public-key command, see Figure 163 (page 230).
b. Bring up the SSH client's "known host" file in a text editor such as Notepad as straight
ASCII text, and copy the switch public key into the file.
c. Ensure that there are no changes or breaks in the text string. A public key must be an
unbroken ASCII string. Line breaks are not allowed (changes in the line breaks will corrupt
the Key.) For example, if you are using Windows® Notepad, ensure that Word Wrap
(in the Edit menu) is disabled, and that the key text appears on a single line.
Figure 165 Example of a correctly formatted public key
d. Add any data required by your SSH client application. For example, before saving the
key to an SSH client's "known hosts" file you may have to insert the switch IP address:
Figure 166 Example of a switch public key edited to include the switch IP address
For more on this topic, see the documentation provided with your SSH client application.
Configuring 231