Enabling/Disabling DSA and X509v3 Public Key Algorithms

You can selectively enable and disable DSA/RSA X509 public key-based algorithms: ssh-rsa, ssh-dss, x509v3-sign-rsa, x509v3-sign-dss.

By default all the algorithms are enabled.

Supported Platforms

Summit X450-G2, X460-G2, X670-G2, X770, and ExtremeSwitching X440-G2, X870, X620, X690 series switches.

New CLI Commands

configure ssh2 disable {pk-alg [pkalg_name | all]}

configure ssh2 enable {pk-alg [pkalg_name | all]}

Changed CLI Commands

The following show command is changed to display DSA/RSA X509 public key-based algorithms information:

show ssh2