[rancid] Which cypertype should use to connect to Cisco and Fortinet devices ?

heasley heas at shrubbery.net
Sat Mar 10 15:24:20 UTC 2018


Sat, Mar 10, 2018 at 04:52:37AM +0000, Piegorsch, Weylin William:
> Have you tried specifying all the cyphertypes your system support?  I manually ran the command ssh -vvv <device> and read the (incredibly plentiful) output to find what my system was offering; then, I just specified all of them in .cloginrc.  The target system will only accept those cypher it supports, so there's no harm to the SSH protocol to offer as many as you want.

see ssh -Q

Also, these can be placed these in ~/.ssh/config or /etc/ssh/ssh_config so
that they work outside of rancid too.



More information about the Rancid-discuss mailing list