CM, ION Modem: WARNING: REMOTE HOST IDENTIFICATION HAS CHANGED!


Doc ID    SOLN273693
Version:    3.0
Status:    Published
Published date:    31 Jan 2017
Created Date:    19 Aug 2015
Author:   
Gina Reda
 

Details

ION Modem

Gets error message when trying to login to CM with init, craft or dadmin via ION modem.

Problem Clarification

When trying trying to connect to Communication Manager through Active or Main Server from ION modem getting  the following:

Avaya>  connect                                                     

--- Connect to Endpoint ---
   2)  Conn:    ACTIVE
       Address: 129.2.x.1   Ports: 22
       Protocol:SSH                                        Def
   4)  Conn:    ACTIVE
       Address: 129.2.x.2   Ports: 22
       Protocol:SSH                                        Def
   6)  Conn:    ACTIVE
       Address: 129.2.x.3   Ports: 22
       Protocol:SSH                                        Def
  

Select # -> 2    (Ctrl-A to quit)
Please Enter User ID ->init
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@    WARNING: REMOTE HOST IDENTIFICATION HAS CHANGED!     @
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
IT IS POSSIBLE THAT SOMEONE IS DOING SOMETHING NASTY!
Someone could be eavesdropping on you right now (man-in-the-middle attack)!
It is also possible that a host key has just been changed.
The fingerprint for the RSA key sent by the remote host is
b0:79:86:29:c3:dd:db:02:9f:ea:c1:b7:83:4f:7d:39.
Please contact your system administrator.
Add correct host key in /persist/ssh/known_hosts to get rid of this message.
Offending RSA key in /persist/ssh/known_hosts:2
RSA host key for 129.2.x.1 has changed and you have requested strict checking.
Host key verification failed. 

Cause

The /persist/ssh/known_hosts file on the ION Modem was corrupted for CM #2 and #4 connection.   Access is successful when connecting through connection #6 which is a ESS and then using SSH to Main and Active Communication Manager connection #2 and #4.

Solution

Recommendation to clear the known_hosts file on the ION Modem SA5600. 

on the ION command line type:

n          -- for N-Net
PKH     -- Purge SSH Known Hosts file

you should see a message similar to below:

08/17/15 15:22:10 6634 [M1:68] Purge SSH Known Hosts file
08/17/15 15:22:10 6A76 [M1:68] Purged SSH known_hosts file

**NOTE**  If the PKH Command is missing:

It was found that some of the ION 5600 appliances have the PKH command because the “Known Hosts File” is in persistent storage, so there might be a need to purge the file if needed.

Some appliances do not need this command because the “Known Hosts File” is not persistent and a reboot could easily remove the file.

 

For additional information, please refer to ION product documentation:

 

https://apitechnologies.sharefile.com/d-sa66078fdb1149aa9

 

 


Avaya -- Proprietary. Use pursuant to the terms of your signed agreement or Avaya policy