<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Is it possible to connect to my switch using ssh from the checkpoint cli ? in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Is-it-possible-to-connect-to-my-switch-using-ssh-from-the/m-p/239969#M46547</link>
    <description>&lt;P&gt;Yeah I know this is a pretty old thread, but FYI, on the SMB 700/1400 product line, you might want to use dbclient, the dropbear SSH client, instead of ssh/openssh.&lt;/P&gt;</description>
    <pubDate>Wed, 29 Jan 2025 13:31:48 GMT</pubDate>
    <dc:creator>nmelay2</dc:creator>
    <dc:date>2025-01-29T13:31:48Z</dc:date>
    <item>
      <title>Is it possible to connect to my switch using ssh from the checkpoint cli ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Is-it-possible-to-connect-to-my-switch-using-ssh-from-the/m-p/110663#M15214</link>
      <description>&lt;P&gt;is it possible to connect to my switch using ssh from the checkpoint cli ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Here is the message i got .&lt;/P&gt;&lt;P&gt;no matching cipher found: client aes128-cbc,3des-cbc,blowfish-cbc,cast128-cbc,arcfour,aes192-cbc,aes256-cbc,rijndael-cbc@lysator.liu.se server aes128-ctr,aes192-ctr,aes256-ctr&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 12 Feb 2021 16:40:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Is-it-possible-to-connect-to-my-switch-using-ssh-from-the/m-p/110663#M15214</guid>
      <dc:creator>nflnetwork29</dc:creator>
      <dc:date>2021-02-12T16:40:37Z</dc:date>
    </item>
    <item>
      <title>Re: Is it possible to connect to my switch using ssh from the checkpoint cli ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Is-it-possible-to-connect-to-my-switch-using-ssh-from-the/m-p/110665#M15215</link>
      <description>&lt;P&gt;It means the SSH client on the gateway doesn’t support the same ciphers the SSH server is configured to use.&lt;BR /&gt;What kind of gateway are you SSHing from and what software version?&lt;/P&gt;</description>
      <pubDate>Fri, 12 Feb 2021 16:48:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Is-it-possible-to-connect-to-my-switch-using-ssh-from-the/m-p/110665#M15215</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-02-12T16:48:28Z</dc:date>
    </item>
    <item>
      <title>Re: Is it possible to connect to my switch using ssh from the checkpoint cli ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Is-it-possible-to-connect-to-my-switch-using-ssh-from-the/m-p/110670#M15216</link>
      <description>&lt;P&gt;SMB 1450 R77.20.15&lt;/P&gt;&lt;P&gt;I guess another limitation of the SMB model line?&lt;/P&gt;</description>
      <pubDate>Fri, 12 Feb 2021 18:20:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Is-it-possible-to-connect-to-my-switch-using-ssh-from-the/m-p/110670#M15216</guid>
      <dc:creator>nflnetwork29</dc:creator>
      <dc:date>2021-02-12T18:20:06Z</dc:date>
    </item>
    <item>
      <title>Re: Is it possible to connect to my switch using ssh from the checkpoint cli ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Is-it-possible-to-connect-to-my-switch-using-ssh-from-the/m-p/110672#M15217</link>
      <description>&lt;P&gt;Phoneboy's response is 100% correct actually. Definitely means it would not support same ciphers...I had seen this before.&lt;/P&gt;</description>
      <pubDate>Fri, 12 Feb 2021 18:34:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Is-it-possible-to-connect-to-my-switch-using-ssh-from-the/m-p/110672#M15217</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-02-12T18:34:27Z</dc:date>
    </item>
    <item>
      <title>Re: Is it possible to connect to my switch using ssh from the checkpoint cli ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Is-it-possible-to-connect-to-my-switch-using-ssh-from-the/m-p/110681#M15218</link>
      <description>&lt;P&gt;The version string on our SSH client on SMB says:&amp;nbsp;&lt;SPAN class="s1"&gt;SSHield_2.1.0 derived from OpenSSH_3.5p1, SSH protocols 1.5/2.0, which I believe is used on VXworks systems.&lt;BR /&gt;I checked on both R77.20.x and R80.20.x systems, same version string.&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN class="s1"&gt;OpenSSH 3.5 is pretty old and doesn't support more modern ciphers.&lt;BR /&gt;Even our regular gateways, until recently, were using a fairly old version of OpenSSH.&lt;BR /&gt;We updated that (along with the Linux kernel) in R80.40.&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="s1"&gt;Getting this client updated on SMB would be an RFE.&lt;BR /&gt;Meanwhile, you will have to reconfigure your SSH server to support at least one cipher in common with the client.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 12 Feb 2021 20:07:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Is-it-possible-to-connect-to-my-switch-using-ssh-from-the/m-p/110681#M15218</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-02-12T20:07:38Z</dc:date>
    </item>
    <item>
      <title>Re: Is it possible to connect to my switch using ssh from the checkpoint cli ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Is-it-possible-to-connect-to-my-switch-using-ssh-from-the/m-p/239969#M46547</link>
      <description>&lt;P&gt;Yeah I know this is a pretty old thread, but FYI, on the SMB 700/1400 product line, you might want to use dbclient, the dropbear SSH client, instead of ssh/openssh.&lt;/P&gt;</description>
      <pubDate>Wed, 29 Jan 2025 13:31:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Is-it-possible-to-connect-to-my-switch-using-ssh-from-the/m-p/239969#M46547</guid>
      <dc:creator>nmelay2</dc:creator>
      <dc:date>2025-01-29T13:31:48Z</dc:date>
    </item>
    <item>
      <title>Re: Is it possible to connect to my switch using ssh from the checkpoint cli ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Is-it-possible-to-connect-to-my-switch-using-ssh-from-the/m-p/240014#M46558</link>
      <description>&lt;P&gt;Turns out dbclient will also work when connecting to a 700/1400 series appliance from a different host when SSH won't work because of the cipher configuration.&lt;BR /&gt;Great tip!&lt;/P&gt;</description>
      <pubDate>Wed, 29 Jan 2025 21:45:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Is-it-possible-to-connect-to-my-switch-using-ssh-from-the/m-p/240014#M46558</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-01-29T21:45:09Z</dc:date>
    </item>
  </channel>
</rss>

