从 ONTAP 9.7 升级到 9.8 后, SSH 连接失败
适用于
- 升级到 9.8RC1 后的 ONTAP
- 安全 Shell ( SSH )管理
- 密钥交换( Key Exchange , KEX )算法
问题
- 无法通过 SSH 登录到集群 -客户端显示:
ssh_exchange_identification: Connection closed by remote host.
- Messages.log 显示:
Mon Nov 09 2020 17:24:19 +01:00 [auth:error] 1 2020-11-09T17:24:19.300385+01:00 node-01 sshd 20346 - - error: Unsupported KEX algorithm "diffie-hellman-group14-sha1"
Mon Nov 09 2020 17:24:21 +01:00 [auth:CRITICAL] 1 2020-11-09T17:24:21.042063+01:00 node-01 sshd 20426 - - fatal: /etc/ssh/sshd_config line 101: Bad SSH2 KexAlgorithms 'diffie-hellman-group-exchange-sha256,diffie-hellman-group-exchange-sha1,diffie-hellman-group14-sha1,ecdh-sha2-nistp256,ecdh-sha2-nistp384,ecdh-sha2-nistp521'.
- System Manager ( HTTPS 访问) 不会受到影响并按预期工作