Skip to content

Client-Side Workarounds

Option 1:Configure the client to use ssh-dss

  1. Verify that the client supports ssh-dss.

    $ ssh -Q key
    
  2. Specify the host key algorithm when connecting.

    $ ssh -o HostKeyAlgorithms=+ssh-dss user@server

If the client supports ssh-dss, the connection should succeed. Newer OpenSSH versions may not support the deprecated ssh-dss host key algorithm.

Option 2: Modify the client configuration to accept ssh-dss

  1. Verify that the client supports ssh-dss.

    $ ssh -Q key
    
  2. Add the following line to the client ssh_config file.

    HostKeyAlgorithms +ssh-dss
    

Note

Ensure the line above is not commented out.