• rekey-limit: volume-based rekey threshold for an SSH session. The range is from 1 to 4096 to megabytes. The default is 1024megabytes.ExamplesThe following example configures the time-based rekey threshold for an SSH session to 30 minutes.Dell(conf)#ip ssh rekey time 30The following example configures the volume-based rekey threshold for an SSH session to 4096 megabytes.Dell(conf)#ip ssh rekey volume 4096Configuring the SSH Server Key Exchange AlgorithmTo configure the key exchange algorithm for the SSH server, use the ip ssh server kex key-exchange-algorithm commandin CONFIGURATION mode.key-exchange-algorithm : Enter a space-delimited list of key exchange algorithms that will be used by the SSH server.The following key exchange algorithms are available:• diffie-hellman-group-exchange-sha1• diffie-hellman-group1-sha1• diffie-hellman-group14-sha1The default key exchange algorithms are the following:• diffie-hellman-group-exchange-sha1• diffie-hellman-group1-sha1• diffie-hellman-group14-sha1When FIPS is enabled, the default is diffie-hellman-group14-sha1.Example of Configuring a Key Exchange AlgorithmThe following example shows you how to configure a key exchange algorithm.Dell(conf)# ip ssh server kex diffie-hellman-group-exchange-sha1 diffie-hellman-group14-sha1Configuring the HMAC Algorithm for the SSH ServerTo configure the HMAC algorithm for the SSH server, use the ip ssh server mac hmac-algorithm command inCONFIGURATION mode.hmac-algorithm: Enter a space-delimited list of keyed-hash message authentication code (HMAC) algorithms supported by the SSHserver.The following HMAC algorithms are available:• hmac-md5• hmac-md5-96• hmac-sha1• hmac-sha1-96Security 775