688| PAPIEnhanced Security AOS-W 6.5.3.x| User Guide
In the CLI
By default, the PAPI Enhanced Security configuration is disabled. If there is no configured key, the default key
is used for authentication.
(config) #papi-security
(host) (PAPI Security Profile) #?
enhanced-security Enable or disable the use of enhanced security mode
key Key used to authenticate messages between systems
no Delete Command
Verifying PAPIEnhanced Security
To verify the status of the PAPI Enhanced Security configuration, execute the following command:
(host) (config) #show papi-security
PAPI Security Profile
---------------------
Parameter Value
--------- -----
PAPI Key ********
Enhanced security mode Disabled
To view the statistics of transmitted, received, and denied messages, three additional output parameters are
introduced in the show ipc statistics command output.
n Tx Sign—the number of messages which were signed before transmitting
n Rx Sign—the number of messages validated through digest validation
n Rx Denied—the number of messages denied due to incorrect digest
(host) #show ipc statistics app-ap sapd ap-name <ap-name>
Local Statistics
To application Tx Msg Tx Blk Tx Ret Tx Fail Rx Ack Rx Msg Rx Drop Rx Err
AP LLDP Service 0 0 0 0 0 186 0 0
AP STM 31 0 0 0 12 0 0 0
RF Client 2 0 0 0 2 1 0 0
BLE Daemon AP 3 0 0 0 2 4 0 0
Nanny 2 0 0 0 2 0 0 0
Tx Ack Tx Sign Rx Sign Rx Denied
0 0 0 0
0 0 0 0
0 0 0 0
0 0 0 0
0 0 0 0
.
.
.
Allocated Buffers 0
Static Buffers 1
Static Buffer Size 1476