EasyManuals Logo

Cisco Catalyst 3650 Series User Manual

Cisco Catalyst 3650 Series
1108 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #823 background imageLoading...
Page #823 background image
Usage Guidelines
Use the sap pmk mode-list command to specify the authentication and encryption method.
The Security Association Protocol (SAP) is an encryption key derivation and exchange protocol based on a
draft version of the 802.11i IEEE protocol. SAP is used to establish and maintain the 802.1AE link-to-link
encryption (MACsec) between interfaces that support MACsec.
SAP and the Pairwise Master Key (PMK) can be manually configured between two interfaces with the sap
pmk mode-list command. When using 802.1X authentication, both sides (supplicant and authenticator) receive
the PMK and the MAC address of the peer's port from the Cisco Secure Access Control Server.
If a device is running CTS-aware software but the hardware is not CTS-capable, disallow encapsulation with
the sap mode-list no-encap command.
Examples
The following example shows how to configure SAP on a Gigabit Ethernet interface:
Switch# configure terminal
Switch(config)# interface gigabitethernet 2/1
Switch(config-if)# cts manual
Switch(config-if-cts-manual)# sap pmk FFFEE mode-list gcm-encrypt
Related Commands
DescriptionCommand
Enables an interface for CTS.cts manual
Enables Security Group Tag (SGT) propagation at
Layer 2 on Cisco TrustSec Security (CTS) interfaces.
propagate sgt (cts manual)
Displays Cisco TrustSec interface configuration
statistics.
show cts interface
Command Reference, Cisco IOS XE Everest 16.5.1a (Catalyst 3650 Switches)
797
sap mode-list (cts manual)

Table of Contents

Other manuals for Cisco Catalyst 3650 Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco Catalyst 3650 Series and is the answer not in the manual?

Cisco Catalyst 3650 Series Specifications

General IconGeneral
RAM4 GB
Flash Memory4 GB
Ports24 or 48 10/100/1000 Ethernet ports
Uplinks4 x 1G SFP or 4 x 10G SFP+ (depending on model)
StackingUp to 9 switches with StackWise-160
Layer SupportLayer 2, Layer 3
SoftwareCisco IOS Software
Power SupplyInternal power supply; optional redundant power supply available
Storage Temperature-40°F to 158°F (-40°C to 70°C)

Related product manuals