EasyManua.ls Logo

Cisco Nexus 7000 Series - Sak-Expiry-Time

Cisco Nexus 7000 Series
1018 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
sak-expiry-time
To set an expiry time for a forced Secure Association Key (SAK) rekey, use the sak-expiry-time command.
To reset to the default expiry time, use the no form of this command.
sak-expiry-time time
no sak-expiry-time time
Syntax Description
Time, in seconds, to force a SAK rekey. The range
is 1-2592000. The default is pn-exhaust.
time
Command Default
The default value is pn-exhaust.
Command Modes
MACsec policy configuration (config-macsec-policy)
Command History
ModificationRelease
This command was introduced.8.2(1)
Usage Guidelines
To use this command, you should enable the MKA feature first.
Examples
This example shows how to set the SAK expiry time:
switch# configure terminal
switch(config)# macsec policy p1
switch(config-macsec-policy)# sak-expiry-time 60
Related Commands
DescriptionCommand
Configures the cipher suite for encrypting traffic with
MACsec.
cipher suite
Configures the confidentiality offset for MKA
encryption.
conf-offset
Enables the MKA feature.feature mka
Creates a key or enters the configuration mode of an
existing key.
key
Cisco Nexus 7000 Series Security Command Reference
640
S Commands
sak-expiry-time

Table of Contents

Other manuals for Cisco Nexus 7000 Series

Related product manuals