1-1
1
Public Key Configuration
When configuring public keys, go to these sections for information you are interested in:
z
Asymmetric Key Algorithm Overview
z
Configuring the Local Asymmetric Key Pair
z
Configuring the Public Key of a Peer
z
Displaying and Maintaining Public Keys
z
Public Key Configuration Examples
Asymmetric Key Algorithm Overview
Basic Concepts
z
Algorithm: A set of transformation rules for encryption and decryption.
z
Plain text: Information without being encrypted.
z
Cipher text: Encrypted information.
z
Key: A string of characters that controls the transformation between plain text and cipher text. It
participates in both the encryption and decryption.
Key Algorithm Types
As shown in
Figure 1-1
, the information is encrypted before being sent for confidentiality. The cipher text
is transmitted in the network, and then is decrypted by the receiver to obtain the original pain text.
Figure 1-1
Encryption and decryption
There are two types of key algorithms, based on whether the keys for encryption and decryption are the
same:
z
Symmetric key algorithm: The same key is used for both encryption and decryption. Commonly
used symmetric key algorithms include Advanced Encryption Standard (AES) and Data Encryption
Standard (DES).
z
Asymmetric key algorithm: Both ends have their own key pair, consisting of a private key and a
public key. The private key is kept secret while the public key may be distributed widely. The
information encrypted with the public key/private key can be decrypted only with the corresponding
private key/public key; however, the private key cannot be practically derived from the public key.
Asymmetric Key Algorithm Applications
Asymmetric key algorithms can be used for encryption/decryption and digital signature:
Summary of Contents for S7902E
Page 82: ...1 4 DeviceA interface tunnel 1 DeviceA Tunnel1 service loopback group 1 ...
Page 200: ...1 11 DeviceB display vlan dynamic No dynamic vlans exist ...
Page 598: ...ii ...
Page 1757: ...4 9 ...
Page 1770: ...6 4 ...
Page 2017: ...2 11 Figure 2 3 SFTP client interface ...
Page 2238: ...1 16 DeviceA cfd linktrace service instance 1 mep 1001 target mep 4002 ...