495
Examples
# Specify the rekey key pair as
mykey
for the GDOI KS group
abc
.
<Sysname> system-view
[Sysname]gdoi ks group abc
[Sysname-gdoi-ks-group-abc] rekey authentication public-key rsa mykey
Related commands
gdoi ks group
rekey encryption
Use
rekey encryption
to specify the rekey encryption algorithm.
Use
undo
rekey encryption
to restore the default.
Syntax
rekey encryption
{
3des-cbc
|
aes-cbc-128
|
aes-cbc-192
|
aes-cbc-256
|
des-cbc
}
undo rekey encryption
Default
The encryption algorithm is
3des-cbc
.
Views
GDOI KS group view
Default command level
2: System level
Usage guidelines
If you execute this command multiple times, the most recent configuration takes effect.
Examples
# Configure the rekey encryption algorithm as AES-CBC-192 for the GDOI KS group
abc
.
<Sysname> system-view
[Sysname] gdoi ks group abc
[Sysname-gdoi-ks-group-abc] rekey encryption aes-cbc-192
Related commands
gdoi ks group
rekey lifetime
Use
rekey lifetime
to configure the KEK lifetime.
Use
undo rekey lifetime
to restore the default.
Syntax
rekey lifetime seconds
number-of-seconds
undo rekey lifetime seconds
Default
The KEK lifetime is 86400 seconds.