AES Encryption Upgrade
172
15 AES Encryption Upgrade
The Motorola PTP 500 Series bridges support link encryption using the NIST approved Advanced
Encryption Standard, HFIPS-197 UTH. This standard specifies AES (Rijndael) as a FIPS-approved
symmetric encryption algorithm that may be used by U.S. Government organizations (and others)
to protect sensitive information.
Link Encryption is not available in the standard PTP 500 Series system. A license key to enable link
encryption can be purchased from your Motorola Point-to-Point Distributor or Solutions Provider.
AES can be activated on receipt of the activation on the Motorola Systems Support Page.
There are two levels of encryption that are available to purchase:
•
128-bit
•
128 and 256-bit
Option 1 allows the user to encrypt all traffic sent over the wireless link using 128-bit encryption.
Option 2 allows the user to encrypt traffic using either 128 or 256-bit encryption. The configuration
process for both encryption variants is identical except for the selection of algorithm. The following
configuration example is for a 256-bit encryption key.
15.1
Configuring Link Encryption
After purchasing AES encryption for the PTP 500 Series wireless link, two new license keys will
be issued, one for each end of the wireless link. The following configuration process gives a step
by step guide to enabling AES link encryption on a PTP 500 Series bridge.
15.1.1
License Keys
The first step when configuring link encryption is to enter the new license keys in both 500 Series
wireless units.
shows the license key data entry screen. This screen can only be accessed by the
system administrator. If you do not have access to the PTP 500 Series system administration
pages then please contact your designated system administrator.
It must be noted that configuring link encryption will necessitate a 500 Series bridge service outage.
Therefore it is recommended that the configuration process be scheduled during an appropriate
period of low link utilization. Motorola recommends the following process for entering new license
keys and minimizing service outage.
1. Open two browsers, one for each end of the link
2. Navigate to the ‘License Key’ data entry page for each end of the link
3. Enter the license keys and click the ‘Validate license key’ button at each end of the link. This
will allow the software to validate the license key prior to the system reset. (DO NOT CLICK
ARE YOU SURE POPUP DIALOG)
Summary of Contents for MOTOWI 4
Page 1: ...PTP 500 Series User Guide phn 1115 000v001 ...
Page 74: ...Web Page Reference 74 Figure 37 Save Configuration File Screen ...
Page 100: ...Web Page Reference 100 Figure 59 Spectrum Management as seen from the Master ...
Page 112: ...Web Page Reference 112 Figure 68 Remote Management ...
Page 197: ...Glossary 197 UTP Unshielded Twisted Pair VLAN Virtual Local Area Network ...