677
Examples
# Set the MACsec confidentiality offset to 30 bytes on GigabitEthernet 1/0/1.
<Sysname> system-view
[Sysname] interface gigabitethernet 1/0/1
[Sysname-GigabitEthernet1/0/1] macsec confidentiality-offset 30
Related commands
confidentiality-offset
display macsec
display mka session
mka apply policy
macsec desire
Use
macsec desire
to enable MACsec desire. The port expects MACsec protection for outbound
frames.
Use
undo macsec desire
to disable MACsec desire.
Syntax
macsec desire
undo
macsec desire
Default
MACsec desire is disabled. A port does not expect MACsec protection for outbound frames.
Views
Ethernet interface view
Predefined user roles
network-admin
mdc-admin
Usage guidelines
This command allows a MACsec port to expect MACsec protection for outbound frames. The key
server determines whether MACsec protects the outbound frames.
MACsec protects the outbound frames of the port when the following requirements are met:
•
The key server is MACsec capable.
•
Both the local participant and its peer are MACsec capable.
•
A minimum of one participant is enabled with the MACsec desire feature.
Examples
# Enable MACsec desire on GigabitEthernet 1/0/1.
<Sysname> system-view
[Sysname] interface gigabitethernet 1/0/1
[Sysname-GigabitEthernet1/0/1] macsec desire
macsec mka-session log enable
Use
macsec mka-session log enable
to enable MKA session logging.
Содержание FlexNetwork 7500 Series
Страница 350: ...335 Related commands display port security port security enable ...
Страница 379: ...364 Sysname system view Sysname keychain abc mode absolute Sysname keychain abc tcp kind 252 ...
Страница 519: ...504 Related commands display ssh2 algorithm ssh2 algorithm cipher ssh2 algorithm key exchange ssh2 algorithm mac ...