4.10.2
MACsec MKA-Schlüssel-Konfiguration
[ Netzsicherheit > MACsec > MKA-Schlüssel-Konfiguration ]
This dialog lets you specify the parameters for the individual Pre-shared Keys (PSK) used by the
MACsec Key Agreement (MKA) protocol. The settings in this dialog are used by the MKA policy
dialog.
The device offers to set up a maximum of 8 PSK profiles for MACsec. Each PSK profile has a name
and attributes. The attributes are:
•
The cryptographic algorithm to be used for that PSK
•
The key string (the key value itself)
•
A time range (optional) during which the PSK is considered valid
In a given key chain, there can be multiple PSK profiles.
Anmerkung:
You can only modify, add or delete a PSK profile of a given key chain if the relevant key chain is
not currently used. That is, if the relevant key chain is not referred to in the Port Configuration
dialog.
If you want to modify, add or delete a PSK profile of a given key chain that is active, first deactivate
the key chain by removing its name from the relevant table row in the Port Configuration dialog, in
the column MACsec PSK keychain. Perform the modifications, and then reactivate the key chain.
Table
For information on how to customize the appearance of the table, see
Seite
18.
Buttons
Hinzufügen
Opens the
protocol. You can create a maximum of 8 key chains.
•
In the Key chain name field, you specify the name of an existing key chain or specify a new key
chain name. The key chain name must be an alphanumeric string of 1..16 characters.
•
In the Key name field, you specify the name of a new key for the given key chain name.
The key name must be an hexadecimal string of 2..64 digits, with an even length.
The key name must be unique in the scope of the associated key chain.
Löschen
Removes the selected table row.
RM GUI GRS106
Release 10.3 04/2025
window to create a new key chain used by the MACsec Key Agreement (MKA)
Erstellen
[ Netzsicherheit > MACsec > MKA-Schlüssel-Konfiguration ]
Netzsicherheit
„Arbeiten mit Tabellen" auf
253