Cipher Suite - Cisco Nexus 7000 Series Command Reference Manual

Hide thumbs Also See for Nexus 7000 Series:
Table of Contents

Advertisement

cipher suite

cipher suite
To configure a cipher suite for encrypting traffic with MACsec, use the cipher suite command. To reset the
cipher suite to its default value, use the no form of this command.
cipher suite {GCM-AES-128 | GCM-AES-256 | GCM-AES-XPN-128 | GCM-AES-XPN-256}
no cipher suite {GCM-AES-128 | GCM-AES-256 | GCM-AES-XPN-128 | GCM-AES-XPN-256}
Syntax Description
GCM-AES-128
GCM-AES-256
GCM-AES-XPN-128
GCM-AES-XPN-256
1
Command Default
The default cipher suite chosen for encryption is GCM-AES-XPN-256.
Command Modes
MACsec policy configuration (config-macsec-policy)
Command History
Release
8.2(1)
Usage Guidelines
To use this command, you should enable the MACsec Key Agreement (MKA) feature first.
1
GCM indicates the encryption method.
AES and AES-XPN indicates the hash or integrity algorithm.
The numeral indicates the length of the cipher.
Cisco Nexus 7000 Series Security Command Reference
56
Specifies the Galois/Counter Mode (GCM) encryption
method, Advanced Encryption Standard (AES)
encryption algorithm, and 128-bit encryption.
Specifies the GCM encryption method, AES
encryption algorithm, and 256-bit encryption.
Specifies the GCM encryption method, AES
encryption algorithm that uses Extended Packet
Numbering (XPN) of 64 bits, and 128-bit encryption.
Specifies the GCM encryption method, AES
encryption algorithm that uses Extended Packet
Numbering (XPN) of 64 bits, and 256-bit encryption.
Modification
This command was introduced.
C Commands

Advertisement

Table of Contents
loading

Table of Contents