IPSec for management traffic
An IPSec for management-plane feature is a platform-native capability that
-
supports management protocols, including SSH, SNMP, syslog, and NETCONF.
-
uses IKEv2 and IPSec with Tunnel MA and associated virtual tunnel interfaces to provide encryption on the route processor and support VRF-aware operation, and
-
integrates with IOS XR tunnel infrastructure and cryptographic profiles to protect management traffic.
IPSec management traffic is processed on the route processor and is not a line-card capability. This release supports IPv4 management traffic only.
|
Feature Name |
Release Information |
Feature Description |
|---|---|---|
|
IPSec for management traffic |
Release 26.3.1 |
Introduced in this release on: NCS 5500 fixed port routers (select variants only*); NCS 5700 fixed port routers (select variants only*); NCS 5500 modular routers IPSec for management traffic protects eligible management traffic generated by or destined for the router. The feature uses IKEv2, IPSec, Tunnel MA, and associated virtual tunnel interfaces. *This feature is supported on NCS 5500:
*This feature is supported on NCS 5700:
|
Feedback