cipher-suite
Configures the cipher suite for encrypting traffic with MACsec in the MAcsec policy configuration mode.
The first portion of the cipher name indicates the encryption method, the second portion indicates the hash or integrity algorithm, and the third portion indicates the length of the cipher (128/256).
To disable this feature, use the no form of this command.
cipher-suite encryption_ suite
Syntax Description
encryption_suite |
The GCM encryption method that uses the AES encryption algorithm. The available encryption suites are:
|
Command Default
The default cipher suite chosen for encryption is GCM-AES-XPN-256.
Command Modes
MACsec policy configuration.
Command History
Release |
Modification |
---|---|
Release 5.3.2 |
This command was introduced. |
Task ID
Task ID |
Operations |
---|---|
system |
read, write |
Examples
The following example shows how to use the cipher-suite command:
RP/0/RSP0/CPU0:router# configure t
RP/0/RSP0/CPU0:router(config)# macsec-policy mac_policy
RP/0/RSP0/CPU0:router(config-mac_policy)# cipher-suite GCM-AES-XPN-256
RP/0/RSP0/CPU0:router(config-mac_policy)#