
Site Manager Parameters
308628-15.0 Rev 00
A-19
Parameter: Tcp Md5 Key Storage
Path: Configuration Manager > Protocols > IP > BGP > Peers > BGP Peers
Default: None if TCP Authentication is None.
Clear Text if TCP Authentication is MD5.
Options: Clear Text
|
Encrypted
Function: Specifies whether the MD5 authentication key is stored as clear text or
encrypted.
Instructions: Accept the default value, Clear Text, to specify no encryption for the stored key.
Set this parameter to Encrypted to store the MD5 key in encrypted form. Setting
this parameter to Encrypted also makes the NPK parameter visible.
MIB Object ID: 1.3.6.1.4.1.18.3.5.3.2.5.1.2.1.46
Parameter: Node Protection Key
Path: Configuration Manager > Protocols > IP > BGP > Peers > BGP Peers
Default: An 8-byte value. If TCP Authentication is MD5 and Tcp Md5 Key Storage is
Encrypted, this value is the one configured as the node protection key in the
wf_key_file_path environment variable.
Not used if TCP Authentication is None.
Options: ASCII character string
Function: Used as a cryptographic key for protecting sensitive MIB objects. The NPK
value is stored in nonvolatile memory (NVRAM). The IP security software
performs a hash of the NPK value, which it places in a special MIB attribute.
The NPK value stored in NVRAM is unique to the router. It is used to encrypt
the cipher and integrity keys before they are stored in the router MIB. In the
context of BGP-4, if the Tcp Authentication parameter is MD5 and the Tcp Md5
Key Storage parameter is Encrypted, the value of the NPK is used to encrypt the
Tcp Md5 Key value.
Instructions: Enter a 16-digit hexadecimal value. (Enter the prefix 0x before the 16 digits.)
This value is configurable with the secure shell of the Technician Interface, as
described in Configuring IPsec Services.
MIB Object ID: None Available
Comentarios a estos manuales