Create key chain objects that securely manage and organize authentication keys for devices on your network.
Use this task when you need to define and manage key chains for secure authentication. Key chains enable secure key exchange, helping prevent unauthorized access and ensuring reliable communication between devices.
Procedure
Step 1 | Choose . |
Step 2 | Choose Key Chain from the list of object types, and then click Add Key Chain. |
Step 3 | In the Add Key Chain Object dialog box, do the following:
-
Enter a name for the key chain in the Name field.
The name must start with an underscore or letter, followed by alphanumeric characters or one of the following special characters: hyphen, underscore, plus sign, or period.
-
Add a key to the key chain, click Add.
-
Specify the key identifier (between 0 and 255; use 0 only to signal an invalid key) in the Key ID field.
-
The Algorithm field and the Crypto Encryption Type field displays the supported algorithm and the encryption type, namely MD5 and Plain Text.
-
Enter the password in the Crypto Key String field and confirm it in the appropriate field. Passwords can be up to 80 characters and must not be a single digit or start with a digit followed by a space (e.g., "0 pass" or "1" are invalid).
-
Set the Accept Lifetime and Send Lifetime values to define the time intervals for key exchange. The times default to UTC. When specifying start and end lifetimes, ensure that the start is earlier than the end and is never left blank if the end is entered.
-
Click Add to create keys. Create at least two keys with overlapping lifetimes to prevent loss of secure communication.
Repeat steps 3b to 3g to create keys.
|
Step 4 | Manage overrides for the object:
- If you want to allow overrides for this object, check the
Allow Overrides check box; see
Allow object overrides.
- If you want to add override values to this object, expand
the Override section and click Add;
see Add object overrides.
|
Step 5 | Click Save. |
After you save, you can use the key chain object in device authentication and secure communication configurations.