To configure a rekeying schedule

Purpose

Perform this procedure to configure PSK hitless rekeying.

A rekeying operation has the following stages:

  • delete the old, inactive key, if it exists

  • create and deploy a new key

  • set the new key as active

When a rekeying operation is completed, the new key is displayed under the PSK list in the connectivity association. The status of the operation is displayed on the Rekey Schedule form Results tab. The status of the last operation is displayed on the Connectivity Association form General tab.

Steps
 

Choose Manage → MACsec from the NFM-P main menu. The Manage MACsec form opens.


Choose a connectivity association and click Properties. The Connectivity Association (Edit) form opens.


Click on the Rekey Schedule tab.


Click Create. The Rekey Schedule (Create) form opens.


Configure the required parameters.


In the Schedule panel, click Select and use the form that opens to choose or create a schedule.


Click OK. A rekeying scheduled task is created.


Close the forms.

End of steps