How do I configure a global TCP key chain?

Steps
 

Choose Administration→Security→TCP KeyChains from the NFM-P main menu. The TCP KeyChains form opens.


Click Create or choose a key chain and click Properties. The KeyChain Create|Edit form opens.


Configure the required parameters.


Click on the KeyChain Key tab.


Click Create or choose a key chain key and click Properties. The KeyChain Key Create|Edit form opens.


CAUTION 

CAUTION

Service Disruption

You must ensure bidirectional communication between NEs.

It is recommended that you choose the Send-receive option for the Key Direction parameter.

Configure the required parameters.

The End Time parameter is configurable only if the Key Direction parameter is set to Receive.

Note: You must set the Begin Time parameter to a time after the beginning of the current UNIX epoch. Do not set the parameter to 1970/01/01 00:00(TZ=UTC) or earlier.

Note: The NFM-P generates a random default value for the Key parameter. For greater security, it is recommended that you accept this value rather than manually enter a value.

You cannot subsequently delete a TCP key chain or TCP key when the Admin State parameter for the key chain or key is set to In Service.


Save and close the forms.

End of steps