Configuring Keychain Management
Default Settings for Keychain Management
This table lists the default settings for Cisco NX-OS keychain management parameters.
Table 36: Default Keychain Management Parameters
Parameters
Key chains
Keys
Accept lifetime
Send lifetime
Key-string entry encryption
Configuring Keychain Management
Creating a Keychain
You can create a keychain on the device. A new keychain contains no keys.
SUMMARY STEPS
1. configure terminal
2. key chain name
3. (Optional) show key chain name
4. (Optional) copy running-config startup-config
DETAILED STEPS
Command or Action
Step 1
configure terminal
Example:
switch# configure terminal
switch(config)#
Step 2
key chain name
Example:
switch(config)# key chain bgp-keys
switch(config-keychain)#
Step 3
(Optional) show key chain name
Example:
Default
No keychain exists by default.
No keys are created by default when you create a new keychain.
Always valid.
Always valid.
Unencrypted.
Purpose
Enters global configuration mode.
Creates the keychain and enters keychain configuration
mode.
Displays the keychain configuration.
Cisco Nexus 9000 Series NX-OS Security Configuration Guide, Release 9.x
Default Settings for Keychain Management
421