accept-lifetime
accept-lifetime
[
local
|
start
{
start-date
start-time
end
{
duration
|
infinite
|
end-date
end-time
}
}
]
no accept-lifetime
The lifetime of accept keys is not configured by default.
Key ID configuration mode
All participating routers must have Network Time Protocol (NTP) enabled before setting the lifetime on the keys.
If the tolerance value is configured, the start time of the accept key to become active is advanced (start time minus tolerance) and the end time is moved further ahead (end time plus tolerance) before the key expires, unless the end-time is set to be infinite.
A key is considered valid even when it is in the tolerance period.
A key can be selectively active for the send lifetime and not the accept lifetime.
The key must be configured with a minimum time of ten seconds.
The
no form of the command negates the entire accept lifetime and not merely individual
options of the duration.
The following example configures the time period during which the key on a keychain becomes active and is received as a valid key.
device# configure terminal device(config)# keychain xprotocol device(config-keychain-xprotocol)# key-id 10 device(config-keychain-xprotocol-key-10)# accept-lifetime start 10-10-17 10:10:10 end 10000
| Release version | Command history |
|---|---|
| 08.0.70 | This command was introduced. |