pre-shared-key
No pre-shared MACsec key is configured on the interface.
dot1x-mka interface mode
The
no form of the command removes the pre-shared key from the interface.
MACsec commands are supported only on ICX 7650 and ICX 7850 devices.
The pre-shared key is required for communications between MACsec peers.
The following example configures MKA group test1 and assigns the MACsec pre-shared key with a name beginning with 96437a93 and with the value shown, to port 2, slot 3 on the first device in the stack.
device(config)#dot1x-mka-enable device(config-dot1x-mka)# mka-cfg-group test1 device(config-dot1x-mka-group-test1)# key-server-priority 5 device(config-dot1x-mka-group-test1)# macsec cipher-suite gcm-aes-128 device(config-dot1x-mka-group-test1)# macsec confidentiality-offset 30 device(config-dot1x-mka-group-test1)# exit device(config-dot1x-mka)# enable-mka ethernet 1/3/2 device(config-dot1x-mka-1/3/2)# mka-group test1 device(config-dot1x-mka-1/3/2)# pre-shared-key 135bd758b0ee5c11c55ff6ab19fdb199 key-name 96437a93ccf10d9dfe347846cce52c7d