send-lifetime
send-lifetime
[
local
|
start
{
start-date
start-time
end
{
duration
|
infinite
|
end-date
end-time
}
}
]
no send-lifetime
The lifetime of send keys is not configured by default.
Key ID configuration mode
All participating routers must have Network Time Protocol (NTP) enabled before setting the lifetime on the keys.
If the tolerance value is configured, the start time of send key to become active is advanced (start time minus tolerance) and the end time is moved further ahead (end time plus tolerance) before the key expires, unless the end time is set to be infinite.
A key is considered valid even when it is in the tolerance period.
A key can be selectively active for the accept lifetime and not the send lifetime.
The key must be configured with a minimum time of ten seconds.
The
no form of the command negates the entire send lifetime and not merely individual options
of the duration.
The following example configures the time period during which the key on a keychain becomes active and valid to be sent.
device# configure terminal device(config)# keychain xprotocol device(config-keychain-xprotocol)# key-id 10 device(config-keychain-xprotocol-key-10)# send-lifetime start 10-10-17 10:10:10 end 10000
| Release | Command History |
|---|---|
| 08.0.70 | This command was introduced. |