show dot1x-mka config
Shows the MACsec Key Agreement (MKA) configuration for the device.
Modes
User EXEC configuration mode
The
show dot1x-mka config command displays the following information:
Examples
The following example displays MACsec configuration information for a device with MACsec enabled. Two MKA groups, test1 and group1, are configured. Interfaces with either group of parameters applied could form secure channels because the groups have the same pre-shared key.
device(config-dot1x-mka-1/3/2)# show dot1x-mka config dot1x-mka-enable mka-cfg-group test1 key-server-priority 5 macsec cipher-suite gcm-aes-128 integrity-only macsec confidentiality-offset 30 macsec frame-validation strict mka-cfg-group group1 key-server-priority 20 macsec cipher-suite gcm-aes-128 macsec confidentiality-offset 30 enable-mka ethernet 1/3/2 mka-group test1 pre-shared-key 135bd758 b0ee5c11 c55ff6ab 19fdb199 key-name 96437a93 ccf10d9d fe347846 cce52c7d enable-mka ethernet 1/3/3 mka-group group1 pre-shared-key 135bd758 b0ee5c11 c55ff6ab 19fdb199 key-name 96437a93 ccf10d9d fe347846 cce52c7d enable-mka ethernet 1/3/4 mka-group group1 pre-shared-key 135bd758 b0ee5c11 c55ff6ab 19fdb199 key-name 96437a93 ccf10d9d fe347846 cce52c7d
History
| Release version | Command history |
|---|---|
| 08.0.20 | This command was introduced. |
| 08.0.30 | Support for this command was added on ICX 7450 devices. |
| 08.0.70 | Support for this command was added on ICX 7650 devices. |
| 08.0.90 | Support for this command was added on ICX 7850 devices. |
| 09.0.10b | This command was modified to add MKA keychain information. |