
Getting Started With IPsec
304111-B Rev 00
2-7
To enter an initial NPK and a seed for encryption:
1.
If necessary, create a password for the Technician Interface secure shell
by entering:
kpassword
<password>
<password>
is an alphanumeric string of up to 16 characters.
2.
At the Technician Interface prompt, enter the secure shell by issuing the
following command:
ksession
If you issue the ksession command before setting a password, you will be
prompted to do so. Use the
kpassword command in step 1.
The prompt changes to
SSHELL.
3.
Begin generating the encryption seed by entering:
kseed
The secure shell prompts you for a random seed value.
4.
Type a random set of keystrokes. The secure shell informs you when you
have typed the required number of keystrokes.
5.
Enter the following command:
kset npk 0x
<NPK_value>
<NPK_value>
is the 16-digit hexadecimal NPK value that you assigned to the
router that you are configuring. For more information, see “
Generating
NPKs” on page 2-5.
The
kset npk command stores your NPK value in the router NVRAM and
calculates a hash of this value that it stores in the router MIB.
6.
Save the configuration by entering:
save config
<config_file_name>
<
config_file_name
> is the name you want to assign to the configuration file.
You cannot exit the secure shell without saving the configuration. This is
necessary so that upon rebooting the router with the saved configuration file,
the hash of the NPK in the MIB corresponds with the NPK in NVRAM.
7.
Exit the secure shell by entering:
kexit
Comentários a estes Manuais