macsec cipher-suite

Configures the MACsec cipher suite on a switch port for enhanced traffic security. MACsec supports two cipher suites, the GCM-AES-128 with a maximum key length of 128 bits and the GCM-AES-256 with a maximum key length of 256 bits.

Configuring a MACsec cipher suite is optional and is not supported on all hardware platforms.

Syntax

Command Parameters

{gcm-aes-128 | gcm-aes-256}
Specifies the MACsec encryption cipher suite.

Default

The default is the 128-bit cipher suite.

Command Mode

GigabitEthernet Interface Configuration

Usage Guidelines

This command does not apply to all hardware platforms. For more information about feature support, see Fabric Engine and VOSS Feature Support Matrix.