Key chains are sequences of keys. Users can configure key chains and can use keys with features that secure communications with other devices by using key-based authentication and optionally perform periodic key rotations within the chain. The configured keychain can be used for any of the supported routing protocols.
device# keychain ospfvlkc
device(config)# keychain keychain1 device(config-keychain1)#
device(config-keychain1)# accept-tolerance 100
device(config-keychain1)# key 100 device(config-key-100)#
device(config-key-100)# key-string Mystring1
device(config-key-100)# accept-lifetime local start-time 13:40:40|12/07/2018 end-time 11:40:40|14/07/2018
device(config-key-100)# key-algorithm ?
The following is an example of configuring a single keychain and key.
device# configure terminal device(config)# keychain keychain1 device(config-keychain1)# accept-tolerance 500 device(config-keychain1)# key 100 device(config-key-100)# key-string Mystring1 device(config--key-100)# accept-lifetime local start-time 22:57:40|07/04/2018 end-time 23:59:59|12/04/2018 device(config--key-100)# do show running-config keychain keychain1 keychain keychain1 accept-tolerance 500 key 1 key-string $9$XutLBELmbQ765dsLycIP/A== accept-lifetime gmt start-time 23:00:50|07/04/2018 end-time 23:59:59|12/04/2018 key-algorithm HMAC-SHA-256 ! device(config-key-100)# exit device(config)#