Troubleshooting Macsec - HPE FlexNetwork 5510 HI Series Security Configuration Manual

Hide thumbs Also See for FlexNetwork 5510 HI Series:
Table of Contents

Advertisement

Current SAK KI (KN)
Previous SAK status
Previous SAK AN
Previous SAK KI (KN)
Live peer list:
MI
85E004AF49934720AC5131D3

Troubleshooting MACsec

Symptom
The devices cannot establish MKA sessions when the following conditions exist:
The link connecting the devices is up.
The ports at the ends of the link are MACsec capable.
Analysis
The symptom might occur for the following reasons:
The ports at the link are not enabled with MKA.
A port at the link is not configured with a preshared key or configured with a preshared key
different from the peer.
Solution
To resolve the problem:
1.
Enter interface view.
2.
Use the display this command to check the MACsec configuration:
If MKA is not enabled on the port, execute the mka enable command.
If a preshared key is not configured or the preshared key is different from the peer, use the
mka psk command to configure a preshared key. Make sure the preshared key is the same
as the preshared key on the peer.
3.
If the problem persists, contact Hewlett Packard Enterprise Support.
: 85E004AF49934720AC5131D300000003 (3)
: N/A
: N/A
: N/A
MN
Priority
1216
5
476
Capability
Rx-SCI
3
00E00100000A0006

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents