Configuring Password Encryption; About Aes Password Encryption And Master Encryption Keys; Licensing Requirements For Password Encryption - Cisco Nexus 9000 Series Configuration Manual

Nx-os security configuration guide, release 9.x
Hide thumbs Also See for Nexus 9000 Series:
Table of Contents

Advertisement

Configuring Password Encryption

This chapter describes how to configure password encryption on Cisco NX-OS devices.
This chapter includes the following sections:

About AES Password Encryption and Master Encryption Keys

You can enable strong, reversible 128-bit Advanced Encryption Standard (AES) password encryption, also
known as type-6 encryption. To start using type-6 encryption, you must enable the AES password encryption
feature and configure a master encryption key, which is used to encrypt and decrypt passwords.
After you enable AES password encryption and configure a master key, all existing and newly created clear-text
passwords for supported applications (currently RADIUS and TACACS+) are stored in type-6 encrypted
format, unless you disable type-6 password encryption. You can also configure Cisco NX-OS to convert all
existing weakly encrypted passwords to type-6 encrypted passwords.
Related Topics

Licensing Requirements for Password Encryption

The following table shows the licensing requirements for this feature:
About AES Password Encryption and Master Encryption Keys, on page 413
Licensing Requirements for Password Encryption, on page 413
Guidelines and Limitations for Password Encryption, on page 414
Default Settings for Password Encryption, on page 414
Configuring Password Encryption, on page 414
Verifying the Password Encryption Configuration, on page 417
Configuration Examples for Password Encryption, on page 417
Configuring a Master Key and Enabling the AES Password Encryption
Configuring Global RADIUS
Configuring a Key for a Specific RADIUS
Configuring Global TACACS+
Configuring a Key for a Specific TACACS+
Configuring a Master Key and Enabling the AES Password Encryption
Cisco Nexus 9000 Series NX-OS Security Configuration Guide, Release 9.x
C H A P T E R
Keys, on page 46
Server, on page 47
Keys, on page 75
Server, on page 76
18
Feature, on page 414
Feature, on page 414
413

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents