Users Guide

Table Of Contents
Switch Management Commands 2122
Default Configuration
The default cipher suite is gcm-aes-128.
Command Mode
MACsec Policy Configuration mode
User Guidelines
The first part of the cipher suite label indicates the cipher mode of operation,
for example, Galois Counter Mode (GCM). The second part of the label
indicates the cipher suite, that is, Advanced Encryption Standard (AES).
XPH, if present, indicates extended packet numbering is used. The number
suffix indicates the key length.
Command History
Command introduced in version 6.7.0 firmware.
confidentiality-offset
Use this command to configure where to start encrypting the data packet. Use
the no form of the command to configure the offset to the default.
Syntax
confidentiality-offset {0 | 30 | 50}
no confidentiality-offset
0 — Begin encryption at octet 0 of the data packet.
30 — Begin encryption at octet 30 of the data packet.
50 — Begin encryption at octet 50 of the data packet.
Default Configuration
The default offset is 0 octets.
Command Mode
MACsec Policy Configuration mode