09-28-2020 07:11 PM
We have a point to point connection running between two x460 switches running 16.2.5.4-patch1-12. We are going through a FISMA readiness audit and are being told that we need to encrypt that P2P connection between those devices. Is that possible natively or do we need to purchase different equipment and/or newer version of XOS or do we need a 3rd party solution to make that happen?
09-28-2020 08:00 PM
We also have a MPLS network connecting those two locations and two other sites. Could the same method be used to secure communications between all 4 sites? If so, would then create two connectivity associations with two different CAKs or do we need to use the same CAK for all associations?
09-28-2020 07:16 PM
Stephen,
MACSEC is an option.
Have a look here:
https://gtacknowledge.extremenetworks.com/articles/Q_A/Is-MACSec-802-1AE-feature-supported-in-EXOS
To be checked:
Mig