Black Box ET0100A, ET1000A, ET0010A manual To add a multicast policy, Multicast policy entries

Models: EncrypTight ET0100A ET0010A ET1000A

1 352
Download 352 pages 21.02 Kb
Page 199
Image 199

Creating Distributed Key Policies

To add a multicast policy:

1 In the Policy view, right-click anywhere in the view and click Add Multicast Policy.

2Double click the new policy name added to the policy list.

3Create the policy in the Multicast Policy editor as described in Table 50. The policy editor is shown in Figure 77.

4Click Save when complete.

Table 50 Multicast policy entries

Field

Description

Name

Enter a unique name to identify the policy. Names can be 1 - 40 characters in

 

length. Alphanumeric characters and spaces are valid. The special characters

 

<, >, &, ,“ *, ?, /, \, : and cannot be used in the policy name. Names are not

 

case sensitive.

Priority

Enter the priority for this policy from 1 to 65000. PEPs enforce policies in

 

descending priority order with the highest priority number processed first.

Renew Keys/

Specifies the lifetime of the keys and policies, and the frequency at which the

Refresh

keys are regenerated and policies’ lifetimes are updated on the PEPs.

Lifetime

Regenerate keys and update policies either at a specified interval in hours or

 

daily at a specified time. Click either Hours or Daily.

 

• Hours - enter the re-key interval in hours between 0 and 65535 hours. 0

 

hours causes keys and policies to never expire and never update. Use 0

 

hours for drop and clear policy types.

 

• Daily - enter the re-key time using the 24 hour system clock set to the

 

required local time of the ETPM workstation. The re-key time will translate to

 

the local times of the ETKMSs and PEPs that might be located in other time

 

zones.

Type

Specifies the action applied to packets that match the protocol and networks

 

included in this policy.

 

• Drop - drops all packets matching this policy.

 

• Bypass - passes all packets matching this policy in the clear.

 

• IPSec - encrypts or decrypts all packets matching this policy.

 

 

200

EncrypTight User Guide

Page 199
Image 199
Black Box ET0100A, ET1000A, ET0010A, EncrypTight manual To add a multicast policy, Multicast policy entries