Juniper Networks J-Series manual Decrypting Configuration Files, Modifying the Encryption Key

Models: J-Series

1 332
Download 332 pages 610 b
Page 227
Image 227

Chapter 11: Managing Files

user@host# set encrypt-configuration-files

7.To begin the encryption process, commit the configuration.

user@host# commit

commit complete

Decrypting Configuration Files

To disable the encryption of configuration files on a Services Router and make them readable to all:

1.Enter operational mode in the CLI.

2.To verify your permission to decrypt configuration files on this router, enter the following command and the encryption key for the router:

user@host> request system set-encryption-key

Enter EEPROM stored encryption key:

Verifying EEPROM stored encryption key:

3.At the second prompt, reenter the encryption key.

4.Enter configuration mode in the CLI.

5.To enable configuration file decryption, enter the following commands:

user@host# edit system

user@host# set no-encrypt-configuration-files

6.To begin the decryption process, commit the configuration.

user@host# commit

commit complete

Modifying the Encryption Key

When you modify the encryption key, the configuration files are decrypted and then reencrypted with the new encryption key.

Encrypting and Decrypting Configuration Files 205

Page 227
Image 227
Juniper Networks J-Series manual Decrypting Configuration Files, Modifying the Encryption Key