security-config

The security-config configuration element allows you to configure global TLS parameters.

Parameters

ocsr-monitoring-traps
Enable ocsr monitoring traps
  • Default: enabled
  • Values: enabled | disabled
srtp-msm-password
The shared secret used to derive the key for encrypting SDES keying material that is placed in the media attribute of an SDP media description.
srtp-msm-attr-name
Specifies the name of the media attribute used to convey SDES keying information within a SDP media description.
  • Default: X-acme-srtp-msm
image-integrity-value
Sets the known SHA-256 HMAC value that is computed for the boot image.
local-cert-exp-trap-int
The interval, in minutes, at which the local certificate expiration trap interval is sent when certificates are expired or are in the pre-expiration warning period.
  • Default: 0 (disabled)
  • Range: 0 to 4294967295
local-cert-exp-warn-period
The local certificate expiration warning period in days. If you do not set this value, the system issues the associated trap if it determines that any certificate is expiring within 30 days. If you do set this value, your setting takes precedence over this 30 day period.
  • Default: 30
  • Range: 0 (disabled) then 30 to 4294967295

Path: security-config is an element of the security path. The full path from the topmost ACLI prompt is: configure terminal, and then security, and then security-config.