Troubleshooting guide

4 — TCP enhanced authentication
4-4 Alcatel-Lucent 5620 Service Aware Manager
5620 SAM
System Administrator Guide
Procedure 4-1 To configure a global TCP key chain
1 Choose AdministrationSecurityTCP KeyChains from the 5620 SAM main menu.
The TCP KeyChains form opens.
2 Click Create or choose a key chain and click Properties. The KeyChain Create|Edit
form opens.
3 Configure the required parameters.
4 Click on the KeyChain Key tab.
5 Click Create or choose a key chain key and click Properties. The KeyChain Key
Create|Edit form opens.
6 Configure the required parameters.
The End Time parameter is only configurable if the Key Direction parameter is set
to Receive.
7 Save and close the forms.
Procedure 4-2 To distribute global key chains to NEs
Perform the following procedure to distribute one or more global TCP key chains to one
or more NEs. When you distribute a global key chain, a local key chain using the Sync
With Global distribution mode allows the NE to receive the key chain.
1 Choose AdministrationSecurityTCP KeyChains from the 5620 SAM main menu.
The TCP KeyChains form opens.
2 Verify that none of the key chains in the list that you want to distribute are in
Draft configuration mode and go to step 4. Otherwise go to step 3.
Caution — Alcatel recommends that you choose the Send-receive
option for the Key Direction parameter to ensure bidirectional
communication between NEs.
Note 1 — The 5620 SAM generates a random default value for the Key
parameter. For greater security, Alcatel-Lucent recommends that you
accept this value rather than manually enter a value.
Note 2 — You cannot subsequently delete a TCP key chain or TCP key
when the Admin State parameter for the key chain or key is set to In
Service.
Caution — Releasing, distributing, or deleting a TCP keychain or TCP
key can be service-affecting. Ensure that you understand the
implications of these operations before you proceed.
Release 13.0 R2 | May 2015 | 3HE 09815 AAAB TQZZA Edition 01