Troubleshooting guide
4 — TCP enhanced authentication
Alcatel-Lucent 5620 Service Aware Manager 4-5
5620 SAM
System Administrator Guide
Procedure 4-2 To distribute global key chains to NEs
Perform the following procedure to distribute one or more global TCP key chains to one
or more NEs. When you distribute a global key chain, a local key chain using the Sync
With Global distribution mode allows the NE to receive the key chain.
1 Choose Administration→Security→TCP KeyChains from the 5620 SAM main menu.
The TCP KeyChains form opens.
2 Verify that none of the key chains in the list that you want to distribute are in
Draft configuration mode and go to step 4. Otherwise go to step 3.
3 When a key chain is in Draft configuration mode, the Distribute button is disabled
and the key chain cannot be distributed to an NE. You must first release the key
chain for distribution.
To release a key chain:
i Select the key chain entry and click Properties. The Key Chain (Edit) form
opens.
ii Click Switch Mode to acknowledge the Configuration Mode change. The
Release form opens.
iii Select the required NEs for release by moving the appropriate row entries
from the Available Objects panel to the Selected Objects panel.
Refer to the Policies chapter in the 5620 SAM User Guide for more
information on policy distribution.
iv Click on the Distribute button to release the key chain locally to devices.
v Click Close. The Release form closes and the configuration mode of the key
chain is changed to Released.
vi Close the Key Chain (Edit) form.
Caution — Releasing, distributing, or deleting a TCP keychain or TCP
key can be service-affecting. Ensure that you understand the
implications of these operations before you proceed.
Warning — When you release a global key chain, the key chain is
distributed to existing local definitions.
Release 12.0 R6 | November 2014 | 3HE 08861 AAAF TQZZA Edition 01