Enabling Configuration Encryption; Saving The Running Configuration - HP 12500 Configuration Manual

Routing switch series
Table of Contents

Advertisement

Enabling configuration encryption

Configuration encryption enables the device to automatically encrypt a startup configuration file when
saving the running configuration. This function has the following approaches:
Private key approach—Only the encrypting MPU can decrypt the encrypted configuration file.
Public key approach—Any HP device running the same software version as the encrypting device
can decrypt the encrypted configuration file.
IMPORTANT:
Do not move or copy a private-key-encrypted configuration file between MPUs. Doing so can cause a
decryption failure because the MPUs use different private keys.
To enable configuration encryption:
Step
1.
Enter system view.
2.
Enable
encryption.

Saving the running configuration

When saving the running configuration to a configuration file, you can specify the file as the next-startup
configuration file.
If you are specifying the file as the next-startup configuration file, use one of the following methods to
save the configuration:
Fast mode—Use the save command without the safely keyword. In this mode, the device directly
overwrites the target next-startup configuration file. If a reboot or power failure occurs during this
process, the next-startup configuration file is lost. You must specify a new startup configuration file
after the device reboots (see
Safe mode—Use the save command with the safely keyword. Safe mode is slower than fast mode,
but more secure. In safe mode, the system saves configuration in a temporary file and starts
overwriting the target next-startup configuration file after the save operation is complete. If a reboot
or power failure occurs during the save operation, the next-startup configuration file is still retained.
Use the safe mode if the power source is not reliable or you are remotely configuring the device.
To save the running configuration, perform either of the following tasks in any view:
Task
Save the running configuration to a
configuration file without specifying
the file as the next-startup
configuration file.
Command
system-view
configuration
configuration encrypt { private-key |
public-key }
"Specifying a next-startup configuration
Command
save file-url
89
Remarks
N/A
By default, configuration
encryption is disabled.
Configuration is saved
unencrypted.
file").
Remarks
N/A

Advertisement

Table of Contents
loading

Table of Contents