Raritan Computer SX Network Hardware User Manual


 
CHAPTER 12: COMMAND LINE INTERFACE 109
nfsget Command
The nfsget command gets an NFS encryption key to be used for encrypting port log data. Use the
key value as input to the nfssetkey command.
The syntax of the nfsget command is:
nfsgetkey [type <rc4|aes128>]
The nfsget command options are described in the following table.
Table 10 nfsget Command
COMMAND OPTION DESCRIPTION
type <rc4|aes128>
Type of encryption key used for encryption (rc4 or aes128)
nfsget Command Example
admin > Config > Log > nfsgetkey type aes128
nfssetkey Command
The nfssetkey command sets the type of encryption and the key. NFS is notoriously insecure. It
can be accessed easily and the data misused. With Dominion SX, the administrator has the ability
to encrypt the data stored on the NFS server. Consequently, if the data were to be accessed
inappropriately, it would be of no use to anyone without the encryption key used to encrypt.
The key can be set and obtained from the DSX only.
The syntax of the nfssetkey command is:
nfssetkey [type <rc4|aes128>] [key string]
The nfssetkey command options are described in
Table 11.
Table 11 nfssetkey Command
COMMAND OPTION DESCRIPTION
type <rc4|aes128> Type of encryption type to be used
key string Provide key string to be used for encryption
Note: aes128 is not supported in 3.0.
Command Example
admin > Config > Log > nfssetkey type aes128 key
D2F05B5ED6144138CAB920CD