27.03.2013 Views

Cisco Broadband Cable Command Reference Guide

Cisco Broadband Cable Command Reference Guide

Cisco Broadband Cable Command Reference Guide

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Chapter 5 <strong>Cable</strong> CPE <strong>Command</strong>s<br />

OL-1581-05<br />

hmac upstream key odd:<br />

5D04EEDD 43129682 F7A474EA 4E9F888B 5EC18478<br />

hmac downstream key even:<br />

7B6595D6 75B435FB 2FA7204D 2F203CB1 FBA80950<br />

hmac downstream key odd:<br />

E15FC10B 7F1BAFE8 6295315F E91FE97C F0DE3A73<br />

configuration (in seconds):<br />

authorization wait time: 5<br />

reauthorization wait time: 30<br />

authorization grace time: 60<br />

operational wait time: 2<br />

rekey wait time: 2<br />

tek grace time: 60<br />

authorization rej wait time: 60<br />

sa map wait time: 1<br />

sa map retries: 4<br />

kek state: STATE_C_AUTHORIZED<br />

kek life: 86450 sec<br />

sid 2:<br />

tek state: STATE_D_OPERATIONAL<br />

tek life: 21654 sec<br />

keys: even 1730E9E1F0B1C4C, odd 23021AE604610E38<br />

ivectors: even 16FB0175256819FD, odd B802057107302F8<br />

sequence: 12<br />

DSA map List<br />

Router#<br />

Table 5-6 describes the fields shown in the display for BPI+ operation.<br />

Table 5-6 show controllers cable-modem bpkm Field Descriptions (BPI+)<br />

show controllers cable-modem bpkm<br />

Field Description<br />

Privacy Version Whether BPI or BPI+ is being run.<br />

public key The Diffie-Hellman public key that the router uses to establish a BPI+<br />

session with the CMTS.<br />

keks The odd and even values for the key encryption key (KEK).<br />

hmac upstream keys The odd and even values for the hash message authentication code (HMAC)<br />

key used in upstream key requests.<br />

hmac downstream keys The odd and even values for the HMAC message authentication key used in<br />

downstream key replies, key rejects, and invalid TEK messages.<br />

authorization wait time The number of seconds the router waits for a reply after sending the<br />

Authorization Request message to the CMTS.<br />

reauthorization wait The number of seconds the router waits for a reply after it has sent an<br />

time<br />

Authorization Request message to the CMTS in response to a<br />

reauthorization request or an Authorization Invalid message from the CMTS.<br />

authorization grace time The number of seconds before the current authorization is set to expire that<br />

the grace timer begins, signaling the router to begin the reauthorization<br />

process.<br />

operational wait time The number of seconds the TEK state machine waits for a reply from the<br />

CMTS after sending its initial Key Request for its SID’s keying material.<br />

<strong>Cisco</strong> <strong>Broadband</strong> <strong>Cable</strong> <strong>Command</strong> <strong>Reference</strong> <strong>Guide</strong><br />

5-77

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!