Change the Rekeying Timer

Information

Specify how often a Cisco vEdge router changes the AES key used on its secure DTLS connection to the vSmart controller. If OMP graceful restart is enabled, the rekeying time must be at least twice the value of the OMP graceful restart timer.

Range: 10 through 1209600 seconds (14 days)

Default: 86400 seconds (24 hours)

See https://www.cisco.com/c/en/us/td/docs/routers/sdwan/configuration/security/vedge-20-x/security-book/config-sec-param.html for more information.

Solution

vEdge(config)# security ipsec rekey seconds

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-4

Plugin: Cisco_Viptela

Control ID: b41235fcefbeed42fccd5f6b86b355f630a37f70f598fc2cca30a45ab76619ab