I have 3 switches. I am trying to set up a link from switch A to B and from switch C to B.
The link between switch A and B is a VlAN with a /30 ip. I have one port on A and one on B that are untagged on that VLAN and I have RIP and MacSec running. This link works perfect.
I tried the same with the link between switch B and C, but on switch B, MacSec keeps blocking the port and I dont know why.
Switch A configs:
macsec policy policyx
Mode pre-shared-key ckn xxxxxxxx## cak ##xxxxxxxx
macsec apply policy policyx c20
aaa port-access mka server-priority 18 transmit-interval 4 c20
vlan 1
untagged c20
ip address x.x.x.1 /30
ip rip x.x.x.1
switch B configs
macsec policy policyx
mode pre-shared-key ckn xxxxxxxx## cak ##xxxxxxxx
macsec apply policy policyx c20
vlan 1
untagged c20
ip address x.x.x.2 /30
ip rip x.x.x.2
That setup between A and B is good. I have the same between B and C just different ip, vlan # macsec policy and ckn/ cak...