Using Ipsec To Secure Ospfv3 Networks (Cli Procedure) - Dell PowerConnect J-EX4200-24T Software Manual

J series; j-ex series
Table of Contents

Advertisement

Related
Documentation

Using IPsec to Secure OSPFv3 Networks (CLI Procedure)

Configuring Security Associations
user@switch# set inet6-advertise-interval milliseconds
By default, a higher-priority backup router preempts a lower-priority master router.
4.
To explicitly enable the master router to be preempted:
[edit interfaces interface-name unit logical-unit-number family inet6
address address vrrp-inet6-group group-id]
user@switch# set preempt
To prohibit a higher-priority backup router from preempting a lower priority master
router:
[edit interfaces interface-name unit logical-unit-number family inet6
address address vrrp-inet6-group group-id]
user@switch# set no-preempt
show vrrp on page 2036
Understanding VRRP on J-EX Series Switches on page 1425
OSPF version 3 (OSPFv3) does not have a built-in authentication method and relies on
IP Security (IPsec) to provide this functionality. You can use IPsec to secure OSPFv3
interfaces on J-EX Series switches.
This topic includes:
Configuring Security Associations on page 1453
Securing OPSFv3 Networks on page 1454
When you configure a security association (SA), include your choices for authentication,
encryption, direction, mode, protocol, and security parameter index (SPI).
To configure a security association:
Specify a name for the security association:
1.
[edit security ipsec]
user@switch# set security-association sa-name
Specify the mode of the security association:
2.
[edit security ipsec security-association sa-name]
user@switch# set mode transport
Specify the type of security association:
3.
[edit security ipsec security-association sa-name]
user@switch# set type manual
Specify the direction of the security association:
4.
[edit security ipsec security-association sa-name]
Chapter 71: Configuring Layer 3 Protocols
1453

Advertisement

Table of Contents
loading

Table of Contents