Supported Ospf Network Types - Cisco NCS 6000 Series Configuration Manual

Ios xr release 6.4.x
Hide thumbs Also See for NCS 6000 Series:
Table of Contents

Advertisement

Supported OSPF Network Types

• The primary IPv4 address of an interface over which this OSPF process is running. The first interface
We recommend that the router ID be set by the router-id command in router configuration mode. Separate
OSPF processes could share the same router ID, in which case they cannot reside in the same OSPF routing
domain.
Supported OSPF Network Types
OSPF classifies different media into the following types of networks:
• NBMA networks
• Point-to-point networks (POS)
• Broadcast networks (Gigabit Ethernet)
• Point-to-multipoint
You can configure your Cisco IOS XR network as either a broadcast or an NBMA network.
Route Authentication Methods for OSPF
OSPF Version 2 supports two types of authentication: plain text authentication and MD5 authentication. By
default, no authentication is enabled (referred to as null authentication in RFC 2178).
OSPV Version 3 supports all types of authentication except key rollover.
Plain Text Authentication
Plain text authentication (also known as Type 1 authentication) uses a password that travels on the physical
medium and is easily visible to someone that does not have access permission and could use the password to
infiltrate a network. Therefore, plain text authentication does not provide security. It might protect against a
faulty implementation of OSPF or a misconfigured OSPF interface trying to send erroneous OSPF packets.
MD5 Authentication
MD5 authentication provides a means of security. No password travels on the physical medium. Instead, the
router uses MD5 to produce a message digest of the OSPF packet plus the key, which is sent on the physical
medium. Using MD5 authentication prevents a router from accepting unauthorized or deliberately malicious
routing updates, which could compromise your network security by diverting your traffic.
Note
MD5 authentication supports multiple keys, requiring that a key number be associated with a key.
See
OSPF Authentication Message Digest Management, on page
Authentication Strategies
Authentication can be specified for an entire process or area, or on an interface or a virtual link. An interface
or virtual link can be configured for only one type of authentication, not both. Authentication configured for
an interface or virtual link overrides authentication configured for the area or process.
Routing Configuration Guide for Cisco NCS 6000 Series Routers, IOS XR Release 6.4.x
264
address in the OSPF interface is selected.
Implementing OSPF
277.

Advertisement

Table of Contents
loading

Table of Contents