Configuring Split Horizon - H3C SecPath F1800-A Operation Manual

H3c secpath f1800-a firewall
Hide thumbs Also See for H3C SecPath F1800-A:
Table of Contents

Advertisement

Operation Manual - Network and Routing Protocol
H3C SecPath F1800-A Firewall
Plain text authentication
MD5 authentication
MD5 authentication uses two packet formats:
One follows RFC1723 (RIP Version 2 Carrying Additional Information).
The other follows the RFC2082 (RIP-2 MD5 Authentication).
The plain text authentication does not ensure security. The authentication key that is
not encrypted is sent together with the packet, so the plain text authentication is not
applicable when the requirement for security is very high.
Do as follows in interface view.
Table 4-9 Configuring RIP packet authentication
Configure the key of plain text
authentication to RIP packets.
Configure MD5 authentication type
to RIP-2 packets.
Cancel
packets.
If the packet format of MD5 authentication is not specified, follow the packet format
defined in RFC2082.

4.2.10 Configuring Split Horizon

Split horizon means that the route received from an interface will not be sent through
this interface again. It avoids the creation of routing loop to some extent. But in some
special cases, split horizon must be disabled so as to get correct advertising at the
cost of efficiency. Disabling the split horizon has no effect on the point-to-point
connected links but is applicable on the Ethernet.
Do as follows in interface view.
Table 4-10 Configuring split horizon
Enable split horizon.
Disable split horizon.
Action
authentication
to
RIP-2
Action
rip
authentication-mode
password1
rip
authentication-mode
{ nonstandard password2 md5-key-id |
usual password3 }
undo rip authentication-mode
Command
rip split-horizon
undo rip split-horizon
5-39
Chapter 4 RIP Configuration
Command
simple
md5

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the H3C SecPath F1800-A and is the answer not in the manual?

Table of Contents