Chapter 31
| VRRP Commands
– 966 –
vrrp authentication This command specifies the key used to authenticate VRRP packets received from
other routers. Use the no form to prevent authentication.
Syntax
vrrp group authentication key
no vrrp group authentication
group - Identifies the virtual router group. (Range: 1-255)
The maximum number or groups which can be defined is 64.
key - Authentication string. (Range: 1-8 alphanumeric characters)
Default Setting
No key is defined.
Command Mode
Interface (VLAN)
Command Usage
â—† All routers in the same VRRP group must be configured with the same
authentication key.
â—† When a VRRP packet is received from another router in the group, its
authentication key is compared to the string configured on this router. If the
keys match, the message is accepted. Otherwise, the packet is discarded.
â—† Plain text authentication does not provide any real security. It is supported only
to prevent a misconfigured router from participating in VRRP.
Example
Console(config-if)#vrrp 1 authentication bluebird
Console(config-if)#
vrrp ip This command enables the Virtual Router Redundancy Protocol (VRRP) on an
interface and specifies the IP address of the virtual router. Use the no form to
disable VRRP on an interface and remove the IP address from the virtual router.
Syntax
[no] vrrp group ip ip-address
group - Identifies the virtual router group. (Range: 1-255)
The maximum number or groups which can be defined is 64.
ip-address - The IP address of the virtual router. This is the IP address that
end-hosts set as their default gateway.
Default Setting
No virtual router groups are configured.