EasyManuals Logo

HP HPE FlexNetwork 7500 series User Manual

HP HPE FlexNetwork 7500 series
592 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #174 background imageLoading...
Page #174 background image
162
Configuration prerequisites
Before the configuration, complete the following tasks:
•
Configure IP addresses for interfaces to ensure IP connectivity between neighboring nodes.
•
Enable IS-IS.
Configuring neighbor relationship authentication
With neighbor relationship authentication configured, an interface adds the key in the specified mode
into hello packets to the peer and checks the key in the received hello packets. If the authentication
succeeds, it forms the neighbor relationship with the peer.
The authentication mode and key at both ends must be identical.
To prevent packet exchange failure in case of an authentication key change, configure the interface
not to check the authentication information in the received packets.
To configure neighbor relationship authentication:
Step
Command
Remarks
1. Enter system view.
system-view
N/A
2. Enter interface view.
interface
interface-type
interface-number
N/A
3. Specify the authentication
mode and key.
isis
authentication-mode
{ {
gca
key-id
{
hmac-sha-1
|
hmac-sha-224
|
hmac-sha-256
|
hmac-sha-384
|
hmac-sha-512
} [
nonstandard
] |
md5
|
simple
} {
cipher
|
plain
} string |
keychain
keychain-name } [
level-1
|
level-2
] [
ip
|
osi
]
By default, no
authentication is
configured.
4. (Optional.) Configure the
interface not to check the
authentication information in
the received hello packets.
isis authentication send-only
[
level-1
|
level-2
]
When the authentication
mode and key are
configured, the interface
checks the authentication
information in the received
packets by default.
Configuring area authentication
Area authentication prevents the router from installing routing information from untrusted routers into
the Level-1 LSDB. The router encapsulates the authentication key in the specified mode in Level-1
packets (LSP, CSNP, and PSNP). It also checks the key in received Level-1 packets.
Routers in a common area must have the same authentication mode and key.
To prevent packet exchange failure in case of an authentication key change, configure IS-IS not to
check the authentication information in the received packets.
To configure area authentication:
Step
Command
Remarks
1. Enter system view.
system-view
N/A
2. Enter IS-IS view.
isis
[ process-id ] [
vpn-instance
vpn-instance-name ]
N/A

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the HP HPE FlexNetwork 7500 series and is the answer not in the manual?

HP HPE FlexNetwork 7500 series Specifications

General IconGeneral
BrandHP
ModelHPE FlexNetwork 7500 series
CategorySwitch
LanguageEnglish

Related product manuals