EasyManuals Logo

HPE FlexNetwork 5510 HI Series User Manual

HPE FlexNetwork 5510 HI Series
572 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #445 background imageLoading...
Page #445 background image
433
Step
Command
Remarks
6. Enable OSPFv3 FRR to
specify a backup next hop by
using a routing policy.
fast-reroute
route-policy
route-policy-name
By default, OSPFv3 FRR is
disabled.
Configuring BFD for OSPFv3 FRR
By default, OSPFv3 FRR does not use BFD to detect primary link failures. To speed up OSPFv3
convergence, enable BFD for OSPFv3 FRR to detect primary link failures.
To configure BFD control packet mode for OSPFv3 FRR:
Step
Command
Remarks
1. Enter system view.
system-view
N/A
2. Enter interface view.
interface
interface-type
interface-number
N/A
3. Enable BFD control
packet mode for OSPFv3
FRR.
ospfv3
primary-path-detect
bfd
ctrl
[
instance
instance-id ]
By default, BFD control packet
mode for OSPFv3 FRR is disabled.
To configure BFD echo packet mode for OSPFv3 FRR:
Step
Command
Remarks
1. Enter system view.
system-view
N/A
2. Configure the source
IPv6 address of BFD
echo packets.
bfd echo-source-ipv6
ipv6-address
By default, the source IPv6 address
of BFD echo packets is not
configured.
The source IPv6 address cannot be
on the same network segment as any
local interface's IP address.
For more information about this
command, see High Availability
Command Reference.
3. Enter interface view.
interface
interface-type
interface-number
N/A
4. Enable BFD echo packet
mode for OSPFv3 FRR.
ospfv3
primary-path-detect bfd
echo
[
instance
instance-id ]
By default, BFD echo packet mode
for OSPFv3 FRR is disabled.
Applying an IPsec profile
To protect routing information and prevent attacks, OSPFv3 can authenticate protocol packets by
using an IPsec profile. For more information about IPsec profiles, see Security Configuration Guide.
Outbound OSPFv3 packets carry the Security Parameter Index (SPI) defined in the relevant IPsec
profile. A device compares the SPI carried in a received packet with the configured IPsec profile. If
they match, the device accepts the packet. Otherwise, the device discards the packet and will not
establish a neighbor relationship with the sending device.
You can configure an IPsec profile for an area, an interface, a virtual link, or a sham link.
• To implement area-based IPsec protection, configure the same IPsec profile on the routers in
the target area.
• To implement interface-based IPsec protection, configure the same IPsec profile on the
interfaces between two neighboring routers.

Table of Contents

Other manuals for HPE FlexNetwork 5510 HI Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the HPE FlexNetwork 5510 HI Series and is the answer not in the manual?

HPE FlexNetwork 5510 HI Series Specifications

General IconGeneral
BrandHPE
ModelFlexNetwork 5510 HI Series
CategorySwitch
LanguageEnglish

Related product manuals