Re: ospf challenge

From: Kevin M. Woods (kev@xxxxxxx)
Date: Thu May 11 2000 - 02:05:25 GMT-3


   
The answer here really depends on what your definition of "security reasons"
is but I'm guessing you don't want routes from r1 to be seen by r2 and vice
versa. This can't be done as you described as the LS databases must be the
same on each router for OSPF to work properly.

The only options I can think of are inbound FIB filters (this may or may not
work depending on the overall topology) or configuring a different auth type
between pairs (requires at least four routers though).

To just eliminate r1 and r2 from becoming neighbors, but not affect the FIB,
you can use any network type which uses unicast Hello packets (non-broadcast
or point-to-multipoint non-broadcast) and statically define neighbors.

Kevin

// Hi all
// Thank you for the reply , i think i get it.
// Here is another quesion.
// In a ethernet ospf area , There are three router connect to each other(r1,
r2,r3), For security reasons, I would like r3 to be the DR, and all router will
 adjacent to R3 and will not make adjacent to others, That means when i show ip
 ospf nei in other routers, only r3 can see r1 and r2, in either r1 and r2 , th
ey can only see r3. There should be some thing can do it.Can sb tell me how?
// Thanks a lot
// xihan wang
//



This archive was generated by hypermail 2.1.4 : Thu Jun 13 2002 - 08:23:28 GMT-3