RE: OSPF Authentication Clarification

From: Khalid Nafie (knafie@xxxxxxxxxx)
Date: Tue Oct 30 2001 - 13:14:49 GMT-3


   
Well I think i didn't make my self clear, under interfaces in some router
u'll find these options:
R7(config-if)#ip osp ?
  authentication-key Authentication password (key)
  cost Interface cost
  database-filter Filter OSPF LSA during synchronization and flooding
  dead-interval Interval after which a neighbor is declared dead
  demand-circuit OSPF demand circuit
  hello-interval Time between HELLO packets
  message-digest-key Message digest authentication password (key)
  network Network type
  priority Router priority
  retransmit-interval Time between retransmitting lost link state
                       advertisements
  transmit-delay Link state transmit delay
under sh ver
"flash:c3640-jos56i-mz_120-4_T.bin"

but in some routers u'll find:
R5(config-if)#ip os ?
  authentication Enable authentication
<<<<--------------------------
  authentication-key Authentication password (key)
  cost Interface cost
  database-filter Filter OSPF LSA during synchronization and flooding
  dead-interval Interval after which a neighbor is declared dead
  demand-circuit OSPF demand circuit
  hello-interval Time between HELLO packets
  message-digest-key Message digest authentication password (key)
  network Network type
  priority Router priority
  retransmit-interval Time between retransmitting lost link state
                       advertisements
  transmit-delay Link state transmit delay

under sho ver
 "flash:c2600-ds-mz.120-9.bin"

So in first case u have to define the auth type then to put the key (two
steps), and in second cse just put the key (one step), my question is that y
is there is a difference and is it competabile or not?

-----Original Message-----
From: Bauer, Rick [mailto:BAUERR@toysrus.com]
Sent: Tuesday, October 30, 2001 7:53 AM
To: 'Khalid Nafie'; Ccielab (E-mail)
Subject: RE: OSPF Authentication Clarification

Try CCO do a search on configuring ospf.

Authentication-Plain text and MD5 authentication among neighboring routers
within an area is supported.

-----Original Message-----
From: Khalid Nafie [mailto:knafie@ncr.com.kw]
Sent: Tuesday, October 30, 2001 9:39 AM
To: Bauer, Rick; Ccielab (E-mail)
Subject: RE: OSPF Authentication Clarification

U mean the clear text and encrypted authentications, or two different types
that we don't know about them?
any links?
thankx

-----Original Message-----
From: Bauer, Rick [mailto:BAUERR@toysrus.com]
Sent: Tuesday, October 30, 2001 5:58 AM
To: 'Khalid Nafie'; Ccielab (E-mail)
Subject: RE: OSPF Authentication Clarification

They are two different levels of authentication. Simple verses complex.

-----Original Message-----
From: Khalid Nafie [mailto:knafie@ncr.com.kw]
Sent: Tuesday, October 30, 2001 8:38 AM
To: Ccielab (E-mail)
Subject: OSPF Authentication Clarification

Dear,
        When doing authen under ospf in my lab some times I find the authen
should be done in two steps under the interface and sometimes in one step
In two steps -->>> ip osp authen mess
                                ip osp message-dig 1 md5 cisco

In one step -->> ip ospf message-dig 1 md5 cisco

Same thing under the virtual link authentication, So i wonder which one is
the more accurate and if there is a mixture is there any role to follow?
thx

================================================
Yours,
Khaled Nafie
Network Engineer
Customer Services
MCSE,CCDP,CCNP VOICE ACCESS
NCR Corporation, Kuwait
Mob.: +965-9872046
Tel : +965- 2412201, 2412203
Fax : +965-2413075



This archive was generated by hypermail 2.1.4 : Thu Jun 20 2002 - 22:33:29 GMT-3