HSRP Authentication

From: Daniel Cisco Group Study (danielcgs@imc.net.au)
Date: Mon Mar 17 2003 - 17:56:57 GMT-3


I came across something very interesting today - The default password for HSRP authentication is "cisco". That means that if you configure "standby auth cisco" on one router, you won't have to set up authentication on the other router(s). Strange but true..... This would imply (to me) that HSRP **always** uses authentication with a password of "cisco". Any comments? I thought I would share this.....

Onto my question:

I've been studying the DOCO for 12.1, and came across the following:

URL:
http://www.cisco.com/univercd/cc/td/doc/product/software/ios121/121cgcr/ip_r/iprprt1/1rdip.htm#1021130

Under "usage guidelines" for the "standby authentication" command:

"The authentication string has a lower priority than the priority set with the standby priority command. A router with a higher HSRP priority will ignore the authentication string"

Does anyone know what this means? I initially interpreted that the "active" router would not authenticate the hello packets from other routers. I set this up in the lab and could not see this happening...

Any help would be much appreciated.

Thanks,

Daniel

**********************************************************************
This email and any files transmitted with it are confidential and
intended solely for the use of the individual or entity to whom they
are addressed. If you have received this email in error please notify
the system manager.
This footnote also confirms that this email message has been swept by
MIMEsweeper for the presence of computer viruses.
www.mimesweeper.com
**********************************************************************



This archive was generated by hypermail 2.1.4 : Sat Apr 05 2003 - 08:51:41 GMT-3