ISIS HMAC-MD5 authentication

From: Paresh Khatri (Paresh.Khatri@aapt.com.au)
Date: Mon May 30 2005 - 21:56:22 GMT-3


Hi all,

When using MD5 authentication for ISIS, do the router-level commands 'authentication mode' and 'authentication key-chain' result in the enabling of authentication for all ISIS PDUs (including IIHs) or just LSPs, CSNPs and PSNPs. From my reading, it appears that it is the former.

If that is the case, if I enable authentication at the router-level and then configure 'isis authentication mode' and 'isis authentication key-chain' at the interface level with possible a different authentication mode, will they override the authentication configuration at the router level. Since it does not make sense to use different Auth TLVs on LSPs depending on which interface they are sent out on, does this mean that only IIHs sent out of this interface will use the interface-specific authentication configuration ? What about CSNPs and PSNPs ? Will they also use the interface-specific configuration ?

All responses appreciated.

This communication, including any attachments, is confidential. If
 you are not the intended recipient, you should not read it - please
 contact me immediately, destroy it, and do not copy or use any part of
 this communication or disclose anything about it.



This archive was generated by hypermail 2.1.4 : Fri Jun 03 2005 - 10:12:03 GMT-3