RE: Virtual Link is up Despite of Mismatched Authentication

From: Mohamed Saeed (mohamed_saeed2@rayacorp.com)
Date: Thu Nov 30 2006 - 18:45:59 ART


Hi All,

Please discard the below message, I knew where the trivial wrong part,
it is end of day mistakes :-)

Kind Regards

________________________________

From: Mohamed Saeed
Sent: Thursday, November 30, 2006 11:33 PM
To: ccielab@groupstudy.com
Subject: Virtual Link is up Despite of Mismatched Authentication
Password ??!

Hi All,

I am going through a strange behavior and I wonder if someone else has
encountered this.

I am configuring virtual link between R4 and R5 over area 1. The virtual
link is up although I am configuring different authentication passwords
on both ends. This case is happening with me in both clear text and MD5
authentication. Below are partial configuration and some shows. Note
that I am using DIFFERENT passwords:

R4:

router ospf 1

 router-id 150.1.4.4

 log-adjacency-changes

 area 0 authentication message-digest

 area 1 virtual-link 150.1.5.5 message-digest-key 1 md5 cisco

R5:

router ospf 1

 router-id 150.1.5.5

 log-adjacency-changes

 area 0 authentication message-digest

 area 1 virtual-link 150.1.4.4 message-digest-key 1 md5 test

R4#sh ip os virtual-links

Virtual Link OSPF_VL2 to router 150.1.5.5 is up

  Run as demand circuit

  DoNotAge LSA allowed.

  Transit area 1, via interface Serial0/1/1, Cost of using 64

  Transmit Delay is 1 sec, State POINT_TO_POINT,

  Timer intervals configured, Hello 10, Dead 40, Wait 40, Retransmit 5

    Hello due in 00:00:00

    Adjacency State FULL (Hello suppressed)

    Index 2/4, retransmission queue length 0, number of retransmission 0

    First 0x0(0)/0x0(0) Next 0x0(0)/0x0(0)

    Last retransmission scan length is 0, maximum is 0

    Last retransmission scan time is 0 msec, maximum is 0 msec

  Message digest authentication enabled

    Youngest key id is 1

R4#sh ip os nei

Neighbor ID Pri State Dead Time Address
Interface

150.1.5.5 0 FULL/ - - 164.1.45.5
OSPF_VL2

150.1.3.3 0 FULL/ - 00:00:39 164.1.34.3
Serial0/1/0

150.1.5.5 0 FULL/ - 00:00:35 164.1.45.5
Serial0/1/1

150.1.7.7 1 FULL/BDR 00:00:33 164.1.47.7
FastEthernet0/0

Could someone help with that please?

Kind Regards



This archive was generated by hypermail 2.1.4 : Fri Dec 01 2006 - 08:05:49 ART