HP 6125XLG R2306-HP 6125XLG Blade Switch Layer 3 - IP Routing Command Referenc - Page 142

Enables HMAC-MD5 authentication.

Page 142 highlights

Views OSPF area view Predefined user roles network-admin Parameters router-id: Specifies the router ID of the neighbor on the virtual link. hello seconds: Sets the hello interval in the range of 1 to 8192 seconds. The default is 10. It must be identical with the hello interval on the virtual link neighbor. retransmit seconds: Sets the retransmission interval in the range of 1 to 3600 seconds. The default is 5. trans-delay seconds: Sets the transmission delay interval in the range of 1 to 3600 seconds. The default is 1. dead seconds: Sets the dead interval in the range of 1 to 32768 seconds. The default is 40. It must be identical with that on the virtual link neighbor. The dead interval is at least four times the hello interval. md5: Enables MD5 authentication. hmac-md5: Enables HMAC-MD5 authentication. simple: Enables simple authentication. key-id: Specifies the key ID for MD5 or HMAC-MD5 authentication, in the range of 1 to 255. cipher: Sets a ciphertext key. cipher-string: Specifies a ciphertext key. For simple authentication, specify a key of 33 to 41 characters. For MD5/HMAC-MD5 authentication, specify a key of 33 to 53 characters. plain: Sets a plaintext key. plain-string: Specifies a plaintext key. For simple authentication, specify a key of 1 to 8 characters. For MD5/HMAC-MD5 authentication, specify a key of 1 to 61 characters. Usage guidelines As defined in RFC 2328, all non-backbone areas must maintain connectivity to the backbone. You can use the vlink-peer command to configure a virtual link to connect an area to the backbone. When you configure this command, follow these guidelines: • The smaller the hello interval is, the faster the network converges, and the more network resources are consumed. • A retransmission interval that is too small can cause unnecessary retransmissions. A large value is appropriate for a low speed link. • Specify an appropriate transmission delay with the trans-delay keyword. The authentication mode at the non-backbone virtual link end is determined by the authentication mode at the backbone virtual link end. The two authentication modes (MD5 or simple) are independent, and you can specify either mode or none of them. For secrecy, all keys, including keys configured in plain text, are saved in cipher text. Examples # Configure a virtual link to the neighbor with router ID 1.1.1.1. system-view [Sysname] ospf 100 131

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372
  • 373
  • 374
  • 375
  • 376
  • 377
  • 378
  • 379
  • 380
  • 381
  • 382
  • 383
  • 384
  • 385
  • 386
  • 387
  • 388
  • 389
  • 390
  • 391
  • 392
  • 393
  • 394
  • 395
  • 396
  • 397
  • 398
  • 399
  • 400
  • 401
  • 402
  • 403
  • 404
  • 405
  • 406
  • 407
  • 408
  • 409
  • 410
  • 411
  • 412
  • 413
  • 414
  • 415
  • 416
  • 417
  • 418
  • 419
  • 420
  • 421
  • 422
  • 423
  • 424
  • 425
  • 426
  • 427
  • 428
  • 429
  • 430
  • 431
  • 432
  • 433
  • 434
  • 435
  • 436
  • 437
  • 438
  • 439
  • 440
  • 441
  • 442
  • 443
  • 444
  • 445
  • 446
  • 447
  • 448
  • 449
  • 450
  • 451
  • 452
  • 453
  • 454
  • 455
  • 456
  • 457
  • 458
  • 459
  • 460
  • 461
  • 462
  • 463
  • 464
  • 465
  • 466

131
Views
OSPF area view
Predefined user roles
network-admin
Parameters
router-id
: Specifies the router ID of the neighbor on the virtual link.
hello
seconds
: Sets the hello interval in the range of 1 to 8192 seconds. The default is 10. It must be
identical with the hello interval on the virtual link neighbor.
retransmit
seconds
: Sets the retransmission interval in the range of 1 to 3600 seconds. The default is 5.
trans-delay
seconds
: Sets the transmission delay interval in the range of 1 to 3600 seconds. The default
is 1.
dead
seconds
: Sets the dead interval in the range of 1 to 32768 seconds. The default is 40. It must be
identical with that on the virtual link neighbor. The dead interval is at least four times the hello interval.
md5
: Enables MD5 authentication.
hmac-md5
: Enables HMAC-MD5 authentication.
simple
: Enables simple authentication.
key-id
: Specifies the key ID for MD5 or HMAC-MD5 authentication, in the range of 1 to 255.
cipher
: Sets a ciphertext key.
cipher-string
: Specifies a ciphertext key. For simple authentication, specify a key of 33 to 41 characters.
For MD5/HMAC-MD5 authentication, specify a key of 33 to 53 characters.
plain
: Sets a plaintext key.
plain-string
: Specifies a plaintext key. For simple authentication, specify a key of 1 to 8 characters. For
MD5/HMAC-MD5 authentication, specify a key of 1 to 61 characters.
Usage guidelines
As defined in RFC 2328, all non-backbone areas must maintain connectivity to the backbone. You can
use the
vlink-peer
command to configure a virtual link to connect an area to the backbone.
When you configure this command, follow these guidelines:
The smaller the hello interval is, the faster the network converges, and the more network resources
are consumed.
A retransmission interval that is too small can cause unnecessary retransmissions. A large value is
appropriate for a low speed link.
Specify an appropriate transmission delay with the
trans-delay
keyword.
The authentication mode at the non-backbone virtual link end is determined by the authentication mode
at the backbone virtual link end. The two authentication modes (MD5 or simple) are independent, and
you can specify either mode or none of them.
For secrecy, all keys, including keys configured in plain text, are saved in cipher text.
Examples
# Configure a virtual link to the neighbor with router ID 1.1.1.1.
<Sysname> system-view
[Sysname] ospf 100