API Guide

virtual-address ip-address
INTERFACE VRRP Mode
OS10(config)# ip vrf vrf-test
OS10(config-vrf)# interface ethernet 1/1/1
OS10(conf-if-eth1/1/1)# no switchport
OS10(conf-if-eth1/1/1)# ip vrf forwarding vrf-test
OS10(conf-if-eth1/1/1)# ip address 10.1.1.1/24
OS10(conf-if-eth1/1/1)# vrrp-group 10
OS10(conf-eth1/1/1-vrid-10)# virtual-address 10.1.1.8
Before removing an interface from a VRF, delete the configured VRRP groups from the interface associated with the VRF. If
you do not delete the configured VRRP groups, these groups remain active on the default VRF resulting in duplicate virtual IP
address configurations.
Set group priority
The router that has the highest primary IP address of the interface becomes the master. The default priority for a virtual router
is 100. If the master router fails, VRRP begins the election process to choose a new master router based on the next-highest
priority. The virtual router priority is automatically set to 255, if any of the configured virtual IP addresses matches the interface
IP address.
1. Create a virtual router for the interface with the VRRP identifier in INTERFACE mode, from 1 to 255.
vrrp-group vrrp-id
2. Configure the priority number for the VRRP group in INTERFACE-VRRP mode, from 1 to 254, default 100.
priority number
Set VRRP group priority
OS10(config)# interface ethernet 1/1/5
OS10(conf-if-eth1/1/5)# vrrp-group 254
OS10(conf-eth1/1/5-vrid-254)# priority 200
Verify VRRP group priority
OS10(conf-eth1/1/5-vrid-254)# do show vrrp 254
Interface : ethernet1/1/5 IPv4 VRID : 254
Primary IP Address : 10.1.1.1 State : master-state
Virtual MAC Address : 00:00:5e:00:01:01
Version : version-3 Priority : 200
Preempt : Hold-time :
Authentication : no-authentication
Virtual IP address :
10.1.1.1
master-transitions : 1 advertise-rcvd : 0
advertise-interval-errors : 0 ip-ttl-errors : 0
priority-zero-pkts-rcvd : 0 priority-zero-pkts-sent : 0
invalid-type-pkts-rcvd : 0 address-list-errors : 0
pkt-length-errors : 0
Authentication
Simple authentication of VRRP packets ensures that only trusted routers participate in VRRP processes. When you enable
authentication, OS10 includes the password in its VRRP transmission. The receiving router uses that password to verify the
transmission.
You must configure all virtual routers in the VRRP group with the same password. You must enable authentication with the same
password or authentication is disabled. Authentication for VRRPv3 is not supported.
Layer 3
767