F3726, F3211, F3174, R5135, R3816-HP Firewalls and UTM Devices Network Management Configuration Guide-6PW100
398
1421BConfiguring OSPF authentication
Configure OSPF packet authentication to ensure the security of packet exchange.
After authentication is configured, OSPF only receives packets that pass authentication. Failed packets
cannot establish neighboring relationships.
You must configure the same area authentication mode on all the routers in an area. In addition, the
authentication mode and password for all interfaces attached to the same area must be identical.
To configure OSPF authentication:
Ste
p
Command
Remarks
274. Enter system view.
system-view N/A
275. Enter OSPF view.
ospf [ process-id | router-id router-id | vpn-instance
vpn-instance-name ] *
N/A
276. Enter area view. area area-id N/A
277. Configure the
authentication mode.
authentication-mode { md5 | simple }
Not configured
by default.
278. Return to OSPF view.
quit N/A
279. Return to system view.
quit N/A
280. Enter interface view. interface interface-type interface-number N/A
281. Configure the interface
authentication mode.
• Configure the simple authentication:
ospf authentication-mode simple [ cipher | plain ]
password
• Configure the MD5 authentication:
ospf authentication-mode { hmac-md5 | md5 } key-id
[ cipher | plain ] password
Use either
approach.
Not configured
by default.
1422BAdding the interface MTU into DD packets
By default, an interface adds a value of 0 into the interface MTU field of a DD packet to be sent rather
than the interface MTU. You can enable an interface to add its MTU into DD packets.
To add the interface MTU into DD packets:
Ste
p
Command
Remarks
282. Enter system view. system-view N/A
283. Enter interface view.
interface interface-type interface-number
N/A
284. Enable the interface to add its
MTU into DD packets.
ospf mtu-enable
Optional.
Not enabled by default.
1423BConfiguring the maximum number of external LSAs in LSDB
To configure the maximum number of external LSAs in the LSDB:
Ste
p
Command
Remarks
285. Enter system view.
system-view N/A
286. Enter OSPF view.
ospf [ process-id | router-id router-id |
vpn-instance vpn-instance-name ] *
N/A