Configuring RFC 6506 Authentication on an OSPFv3 Virtual Link
This may be required for interoperability purposes. By default, OSPFv3 authentication
is implemented in accordance with RFC 7166, which supercedes RFC 6506. However, some
vendors still support RFC 6506. To configure authentication in accordance with RFC
6506 on an OSPFv3 virtual link, complete the following steps.
- Enter the
configure terminalcommand to access global configuration mode. - Enter the
ip router-idcommand to specify the required router. - Enter the
ipv6 router ospfcommand to enter OSPFv3 configuration mode and enable OSPFv3 on the device. - Enter the
areaarea-IDvirtual-linkvirtual-link-addressauthentication rfc6506command. - Enter the
areaarea-IDvirtual-linkvirtual-link-addressauthenticationcommand, with the required authentication option and parameters. The example enables HMAC-SHA-1 authentication with key ID 10 and key string "mypasswordkey".
The following example enables HMAC-SHA-1 authentication using key ID 10 and key string "mypasswordkey" on the specified virtual link.
device# configure terminal device(config)# ip router-id 10.1.1.1 device(config)# ipv6 router ospf device(config-ospf6-router)# area 1 virtual-link 20.1.1.1 authentication rfc6506 device(config-ospf6-router)# area 1 virtual-link 20.1.1.1 authentication hmac-sha-1 key-id 10 key mypasswordkey