Configuring RFC 6506 Authentication on an OSPFv3 Virtual Link
This may be required for
interoperability purposes. By default, OSPFv3 authentication is implemented in accordance
with RFC 7166, which supersedes RFC 6506. However, some vendors still support RFC
6506. To
configure authentication in accordance with RFC 6506 on an OSPFv3 virtual link,
complete the
following steps.
- Enter the
configure terminalcommand to access global configuration mode. - Enter the
ip router-idcommand to specify the required router. - Enter the
ipv6 router ospfcommand to enter OSPFv3 configuration mode and enable OSPFv3 on the device. - Enter the
areaarea-IDvirtual-linkvirtual-link-addressauthentication rfc6506command. - Enter the
areaarea-IDvirtual-linkvirtual-link-addressauthenticationcommand, with the required authentication option and parameters. The example enables HMAC-SHA-1 authentication with key ID 10 and key string "mypasswordkey".
The following example enables HMAC-SHA-1 authentication using key ID 10 and key string "mypasswordkey" on the specified virtual link.
device# configure terminal device(config)# ip router-id 10.1.1.1 device(config)# ipv6 router ospf device(config-ospf6-router)# area 1 virtual-link 20.1.1.1 authentication rfc6506 device(config-ospf6-router)# area 1 virtual-link 20.1.1.1 authentication hmac-sha-1 key-id 10 key mypasswordkey