3Com 3.01.01 Switch User Manual


 
IS-IS 115
Setting Interface Authentication The authentication password set on the
interface is mainly used in the Hello packet to confirm the validity and correctness
of its peers. The authentication passwords at the same level for all the connected
interfaces of a network should be identical.
Perform the following configurations in VLAN interface view..
By default, the interface is not configured with any authentication password and
does not perform authentication. If the level is not specified when you set
authentication, it defaults to set the authentication password of Level-1.
IP or OSI authentication mode is not related to whether IP or OSI CLNP packet
forwarding is used. OSI authentication mode is most common.
Setting the IS-IS Area or IS-IS Routing Domain Authentication Password
Users can configure the IS-IS area or the IS-IS routing domain with an
authentication password.
If area authentication is needed, the area authentication password will be
encapsulated into the level-1 LSP, CSNP and PSNP packets, using the specified
mode (md5 or simple text). All routers in the same area must have identical
passwords and authentication modes to work together correctly. Similarly, for
domain authentication, the password will be encapsulated into the level-2 LSP,
CSNP and PSNP packets using the specified mode. If the routers in the backbone
layer (level-2) need domain authentication, the authentication mode and
password must be identical on all.
The passwords for authentication of the routers on the same network segment
must be identical.
Perform the following configurations in IS-IS view.
By default, the system does not require passwords or perform authentication.
Table 66 Setting the Interface Authentication Password
Operation Command
Set the authentication password isis authentication-mode { simple | md5 }
password [ { level-1 | level-2 } [ ip | osi ] ]
Delete the authentication-mode password undo isis authentication-mode { simple |
md5 } password [ { level-1 | level-2 } [ ip | osi
] ]
Table 67 Setting IS-IS Authentication Password
Operation Command
Set authentication-mode password area-authentication-mode { simple | md5 }
password [ ip | osi ]
Delete authentication-mode password undo area-authentication-mode { simple |
md5 } [ ip | osi ]
Set routing domain authentication password domain-authentication-mode { simple |
md5 } password [ ip | osi ]
Delete routing domain authentication
password
undo domain-authentication-mode {
simple | md5 } [ ip | osi ]