© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-1 Implementing a Scalable Multiarea Network OSPF- Based Solution Configuring and Verifying.

Slides:



Advertisements
Similar presentations
© 2006 Cisco Systems, Inc. All rights reserved. MPLS v Frame-Mode MPLS Implementation on Cisco IOS Platforms Troubleshooting Frame-Mode MPLS on Cisco.
Advertisements

RIP2 CCNA Exploration Semester 2 Chapter 7
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 8: EIGRP Advanced Configurations and Troubleshooting Scaling.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 6: Multiarea OSPF Scaling Networks.
Instructor & Todd Lammle
1 Semester 2 Module 4 Learning about Other Devices Yuda college of business James Chen
© 2005 Cisco Systems, Inc. All rights reserved. BGP v3.2—2-1 BGP Transit Autonomous Systems Monitoring and Troubleshooting IBGP in a Transit AS.
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 RIPv2 Routing Protocols and Concepts – Chapter 7.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco PublicBSCI Configuring EIGRP BSCI Module 2-4 – Configuring EIGRP Authentication.
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 RIP version 1 Routing Protocols and Concepts – Chapter 5.
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 RIP version 1 Routing Protocols and Concepts – Chapter 5.
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public ITE PC v4.0 Chapter 1 1 RIP version 1 Routing Protocols and Concepts – Chapter 5.
© 2005 Cisco Systems, Inc. All rights reserved. BGP v3.2—1-1 Module Summary BGP has reliable transport provided by TCP, a rich set of metrics called BGP.
CCNA 3 v3.0 Module 2 Single-Area OSPF
1 © 2003, Cisco Systems, Inc. All rights reserved. Computer Networks 6 Layer 3 troubleshooting Halmstad University Olga Torstensson
RD-CSY /09 Distance Vector Routing Protocols.
© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-1 Implementing a Scalable Multiarea Network OSPF- Based Solution Improving Routing Performance.
© 2009 Cisco Systems, Inc. All rights reserved.ROUTE v1.0—6-1 Connecting an Enterprise Network to an ISP Network Configuring and Verifying Basic BGP Operations.
© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—2-1 Implementing an EIGRP-Based Solution Implementing and Verifying EIGRP Authentication.
© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-1 Implementing a Scalable Multiarea Network OSPF- Based Solution Configuring and Verifying.
© 2006 Cisco Systems, Inc. All rights reserved. ICND v2.3—3-1 Determining IP Routes Enabling RIP.
© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-1 Implementing a Scalable Multiarea Network OSPF- Based Solution Lab 3-2 Debrief.
© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-1 Implementing a Scalable Multiarea Network OSPF- Based Solution Lab 3-3 Debrief.
Single Area OSPF Concepts Single Area OSPF Configuration
© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—4-1 Implement an IPv4-Based Redistribution Solution Configuring and Verifying Route Redistribution.
Single-Area OSPF Implementation
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 5: Adjust and Troubleshoot Single- Area OSPF Scaling Networks.
1 © 2004, Cisco Systems, Inc. All rights reserved. CCNA 2 v3.1 Module 7 Distance Vector Routing Protocols.
Configuring ISDN BRI and PRI
© 2006 Cisco Systems, Inc. All rights reserved. ICND v2.3—3-1 Determining IP Routes Enabling OSPF.
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public ITE PC v4.0 Chapter 1 1 RIPv2 Routing Protocols and Concepts – Chapter 7.
© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-1 Implementing a Scalable Multiarea Network OSPF- Based Solution Lab 3-1 Debrief.
1 © 2003, Cisco Systems, Inc. All rights reserved. CCNA 3 v3.0 Module 2 Single-Area OSPF.
CCNA3 ’s PAQ PAQ Pre-Assessment Quiz Produced by Mohamed BEN HASSINE CNA Instructor The American University of Paris.
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public ITE PC v4.0 Chapter 1 1 Troubleshooting Your Network Networking for Home and Small Businesses.
1 © 2004, Cisco Systems, Inc. All rights reserved. CCNA 2 v3.1 Module 7 Distance Vector Routing Protocols.
1 © 2004, Cisco Systems, Inc. All rights reserved. CCNA 2 v3.1 Module 7 Distance Vector Routing Protocols.
© 2002, Cisco Systems, Inc. All rights reserved. 1 Routing Overview.
Distance Vector Routing Protocols Dynamic Routing.
111 © 2003, Cisco Systems, Inc. All rights reserved. RECAP VLSM and CIDR.
© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-1 Implementing a Scalable Multiarea Network OSPF- Based Solution Lab 3-5 Debrief.
CO5023 Single Area OSPF. Routing So far, we’ve looked at issues concerning the distribution and access layers. Routing is the process used to interconnect.
© 2004, Cisco Systems, Inc. All rights reserved. CSPFA 3.2—13-1 Lesson 13 Switching and Routing.
1 © 2003, Cisco Systems, Inc. All rights reserved. CCNA 2 Module 4 Learning About Other Devices.
© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—6-1 Connecting an Enterprise Network to an ISP Network Lab 6-2 Debrief.
Role of Router. The Router as a Perimeter Device  Usually the main function of a router is considered as the forwarding of packets between two network.
© 2005 Cisco Systems, Inc. All rights reserved. BGP v3.2—1-1 BGP Overview Monitoring and Troubleshooting BGP.
1 © 2004, Cisco Systems, Inc. All rights reserved. Routing and Routing Protocols: Routing Static.
© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—2-1 Implementing an EIGRP-Based Solution Lab 2-4 Debrief.
1 © 2003, Cisco Systems, Inc. All rights reserved. CCNP 1 v3.0 Module 4 Routing Information Protocol version 2.
© 2005 Cisco Systems, Inc. All rights reserved. BGP v3.2—1-1 BGP Overview Establishing BGP Sessions.
Configuring OSPF Configuring OSPF Authentication.
© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—1-1 Planning Routing Services Lab 1-1 Debrief.
© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-1 Implementing a Scalable Multiarea Network OSPF-Based Solution How OSPF Packet Processes.
1 © 2003, Cisco Systems, Inc. All rights reserved. CCNA 3 v3.0 Module 2 Single-Area OSPF.
© 2003, Cisco Systems, Inc. All rights reserved..
1 © 2003, Cisco Systems, Inc. All rights reserved. CCNA 3 v3.0 Module 1 Introduction to Classless Routing.
111 © 2003, Cisco Systems, Inc. All rights reserved. CCNA 3: Switching Basics and Intermediate Routing v3.0.
--- CCIE R&S Advanced Lab Session 4 OSPF ---
1 © 2004, Cisco Systems, Inc. All rights reserved. Introduction to Classless Routing.
CCNA 3 Chapter 3 Single-Area OSPF
Connecting an Enterprise Network to an ISP Network
Connecting an Enterprise Network to an ISP Network
Pertemuan 3 Single Area OSPF Configuration
Instructor Materials Chapter 10: OSPF Tuning and Troubleshooting
Troubleshooting and Maintaining Cisco IP Networks (TSHOOT) practice-questions.html.
Implementing a Scalable Multiarea Network OSPF-Based Solution
Module Summary Open Shortest Path First (OSPF) protocol is one of the most commonly used link-state IP routing protocols in networking. It is an open standard.
Instructor & Todd Lammle
Routing With a Link-State Protocol
Presentation transcript:

© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-1 Implementing a Scalable Multiarea Network OSPF- Based Solution Configuring and Verifying OSPF Authentication

© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-2 OSPF Authentication Types  OSPF supports two types of authentication: –Simple password (or plaintext) authentication –MD5 authentication  The router generates and checks every OSPF packet.  The source of each routing update packet received is authenticated.  Each participating neighbor must have the same key (password) configured.

© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-3 Configure Simple Password Authentication for OSPF  This command defines a password to be used with a neighboring router.  The neighboring router must have the same password configured.  Specifies the authentication type for an interface or the authentication type for an area. R1(config-if)#ip ospf authentication-key mykey R1(config-if)#ip ospf authentication OR R1(config-router)#area 0 authentication

© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-4 Simple Password Authentication Configuration Example

© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-5 Simple Password Authentication Configuration for Virtual Links

© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-6 Verifying Simple Password Authentication

© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-7 Configure OSPF MD5 Authentication  Defines a key ID and key to be used with a neighboring router.  Neighboring router must have the same combination of key ID and key configured.  Specifies the authentication type for an interface or the authentication type for an area. R1(config-if)#ip ospf message-digest-key 1 md5 mysecretkey R1(config-if)#ip ospf authentication message-digest OR R1(config-router)#area 0 authentication message-digest

© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-8 OSPF MD5 Authentication Configuration Example

© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-9 Verifying MD5 Authentication

© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-10 Authentication Verification Problems include the following:  Authentication problems: –Authentication is not configured on both sides. –A different authentication type is configured on either side.  Different passwords are configured on either side. debug ip ospf adj R1#  This command displays the OSPF adjacency-related events.

© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-11 Successful Simple Password Authentication Verification  Authentication is configured correctly

© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-12 Troubleshooting Simple Password Authentication Problems  Simple authentication is not configured on router R2  Different keys on routers R1 and R2

© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-13 Successful MD5 Authentication Verification  Authentication is configured correctly

© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-14 Troubleshooting MD5 Authentication Problems  MD5 authentication configured on both routers  Router R1 has key 1 and router R2 has key 2, both with the same passwords:

© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-15 Summary  When authentication is configured, the router generates and checks every OSPF packet and authenticates the source of each routing update packet that it receives. OSPF supports two types of authentication: –Simple password (or plaintext) authentication: The router sends an OSPF packet and key. –MD5 authentication: The router generates a message digest, or hash, of the key, key ID, and message. The message digest is sent with the packet; the key is not sent.  To configure simple password authentication, use the ip ospf authentication-key password command and the ip ospf authentication command.

© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-16 Summary (Cont.)  To configure MD5 authentication, use the ip ospf message- digest-key key-id md5 key command and the ip ospf authentication message-digest command.  Use the show ip ospf neighbor, show ip route, ping, and debug ip ospf adj commands to verify and troubleshoot both types of authentication. With MD5 authentication, the debug ip ospf adj command output indicates the key ID sent.

© 2009 Cisco Systems, Inc. All rights reserved. ROUTE v1.0—3-17