What is the relationship between OSPF interface authentication and area authentication

6

The basic principles of OSPF authentication are as follows:

If authentication is configured on the interface, use the authentication on the interface. If null is configured on the interface, no authentication is performed on the interface. If no authentication is performed on the interface (Null does not mean that no authentication is configured), the authentication configured on the area is used. If no authentication is configured on the area, either, no authentication will be performed.

Other related questions:
Differences between interface authentication and area authentication for OSPF on S series switches
Rules for OSPF authentication on S series switches supporting OSPF are as follows: If an interface is configured with authentication, the authentication method configured on the interface is used. If the authentication is set to null, the interface is not authenticated. If the interface is not configured with authentication (null does not indicate no configuration), area authentication is used. If the area is not configured with authentication either, no authentication is performed.

What is the relationship between network access user authentication and VPN access user authentication
#NAME?

How do I configure OSPF area authentication on the AR router
Run the system-view command to enter the OSPF view. Run the ospf [ process-id ] command to enter the OSPF process view. Run the area area-id command to enter the OSPF area view. Run the authentication-mode simple [ plain plain-text | [ cipher ] cipher-text ] command to configure an authentication mode in the OSPF area. plain specifies the plain-text password. cipher specifies the cipher-text password. In MD5/HMAC-MD5 mode, the default value is cipher. Run the authentication-mode { md5 | hmac-md5 | hmac-sha256 } [ key-id { plainplain-text | [ cipher ] cipher-text } ] command to configure an authentication mode in the OSPF area. md5 indicates MD5 cipher-text authentication. hmac-md5 indicates HMAC-MD5 cipher text authentication. hmac-sha256 indicates HMAC-SHA256 cipher text authentication. key-id specifies the ID in cipher text authentication. Run the authentication-mode keychain keychain-name command to configure Keychain authentication in an OSPF area. Notes: To use the Keychain verification mode, configure the Keychain information in the system view. Ensure that the values of key-id, algorithm, and key-string in ActiveSendKey of the local and remote ends are the same so that OSPF neighbor relationships can be established.

Problem and solution when an OSPF neighbor relationship fails to be established between the interconnected firewall and NE40E if OSPF MD5 authentication is configured on the devices
The reason that an OSPF neighbor relationship fails to be established between the interconnected firewall and NE40E if OSPF MD5 authentication is configured on the devices is that OSPF authentication is configured but not enabled on the firewall interface. You need to configure authentication-mode md5 in the corresponding area to enable the OSPF authentication mechanism. OSPF authentication needs to be configured only on the interface connecting the NE40E to the firewall.

If you have more questions, you can seek help from following ways:
To iKnow To Live Chat
Scroll to top