No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

Command Reference

CloudEngine 8800, 7800, 6800, and 5800 V200R002C50

This document describes all the configuration commands of the device, including the command function, syntax, parameters, views, default level, usage guidelines, examples, and related commands.
Rate and give feedback :
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
ospfv3 ipsec sa

ospfv3 ipsec sa

Function

The ospfv3 ipsec sa command configures an SA in the OSPFv3 interface.

The undo ospfv3 ipsec sa command deletes the SA configured in the OSPFv3 interface.

By default, no SA is configured in the OSPFv3 interface.

Format

ospfv3 ipsec sa sa-name

undo ospfv3 ipsec sa

Parameters

Parameter Description Value
sa-name Specifies the name of an SA. The value is a string of 1 to 15 case-insensitive characters. When double quotation marks are used around the string, spaces are allowed in the string.

Views

Interface view

Default Level

2: Configuration level

Usage Guidelines

Usage Scenario

If an SA is configured on an interface, OSPFv3 uses the SA to authenticate and encrypt packets sent and received by the interface.

If no SA is configured on the interface or the configured SA is deleted from the interface, OSPFv3 uses the SA configured in the process or the area where the interface resides to authenticate packets sent and received by the interface.

NOTE:
  • The SA configured in the interface view takes precedence over that configured in the OSPFv3 area view or the OSPFv3 process view.
  • The ospfv3 ipsec sa command can be used on all the OSPFv3 instances of an interface.

Prerequisites

Basic IPSec functions have been configured.

Example

# Configure an SA named sa3 for the interface VLANIF10.(This SA has been created.)

<HUAWEI> system-view
[~HUAWEI] ospfv3
[*HUAWEI-ospfv3-1] router-id 10.1.1.1
[*HUAWEI-ospfv3-1] quit
[*HUAWEI] interface vlanif 10
[*HUAWEI-Vlanif10] ipv6 enable
[*HUAWEI-Vlanif10] ospfv3 1 area 0
[*HUAWEI-Vlanif10] ospfv3 ipsec sa sa3

# Configure an SA named sa3 for the interface 10GE1/0/1.(This SA has been created.)

<HUAWEI> system-view
[~HUAWEI] ospfv3
[*HUAWEI-ospfv3-1] router-id 10.1.1.1
[*HUAWEI-ospfv3-1] quit
[*HUAWEI] interface 10ge 1/0/1
[*HUAWEI-10GE1/0/1] undo portswitch
[*HUAWEI-10GE1/0/1] ipv6 enable
[*HUAWEI-10GE1/0/1] ospfv3 1 area 0
[*HUAWEI-10GE1/0/1] ospfv3 ipsec sa sa3
Translation
Download
Updated: 2019-03-21

Document ID: EDOC1000166501

Views: 49637

Downloads: 336

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next