No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

CLI-based Configuration Guide - Reliability

AR100, AR120, AR160, AR1200, AR2200, AR3200, and AR3600 V300R003

This document provides guidance for configuring reliability services, including interface backup, BFD, VRRP, and EFM.
Rate and give feedback :
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Configuring BFD Session Authentication Information

Configuring BFD Session Authentication Information

This section describes how to configure BFD session authentication information, including the authentication algorithm, authentication key, authentication key ID, and negotiation timeout period, to improve network security. BFD session authentication information is used only for multicast BFD.

Context

On a network demanding higher security, you can configure BFD session authentication information to improve network security. In a specific access scenario, for example, when a multicast BFD session is associated with the protocol status of an interface, you need to configure authentication information for the BFD session on the interface. BFD negotiation can succeed, the BFD-associated protocol status of the interface can be activated, and users can access the device through this interface only when the BFD session authentication information on both ends is consistent.

Procedure

  1. Run system-view

    The system view is displayed.

  2. Run bfd

    BFD is enabled globally.

  3. Run quit

    The system view is displayed.

  4. Run bfd bfd-name bind peer-ip default-ip interface interface-type interface-number [ source-ip source-ip ]

    A BFD session is created for detecting the physical link status.

    By default, BFD session authentication information is not configured.

  5. Run authentication-mode met-sha1 key-id key-id-value cipher cipher-text nego-packet [ timeout-interval interval-value ]

    BFD session authentication information is configured.

Translation
Download
Updated: 2019-03-06

Document ID: EDOC1100069338

Views: 14019

Downloads: 40

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next