beautypg.com

Disabling or re-enabling event logging, Ipsec for ospfv3 – Brocade Multi-Service IronWare Routing Configuration Guide (Supporting R05.6.00) User Manual

Page 685

background image

Multi-Service IronWare Routing Configuration Guide

657

53-1003033-02

Configuring OSPFv3

Active: When you configure an OSPFv3 interface to be active, that interface sends or receives
all the control packets and forms the adjacency. By default, the ipv6 ospf active command is
disabled. Whenever you configure the OSPFv3 interfaces to be passive using the
default-passive-interface command, all the OSPFv3 interfaces stop sending and receiving
control packets. To send and receive packets over specific interfaces, you can use the ipv6
ospf active command.

Priority: Allows you to modify the priority of an OSPF router. The priority is used when selecting
the designated router (DR) and backup designated routers (BDRs). The command syntax is
ipv6 ospf priority number. The value can be from 0 – 255. The default is 1. If you set the
priority to 0, the router does not participate in DR and BDR election.

Retransmit-interval: The time between retransmissions of LSAs to adjacent routers for an
interface. The command syntax is ipv6 ospf retransmit-interval seconds. The value can be from
0 – 3600 seconds. The default is 5 seconds.

Transmit-delay: The time it takes to transmit Link State Update packets on this interface. The
command syntax is ipv6 ospf transmit-delay seconds. The range is 0 – 3600 seconds. The
default is 1 second.

Disabling or re-enabling event logging

OSPFv3 supports the logging of OSPFv3 events. The log-status change command controls the
generation of all OSPFv3 logs. You can disable or re-enable the logging of events related to OSPFv3,
such as neighbor state changes and database overflow conditions. By default, the device logs
these events.

To disable the logging of events, enter the following command.

Brocade(config-ospf6-router)# no log-status-change

Syntax: [no] log-status-change

To re-enable the logging of events, enter the following command.

Brocade(config-ospf6-router)# log-status-change

IPsec for OSPFv3

This section describes the implementation of Internet Protocol Security (IPsec) for securing OSPFv3
traffic. For background information and configuration steps, refer to

“Configuring IPsec for OSPFv3”

on page 658.

IPsec is available for OSPFv3 traffic only and only for packets that are “for-us.” A for-us packet is
addressed to one of the IPv6 addresses on the device or to an IPv6 multicast address. Packets that
are just forwarded by the line card do not receive IPsec scrutiny.

Brocade devices support the following components of IPsec for IPv6-addressed packets:

Authentication through Encapsulating Security Payload (ESP) in transport mode

HMAC-SHA1-96 as the authentication algorithm

Manual configuration of keys

Configurable rollover timer

IPsec can be enabled on the following logical entities: