Cabletron Systems 9032578-02 manual Configure Simple Routing Policies

Models: 9032578-02

1 207
Download 207 pages 44.86 Kb
Page 115
Image 115

Chapter 7: Routing Policy Configuration Guide

Many protocols allow the specification of two authentication keys per interface. Packets are always sent using the primary keys, but received packets are checked with both the primary and secondary keys before being discarded.

Authentication Keys and Key Management

An authentication key permits generation and verification of the authentication field in protocol packets. In many situations, the same primary and secondary keys are used on several interfaces of a router. For ease of management of keys, a concept of key-chain is introduced. Each key-chain has an identifier and contains up to two keys. One of keys is the primary key and other is the secondary key. Outgoing packets use the primary authentication key, but incoming packets may match either the primary or secondary authentication key. In the router configuration mode, instead of specifying the key for each interface (which can be up to 16 characters long), a key-chain identifier is specified.

Currently, the SSR supports MD5 specification of OSPF RFC 2178 which uses the MD5 algorithm and an authentication key of up to 16 characters. Thus there are now three authentication schemes available per interface: none, simple and RFC 2178 OSPF MD5 authentication. It is possible to configure different authentication schemes on different interfaces.

RFC 2178 allows multiple MD5 keys per interface. Each key has two times associated with the key:

a time period that the key will be generated

a time period that the key will be accepted.

The SSR only allows one MD5 key per interface. Also, there are no options provided to specify the time period during which the key would be generated and accepted - the specified MD5 key is always generated and accepted. Both these limitations would be removed in a future release.

Configure Simple Routing Policies

Simple routing policies provide an efficient way for routing information to be exchanged between routing protocols. The redistribute command can be used to redistribute routes from one routing domain into another routing domain. Redistribution of routes between routing domains is based on route policies. A route policy is a set of conditions based on which routes are redistributed. While the redistribute command is expected to satisfy the export policy requirement for most users, complex export policies may require the use of the commands listed under Export Policies.

The general syntax of the redistribute command is as follows:

ip-router policy redistribute from-proto <protocol> to-proto <protocol> [network <ipAddr- mask> [exactrefinesbetween <low-high>]] [metric <number>restrict] [source-as <number>] [target-as <number>]

SmartSwitch Router User Reference Manual

115

Page 115
Image 115
Cabletron Systems 9032578-02 manual Configure Simple Routing Policies, Authentication Keys and Key Management

9032578-02 specifications

Cabletron Systems 9032578-02 is a notable component in the realm of networking equipment, especially recognized for its robust performance and reliability. As part of Cabletron’s commitment to delivering high-quality networking solutions, this device has become integral for many organizations seeking efficient data management.

One of the standout features of the 9032578-02 is its advanced switching capabilities. With the ability to manage multiple data streams seamlessly, it ensures that data packets are routed efficiently, minimizing latency and maximizing throughput. This is particularly crucial in environments where high-volume data transfer is the norm, such as in data centers or enterprises with extensive digital infrastructures.

The device is equipped with various connectivity options that enhance its versatility. These include support for multiple types of network interfaces, allowing for easy integration into existing systems. Whether it's Ethernet connections or fiber optics, the 9032578-02 accommodates diverse network requirements, making it suitable for various applications across different industries.

In terms of technology, the Cabletron Systems 9032578-02 employs cutting-edge networking protocols that ensure secure and reliable communication. This includes support for both IPv4 and IPv6 protocols, which future-proofs the device as organizations transition to newer standards. The incorporation of Quality of Service (QoS) features further enhances its capability to prioritize critical network traffic, ensuring that bandwidth-intensive applications receive the necessary resources for optimal performance.

Another critical characteristic of the 9032578-02 is its scalability. Organizations can expand their network infrastructure without the need for complete system overhauls. This modularity allows businesses to grow and adapt to changing demands while maintaining investment in their existing technology.

Additionally, Cabletron integrates advanced monitoring and management tools within the 9032578-02. Network administrators can easily track performance metrics, analyze traffic patterns, and troubleshoot issues in real-time. This level of visibility is essential for maintaining a stable network environment, particularly in dynamic organizational settings.

In summary, Cabletron Systems 9032578-02 is synonymous with high performance, scalability, and advanced technology. Its comprehensive features make it an excellent choice for organizations requiring reliable networking solutions that can adapt to evolving demands and ensure efficient data communication across their systems.