diff options
author | paul <paul> | 2004-09-12 05:48:35 +0000 |
---|---|---|
committer | paul <paul> | 2004-09-12 05:48:35 +0000 |
commit | 4fc7085cfa36103b491aec130346f1a632187849 (patch) | |
tree | d05ebffd8f518ba368c77c78004152608c76059a /doc/ospfd.texi | |
parent | 8d0f15fd1b842eb9ca7b3d116c7b6de63af3c195 (diff) |
2004-09-11 Paul Jakma <paul@dishone.st>
* ospfd.texi: OSPF MD5 auth requires stable time.
Diffstat (limited to 'doc/ospfd.texi')
-rw-r--r-- | doc/ospfd.texi | 7 |
1 files changed, 6 insertions, 1 deletions
diff --git a/doc/ospfd.texi b/doc/ospfd.texi index 594845ca..842dfcf4 100644 --- a/doc/ospfd.texi +++ b/doc/ospfd.texi @@ -258,7 +258,12 @@ all OSPF packets are authenticated. @var{AUTH_KEY} has length up to 8 chars. @deffnx {Interface Command} {no ip ospf message-digest-key} {} Set OSPF authentication key to a cryptographic password. The cryptographic algorithm is MD5. KEYID identifies secret key used to create the message -digest. KEY is the actual message digest key up to 16 chars. +digest. KEY is the actual message digest key up to 16 chars. Note that OSPF +MD5 authentication requires that time never go backwards, even across +resets, if ospfd is to be able to promptly reestabish adjacencies with it's +neighbours after restarts/reboots. The host should have system time be set +at boot from an external source (eg battery backed clock, NTP, etc.) if MD5 +authentication is to be expected to work reliably. @end deffn @deffn {Interface Command} {ip ospf cost <1-65535>} {} |