bfd min-transmit-interval 10 min-receive-interval 10 detect-multiplier 3
bfd min-echo-receive-interval 700
bfd authentication meticulous-Keyed-sha1 1 key simple
"aH4ihIbkKOGNXpHneZEJqVRuqiqYDxOhLCh0TDtPjUA="
ip address 100.100.100.100 255.255.255.0
ip ospf 100.100.100.100 area backbone
ip ospf 100.100.100.100 bfd
exit
Design considerations for BFD authentication
Supported BFD authentication modes
As per section 6.7 of RFC 5880, “implementations supporting authentication MUST support both types of SHA1
authentication. Other forms of authentication are optional.” For the first release,
only
Keyed SHA1 and Meticulous
Keyed SHA1 authentication schemes will be supported as per the RFC requirement.
Multiple authentication keys on a specific VLAN can not be configured. Each VLAN can have only one
Authentication key to be configured.
Configuration Requirements
The following table lists the actions during
show run
and download mode considering include/encrypt
credentials.
NOTE:
Maximum of 64 BFD sessions are supported.
show run
output
Reboot with saved config
BFD authentication password will not be
displayed.
• Include credentials: Disabled
• Encrypt credentials: Disabled
The plain-text password in the config will be used to update
the protocol data structures.
Download config file: Password ignored
BFD authentication password will not be
displayed.
• Include credentials: Disabled
• Encrypt credentials: Enabled
The encrypted password in the config will be decrypted and
used to update the protocol data structures.
Download config file: Password ignored
BFD authentication password will be displayed in
plaintext.
• Include credentials: Enabled
• Encrypt credentials: Disabled
The plaintext password in the config will be used to update
the protocol data structures.
BFD authentication password stored as plaintext.
BFD authentication password will be displayed in
encrypted form.
• Include credentials: Enabled
• Encrypt credentials: Enabled
The encrypted password in the config will be decrypted and
used to update the protocol data structures.
BFD authentication password stored as encrypted.
422
Aruba 3810 / 5400R Multicast and Routing Guide for ArubaOS-
Switch 16.08