
Procedure
Step 1
Run:
system-view
The system view is displayed.
Step 2
Run:
isis
An IS-IS process is created and the IS-IS view is displayed.
Step 3
Run:
optional-checksum enable
IS-IS optional checksum is enabled.
NOTE
If MD5 authentication or Keychain authentication with valid MD5 authentication is configured on an IS-
IS interface or area, IS-IS devices send Hello packets and SNP packets carrying no checksum TLVs and
verify the checksum of the received packets.
----End
7.22.4 Checking the Configurations
By configuring various IS-IS authentication modes, you can improve the security of the IS-IS
network.
Prerequisites
Improving Security of an IS-IS Network has been configured.
Procedure
Step 1
Run
display isis peer
[
verbose
] [
process-id
|
vpn-instance
vpn-instance-name
] command to
check information about the IS-IS neighbor.
----End
Example
On GE2/0/0, set the interface authentication mode to simple and password to 123. Neighbor
relationship can be established when authentication information on the two routers is consistent.
Run the
display isis 1
peer
verbose
command. The display is as follows:
<HUAWEI>
display isis peer 1 verbose
Peer information for ISIS(1)
System Id Interface Circuit Id State HoldTime Type PRI
---------------------------------------------------------------------------------
0000.0000.0040 GE2/0/0 0000.0000.0040.04 Up 7s L1(L1L2) 64
Area Address(es) :10
Peer IP Address(es): 12.40.41.1
Uptime : 00:01:08
Adj Protocol : IPV4
Restart Capable : Yes
Suppressed Adj : NO
MT IDs supported : 0(UP)
Peer System Id : 0000.0000.0040
HUAWEI NetEngine80E/40E Router
Configuration Guide - IP Routing
7 IS-IS Configuration
Issue 02 (2014-09-30)
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
642