OSPF
Router Dynamic
FortiGate Version 4.0 Administration Guide
294
01-400-89802-20090424
Figure 172
shows the New/Edit RIP Interface dialog box belonging to a FortiGate unit that
has an interface named “internal”. The names of the interfaces on your FortiGate unit may
be different.
Figure 172: New/Edit RIP Interface
OSPF
Open Shortest Path First (OSPF) is a link-state routing protocol that is most often used in
large heterogeneous networks to share routing information among routers in the same
Autonomous System (AS). FortiGate units support OSPF version 2 (see RFC 2328).
The main benefit of OSPF is that it advertises routes only when neighbors change state
instead of at timed intervals, so routing overhead is reduced.
How OSPF works
An OSPF network consists of one or more Autonomous Systems (ASes). An OSPF AS is
typically divided into logical areas linked by Area Border Routers. A group of contiguous
networks form an area. An Area Border Router (ABR) links one or more ASes to the
OSPF network backbone (area ID 0). For information on configuring an OSPF AS, see
“Defining an OSPF AS—Overview” on page 295
When a FortiGate unit interface is connected to an OSPF area, that unit can participate in
OSPF communications. FortiGate units use the OSPF Hello protocol to acquire neighbors
in an area. A neighbor is any router that directly connected to the same area as the
FortiGate unit. After initial contact, the FortiGate unit exchanges Hello packets with its
OSPF neighbors regularly to confirm that the neighbors can be reached.
Interface
Select the name of the FortiGate interface to which these settings apply. The
interface must be connected to a RIP-enabled network. The interface can be a
virtual IPSec or GRE interface.
Send Version,
Receive Version
Select to override the default RIP-compatibility setting for sending and
receiving updates through the interface: RIP version 1, version 2 or Both.
Authentication
Select an authentication method for RIP exchanges on the specified interface:
None
— Disable authentication.
Text
— Select if the interface is connected to a network that runs RIP version
2. Type a password (up to 35 characters) in the
Password
field. The FortiGate
unit and the RIP updates router must both be configured with the same
password. The password is sent in clear text over the network.
MD5
— Authenticate the exchange using MD5.
Passive Interface
Select to suppress the advertising of FortiGate unit routing information over
the specified interface. Clear the check box to allow the interface to respond
normally to RIP requests.
Содержание Gate 60D
Страница 678: ...Reports Log Report FortiGate Version 4 0 Administration Guide 678 01 400 89802 20090424 http docs fortinet com Feedback...
Страница 704: ...Index FortiGate Version 4 0 Administration Guide 704 01 400 89802 20090424 http docs fortinet com Feedback...
Страница 705: ...www fortinet com...
Страница 706: ...www fortinet com...