• When the MD5 authentication is working and you remove the key from key-chain in the global configuration,
the MD5 authentication will not work.
NOTE:
Hewlett Packard Enterprise recommends using a single key in the key-chain.
• Only RIPv2 is allowed in supporting MD5 authentication.
• For 2920/2930 switches, the default date and time is
01/01/1990
but for other switches, the current date and
time is default. MD5 authentications works only when switches have same date and time. For MD5
authentication to work when 2920/2930 switches are connected with other switches, you need to manually
configure time to the current date and time or time needs to be sync with the SNTP server.
Error messages
Configuring MD5 authentication for RIP v1 or RIP v1-or-v2 interface
switch(vlan-10)# ip rip v1-only
switch(vlan-10)# ip rip authentication-type md5
Only RIPv2 interfaces support MD5 authentication.
switch(vlan-10)# ip rip v1-or-v2
switch(vlan-10)# ip rip authentication-type md5
Only RIPv2 interfaces support MD5 authentication
Configuring MD5 keychain for RIP v2 interface without keychain or key or keystring
switch(vlan-10)# ip rip md5-auth-key-chain rip-md5-chain
Chain rip-md5-chain is not found.
switch(vlan-10)# ip rip md5-auth-key-chain rip-md5-chain
Chain rip-md5-chain has no keys configured.
switch(vlan-10)# ip rip md5-auth-key-chain rip-md5-chain
Chain rip-md5-chain has no keystring configured.
Chapter 9 RIPv2 MD5 authentication
185