OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: MD5 various keys usage

From: Jeff Parker (jparkerAXIOWAVE.COM)
Date: Wed Mar 26 2003 - 09:31:29 CST


> > When I configured a few keys which are the same on both
> routers, I noticed
> > that the 2 routers behave differently
>
> Hi Dror,
>
> This is to support changing the key on multiple routers without
> losing the OSPF adjacencies (consider trying to change the key on all
> routers on a LAN simultaneously). Our product has similiar
> support utilizing a key chain.
>
> Acee

Adding multiple keys allows you to accept pkts with different keys
at the same time. Different routers (and different code versions)
might have different ways of expresing the following notions

        Which keys will be accepted?

        Which keys will be generated?

To get the nice behavior Acee mentions, you need to be able to
coordinate the switch from one key to the next.

- jeff parker