Writers' Community!
Home Page Two Columnists Q&A Submit an Article FAQs Contact Author Login
Sponsors
Article Submission
We Need YOUR Articles!
We'll Promote Them for FREE!

Author Login

New Authors
Register Here


Now Serving 7,781 Authors
70,493 Quality Articles
& 7,801 Current Users Online!
Featured Authors
Bruce Horst (142)
Joel Hendon (16,285)
Michael Ramzy (633)
E. Raymond Rock (3,068)
Ira Coffin (6,669)
Connor Davidson (5,131)
Ben Morrish (7,936)
Steve Kovacs (4,545)
Sandra E. Graham (7,883)
Fran Larson (2,271)
Shari Vaudo (418)
David Tanguay (9,577)
Missing Link (766)
Gregory Lewis (1,603)

View All Featured Authors
Most Recent
CompTIA A Plus Retraining Courses Revealed

Programming Careers Courses Examined

The Right Cisco Networking Training Compared

Microsoft MCSA-MCSE Training Programs Compared

CompTIA IT Support Courses Explained

Computer Courses in Adobe CS3 Design - Options

IT Study Courses - Options

The Right MCSA Networking Training Examined

Computer Training For IT Considered

Cisco Career Training Online In Your Own Home - Options

Home » Categories » Computers & Networking » Technical Certification » Cisco CCNP / BCSI Exam Tutorial: RIP Update Packet Authentication » Printer Friendly

Cisco CCNP / BCSI Exam Tutorial: RIP Update Packet Authentication

Rated 4 out of 5
No Reader Ratings Available ?
Rate It  /  View Comments  /  View All Articles submitted by Chris Bryant CCIE 12933
Submitted Tuesday, March 28, 2006
Chris Bryant CCIE 12933 (13,765)
The Bryant Advantage
Log in to become a member of Chris Bryant CCIE 12933's Fan Club!


When you earned your CCNA, you thought you learned everything there is to know about RIP. Close, but not quite! There are some additional details you need to know to pass the BSCI exam and get one step closer to the CCNP exam, and one of those involves RIP update packet authentication.

You're familiar with some advantages of using RIPv2 over RIPv1, support for VLSM chief among them. But one advantage that you're not introduced to in your CCNA studies is the ability to configure routing update packet authentication.

You have two options, clear text and MD5. Clear text is just that - a clear text password that is visible by anyone who can pick a packet off the wire. If you're going to go to the trouble of configuring update authentication, you should use MD5. The MD stands for "Message Digest", and this is the algorithm that produces the hash value for the password that will be contained in the update packets.

Not only must the routers agree on the password, they must agree on the authentication method. If one router sends an MD5-hashed password to another router that is configured for clear-text authentication, the update will not be accepted. debug ip rip is a great command for troubleshooting authenticated updates.

R1, R2, and R3 are running RIP over a frame relay cloud. Here is how RIP authentication would be configured on these three routers.

R1(config)#key chain RIP

R1(config-keychain)#key 1

R1(config-keychain-key)#key-string CISCO

R1(config)#int s0

R1(config-if)#ip rip authentication mode text

R1(config-if)#ip rip authentication key-chain RIP

R2(config)#key chain RIP

R2(config-keychain)#key 1

R2(config-keychain-key)#key-string CISCO

R2(config)#int s0.123

R2(config-subif)#ip rip authentication mode text

R2(config-subif)#ip rip authentication key-chain RIP

R3(config)#key chain RIP

R3(config-keychain)#key 1

R3(config-keychain-key)#key-string CISCO

R3(config)#int s0.31

R3(config-subif)#ip rip authentication mode text

R3(config-subif)#ip rip authentication key-chain RIP

To use MD5 authentication rather than clear-text, simply replace the word "text" in the ip rip authentication mode command with md5.

Here's what a successfully authentication RIPv2 packet looks like, courtesy of debug ip rip. Clear-text authentication is in effect and the password is "cisco".

3d04h: RIP: received packet with text authentication cisco

3d04h: RIP: received v2 update from 150.1.1.3 on Ethernet0

3d04h: 100.0.0.0/8 via 0.0.0.0 in 1 hops

3d04h: 150.1.2.0/24 via 0.0.0.0 in 1 hops

Here's what it looks like when the remote device is set for MD5 authentication and the local router is set for clear-text. You'll also see this message if the password itself is incorrect.

3d04h: RIP: ignored v2 packet from 150.1.1.3 (invalid authentication) "Debug ip rip" may be a simple command as compared to the debugs for other protocols. but it's also a very powerful debug. Start using debugs as early as possible in your Cisco studies to learn how router commands really work!

Chris Bryant, CCIE #12933, is the owner of The Bryant Advantage, home of free CCNP and CCNA tutorials, The Ultimate CCNA Study Package, and Ultimate CCNP Study Packages.

For a FREE copy of his latest e-books, “How To Pass The CCNA" and “How To Pass The CCNP", just visit the website! You can also get FREE CCNA and CCNP exam questions every day! Pass the CCNP exam with The Bryant Advantage!






Reprint Rights

Log in to become a member of Chris Bryant CCIE 12933's Fan Club!

No comments yet.


Was this article helpful to you? Leave a Public Comment or Question:

This Article has been viewed 339 times.
Article added to SearchWarp.com on 3/28/2006 2:42:51 PM.
View other articles written by Chris Bryant CCIE 12933 (13,765)


If you found this article interesting, you may want to check out:

Disclaimer:  All information on this site is provided for informational purposes only! By no means is any information presented herein intended to substitute for the advice provided to you by any health care or other professional or organization.


Today's Most Popular
Cisco CCNA Certification Exam Tutorial: Route Summarization

Cisco CCNA Exam Tutorial: Five OSPF Details You Must Know!

Cisco CCNA Certification: Showdown At The Transport Layer... TCP vs. UDP !

Cisco CCNA Exam Tutorial: What's A Collision Domain?

Cisco CCENT / CCNA Certification Exam Tutorial: Logging Synchronous And Exec-Timeout Commands

Cisco CCNP / BSCI Exam Tutorial: Using The OSPF "Area Range" Command

Cisco Certification: The Definitive Guide To ARP, RARP, IARP, and Proxy ARP

Cisco CCNA / CCNP Home Lab Tutorial: Access Server Configuration

Cisco CCNA Certification: Static And Default Static Routes

Cisco CCNA Certification: The Importance Of Building Your Own Practice Lab

Viewed from Cache. Load Time: 0.031.

Home  |  Page Two  |  FAQ's  |  Contact  |  Terms of Service  |  Article Submission Guidelines  |  Questions & Answers  |  Privacy  |  Mission / About
Copyright © 1999-2009 SearchWarp.com, All Rights Reserved - SearchWarp.com is an IcoLogic, Inc. Company