cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3540
Views
0
Helpful
6
Replies

Encryption of OSPF packet

engel
Level 2
Level 2

Dear All,

Can OSPF packet be encrypted ?

Appreciate for any insight

6 Replies 6

yusuff
Cisco Employee
Cisco Employee

Authenticate ospf neighbors, it encrypts the ospf packets via plain-text and MD5

http://www.cisco.com/warp/public/104/25.shtml

R/Yusuf

Hi.

What do you mean by encryption? Do you mean confidentiality or just authentication?

OSPF only supports authentication. You can still see the LSAs payload even if you use authentication. The only thing authentication does is authenticate neighbors. There is no payload encryption.

Hope this helps.

NM

I am sorry not to be clear. I was asking the following scenario:

LAN1--R1--- Internet----R2----LAN2

R1 and R2 create a VPN tunnel, and through the tunnel exchange routing information of its own local network. I am thinking to use OSPF as the dynamic routing protocol. This routing information exchange should be done inside the tunnel. I find out that OSPF is protocol 88, so I think it can not be encrypted by IPSec. I am researching on posibility to use a GRE tunnel as the media to encrypt OSPF. I would like to know if anyone has implemented such scenario and its limitation.

Best Regards,

Engelhard

yusuff
Cisco Employee
Cisco Employee

Here's a sample config to configure GRE tunnel over IPSec with OSPF

http://www.cisco.com/warp/customer/707/gre_ipsec_ospf.html

HTH

R/Yusuf

Hello.

OSPF runs over IP, protocol type 89.

Rgds.

NM

Thanks for the correction. Faulty of my memory cause it reverses the protocol`s number between EIGRP and OSPF. Should be corrected now.