3.3.3.4 Set 'ip rip authentication key-chain'

Information

Enable authentication for Routing Information Protocol (RIP) Version 2 packets and to specify the set of keys that can be used on an interface.

Rationale:

This is part of the RIPv2 authentication setup

Solution

Configure the Interface with the RIPv2 key chain.


hostname(config)#interface {interface_name}
hostname(config-if)#ip rip authentication key-chain {rip_key-chain_name}

Impact:

Organizations should plan and implement enterprise security policies that require rigorous authentication methods for routing protocols. Configuring the interface with 'ip rip authentication key-chain' by name enforces these policies by restricting the exchanges between network devices.

Default Value:

Not set







References:

http://www.cisco.com/en/US/docs/ios-xml/ios/interface/command/ir-i1.html#GUID-0D6BDFCD-3FBB-4D26-A274-C1221F8592DF

http://www.cisco.com/en/US/docs/ios-xml/ios/iproute_rip/command/irr-cr-rip.html#GUID-C1C84D0D-4BD0-4910-911A-ADAB458D0A84

See Also

https://workbench.cisecurity.org/files/2585

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-8(1), CSCv6|11

Plugin: Cisco

Control ID: e27be8959fd0d1c5c4c03c41c5d99b8af0a39b83da0b6a5bef8eb1415d38be24