2.4.1 Authentication

Information

Enable authentication for HSRP packets and to specify the set of keys that can be used on an interface.

This is part of the HSRP authentication setup

Solution

Configure HSRP with the appropriate password.

IOSXR(config)#router hsrp
IOSXR(config-hsrp)#interface {interface}
IOSXR(config-hsrp-if)#address-family ipv4 hsrp {hsrp_group_number} authentication {hsrp_password}

Impact:

The Hot Standby Router Protocol (HSRP) is an IP routing redundancy protocol designed to allow for transparent failover at the first-hop IP router. HSRP provides high network availability, because it routes IP traffic from hosts on networks without relying on the availability of any single router. HSRP is used in a group of routers for selecting an active router and a standby router. (An active router is the router of choice for routing packets; a standby router is a router that takes over the routing duties when an active router fails, or when preset conditions are met.

See Also

https://workbench.cisecurity.org/benchmarks/10473

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7

Plugin: Cisco

Control ID: 21c40baaf0964509138d40d7090a4379b5e01785e66ce1e2431c4fe84864ff41