Configuring IPv6 OSPF
Prerequisites for IPv6 OSPF
-
Make sure that you understand the IPv6 OSPF protocol.
-
Install the IPv6PT license on the NetScaler appliance.
-
Enable the IPv6 feature.
Advertising IPv6 Routes
| Commands | Specifies |
|---|---|
| VTYSH | Display VTYSH command prompt. |
| configure terminal | Enter global configuration mode. |
| router ipv6 OSPF | Start IPv6 OSPF routing process and enter configuration mode for the routing process. |
| redistribute static | Redistribute static routes. |
| redistribute kernel | Redistribute kernel routes. |
>VTYSH
NS# configure terminal
NS(config)# router ipv6 OSPF
NS(config-router)# redistribute static
NS(config-router)# redistribute kernel
Limiting IPv6 OSPF Propagations
| Commands | Specifies |
|---|---|
| VTYSH | Display VTYSH command prompt. |
| configure terminal | Enter global configuration mode. |
| router ipv6 OSPF | Start IPv6 OSPF routing process and enter configuration mode for the routing process. |
| passive-interface < vlan_name > | Suppress routing updates on interfaces bound to the specified VLAN. |
>VTYSH
NS# configure terminal
NS(config)# router ipv6 OSPF
NS(config-router)# passive-interface VLAN0
Verifying the IPv6 OSPF Configuration
| Command | Specifies |
|---|---|
| VTYSH | Display VTYSH command prompt. |
| sh ipv6 OSPF neighbor | Display current neighbors. |
| sh ipv6 OSPF route | Display IPv6 OSPF routes. |
>VTYSH
NS# sh ipv6 OSPF neighbor
NS# sh ipv6 OSPF route
OSPFv3 Authentication
-
Make sure that you understand the different components of OSPFv3 authentication, described in RFC 4552.
-
Only Authentication Header protocol is supported for OSPFv3 authentication. Encapsulating Security Payload (ESP) is not supported.
-
You must define an SA with the same setting on the peer interface.
-
Rekeying of manual keys is not supported.
> VTYSH NS# configure terminal
NS(config)# interface vlan2
NS(config-if)# ipv6 ospf authentication ipsec spi 256 md5 123456789ABCDEF0123456789ABCDEF0
> VTYSH NS# configure terminal
ns(config)#router ipv6 ospf 30
ns(config-router)# area 1 authentication ipsec spi 256 md5123456789ABCDEF0123456789ABCDEF0
Configuring Graceful Restart for IPv6 OSPF
| Command | Example | Command Description |
|---|---|---|
| VTYSH | > VTYSH | Enters VTYSH command prompt. |
| configure terminal | NS# configure terminal | Enters global configuration mode. |
| router-id id> | NS(config)#router-id 1.1.1.1 | Sets a router identifier for the NetScaler appliance. This identifier is set for all the dynamic routing protocols. The same ID must be specified in the other node in a high availability set up for graceful restart to work properly in the HA set up. |
| IPv6ospf restart grace-period <1-1800> | NS(config)# IPv6ospf restart grace-period 170 | Specifies the grace period, in seconds, for which the routes are to be preserved in the helper devices. Default value: 120 seconds. |
| IPv6 ospf restart helper max-grace-period <1-1800> | NS(config)# IPv6 ospf restart helper max-grace-period 180 | This is an optional command to limit the maximum grace period for which the NetScaler appliance will be in the helper mode. If the NetScaler appliance receives an opaque LSA with grace-period greater than the set helper max-grace-period, the LSA is discarded and the NetScaler is not placed in helper mode. |
| interface <VLANID> | NS(config)#interface vlan3 | Enters VLAN configuration mode. |
| ipv6 router ospf area <area_id> tag <tag_id> | NS(config-if)#ipv6 router ospf area 0 tag 1 | Starts IPv6 OSPF routing process on a VLAN. |
| exit | NS(config-if)#exit | Exits VLAN configuration mode. |
| router ipv6 ospf | NS(config)# router ipv6 ospf 1 | Starts IPv6 OSPF routing process and enters configuration mode for the routing process. |
| capability restart graceful | NS(config-router)#capability restart graceful | Enables graceful restart on the IPv6 OSPF routing process. |
| redistribute kernel | NS(config-router)# redistribute kernel | Redistributes kernel routes. |