ā01-17-2017 06:51 PM - edited ā03-05-2019 07:51 AM
Hi All,
I'm working on Cisco ACI at the moment, as you know ACI doesn't support EIGRP authentication at the moment.
The ACI leaf is currently connect to the Nexus7K switches where the EIGRP authentication enabled at the global settings.
One of the area I'm considering is transition the EIGRP authentication from global settings to interface type so that I can have the interface to the ACI leaf is using EIGRP without authentication.
Question:
- To avoid impact to the existing eigrp neighbor (with authentication), is it ok to configure the same eigrp authentication on the interfaces? (means redundant EIGRP authentication on global as well as interfaces). Once all the interfaces configured, removed the eigrp authentication at the global settings.
Thanks!
Regards,
Anthony
ā01-18-2017 04:06 PM
Hello
I cannot comment of ACI but my understanding is eigrp authentication is enabled only on a per interface basis for for IOS
Are you using named EIGRP with address family's which can use a global AF authentication mode or a specific AF interface which does take precedence the global setting
res
Paul
ā01-18-2017 05:02 PM
Hi Paul,
Thanks for the reply. The Nexus 7k switch was configured with named EIGRP + global AF authentication at the moment. I'm evaluating the risk/impact to transition it to specific AF interface authentication.
regards,
Antony
ā01-19-2017 12:37 AM
Hello
Then Interface AF takes precedence
rrs
paul
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide