IPv6 OSPv3 routing authentication

Started by icecream-guy, January 31, 2025, 09:44:26 AM

Previous topic - Next topic

icecream-guy

Does anyone know, or have reference to configure OSPFv3 IPSEC authentication between Cisco router and Cisco ASA firewall
 
router is ASR-9912-AC running IOS XR version 7.4.2
firewall is ASA running 9.18(4)

Thanks

:professorcat:

My Moral Fibers have been cut.

deanwebb

Take a baseball bat and trash all the routers, shout out "IT'S A NETWORK PROBLEM NOW, SUCKERS!" and then peel out of the parking lot in your Ferrari.
"The world could perish if people only worked on things that were easy to handle." -- Vladimir Savchenko
Вопросы есть? Вопросов нет! | BCEB: Belkin Certified Expert Baffler | "Plan B is Plan A with an element of panic." -- John Clarke
Accounting is architecture, remember that!
Air gaps are high-latency Internet connections.

icecream-guy

no, no it was all very basic OSPF V2 routing, between firewalls and another page for routers, same of OSPF v3, some basic non-authenticated OSPF routing between firewalls and routers.  Cisco TAC wouldn't help either, their response was that TAC was for break fix scenarios not for verifying or proposing new configurations,  I have a scheduled maintenance, supposedly with TAC to troubleshoot, but the dolt never showed up, didn't answer his email, and didn't have Voicemail. his manager got an earful the next morning.
:professorcat:

My Moral Fibers have been cut.

deanwebb

Does the ASA even support OSPFv3 routing with IPSEC? I'm coming up with that being a feature only on XE systems.
Take a baseball bat and trash all the routers, shout out "IT'S A NETWORK PROBLEM NOW, SUCKERS!" and then peel out of the parking lot in your Ferrari.
"The world could perish if people only worked on things that were easy to handle." -- Vladimir Savchenko
Вопросы есть? Вопросов нет! | BCEB: Belkin Certified Expert Baffler | "Plan B is Plan A with an element of panic." -- John Clarke
Accounting is architecture, remember that!
Air gaps are high-latency Internet connections.

icecream-guy

#4
it does like here:
:professorcat:

My Moral Fibers have been cut.

Otanx

I don't have an ASA anymore so I can't test, but I found this in the configuration guide. It looks pretty straight forward, but we all know how that goes.

https://www.cisco.com/c/en/us/td/docs/security/asa/asa922/configuration/general/asa-922-general-config/route-ospf.html

-Otanx