Configuring LDP MD5 authentication

To improve security for LDP sessions, you can configure MD5 authentication for the underlying TCP connections to check the integrity of LDP messages.

For two LDP peers to establish an LDP session successfully, make sure the LDP MD5 authentication configurations on the LDP peers are consistent.

To configure LDP MD5 authentication:

Step

Command

Remarks

1. Enter system view.

system-view

N/A

2. Enter LDP view or enter LDP-VPN instance view.

  • Enter LDP view:mpls ldp

  • Enter LDP-VPN instance view:

    1. mpls ldp

    2. vpn-instance vpn-instance-name

N/A

3. Enable LDP MD5 authentication.

md5-authentication peer-lsr-id { cipher | plain } string

By default, LDP MD5 authentication is disabled.