QuestionQ66

Routing Policy and Manipulation

Question Image

Refer to the exhibit. P1 and PE3 are directly connected Cisco IOS XR routers with this configuration applied. The BGP session does not establish. Assume there is no IP-reachability issue and that both routers can open TCP port 179 to one another. Which action resolves the issue?

  • A Change HMAC-MD5 to HMAC-SHA1-20
  • B Configure the send and accept lifetime under key 1
  • C Change HMAC-MD5 to MD5
  • D Change HMAC-MD5 to HMAC-SHA1-12
Explanation

Cisco IOS XR BGP TCP Authentication Option keychains require an active key with both send-lifetime and accept-lifetime configured. The two lifetime values must be identical; otherwise, the key is invalid. Configuring these lifetimes under key 1 on both peers makes the shared authentication key usable and allows the BGP session to establish.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!