Fortinet Firewall Virtual IPs
I found this a little confusing, so am documenting it here in case you run into the same problem. The first task is to define a virtual IP. You give it a name, and its interface is "wan1" (or "wan2" of course). It's Static...
The Rise Of SSL VPNS
The growth of Secure Sockets Layer virtual private networks (SSL VPNs) has accelerated in the last 12 months due to greater awareness among users of the commercial advantages, better marketing which...
ISDN Details You Must Know
CCNA exam success depends partially on knowing the details of ISDN, and there are plenty of them! To help you review for your CCNA exam, here are a few ISDN details that you must know on exam day. (They help in the real world, too - and there are still plenty of...
Master Route Redistribution
To be successful on the BSCI exam and in earning your CCNP, you've got to master route redistribution. This isn't as easy as it sounds, because configuring route redistribution is only half the battle. Whether it's on...
Tips For Terminal Servers
Here's a list of tips to help ensure your Terminal Servers are functioning as efficiently as possible. These are rules I always abide by. Have a look, they may help you too... 1.) Sort your profiles out. Profiles are the biggest...
OSPF And Passive Interfaces
By Chris Bryant
Your BSCI exam may well be the most challenging of the four exams you must pass to become a CCNP, so you have to have the details of every protocol on the exam mastered! Today, we'll look at the passive-interface command as it relates to OSPF.
Passive interfaces accept routing updates, but do not send them. Regarding OSPF, even though OSPF does not sent "routing updates" in the form that RIP, IGRP, and EIGRP do, you can still configure an OSPF-enabled interface as passive in order to prevent OSPF traffic from exiting that interface. No OSPF adjacency can be formed if one of the interfaces involved is a passive interface, and if you configure an OSPF-enabled interface as passive where an adjacency already exists, the adjacency will drop almost immediately.
In the following example, R1 and R2 have an existing OSPF adjacency over their Ethernet interfaces. In an effort to reduce routing traffic, R1's e0 interface is configured as passive. The adjacency drops right away.
R1(config)#router ospf 1
18:31:11: %OSPF-5-ADJCHG: Process 1, Nbr 126.96.36.199 on Ethernet0 from FULL to DOWN, Neighbor Down: Interface down or detached
That's a pretty important detail to keep in mind when you're using the passive-interface command, wouldn't you say?
You may well have a router that you want to configure most interfaces as passive. There's no longer a need to configure each interface as passive in that case - As of IOS version 12.0, you can now set all interfaces on a router as passive for a given protocol with the passive-interface default command. You can then configure each interface that you do NOT want to be passive with the "no passive-interface" command.
R3(config)#router ospf 1
To set the interfaces back to their default, just use the no passive-interface default command.
R3(config-router)#no passive-interface default
The passive interface is a simple topic, but it can get a little tricky when you start changing the default and then start configuring interfaces on an individual level. Just be careful with this command on exam day and in the real world, and you'll succeed in the BSCI exam room and on real-world networks as well!
About the Author:
Chris Bryant, CCIE #12933, is the owner of The Bryant Advantage (www.thebryantadvantage.com), home of FREE CCNA and CCNP tutorials and daily exam questions, as well as The Ultimate CCNA and CCNP Study Packages.
For a FREE copy of his latest e-books, "How To Pass The CCNA" or "How To Pass The CCNP", and for free daily exam question, visit the website and download your copies!