Problem in restrcting a Device to Intercept EIGRP updates
Hi ,
I come across a scenario in which i was needed to restict Interceepting of EIGRP updates by backbone router without using neighbor command.
Scenario is Backbone is connected on Ethernet with many routers in EIGRP domain. and we want to restrict only Backbone from interceting the EIGRP packets
I mean I have few solutions in mind please comment whthere they are corect or not
1) I can use authentication on all the routers this will stop Backbone frm getting the EIGRP updates. But Backbone is getting the EIGRP updates in this case. The only fact is that is in Encrypted format. Which i think may b a wrong solution as Backbone is recieving the Updates though it is not able to install routes.
2) I thought of putting vlan access-map and dropping EIGRP packets to IP of backbone in the vlan in which all the routers are. Then there is problem that the EIGRP updates are sent to Multicast address not as Unicast. Again I am confused as nw this will also nt solve the purpose.
3) I can think of just putting an extended *access list deny eigrp any any*and putting to the port where the Backbone is connected.
I may sound a bit confused to a few of you.
Please pour in your valuable comments .
Regards
Anshuk Kesarwani
























