Disabling RIP on an Interface
Problem
You want to prevent an interface from participating in RIP.
Solution
You can prevent an interface from participating in RIP with the following set of commands:
Router1#configure terminalEnter configuration commands, one per line. End with CNTL/Z. Router1(config)#access-list12deny anyRouter1(config)#router ripRouter1(config-router)#passive-interfaceRouter1(config-router)#FastEthernet0/1distribute-list12inRouter1(config-router)#FastEthernet0/1endRouter1#
Discussion
As we discussed in Recipe 6.1, you enable RIP on an interface with a network command. But because RIP expects any networks you specify this way to follow address class rules, it is quite easy to inadvertently enable RIP on an interface that you don’t want to use this protocol.
There are two important reasons that might lead you to disable RIP on a particular interface. First, if you are already running another protocol on a particular interface, then the additional RIP traffic could consume important bandwidth resources. Second, there may be devices on a particular network segment that you do not trust. In this case you want to make sure that you don’t let them distribute routing information into your network. This is particularly important because some Unix workstations run RIP by default, but the administrators rarely devote much attention to making sure that any local static routes have the correct metric values. It is possible for one misconfigured workstation to completely ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access