A transit authority requires keyed authentication on IGP adjacencies after an audit of closet routers. What primary risk does enabling IGP authentication address?
Select an answer to reveal the explanation.
Short Explanation
IGP auth is like checking badges at the staff door—not encrypting every passenger’s suitcase. Neighbors prove they know the shared key before you trust their hellos and updates. User traffic still needs its own crypto if privacy is the goal.
Full Explanation
Routing-protocol authentication authenticates adjacency and control-plane messages so unauthorized devices cannot inject or spoof IGP updates. It does not encrypt transit user payloads, replace management-plane ACLs, or freeze metrics under congestion. Auditors typically require it to harden neighbor authenticity on exposed closet or WAN links.