M a n a g i n g t h e S 2 A 9 5 5 0
D a t a D i r e c t N e t w o r k s S 2 A 9 5 5 0 U s e r G u i d e
65
3.4
Security Administration
The
S
S2A9550’s dual-level data security is unique and powerful. The non-host based security is
maintained with scalable features including restricted management access and authentication
against authorized listing. No security software is required on the host computers. (Please refer to
Section 3.1.3 for information regarding Telnet and serial port security.)
Each authorized user will have its customized LUN identification scheme which applies to all host
ports
.
The read-only and read/write privileges can also be specified for each LUN and for each user.
The “place holder LUN feature allows the S2A9550 administrator to map a zero capacity LUN to a
host or group of hosts (via zoning or user authentication). The administrator can then create a real
LUN and map it to the host(s) to replace the “place holder” LUN in the future. In most cases, the host
will not have to reboot since it already mapped to the “place holder” LUN.
NOTE :
Support of place holder LUNs is dependent upon the operating system, the driver, and the HBA.
3.4.1
Monitoring User Logins
The AUDIT function continuously monitors logins to the S2A9550 and provides alerts in the event of
unauthorized login attempts
.
The
USER AUDIT=ON|OFF
command can be used to enable/disable the user auditing function. When
enabled, the system will display a message when a user logs in or out. Default is OFF.
The
USER CONNECTIONS
command will display a list of all the currently connected users and the
host port that the user is connected to (Figure 3-45)
.
LUN 0
LUN 2
LUN 4
LUN 3
LUN 5
LUN 1
Internal
LUN Map
WWN 1
WWN 1
External
LUN Map
0 1 2 3 4 5 6 7
0 1 2 3 4
Figure 3-43 Mapping Internal LUN’s to External LUN’s
Figure 3-44 User Login Messages
Host Int 15:04:07 User Logout Client1, port:4 S_ID:000004
Host Int 15:04:47 Authenticated Login Client10, port:3 S_ID:000002
Summary of Contents for S2A9550
Page 1: ...DataDirect Networks Silicon Storage Appliance S2A9550 User Guide Rev 4 0 ...
Page 13: ...SECTION 1 Introducing the S2A9550 ...
Page 14: ...This page intentionally left blank ...
Page 21: ...SECTION 2 Installing the S2A9550 ...
Page 22: ...This page intentionally left blank ...
Page 24: ...Installation 12 DataDirect Networks S2A 9550 User Guide This page is intentionally blank ...
Page 43: ...SECTION 3 Using the S2A9550 Management Administrative Facilities ...
Page 44: ...This page intentionally left blank ...
Page 93: ...SECTION 4 Supporting the S2A9550 ...
Page 94: ...This page intentionally left blank ...
Page 113: ...SECTION 5 Appendices ...