![HP Fabric OS v7.0.1 Administrator'S Manual Download Page 190](http://html.mh-extra.com/html/hp/fabric-os-v7-0-1/fabric-os-v7-0-1_administrators-manual_165056190.webp)
152
Fabric OS Administrator’s Guide
53-1002446-01
Authentication policy for fabric elements
7
Enter Login Name:
jdoe
[email protected]'s password:
<hidden text>
Success: exported FCAP CA certificate
Importing CA for FCAP
Once you receive the files back from the Certificate Authority, you will need to install or import them
onto the local and remote switches.
1. Log in to the switch using an account with admin permissions, or an account associated with
the chassis role and having OM permissions for the PKI RBAC class of commands.
2. Enter the secCertUtil import –fcapswcert command and verify the CA certificates are
consistent on both local and remote switches.
switch:admin>
seccertutil import -fcapcacert
Select protocol [ftp or scp]:
scp
Enter IP address:
10.1.2.3
Enter remote directory:
/myHome/jdoe/OPENSSL
Enter certificate name (must have a ".pem" suffix):
CACert.pem
Enter Login Name:
jdoe
[email protected]'s password:
<hidden text>
Success: imported certificate [CACert.pem].
Importing the FCAP switch certificate
ATTENTION
The CA certificates must be installed prior to installing the switch certificate.
1. Log in to the switch using an account with admin permissions, or an account associated with
the chassis role and having OM permissions for the PKI RBAC class of commands.
2. Enter the secCertUtil import –fcapcacert command.
switch:admin>
seccertutil import -fcapswcert
Select protocol [ftp or scp]:
scp
Enter IP address:
10.1.2.3
Enter remote directory:
/myHome/jdoe/OPENSSL
Enter certificate name (must have ".crt" or ".cer" ".pem" or ".psk"
suffix):
01.pem
Enter Login Name:
jdoe
[email protected]'s password:
<hidden text>
Success: imported certificate [01.pem].
Starting FCAP authentication
1. Log in to the switch using an account with admin permissions, or an account with OM
permissions for the Authentication RBAC class of commands.
2. Enter the authUtil
--
authinit command to start the authentication using the newly imported
certificates.
3. Enter the authUtil
--
policy
-
sw command and select active or on, the default is passive. This
makes the changes permanent and forces the switch to request authentication.
Summary of Contents for Fabric OS v7.0.1
Page 1: ...53 1002446 01 15 December 2011 Fabric OS Administrator s Guide Supporting Fabric OS v7 0 1 ...
Page 22: ...xxii Fabric OS Administrator s Guide 53 1002446 01 ...
Page 26: ...xxvi Fabric OS Administrator s Guide 53 1002446 01 ...
Page 30: ...xxx Fabric OS Administrator s Guide 53 1002446 01 ...
Page 38: ...xl Fabric OS Administrator s Guide 53 1002446 01 ...
Page 40: ...2 Fabric OS Administrator s Guide 53 1002446 01 ...
Page 214: ...176 Fabric OS Administrator s Guide 53 1002446 01 Management interface security 7 ...
Page 228: ...190 Fabric OS Administrator s Guide 53 1002446 01 Brocade configuration form 8 ...
Page 248: ...210 Fabric OS Administrator s Guide 53 1002446 01 Validating a firmware download 9 ...
Page 334: ...296 Fabric OS Administrator s Guide 53 1002446 01 Setting up TI over FCR sample procedure 12 ...
Page 360: ...322 Fabric OS Administrator s Guide 53 1002446 01 Encryption and compression example 14 ...
Page 404: ...366 Fabric OS Administrator s Guide 53 1002446 01 ...
Page 430: ...392 Fabric OS Administrator s Guide 53 1002446 01 Ports on Demand 18 ...
Page 502: ...464 Fabric OS Administrator s Guide 53 1002446 01 Buffer credit recovery 23 ...
Page 572: ...534 Fabric OS Administrator s Guide 53 1002446 01 Hexadecimal overview D ...
Page 584: ...546 Fabric OS Administrator s Guide 53 1002446 01 ...