3 – Planning
Fabric Security
59096-04 A
3-25
A
2.
Create a security set (Security_Set_1) on Switch_1.
a.
Create a port group (Group_Port_1) in Security_Set_1 with Switch_1
and HBA_1 as members.
Switch_1 and all devices and switches connected to Switch_1
must be included in the group even if the switch or device does
not support authentication. Others wise, the Switch_1 port will
isolate.
You must specify HBAs by node worldwide name. Switches can
be specified by port or node worldwide name. The type of switch
worldwide name you use in the switch security database must be
the same as that in the HBA security database. For example, if
you specify a switch with a port worldwide name in the switch
security database, you must also specify that switch in the HBA
security database with the same port worldwide name.
For CHAP authentication, create 32-character hexadecimal or
16-character ASCI secrets. The switch secret must be shared
with the HBA security database.
Port Group on Switch_1: Group_Port_1
Switch_1
Node WWN: 10:00:00:c0:dd:07:e3:4c
Authentication: CHAP
Primary Hash: MD5
Primary Secret: 0123456789abcdef
HBA_1
Node WWN: 10:00:00:c0:dd:07:c3:4d
Authentication: CHAP
Primary Hash: MD5
Primary Secret: fedcba9876543210
Summary of Contents for SANbox 5000 Series
Page 8: ...Page viii 59096 04 A SANbox 5000 Series Fibre Channel Switch Installation Guide S Notes...
Page 40: ...2 General Description Switch Management 2 14 59096 04 A S Notes...
Page 70: ...3 Planning Fabric Management 3 30 59096 04 A S Notes...
Page 92: ...4 Installation Installing Feature License Keys 4 22 59096 04 A S Notes...
Page 112: ...6 Removal Replacement Power Supply Removal and Replacement 6 4 59096 04 A S Notes...
Page 124: ...SANbox 5000 Series Fibre Channel Switch Installation Guide Glossary 6 59096 04 A S Notes...
Page 130: ...SANbox 5000 Series Fibre Channel Switch Installation Guide Index 6 59096 04 A S Notes...