Communication between Storage Navigator and SVP can be encrypted using
SSL (Secure Socket Layer). (need to install OpenSA (Apache supporting SSL) to encrypt the
communication. Setup for encrypted communication will be performed only for customers who
request encrypted communication).
Authentication is added for Fibre Channel similar to how it is used for iSCSI ports.
The use of this additional security feature will require Host, HBA and/or Switches that support this
function.
LUN Mapping
LUN mapping is the task of assigning a LUN number to a volume. This helps ensure that the storage
administrator can tightly control access to particular volumes.
Storage Domains
This feature lets the user carve the Sun StorageTek 9985V system into several storage domains (see Figure 2
below). Storage domains can be used to create multiple logical arrays and to assign volumes to these arrays.
The domains serve as logical buckets, into which new servers and storage can be easily added via the
Configuration Service software of the Sun StorageTek 9985V system.
This allows:
More efficient storage management — storage domains allow collapsing multiple departments or
applications into a single storage management infrastructure.
More efficient utilization of storage capacity — all attached servers and departments receive storage
from a unified storage pool, reducing the amount of capacity overhead required and eliminating the
unused storage that typically sits wasted in a distributed environment.
LUN Masking
LUN masking is the term used for assigning access permissions — read-only, read/write, or none — to a
volume. LUN masking eases storage administration while allowing for a more secure environment. When a
volume is masked from a host, that volume is not available to be configured from that host and thus cannot be
assigned to multiple hosts accidentally.
WWNs (world-wide number) can either be assigned to a specific volume or a specific set of volumes, or
multiple WWNs can be grouped and assigned to a specific volume or a specific set of volumes.
Virtual Private Storage Machines
Each Virtual Private Storage Machine defined within a StorageTek 9985V is protected through an access
control directory to maintain and manage administrator and user level authorities. This ensures that each
defined Virtual Private Storage Machine within a StorageTek 9985V system is fully secure from outside
access.
Command Line Interface (CLI)
The CLI uses encryption and authentication.
Just the Facts
October 2007
62
Sun Confidential – For Internal Use and Authorized Partner Use Only