1-10
Cisco MDS 9000 Fabric Manager Switch Configuration Guide
OL-7753-01
Chapter 1 Product Overview
Tools for Software Configuration
User Authentication
A strategy known as authentication, authorization, and accounting (AAA) is used to verify identity of,
grant access to, and track the actions of remote users. The Remote Access Dial-In User Service
(RADIUS) and Terminal Access Controller Access Control System Plus () provide AAA
solutions.
Based on the user ID and password combination provided, switches perform local authentication using
a local database or remote authentication using AAA server(s). A global, preshared, secret key
authenticates communication between the AAA servers. This secret key can be configured for all AAA
server groups or for only a specific AAA server. This kind of authentication provides a central
configuration management capability.
Role-Based Access
Role-based access control assigns roles or groups (locally through the switch or remotely using AAA
servers) to users and limits access to the switch. Access is assigned based on the permission level
associated with each user ID. Your administrator can provide complete access to each user or restrict
access to specific read and write levels for each command.
From Release 1.2(x), CLI and SNMP in all switches in the Cisco MDS 9000 Family synchronize CLI
and SNMP roles. This database contains any role that is created using CLI or SNMP. You can use SNMP
to modify a role that was created using CLI and vice versa. Each role in SNMP is the same as a role
created or modified through the CLI.
Each role in the role database can be restricted to one or more VSANs as required.
Tools for Software Configuration
You can use one of two configuration management tools to configure your SANs: the CLI and the Cisco
MDS 9000 Fabric Manager graphical user interface.
Figure 1-1
Tools for Configuring Software
CLI
With the CLI, you can type commands at the switch prompt, and the commands are executed when you
press the Enter key. The CLI parser provides command help, command completion, and keyboard
sequences that allow you to access previously executed commands from the buffer history.
Telnet
SSH
Serial
connection
CLI
Cisco Fabric Manager
(Device View, Fabric View, and
Summary View)
Cisco MDS 9000 Family
IP
network
SNMP version 1, 2, or 3
RADIUS server
Default
79524
Содержание DS-C9216I-K9
Страница 26: ...Contents xxvi Cisco MDS 9000 Fabric Manager Switch Configuration Guide OL 7753 01 ...
Страница 42: ...xlii Cisco MDS 9000 Fabric Manager Switch Configuration Guide OL 7753 01 New and Changed Information ...
Страница 128: ...10 8 Cisco MDS 9000 Fabric Manager Switch Configuration Guide OL 7753 01 Chapter 10 Managing System Hardware ...