S e n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a c k - d o c @ c i s c o . c o m
36-5
Cisco MDS 9000 Family CLI Configuration Guide
OL-16184-01, Cisco MDS SAN-OS Release 3.x
Chapter 36 Configuring FC-SP and DHCHAP
DHCHAP
About the DHCHAP Hash Algorithm
Cisco MDS switches support a default hash algorithm priority list of MD5 followed by SHA-1 for
DHCHAP authentication.
Tip
If you change the hash algorithm configuration, then change it globally for all switches in the fabric.
Caution
RADIUS and protocols always use MD5 for CHAP authentication. Using SHA-1 as the hash
algorithm may prevent RADIUS and usage—even if these AAA protocols are enabled for
DHCHAP authentication.
Configuring the DHCHAP Hash Algorithm
To configure the hash algorithm, follow these steps:
Step 3
switch(config-if)#
fcsp on
Sets the DHCHAP mode for the selected interfaces to be in the
on state.
switch(config-if)#
no
fcsp on
Reverts to the factory default of auto-passive for these three
interfaces.
Step 4
switch(config-if)#
fcsp
auto-active 0
Changes the DHCHAP authentication mode for the selected
interfaces to auto-active. Zero (0) indicates that the port does
not perform reauthentication.
Note
The reauthorization interval configuration is the same
as the default behavior.
switch(config-if)#
fcsp
auto-active 120
Changes the DHCHAP authentication mode to auto-active for
the selected interfaces and enables reauthentication every two
hours (120 minutes) after the initial authentication.
switch(config-if)#
fcsp
auto-active
Changes the DHCHAP authentication mode to auto-active for
the selected interfaces. Reauthentication is disabled (default).
Note
The reauthorization interval configuration is the same
as setting it to zero (0).
Command
Purpose
Command
Purpose
Step 1
switch#
config t
Enters configuration mode.
Step 2
switch(config)#
fcsp dhchap hash sha1
Configures the use of only the SHA-1 hash algorithm.
switch(config)#
fcsp dhchap hash MD5
Configures the use of only the MD5 hash algorithm.
switch(config)#
fcsp dhchap hash md5
sha1
Defines the use of the default hash algorithm priority list
of MD5 followed by SHA-1 for DHCHAP authentication.
switch(config)#
no fcsp dhchap hash
sha1
Reverts to the factory default priority list of the MD5
hash algorithm followed by the SHA-1 hash algorithm.
Содержание 9124 - Cisco MDS Fabric Switch
Страница 76: ...Se n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a ck d o c c i s c o c o m ...
Страница 122: ...Se n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a ck d o c c i s c o c o m ...
Страница 328: ...Se n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a ck d o c c i s c o c o m ...
Страница 482: ...Se n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a ck d o c c i s c o c o m ...
Страница 733: ...Se n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a ck d o c c i s c o c o m P A R T 5 Security ...
Страница 734: ...Se n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a ck d o c c i s c o c o m ...
Страница 957: ...Se n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a ck d o c c i s c o c o m P A R T 6 IP Services ...
Страница 958: ...Se n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a ck d o c c i s c o c o m ...
Страница 1182: ...Se n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a ck d o c c i s c o c o m ...
Страница 1214: ...Se n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a ck d o c c i s c o c o m ...
Страница 1307: ...Se n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a ck d o c c i s c o c o m P A R T 9 Traffic Management ...
Страница 1308: ...Se n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a ck d o c c i s c o c o m ...
Страница 1331: ...Se n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a ck d o c c i s c o c o m P A R T 1 0 Troubleshooting ...
Страница 1332: ...Se n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a ck d o c c i s c o c o m ...