86
Configuring standard security features
Blocking listeners
HP StorageWorks switches block Linux subsystem listener applications that are not used to implement
supported features and capabilities.
Table 19
lists the listener applications that switches either block or do
not start.
Accessing switches and fabrics
If you are using the FC-FC Routing Service, be aware that you cannot execute the
secModeEnable
command on backbone fabrics (you cannot run this command in secure mode when a backbone fabric is
connected to edge fabrics). Refer to ”
Using the FC-FC routing service
” on page 227 for details about the
FC-FC Routing Service and it relationship with Secure Fabric OS.
Table 20
lists the defaults for accessing hosts, devices, switches, and zones.
Table 19
Blocked Listener Applications
Listener
application
SAN Director 2/128 and
4/256 SAN Director
4/8 SAN Switch and 4/16 SAN Switch,
SAN Switch 2/8V, SAN Switch 2/16V,
SAN Switch 2/32, SAN Switch 4/32,
4/64 SAN Switch and 400 MP Router
chargen
Do not start
Do not start
echo
Do not start
Do not start
daytime
Do not start
Do not start
discard
Do not start
Do not start
ftp
Do not start
Do not start
rexec
Block with packet filter
Do not start
rsh
Block with packet filter
Do not start
rlogin
Block with packet filter
Do not start
time
Block with packet filter
Do not start
rstats
Do not start
Do not start
rusers
Do not start
Do not start
Table 20
Access defaults
Hosts
Any host can access the fabric by SNMP
Any host can telnet to any switch in the fabric
Any host can establish an HTTP connection to any switch in the fabric
Any host can establish an API connection to any switch in the fabric
Devices
All device ports can access SES
All devices can access the management server
Any device can connect to any FC port in the fabric
Switch access
Any switch can join the fabric
All switches in the fabric can be accessed through serial port
Zoning
Node WWNs can be used for WWN-based zoning
Содержание AE370A - Brocade 4Gb SAN Switch 4/12
Страница 1: ...HP StorageWorks Fabric OS 5 2 x administrator guide Part number 5697 0014 Fifth edition May 2009 ...
Страница 18: ...18 ...
Страница 82: ...82 Managing user accounts ...
Страница 102: ...102 Configuring standard security features ...
Страница 126: ...126 Maintaining configurations ...
Страница 198: ...198 Routing traffic ...
Страница 238: ...238 Using the FC FC routing service ...
Страница 260: ...260 Administering FICON fabrics ...
Страница 280: ...280 Working with diagnostic features ...
Страница 332: ...332 Administering Extended Fabrics ...
Страница 414: ...398 Configuring the PID format ...
Страница 420: ...404 Configuring interoperability mode ...
Страница 426: ...410 Understanding legacy password behaviour ...
Страница 442: ...426 ...
Страница 444: ......
Страница 447: ......