Configuring Port Security Using Wizard; Prerequisites - HP Cisco MDS 9216 - Fabric Switch Configuration Manual

Cisco mds 9000 family fabric manager configuration guide, release 3.x (ol-8222-10, april 2008)
Hide thumbs Also See for Cisco MDS 9216 - Fabric Switch:
Table of Contents

Advertisement

Chapter 46
Configuring Port Security
S e n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a c k - d o c @ c i s c o . c o m
Activate port security on each VSAN. This turns on auto-learning by default. See the
Step 3
Security" section on page
Step 4
Disable auto-learn on each VSAN. See the
Copy the running configuration to the startup configuration This saves the port security configure
Step 5
database to the startup configuration.
Step 6
Repeat

Configuring Port Security Using Wizard

The Port Security Configuration wizard provides step-by-step procedures for setting up the Port Security
Policy for a selected VSAN. The Port Security Configuration wizard also supports the central
management through CFS,making it possible to complete the entire configuration at one place.
The wizard automatically conducts few essential operations. For example, if you want central
management, the wizard conducts operations to check CFS capability, enable CFS, and issue CFS
commit at the proper stages.

Prerequisites

The prerequisites for configuring Port Security are as follows:
To Configure Port Security follow these steps:
Select the Port Security Setup menu from the Fabric Manager tools menu, as shown in
Step 1
OL-16184-01, Cisco MDS SAN-OS Release 3.x
46-10.
Step 1
through
Step 5
for all switches in the fabric.
To manage security at a particular port, you do not need to run through the wizard to configure the
port security policy from the VSAN wide, but you can directly edit accesses on the port itself. This
operation can be done through the Port Binding dialog box. If the port's belonging switch has not
enabled port security yet, the dialog box enables security first. If the port security is enabled, the
dialog box will edit the policy database based on user operations.
Port Security enabled on the switch.
Port Security Policy should be defined either manually by editing bound devices or switches or ports
or by using autolearning.
Port Security Policy activated.
Activated and configured database synchronized through copy.
Activated database copied to be the startup configuration.
CFS should be enabled on all switches in the VSAN. A CFS master switch is selected to do all
configurations. All changes will be distributed to the VSAN through the CFS commit command
Port Security Configuration Guidelines
"Disabling Auto-learning" section on page
Cisco MDS 9000 Family CLI Configuration Guide
"Activating Port
46-15.
Figure
46-1.
46-5

Advertisement

Table of Contents
loading

Table of Contents