Default Settings For Fabric Security - Cisco Nexus 5000 Series Configuration Manual

Nx-os san
Hide thumbs Also See for Nexus 5000 Series:
Table of Contents

Advertisement

Default Settings for Fabric Security

Example:
switch# show fcsp dhchap database
DHCHAP Local Password:
Non-device specific password:*******
Other Devices' Passwords:
Password for device with WWN:20:00:00:05:30:00:38:5e is *******
Step 7
Display the DHCHAP configuration in the interface.
Example:
switch# show fcsp interface fc2/4
fc2/4
fcsp authentication mode:SEC_MODE_ON
Status:Successfully authenticated
Step 8
Repeat these steps on the connecting switch.
Example:
MDS-9509# show wwn switch
Switch WWN is 20:00:00:05:30:00:38:5e
MDS-9509(config)# fcsp enable
MDS-9509(config)# fcsp dhchap password rtp9509
MDS-9509(config)# fcsp dhchap devicename 20:00:00:05:30:00:54:de password rtp9216
MDS-9509(config)# interface fc 4/5
MDS-9509(config-if)# fcsp on
MDS-9509# show fcsp dhchap database
DHCHAP Local Password:
Non-device specific password:*******
Other Devices' Passwords:
Password for device with WWN:20:00:00:05:30:00:54:de is *******
MDS-9509# show fcsp interface fc2/4
Fc2/4
fcsp authentication mode:SEC_MODE_ON
Status:Successfully authenticated
You have now enabled and configured DHCHAP authentication for the sample setup.
Default Settings for Fabric Security
The following table lists the default settings for all fabric security features in any switch.
Table 32: Default Fabric Security Settings
Parameters
DHCHAP feature
DHCHAP hash algorithm
DHCHAP authentication mode
DHCHAP group default priority exchange order
DHCHAP timeout value
Cisco Nexus 5000 Series NX-OS SAN Switching Configuration Guide, Release 5.2(1)N1(1)
250
Configuring FC-SP and DHCHAP
Default
Disabled
A priority list of MD5 followed by SHA-1 for
DHCHAP authentication
Auto-passive
0, 4, 1, 2, and 3, respectively
30 seconds
OL-27583-01

Advertisement

Table of Contents
loading

Table of Contents