Cisco MDS 9000 Series Configuration Manual page 269

Security
Hide thumbs Also See for MDS 9000 Series:
Table of Contents

Advertisement

Configuring Fabric Binding
This chapter describes the fabric binding feature provided in the Cisco MDS 9000 Series Switches. It includes
the following sections:
About Fabric Binding
The fabric binding feature ensures ISLs are only enabled between specified switches in the fabric binding
configuration. Fabric binding is configured on a per-VSAN basis.
This feature helps prevent unauthorized switches from joining the fabric or disrupting current fabric operations.
It uses the Exchange Fabric Membership Data (EFMD) protocol to ensure that the list of authorized switches
is identical in all switches in the fabric.
This section has the following topics:
Licensing Requirements
Fabric binding requires that you install either the MAINFRAME_PKG license or the ENTERPRISE_PKG
license on your switch.
See the Cisco MDS 9000 Family NX-OS Licensing Guide for more information on license feature support and
installation.
Port Security Versus Fabric Binding
Port security and fabric binding are two independent features that can be configured to complement each
other. The following table compares the two features.
Table 25: Fabric Binding and Port Security Comparison
Fabric Binding
Binds the fabric at the switch level.
About Fabric Binding , on page 251
Fabric Binding Configuration, on page 252
Default Settings, on page 261
C H A P T E R
Port Security
Binds devices at the interface level.
Cisco MDS 9000 Series Security Configuration Guide, Release 8.x
13
251

Advertisement

Table of Contents
loading

Table of Contents