Iscsi Transparent Mode Initiator - Cisco DS-X9530-SF1-K9 - Supervisor-1 Module - Control Processor Configuration Manual

Mds 9000 family
Table of Contents

Advertisement

Chapter 35
Configuring iSCSI
S e n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a c k - d o c @ c i s c o . c o m .
switch(config)# iscsi authentication chap
Verify that the global iSCSI authentication set up is CHAP.
Step 6
switch# show iscsi global
iSCSI Global information
Authentication: CHAP
....
Verify that the AAA authentication information for iSCSI.
Step 7
switch# show aaa authentication
switch# show radius-server groups
total number of groups:2
following RADIUS server groups are configured:
switch# show radius-server
Global RADIUS shared secret:mds-1
....
following RADIUS servers are configured:
To configure an iSCSI RADIUS server, follow these steps:
Step 1
Configure the RADIUS server to allow access from the Cisco MDS switch's management Ethernet IP
address.
Step 2
Configure the shared secret for the RADIUS server to authenticate the Cisco MDS switch.
Step 3
Configure the iSCSI users and passwords on the RADIUS server.

iSCSI Transparent Mode Initiator

This scenario assumes the following configuration (see
Topology:
OL-6973-03, Cisco MDS SAN-OS Release 2.x
default: local
console: local
iscsi: group iscsi-radius-group
dhchap: local
group radius:
server: all configured radius servers
group iscsi-radius-group:
server: 10.1.1.1 on auth-port 1812, acct-port 1813
10.1.1.1:
available for authentication on port:1812
available for accounting on port:1813
No LUN mapping or LUN masking or any other access control for hosts on the target device
No iSCSI login authentication (that is, login authentication set to none)
iSCSI interface 7/1 is configured to identify initiators by IP address
iSCSI interface 7/5 is configured to identify initiators by node name
iSCSI initiator host-1 with IP address 10.11.1.10 and name
iqn.1987-05.com.cisco:01.255891611111 connects to IPS port 7/1 is identified using IP address
(host 1 = 10.11.1.10).
iSCSI Authentication Setup Guidelines and Scenarios
<---------------- Verify CHAP
<--------- Group name
<-------- Verify secret
<----------- Verify the server IP address
Figure
Cisco MDS 9000 Family Configuration Guide
35-20):
35-47

Advertisement

Table of Contents
loading

Table of Contents