Configuring Dhchap Passwords For The Local Switch; About Password Configuration For Remote Devices - Cisco N5010P-N2K-BE Software Configuration Manual

Nx-os software configuration guide
Table of Contents

Advertisement

Chapter 44
Configuring FC-SP and DHCHAP
S e n d f e e d b a c k t o n x 5 0 0 0 - d o c f e e d b a c k @ c i s c o . c o m
All passwords are restricted to 64 alphanumeric characters and can be changed, but not deleted.
Note
We recommend using RADIUS or TACACS+ for fabrics with more than five switches. If you need to
Tip
use a local password database, you can continue to do so using Configuration 3 and using the Cisco MDS
9000 Family Fabric Manager to manage the password database.

Configuring DHCHAP Passwords for the Local Switch

To configure the DHCHAP password for the local switch, perform this task:
Command
Step 1
switch# configuration terminal
Step 2
switch(config)# fcsp dhchap
password [0 | 7] password [wwn
wwn-id]
The following example shows how to configure a clear text password for the local switch to be used for
the device with the specified WWN:
switch(config)# fcsp dhchap password 0 mypassword 30:11:bb:cc:dd:33:11:22
The following example removes the clear text password for the local switch to be used for the device
with the specified WWN:
switch(config)# no fcsp dhchap password 0 mypassword 30:11:bb:cc:dd:33:11:22
The following example shows configures a password entered in an encrypted format for the local switch:
switch(config)# fcsp dhchap password 7 sfsfdf

About Password Configuration for Remote Devices

You can configure passwords in the local authentication database for other devices in a fabric. The other
devices are identified by their device name, which is also known as the switch WWN or device WWN.
The password is restricted to 64 characters and can be specified in clear text (0) or in encrypted text (7).
OL-16597-01
Configuration 1—Use the same password for all switches in the fabric. This is the simplest
configuration. When you add a new switch, you use the same password to authenticate that switch
in this fabric. It is also the most vulnerable configuration if someone from the outside maliciously
attempts to access any one switch in the fabric.
Configuration 2—Use a different password for each switch and maintain that password list in each
switch in the fabric. When you add a new switch, you create a new password list and update all
switches with the new list. Accessing one switch yields the password list for all switches in that
fabric.
Configuration 3—Use different passwords for different switches in the fabric. When you add a new
switch, multiple new passwords corresponding to each switch in the fabric must be generated and
configured in each switch. Even if one switch is compromised, the password of other switches are
still protected. This configuration requires considerable password maintenance by the user.
Purpose
Enters configuration mode.
Configures a clear text password for the local switch.
Cisco Nexus 5000 Series Switch CLI Software Configuration Guide
DHCHAP
44-7

Advertisement

Table of Contents
loading

This manual is also suitable for:

Nexus 5000 series

Table of Contents