About This Document This document is a procedural guide to help SAN administrators configure and manage Brocade Access Gateway. Supported hardware and software This document is specific to Fabric OS v5.2.1 or higher running on the Brocade SilkWorm 4012, 4016, 4020, and 4024 embedded switches.
Document conventions This section describes text formatting conventions and important notices formats. Text formatting The narrative-text formatting conventions that are used in this document are as follows: bold text Identifies command names Identifies the names of user-manipulated GUI elements Identifies keywords and operands Identifies text to enter at the GUI or CLI italic text Provides emphasis...
Key terms For definitions of SAN-specific terms, visit the Storage Networking Industry Association online dictionary at: http://www.snia.org/education/dictionary. For definitions specific to Brocade and Fibre Channel, see the Brocade Glossary. The following terms are used in this manual to describe Access Gateway mode and its components. Access Gateway (AG) Fabric OS mode for embedded switches that reduces SAN (storage area network) deployment complexity by leveraging NPIV (N_Port ID virtualization).
Getting technical help Contact your switch support supplier for hardware, firmware, and software support, including product repairs and part ordering. To expedite your call, have the following information available: General Information • Technical Support contract number, if applicable • Switch model •...
World Wide Name (WWN) • Brocade 5000, SilkWorm 200E, 3014, 3016, 3250, 3800, 3850, 3900, 4012, 4018, 4020, 4024, 4100, 4900, and 7500 switches and SilkWorm 24000, and 48000 directors: Provide the license ID. Use the licenseIdShow command to display the license ID. •...
Chapter Introduction to the Brocade Access Gateway This chapter describes the functions of Brocade Access Gateway. The SilkWorm 4012, 4016, 4020, and 4024 embedded switches running Fabric OS v5.2.1 or higher support Access Gateway (AG). The chapter covers the following topics: •...
Access Gateway port types The following figure compares a configuration that connects eight hosts to the fabric using Brocade Access Gateway to the same configuration with standard fabric switches. Figure 1-1 Access Gateway and fabric switch comparison The difference between the fabric switch (Fabric OS native mode) and Brocade Access Gateway is as follows: •...
Access Gateway port types Comparing FC port configurations Brocade Access Gateway multiplexes host connections to the fabric. It presents an F_Port to the host and an N_Port to an edge fabric switch. Using N_Port ID virtualization (NPIV), Brocade Access Gateway allows multiple FC initiators to access the SAN on the same physical port. This reduces the hardware requirements and management overhead of hosts to the SAN connections.
Port mapping Port mapping Brocade Access Gateway uses mapping—that is, pre-provisioned routes—to direct traffic from the hosts to the fabric. When you first enable Access Gateway mode, the F_Ports are mapped to a set of predefined N_Ports, see Appendix A, “Default Port Mapping”.
Port initialization Port initialization To ensure that all hosts are brought online when Brocade Access Gateway starts up, the ports are initialized in the following manner: All N_Ports are initialized. During N_Port initialization all the F_Ports are disabled (kept OFFLINE). The ports are enabled or disabled as follows: •...
Failover policy Failover policy The Brocade Access Gateway N_Port failover policy allows hosts to automatically remap to an online N_Port if the N_Port they are connected to goes offline. The failover policy evenly distributes the F_Ports that are mapped to an offline N_Port among all the online N_Ports. The failover policy is a parameter of each N_Port.
Failback policy The ports mapped to N_2 (F_1, F_3, and F_4) failover to N_3 and N_4. Note that the F_Ports are evenly distributed to the remaining online N_Ports and that the F_2 did not participate in the failover event. Example 1 Example 2 Access Gateway Access Gateway...
Page 20
Failback policy The host establishes a new connection with the fabric. Example: Failback Policy In Example 3, the Brocade Access Gateway N_1 remains disabled because the corresponding F_A1 port is offline. However N_2 comes back online. (See Figure 1-5 for the original failover scenario.) The ports mapped to N_1 (F_1 and F_2) continue to be routed to N_3;...
Chapter Configuring Access Gateway This chapter describes the initial set up required to deploy Brocade Access Gateway. Note Install and configure the switch as described in the switch’s Hardware Reference Manual before performing these procedures. This chapter covers the following topics: •...
Enabling Access Gateway mode Enabling Access Gateway mode This sections explains how to change the switch mode from Fabric OS native mode to Access Gateway mode. Converting a switch to a Brocade Access Gateway allows you to use the switch as a device management tool that transparently connects hosts to the fabric.
Page 23
Enabling Access Gateway mode The Switch Admin module displays as shown below. Note To save the switch configuration, go to the Configure > Upload/Download subtab and upload the configuration file before proceeding with the next step. Click the Disable radio button in the Switch Status section. Click the Enable radio button in the Access Gateway Mode section.
Enabling Access Gateway mode Using the CLI to enable Access Gateway mode Enabling Access Gateway mode is a disruptive process; the switch is disabled and rebooted. Once you enable Access Gateway mode, only a limited subset of Fabric OS commands are available and all fabric-related service requests are forwarded to the fabric switches.
Page 25
Enabling Access Gateway mode To enable Access Gateway mode from the CLI Connect and log in to the switch. Enter the switchShow command to display the current switch configuration. The example below shows a switch in the Fabric OS Native mode (where switchMode equals Native).
Page 26
Enabling Access Gateway mode Enter the ag --modeShow command to verify that Access Gateway mode has been enabled. switch:admin> ag --modeshow Access Gateway mode is enabled. Enter the ag --mapShow command without any options to display all the mapped ports. The following example shows a mapping that has been reconfigured, three N_Ports 17, 19 and 20 have no mappings and are not connected to the fabric.
Chapter Disabling Access Gateway Mode This chapter describes how to disable Access Gateway mode. Disabling Access Gateway mode is disruptive; the switch is disabled and rebooted. This chapter covers the following topics: • “Before you begin” on page 3-2 • “Disabling Access Gateway mode”...
Before you begin Before you begin Always back up the current configuration before enabling or disabling Access Gateway mode. Enabling Access Gateway mode clears the security and zone databases. Disabling Access Gateway mode clears the F_Port to N_Port mapping. Backing up the switch configuration If the switch was configured as a fabric switch, save the configuration before setting up the switch in Access Gateway mode.
Disabling Access Gateway mode Disabling Access Gateway mode Access Gateway mode transforms the switch into a device management tool. After Access Gateway mode is disabled, the switch starts in Fabric OS Native mode, and the standard set of Fabric OS commands are available.
Disabling Access Gateway mode Using the CLI to disable Access Gateway mode After you disable Access Gateway mode, use the instructions in the Fabric OS Administrator’s Guide to reconfigure the switch and join it to the fabric. Note Disabling Access Gateway mode clears the current Access Gateway mode configuration and reboots the switch.
Notes on joining the switch to a fabric Notes on joining the switch to a fabric After the switch reboots when Access Gateway mode is disabled, the default zone is set to no access. Therefore the switch does not imediately join the fabric to which it is connected. Use one of the following methods to join the switch to the fabric: •...
Page 32
Notes on joining the switch to a fabric Access Gateway Administrator’s Guide Publication Number: 53-1000430-01...
Page 33
Chapter Managing Ports in Access Gateway mode This chapter explains how to use the CLI to manage the ports on Brocade Access Gateway. Note The Access Gateway port management functions are not available from Web Tools. It covers the following topics: •...
Determining the mapping and port status Determining the mapping and port status This section explains how to display the current mapping and port status. Displaying the port mapping This section explains how to display the mapped routes of the host connections to the fabric on Brocade Access Gateway.
Determining the mapping and port status To display an N_Port map Connect and log in to the switch. Enter the ag --mapshow command and specify the port number to display the N_Port failover and failback policies and the mapped F_Ports. N_Port Number of the port.
Configuring port maps To display the port status Connect and log in to the switch. Enter the switchShow command without any options to display the status of all ports. switch:admin> switchshow switchName: switch switchType: 43.2 switchState: Online switchMode: Access Gateway Mode switchWwn: 10:00:00:05:1e:03:4b:e7 switchBeacon:...
Configuring port maps Adding F_Ports Adding an F_Port to an N_Ports routes that traffic to and from the fabric through the specified N_Port. When failover is enabled and the N_Port goes offline or otherwise fails, the F_Port is automatically routed to another N_Port that is connected to the same fabric. An F_Port can be assigned to only one N_Port at a time.
Configuring port maps Where the f_portlist can contain multiple F_Port numbers separated by semicolons, for example “17;18”. switch:admin> ag --mapadd 13 6 F-Port to N-Port mapping has been updated successfully Enter the ag --mapshow command with the n_portnumber operand to display a list of mapped F_Ports.
Managing the failover and failback policies Managing the failover and failback policies The failover and failback policies determine the behavior of the F_Port if the N_Port they are mapped to goes OFFLINE or is disabled. By default, the failover policy is enabled and the failback policy is enabled.
Managing the failover and failback policies Enabling the failback policy A switch in Access Gateway mode supports automatic F_Port failback to N_Ports when that port comes back online. By default the failback policy is enabled. When an N_Port with an enabled failback policy comes back online, the F_Ports that were originally mapped to it are automatically rerouted back to the N_Port.
Configuring additional F_Ports Configuring additional F_Ports By default, only the internal ports of Brocade Access Gateway are configured as F_Ports. All external ports are configured (locked) as N_Ports. The internal ports connect hosts in the bladed server and external ports connect to the fabric. To connect an additional FCP initiator to an external port, reconfigure an N_Port as an F_Port as follows: Remap any F_Ports on the N_Port that is being converted.
Configuring additional F_Ports Unlocking N_Port mode By default, all external ports on Brocade Access Gateway are locked in N_Port mode. Access Gateway supports only two types of ports, N_Ports and F_Ports, because it connects only FCP initiators to the fabric. It does not support other types of ports, such as ISL (InterSwitch Link) ports. The port types on a fabric switch are not locked.
Appendix Default Port Mapping The following table shows the default F_Port to N_Port maps that are automatically configured when Access Gateway mode is enabled. All N_Ports have failover enabled and failback disabled. Table 0-1 Access Gateway default F_Port to N_Port mapping SilkWorm Total Ports N_Ports...
Appendix Compatibility In Access Gateway mode, the switch can connect to a fabric that supports NPIV. An Access Gateway can be connected to more than one fabric. Fabric OS supports NPIV in v5.0.1 and later. This section describes the supported Access Gateway configurations. Access Gateway Mode Switches The following switches support Access Gateway mode: •...
Appendix Troubleshooting This appendix provides trouble shooting instructions. Table C-1 Troubleshooting Problem Cause Solution Switch is not in Switch is in Native switch mode Disable switch using the switchDisable command. Access Gateway mode Enable Access Gateway mode using the ag --modeenable command. Answer yes when prompted;...
Page 48
Troubleshooting Table C-1 Troubleshooting (Continued) Problem Cause Solution LUNs are not visible Zoning on fabric switch is Verify zoning on the edge switch. incorrect. Verify that F_Ports are mapped to an online N_Port. See Port mapping on Access “Displaying the port status” on page 4-3.
Appendix Access Gateway Commands and Messages This appendix contains the commands and messages that are new for Access Gateway mode in the Fabric OS v5.2.1 release. This appendix uses the same conventions as the Fabric OS Command References. The appendix covers the following topics: •...
Access Gateway commands Access Gateway commands Enables and manages Access Gateway mode to perform AG specific operations. Synopsis ag --show ag --modeshow ag --modeenable ag --modedisable ag --mapshow [N_Port] ag --mapset <N_Port> <F_Ports> ag --mapadd <N_Port> <F_Ports> ag --mapdel <N_Port> <F_Ports> ag --failovershow [N_Port] ag --failoverdisable <N_Port>...
Page 51
--mapadd <N_Port> <F_Ports> Adds F_Ports to existing N_Port. The traffic for the configured F_Ports to be routed to the fabric through the specified N_Port when the F_Port comes online. An F_Port can be mapped to only one N_Port. Specify the N_Port number to which the F_Ports are to be mapped.
Page 52
Examples To display Access Gateway information: switch:admin> ag --show Name : switch NodeName : 10:00:00:05:1e:35:10:57 Number of Ports : 16 IP Address(es) : 10.115.74.54 Firmware Version : v5.2.1.v5.2.x_maint_061106_2 N_Ports F_Ports Attached N_Port information: Port PortID PortWWN FO FB IP Addr F_Ports --------------------------------------------------------------------- 0x020600...
Page 53
Access Gateway system messages Access Gateway system messages AG-1001 Message <timestamp>, [AG-1001], <sequence-number>,, ERROR, <system-name>, N_Port <port> is connected to a fabric port that does not support NPIV Probable Indicates that the fabric port to which Access Gateway is connected does not support NPIV. Cause Recommended Enable NPIV on the port connected to the Access Gateway using the portCfgNpivPort command on...
Page 54
AG-1004 Severity WARNING AG-1004 Message <timestamp>, [AG-1004], <sequence-number>,, ERROR, <system-name>, Invalid response to fabric login (FLOGI) request from the fabric for N_Port <port>. Probable Indicates that fabric sent an invalid response to FLOGI ELS of the specified N_Port. Cause Recommended Verify the fabric switch's configuration.
Page 55
AG-1007 Check GBIC and other connecting cables and re-enable the F_Port using the portEnable command. Severity WARNING AG-1007 Message <timestamp>, [AG-1007], <sequence-number>,, WARNING, <system-name>, FLOGI response not received for the N_Port <port> connected to fabric Probable Indicates the N_Port which is connected to the fabric switch is not online. The N_Port has been Cause disabled.
Page 56
AG-1010 If the message persists, run supportFtp (as needed) to set up automatic FTP transfers; then run the supportSave command and contact your switch service provider. Severity WARNING AG-1010 Message <timestamp>, [AG-1010], <sequence-number>,, WARNING, <system-name>, PLOGI sent from N-Port <port> failed Probable Indicates an internal problem with the Secure Fabric OS.
Page 57
AG-1013 Recommended Verify the configuration of the fabric switch.. Action If the message persists, run supportFtp (as needed) to set up automatic FTP transfers; then run the supportSave command and contact your switch service provider. Severity WARNING AG-1013 Message <timestamp>, [AG-1013], <sequence-number>,, INFO, <system-name>, Failing over all F_Ports mapped to N_Port <port>...
Page 59
Index commands ag --failbackDisable Access Gateway mode ag --failbackEnable commands 4-8, C-2 ag --failbackShow comparison ag --failoverDisable configuration ag --failoverEnable 3-1, 3-3, 3-4 disable 4-7, C-2 ag --failoverShow 2-2, 2-4, 3-4 enable ag --mapAdd enable, CLI 4-5, 4-6 ag --mapDel enable, Web Tools 2-4, 2-6, 4-2, 4-3, 4-6 ag --mapShow...
Page 60
disable F_Port 3-1, 3-3, 3-4 Access Gateway mode add to an N_Port failback policy configuration failover policy mapping, example 4-10 N_Port mapping, show remove display settings, edge switch 4-2, 4-3 mapping status status, port fabric compatibility inband queries join logins edge switch Management Server Platform compatibility...
Page 61
mapping requirements configuration edge switch settings 4-2, 4-3 display fabric settings example ports i-3, i-4 ports resources remove F_Port show settings ACL policies N_Port FLOGI 4-10 disable inband queries F_Port, add Management Server Platform F_Port, remove zone, no access failback, enable status failover policy, enable port, display...
Need help?
Do you have a question about the A7533A - Brocade 4Gb SAN Switch Base and is the answer not in the manual?
Questions and answers