Brocade Communications Systems A7990A - StorageWorks SAN Director 4/16 Blade Switch Administrator's Manual
Brocade Communications Systems A7990A - StorageWorks SAN Director 4/16 Blade Switch Administrator's Manual

Brocade Communications Systems A7990A - StorageWorks SAN Director 4/16 Blade Switch Administrator's Manual

Brocade web tools administrator's guide (53-0000194-01, november 2006)
Hide thumbs Also See for A7990A - StorageWorks SAN Director 4/16 Blade Switch:
Table of Contents

Advertisement

Web Tools

Administrator's Guide
Supporting Fabric OS v5.2.0
Publlication Number: Publication Number: 53-0000194-01
Publlication Date: Publication Date: 09/29/06

Advertisement

Table of Contents
loading

Summary of Contents for Brocade Communications Systems A7990A - StorageWorks SAN Director 4/16 Blade Switch

  • Page 1: Web Tools

    Web Tools Administrator’s Guide Supporting Fabric OS v5.2.0 Publlication Number: Publication Number: 53-0000194-01 Publlication Date: Publication Date: 09/29/06...
  • Page 2 Copyright © 2006, Brocade Communications Systems, Incorporated. ALL RIGHTS RESERVED. Brocade, the Brocade B weave logo, Fabric OS, File Lifecycle Manager, MyView, Secure Fabric OS, SilkWorm, and StorageX are registered trademarks and Tapestry is a trademark of Brocade Communications Systems, Inc., in the United States and/or in other countries.
  • Page 3 Document History The following table lists all versions of the Web Tools Administrator’s Guide. Document Title Publication Summary of Changes Publication Number Date Web Tools User’s Guide v2.0 53-0001536-01 September 1999 Web Tools User’s Guide v2.2 53-0001558-02 May 2000 Web Tools User’s Guide v2.3 53-0000067-02 December 2000 Web Tools User’s Guide v3.0...
  • Page 4 Document Title Publication Summary of Changes Publication Number Date Web Tools Administrator’s 53-1000049-01 Updates to support new switch January 2006 Guide types (4900, 7500) and Fabric OS v5.1.0, including FCR, FCIP, and the FR4-18i port blade. Web Tools EZ information is moved to a separate book.
  • Page 5: Table Of Contents

    Contents About This Document How This Document Is Organized ....... . . Supported Hardware and Software .
  • Page 6 Session Management ......... . . 1-13 Logging In.
  • Page 7 Chapter 3 Managing Fabrics and Switches Managing Fabrics and Switches Using Web Tools..... Launching the Switch Admin Module ......Refreshing the Switch Admin Module .
  • Page 8 Monitoring Events ..........3-20 Displaying Fabric Events .
  • Page 9 Chapter 7 Using the FCIP Tunneling Service About the FCIP Tunneling Service....... . . Compression .
  • Page 10 Managing Administrative Domains ....... . 8-11 Adding and Removing Members ....... 8-11 Renaming Admin Domains .
  • Page 11 Managing QuickLoops ......... . 9-14 Creating QuickLoops .
  • Page 12 Chapter 10 Monitoring Performance Monitoring Performance Using Web Tools ......10-1 Predefined Performance Graphs ....... . 10-2 User-Defined Graphs .
  • Page 13 Chapter 12 Working With Diagnostic Features Managing Trace Dumps ......... 12-1 How a Trace Dump Is Used .
  • Page 14 Chapter 14 Administering Extended Fabrics About Extended Link Buffer Allocation......14-1 Configuring a Port for Long Distance ......14-3 Chapter 15 Administering the iSCSI Target Gateway Supported Platforms for iSCSI .
  • Page 15 Chapter 17 Configuring Standard Security Features Creating and Maintaining User-Defined Accounts..... 17-1 Creating and Deleting User-Defined Accounts ....17-4 Changing Account Parameters .
  • Page 16 Chapter 19 Limitations General Web Tools Limitations ........19-1 Platform-Specific Limitations.
  • Page 17: How This Document Is Organized

    About This Document This document is an administrator’s guide written to help fabric administrators monitor and modify switches and fabrics from a Web-based user interface. “About This Document” contains the following sections: • “How This Document Is Organized” on page xv •...
  • Page 18: Supported Hardware And Software

    • Chapter 6, “Administering ISL Trunking”, provides information on managing the optionally licensed ISL Trunking feature. • Chapter 7, “Using the FCIP Tunneling Service”, provides information on managing the FCIP tunneling service and configuring an FCIP interswitch link. • Chapter 8, “Managing Administrative Domains”, provides information on managing Admin Domains.
  • Page 19: What's New In This Document

    In those instances in which procedures or parts of procedures documented here apply to some switches but not to others, this guide identifies exactly which switches are supported and which are not. Although many different software and hardware configurations are tested and supported by Brocade Communications Systems, Inc.
  • Page 20: Document Conventions

    Document Conventions This section describes text formatting conventions and important notices formats. Text Formatting The narrative-text formatting conventions that are used in this document are as follows: bold text Identifies command names Identifies the names of user-manipulated GUI elements Identifies keywords and operands Identifies text to enter at the GUI or CLI italic text Provides emphasis...
  • Page 21: Additional Information

    Additional Information This section lists additional Brocade and industry-specific documentation that you might find helpful. Brocade Resources The following related documentation is provided on the Brocade Documentation CD-ROM and on the Brocade Web site, through Brocade Connect. Note Go to http://www.brocade.com and click Brocade Connect to register at no cost for a user ID and password.
  • Page 22 SilkWorm 24000 • SilkWorm 24000 Hardware Reference Manual • SilkWorm 24000 QuickStart Guide SilkWorm 24000/48000 • Port Blade and Filler Panel Replacement Procedure • Control Processor Blade Replacement Procedure • Blower Assembly Replacement Procedure • Cable Management Tray and Guide Replacement Procedure •...
  • Page 23: Optional Brocade Features

    SilkWorm 200E • SilkWorm 200E Hardware Reference Manual (for v5.x software) SilkWorm Multiprotocol Router Model AP7420 • SilkWorm Multiprotocol Router Model AP7420 Hardware Reference Manual • SilkWorm Multiprotocol Router Model AP7420 QuickStart Guide • SilkWorm Multiprotocol Router Model AP7420 Power Supply Replacement Procedure •...
  • Page 24: Other Industry Resources

    ® FICON Enables IBM host-based management programs to manage FICON fabric switches in-band by sending commands to the Fabric OS emulated control device. FCIP Tunneling The optional Fibre Channel over Internet protocol (FCIP) Tunneling Service enables Fibre Channel frames to “tunnel” through IP networks by dividing frames, encapsulating the result in IP packets on entering the tunnel, and then reconstructing them as they leave the tunnel.
  • Page 25: Document Feedback

    Switch Serial Number The switch serial number and corresponding bar code are provided on the serial number label, as shown here: *FT00X0054E9 FT00X0054E9 The serial number label is located as follows: • SilkWorm 200E, 3200, 3250 and 3850—On the bottom of the chassis •...
  • Page 26 xxiv Web Tools Administrator’s Guide Publication Number: 53-0000194-01...
  • Page 27: Introducing Web Tools

    Chapter Introducing Web Tools Brocade Web Tools is a graphical user interface (GUI) that enables administrators to monitor and manage single or small fabrics, switches, and ports from a standard workstation. It is an optionally licensed product that runs on Brocade Fabric OS. Web Tools provides the administrative control point for Brocade Advanced Fabric Services, including Advanced Zoning, ISL Trunking, Advanced Performance Monitoring, and Fabric Watch.
  • Page 28: Requirements

    Requirements Web Tools requires any browser that conforms to HTML version 4.0, JavaScript version 1.0, and Java Plug-in 1.4.2_08 or higher. Brocade has certified and tested Web Tools on the platforms shown in Table 1-1. Table 1-1 Certified and Tested Platforms Operating System Browser Java Plug-In...
  • Page 29: Configuring Internet Explorer

    Configuring Internet Explorer Correct operation of Web Tools with Internet Explorer requires specifying the appropriate settings for browser refresh frequency and process model. Browser pages should be refreshed frequently to ensure the correct operation of Web Tools. To set the refresh frequency Click Tools >...
  • Page 30 To install the JRE on your Solaris or Linux client workstation Locate the JRE on the Internet, at the following URL: http://java.sun.com/products/archive/j2se/5.0_06/index.html Note This URL points to a non-Brocade Web site and is subject to change without notice. Select JRE 5.0 Update 6. Follow the instructions to install the JRE.
  • Page 31 Configuring the Java Plug-In If you are managing fabrics with more than 10 switches or 1000 ports, or if you are using the iSCSI Gateway module extensively, you should increase the default heap size to 256 MB to avoid out-of- memory errors.
  • Page 32: Installing A Web Tools License

    Type the following information: -Xms256m -Xmx256m -Xms256m sets the minimum heap size and -Xmx256m sets the maximum heap size. In this instance, the minimum and maximum sizes are 256 MB. Click OK to close the Java Runtime Settings dialog box. Click Apply to apply your settings and close the Java Control Panel.
  • Page 33: Value Line Licenses

    Installing a Web Tools License Through the Web Launching Web Tools from any nonlicensed switch automatically displays the license dialog box. If the fabric already contains at least one licensed switch, you can use Web Tools to view and license other switches from the licensed switch.
  • Page 34: Launching Web Tools

    Web Tools is part of the Fabric OS of a switch. When you launch Web Tools on a switch, you can manage other switches in the fabric that have lower or higher firmware versions. It is important to note that when accessing these switches you are opening the remote switch’s version of Web Tools, and the functionality available for those switches might vary.
  • Page 35 Figure 1-4 EZSwitchSetup Interface Figure 1-5 Web Tools Interface Web Tools Administrator’s Guide Publication Number: 53-0000194-01...
  • Page 36: Administrative Domains

    Figure 1-6 Web Tools—AP Edition Interface Administrative Domains An “administrative domain” (Admin Domain or AD) is a logical grouping of fabric elements that defines what switches, ports, and devices you can view and modify. An Admin Domain is a filtered administrative view of the fabric.
  • Page 37: Admin Domains And Login

    AD0 is a special Admin Domain that contains all switches, ports, and devices that have not been put into other Admin Domains. AD255, another special domain, is an unfiltered view of the entire physical fabric. Note Some features work only in AD255 when user-defined domains are present, such as ACL management. By default, all fabric elements belong to AD0.
  • Page 38: Admin Domains And Zoning

    For example, if the switch WWN is: 10:00:00:60:69:e4:24:e0 then the converted WWN for that switch in AD1 is: 50:06:06:9e:42:4e:09:01 Admin Domains and Zoning Each Admin Domain has its own zone database, with both defined and effective zone configurations and all related zone objects (zones, zone aliases, and zone members). Within an Admin Domain, you can configure zoning only with the devices that are present in that Admin Domain.
  • Page 39: Session Management

    Session Management A “Web Tools session” is defined as the connection between the Web Tools client and its managed switch. A session is established when you log in to a switch through Web Tools. A single session is shared by the Switch Explorer and all child windows launched from it.
  • Page 40 To log in Click Run on the signed certificate applet It is recommended that you check the box Always trust content from this publisher in order for some of the more simple functions to work, such as export and copy. You must accept the signed certificate from Brocade when you launch Web Tools.
  • Page 41 The Login dialog box displays the Admin Domain options. • Click the Home Domain radio button to log in to your default Admin Domain. • Click the User Specified Domain radio button to log in to another Admin Domain instead of your home domain.
  • Page 42: Logging Out

    Logging Out You can end a Web Tools session either by logging out or by closing the Switch Explorer browser window. All windows belonging to the session are invalidated. After a short delay, a message appears stating the session has been invalidated, but you must close them manually. Sometimes you might be logged out of a session involuntarily, without explicitly clicking the Logout button.
  • Page 43: Viewing The Switch Explorer

    Chapter Using the Web Tools Interface This chapter contains the following sections: • “Viewing the Switch Explorer” on page 2-1 • “Displaying Tool Tips” on page 2-12 • “Refresh Rates” on page 2-13 • “Displaying Switches in the Fabric” on page 2-14 •...
  • Page 44 Some buttons in the Switch Explorer might be grayed out, which means either your account does not have sufficient privileges to access this feature, or your currently selected Admin Domain does not meet some condition to access the feature. • A single session is shared by the Switch Explorer and all child windows launched from it.
  • Page 45: Silkworm 24000 Director

    SilkWorm 24000 Director Figure 2-1 shows an example with pointers displaying the various parts of the Web Tools Switch Explorer for a SilkWorm 24000 director. In this figure, the SilkWorm 24000 director has two domains; however, only one domain is displayed. You can view and manage only one domain at a time, even though both domains are enclosed in the same chassis.
  • Page 46: Silkworm 48000 Director

    SilkWorm 48000 Director Figure 2-2 shows an example with pointers displaying the various parts of the Web Tools Switch Explorer for a SilkWorm 48000 director. Active CP LED Indicators Active CP Arrow Figure 2-2 Web Tools Switch Explorer for a SilkWorm 48000 Director (see key to callouts on page 2-2) Web Tools Administrator’s Guide...
  • Page 47: Silkworm 4100 Switch

    SilkWorm 4100 Switch Figure 2-3 shows an example with pointers displaying the various parts of the Web Tools Switch Explorer for a SilkWorm 4100 switch. This is the same format as the Switch Explorer used in Web Tools for the SilkWorm 200E, 3250, 3850, 3900, 4900, and 7500 switches. Figure 2-3 Web Tools Switch Explorer View for a SilkWorm 4100 Switch (see key to callouts page...
  • Page 48: Blade View

    Blade View Figure 2-4 is a view of the Web Tools switch view of the blades you can install in a SilkWorm 48000 director. FR4-18i FC4-16IP FC-16 FC4-48 FC-32 Figure 2-4 Web Tools Switch View of Blades Web Tools Administrator’s Guide Publication Number: 53-0000194-01...
  • Page 49: Fabric Tree

    Fabric Tree The Fabric Tree is the left panel of the Switch Explorer. The Fabric Tree displays all switches in the fabric, including switches that do not have a Web Tools license and switches that are not owned by your selected Admin Domain.
  • Page 50: Admin Domain Context

    Admin Domain Context The Admin Domain field in the Switch Explorer displays the currently selected Admin Domain and allows you to change to a different one. All the Admin Domains assigned to you are available in the drop-down menu. For most administrative tasks you must be in either AD0 or the physical fabric. The following procedure describes how to change the Admin Domain.
  • Page 51 Click OK in the confirmation window. The Switch Explorer refreshes to display the new Admin Domain context. A progress bar displays while the Switch Explorer is refreshing. Figure 2-6 Admin Domain Change in Progress Any child windows that were opened in the previous Admin Domain context are disabled; you must close these windows manually.
  • Page 52: Switch View

    Switch View The Switch View displays a graphical representation of the selected switch, including a real-time view of switch and port status. Select a switch icon in the Fabric Tree to access the Switch View for that switch. Figure 2-7 shows the Switch View for a SilkWorm 4100 switch.
  • Page 53: Switch View Button Menu

    Switch View Button Menu The Switch View button menu is the launch point for the following: • Switch Events screen • Telnet interface • Fabric Watch module • Switch Admin module • Performance Monitor module • High Availability (HA) Admin module •...
  • Page 54: Switch Information View

    Switch Information View The Switch Information View displays vital switch information such as switch name, status, Fabric OS version, domain ID, IP address, WWN, and current zone configuration. The information in the Switch Information View is polled every 15 seconds. The Switch Information View is located beside the graphic representation of the switch for the SilkWorm 24000 and 48000 directors.
  • Page 55: Refresh Rates

    When you mouse over a port, you can view the port number, port index, port type (E, F, L, or U_Port), port status (online or offline), and port state (in-sync, no_sync, no light, or no module). If you right- click the port, you can view the same information as the mouseover tool tip as well as the hexadecimal value of the port.
  • Page 56: Displaying Switches In The Fabric

    Retrieval time increases when you are in a large fabric as there is more data to fetch from the switch(s). • Processor speed of the system you are using may slow down the refresh rate. • OS-Job Scheduling if you are using a host-system in the data center impacts the refresh rate •...
  • Page 57: Using Web Tools And Secure Mode

    Using Web Tools and Secure Mode When secure mode is enabled on switches you manage through Web Tools, there are certain requirements and scenarios of which you should be aware. You should read through the requirements and scenarios in this section if you plan to use Web Tools to manage any switches that have secure mode enabled.
  • Page 58: Disabled Functionality

    Disabled Functionality Telnet access to a switch and the Telnet button in Web Tools are both disabled when secure mode is enabled for a fabric. You must use sectelnet or SSH to access the Fabric OS CLI in a secure fabric. These capabilities are not accessible from Web Tools.
  • Page 59: Managing Fabrics And Switches Using Web Tools

    Chapter Managing Fabrics and Switches This chapter contains the following sections: • “Managing Fabrics and Switches Using Web Tools,” next • “Launching the Telnet Window” on page 3-3 • “Configuring IP and Netmask Information” on page 3-4 • “Configuring a syslog IP Address” on page 3-5 •...
  • Page 60 Figure 3-1 Switch Admin Module With the exception of switch time, information displayed in the Switch Admin module is not updated automatically by Web Tools. To update the information displayed in the Switch Admin module, see “Refreshing the Switch Admin Module” on page 3-3.
  • Page 61: Launching The Switch Admin Module

    Launching the Switch Admin Module Most of the management procedures in this chapter are performed from the Switch Admin module. To access the Switch Admin module Select a switch from the Fabric Tree. The selected switch appears in the Switch View.
  • Page 62: Configuring Ip And Netmask Information

    Configuring IP and Netmask Information When you configure IP and netmask information for the SilkWorm 24000 or 48000 director, it is on a logical-switch basis. This means that for each logical switch, you must configure IP and subnet mask information individually. When you change the Ethernet IP, subnet mask, gateway IP, or Fibre Channel IP and subnet mask from Web Tools, there is a normal loss of network connection to the switch.
  • Page 63: Configuring A Syslog Ip Address

    Click Apply. Exit and relaunch Web Tools to continue working. Configuring a syslog IP Address The syslog IP represents the IP address of the server that is running the syslog process. The syslog daemon reads and forwards system messages to the appropriate log files and/or users, depending on the system configuration.
  • Page 64: Enabling And Disabling Blades

    Enabling and Disabling Blades The procedure in this section applies only to the SilkWorm 24000 and 48000 directors (bladed switches). To enable or disable a blade Launch the Switch Admin module as described on page 3-3. Click the Blade tab. The Enable Blade column in the Blade tab pane indicates whether the blade is enabled.
  • Page 65: Configuring A Switch

    Configuring a Switch Use the Switch tab of the Switch Admin module to perform basic switch configuration. Figure 3-1 page 3-2 shows an example of the Switch tab. Enabling and Disabling a Switch You can identify if a switch is enabled or disabled in the Switch Admin module by looking at the lower- right corner: the icon means that the switch is enabled, and the icon means that the switch is...
  • Page 66: Changing The Switch Domain Id

    Changing the Switch Domain ID Although domain IDs are assigned dynamically when a switch is enabled, you can request a specific ID to resolve a domain ID conflict when you merge fabrics. To change the switch domain ID Launch the Switch Admin module as described on page 3-3.
  • Page 67: Performing A Fast Boot

    Performing a Fast Boot A fast boot reduces boot time significantly by bypassing power-on self test (POST). To perform a switch fast boot Launch the Switch Admin module as described on page 3-3. Click the Firmware Download tab (see Figure 4-2 on page 4-5).
  • Page 68: Configuring Fabric Parameters

    Configuring Fabric Parameters You can configure the following fabric parameters using the Configure tab and Fabric subtab of the Switch Admin module (as shown in Figure 3-4 on page 3-11): • BB Credit The buffer-to-buffer credit is the number of buffers available to attached devices for frame receipt. The default BB Credit is 16.
  • Page 69 Figure 3-4 Configure Tab, Fabric Subtab To configure fabric parameters Launch the Switch Admin module as described on page 3-3. Disable the switch as described in “Enabling and Disabling a Switch” on page 3-7. Click the Configure tab. Click the Fabric subtab. Make the fabric parameter configuration changes.
  • Page 70: Enabling Insistent Domain Id Mode

    Enabling Insistent Domain ID Mode When insistent domain ID (ID_ID) mode is enabled, the current domain setting for the switch is insistent; that is, the same ID is requested during switch reboots, power cycles, CP failovers, firmware downloads, and fabric reconfigurations. If the fabric does not assign the insistent domain ID, the switch segments from the fabric.
  • Page 71: Configuring Arbitrated Loop Parameters

    Configuring Arbitrated Loop Parameters You can configure the following arbitrated loop parameters using the Configure tab and Arbitrated Loop subtab of the Switch Admin module: Send Fan Frames Check this box to specify that fabric address notification (FAN) frames are sent to public loop devices to notify them of their node ID and address. Always Send RSCN Following the completion of loop initialization, a remote state change notification (RSCN) is issued when FL_Ports detect the presence of new...
  • Page 72: Managing Licensed Features

    Managing Licensed Features Feature licenses might be supplied with switch software, or you can purchase licenses separately from your switch vendor, who will provide you with keys to unlock the features. License keys are provided on a per-chassis basis, so for products that support multiple logical switches (domains), a license key applies to all domains within the chassis.
  • Page 73: Activating A License On A Switch

    Activating a License on a Switch Before you can unlock a licensed feature, you must obtain a license key. You can either use the license key provided in the paperpack document supplied with switch software or see the Fabric OS Administrator’s Guide for instructions on how to obtain a license key at the Brocade Web site (www.brocade.com).
  • Page 74: Administering High Availability

    Administering High Availability High-Availability (HA) features provide maximum reliability and nondisruptive replacement of key hardware and software modules. The procedures in this section apply only to the SilkWorm 24000 and 48000 directors, because the High Availability module is available only on these switch types. See the Fabric OS Administrator’s Guide for additional information about High Availability.
  • Page 75 Click the Hi Avail button on the Switch View. The HA Admin module displays. Figure 3-6 High Availability Module CP Tab Note that the background color of the HA Status at the top of the module is the same as the background color of the Hi Avail button.
  • Page 76: Synchronizing Services On The Cp

    Synchronizing Services on the CP A nondisruptive CP failover is only possible when all the services have been synchronized between both CPs. To synchronize the services Launch the Hi Avail module as described in “Launching the High Availability Module” page 3-16. Verify that HA Summary field displays Non-Disruptive Failover Ready.
  • Page 77: Initiating A Cp Failover

    Figure 3-7 HA Module Services Tab Initiating a CP Failover A nondisruptive failover might take about 30 seconds to complete. During the failover, all of the Web Tools windows and all associated child-windows are invalidated. You must close all Web Tools windows and relaunch Web Tools.
  • Page 78: Monitoring Events

    Monitoring Events Web Tools displays fabric-wide and switch-wide events. Event information includes sortable fields for the following: • Switch name • Message number • Time stamp • Indication of whether the event is from a logical switch or a chassis •...
  • Page 79: Displaying Fabric Events

    Displaying Fabric Events Events are displayed for all switches in the fabric in the Fabric Events window (see Figure 3-8). Fabric events are not automatically polled. You must click Refresh from the Fabric Events window to poll fabric events. Switch events are automatically polled every 15 seconds. Fabric Events can be collected only for switches that have the same security level (http or https) as the launch switch.
  • Page 80: Displaying Switch Events

    Displaying Switch Events The Switch Events window displays a running log of events for the selected switch (see Figure 3-9 page 3-22). Switch events are polled and updated every 15 seconds, so there is no refresh-on-demand option for switch events, as there is for the fabric events. For two-switch configurations, all chassis-related events are displayed in the event list of each logical switch for convenience.
  • Page 81: Filtering Fabric And Switch Events

    Filtering Fabric and Switch Events You can filter the events in the Fabric Events window and Switch Events window by time, severity, message ID, and service. You can apply either one type of filter at a time or multiple types of filters at the same time.
  • Page 82 Click OK. The filter is enabled and the enabled filter type is displayed in the events window. To filter events by event severity levels Launch the Fabric or Switch Events window as described in “Displaying Fabric Events” page 3-21 or “Displaying Switch Events”...
  • Page 83: Displaying A Fabric Topology Report

    Displaying a Fabric Topology Report A fabric topology report lists all of the domains in the fabric and the active paths for each domain. A sample fabric topology report is shown in Figure 3-11 on page 3-25. To view a fabric topology report Click the Fabric Topology icon on the Fabric...
  • Page 84: Displaying The Name Server Entries

    Displaying the Name Server Entries Web Tools displays Name Server entries listed in the Simple Name Server database (see Figure 3-12 page 3-26). This includes all Name Server entries for the fabric, not only those related to the local domain. Each row in the table represents a different device. Admin Domain considerations: The Name Server table is filtered based on Admin Domain membership of the fabric devices.
  • Page 85 Optional: Check the Auto Refresh checkbox on the Name Server window. Type an auto-refresh interval (in seconds); the minimum (and default) interval is 15 seconds. The Name Server entries will refresh at the rate you set. To print the Name Server entries Click the Name Server icon on the Fabric...
  • Page 86: Physically Locating A Switch Using Beaconing

    Physically Locating a Switch Using Beaconing Use the Beacon button to physically locate a switch in a fabric. The beaconing function helps to physically locate a switch by sending a signal to the specified switch, resulting in an LED light pattern that cycles through all ports for each switch (from left to right).
  • Page 87: Chapter 4 Maintaining Configurations And Firmware

    Chapter Maintaining Configurations and Firmware This chapter contains the following information: • “Maintaining Configurations,” next • “Performing a Firmware Download” on page 4-4 Maintaining Configurations It is important to maintain consistent configuration settings on all switches in the same fabric, because inconsistent parameters (such as inconsistent PID formats) can cause fabric segmentation.
  • Page 88: Backing Up A Configuration File

    Figure 4-1 Configure Tab, Upload/Download Subtab Backing Up a Configuration File Keep a backup copy of the configuration file in case the configuration is lost or unintentional changes are made. You should keep individual backup files for all switches in the fabric. You should avoid copying configurations from one switch to another.
  • Page 89: Restoring A Configuration

    • If the current Admin Domain owns the switch and you are logged in with any role that allows config upload/download, the following will be saved in the configuration file: Local zone configuration iSCSI config (if any) All other config information except Admin Domain configuration information •...
  • Page 90: Performing A Firmware Download

    Click the Upload/Download subtab (see Figure 4-1 on page 4-2). Click the Config Download to Switch radio button. Type the host IP, user name, file name, and password. Type the configuration file with a fully qualified path. Select a protocol to use to transfer the file. Click Apply.
  • Page 91 To download a new version of the firmware Launch the Switch Admin module as described on page 3-3. Click the Firmware Download tab. Figure 4-2 Firmware Download Tab Click the Firmware Download radio button. Type the host IP address, user name, password, and fully qualified path to the file release.plist. The path name should follow the structure below: //<directory>/<fos_version_directory>/release.plist where the <directory>...
  • Page 92 Web Tools Administrator’s Guide Publication Number: 53-0000194-01...
  • Page 93: Viewing And Managing Ports Using Web Tools

    Chapter Managing Your Ports This chapter describes how to manage FC and gigabit Ethernet (GbE) ports. See “Viewing and Configuring EX_Ports” on page 11-6 for information on how to view and configure EX_Ports. This chapter contains the following sections: • “Viewing and Managing Ports Using Web Tools”...
  • Page 94 To launch the Port Management module Click an accessible port in the Switch View to launch the Port Management module in a separate window. Click tabs to display either Task Bar displays list of tasks you FC ports or GbE ports can perform on the selected port.
  • Page 95: Port Management Module Components

    Port Management Module Components The Port Management module (shown in Figure 5-1) has the following components: • Two tabs on the top: FC Ports and GigE Ports. If the switch does not have GbE ports, the GigE Ports tab is not shown. To display all of the FC ports on the switch (physical FC ports and logical FCIP ports), click the FC Ports tab.
  • Page 96: Identifying Controllable Ports

    Figure 5-2 Port Management Module, Table View Identifying Controllable Ports All ports have a “Controllable” attribute, which represents a combination of the RBAC and Admin Domain permissions. Figure 5-1 Figure 5-2 show the Controllable attribute. The Controllable attribute is No in the following situations: •...
  • Page 97: Configuring Ports

    Configuring Ports Web Tools provides wizards to assist you in configuring ports. This section describes how you can configure FC ports, logical FCIP ports, GbE ports, and NPIV ports. Configuring FC Ports With the FC Port Configuration wizard, you can configure allowed port types, port speed, and long distance mode for physical ports.
  • Page 98: Configuring Fcip Ports

    Allowed Port Types For FC ports, the Port Management module displays the following values relating to port type: Port Type This is the actual or current port type. If the port is offline, this value is the allowed types (or U_Port, if no type constraint has been specified). If the port is online, this value is the type the port has actually negotiated to.
  • Page 99: Configuring Gbe Ports

    To configure FCIP ports Click a port in the Switch View to launch the Port Management module (see Figure 5-1 page 5-2). Click the FC Ports tab. Select the logical port you want to configure in the tree on the left side of the window. Click the General subtab.
  • Page 100 The following procedure describes how to launch the GigE Port Configuration wizard. The wizard is self-explanatory, so the explicit steps are not documented here. To configure GbE ports Click a port in the Switch View to launch the Port Management module (see Figure 5-1 page 5-2).
  • Page 101: Enabling And Disabling A Port

    To rename a port Click a port in the Switch View to launch the Port Management module (see Figure 5-1 page 5-2). Click the FC Ports tab. Click the switch or slot that contains the port you want to rename in the tree on the left side of the window.
  • Page 102: Persistent Enabling And Disabling Ports

    Click Enable or Disable in the task bar. If a task is grayed out, that means that the port is already in that state. For example, if Enable is grayed out, the port or ports are already enabled. On multiple selections, when both enabled and disabled ports are selected, both Enabled and Disabled buttons are active.
  • Page 103: Enabling And Disabling Npiv Ports

    Enabling and Disabling NPIV Ports N-Port ID Virtualization (NPIV) enables a single Fibre Channel protocol port to appear as multiple, distinct ports, providing separate port identification within the fabric for each operating system image behind the port (as if each operating system image has its own unique physical port). NPIV assigns a different virtual port ID to each Fibre Channel protocol device.
  • Page 104: Activating Ports

    Activating Ports The SilkWorm 200E can be purchased with 8, 12, or 16 licensed ports. The SilkWorm 4100 can be purchased with 16, 24, or 32 licensed ports. The SilkWorm 4900 can be purchased with 32, 48, or 64 licensed ports. As your needs increase, you can activate unlicensed ports by purchasing and installing the Brocade Ports on Demand optional licensed product.
  • Page 105: Swapping Port Index

    Swapping Port Index If a port malfunctions, or if you want to connect to different devices without having to re-wire your infrastructure, you can move traffic from one port to another (swap ports) without changing the I/O Configuration Data Set (IOCDS) on the mainframe computer. When you perform a port swap, Web Tools automatically disables the two ports, swaps the area IDs, and enables the ports.
  • Page 106 Port Index attribute indicates whether the port has been swapped. Figure 5-6 Swapping a Port Index 5-14 Web Tools Administrator’s Guide Publication Number: 53-0000194-01...
  • Page 107: Chapter 6 Administering Isl Trunking

    Chapter Administering ISL Trunking This chapter contains the following information: • “About Interswitch Link Trunking” on page 6-1 • “Displaying Trunk Group Information” on page 6-2 • “Disabling or Reenabling Trunking Mode on a Port” on page 6-3 About Interswitch Link Trunking Interswitch link (ISL) trunking optimizes network performance by forming trunking groups that can distribute traffic across a shared bandwidth.
  • Page 108: Displaying Trunk Group Information

    Figure 6-1 Trunking Tab Displaying Trunk Group Information Use this procedure to display the following information about ISL Trunking groups: • Trunk group number identifier • Master port • Member ports To view information on a trunk group Launch the Switch Admin module as described on page 3-3.
  • Page 109: Disabling Or Reenabling Trunking Mode On A Port

    Disabling or Reenabling Trunking Mode on a Port When the trunking license is activated, trunks are automatically established on eligible ISLs and trunking capability is enabled by default on all ports. Use the following procedure to disable trunking on a port or to reenable trunking if it has been disabled. Trunking is not supported on logical ports, GbE ports, or EX_Ports.
  • Page 110 Web Tools Administrator’s Guide Publication Number: 53-0000194-01...
  • Page 111: About The Fcip Tunneling Service

    Chapter Using the FCIP Tunneling Service This chapter describes the Fibre Channel over IP (FCIP) Tunneling Service. It contains the following sections: • “About the FCIP Tunneling Service” on page 7-1 • “Configuring an FCIP Interswitch/Interfabric Link” on page 7-7 •...
  • Page 112 Fibre Channel frame encapsulation occurs on the sending port and the reconstruction of Fibre Channel frames occurs on the receiving port. This encapsulation and reconstruction is transparent to the initiator and target. This chapter uses the terms “local” and “remote” this way: the local switch is the switch that initiates the FCIP connection request, and the remote switch is the switch that listens for FCIP connection requests.
  • Page 113: Compression

    Compression The compression feature is a per-tunnel feature that allows the Fibre Channel data frames to be compressed before they sent over the tunnel as FCIP frames. The compression can be enabled or disabled using the portCfg command. The configuration of this feature is optional and by default the feature is disabled.
  • Page 114: Tape Pipelining

    Tape Pipelining Tape pipelining reduces the number of round trip times required to complete a SCSI write I/O and also eliminates the sequential nature of SCSI I/O. This results in reducing the I/O completion latency and increasing FCIP ISL bandwidth utilization. FCIP tape pipelining reduces the wait time for backup applications while performing backup to tape devices and eliminates the sequential nature of I/O.
  • Page 115 IPSec helps provide in-depth defense against: • Network-based attacks from untrusted computers, which can result in the denial-of-service of applications, services, or the network • Data corruption • Data theft • User-credential theft • Administrative control of servers, other computers, and the network Limitations Consider the following limitations if you plan to use IPSec: •...
  • Page 116 Table 7-2 explains the fields and related choices to create an IKE/IPSec policy. Table 7-2 IKE/IPSec Configuration Choices Field Description Choices Policy Type You can create either an IKE policy or an IPSec policy IPSec Policy Number This parameter helps you keep track of the 1 through 32 number of policies you have created on your switch.
  • Page 117: Configuring An Fcip Interswitch/Interfabric Link

    Configuring an FCIP Interswitch/Interfabric Link Following are the steps for configuring an FCIP interswitch/interfabric link (ISL/IFL): (Optional) “Configuring an IKE or IPSEC Policy” on page 7-7 If you are planning to use IPSec, you must configure the policies first. “Configuring Virtual Ports” on page 7-8.
  • Page 118: Configuring Virtual Ports

    Select a policy type from the drop down menu. Figure 7-2 Create an IKE/IPSec Policy Choose a policy number. Select an Encryption Algorithm. Select an Authentication Algorithm. (IKE only) Select a Perfect Forward Secrecy. (IKE only) Select a Diffie-Hellman Group. 10.
  • Page 119: Configuring Interfaces, Routes, And Tunnels

    Configuring Interfaces, Routes, and Tunnels Web Tools provides a wizard to assist you in configuring an FCIP interswitch/interfabric link (ISL/IFL). With the GigE Port Configuration wizard, you can add IP interfaces, add IP routes, and configure FCIP tunnels. The following procedure describes how to launch the GigE Port Configuration wizard. The wizard is self-explanatory, so the explicit steps are not documented here.
  • Page 120 Figure 7-3 GigE Port Configuration Wizard: Selecting Tunnels To configure the FCIP interfaces, routes, and tunnels Click a port in the Switch View to launch the Port Admin module in a separate window (see Figure on page 5-2). Click the GigE Ports tab. Select the port you want to configure in the tree on the left side of the window.
  • Page 121: Enabling Persistently Disabled Ports

    Enabling Persistently Disabled Ports Ports on the SilkWorm 7500 and FR4-18i are, by default, persistently disabled. Before you can successfully configure FCIP interswitch links, you must enable the ports. Caution VEX_Port Users: If the fabric is already connected, leave the ports disabled until after you have configured the VEX_Port;...
  • Page 122: Managing Ip Interfaces For A Gbe Port

    Managing IP Interfaces for a GbE Port You can configure a new IP interface, edit an existing IP interface, or delete an IP interface by clicking the Add, Edit, and Delete tasks respectively on the IP Interfaces tab for a GbE port. Before you can delete an IP interface, you must first delete the corresponding FCIP tunnel.
  • Page 123 To edit an IP interface Click a port in the Switch View to launch the Port Management module in a separate window (see Figure 5-1 on page 5-2). Click the GigE Ports subtab. Click the port you want to edit and click the IP Interfaces subtab. Select the IP interface to edit in the table on the right side of the window.
  • Page 124: Managing Ip Routes For A Gbe Port

    Managing IP Routes for a GbE Port You can configure a new IP route, edit an existing user-defined IP route, or delete an IP route by clicking the Add, Edit, and Delete tasks respectively on the IP Routes tab for a GbE port. Note For each IP interface created in the GbE port, one default IP route will be automatically created.
  • Page 125: Managing Fcip Tunnels

    To edit an IP route Click a port in the Switch View to launch the Port Management module in a separate window (see Figure 5-1 on page 5-2). Click the GigE Ports subtab. Click the port you want to edit and click the IP Routes subtab. Select the IP route to edit in the table on the right side of the window.
  • Page 126 Caution Both ends of the tunnel must be identically configured. Compression, fastwrite, tape pipelining, or IKE/ IPSec needs to be either enabled or disabled at both ends of the tunnel. In the case of a mismatch, the tunnel will not be established. “Configuring Interfaces, Routes, and Tunnels”...
  • Page 127 To edit FCIP tunnel configuration Click a port in the Switch View to launch the Port Management module in a separate window (see Figure 5-1 on page 5-2). Click the GigE Ports tab. Click on the port you want to edit. Click the FCIP Tunnels subtab.
  • Page 128 7-18 Web Tools Administrator’s Guide Publication Number: 53-0000194-01...
  • Page 129: About Administrative Domains

    Chapter Managing Administrative Domains This chapter contains the following information: • “About Administrative Domains” on page 8-1 • “Implementing Administrative Domains” on page 8-3 • “Using the Admin Domain Module” on page 8-4 • “Creating and Populating Domains” on page 8-8 •...
  • Page 130: User-Defined Admin Domains

    User-Defined Admin Domains AD1 through AD254 are user-defined Admin Domains. These user-defined Admin Domains can be created only by a physical fabric administrator in AD255. System-Defined Admin Domains AD0 and AD255 are special Admin Domains and are present in every AD-capable fabric. AD0 is a system-defined Admin Domain that, in addition to containing members you explicitly added (similar to user-defined Admin Domains), it contains all online devices, switches, and switch ports that have not been assigned to any user-defined Admin Domain.
  • Page 131: Admin Domain Membership

    AD255 or Physical Fabric AD255 is a virtual domain that contains all devices, switches, and switch ports in the fabric. AD255 presents an unfiltered view of the fabric and is also referred to as the physical fabric. The term “physical fabric”...
  • Page 132: Using The Admin Domain Module

    Using the Admin Domain Module You can view and manage Admin Domains through the Admin Domain module, shown in Figure 8-1. You access the Admin Domain module by clicking the AD button in the Switch View. Figure 8-1 Admin Domain Module, Summary View The Admin Domain module displays information about the Admin Domains defined in the fabric.
  • Page 133 Figure 8-2 Admin Domain Module, Detail View The Admin Domain module has Export, Copy, Print, and Search links at the top of the tables. These options are not available if the table does not have any content. You must accept the Brocade Certificate at the beginning of the login to Web Tools to enable the functionality of Export and Copy.
  • Page 134: Launching The Admin Domain Module

    Figure 8-3 Searching for a Text String in a Table Launching the Admin Domain Module This section describes how to launch the Admin Domain module, from which the Admin Domain configuration procedures are performed. If you want to configure Admin Domains, you must launch the Admin Domain module from the physical fabric context.
  • Page 135: Refreshing Admin Domain Information

    Refreshing Admin Domain Information Any changes you make to the Admin Domain module are saved to a local buffer; they are not applied to persistent storage until you invoke one of the transactional operations listed in the Actions menu. You can refresh the Admin Domain information at any time to reflect changes that might have been made by other users or to back out of current, unsaved work and start again.
  • Page 136: Closing The Admin Domain Module

    Closing the Admin Domain Module It is very important to remember that any changes you make in the Admin Domain module are not saved automatically. To close the Admin Domain module From the Admin Domain module, click File > Close. Any changes in the buffer that have not been saved, a warning dialog box displays, asking you to confirm that you want to close the Admin Domain session without saving the changes.
  • Page 137 To create a domain Launch the Admin Domain module as described on page 8-6. Click New in the toolbar. The Create Admin Domain wizard launches. Figure 8-4 Create Admin Domain Wizard Assign a name using either the Auto Assigned or User Specified radio button. Assign an Admin Domain ID using either the Auto Assigned or User Specified radio button.
  • Page 138 Figure 8-5 Adding Members to an Admin Domain Click Next. The wizard displays a summary of the Admin Domain. Read the summary to verify the Admin Domain setup is correct. Figure 8-6 Summary View Click Finish to close the wizard. 10.
  • Page 139: Managing Administrative Domains

    11. Click Save to save the new Admin Domain configuration to persistent storage. 12. Click Apply to enforce the new Admin Domain configuration as the effective configuration. To activate or deactivate an Admin Domain Launch the Admin Domain module as described on page 8-6.
  • Page 140 Click Modify. The Modify Admin Domain wizard launches. Figure 8-7 Modify Admin Domain Wizard Assign members to the Admin Domain by selecting them in the Available Members section and clicking Add, Add Ports, or Add Devices. • Select a switch, port, or device in the Available Members tree and click Add to add the selected element.
  • Page 141: Renaming Admin Domains

    Renaming Admin Domains You can change the name of an Admin Domain, including an auto-assigned ID name. To rename a domain Launch the Admin Domain module as described on page 8-6. Select the Admin Domain in the right side pane. Click Rename.
  • Page 142 Deleting All User-Defined Admin Domains When you clear the Admin Domain configuration, all user-defined Admin Domains are deleted and all fabric resources (switches, ports, and devices) are returned to AD0. You cannot clear the Admin Domain configuration if zone configurations exist in any of the user- defined Admin Domains.
  • Page 143: Introducing Zoning

    Chapter Administering Zoning This chapter briefly describes zoning and provides the procedures for managing zoning using Brocade Web Tools. It contains the following sections: • “Introducing Zoning,” next • “Configuring Zoning” on page 9-2 • “Managing Zoning with WebTools” on page 9-4 •...
  • Page 144: Zoning And Admin Domains

    Zoning and Admin Domains Each Admin Domain has its own zone database, with both defined and effective zone configurations and all related zone objects (zones, zone aliases, and zone members). Within an Admin Domain, you can configure zoning only with the devices that are present in that Admin Domain (direct members). If you upgrade a fabric to Fabric OS 5.2.0 or higher, the zone database from the pre-v5.2.0 fabric is referred to as the “root zone database”...
  • Page 145: Launching The Zone Admin Module

    Launching the Zone Admin Module This section describes how to launch the Zone Admin module, from which all zoning procedures are performed. You cannot open the Zone Admin module from AD255 (physical fabric). To launch the Zone Administration module Select a switch from the Fabric Tree.
  • Page 146: Managing Zoning With Webtools

    Managing Zoning with WebTools You can monitor and manage zoning through the Web Tools Zone Admin module. Click the Zone Administration icon in the Fabric Toolbar to access the Zone Admin module, shown in Figure 9-1. The Zone Admin icon is displayed in the Fabric Toolbar only if an Advanced Zoning license is installed on the switch.
  • Page 147 Caution Any changes you make in the Zone Admin module are held in a buffered environment and are not updated in the zoning database until you save the changes. If you close the Zone Admin module without saving your changes, your changes are lost. To save the buffered changes you make in the Zone Admin module to the zoning database on the switch, see “Saving Local Zoning Changes”...
  • Page 148: Refreshing Fabric Information

    • Direct device members are zoneable and are displayed in the tree. • Indirect device members (devices that are currently attached to owned ports) are also zoneable and displayed in the tree. But if such a device is later moved to a non-owned port it will no longer be displayed or zoneable.
  • Page 149: Saving Local Zoning Changes

    The following procedure updates the information in the Zone Admin module with the information saved in the zoning database on the switch. Caution When you refresh the buffered information in the Zone Admin module, any zoning configuration changes you have made and not yet saved are erased from the buffer and replaced with the currently enabled zone configuration information that is saved on the switch.
  • Page 150: Closing The Zone Admin Module

    Closing the Zone Admin Module It is very important to remember that any changes you make in the Zone Admin module are not saved automatically. It is recommended that you always close the Zone Admin module from the File menu, as described in the procedure below.
  • Page 151: Managing Zone Aliases

    Managing Zone Aliases An alias is a logical group of port area numbers, WWNs, or AL_PAs. Specifying groups of ports or devices as an alias makes zone configuration easier, by enabling you to configure zones using an alias rather than inputting a long string of individual members. You can specify members of an alias using the following methods: •...
  • Page 152: Adding And Removing Members Of A Zone Alias

    Adding and Removing Members of a Zone Alias Use the following procedure to add or remove zone alias members. To modify the members of an alias Launch the Zone Admin module as described on page 9-3. Click the Alias tab. Select the alias you want to modify from the Name drop-down menu.
  • Page 153: Deleting Zone Aliases

    Deleting Zone Aliases You can remove a zone alias from the Zone Admin buffer. When a zone alias is deleted, it is no longer a member of the zones of which it was once a member. To delete a zone alias Launch the Zone Admin module as described on page 9-3.
  • Page 154: Adding And Removing Members Of A Zone

    Enter a name for the new zone in the Create New Zone dialog box, and click OK. If you are creating an LSAN zone, the zone name must begin with “LSAN_”. The new zone displays in the Name list. Click plus signs (+) in the Member Selection List to view the nested elements. The choices available in the list depend on the selection made in the View menu.
  • Page 155: Renaming Zones

    Renaming Zones Use the following procedure to change the name of a zone. To rename a zone Launch the Zone Admin module as described on page 9-3. Click the Zone tab. Select the zone you want to rename from the Name drop-down menu. Click Rename.
  • Page 156: Deleting Zones

    Deleting Zones Use the following procedure to delete a zone. To delete a zone Launch the Zone Admin module as described on page 9-3. Click the Zone tab. Select the zone you want to delete from the Name drop-down menu and click Delete. The Confirm Deleting Zone dialog box displays.
  • Page 157: Adding And Removing Members Of A Quickloop

    The Add Member button becomes active. Note There is a limit of two members per QuickLoop. Only switches capable of running QuickLoop are displayed in the Member Selection List. Click Add Member to add QuickLoop members. Selected members are moved to the QuickLoop Members area. Optional: Repeat steps 6 and 7 to add a second element to your QuickLoop.
  • Page 158: Renaming Quickloops

    Renaming QuickLoops Use the following procedure to change the name of a QuickLoop. To rename a QuickLoop Launch the Zone Admin module as described on page 9-3. Click the QuickLoop tab. Select the QuickLoop you want to rename from the Name drop-down menu and click Rename. The Rename a QuickLoop dialog box displays.
  • Page 159: Managing Fabric Assist Zones

    Managing Fabric Assist Zones Fabric Assist is an extension to QuickLoop. A Fabric Assist (FA) zone allows private hosts to communicate with public or private targets across the fabric. Fabric Assist zones can be administered using Fabric OS 5.x; however, switches or directors running Fabric OS 5.x cannot be members of a Fabric Assist zone.
  • Page 160: Adding And Removing Fabric Assist Zone Members

    11. Optional: Click Add Other Host to include a WWN, port, or QuickLoop (AL_PA) that is not currently a part of the fabric. The new members appear in the Fabric Assist Members area. The newly created Fabric Assist zone also displays in the Config tab. At this point you can either save your changes or save and enable your changes.
  • Page 161: Renaming Fabric Assist Zones

    Renaming Fabric Assist Zones Use the following procedure to change the name of a Fabric Assist zone. To rename a Fabric Assist zone Launch the Zone Admin module as described on page 9-3. Click the Fabric Assist tab. Select the Fabric Assist Zone you want to rename from the Name drop-down menu. Click Rename.
  • Page 162: Managing Zone Configurations

    Managing Zone Configurations A zone configuration is a group of zones; zoning is enabled on a fabric by enabling a specific configuration. You can specify members of a configuration using the following methods: • Zone names • QuickLoop names • FA (Fabric Assist) zone names Figure 9-3 shows a sample zoning database and the relationship between the zone aliases, zones, and...
  • Page 163: Creating Zone Configurations

    Creating Zone Configurations Use the following procedure to create a zone configuration. After creating a zone configuration, you must explicitly enable it for it to take effect. Note Any changes made to the currently enabled configuration will not appear until you reenable the configuration.
  • Page 164: Adding Or Removing Zone Configuration Members

    Adding or Removing Zone Configuration Members Use the following procedure to add or remove members of a zone configuration. Note You can make changes to a configuration that is currently enabled; however, changes will not appear until you reenable the configuration. To modify the members of a zone configuration Launch the Zone Admin module as described on page...
  • Page 165: Copying Zone Configurations

    Copying Zone Configurations Use the following procedure to copy a zone configuration. To copy a zone Launch the Zone Admin module as described on page 9-3. Click the Zone Config tab. Select the zone you want to delete from the Name drop-down menu. Click Copy.
  • Page 166: Disabling Zone Configurations

    If the zoning database size exceeds the maximum allowed, you cannot enable the zone configuration. The zoning database summary displays the maximum zoning database size (see “Displaying Zone Configuration Summaries” on page 9-26). To enable a zone configuration Launch the Zone Admin module as described on page 9-3.
  • Page 167: Displaying Enabled Zone Configurations

    Displaying Enabled Zone Configurations The enabled zone configuration screen displays the actual content of the single zone configuration that is currently enabled on the fabric, whether it matches the configuration that was enabled when the current zone admin session was launched or last refreshed (see Figure 9-4 on page 9-25).
  • Page 168: Displaying Zone Configuration Summaries

    To view detailed information about the enabled zone configuration Launch the Zone Admin module, as described on page 9-3. The zone configuration in effect at the time you launched the Zone Admin module is identified in the upper-right corner. This information is automatically updated every 15 seconds. It is also updated if you manually refresh the Zone Admin module contents by clicking the refresh icon at the lower-right corner of the Zone Admin module, or when you enable a configuration through the Zone Admin module.
  • Page 169: Creating Configuration Analysis Reports

    Optional: Click Print to print the zone configuration summary. This launches the print dialog box. Figure 9-5 Zone Configuration Summary Creating Configuration Analysis Reports The configuration analysis report lists the following: • SAN components (ports, WWNs, and AL_PAs) that are not included in the configuration. •...
  • Page 170: Displaying Zones Initiator/Target Accessibility

    Click Yes or No. The configuration analysis window displays. Figure 9-6 Configuration Analysis Window Displaying Zones Initiator/Target Accessibility The Initiator/Target Accessibility Matrix shows a list of initiators and a list of targets and indicates which initiator can access which target, as shown in Figure 9-7 on page 9-29.
  • Page 171: Managing The Zoning Database

    Click OK. The Initiator/Target Accessibility Matrix displays. You can mouse over a target to display the symbolic name of the device. In addition, you can right-click the device nodes and click View Device Detail to display detailed information about the selected device. Figure 9-7 Initiator/Target Accessibility Matrix Managing the Zoning Database...
  • Page 172: Adding A Wwn To Multiple Aliases, Zones, And Fa Zones

    Adding a WWN to Multiple Aliases, Zones, and FA Zones This procedure enables you to configure a WWN as a member in a zone configuration prior to adding that device to the fabric. Specifically, it is useful if you want to add a WWN to all or most zoning entities.
  • Page 173: Replacing A Wwn In Multiple Aliases, Fa Zones, And Zones

    Replacing a WWN in Multiple Aliases, FA Zones, and Zones This procedure enables you to replace a WWN throughout the Zone Admin buffer. This is helpful when exchanging devices in your fabric and helps you to maintain your current configuration. To replace a WWN in the Zone Admin buffer Launch the Zone Admin module as described on page...
  • Page 174: Clearing The Zoning Database

    Clearing the Zoning Database Use the following procedure to disable the active zoning configuration, if one exists, and delete the entire zoning database. Caution This action not only disables zoning on the fabric but also deletes the entire zoning database. This results in all devices being able to communicate with each other.
  • Page 175: Adding Unzoned Online Devices To A Zone Or Alias

    Adding Unzoned Online Devices to a Zone or Alias When zoning is enabled, devices that are not included in a zone configuration are inaccessible to other devices in the fabric. Use the following procedure to identify online devices that are not zoned in any zone configuration and add them to a zone or alias.
  • Page 176: Removing Offline Devices From The Zoning Database

    Removing Offline Devices from the Zoning Database Removing offline devices (WWNs) helps clean the zoning database to save more space for new entries. Use the following procedure to view all devices that are no longer online and remove all or selected offline devices from the zoning database.
  • Page 177: Best Practices For Zoning

    Follow the steps outlined in the wizard. The wizard allows you to define one and only one name for each device port (WWN). Devices with one or more aliases are considered already named and are not displayed. Note To enter a zone alias name, double-click the Zone Alias field for each device, as shown Figure 9-9 on page 9-35, and type the name.
  • Page 178 9-36 Web Tools Administrator’s Guide Publication Number: 53-0000194-01...
  • Page 179: Monitoring Performance Using Web Tools

    Chapter Monitoring Performance This chapter contains the following sections: • “Monitoring Performance Using Web Tools,” next • “Launching the Performance Monitor Module” on page 10-7 • “Creating Basic Performance Monitor Graphs” on page 10-7 • “Customizing Basic Monitoring Graphs” on page 10-8 •...
  • Page 180: Predefined Performance Graphs

    Each graph is displayed individually in a window, so it can be minimized, maximized, resized, and closed. Graphs within the Performance Monitor module are updated every 30 seconds. When you first display the graph or if you modify the graph (such as to add additional ports), you might have to wait up to 30 seconds before the new values are shown.
  • Page 181 Table 10-1 Basic Performance Graphs Graph Type Displays Port Throughput The performance of a port, in bytes per second, for frames received and transmitted. Switch Aggregate Throughput The aggregate performance of all ports on a switch. Blade Aggregate Throughput The aggregate performance of all ports on a port card. This graph is available only for the SilkWorm 24000 and 48000 directors.
  • Page 182 Table 10-3 lists each graph and indicates the supported port types for each. The port selection lists for each graph display the supported ports for that graph. Table 10-3 Supported Port Types for SilkWorm 7500 and 48000 Graph Type Physical FC_Ports Logical FC_Ports GbE Ports Port Throughput...
  • Page 183 The labeling of axes in the graphs depends on the switch type. • For the SilkWorm 24000 and 48000 directors, slot numbers are displayed with expansion arrows next to them, as shown in Figure 10-1 on page 10-5. Click the arrows to expand and contract the list of ports per slot.
  • Page 184: User-Defined Graphs

    User-Defined Graphs You can modify the predefined graphs to create your own customized graphs (see “Customizing Basic Monitoring Graphs” on page 10-8 for more information). These user-defined graphs can be added and saved to canvas configurations, described next. Canvas Configurations A “canvas”...
  • Page 185: Launching The Performance Monitor Module

    Launching the Performance Monitor Module Use the following procedure to launch the Web Tools Performance Monitor module. To launch the Performance Monitor module Select a switch from the Fabric Tree and log in when prompted. Click the Perf button on the Switch View. The Performance Monitor module displays.
  • Page 186: Customizing Basic Monitoring Graphs

    Customizing Basic Monitoring Graphs You can customize some of the basic performance monitoring graphs to display information for particular ports. For the SilkWorm 24000 and 48000 directors, you can also customize these graphs to display information for a slot. You can customize the following graphs: •...
  • Page 187 To display detailed port throughput utilization rates for particular ports only, right-click anywhere in the graph.and click Select Ports. The setup dialog box displays, as shown in Figure 10-3. The title of the dialog box varies, depending on the type of graph you are customizing, but the layout of the dialog box is the same. Figure 10-3 shows an example of the setup dialog box for the Switch Throughput Utilization graph.
  • Page 188: Creating Advanced Performance Monitoring Graphs

    Creating Advanced Performance Monitoring Graphs This section describes how to create the advanced performance monitor graphs listed in Table 10-2 page 10-3. Because the procedure for creating these graphs differs depending on the type of graph, each type is described separately in the sections that follow. The advanced monitoring graphs are not supported for GbE ports.
  • Page 189 Figure 10-4 Creating an SID/DID Performance Graph Click a port from the Slot/Port or Sid/Did Selection List. Drag the selected port into the Enter/drag port number field. Click Retrieve preset EE monitors. The current end-to-end monitors for that port are displayed in the “Current EE monitors set for selected port”...
  • Page 190: Creating An Scsi Vs. Ip Traffic Graph

    Creating an SCSI vs. IP Traffic Graph The SCSI vs. IP Traffic graph displays the SCSI versus IP traffic for selected ports. For SilkWorm 24000 and 48000 directors, the slot and port name is identified in the graph. In a trunk group, the SCSI vs. IP Traffic graph displays only the master port and not the slave ports. To create a SCSI vs.
  • Page 191: Creating Scsi Command Graphs

    Creating SCSI Command Graphs This graph displays the total number of read or write (or both) commands on a given port or to a specific LUN on a given port. To create a SCSI command graph Launch the Performance Monitor module as described on page 10-7.
  • Page 192: Managing Performance Graphs

    To create an AL_PA error graph Launch the Performance Monitor module as described on page 10-7. Click Performance Graphs > Advanced Monitoring > ALPA Error. The ALPA Error Setup dialog box displays (see Figure 10-6 on page 10-14). Navigate to a switch > slot > port in the Slot/Port or Alpa Selection List. Click the port from the Slot/Port Selection List or an AL_PA from the Slot/Port Selection List, and drag it into the “Enter/drag slot,port”...
  • Page 193: Adding Graphs To A Canvas

    To save graphs Launch the Performance Monitor module as described on page 10-7. Create basic or advanced Performance Monitor graphs, as described in “Creating Basic Performance Monitor Graphs” on page 10-7 and “Creating Advanced Performance Monitoring Graphs” on page 10-10. The graphs are displayed in the in the Performance Monitor window.
  • Page 194: Modifying Graphs

    Right-click anywhere in the graph and click Print. The print dialog box displays. Click OK. To print all graphs in a canvas Launch the Performance Monitor module as described on page 10-7. Click File > Display Canvas Configurations. The Canvas Configuration List displays. A message “No Canvas configuration to display” will display if there are no saved canvas configurations.
  • Page 195: Supported Switches For Fibre Channel Routing

    Chapter Using the FC-FC Routing Service This chapter describes how to use the FC-FC Routing Service to share devices between fabrics without merging those fabrics. It contains the following information: • “Supported Switches for Fibre Channel Routing,” next • “About Fibre Channel Routing” on page 11-1 •...
  • Page 196: Mcdata Interoperability

    Fibre Channel routing requires some additional terminology: FC Router A switch running FC-FC Routing Service. EX_Port A type of port that functions somewhat like an E_Port, but does not propagate fabric services or routing topology information from one fabric to another. A VEX_Port is similar to an EX_Port, but is a virtual port that enables routing functionality via an FCIP tunnel.
  • Page 197: Setting Up Fc-Fc Routing

    When FCR is interoperating with McDATA edge fabrics in Fabric mode and Open mode, it will support the LSANzone with the backbone devices. FCR will support the following McDATA versions: v4.1.1, v5.x, v6.x, v7.x, v8.x. Since Brocade has no way of knowing how the modern McDATA switch will operate natively in the future, there is no guarantee that the 5.2.0 version of FCR will work with any future version of McDATA fabric.
  • Page 198: Managing Fc-Fc Routing With Web Tools

    Connect the cables from the EX_Ports on the FC Router to the edge fabrics, if they were not connected before. For a multi-FC Router backbone fabric, make sure that each FC Router is connected to a switch in the backbone fabric. Configure LSAN zones on the fabrics that will share devices.
  • Page 199: Viewing And Managing Lsan Fabrics

    To access the FC Routing module Select a switch from the Fabric Tree. The selected switch appears in the Switch View. Click the FCR button on the Switch View. The FC Routing module displays (as shown in Figure 11-2). If FC-FC Routing is disabled, a message to that effect displays on all the tabs in the module.
  • Page 200: Viewing And Configuring Ex_Ports

    For Brocade switches, this launches Web Tools. For non-Brocade fabrics, this launches the element manager for that switch. Figure 11-3 FC Routing Module with LSAN Fabrics Tab Selected Viewing and Configuring EX_Ports The EX_Ports tab (see Figure 11-4 on page 11-7) displays all of the EX_Ports on the switch, including configuration and status information.
  • Page 201 • Persistently enable or disable an EX_Port. Caution During EX_Port configuration, the port is automatically disable, and then reenabled when the changes are applied. Be sure that you do not physically connect a port to a remote fabric before configuring it as an EX_Port;...
  • Page 202: Viewing And Configuring Fcr Router Port Cost

    To edit the configuration of an EX_Port Launch the FC Routing module. Click the EX_Ports tab. Select a port to configure, by clicking in the row. Click Edit Configuration in the task bar. This launches the port configuration wizard, which guides you through the port configuration process.
  • Page 203: Viewing And Configuring Lsan Zones

    To configure a router port cost Access the Switch Manager in Web Tools. Click FCR in the Switch View. Click the Ex Ports tab. Viewing and Configuring LSAN Zones The LSAN Zones tab (see Figure 11-6 on page 11-10) displays all the LSAN zones, in both a tabular and tree form.
  • Page 204: Viewing Lsan Devices

    Follow the procedure described in “Creating and Populating Zones” on page 9-11 to create LSAN zones. Figure 11-6 FC Routing Module with LSAN Zones Tab Selected Viewing LSAN Devices An LSAN device can be a “physical device,” meaning that it physically exists in the fabric, or it can be a “proxy device.”...
  • Page 205: Configuring The Backbone Fabric Id

    Click the Physical Devices or Proxy Devices element in the tree to see a detailed list of the physical or proxy devices. Click the device name in the tree for more detailed information about a specific device, as shown in Figure 11-7.
  • Page 206 Click the General tab. Click Set Fabric ID in the task bar. The Configure Backbone Fabric ID window appears. Select a fabric ID from the drop-down menu. The fabric ID is a number from 1 through 128. Web Tools warns you if you select a fabric ID that is already in use.
  • Page 207: Managing Trace Dumps

    Chapter Working With Diagnostic Features This chapter contains the following information: • “Managing Trace Dumps,” next • “Displaying Switch Information” on page 12-4 • “Interpreting Port LEDs” on page 12-10 Managing Trace Dumps A trace dump is a snapshot of the running behavior within the SilkWorm switch. The dump can be used by developers and troubleshooters at Brocade to help understand what might be contributing to a specific switch behavior when certain internal events are seen.
  • Page 208: How A Trace Dump Is Used

    Using the Trace tab of the Switch Admin module, you can view and configure the trace FTP host target and enable or disable automatic trace uploads. Figure 12-1 Trace Tab How a Trace Dump Is Used The generation of a trace dump causes a CRITICAL message to be logged to the system error log. When a trace dump is detected, issue the supportSave command on the affected switch.
  • Page 209: Setting Up Automatic Trace Dump Transfers

    Setting Up Automatic Trace Dump Transfers You can set up a switch so that diagnostic information is transferred automatically to a remote server. Then, if a problem occurs you can provide your customer support representative with the most detailed information possible. To ensure the best service, you should set up for automatic transfer as part of standard switch configuration, before a problem occurs.
  • Page 210: Displaying Switch Information

    Displaying Switch Information This section describes how to display information about the physical components of the switch (such as fan, temperature, and power supply) as well as how to display other detailed switch information (such as firmware and IP address). The Fan, Temperature, and Power Status windows have Export, Copy, Print, and Search options at the top of the tables.
  • Page 211: Displaying Detailed Fan Hardware Status

    Displaying Detailed Fan Hardware Status The background color of the Fan button indicates the overall status of the fans. For more information about the switch fan, refer to the appropriate hardware documentation. You can display status information about the fans, as shown in Figure 12-3.
  • Page 212: Displaying The Temperature Status

    Displaying the Temperature Status The background color of the Temp button indicates the overall status of the temperature. For more information regarding switch temperature, refer to the appropriate hardware documentation. To display the temperature status detail Select a switch from the Fabric Toolbar.
  • Page 213: Checking The Physical Health Of A Switch

    Click the Power button on the Switch View. The detailed power supply states are displayed. Figure 12-5 Power Status Window Checking the Physical Health of a Switch The Status button displays the operational state of the switch. The background color of the button displays the real-time status of the switch.
  • Page 214 Click the Status button to display a detailed, customizable switch status report, shown in Figure 12-6. Note that this is a static report and not a dynamic view of the switch. Figure 12-6 Switch Report To display a detailed switch status report Select a switch from the Fabric Tree.
  • Page 215 Optional: Mouse over the Action field (see Figure 12-7) and click an action to: • Refresh the information displayed in the report • Customize the report • View the data in raw XML format • View the style sheet for the report •...
  • Page 216: Interpreting Port Leds

    Interpreting Port LEDs Switch View displays port graphics with blinking LEDs, simulating the physical appearance of the ports. One of the LEDs indicates port status; the other indicates port speed. For LED information, refer to the hardware documentation for the switch you are viewing. (The blink rate of the LEDs in the Switch View does not necessarily match the blink rate of the LEDs on the physical switch.) Note The SilkWorm 4900 and 7500 switches and the FR4-18i and FR4-16IP port blades do not have port...
  • Page 217: Silkworm 48000 Director Leds

    SilkWorm 48000 Director LEDs For the SilkWorm 48000 director, the representation of the port LEDs on the FC4-32 port blade is not the same as the LEDs on the physical blade. Figure 12-9 on page 12-11 compares the LEDs on the physical port card and the Web Tools display.
  • Page 218 12-12 Web Tools Administrator’s Guide Publication Number: 53-0000194-01...
  • Page 219: Introduction To Fabric Watch

    Chapter Administering Fabric Watch This chapter contains the following sections: • “Introduction to Fabric Watch,” next • “Using Fabric Watch with Web Tools” on page 13-2 • “Configuring Fabric Watch Thresholds” on page 13-3 • “Configuring Alarms for FRUs” on page 13-7 •...
  • Page 220: Using Fabric Watch With Web Tools

    Using Fabric Watch with Web Tools You can administer Fabric Watch operations through the Web Tools Fabric Watch module. Click the Watch button in the Switch View to access the Fabric Watch module, shown in Figure 13-1. Note Unless the switch is a member of the current Admin Domain context, the Fabric Watch module will be in view-only mode.
  • Page 221: Configuring Fabric Watch Thresholds

    The Fabric Watch navigation tree, on the left side of the module, displays the available classes. The classes are organized in a set of folders. Not all classes are available for all switches. You should use the Fabric Watch module if you want to: •...
  • Page 222 To configure threshold traits Launch the Fabric Watch module as described in “To launch the Fabric Watch module”. Click the Threshold Configuration tab (see Figure 13-2 on page 13-4). Figure 13-2 Threshold Configuration for Fabric Watch Click the Trait Configuration subtab. Click a class from the Fabric Watch navigation tree.
  • Page 223: Configuring Threshold Alarms

    Click the System Default radio button to use the system default settings, and proceed to step Click the Custom Defined radio button to specify new settings and proceed to the next step. Select a time to record the event in the Time Base field. Type the lowest boundary of the normal zone in the Low Boundary field.
  • Page 224: Enabling Or Disabling Threshold Alarms For Individual Elements

    Enabling or Disabling Threshold Alarms for Individual Elements Use the Element Configuration subtab to configure element-specific alarm settings. To enable or disable threshold alarms for an element Launch the Fabric Watch module as described on page 13-3. Click a class from the Fabric Watch navigation tree. You can set alarms for information on a switch only if that information is monitored by Fabric Watch for that switch;...
  • Page 225: Configuring Alarms For Frus

    Configuring Alarms for FRUs Configuration for the FRU class is different than configuration for the other classes. Because FRUs are not monitored through a threshold-based system, they have a simpler interface for configuration. For FRUs, you configure the states for which an event occurs, as described in the following procedure. To configure alarms for FRUs Launch the Fabric Watch module as described on page...
  • Page 226: Displaying Alarms

    Click the alarm area report to be viewed from the Area Selection menu. Click the Configuration Report subtab. This tab displays a report of the configuration for the selected area. Displaying Alarms Using the Alarm Notification tab, you can view a list of all alarms that have occurred for a selected class/area (see Figure 13-1 on page 13-2).
  • Page 227: Configuring Email Notifications

    Configuring Email Notifications One of the ways that you can be notified of an alarm condition is through an email alert. If you have configured alarms to send an email notification, you must also configure the email server and the email recipient, as described in the following sections.
  • Page 228 Type the email address of the recipient in the Recipient Email Address text box. Messages are sent to this address when email notification is enabled. Note Email addresses must not exceed 128 characters. Click Apply. Optional: Click Send Test Email to receive a test email so you can verify the email notification is working correctly.
  • Page 229: Chapter 14 Administering Extended Fabrics

    Chapter Administering Extended Fabrics This chapter contains the following information: • “About Extended Link Buffer Allocation,” next • “Configuring a Port for Long Distance” on page 14-3 About Extended Link Buffer Allocation As the distance between switches and the link speed increases, additional buffer-to-buffer credits are required to maintain maximum performance.
  • Page 230 N4—Negotiated 4 Gbit/sec Auto-Negotiation • Buffer Needed/Allocated—The number of buffers needed and the number of buffers that are actually allocated. • Actual Distance (km)—The actual distance for the link in kilometers. • Desired Distance (km)—Required for a port configured in LD or LS mode (see Table 14-1 on page 14-3), the desired distance, in kilometers, for the link.
  • Page 231: Configuring A Port For Long Distance

    Table 14-1 Long-Distance Settings and License Requirements Value Description Extended Fabrics License Required? No long-distance setting is enabled. The maximum supported link distance is 10 km, 5 km, or 2.5 km for ports at speeds of 1 Gbit/sec, 2 Gbit/sec, and 4 Gbit/sec, respectively. Extended normal setting is enabled, 10 km (6 miles) or less.
  • Page 232 Select a distance that corresponds to the port from the Long Distance drop-down menu. Depending on the distance selected, this might require an optional license. For information about the various distances, see Table 14-1. If you select a long-distance setting of LD or LS, you must also type a value in the Desired Distance column for that port number: Double-click the Desired Distance field for the port, as shown in Figure...
  • Page 233: Chapter 15 Administering The Iscsi Target Gateway

    Chapter Administering the iSCSI Target Gateway This chapter describes how to use the iSCSI target gateway. The gateway is an intermediate device in the network, allowing iSCSI initiators in an IP SAN to access and utilize storage in a Fibre Channel SAN.
  • Page 234: Common Functions In The Iscsi Target Gateway Admin Module

    When a GbE port is configured to support iSCSI, it can transport SCSI traffic over an IP network. Each GbE port has a unique IP address called an “iSCSI target portal” and each port supports 64 iSCSI sessions. The TCP/IP stack at the port provides support for multiple TCP connections over a single GbE port.
  • Page 235: Terminology

    Figure 15-1 Search Screen Terminology iSCSI target gateway services requires you to understand some additional terminology. Following are terms that will be used in this document to explain how the iSCSI target gateway is implemented. Table 15-1 iSCSI Gateway Services Terminology Term Definition iSCSI...
  • Page 236 Table 15-1 iSCSI Gateway Services Terminology (Continued) Term Definition iSCSI session An iSCSI session is the basic communication “pipe” from an iSCSI initiator to an iSCSI target. A session is a group of TCP/IP connections that link an initiator with a target (loosely equivalent to a SCSI I-T nexus). LUN mapping Logical Unit Number mapping.
  • Page 237: Saving Changes

    Saving Changes There are several ways to save changes on the switch and apply them to the fabric (applies to the iSCSI Target Gateway Admin module only): • Apply—Click Apply and your changes will be transfered from the Web Tools database to the switches database and distributed throughout the fabric.
  • Page 238: Launching The Iscsi Target Gateway Admin Module

    Launching the iSCSI Target Gateway Admin Module The iSCSI button in the Switch View launches the iSCSI Target Gateway Admin module. This button is displayed only for the SilkWorm 48000 director with an FC4-16IP inserted. Note Since the entire fabric is scanned when you click the iSCSI button in this module, larger fabrics may take longer to load.
  • Page 239: Activating The Iscsi Feature

    Generally, the default user Admin Domain is AD0. The recommended practice is to perform all iSCSI management from AD0; you can make changes from AD255 but you will not be able to make any zoning changes. Click the iSCSI button on the Switch View.
  • Page 240 When you select one of the GbE ports, you can perform the same tasks listed previously: view and capture statistics related to the port, add or delete IP addresses, add or delete IP routes, view current sessions, and view the iSCSI statistics in brief. Figure 15-3 iSCSI Port Tab If an IP address or IP route is already configured on the GbE port, then it will not be editable as any edits will disrupt any iSCSI traffic.
  • Page 241 Enter the MTU size or accept the default MTU size and click Add. Figure 15-4 IP Interface Configuration Subtab To edit an IP Address Launch the iSCSI Target Gateway Admin module as described on page 15-6. Select the iSCSI Port tab. From the left pane, select the GbE port that will be used.
  • Page 242 Click OK. Figure 15-6 Edit IP Interface Dialog Box Enter the subnet mask. Enter the MTU size or accept the default MTU size and click OK. Note To change the IP address, delete the current IP address and re-create it. You will not be allowed to create an additional IP address for this interface, as there can be only one IP address per interface.
  • Page 243: Managing The Iscsi Virtual Targets

    From the left pane, select the GbE port that will be used. Select the IP Route tab. Click Edit. A warning dialog box appears similar to Figure 15-5 on page 15-9. Click OK. Figure 15-8 Edit IP Route Dialog Box Enter a new value for the metric.
  • Page 244 Figure 15-9 Virtual Target Creation Wizard Enter an IQN. The text field will display the value “iqn” and you need to enter the remaining data. Click Add LUNs. This opens a dialog box in which to select the LUNs. Select LUNs to add. You will need to expand each unit until you get to the actual LUN.
  • Page 245 To use Easy Create Launch the iSCSI Target Gateway Admin module as described on page 15-6. Select the Targets tab Click Easy Create. Figure 15-10 Easy Create Wizard Follow the instructions in the wizard to create a virtual target in iSCSI. The wizard is self-explanatory, so the individual steps are not described in this document.
  • Page 246: Viewing Iscsi Initiators

    Click Edit. The VT Configuration wizard launches. Follow the instructions in the wizard to edit an iSCSI virtual target. The wizard is self-explanatory, so the individual steps are not described in this document. Note The Remove LUN(s) button is available only for virtual targets that have not been fully initialized as a target.
  • Page 247: Managing Discovery Domains

    Managing Discovery Domains In this step, you configure discovery domains and discovery domain sets for managing iSCSI device access control. The Discovery Domains pane displays all discovery domains and discovery domain sets and allows you to manage them. When you select DDInfo in the tree in the left pane, you can create a discovery domain. If you select an object in the discovery domain set listed you can view, create, edit, delete, enable, or disable any of the discovery domain information contained in each object.
  • Page 248 In the wizard: • You can configure the DD. You specify the DD name, and then you can add or remove initiators and targets. You can also add any offline device(s) by entering the IQN name in the IQN name field and clicking Add Offline Devices under the list on the right.
  • Page 249 To edit a discovery domain Launch the iSCSI Target Gateway Admin module as described on page 15-6. Select the Discovery Domains tab. Select a DD in the left pane and click Edit. Select DDs to add to or remove from the DDSet. Click Next.
  • Page 250 To create a discovery domain set Launch the iSCSI Target Gateway Admin module as described on page 15-6. Select the Discovery Domains tab Click Create DDSet The Create DDSet wizard is launched. Figure 15-14 Discovery Domain Set Creation Wizard Follow the instructions in the wizard to create an iSCSI Discovery Domain Set The wizard is self-explanatory, so the individual steps are not described in this document.
  • Page 251: Configuring Chap

    Configuring CHAP This view allows you to define access to login to that virtual target through the Microsoft iSCSI Initiator. You can create, view, and change CHAP users and their associated secrets. Once a CHAP user is created, you can modify only the CHAP secret. The CHAP module pane lists CHAP secrets in a table with the user name and chap secret in encrypted format (*).
  • Page 252: Configuring An Iscsi Fibre Channel Zone

    To edit a CHAP secret Launch the iSCSI Target Gateway Admin module as described on page 15-6. Select the CHAP tab. Click Change CHAP Secret. You can edit the CHAP secret but not the CHAP user name. The CHAP wizard is shown in Figure 15-16 on page 15-20.
  • Page 253 Use the Zone Admin module to create zoning or remove or add zone members to reflect your iSCSI devices. For more information about configuring zones, see “Configuring Zoning” on page 9-2. To create an iSCSI Fibre Channel zone with no effective zone configuration Launch the iSCSI Target Gateway Admin module as described on page 15-6.
  • Page 254 To create an iSCSI Fibre Channel zone with an effective zone configuration Launch the iSCSI Target Gateway Admin module as described on page 15-6. Click Create iSCSI Zone. Click Yes. Figure 15-18 Choosing Between a Defined or Effective Configuration Select a configuration in the dialog box. •...
  • Page 255: Managing And Troubleshooting Accessibility

    Managing and Troubleshooting Accessibility The Web Tool iSCSI accessibility feature helps you: • Verify that both host and target are online. • Verify that the effective discovery domain set has both host and target. • Allow an initiator or target to access the other. •...
  • Page 256 15-24 Web Tools Administrator’s Guide Publication Number: 53-0000194-01...
  • Page 257: About Routing

    Chapter Routing Traffic This chapter contains the following information: • “About Routing,” next • “Displaying FSPF Routing” on page 16-2 • “Enabling and Disabling Dynamic Load Sharing” on page 16-3 • “Specifying Frame Order Delivery” on page 16-3 • “Configuring Link Cost” on page 16-4 About Routing For Fabric OS 5.2.0, the supported routing policies are:...
  • Page 258: Displaying Fspf Routing

    Figure 16-1 Routing Tab for Port-Based Routing Policy Displaying FSPF Routing The Routing tab of the Switch Admin module displays information about routing paths. To view FSPF routing Launch the Switch Admin module as described on page 3-3. Click the Routing tab. This step is switch-type specific: For SilkWorm 24000 or 48000 directors, click a slot number under the FSPF Route category in the navigation tree.
  • Page 259: Enabling And Disabling Dynamic Load Sharing

    Enabling and Disabling Dynamic Load Sharing The exchange-based routing policy depends on the Fabric OS dynamic load sharing feature (DLS) for dynamic routing path selection. When this policy is in force, DLS is always enabled and cannot be disabled. When the port-based policy is in force, you can enable DLS to optimize routing. When DLS is enabled, it shares traffic among multiple equivalent paths between switches.
  • Page 260: Configuring Link Cost

    To configure the IOD setting Launch the Switch Admin module as described on page 3-3. Click the Routing tab. Click On in the In-Order Delivery area to force in-order frame delivery across topology changes or click Off to restore out-of-order frame delivery across topology changes. Click Apply.
  • Page 261: Configuring Standard Security Features

    Chapter Configuring Standard Security Features This chapter contains the following information: • “Creating and Maintaining User-Defined Accounts,” • “Configuring Access Control List Policies” on page 17-9 • “Configuring SNMP” on page 17-12 • “Managing RADIUS Service” on page 17-15 Creating and Maintaining User-Defined Accounts In addition to the default accounts—root, factory, admin, and user—Fabric OS supports up to 256 user- defined accounts in each logical switch (domain).
  • Page 262 Table 17-1 User Role and Permissions Role Permissions ZoneAdmin Change your own password and cannot create, modify, or view predefined or user-defined accounts FabricAdmin Change your own password and cannot create, modify, or view predefined or user-defined accounts BasicSwitchAdmin Change your own password and cannot create, modify, or view predefined or user-defined accounts User Change your own password and cannot create, modify, or view predefined or...
  • Page 263 Figure 17-1 User Tab To display account information Launch the Switch Admin module as described on page 3-3. Click the User tab. A list of the default and user-defined accounts displays. If you are logged in using the SwitchAdmin role, only your account information is displayed. Web Tools Administrator’s Guide 17-3 Publication Number: 53-0000194-01...
  • Page 264: Creating And Deleting User-Defined Accounts

    Creating and Deleting User-Defined Accounts This section describes how to create and delete user-defined accounts. To create a user-defined account Launch the Switch Admin module as described on page 3-3. Click the User tab. Click the Add button. The Add User Account dialog box displays. Figure 17-2 Add User Account Dialog Box Type the user name, which must begin with an alphabetic character.
  • Page 265: Changing Account Parameters

    Type the password for the account. The password is not displayed when you enter it on the command line. Passwords can be from 8 through 40 characters long. They must begin with an alphabetic character. They can include numeric characters, the dot (.), and the underscore ( _ ). They are case-sensitive. Passwords must also meet any additional password rules that have been set up.
  • Page 266 To change account parameters Launch the Switch Admin module as described on page 3-3. Click the User tab. Select the account to modify. You cannot modify the default root and factory accounts, even if you are logged in as root. Click the Modify button.
  • Page 267: Maintaining Passwords

    Maintaining Passwords This section contains procedures for the following: • “To change account parameters” on page 17-6 • “To set the rules for passwords” on page 17-8 • “To expire a password” on page 17-9 • “To unlock a password” on page 17-9 When you expire a password, the next time that user logs in, Web Tools requires the user to provide a new password.
  • Page 268 To set the rules for passwords Launch the Switch Admin module as described on page 3-3. Click the User tab. Click the Set Password Rule button. The Configure Password Rule dialog box displays, as shown in Figure 17-3 on page 17-8.
  • Page 269: Configuring Access Control List Policies

    To expire a password Launch the Switch Admin module as described on page 3-3. Click the User tab. Select the account. Click the Expire Password button. If the button is grayed out, this means the password is already expired. Click Apply to save your changes. To unlock a password Launch the Switch Admin module as described on page...
  • Page 270 Figure 17-4 ACL Tab for SCC/DCC Policy Configuration To create an SCC or DCC policy Launch the Switch Admin module as described on page 3-3. Click the ACL tab. Select an SCC or DCC policy by clicking on the appropriate tab. Click Edit.
  • Page 271 To edit an SCC or DCC policy Launch the Switch Admin module as described on page 3-3. Click the ACL tab. Select a SCC or DCC policy by clicking on the appropriate tab. Click Edit. This launches the ACL Policy Configuration wizard. Select the policy type you want to edit.
  • Page 272: Configuring Snmp

    To distribute an SCC or DCC Policy Launch the Switch Admin module as described on page 3-3. Select the Distribute tab Select the appropriate behavior from the Consistency Behavior drop-down menu: • Absent means that there will be no policy pushed out to other switches •...
  • Page 273: Setting Snmp Trap Levels

    Setting SNMP Trap Levels When you set trap levels for a SilkWorm 24000 or 48000 configured with two logical switches, it is on a logical-switch basis. This means that for each logical switch, you must set trap levels individually. To set trap levels Launch the Switch Admin module as described on page 3-3.
  • Page 274: Configuring Snmp Information

    Configuring SNMP Information When you configure SNMP information for a SilkWorm 24000 or 48000 configured with two logical switches, it is on a logical-switch basis. This means that for each logical switch, you must configure SNMP information individually. To change the systemGroup configuration parameters Launch the Switch Admin module as described on page 3-3.
  • Page 275: Managing Radius Service

    Managing RADIUS Service Fabric OS supports RADIUS authentication, authorization, and accounting service (AAA). When configured for RADIUS, the switch becomes a Network Access Server (NAS) that acts as a RADIUS client. In this configuration, authentication records are stored in the RADIUS host server database. Login and logout account name, assigned role, and time accounting records are also stored on the RADIUS server.
  • Page 276: Enabling And Disabling Radius Service

    Figure 17-6 AAA Service Tab Enabling and Disabling RADIUS Service At least one RADIUS server must be configured before you can enable RADIUS service. To enable or disable RADIUS service Launch the Switch Admin module as described on page 3-3. Click the AAA Service tab.
  • Page 277: Configuring The Radius Service

    Configuring the RADIUS Service The configuration is chassis-based, so it applies to all logical switches (domains) on the switch and replicates itself on a standby CP, if one is present. It is saved in a configuration upload, and so it can be applied to other switches in a configuration download.
  • Page 278: Modifying The Radius Server Order

    Modifying the RADIUS Server Order The RADIUS servers are contacted in the order they are listed, starting from the top of the list and moving to the bottom. To modify the order in which the RADIUS servers are contacted Launch the Switch Admin module as described on page 3-3.
  • Page 279: Administering Ficon Cup Fabrics

    Chapter Administering FICON CUP Fabrics This chapter contains the following sections: • “Enabling Port-Based Routing on the SilkWorm 4100 and SilkWorm 48000” on page 18-2 • “Enabling or Disabling FMS Mode” on page 18-3 • “Configuring FMS Parameters” on page 18-4 •...
  • Page 280: Enabling Port-Based Routing On The Silkworm 4100 And Silkworm 48000

    Enabling Port-Based Routing on the SilkWorm 4100 and SilkWorm 48000 Port-based path selection is a routing policy in which paths are chosen based on ingress port and destination only. This also includes user-configured paths. All SilkWorm 4100 and 48000 switches with FICON devices attached must have port-based routing policy enabled.
  • Page 281: Enabling Or Disabling Fms Mode

    Figure 18-1 FICON CUP Management Enabling or Disabling FMS Mode FICON Management Server (FMS) is used to support switch management using CUP. To be able to use the CUP functionality, all switches in the fabric must have FICON Management Server mode (FMS mode) enabled.
  • Page 282: Configuring Fms Parameters

    Click the Enable radio button in the FICON Management Server Mode section to enable FMS mode or click Disable to disable FMS mode. Click Apply to save your changes. Configuring FMS Parameters FMS parameters control the behavior of the switch with respect to CUP itself, as well as the behavior of other management interfaces (director console, Alternate Managers).
  • Page 283 Table 18-1 FMS Mode Parameter Descriptions (Continued) Parameter Description User Alert Controls director console behavior for alerts. Mode Enabling this mode prompts the director consoles to display a warning whenever you attempt an action that will change switch parameters. When you disable this mode, no warning is displayed.
  • Page 284: Displaying Code Page Information

    Displaying Code Page Information The Code Page field identifies the language used to exchange information between the FICON director and Host Programming. It is a read-only field in Web Tools, as it is set by Host Programming only. When FMS mode is disabled, the code page is displayed as unavailable. To display the code page information Click a FICON-enabled switch from the Fabric...
  • Page 285: Configuring Cup Port Connectivity

    The following switch parameters being read or modified can cause the FICON CUP Busy error: • Mode Register • Port Names (also called Port Address Name) • PDCM and Port Connectivity Attributes • Switch enable/disable • Switch name change To display the control device state Click a FICON-enabled switch from the Fabric Tree.
  • Page 286: Displaying Cup Port Connectivity Configurations

    The Port Connectivity table (shown in Figure 18-4 on page 18-11) displays the Port number (in physical-location format), Port Name (port address name), Block attribute, Prohibit attribute, and Area Id (port address, displayed in hexadecimal) in fixed columns. The right side is a port matrix, which lists all ports by Area ID and identifies prohibited ports.
  • Page 287 Click the CUP Port Connectivity subtab (see Figure 18-3). Figure 18-3 Configuring CUP Port Connectivity Web Tools Administrator’s Guide 18-9 Publication Number: 53-0000194-01...
  • Page 288: Creating Or Editing Cup Port Connectivity Configurations

    Creating or Editing CUP Port Connectivity Configurations Use the following procedure to create a new CUP port connectivity configuration or to edit an existing configuration. To create or edit CUP port connectivity configurations Display the CUP port connectivity configuration list, as described on page 18-8.
  • Page 289: Activating A Cup Port Connectivity Configuration

    Figure 18-4 Port CUP Connectivity Configuration Dialog Box Activating a CUP Port Connectivity Configuration When you activate a saved CUP port connectivity configuration on the switch, the preceding configuration (currently activated) is overwritten. To activate a saved CUP port connectivity configuration Display the CUP port connectivity configuration list, as described on page 18-8.
  • Page 290: Copying A Cup Port Connectivity Configuration

    Click Activate. The Activate CUP Port Connectivity Configuration confirmation dialog box displays. The message reminds you that the current configuration will be overwritten upon activation. Optional: Click Active=Saved Mode to enable (checked) or disable (unchecked) the Active=Saved FMS parameter after the configuration is activated. Click Yes to activate the configuration or click No to cancel the activation.
  • Page 291: General Web Tools Limitations

    Chapter Limitations This section provides the following information: • “General Web Tools Limitations,” next • “Platform-Specific Limitations” on page 19-6 • “Limitations of Using a Mozilla Browser” on page 19-7 General Web Tools Limitations Table 19-1 lists general Web Tools limitations that apply to all browsers and switch platforms. Table 19-1 Web Tools Limitations Area...
  • Page 292 Table 19-1 Web Tools Limitations (Continued) Area Details Firmware download There are multiple phases to firmware download and activation. When Web Tools reports that firmware download has completed successfully, this indicates that a basic sanity check, package retrieval, package unloading, and verification was successful.
  • Page 293 Table 19-1 Web Tools Limitations (Continued) Area Details Java Plug-in If you have a Web Tools session open and you open a second session using the File > New browser menu, this results in unexpected behavior of the original Web Tools session. For example, you cannot change Admin Domains in the second session.
  • Page 294 Table 19-1 Web Tools Limitations (Continued) Area Details Performance Monitor If the Web browser crashes or the Performance Monitor license is lost while the Performance Monitor module is running, some of the Performance Monitor resources owned by Web Tools might not be cleaned up correctly. Workaround: You might need to use the CLI to manually delete these counters.
  • Page 295 Table 19-1 Web Tools Limitations (Continued) Area Details Refresh option in If you change the switch name using the Web Tools Switch Admin page or browsers SNMP and then open a telnet window to verify the name change, the CLI prompt (for example, switch:admin>) displays the previous name.
  • Page 296 Table 19-1 Web Tools Limitations (Continued) Area Details Windows Operating While working on Internet Explorer 6.0, when the user launches the Switch Systems Explorer it initially does not activate. You will have to click the window once with the mouse, press the ESC key, the Space Bar, or Enter to activate the window.
  • Page 297 Limitations of Using a Mozilla Browser Table 19-3 lists limitations in Web Tools that occur when you use the Mozilla browser on a Linux system. These limitations do not occur when using Internet Explorer on Windows. Table 19-3 Web Tools Limitations for Mozilla Browser Area Details Mozilla Browser on Red...
  • Page 298 19-8 Web Tools Administrator’s Guide Publication Number: 53-0000194-01...
  • Page 299 Index Numerics module, launching 8-11 to activate/deactivate Administrative Domains. See Admin Domains 2 domain/4 domain fabric licenses AL_PA 10-13 error graphs, creating zoning 13-7 alarm configuration report for Fabric Watch 15-15 About Discovery Domains (DD) alarms, Fabric Watch 13-5, 13-7 configuring Access Control List.
  • Page 300 Internet Explorer 16-3 IOD frames delivery 15-8 IP address for iSCSI Target Gateway Challenge Handshake Authentication Protocol. See CHAP IP and netmask changing IP interfaces for FCIP chassis name 15-10 IP route for iSCSI Target Gateway domain ID IP routes for FCIP 17-7 passwords Java Plug-in...
  • Page 301 CUP port connectivity configuration Discovery Domains 18-11 15-15 activating create 18-12 copying displaying 18-10 creating 13-8 alarms, Fabric Watch 18-12 deleting 18-6 Control Device state 18-8 displaying 18-8 CUP port connectivity configuration 18-10 editing 9-25 enabled zone configuration customizing 3-21 fabric events 10-8 12-5...
  • Page 302 trunking mode FCIP 9-23 zone configurations configuring interswitch link (ISL) 5-11 enabling an NPIV port Fastwrite 7-9, 7-12 IP interfaces, configuring 1-16 ending sessions 7-9, 7-14 IP routes, configuring events ports, configuring 3-21, 3-22 displaying tunneling service, about 3-23 filtering 5-7, 7-15 tunnels, configuring 3-20...
  • Page 303 15-15 discovery domains (DD), about 15-16 discovery domains, creating 15-17 discovery domains, editing ID_ID mode 15-13 editing an iSCSI target 3-10 about 15-7 enabling 3-12 enabling 15-4 FC LUN IKE/IPSec policy 15-4 FC virtual initiator 1-13 inactivity timeout 15-4 15-4 indirect port membership in Admin Domains 15-21 iSCSI fibre channel zone members, editing...
  • Page 304 9-22 telnet window zone configurations 9-12 Web Tools zones Zone Admin module 10-1 monitoring performance 12-10 LEDs, port 2-12 mouse over information 3-7, 3-8 license ID, displaying 19-7 Mozilla limitations license key licenseAdd command 3-14 licensed features licenses 3-26 name server entries, displaying 3-15 activating naming ports...
  • Page 305 port membership in Admin Domains recommendations 2-16 configuration tasks port names, assigning 2-16 for Web Tools port speed, configuring 9-35 for zoning 5-13 port swapping 2-16 mixed fabric 5-5, 5-6 port type, configuring refresh frequency, setting port zoning 2-13 refresh rates 16-1 port-based routing refreshing...
  • Page 306 3-10 SCC/DCC policy switch PID format 17-11 activate switch report 17-10 create 12-8 switch status report 17-11 deactivate 2-10 Switch View 17-11 delete 2-11 Switch View button menu 17-12 distribute 17-11 edit syslog IP address 10-13 SCSI command graph configuring 10-12 removing SCSI vs.
  • Page 307 viewing zone configurations 11-6 9-27 EX_Ports analysis report 11-10 9-21 LSAN devices creating 11-5 9-23 LSAN fabrics deleting 11-9 9-24 LSAN zones disabling 5-13 9-23 swapped ports enabling 9-20 Switch Explorer example 9-22 switch report modifying 12-7 9-22 switch status renaming 2-14 9-26...
  • Page 308: Web Tools Administrator's Guide

    Index-10 Web Tools Administrator’s Guide Publication Number: 53-0000194-01...

Table of Contents