Configuring For The Ssl Protocol - HP AE370A - Brocade 4Gb SAN Switch 4/12 Administrator's Manual

Hp storageworks fabric os 5.2.x administrator guide (5697-0014, may 2009)
Hide thumbs Also See for AE370A - Brocade 4Gb SAN Switch 4/12:
Table of Contents

Advertisement

Port Configuration
lists the ports used. This table provides the information to make it clearer when configuring the switch,
taking into consideration firewalls and other devices that may sit between switches in the fabric or between
the managers and the switch.
Table 21
Port information
Port
22
23
37
80
1 1 1
161
443
512
513
514
897

Configuring for the SSL protocol

Fabric OS v4.4.0 and later supports Secure Sockets Layer (SSL) protocol, which provides secure access to
a fabric through Web-based management tools like Web Tools. SSL support is a standard Fabric OS
feature; it is independent of Secure Fabric OS, which requires a license and separate certification.
Switches configured for SSL grant access to management tools through hypertext transfer protocol-secure
links (which begin with
SSL uses Public Key Infrastructure (PKI) encryption to protect data transferred over SSL connections. PKI is
based on digital certificates obtained from an Internet Certificate Authority (CA), which acts as the trusted
key agent.
Certificates are based on the switch IP address or Fully Qualified Domain Name (FQDN), depending on
the issuing CA. If you change a switch IP address or FQDN after activating an associated certificate, you
might have to obtain and install a new certificate. Check with the CA to verify this possibility, and plan
these types of changes accordingly.
Type
Common use
TCP
SSH
TCP
Telnet
TCP
NTP
TCP
HTTP
TCP
sunrpc
UDP
SNMP
TCP
HTTP
TCP
exec
TCP
login
TCP
shell
TCP
https://
) instead of standard links (which begin with
Comment
Use the configure command to
disable the telnet service.
Use the configure command to
disable the port.
This port is used by Platform API.
Use the configure command to
enable or disable daemons.
Disable the SNMP service on the
remote host if you do not use it, or
filter incoming UDP packets going to
this port.
Supported service (Web Tools).
Disable this port using the config-
ure command.
This port is used by the Platform API.
Disable this port using the
configure command.
http://
).
Fabric OS 5.2.x administrator guide
87

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents