Configuring The Dhchap Mode; About The Dhchap Hash Algorithm - Cisco AJ732A - MDS 9134 Fabric Switch Configuration Manual

Cisco nexus 5000 series switch cli software configuration guide, nx-os 4.0(1a)n1 (ol-16597-01, january 2009)
Hide thumbs Also See for AJ732A - Cisco MDS 9134 Fabric Switch:
Table of Contents

Advertisement

Chapter 44
Configuring FC-SP and DHCHAP
S e n d f e e d b a c k t o n x 5 0 0 0 - d o c f e e d b a c k @ c i s c o . c o m
Table 44-1
Table 44-1
Switch N
DHCHAP
Modes
on
auto-Active
auto-Passive
off

Configuring the DHCHAP Mode

To configure the DHCHAP mode for a particular interface, perform this task:
Command
Step 1
switch# configuration terminal
Step 2
switch(config)# interface fc
slot/port - slot/port
switch(config-if)#
Step 3
switch(config-if)# fcsp on
switch(config-if)# no fcsp on
Step 4
switch(config-if)# fcsp
auto-active 0
switch(config-if)# fcsp
auto-active timeout-period
switch(config-if)# fcsp
auto-active

About the DHCHAP Hash Algorithm

Cisco SAN switches support a default hash algorithm priority list of MD5 followed by SHA-1 for
DHCHAP authentication.
OL-16597-01
identifies switch-to-switch authentication between two Cisco switches in various modes.
DHCHAP Authentication Status Between Two MDS Switches
Switch 1 DHCHAP Modes
on
FC-SP
authentication is
performed.
Link is brought
down.
auto-active
auto-passive
FC-SP authentication
FC-SP authentication
is performed.
is performed.
FC-SP authentication
is not performed.
FC-SP authentication is not performed.
Purpose
Enters configuration mode.
Selects a range of interfaces and enters the interface
configuration mode.
Sets the DHCHAP mode for the selected interfaces to be in the
on state.
Reverts to the factory default of auto-passive for these three
interfaces.
Changes the DHCHAP authentication mode for the selected
interfaces to auto-active. Zero (0) indicates that the port does
not perform reauthentication.
Note
The reauthorization interval configuration is the same
as the default behavior.
Changes the DHCHAP authentication mode to auto-active for
the selected interfaces. The timeout period value (in minutes)
sets how often reauthentication occurs after the initial
authentication.
Changes the DHCHAP authentication mode to auto-active for
the selected interfaces. Reauthentication is disabled (default).
The reauthorization interval configuration is the same
Note
as setting it to zero (0).
Cisco Nexus 5000 Series Switch CLI Software Configuration Guide
DHCHAP
off
Link is brought
down.
FC-SP
authentication is
not performed.
44-5

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents