Configuring Fc-Sp And Dhchap; Information About Fabric Authentication - Cisco AP775A - Nexus Converged Network Switch 5010 Configuration Manual

Cli software configuration guide
Hide thumbs Also See for AP775A - Nexus Converged Network Switch 5010:
Table of Contents

Advertisement

Configuring FC-SP and DHCHAP

This chapter contains the following sections:
Configuring FC-SP and DHCHAP
Fibre Channel Security Protocol (FC-SP) capabilities provide switch-to-switch and host-to-switch authentication
to overcome security challenges for enterprise-wide fabrics. Diffie-Hellman Challenge Handshake
Authentication Protocol (DHCHAP) is an FC-SP protocol that provides authentication between Cisco Nexus
5000 Series switches and other devices. DHCHAP consists of the CHAP protocol combined with the
Diffie-Hellman exchange.

Information About Fabric Authentication

All Cisco Nexus 5000 Series switches enable fabric-wide authentication from one switch to another switch,
or from a switch to a host. These switch and host authentications are performed locally or remotely in each
fabric. As storage islands are consolidated and migrated to enterprise-wide fabrics, new security challenges
arise. The approach of securing storage islands cannot always be guaranteed in enterprise-wide fabrics. For
example, in a campus environment with geographically distributed switches, someone could maliciously
interconnect incompatible switches or you could accidentally do so, resulting in Inter-Switch Link (ISL)
isolation and link disruption.
OL-16597-01
Configuring FC-SP and DHCHAP, page 625
C H A P T E R
Cisco Nexus 5000 Series Switch CLI Software Configuration Guide
45
625

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the AP775A - Nexus Converged Network Switch 5010 and is the answer not in the manual?

Questions and answers

Table of Contents