Port Security Manual Configuration; About Wwn Identification; Adding Authorized Port Pairs - HP Cisco MDS 9020 - Fabric Switch Configuration Manual

Cisco mds 9000 family cli configuration guide, release 3.x (ol-16184-01, april 2008)
Hide thumbs Also See for Cisco MDS 9020 - Fabric Switch:
Table of Contents

Advertisement

Port Security Manual Configuration

S e n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a c k - d o c @ c i s c o . c o m
Port Security Manual Configuration
To configure port security on any switch in the Cisco MDS 9000 Family, follow these steps:
Step 1
Identify the WWN of the ports that need to be secured.
Step 2
Secure the fWWN to an authorized nWWN or pWWN.
Step 3
Activate the port security database.
Verify your configuration.
Step 4
This section includes the following topics:

About WWN Identification

If you decide to manually configure port security, be sure to adhere to the following guidelines:

Adding Authorized Port Pairs

After identifying the WWN pairs that need to be bound, add those pairs to the port security database.
Remote switch binding can be specified at the local switch. To specify the remote interfaces, you can
Tip
use either the fWWN or sWWN-interface combination.
Cisco MDS 9000 Family CLI Configuration Guide
37-10
About WWN Identification, page 37-10
Adding Authorized Port Pairs, page 37-10
Identify switch ports by the interface or by the fWWN.
Identify devices by the pWWN or by the nWWN.
If an Nx port is allowed to log in to SAN switch port Fx, then that Nx port can only log in through
the specified Fx port..
If an Nx port's nWWN is bound to an Fx port WWN, then all pWWNs in the Nx port are implicitly
paired with the Fx port.
TE port checking is done on each VSAN in the allowed VSAN list of the trunk port.
All PortChannel xE ports must be configured with the same set of WWNs in the same PortChannel.
E port security is implemented in the port VSAN of the E port. In this case the sWWN is used to
secure authorization checks.
Once activated, the config database can be modified without any effect on the active database.
By saving the running configuration, you save the configuration database and activated entries in the
active database. Learned entries in the active database are not saved.
Chapter 37
Configuring Port Security
OL-16184-01, Cisco MDS SAN-OS Release 3.x

Advertisement

Table of Contents
loading

Table of Contents