Deployment As Part Of An Edge Fabric - Brocade Communications Systems Brocade 8/12c Administrator's Manual

Supporting hp secure key manager (skm) environments and hp enterprise secure key manager (eskm) environments
Hide thumbs Also See for Brocade 8/12c:
Table of Contents

Advertisement

Deployment as part of an edge fabric

In this deployment, the encryption switch is connected to either the host or target edge fabric. The
backbone fabric may contain a 7500 extension switch or FR4-18i blade in a 48000 director, DCX,
or DCX-4S, or an FCR-capable switch or blade. The encryption resources of the encryption switch
can be shared with the other edge fabrics using FCR in the backbone fabric
.
The following is a summary of steps for creating and enabling the frame redirection features in the
FCR configuration (edge to edge):
Fabric OS Encryption Administrator's Guide
53-1002159-03
Backbone Fabric
Extension
Switch
Ex_Port
FIGURE 104
Encryption switch as part of an edge fabric
The encryption device creates the frame redirection zone automatically, consisting of host,
target, virtual target, and virtual initiator. when the target and host are configured on the
encryption device. In
Figure
Create the frame redirection one consisting of host, target, virtual target, and virtual initiator in
the target edge fabric. The CLI command is zone
[VT wwn][nonrestartable] [noFCR]. Always specify nonrestartable as policy for creating
redirection zones in case of the encryption device. The VI and VT port WWNs can be obtained
by running the cryptocfg
--
encryption switch or blade. After the redirection zones are created, commit the configuration
with the cfgsave command.
Create the LSAN zone consisting of host, target, virtual target, and virtual initiator in both the
backbone fabric and the target edge fabrics. Refer to the Fabric OS Administrator's Guide for
information about LSANs, LSAN zoning, and Fibre Channel routing (FCR) configurations.

Deployment as part of an edge fabric

Host
Target
Redirection zone:
(Automatically created)
Virtual
Initiator
Virtual
Target
Host Edge Fabric
Ex_Port
E_Port
E_Port
Target Edge Fabric
Create zone: Host, Target,
Virtual Initiator, Virtual Target
104, the encryption device is connected to the host edge fabric.
rdcreate [host wwn] [target wwn] [VI wwn]
--
show -container <crypto container name> -cfg command on the
(Figure
Encryption
Switch
E_Port
Host
Target
4
104).
185

Advertisement

Table of Contents
loading

This manual is also suitable for:

Fabric os encryption

Table of Contents