McDATA 4314 manual Connection Security

Page 30

Fabric Security

Connection Security

Connection security provides an encrypted data path for switch management methods. The switch supports the Secure Shell (SSH) protocol for the command line interface and the Secure Socket Layer (SSL) protocol for management applications such as EFCM BASIC and Common Information Module (CIM).

The SSL handshake process between the workstation and the switch involves the exchanging of certificates. These certificates contain the public and private keys that define the encryption. When the SSL service is enabled, a certificate is automatically created on the switch. The workstation validates the switch certificate by comparing the workstation date and time to the switch certificate creation date and time. For this reason, it is important to synchronize the workstation and switch with the same date, time, and time zone. The switch certificate is valid 24 hours before its creation date and 365 days after its creation date. If the certificate should become invalid, refer to the Create command in the McDATA 4314 Command Line Interface Guide for information about creating a certificate.

Consider your requirements for connection security: for the command line interface (SSH), management applications such as EFCM BASIC (SSL), or both. If SSL connection security is required, also consider using the Network Time Protocol (NTP) to synchronize workstations and switches.

Refer to System keyword of the Set Setup command in the McDATA 4314 Command Line Interface Guide for information about enabling the NTP client on the switch and configuring the NTP server.

Refer to the Set command in the McDATA 4314 Command Line Interface Guide for information about setting the time zone.

2-10

McDATA 4314 Fibre Channel Switch Module Installation Guide

Image 30
Contents McDATA Fibre Channel Switch Module Installation Guide Copyright 2005 McDATA Corporation. All rights reserved Contents Chapter Installation Chapter TroubleshootingAppendix a Specifications Contents McDATA 4314 Fibre Channel Switch Module Installation Guide Figures Figures Viii Tables Tables Who Should Use this Manual How to Use this ManualPreface Related DocumentationPreface McDATA 4314 Switch Module General DescriptionSwitch Module Controls and LEDs Maintenance ButtonSwitch Module LEDs Fibre Channel PortsExternal Port LEDs Transceivers Port Logged-In LED GreenEthernet Port Port TypesSwitch Module Management McDATA Embedded Web ServerCommand Line Interface Simple Network Management ProtocolFile Transfer Protocol Planning DevicesDevice Access Soft ZonesAccess Control List Hard Zones Performance DistanceBandwidth Latency Multiple Chassis Fabrics Optimizing Device PerformanceDomain ID, Principal Priority, and Domain ID Lock Switch Module Services Fabric Security Connection Security Device Security Fabric Management User Account SecurityInstallation Site RequirementsFabric Management Workstation Site Requirements Installing a Switch Install SFP TransceiversEnvironmental Conditions Mount the Switch Module in the Server Chassis Mounting the Switch Module in the Server ChassisConnect the Management Workstation to the Switch Module Indirect Ethernet Direct Ethernet RJ-45 ConnectionInstall Efcm Basic For a Windows platformStart Efcm Basic Configure the Switch Module Cable Devices to the Switch Install Firmware Using Efcm Basic to Install FirmwareUsing the CLI to Install Firmware Password required for johndoe. Password User johndoe logged McDATA 4314 Fibre Channel Switch Module Installation Guide Troubleshooting Input Power LED Is ExtinguishedSystem Fault LED is Illuminated Logged-In LED Indications EPort IsolationExcessive Port Errors Recovering a Switch Module Maintenance Exit Maintenance Reset User Accounts to Default Maintenance Image UnpackMaintenance Reset Network Config Maintenance Copy Log FilesMaintenance Remake Filesystem Maintenance Reset SwitchMaintenance Update Boot Loader McDATA 4314 Fibre Channel Switch Module Installation Guide Specifications Fabric SpecificationsMaintainability Specifications LED indicatorsFabric Management Specifications Dimensional SpecificationsElectrical Specifications Environmental Specifications Regulatory Certifications Certification DescriptionMcDATA 4314 Fibre Channel Switch Module Installation Guide Administrative State GlossaryMcDATA 4314 Fibre Channel Switch Module Installation Guide Fdmi MIB Protocol McDATA 4314 Fibre Channel Switch Module Installation Guide Index NumericsLED Reset 1-2,4-7services 2-8specifications A-1 McDATA 4314 Fibre Channel Switch Module Installation Guide

4314 specifications

The McDATA 4314 is a highly regarded Fibre Channel switch designed for enterprise storage area networks (SANs). This switch is particularly known for its reliability, high performance, and scalability. As part of McDATA's extensive range of networking products, the 4314 stands out for its ability to meet the demands of modern data centers, providing seamless connectivity for numerous storage and server devices.

One of the main features of the McDATA 4314 is its robust architecture, which supports up to 32 ports. This enables a flexible configuration that can easily scale as the needs of the organization grow. The switch is characterized by its ability to handle both FC-AL and FC-SW protocols, thus providing compatibility with a wide range of existing Fibre Channel devices. This versatility makes it ideal for organizations looking to enhance their existing infrastructure without the need for a complete overhaul.

In terms of performance, the McDATA 4314 supports high bandwidth requirements, with each port capable of delivering up to 4 Gbps. This high throughput is critical for data-intensive applications, ensuring low latency access to data stored on SAN devices. Additionally, the switch incorporates advanced technologies such as dynamic load balancing and intelligent pathing, which further optimize traffic flow and enhance overall system performance.

Security is a key consideration in any data center environment, and the McDATA 4314 addresses this with features such as zoning and masking. These capabilities ensure that only authorized devices can access specific data, safeguarding sensitive information from potential breaches. Moreover, the switch supports management protocols like SNMP (Simple Network Management Protocol), allowing for seamless integration into existing network management systems and enabling administrators to monitor performance and troubleshoot efficiently.

In terms of characteristics, the McDATA 4314 is designed for high availability, with redundant components that minimize downtime in critical environments. Furthermore, its compact form factor allows for efficient rack space utilization, making it a practical choice for organizations with space constraints.

Overall, the McDATA 4314 Fibre Channel switch provides a combination of performance, reliability, and scalability, making it an ideal choice for enterprise environments. Its advanced features and robust design ensure that organizations can maintain high levels of performance while effectively managing their storage networks. Whether supporting virtualized environments or managing extensive data storage, the McDATA 4314 is a valuable asset for any data center infrastructure.