Blade ICE BMD00178 Secure Management Network, Secure Shell SSH, Trunk Group Configuration Tips

Page 23

BLADEOS 6.3 Application Guide

Secure Management Network

The following GbESM attributes are reserved to provide secure management access to and from the IBM management module:

￿MGT1 (port 15) and MGT2 (port 16)

￿VLAN 4095

￿IP interface 128

￿Gateway 4

￿STG 128

For more information about remotely managing the GbESM through the external ports, see “Accessing the Switch” in the BLADEOS 6.3 Application Guide.

Note – The external uplink ports (EXTx) cannot be members of management VLANs.

Secure Shell (SSH)

Because SSH key generation is CPU intensive, the GbESM attempts to avoid unnecessary key generation. The process generates three server keys:

1.One key is generated to replace the current server key, if used.

2.A second key is generated as a spare, in case the current server key is used and the specified interval expires.

3.A third key is generated for use at the next reboot.

Therefore, if you never login via SSH, you will only see two key generation events. You may see all three events directly following a reboot. If you want to witness the key generation after the specified interval has expired, then you must login via SSH at least once during each expiration interval.

Trunk Group Configuration Tips

Please be aware of the following information when you configure trunk groups:

￿Always configure trunk groups first on both ends, before you physically connect the links.

￿Configure all ports in a trunk group to the same speed (you cannot aggregate 1Gb ports with 10GBASE-SFP+ ports).

BMD00178, April 2010

23

Image 23
Contents Release Notes Bladeos 6.3 Application Guide Release Notes 10Gb Uplink ESM Faceplate Hardware SupportRecommended SFP+ transceiver Loading New Software to Your Switch Updating the Switch Software ImageUsing the Bladeos CLI Using the Iscli Using the BBI Recovering from a Failed Upgrade Using the Boot Management Menu## Switch baudrate to 115200 bps and press Enter ## Switch baudrate to 9600 bps and press ESC Stacking New and Updated FeaturesStacking Limitations VMready Vlan Maps OSPFv3 statistics menu OSPFv3Port Trunk Hashing Enhancements Active MultiPath ProtocolManagement Interface Connection SM IPv4 and IPv4 Configuration Extensions Igmp Group Capacity Management Module Supplemental InformationManagement Module/GbESM Connectivity Secure Shell SSH Trunk Group Configuration TipsSecure Management Network FTP/TFTP Directory Path Spanning Tree Configuration TipsSyslog Configuration Tip Internal Port AutonegotiationSTP Edge and Link Command ReplacementsBpdu Guard Igmp Relay Known IssuesSoftware Upgrade Issues Access Control ListsLinking at 10/100Mb Interoperability with Older HubsLink Aggregation Control Protocol Radius with SSHv2 Static MrouterQoS Metering QoS and TrunkingBrowser Based Interface Strong Password ExpirationTrunk and Link Loop Trunk TrafficDaylight Saving Time VCenter SynchronizationBladeos 6.3 Application Guide