HP SAN manual Create Security Group Member dialog

Page 26

An empty (no members) security group in the active security set will prevent all connections for that security group type. For example, an empty ISL security group will cause the switch to refuse all logins from other switches. To add a security group to a security set:

1.Click Security on the tool bar in the faceplate display or select Security > Edit Security to open the Edit Security dialog.

2.Choose one of the following methods to open the Create a Security Group dialog:

Click a security set and click Security Group in the tool bar in the graphic window.

Right-click on a security set and select Create a Security Group from the popup menu.

3.Enter a security group name and select a security group type (ISL, Port, or MS). Remember, only one security group type (1 ISL, 1 Port, 1 MS) in each security set is allowed. The naming conventions for security groups are:

Must start with a letter

All alphanumeric chars [aA—zZ] [0—9]

The symbols $_ - and ^ are the only symbols allowed.

4.Click OK to save the change.

Create Security Group Member dialog

Use the Create Security Group Member dialog, shown in Figure 8, to add a member to a security group. Choose options from the Group Member (or manually enter a hex value) and Authentication drop-down lists, and enter values in the Secret and Binding (ISL groups only) fields.

Figure 8 Create a Security Group Member dialog

The conventions for ISL security group members are listed below:

You can enter member World Wide Name (WWN), which must be 16 hex characters, or 23 characters with valid WWN format xx:xx:xx:xx:xx:xx:xx:xx.

The authentication choices are None and CHAP (Challenge Handshake Authentication Protocol).

The Secret field is disabled if authentication is set to None. If authentication is CHAP, the Secret field is enabled. The secondary hash and secret are not supported when connecting to other McDATA products.

Generate is only enabled when authentication is set to CHAP.

Valid binding entries are 97–127.

26

Image 26
Contents McDATA 4Gb SAN Switch Page Contents Managing switches Managing ports Glossary IndexTables Related documentation Intended audiencePrerequisites Document conventions and symbols Jdom licenseHP technical support HP-authorized resellerHelpful web sites Using McDATA Web Server/Element Manager Workstation requirements Starting McDATA Web ServerStarting Element Manager in Hafm Exiting McDATA Web Server or Element ManagerSetting preferences Enabling call home Using online helpViewing software version and copyright information Enabling e-mail supportUser interface McDATA Web Server interfaceMenu bar Popup menus Shortcut keysMcDATA Web Server Fabric tree Graphic windowSelecting ports Selecting switchesData windows and tabs Security consistency checklist Securing a fabricUser account security Remote authenticationConnection security Device security Edit Security dialog Create Security Set dialog Create Security Group dialogCreate Security Group Member dialog McDATA 4Gb SAN Switch for HP p-Class BladeSystem user guide Editing the security configuration on a switch Viewing properties of a security set, group, or memberActivating a security set Security Config dialogArchiving a security configuration to a file Fabric services Rediscovering a fabricDisplaying the event browser Events browserSorting the event browser Filtering the event browser Saving the event browser to a fileWorking with device information and nicknames Devices data windowDisplaying detailed device information Managing device port nicknamesDeleting a nickname Creating a nicknameEditing a nickname Exporting nicknames to a fileZones Zoning a fabricZoning concepts Zone sets Zoning databaseZoning limits and properties Managing the zoning database Editing the zoning databaseMcDATA 4Gb SAN Switch for HP p-Class BladeSystem user guide Restoring the zoning database from a file Configuring the zoning databaseSaving the zoning database to a file Removing all zoning definitions Restoring the default zoning databaseManaging the active zone set Displaying the configured and active zone sets Active zone set data windowRemoving a zone from a zone set Creating a zone setActivating and deactivating a zone set Removing a zone setManaging zones Creating a zone in a zone setRemoving a zone member Adding zone membersRenaming a zone or a zone set Zone merge failure Zone merge failure recoveryMerging fabrics and zoning Managing switches Managing user accountsUser Account Administration dialog Add Account tab Creating user accountsUser Account Administration Dialog Remove Account tab Removing a user accountChanging a user account password User Account Administration dialog Change Password tabUser Account Administration dialog Modify Account tab Modifying a user accountConfiguring Radius servers Adding a Radius server Removing a Radius server Editing Radius server information Modifying Radius server authentication order Device and Host Bus Adapter information Displaying switch informationSwitch event log Switch status and operational information Switch data windowMcDATA 4Gb SAN Switch for HP p-Class BladeSystem user guide With a switch Ratov Port status and operational information McDATA Web Server Configured Zonesets data windowPort performance statistics Configuring port threshold alarms Paging a switch Setting the date/time and enabling NTP clientResetting a switch Configuring a switch Switch propertiesDomain ID and domain ID lock Symbolic name SyslogIn-band management Switch administrative statesBroadcast support Advanced switch properties Fabric Device Management InterfaceInterop mode System servicesTimeout values Page Network properties Snmp properties Snmp configuration Snmp trap configurationArchiving a switch Switch bindingRestoring a switch Restoring the factory default configuration Downloading a support file Installing Product Feature Enablement keys Installing firmware Displaying hardware status Hardware status LEDsManaging ports Port information data windowPersistent and will be lost on a switch reset VIEnable and LCFEnable features based on Port statistics data window LIP ALPD,ALPS Alps Viewing and configuring ports Port symbolic namePort states Port types Device scan Port speedsPort transceiver media status Port binding Resetting a portTesting ports Page Glossary FRU SFP 100 Index 102 System Fault LED 84 system services 104