SANRAD V-Switch manual Acl identity details, 128

Models: V-Switch

1 300
Download 300 pages 15.92 Kb
Page 134
Image 134

After assigning iSCSI initiators and assigning credentials to an identity, use the CLI command acl identity details to view the list of iSCSI initiators.

acl identity details

You need to define one parameter to view an identity’s details:

SWITCH

PARAMETER

DEFINITION

STATUS

EXAMPLE

 

 

 

 

 

-id

IDENTITY

NAME OF ACL

MANDATORY

accounting

If you are working in

aV-Switch cluster, the RADIUS server must be configured

on both V Switches.

acl identity details –id accounting Table 25: Identity Details

Description:

Accounts allowed read-write

 

access to accounting records

Initiators:

iqn.1991-05.microsoft:steven.

 

sanrad

 

iqn.com.cisco.steven

Credentials:

CHAP

 

 

Using a RADIUS Server

When CHAP user names and passwords are configured on the network in a remote RADIUS server, use the CLI command acl identity add chap to direct a CHAP challenge to the RADIUS server and eliminate the need to configure all user name + password pairs on the V-Switch. This decreases configuration time and increase overall network security. Use the CLI command ip radius add to add a RADIUS server address to the V-Switch RADIUS client.

In Figure 68, page 129, a CHAP authentication challenge is sent to the V- Switch. The V-Switch first checks if the user name is set for RADIUS authentication. If it is, the CHAP challenge is passed on to the RADIUS server. If it is not, the user name and password are compared against the pairs configured in the V-Switch.

128

SANRAD V-Switch User Manual

Page 134
Image 134
SANRAD V-Switch manual Acl identity details, 128