HP StorageWorks 2/16V Brocade Web Tools Administrator's Guide - Supporting Fab - Page 48

Primary-FCS-only functionality, Disabled functionality, Working with Web Tools: recommendations

Page 48 highlights

2 Working with Web Tools: recommendations PRIMARY-FCS-ONLY FUNCTIONALITY The following Web Tools functionality is reserved for the primary FCS when secure mode is enabled: • Zoning administration is allowed only from the primary FCS switch when secure mode is enabled. For all other switches in a secure fabric, the Zoning button is disabled. • SNMP community strings can be modified only from the primary FCS switch when secure mode is enabled. For non-FCS switches, you can view the SNMP community strings, but they are read-only, and the SNMP access control lists on the SNMP tab are not displayed. • User account administration is allowed only from the primary FCS switch when secure mode is enabled. The changes are then propagated to all switches in the fabric. Web Tools provides information about an FCS policy in Switch Explorer. You cannot configure these values from Web Tools, but the Switch Information tab in Switch Explorer provides information as described below: - If there is no policy distributed, no FCS policy information is displayed. - If an FCS is distributed, a new section, FC, is displayed on the Switch Information tab in Switch Explorer. The new section shows the values for 2 FCS-related parameters: • FCS Enabled (yes or no, but will always be yes if the parameter is visible) • FCS Primary Switch (yes or no) - If FCS is enabled and the switch is not primary, the following restrictions are enforced: • Zone Administration and Admin Domain windows are read only. • ACL policies can be created and edited locally but not saved. • ACL distribution is disabled. DISABLED FUNCTIONALITY Telnet access to a switch and the Telnet button in Web Tools are both disabled when secure mode is enabled for a fabric. You must use sectelnet or SSH to access the Fabric OS CLI in a secure fabric. These capabilities are not accessible from Web Tools. For more information on sectelnet or SSH, see the Secure Fabric OS Administrator's Guide. The SNMP Access Control List is replaced with RSNMP_POLICY and WSNMP_POLICY when secure mode is enabled for a fabric. The SNMP Access Control List is not displayed in Web Tools. Working with Web Tools: recommendations This section lists recommendations for working with Web Tools: • If you receive an error when saving changes in the Switch Administration window, note the error messages, refresh the window, and make your changes again. Do not continue making changes without refreshing the window and determining which changes were saved correctly. • In a mixed fabric-that is a fabric containing switches and directors running v5.x, v4.x, v3.x, and v2.x firmware-use the most advanced switches or directors to control the fabric. For example, use the v5.2.0 switches or directors as the primary FCS, the location to perform zoning tasks, and the time server (CLI). You should use the most recently released firmware on your switches. 26 Web Tools Administrator's Guide Publication Number: 53-1000435-01

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266

26
Web Tools Administrator’s Guide
Publication Number: 53-1000435-01
Working with Web Tools: recommendations
2
PRIMARY-FCS-ONLY FUNCTIONALITY
The following Web Tools functionality is reserved for the primary FCS when secure mode is enabled:
Zoning administration is allowed only from the primary FCS switch when secure mode is
enabled. For all other switches in a secure fabric, the Zoning button is disabled.
SNMP community strings can be modified only from the primary FCS switch when secure mode
is enabled. For non-FCS switches, you can view the SNMP community strings, but they are
read-only, and the SNMP access control lists on the
SNMP
tab are not displayed.
User account administration is allowed only from the primary FCS switch when secure mode is
enabled. The changes are then propagated to all switches in the fabric.
Web Tools provides information about an FCS policy in Switch Explorer. You cannot configure these
values from Web Tools, but the Switch Information tab in Switch Explorer provides information as
described below:
-
If there is no policy distributed, no FCS policy information is displayed.
-
If an FCS is distributed, a new section, FC, is displayed on the Switch Information tab in
Switch Explorer. The new section shows the values for 2 FCS-related parameters:
FCS Enabled (yes or no, but will always be yes if the parameter is visible)
FCS Primary Switch (yes or no)
-
If FCS is enabled and the switch is not primary, the following restrictions are enforced:
Zone Administration and Admin Domain windows are read only.
ACL policies can be created and edited locally but not saved.
ACL distribution is disabled.
DISABLED FUNCTIONALITY
Telnet access to a switch and the Telnet button in Web Tools are both disabled when secure mode
is enabled for a fabric. You must use sectelnet or SSH to access the Fabric OS CLI in a secure
fabric. These capabilities are not accessible from Web Tools. For more information on sectelnet or
SSH, see the
Secure Fabric OS Administrator’s Guide
.
The SNMP Access Control List is replaced with RSNMP_POLICY and WSNMP_POLICY when secure
mode is enabled for a fabric. The SNMP Access Control List is not displayed in Web Tools.
Working with Web Tools: recommendations
This section lists recommendations for working with Web Tools:
If you receive an error when saving changes in the Switch Administration window, note the
error messages, refresh the window, and make your changes again. Do not continue making
changes without refreshing the window and determining which changes were saved correctly.
In a mixed fabric—that is a fabric containing switches and directors running v5.x, v4.x, v3.x, and
v2.x firmware—use the most advanced switches or directors to control the fabric. For example,
use the v5.2.0 switches or directors as the primary FCS, the location to perform zoning tasks,
and the time server (CLI). You should use the most recently released firmware on your
switches.