HP StorageWorks 2/16V Brocade Web Tools Administrator's Guide (53-0000194-01, - Page 57

Using Web Tools and Secure Mode, Web Tools Access and HTTP_POLICY, Opening Modules in a Secure Fabric

Page 57 highlights

2 Using Web Tools and Secure Mode When secure mode is enabled on switches you manage through Web Tools, there are certain requirements and scenarios of which you should be aware. You should read through the requirements and scenarios in this section if you plan to use Web Tools to manage any switches that have secure mode enabled. Web Tools Access and HTTP_POLICY When secure mode is enabled, access to the Web Tools interface is controlled by HTTP_POLICY. If secure mode is enabled and HTTP_POLICY has been defined, your workstation IP address must be included in this policy or you will not have access to Web Tools for any switch in the fabric. If your workstation IP is not included in this policy, the Interface Disabled page is displayed when you attempt to access a switch. For instructions on including your workstation in HTTP_POLICY, see the Secure Fabric OS Administrator's Guide. Note If a secure mode change is made in the fabric-that is, secure mode is enabled, secure mode is disabled, or there is a change to the primary FCS-you must exit and relaunch Web Tools. If Web Tools is kept open after a secure mode change occurs, behavior is undefined. Opening Modules in a Secure Fabric When opening more than one module in a secure fabric, wait for each module to load completely before opening another. For example, if you want to access both the Zone Admin and the Switch Admin modules, open one of the modules and wait for it to load completely before opening the second module. Abnormal behavior might occur if you attempt to open two modules simultaneously in a fabric with secure mode enabled. Certain Web Tools features are limited or disabled when secure mode is enabled on a fabric. For more information about secure mode, see the Secure Fabric OS Administrator's Guide. Primary-FCS-Only Functionality The following Web Tools functionality is reserved for the primary FCS when secure mode is enabled: • Zoning administration is allowed only from the primary FCS switch when secure mode is enabled. For all other switches in a secure fabric, the Zoning button is disabled. • SNMP community strings can be modified only from the primary FCS switch when secure mode is enabled. For non-FCS switches, you can view the SNMP community strings, but they are readonly, and the SNMP access control lists on the SNMP tab are not displayed. • User account administration is allowed only from the primary FCS switch when secure mode is enabled. The changes are then propagated to all switches in the fabric. Web Tools Administrator's Guide Publication Number: 53-0000194-01 2-15

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308

Web Tools Administrator’s Guide
2-15
Publication Number: 53-0000194-01
2
Using Web Tools and Secure Mode
When secure mode is enabled on switches you manage through Web Tools, there are certain
requirements and scenarios of which you should be aware. You should read through the requirements
and scenarios in this section if you plan to use Web Tools to manage any switches that have secure mode
enabled.
Web Tools Access and HTTP_POLICY
When secure mode is enabled, access to the Web Tools interface is controlled by HTTP_POLICY. If
secure mode is enabled and HTTP_POLICY has been defined, your workstation IP address must be
included in this policy or you will not have access to Web Tools for any switch in the fabric. If your
workstation IP is not included in this policy, the Interface Disabled page is displayed when you attempt
to access a switch. For instructions on including your workstation in HTTP_POLICY, see the
Secure
Fabric OS Administrator’s Guide
.
Opening Modules in a Secure Fabric
When opening more than one module in a secure fabric, wait for each module to load completely before
opening another. For example, if you want to access both the Zone Admin and the Switch Admin
modules, open one of the modules and wait for it to load completely before opening the second module.
Abnormal behavior might occur if you attempt to open two modules simultaneously in a fabric with
secure mode enabled.
Certain Web Tools features are limited or disabled when secure mode is enabled on a fabric. For more
information about secure mode, see the
Secure Fabric OS Administrator’s Guide
.
Primary-FCS-Only Functionality
The following Web Tools functionality is reserved for the primary FCS when secure mode is enabled:
Zoning administration is allowed only from the primary FCS switch when secure mode is enabled.
For all other switches in a secure fabric, the Zoning button is disabled.
SNMP community strings can be modified only from the primary FCS switch when secure mode is
enabled. For non-FCS switches, you can view the SNMP community strings, but they are read-
only, and the SNMP access control lists on the SNMP tab are not displayed.
User account administration is allowed only from the primary FCS switch when secure mode is
enabled. The changes are then propagated to all switches in the fabric.
Note
If a secure mode change is made in the fabric—that is, secure mode is enabled, secure mode is disabled,
or there is a change to the primary FCS—you must exit and relaunch Web Tools. If Web Tools is kept
open after a secure mode change occurs, behavior is undefined.