HP StorageWorks 2/16V HP StorageWorks Fabric OS 5.X Procedures User Guide (AA- - Page 58

Troubleshooting certificates, Table 11 SSL messages and actions, Configuring SNMP agent and traps

Page 58 highlights

Troubleshooting certificates If you receive messages in the browser or in a pop-up window when logging in to the target switch using HTTPS, see Table 11. Table 11 SSL messages and actions Message Action The page cannot be displayed The security certificate was issued by a company you have not chosen to trust. The SSL certificate is not installed correctly or HTTPS is not enabled correctly. Make sure that the certificate has not expired, that HTTPS is enabled, and that certificate file names are configured correctly. The certificate is not installed in the browser. Install it as described in "Configuring the browser" on page 56. The security certificate has expired or is not yet valid The name on the security certificate is invalid or does not match the name of the site file This page contains both secure and nonsecure items. Do you want to display the nonsecure items? Either the certificate file is corrupted or it needs to be updated. Click View Certificate to verify the certificate content. If it is corrupted or out of date, obtain and install a new certificate. The certificate is not installed correctly in the Java Plug-in. Install it as described in "Installing a root certificate to the Java Plug-in" on page 57. Click No in this pop-up window. The session opens with a closed lock icon on the lower-right corner of the browser, indicating an encrypted connection. Configuring SNMP agent and traps You can perform a configuration for the transmission of SNMP information to management stations. SNMPv3 and SNMPv1 are supported. The configuration process involves configuring the SNMP agent and configuring SNMP traps. The following commands are used in the process: • The configure command sets the security level. You can specify no security, authentication only, or authentication and privacy. • The snmpConfig command configures the SNMP agent and traps for SNMPv3 or SNMPv1 configurations. • If necessary for backward compatibility, you can use these legacy commands for the configuration of SNMP v1: • The agtCfgShow, agtCfgset, and agtCfgDefault commands configure the SNMPv1 agent. • The snmpMibCapSet command filters at the trap level and the snmpMibCapShow command displays the trap filter values. The SNMP trap configuration specifies the MIB trap elements to be used to send information to the SNMP management station. There are two main MIB trap choices: • HP-specific MIB trap is associated with the HP-specific StorageWorks MIB (SW-MIB); it monitors HP StorageWorks switches specifically. • FibreAlliance MIB trap is associated with the FibreAlliance MIB (FA-MIB); it manages SAN switches and devices from any company that complies with FibreAlliance specifications. If you use both SW-MIB and FA-MIB, you might receive duplicate information. You can disable the FA-MIB, but not the SW-MIB. 58 Configuring standard security features

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248

58
Configuring standard security features
Troubleshooting certificates
If you receive messages in the browser or in a pop-up window when logging in to the target switch using
HTTPS, see
Table 11
.
Configuring SNMP agent and traps
You can perform a configuration for the transmission of SNMP information to management stations.
SNMPv3 and SNMPv1 are supported.
The configuration process involves configuring the SNMP agent and configuring SNMP traps. The
following commands are used in the process:
The
configure
command sets the security level. You can specify no security, authentication only, or
authentication and privacy.
The
snmpConfig
command configures the SNMP agent and traps for SNMPv3 or
SNMPv1 configurations.
If necessary for backward compatibility, you can use these legacy commands for the configuration of
SNMP v1:
The
agtCfgShow
,
agtCfgset
, and
agtCfgDefault
commands configure the SNMPv1 agent.
The
snmpMibCapSet
command filters at the trap level and the
snmpMibCapShow
command
displays the trap filter values.
The SNMP trap configuration specifies the MIB trap elements to be used to send information to the SNMP
management station. There are two main MIB trap choices:
HP-specific MIB trap is associated with the HP-specific StorageWorks MIB (SW-MIB); it monitors HP
StorageWorks switches specifically.
FibreAlliance MIB trap is associated with the FibreAlliance MIB (FA-MIB); it manages SAN switches
and devices from any company that complies with FibreAlliance specifications.
If you use both SW-MIB and FA-MIB, you might receive duplicate information. You can disable the
FA-MIB, but not the SW-MIB.
Table 11
SSL messages and actions
Message
Action
The page cannot be displayed
The SSL certificate is not installed correctly or HTTPS is not
enabled correctly. Make sure that the certificate has not
expired, that HTTPS is enabled, and that certificate file names
are configured correctly.
The security certificate was
issued by a company you have
not chosen to trust.
The certificate is not installed in the browser. Install it as
described in ”
Configuring the browser
” on page 56.
The security certificate has
expired or is not yet valid
Either the certificate file is corrupted or it needs to be
updated. Click
View Certificate
to verify the certificate
content. If it is corrupted or out of date, obtain and install a
new certificate.
The name on the security
certificate is invalid or does
not match the name of the site
file
The certificate is not installed correctly in the Java Plug-in.
Install it as described in ”
Installing a root certificate to the
Java Plug-in
” on page 57.
This page contains both secure
and nonsecure items. Do you
want to display the nonsecure
items?
Click
No
in this pop-up window. The session opens with a
closed lock icon on the lower-right corner of the browser,
indicating an encrypted connection.