HP StorageWorks MSA 2/8 HP StorageWorks Fabric OS 3.X Document Addendum (AA-RW - Page 133

Table 12: Access Defaults, Creating and Maintaining User-Defined Accounts, Table 12

Page 133 highlights

Fabric OS procedures user guide Table 12 lists the defaults for accessing hosts, devices, switches, and zones. Table 12: Access Defaults Area Hosts Devices Switches Zones Default Any host can access the fabric by SNMP. Any host can use telnet to any switch in the fabric. Any host can establish an HTTP connection to any switch in the fabric. Any host can establish an API connection to any switch in the fabric. All device ports can access SES. All devices can access the management server. Any device can connect to any FC port in the fabric. Any switch can join the fabric. All switches in the fabric can be accessed through the serial port. Node WWNs can be used for WWN-based zoning. Creating and Maintaining User-Defined Accounts In addition to the default administrative and user accounts, Fabric OS supports up to 15 user-defined accounts in each logical switch (domain). These accounts expand your ability to track account access and audit administrative activities. User-defined accounts can be specified as either admin or user level. Admin-level accounts allow up to two simultaneous login sessions. User-level accounts allow up to four simultaneous login sessions. The total number of simultaneous login sessions allowed per logical switch is 15. You can change passwords on user-defined accounts as described in "Changing an Account Password." If the track changes feature is enabled, the system keeps track of account names and login attempts. For large enterprises, Fabric OS also supports RADIUS services, as described in "Setting Up RADIUS AAA Service." The following procedures are for operations you can perform on user-defined accounts. Note: If you are operating in secure mode, you can perform these operations only on the primary FCS switch. To display account information: Note: Accounts with the admin role can display information about all accounts on the logical switch. Accounts with the user role can display information only about themselves. 1. Connect to the switch and log in as admin. 2. Issue one of the following commands: Fabric OS 3.x Document Addendum 133

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250

Fabric OS procedures user guide
133
Fabric OS 3.x Document Addendum
Table 12
lists the defaults for accessing hosts, devices, switches, and zones.
Table 12:
Access Defaults
Creating and Maintaining User-Defined Accounts
In addition to the default administrative and user accounts, Fabric OS supports up to 15
user-defined accounts in each logical switch (domain). These accounts expand your ability to
track account access and audit administrative activities.
User-defined accounts can be specified as either admin or user level. Admin-level accounts
allow up to two simultaneous login sessions. User-level accounts allow up to four
simultaneous login sessions. The total number of simultaneous login sessions allowed per
logical switch is 15.
You can change passwords on user-defined accounts as described in “
Changing an Account
Password
.”
If the track changes feature is enabled, the system keeps track of account names and login
attempts.
For large enterprises, Fabric OS also supports RADIUS services, as described in “
Setting Up
RADIUS AAA Service
.”
The following procedures are for operations you can perform on user-defined accounts.
Note:
If you are operating in secure mode, you can perform these operations only on the primary
FCS switch.
To display account information:
Note:
Accounts with the admin role can display information about all accounts on the logical
switch. Accounts with the user role can display information only about themselves.
1.
Connect to the switch and log in as admin.
2.
Issue one of the following commands:
Area
Default
Hosts
Any host can access the fabric by SNMP.
Any host can use telnet to any switch in the fabric.
Any host can establish an HTTP connection to any switch in the fabric.
Any host can establish an API connection to any switch in the fabric.
Devices
All device ports can access SES.
All devices can access the management server.
Any device can connect to any FC port in the fabric.
Switches
Any switch can join the fabric.
All switches in the fabric can be accessed through the serial port.
Zones
Node WWNs can be used for WWN-based zoning.