HP StorageWorks MSA 2/8 HP StorageWorks Fabric OS 3.X Document Addendum (AA-RW - Page 156

Example, logging in to the switch. Use this option

Page 156 highlights

Fabric OS reference guide Example --switchdb [on | off] Enables or disables the switch database authentication. This option is closely tied to --radius. If RADIUS is off, this operand has no effect. If RADIUS is on, there are two options: - --switchdb off implies the local authentication is not attempted, even if all of the RADIUS servers are inaccessible. This option disables users defined in the switch database from logging in to the switch. Use this option with restraint, because if none of the RADIUS servers is available, the switch becomes inaccessible to manage. - --switchdb on implies that if all of the RADIUS servers are inaccessible, users are authenticated from the switch database. If the user is not defined in the switch database, login fails. For the default accounts like root, factory, admin, and user, the login is always from the switch database. If no operands are specified, the command displays its usage. To display the usage: switch:admin> aaaConfig Usage: aaaConfig --show: display current AAA service configuration --add [options]: add a RADIUS server to configuration --remove : remove a RADIUS server from configuration --change [options]: change a RADIUS server configuration --move :move a RADIUS server from the current position to the new position --radius : turn on/off current RADIUS configuration --switchdb : turn on/off switch switch DB database as secondary authentication To display the current configuration: switch:admin> aaaConfig "--show" Position Server Port Secret Timeout(s) 1 192.168.66.243 1812 sharedsecret 3 Primary AAA Service: RADIUS Secondary AAA Service: Switch database Auth-Protocol CHAP To add a RADIUS server with default values: switch:admin> aaaConfig "--add 10.64.245.138" 156 Fabric OS 3.x Document Addendum

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250

Fabric OS reference guide
156
Fabric OS 3.x Document Addendum
If no operands are specified, the command displays its usage.
Example
To display the usage:
To display the current configuration:
To add a RADIUS server with default values:
--switchdb
[on | off]
Enables or disables the switch database authentication. This
option is closely tied to
--radius
. If RADIUS is off, this
operand has no effect. If RADIUS is on, there are two
options:
--switchdb off
implies the local
authentication is not attempted, even if all of the
RADIUS servers are inaccessible. This option
disables users defined in the switch database from
logging in to the switch. Use this option with
restraint, because if none of the RADIUS servers is
available, the switch becomes inaccessible to
manage.
--switchdb on
implies that if all of the
RADIUS servers are inaccessible, users are
authenticated from the switch database. If the user
is not defined in the switch database, login fails.
For the default accounts like root, factory, admin,
and user, the login is always from the switch
database.
switch:admin>
aaaConfig
Usage: aaaConfig
--show:
display current AAA service configuration
--add <server> [options]:
add a RADIUS server to configuration
--remove <server>:
remove a RADIUS server from configuration
--change <server> [options]:
change a RADIUS server configuration
--move <server> <to_position>:move a RADIUS server from the current position to the
new position
--radius <on | off>:
turn on/off current RADIUS configuration
--switchdb <on | off>:
turn on/off switch switch DB database as secondary
authentication
switch:admin>
aaaConfig "--show"
Position
Server
Port
Secret
Timeout(s)
Auth-Protocol
1
192.168.66.243
1812
sharedsecret
3
CHAP
Primary AAA Service: RADIUS
Secondary AAA Service: Switch database
switch:admin>
aaaConfig "--add 10.64.245.138"