HP StorageWorks MSA 2/8 HP StorageWorks Secure Fabric OS V1.0 User Guide (AA-R - Page 69

Table 10: Front Panel Policy States, If neither of these commands are entered

Page 69 highlights

Creating Secure Fabric OS Policies Table 10: Front Panel Policy States Policy State No policy Policy with no entries Policy with entries Characteristics All the switches in the fabric have front panel access enabled. All the switches in the fabric have front panel access disabled. Only specified switches in the fabric have front panel access enabled. To create a Front Panel policy: 1. From a sectelnet or SSH session, log into the Primary FCS switch as Admin. 2. Enter the following: secpolicycreate "policy_name", "member;...;member" Where: ■ policy_name is FRONTPANEL_POLICY. ■ member is a switch WWN, domain ID, or switch name. If a domain ID or switch name is used to specify a switch, the associated switch must be present in the fabric for the command to succeed. 3. To save or activate the new policy, enter the secpolicysave or the secpolicyactivate command. If neither of these commands are entered, the changes are lost when you log out. For more information about these commands, see Saving Changes to Secure Fabric OS Policies" on page 77 and Activating Changes to Secure Fabric OS Policies" on page 77. Example, creating a Front Panel policy to allow only domains 3 and 4 to use the front panel: primaryfcs:admin> secPolicyCreate "FRONTPANEL_POLICY", "3; 4" FRONTPANEL_POLICY has been created. primaryfcs:admin> Secure Fabric OS Version 1.0 User Guide 69

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129

Creating Secure Fabric OS Policies
69
Secure Fabric OS Version 1.0 User Guide
To create a Front Panel policy:
1.
From a sectelnet or SSH session, log into the Primary FCS switch as Admin.
2.
Enter the following:
secpolicycreate
“policy_name”, “member;...;member”
Where:
policy_name
is FRONTPANEL_POLICY.
member
is a switch WWN, domain ID, or switch name. If a domain ID
or switch name is used to specify a switch, the associated switch must be
present in the fabric for the command to succeed.
3.
To save or activate the new policy, enter the
secpolicysave
or the
secpolicyactivate
command.
If neither of these commands are entered, the changes are lost when you log
out. For more information about these commands, see
Saving Changes to
Secure Fabric OS Policies
” on page 77 and
Activating Changes to Secure
Fabric OS Policies
” on page 77.
Example, creating a Front Panel policy to allow only domains 3 and 4 to use
the front panel:
Table 10:
Front Panel Policy States
Policy State
Characteristics
No policy
All the switches in the fabric have front panel access
enabled.
Policy with no entries
All the switches in the fabric have front panel access
disabled.
Policy with entries
Only specified switches in the fabric have front panel access
enabled.
primaryfcs:admin> secPolicyCreate "FRONTPANEL_POLICY", "3; 4"
FRONTPANEL_POLICY has been created.
primaryfcs:admin>