Dell EqualLogic PS6210XS EqualLogic Group Manager Administrator s Guide PS Ser - Page 104

Create a New Access Policy, Study 6: Determine each volume a host/cluster can access

Page 104 highlights

3. To remove a node from cluster A, remove the node's access policy from the group policy. This disassociation instantly removes the node from the group. Study 6: Determine each volume a host/cluster can access Scenario: The group administrator needs to determine which volumes a host can access. Solution: 1. Click Group → Group Configuration. 2. Click the Access Policies tab. 3. In the Access Policies panel, select either the policy group or the access policy that is assigned to the host or cluster. 4. Refer to the Targets panel to view the volumes that are associated with the selected policy. Create a New Access Policy Access policies associate one or more endpoints to any number of available volumes. The access policy is created independently of any specific volume association and then associated with the selected volumes as a separate operation. 1. Click Group → Group Configuration. 2. In the Group Configuration panel, click the Access Policies tab to view the Access Policies panel. 3. In the Access policies subpanel, click New. 4. In the New Access Policy dialog box, specify a name for the new access policy and (optionally) a description. NOTE: Policy names can be up to 31 characters long. Space and underscores are not permitted. Fewer characters are accepted for this field if you type the value as a Unicode character string, which takes up a variable number of bytes, depending on the specific character. 5. In the New Access Policy window, click New. 6. In the New Extended Access Point dialog box, define an access point by specifying your host's authorization information. This information can be a CHAP account name, an iSCSI initiator name, an IP address, or any combination of these parameters. • To specify a new IP address, click Add next to the IP Addresses list. When the text cursor appears in the box, type the IP address. • To modify an existing IP address, double-click it or select the line and click Modify. • To delete an IP address from the list, select it from the list and click Delete. NOTE: • You can specify up to 16 unique IP addresses within a single access point. • Asterisk characters can be used within an IP address to indicate that any value is accepted in an octet (for example: 12.16.*.*). 7. Click OK to save the access point, which now appears in the Extended Access Points list. • To add another access point to this policy, click Add and repeat the previous step. You can associate up to 16 access points with an access policy. • To modify the currently selected access point, click Modify. • To remove the currently selected access point, click Delete. 8. Click OK to save the new policy, which now appears in the Access Policies list. Create a New Basic Access Point Basic access points connect a specific endpoint to a specific volume. Unlike access control policies and access policy groups, basic access points are always created in reference to a specific volume; the basic access point cannot be shared or reassigned to other volumes. When a volume is deleted, all the basic access points associated with it are also deleted. 1. Click Volumes. 2. Expand Volumes and then select the volume name on which you want to assign the access point. 104 About Volume-Level Security

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355

3.
To remove a node from cluster A, remove the node’s access policy from the group policy. This disassociation instantly removes
the node from the group.
Study 6: Determine each volume a host/cluster can access
Scenario: The group administrator needs to determine which volumes a host can access.
Solution:
1.
Click
Group
Group
Configuration
.
2.
Click the
Access Policies
tab.
3.
In the
Access Policies
panel, select either the policy group or the access policy that is assigned to the host or cluster.
4.
Refer to the
Targets
panel to view the volumes that are associated with the selected policy.
Create a New Access Policy
Access policies associate one or more endpoints to any number of available volumes. The access policy is created independently of
any
specific
volume association and then associated with the selected volumes as a separate operation.
1.
Click
Group
Group
Configuration
.
2.
In the Group
Configuration
panel, click the
Access Policies
tab to view the Access Policies panel.
3.
In the Access policies subpanel, click
New
.
4.
In the New Access Policy dialog box, specify a name for the new access policy and (optionally) a description.
NOTE: Policy names can be up to 31 characters long. Space and underscores are not permitted. Fewer characters
are accepted for this
field
if you type the value as a Unicode character string, which takes up a variable number of
bytes, depending on the
specific
character.
5.
In the New Access Policy window, click
New
.
6.
In the New Extended Access Point dialog box,
define
an access point by specifying your host’s authorization information. This
information can be a CHAP account name, an iSCSI initiator name, an IP address, or any combination of these parameters.
To specify a new IP address, click
Add
next to the IP Addresses list. When the text cursor appears in the box, type the IP
address.
To modify an existing IP address, double-click it or select the line and click
Modify
.
To delete an IP address from the list, select it from the list and click
Delete
.
NOTE:
You can specify up to 16 unique IP addresses within a single access point.
Asterisk characters can be used within an IP address to indicate that any value is accepted in an octet (for
example: 12.16.*.*).
7.
Click
OK
to save the access point, which now appears in the Extended Access Points list.
To add another access point to this policy, click
Add
and repeat the previous step. You can associate up to 16 access points
with an access policy.
To modify the currently selected access point, click
Modify
.
To remove the currently selected access point, click
Delete
.
8.
Click
OK
to save the new policy, which now appears in the Access Policies list.
Create a New Basic Access Point
Basic access points connect a
specific
endpoint to a
specific
volume. Unlike access control policies and access policy groups, basic
access points are always created in reference to a
specific
volume; the basic access point cannot be shared or reassigned to other
volumes. When a volume is deleted, all the basic access points associated with it are also deleted.
1.
Click
Volumes
.
2.
Expand
Volumes
and then select the volume name on which you want to assign the access point.
104
About Volume-Level Security