HP StorageWorks 8/20q HP StorageWorks 8/20q Fibre Channel Switch Command Line - Page 31

IP security configuration history, Managing the security policy database

Page 31 highlights

IP security configuration history To display the IP security configuration history, enter the ipsec history command to display a record of policy and association modifications, as shown in the following example: 8/20q FC Switch #> ipsec history IPsec Database History ConfigurationLastEditedBy johndoe@OB-session5 ConfigurationLastEditedOn Sat Mar 8 07:14:36 2008 Active Database Checksum Inactive Database Checksum History includes the following information: 00000144 00000385 • Time of the most recent activation and the user account that performed it • Time of the most recent modification to the IP security configuration and the user account that made it • Checksum for the active and inactive databases IP security configuration limits To display a summary of the objects in the IP security configuration and their maximum limits, enter the ipsec limits command, as shown in the following example: 8/20q FC Switch #> ipsec limits Configured (saved) IPsec Information IPsec Attribute Maximum Current MaxConfiguredSAs 512 0 MaxConfiguredSPs 128 0 In an Ipsec Edit session, the ipsec limits command displays the number of both configured associations and policies, plus those created in the edit session but not yet saved. Managing the security policy database The security policy database is made up of user-defined policies and dynamic policies (policies created by the switch). In addition to creating a policy, you can delete, modify, rename, and copy user-defined policies. Dynamic policies can only be copied. • Creating a policy, page 32 • Deleting a policy, page 32 • Modifying a user-defined policy, page 33 • Renaming a user-defined policy, page 34 • Copying a policy, page 34 8/20q Fibre Channel Switch Command Line Interface Guide 31

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332

8/20q Fibre Channel Switch Command Line Interface Guide
31
IP security configuration history
To display the IP security configuration history, enter the
ipsec history
command to display a record
of policy and association modifications, as shown in the following example:
8/20q FC Switch #> ipsec history
IPsec Database History
----------------------
ConfigurationLastEditedBy
johndoe@OB-session5
ConfigurationLastEditedOn
Sat Mar
8 07:14:36 2008
Active Database Checksum
00000144
Inactive Database Checksum
00000385
History includes the following information:
Time of the most recent activation and the user account that performed it
Time of the most recent modification to the IP security configuration and the user account that made it
Checksum for the active and inactive databases
IP security configuration limits
To display a summary of the objects in the IP security configuration and their maximum limits, enter the
ipsec limits
command, as shown in the following example:
8/20q FC Switch #> ipsec limits
Configured (saved) IPsec Information
IPsec Attribute
Maximum
Current
---------------
-------
-------
MaxConfiguredSAs
512
0
MaxConfiguredSPs
128
0
In an Ipsec Edit session, the
ipsec limits
command displays the number of both configured
associations and policies, plus those created in the edit session but not yet saved.
Managing the security policy database
The security policy database is made up of user-defined policies and dynamic policies (policies created by
the switch). In addition to creating a policy, you can delete, modify, rename, and copy user-defined
policies. Dynamic policies can only be copied.
Creating a policy
, page 32
Deleting a policy
, page 32
Modifying a user-defined policy
, page 33
Renaming a user-defined policy
, page 34
Copying a policy
, page 34