Cisco MDS 9000 Series Configuration Manual page 238

Security
Hide thumbs Also See for MDS 9000 Series:
Table of Contents

Advertisement

Configuring DHCHAP AAA Authentication
Procedure
Step 1
switch# configure terminal
Enters configuration mode.
Step 2
switch(config)# fcsp timeout 60
Configures the reauthentication timeout to be 60 seconds.
Step 3
switch(config)# no fcsp timeout 60
(Optional) Reverts to the factory default of 30 seconds.
Configuring DHCHAP AAA Authentication
You can individually set authentication options. If authentication is not configured, local authentication is
used by default.
To configure the AAA authentication follow these steps:
Procedure
Step 1
switch# configure terminal
Enters configuration mode.
Step 2
switch(config)# aaa authentication dhchap default group TacacsServer1
Enables DHCHAP to use the TACACS+ server group (in this example, TacacsServer1) for authentication.
Step 3
switch(config)# aaa authentication dhchap default local
Enables DHCHAP for local authentication.
Step 4
switch(config)# aaa authentication dhchap default group RadiusServer1
Enables DHCHAP to use the RADIUS server group (in this example, RadiusServer1) for authentication.
Displaying Protocol Security Information
Use the show fcsp commands to display configurations for the local database (see the following examples).
Displays DHCHAP Configurations in FC Interfaces
switch# show fcsp interface fc1/9
fc1/9:
Cisco MDS 9000 Series Security Configuration Guide, Release 8.x
220
fcsp authentication mode:SEC_MODE_ON
Status: Successfully authenticated
Configuring FC-SP and DHCHAP

Advertisement

Table of Contents
loading

Table of Contents