1
Fabric OS features in Access Gateway mode
TABLE 2
AG switch with switch
policy mode on
AG switch with switch
policy off
Table 3
TABLE 3
HBA authentication
enabled
HBA authentication
disabled
Supported Fabric OS commands
All Fabric OS commands for authentication policy apply to AG switches, including the following:
•
•
•
•
•
NOTE
Although authutil --authinit is not supported in AG mode, it is supported in native mode.
For more information, refer to the Fabric OS Command Reference.
Limitations and considerations
•
8
Behavior of sending AG switch and receiving fabric switch with different policies configured
Fabric switch with device
policy mode ON
Authorization negotiation -
accept
DH-CHAP/FCAP:
Success - N_Port
Failure - disable
No negotiation
No light
describes the authentication behavior between a sending HBA and receiving AG switch.
Behavior of sending device (HBA) and receiving AG switch with different policies configured
AG switch with device
policy mode ON
Authorization negotiation -
accept
DH-CHAP
Success - F_Port
Failure - disable
No negotiation
No light
authutil -- policy
authutil --show
authutil --set
secauthsecret --set
secauthsecret --show
Authentication policy is not supported on cascaded AG switch configurations.
Fabric switch with device
policy mode PASSIVE
Authorization negotiation -
accept
DH-CHAP/FCAP:
Success - N_Port
Failure - disable
No Negotiation
N_Port without
authenctication.
AG switch with device policy
mode PASSIVE
Authorization negotiation -
accept
DH-CHAP
Success - F_Port
Failure - disable
No negotiation
F_Port without
authentication
Access Gateway Administrator's Guide
Fabric switch with device
policy mode OFF
Authorization
negotiation - reject
N_Port without
authentication
No negotiation
N_Port without
authentication
AG switch with device
policy mode OFF
Authorization
negotiation - reject
F_Port without
authentication
No negotiation
F_Port without
authentication
53-1002743-01