96 Device Security Configuration
Copying a group
To copy the contents of an existing group (group_port) to a new group (port_1), enter the group copy
command, as shown in the following example:
8/20q FC Switch (admin-security) #> group copy group_port port_1
Adding members to a group
Adding a member to a group involves specifying a group, the member worldwide name, and the member
attributes. The member attributes define the authentication method, encryption method, secrets, and fabric
binding, depending on the group type.
• For ISL member attributes, see Table 8.
• For Port member attributes, see Table 9.
• For MS member attributes, see Table 10.
To add a member to a group, enter the group add command, as shown in the following example:
8/20q FC Switch #> admin start
8/20q FC Switch (admin) #> security edit
8/20q FC Switch (admin-security) #> group add Group_1
A list of attributes with formatting and default values will follow
Enter a new value or simply press the ENTER key to accept the current value
with exception of the Group Member WWN field which is mandatory.
If you wish to terminate this process before reaching the end of the list
press 'q' or 'Q' and the ENTER key to do so.
Group Name Group_1
Group Type ISL
Member (WWN) [00:00:00:00:00:00:00:00]
10:00:00:c0:dd:00:90:a3
Authentication (None / Chap) [None ] chap
PrimaryHash (MD5 / SHA-1) [MD5 ]
PrimarySecret (32 hex or 16 ASCII char value) [ ] 0123456789abcdef
SecondaryHash (MD5 / SHA-1 / None) [None ]
SecondarySecret (40 hex or 20 ASCII char value) [ ]
Binding (domain ID 1-239, 0=None) [0 ]
Finished configuring attributes.
To discard this configuration use the security cancel command.
Modifying a group member
Modifying a group member involves changing the member attributes. The member attributes define the
authentication method, encryption methods, secrets, and fabric binding, depending on the group type.
• For ISL member attributes, see Table 8.
• For Port member attributes, see Table 9.
• For MS member attributes, see Table 10.
To change the attributes of a group member, enter the group edit command, as shown in the following
example:
8/20q FC Switch #> admin start
8/20q FC Switch (admin) #> security edit
8/20q FC Switch (admin-security) #> group edit G1 10:00:00:c0:dd:00:90:a3
A list of attributes with formatting and current values will follow.
Enter a new value or simply press the ENTER key to accept the current value.