Administrator Guide

Table Of Contents
In FluidFS, the management ports listed in the following table do not participate in SMB/NFS communication, but are exposed
on the client network by default. When you enable secured management, you can expose the management ports on a
management subnet only.
Service Port
Web Services 80
Secure Web Services 443
FTP 44421
FTP (Passive) 4443044439
SSH 22
Storage Manager communication 35451
Secured management can be enabled only after the system is deployed. To make a subnet secure:
It must exist prior to enabling the secured management feature.
It can reside on the client network (subnet-level isolation of management traffic) or the LOM (Lights Out Management)
Ethernet port (physical isolation of management traffic). The LOM Ethernet port is located on the lower-right side of the
back panel of a NAS controller.
It must be the subnet that you log in from.
Add a Secured Management Subnet
The subnet on which you enable secured management must exist prior to enabling the secured management feature.
Steps
1. In the Storage view, select a FluidFS cluster.
2. Click the File System tab.
3. In the File System view, select Cluster Connectivity, and then click the Management Network tab.
4. In the Management Network panel, click Edit Settings.
The Modify Administrative Network dialog box opens.
5. From the State drop-down list, select a state to be used for the management network.
Select Restricted for management functionality to be blocked on other subnets
Select Unrestricted for management functionality to be available on all subnets.
6. To change the prefix of the network, type a prefix length in the Prefix field.
7. In the Network ID field, type the ID for the network that you want to modify.
8. Add one or more management VIPs through which the administrator manages the FluidFS cluster.
a. In the Virtual IP field, type a management virtual IP address.
b. In the box for the Controller IP Address field, type a controller IP address and click Add. Repeat this step for each
controller.
9. To specify a VLAN tag, type a VLAN tag in the VLAN Tag field. When a VLAN spans multiple switches, the VLAN tag is used
to specify which ports and interfaces to send broadcast packets to.
10. From the Interface drop-down list, select the interface on which the secured management subnet is located.
Select Admin to use the LOM Ethernet port for physical isolation of management traffic. You must also connect a
network cable to the LOM Ethernet port of each controller in the first (or only) appliance.
Select Client for subnet-level isolation of management traffic.
11. Click OK.
FluidFS Administration
345