53-1000791-01 7 Sept 2007 Web Tools Documentation Addendum Supporting Fabric OS v5.3.
Copyright © 2007, Brocade Communications Systems, Incorporated. ALL RIGHTS RESERVED. Brocade, the Brocade B weave logo, Fabric OS, File Lifecycle Manager, MyView, Secure Fabric OS, Brocade, and StorageX are registered trademarks and Tapestry is a trademark of Brocade Communications Systems, Inc., in the United States and/or in other countries. FICON is a registered trademarks of IBM Corporation in the U.S. and other countries.
Document History The following table lists all versions of this addendum: Document Title Publication Number Summary of Changes Publication Date Web Tools Documentation Addendum 53-1000791-01 First version.
Contents About This Document Supported hardware and software . . . . . . . . . . . . . . . . . . . . . . . . . . vii Document conventions . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . viii Additional information. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . ix Document feedback . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . ix Chapter 1 Using the FCIP Tunneling Service In this document . . . . . . . . . . . . . . . . .
vi Web Tools Documentation Addendum 53-1000791-01
About This Document This preface contains updates to Web Tools Administrator’s Guide.
Document conventions This section describes text formatting conventions and important notices formats.
Additional information This section lists additional Brocade and industry-specific documentation that you might find helpful. Brocade resources Related documentation is provided on the Brocade Documentation CD-ROM and on the Brocade Web site, through Brocade Connect. NOTE Go to http://www.brocade.com and click Brocade Connect to register at no cost for a user ID and password.
Provide the title and version number of the document and as much detail as possible about your comment, including the topic heading and page number and your suggestions for improvement.
Chapter Using the FCIP Tunneling Service 1 In this document This document describes how to set up Fibre Channel over Internet Protocol (FCIP) Tunneling Service through Web Tools. It contains the following information: • “Understanding the FCIP Tunneling Service” on page 1 • “Configuring an FCIP interswitch/interfabric link” on page 3 • “Managing the FCIP tunneling service” on page 7 For detailed information about the FCIP Tunneling Service, see the Fabric OS Administrator’s Guide.
1 Understanding the FCIP Tunneling Service • Fastwrite, which is a feature that reduces the number of round-trip times required to complete a SCSI write I/O and increases performance. • Tape pipelining which reduces the number of round trip times required to complete a SCSI write I/O and eliminates the sequential nature of the SCSI I/O. • IKE/IPSec Policy, which is a framework of open standards to ensure private, secure communications over IP networks through the use of cryptographic security services.
Configuring an FCIP interswitch/interfabric link TABLE 1 1 IKE/IPSec Configuration Choices (Continued) Field Description Choices Diffie-Hellman (D-H) Diffie-Hellman key exchange is a cryptographic protocol that allows two parties that have no prior knowledge of each other to jointly establish a shared secret key over an insecure communications channel.
1 Configuring an FCIP interswitch/interfabric link 4. Select a policy type from the drop-down menu. FIGURE 1 Create an IKE/IPSec policy 5. Choose a policy number. 6. Select an Encryption Algorithm. 7. Select an Authentication Algorithm. 8. (IKE only) Select a Perfect Forward Secrecy. 9. (IKE only) Select a Diffie-Hellman Group. 10. Enter a value for the Security Association Lifetime in number of seconds. Configuring Virtual Ports Each GbE port supports up to eight virtual ports.
Configuring an FCIP interswitch/interfabric link 1 The following procedure describes how to open the GigE Port Configuration wizard. Follow the steps in the wizard to complete the necessary tasks. Note that when you come to the step in the wizard where you select tunnels (see Figure 2 on page 6), you must select tunnels that correspond to the VE_Ports or VEX_Ports that you configured earlier.
1 Configuring an FCIP interswitch/interfabric link FIGURE 2 GigE Port Configuration wizard Configuring the FCIP interfaces, routes, and tunnels The buttons and options you need to perform configuration tasks are available in Advanced Mode. 1. Click a port in the Switch View to open the Port Administration window. 2. Click the GigE Ports tab. 3. From the tree on the left, select the port you want to configure. 4. Click the General subtab. 5. Click the Edit Configuration button.
Managing the FCIP tunneling service 1 9. Enable the ports on both ends of the tunnel to use the link. Enabling Persistently Disabled Ports Ports on the Brocade 7500 and FR4-18i are, by default, persistently disabled. Before you can successfully configure FCIP interswitch links, you must enable the ports. VEX_Port Users: If the fabric is already connected, leave the ports disabled until after you have configured the VEX_Port; this will prevent unintentional merging of the two fabrics.
1 Managing the FCIP tunneling service FIGURE 3 IP Interfaces tab for GbE ports 5. Click Add. 6. Type the IP address, subnet mask, and MTU size for the new IP interface. 7. Click Add. Editing an IP interface 1. Click a port in the Switch View to open the Port Administration window. 2. Click the GigE Ports subtab. 3. From the tree on the left, select the port you want to modify. 4. Click the IP Interfaces subtab. 5. From the table, select the IP interface. 6. Click Edit.
Managing the FCIP tunneling service 1 4. Select the IP interface to delete in the table on the right side of the window. Use Shift-click and Ctrl-click to select multiple IP interfaces. 5. Click Delete. NOTE You cannot delete an IP interface associated with an active tunnel. 6. Click Yes in the confirmation window.
1 Managing the FCIP tunneling service ATTENTION If IPSec is enabled, you are allowed only one static route per GbE port. Editing an IP route 1. Click a port in the Switch View to open the Port Administration window. 2. Click the GigE Ports subtab. 3. From the tree on the left, select the port you want to modify. 4. Click the IP Routes subtab. 5. From the table, select the IP route you want to modify. 6. Click Edit. The Edit IP Route dialog box opens with the current configuration values.
Managing the FCIP tunneling service 1 ATTENTION Both ends of the tunnel must be identically configured. Compression, fastwrite, tape pipelining, or IKE/IPSec needs to be either enabled or disabled at both ends of the tunnel. In the case of a mismatch, the tunnel will not be established. See “Interfaces, Routes, and Tunnels” on page 4 for additional information on configuring the tunnels. Adding a new FCIP tunnel 1. Click a port in the Switch View to open the Port Administration window. 2.
1 Managing the FCIP tunneling service 4. Click the FCIP Tunnels subtab. 5. Select the tunnel to edit in the table on the right side of the window. 6. Click Edit Configuration. The GigE Port Configuration wizard opens with the current configuration values. 7. Follow the steps in the wizard. NOTE You can observe the tunnel state transition from Inactive to In Progress at the bottom of the FCIP Tunnels tab. Resize the column to view the full message. Deleting an FCIP tunnel 1.