Cisco Nexus 5000 Series Switch Fabric Manager Software Configuration Guide, NX-OS 4.0 (OL-16598-01, June 2008)

Send comments to nx5000-docfeedback@cisco.com
1-7
Nexus 5000 Series Switch Fabric Manager Software Configuration Guide
OL-16598-01
Chapter 1 Product Overview
Nexus 5000 Series Switch Software
Configuration Verification and Rollback
With the Nexus 5000 Series switch, you can verify the consistency of a configuration and the availability
of necessary hardware resources before committing the configuration. A device can be preconfigured,
and the verified configuration can be applied at a later time. Configurations also include checkpoints to
allow the switch operator to revert to a known good configuration as needed.
Role-Based Access Control
With role-based access control (RBAC), you can limit access to switch operations by assigning roles to
users. Administrators can customize access and restrict it to the users who require it.
Configuration Methods
You can configure Nexus 5000 Series switches using direct network configuration methods or web
services hosted on a Fabric Manager server.
This section includes the following topics:
Configuring with CLI, XML Management Interface, or SNMP, page 1-7
Configuring with Cisco MDS Fabric Manager, page 1-7
Configuring with CLI, XML Management Interface, or SNMP
You can configure Nexus 5000 Series switches using the command line interface (CLI), the XML
management interface over SSH, or SNMP as follows:
CLI —You can configure switches using the CLI from an SSH session, a Telnet session. or the
console port. SSH provides a secure connection to the device.
XML Management Interface over SSH—You can configure switches using the XML management
interface, which is a programming interface based on the NETCONF protocol that complements the
CLI functionality. For more information, see the Cisco NX-OS XML Management Interface User
Guide, Release 4.0.
SNMP—SNMP allows you to configure switches using Management Information Bases (MIBs).
Configuring with Cisco MDS Fabric Manager
You can configure Nexus 5000 Series switches using the Fabric Manager client, which runs on a local
PC and uses the Fabric Manager server.
Network Security Features
Cisco NX-OS Release 4.0 includes the following security features:
Authentication, authorization, and accounting (AAA) and TACACS+
IEEE 802.1x authentication and RADIUS
Secure Shell (SSH) Protocol Version 2
Simple Network Management Protocol Version 3 (SNMPv3)
Port security
DHCP snooping