Brocade Fabric OS FCIP Administrator's Guide v7.1.0 (53-1002748-01, March 2013)

Fabric OS FCIP Administrator’s Guide 45
53-1002748-01
Configuration steps
2
Remote FC WWN Short Option: -n
Long Option: --remote-wwn
Yes This is a fabric security feature that allows
you to only allow the FCIP tunnel to come
up when the correct remote WWN is
entered. If the WWN of the remote side
does not match the value entered here,
the FCIP tunnel will not initiate.
Enable IPSec Short Option: -i
Long Option: --ipsec
Operands (modify only): 0|1
Create behavior:
Operands are not
required. IPsec enabled
when specified on
create.
Modify behavior:
Requires operands.
Yes Disables (0) or enables (1) IPsec on this
FCIP tunnel. Refer to“IPsec
implementation over FCIP tunnels” on
page 30 for information about IPsec
policies.
Legacy IPsec connection Short Option: -l
Long Option: --legacy
Operands (modify only): 0|1
Create behavior:
Operands are not
required. Legacy IPsec
enabled when specified
on create.
Modify behavior:
Requires operands.
Yes Disables (0) or enables (1) legacy IPsec
mode. This mode uses the IPsec
connection process compatible with Fabric
OS versions prior to v7.0.0.
IKE V2 authentication
Key for IPsec
Short Option: -K
Long Option: --key
Operands (modify and
create): <key>
Yes The pre-shared key used during IKE
authentication. The key must be 32
characters.
FICON mode Short Option: -F
Long Option: --ficon
Operands (modify only): 0|1
Create behavior:
Operands are not
required. FICON mode
enabled when specified
on create.
Modify behavior:
Requires operands.
Yes Disables (0) or enables (1) FICON mode.
The -F option performs the following tasks:
Changes the default circuit keep alive
timeout value to 1 second when the
next circuit is created for this tunnel.
Allows you to enable the Advanced
FICON Acceleration (AFA) features on
the tunnel if the AFA license is applied
to the switch.
TABLE 7 Tunnel options (Continued)
Option Arguments Disruptive Description