beautypg.com

Supported management applications, Snmp server, Snmp trap generator – Brocade FastIron Ethernet Switch Layer 3 Routing Configuration Guide User Manual

Page 646: Ssh server, Telnet client

background image

Supported management applications

This section explains the management VRF support provided by the management applications.

SNMP server

When the management VRF is configured, the SNMP server receives SNMP requests and sends
SNMP responses only through the ports belonging to the management VRF and through the out-of-
band management port.

Any change in the management VRF configuration becomes immediately effective for the SNMP
server.

SNMP trap generator

When the management VRF is configured, the SNMP trap generator sends traps to trap hosts through
the ports belonging to the management VRF and through the out-of-band management port.

Any change in the management VRF configuration becomes immediately effective for the SNMP trap
generator.

NOTE
The SNMP source interface configuration command snmp-server trap-source must be compatible
with the management VRF configuration.

SSH server

When the management VRF is configured, the incoming SSH connection requests are allowed only
from the ports belonging to the management VRF and from the out-of-band management port.
Management VRF enforcement is only done during the establishment of a connection. Once the
connection is established, no further management VRF enforcement is done.

To allow the incoming SSH connection requests only from the management VRF and not from the out-
of-band management port, enter the following command.

device(config)# ip ssh strict-management-vrf

The previous command is applicable only when the management VRF is configured. If not, the
command issues the following warning message.

Warning - Management-vrf is not configured.

For the SSH server, changes in the management VRF configuration or configuring the ip ssh strict-
management-vrf
command will not affect the existing SSH connections and the changes will be
applied only to the new incoming connection requests.

Telnet client

When the VRF name is specified in the telnet vrf command, the Telnet client initiates Telnet requests
only from the ports belonging to the specified VRF.

Supported management applications

646

FastIron Ethernet Switch Layer 3 Routing Configuration Guide

53-1003087-04