bertieuk
IS-IT--Management
- Jun 1, 2004
- 175
Hi
We used an equallogic iSCSI SAN. I have setup Microsoft iSNS for target registration/discovery.
We use the MS iSCSI initiator. This seems to have two methods of target discovery. The first is "target portals" and the second iSNS.
iSNS is working. The problem I have.....I want to completely restrict what clients can see what targets. iSNS has this ability by using Discovery Domains/Discovery Domain Sets but a customer server could simply add the SAN portal address and now see all created volumes.
We do use authentication on all volumes but we dont want browsing and attach attempts to unauthorised volumes.
Is there a way to control this using the MS Initiator? Can discovery using target portals be disabled?.
Thanks
Si
We used an equallogic iSCSI SAN. I have setup Microsoft iSNS for target registration/discovery.
We use the MS iSCSI initiator. This seems to have two methods of target discovery. The first is "target portals" and the second iSNS.
iSNS is working. The problem I have.....I want to completely restrict what clients can see what targets. iSNS has this ability by using Discovery Domains/Discovery Domain Sets but a customer server could simply add the SAN portal address and now see all created volumes.
We do use authentication on all volumes but we dont want browsing and attach attempts to unauthorised volumes.
Is there a way to control this using the MS Initiator? Can discovery using target portals be disabled?.
Thanks
Si