メインコンテンツへスキップ

Certificate Authority(CA)署名証明書を使用してONTAPとService Processor(SP)またはBMCの間の通信を設定する方法

Views:
332
Visibility:
Public
Votes:
0
Category:
ontap-9
Specialty:
core
Last Updated:

環境

  • ONTAP 9.5+
  • SP/BMC
  • AFF-A700sプラットフォームではサポートされていません

概要

考慮事項
  • 全体的に見て、ベストプラクティスはONTAP推奨リリースと現在のService ProcessorまたはBMCファームウェアを使用することです。
  • できれば、Bug ID 1328457の修正を含むONTAPバージョンをインストールしてください。これにより、SP APIサービスが設定されたときにCA証明書チェーンの検証が実行されます。
  • このプロセスは、ONTAPクラスタ内のデータ提供に支障をきたしません。
  • SP APIサービスは、デフォルトでポート50000を使用します。  必要に応じて、別のポートを使用するように変更できます。
  • SP APIは、クラスタ内部での通信を提供します。 
    • このプロセスが完了した後にSP APIポートに証明書が照会された場合、クラスター内の各SP/BMCに対して同じ証明書が返されます。 

Sign in to view the entire content of this KB article.

New to NetApp?

Learn more about our award-winning Support

NetApp provides no representations or warranties regarding the accuracy or reliability or serviceability of any information or recommendations provided in this publication or with respect to any results that may be obtained by the use of the information or observance of any recommendations provided herein. The information in this document is distributed AS IS and the use of this information or the implementation of any recommendations or techniques herein is a customer's responsibility and depends on the customer's ability to evaluate and integrate them into the customer's operational environment. This document and the information contained herein may be used solely in connection with the NetApp products discussed in this document.