Monday, November 16, 2009

CHAP for swiSCSI security

ESX can be configured to use CHAP for swiSCSI security. CHAP authenticates with a 3-way handshake at the time of the initial link, and may happen again any random time afterwards. The verification is based on a shared secret (essentially, the CHAP password). CHAP provides protection against playback attacks by incrementally changing the identifier and by using a variable challenge value.
More vQuotes

No comments:

Post a Comment