Tuesday, March 29, 2011

CHAP for iSCSI security

ESX can be configured to use CHAP for iSCSI security. CHAP authenticates with a 3-way handshake at the time of the initial link, and may happen again any random time afterwards. The verification is based on a shared secret (essentially, the CHAP password). CHAP provides protection against playback attacks by incrementally changing the identifier and by using a variable challenge value.
More vQuotes

No comments:

Post a Comment