Home Creating an iSCSI share with CHAP on TrueNAS
Post
Cancel

Creating an iSCSI share with CHAP on TrueNAS

I have already shown you how to create an iSCSI share without authentication. Here I will show you how to create an iSCSI portal with CHAP authentication. In TrueNAS, you can not add CHAP authentication on an existing portal unless you create a new “Authorized Access” group and change the other configurations. .

Note: The wizard does not not work well when using CHAP.

  1. Click on the “Authorized Access” tab and press “Add”
  2. Assign a “Group ID” number
  3. Supply a user name and password for CHAP then press Save
  4. Click on the “Portals” tab and press “Add”
  5. Select CHAP under Discovery Authentication Method.
  6. Select the Discovery Authentication group you just created.
  7. Select the correct IP address and port. 3260 is the default iSCSI port.
  8. Press Save
  9. Click on the “Initiators Group” tab and press “Add”
  10. Select “Allow All Initiators” and press Save
  11. Click on the “Targets” tab and press “Add”
  12. Supply a “Target Name”.
  13. Select the “Portal Group ID” you created
  14. Select “CHAP” for the Authentication Method
  15. Select the “Initiator Group ID” and “Authentication Group Number” and press Save
  16. Click on the “Extents” tab and press “Add”
  17. Supply an extent name
  18. Select “Device” for the “Extent Type” and select the Device (zVol)
  19. Press Save
  20. Click on the “Associated Target” tab and press “Add”
  21. Select the Target, assign a LUN number and select the Extent. Press Save.

One of the options for “Discovery Authentication Method” is Mutual CHAP. According to VMware, this allows for bi-directional CHAP, which TrueNAS does not support.

This post is licensed under CC BY 4.0 by the author.