To correct one detail:
Also, the FilerView web admin program will allow password-less access from any machine(s) listed in the "telnet.hosts" option. This poses the same security concern if the machine(s) in "telnet.hosts" are compromised.
The "telnet.hosts" option is only an "access" control. You still have to be authenticated after passing this access control. In ONTAP 6.0, FilerView uses HTTP basic authentication for everything (prior to ONTAP 6.0 it also used some rsh).
...Tim Thompson...Network Appliance, Inc...tjt@netapp.com...