How secure is the HBA API? Can a rogue program disrupt my SAN through the HBA API?
There are no calls in the current HBA API which are able to read or write data from storage, or otherwise affect SAN operation. All current SCSI calls in the HBA API are informational (read-only) calls. However, the CT passthrough command does allow read and write of information from a switch, if allowed.