HP 4400 HP B-series Fabric OS 7.0.0a Release Notes (5697-0881, June 2011) - Page 12

Security Enhancements, Fabric Services Enhancements and Updates

Page 12 highlights

E_Port TopTalkers support and E_Port End to End monitors support on 16 Gbps platforms In Fabric OS 7.0.0a, the Port level TopTalkers are supported on E_Ports of 16 Gbps platforms. The functionality provided by the Port level TopTalkers on E_Ports is the same as the one provided by the Port level TopTalkers on F_Ports. Security Enhancements User defined roles/RBAC The user-defined role is a feature in Fabric OS 7.0.0a that provides the ability to create user roles dynamically to manage the switch. This is in contrast to pre-defined user roles supported in pre-Fabric OS 7.0.0a releases. The maximum number of user-defined roles that are allowed on a chassis is 256. Switch banner support A new command, motd, is added to configure whether a chassis banner should be displayed before user login. Removing support for Brocade certificates for FCAP authentication Starting with Fabric OS 7.0.0a, Fabric OS does not support installation/FCAP-authentication using Brocade issued certificates. However, third-party certificates can still be used for FCAP authentication. SSH authentication using public keys Fabric OS 7.0.0a supports SSH public key based authentication for multiple users. SFTP support for firmwaredownload, configupload and configdownload Users now have the flexibility of choosing SFTP protocol for performing firmwaredownload, configupload, and configdownload operations. IPv6 support for LDAP authentication Fabric OS 7.0.0a includes IPv6 support for LDAP authentication. Fabric OS now accepts IPv6 addresses for Active Directory servers. Fabric Services Enhancements and Updates Allow a switch with default zone "no access" to merge with a fabric Fabric OS 7.0.0a allows a switch with default zone "no access" and with no zoning configuration to merge with a fabric that has active zone configuration. 12

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54

E_Port TopTalkers support and E_Port End to End monitors support on 16 Gbps platforms
In Fabric OS 7.0.0a, the Port level TopTalkers are supported on E_Ports of 16 Gbps platforms. The
functionality provided by the Port level TopTalkers on E_Ports is the same as the one provided by the
Port level TopTalkers on F_Ports.
Security Enhancements
User defined roles/RBAC
The user-defined role is a feature in Fabric OS 7.0.0a that provides the ability to create user roles
dynamically to manage the switch. This is in contrast to pre-defined user roles supported in pre-Fabric
OS 7.0.0a releases. The maximum number of user-defined roles that are allowed on a chassis is 256.
Switch banner support
A new command,
motd
, is added to configure whether a chassis banner should be displayed before
user login.
Removing support for Brocade certificates for FCAP authentication
Starting with Fabric OS 7.0.0a, Fabric OS does not support installation/FCAP-authentication using
Brocade issued certificates. However, third-party certificates can still be used for FCAP authentication.
SSH authentication using public keys
Fabric OS 7.0.0a supports SSH public key based authentication for multiple users.
SFTP support for
firmwaredownload
,
configupload
and
configdownload
Users now have the flexibility of choosing SFTP protocol for performing
firmwaredownload
,
configupload
, and
configdownload
operations.
IPv6 support for LDAP authentication
Fabric OS 7.0.0a includes IPv6 support for LDAP authentication. Fabric OS now accepts IPv6 addresses
for Active Directory servers.
Fabric Services Enhancements and Updates
Allow a switch with default zone
no access
to merge with a fabric
Fabric OS 7.0.0a allows a switch with default zone
no access
and with no zoning configuration
to merge with a fabric that has active zone configuration.
12