HP StorageWorks 16-EL diagnostic and system error messages version 3.1.x refer - Page 86

SEC-SECDBFAIL, Message, Explanation, Recommended Action, Severity

Page 86 highlights

System Error Messages SEC-SECDBFAIL Message Warning SEC-SECDBFAIL, 3, Security data fails: %s Explanation This message occurs when the receiving switch fails to validate the security database sent from the primary Fibre Channel switch. Probable causes for this error can be that the data package is corrupted, the time stamp on the package is out of range as a result of replay attack or out of sync time service, or the signature verification failed. Signature verification failure can be caused by an internal error, such as losing the primary public key, or it may be caused by an invalid database. Recommended Action Issue the secfabricshow command to verify that the fabric is still consistent. All the switches should be in the Ready state. If a switch is in the Error state, the database may not be correctly updated for that specific switch. Follow the standard recovery process. The error may also be a result of an internal corruption or a hacker attack to the secure fabric. Severity Warning SEC-SECDLFAIL Message Warning SEC-SECDLFAIL, 3, Fail to download security data to domain after retries Explanation The specified domain number failed to download security data after the specified number of attempts. The primary will segment the failure switch after 30 tries. The failure switch may have had some internal error and failed to accept the database download. 86 Diagnostic and System Error Messages Version 3.1.x Reference Guide

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142

System Error Messages
86
Diagnostic and System Error Messages Version 3.1.x Reference Guide
Message
Explanation
This message occurs when the receiving switch fails to validate the security
database sent from the primary Fibre Channel switch. Probable causes for this
error can be that the data package is corrupted, the time stamp on the package is
out of range as a result of replay attack or out of sync time service, or the signature
verification failed. Signature verification failure can be caused by an internal error,
such as losing the primary public key, or it may be caused by an invalid database.
Recommended Action
Issue the
secfabricshow
command to verify that the fabric is still consistent.
All the switches should be in the Ready state. If a switch is in the Error state, the
database may not be correctly updated for that specific switch. Follow the
standard recovery process. The error may also be a result of an internal corruption
or a hacker attack to the secure fabric.
Severity
Warning
Message
Explanation
The specified domain number failed to download security data after the specified
number of attempts. The primary will segment the failure switch after 30 tries.
The failure switch may have had some internal error and failed to accept the
database download.
SEC-SECDBFAIL
<
switch number
> Warning SEC-SECDBFAIL, 3, Security data fails: %s
SEC-SECDLFAIL
<
switch number
> Warning SEC-SECDLFAIL, 3, Fail to download security data to
domain <
domain number
> after <
number of retries
> retries