HP StorageWorks 1606 Brocade Fabric Watch Administrator's Guide v6.3.0 (53-100 - Page 41

Security class areas, Areas

Page 41 highlights

Areas 3 Security class areas Table 8 lists Fabric Watch areas in the security class and describes what each area indicates. TABLE 8 Security class areas Area Indicates API Violations DCC Violations Front Panel Violations HTTP Violations Illegal Command Incompatible Security DB An API access request reaches a secure switch from an unauthorized IP address. An unauthorized device attempts to log in to a secure fabric. A secure switch detects unauthorized front panel access. A browser access request reaches a secure switch from an unauthorized IP address. Commands permitted only to the primary Fibre Channel Switch (FCS) are executed on another switch. Secure switches with different version stamps have been detected. Invalid Certificates Invalid certificates which represent an attempted security breach. Invalid Signatures Invalid signatures which occur when a switch cannot verify the signature of a packet. and rejects the packet. Invalid Timestamps Login Violations MS Violations No-FCS RSNMP Violations SCC Violations Invalid timestamps which occur if a time interval becomes too great from the time a packet is sent to the time it is received, and the switch rejects it. Login violations which occur when a secure fabric detects a login failure. MS (Management Server) violations which occur when an access request reaches a secure switch from an unauthorized WWN (World Wide Name). The WWN appears in the ERRLOG. The switch has lost contact with the primary FCS. RSNMP (Remote Simple Network Management Protocol) violations which occur when an SNMP get operation reaches a secure switch from an unauthorized IP address. SCC violations which occur when an unauthorized switch tries to join a secure fabric. The WWN of the unauthorized switch appears in the ERRLOG. Serial Violations Serial violations which occur when a secure switch detects an unauthorized serial port connection request. SES Violations SLAP Bad Packets SLAP Failures Telnet Violations TS Out of Sync WSNMP Violations SCSI Enclosed Services (SES) violations which occur when an SES request reaches a secure switch from an unauthorized WWN. Switch Link Authentication Protocol (SLAP) bad packets failure which occur when the switch receives unexpected packets and packets with incorrect transmission IDs. SLAP failures which occur when packets try to pass from a nonsecure switch to a secure fabric. Telnet violations which occur when a Telnet connection request reaches a secure switch from an unauthorized IP address. Time Server (TS) which occur when an out-of-synchronization error has been detected. WSNMP violations which occur when an SNMP set operation reaches a secure switch from an unauthorized IP address. Fabric Watch Administrator's Guide 17 53-1001342-01

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138

Fabric Watch Administrator’s Guide
17
53-1001342-01
Areas
3
Security class areas
Table 8
lists Fabric Watch areas in the security class and describes what each area indicates.
TABLE 8
Security class areas
Area
Indicates
API Violations
An API access request reaches a secure switch from an unauthorized IP address.
DCC Violations
An unauthorized device attempts to log in to a secure fabric.
Front Panel Violations
A secure switch detects unauthorized front panel access.
HTTP Violations
A browser access request reaches a secure switch from an unauthorized IP address.
Illegal Command
Commands permitted only to the primary Fibre Channel Switch (FCS) are executed on
another switch.
Incompatible Security
DB
Secure switches with different version stamps have been detected.
Invalid Certificates
Invalid certificates which represent an attempted security breach.
Invalid Signatures
Invalid signatures which occur when a switch cannot verify the signature of a packet.
and rejects the packet.
Invalid Timestamps
Invalid timestamps which occur if a time interval becomes too great from the time a
packet is sent to the time it is received, and the switch rejects it.
Login Violations
Login violations which occur when a secure fabric detects a login failure.
MS Violations
MS (Management Server) violations which occur when an access request reaches a
secure switch from an unauthorized WWN (World Wide Name). The WWN appears in
the ERRLOG.
No-FCS
The switch has lost contact with the primary FCS.
RSNMP Violations
RSNMP (Remote Simple Network Management Protocol) violations which occur when
an SNMP
get
operation reaches a secure switch from an unauthorized IP address.
SCC Violations
SCC violations which occur when an unauthorized switch tries to join a secure fabric.
The WWN of the unauthorized switch appears in the ERRLOG.
Serial Violations
Serial violations which occur when a secure switch detects an unauthorized serial port
connection request.
SES Violations
SCSI Enclosed Services (SES) violations which occur when an SES request reaches a
secure switch from an unauthorized WWN.
SLAP Bad Packets
Switch Link Authentication Protocol (SLAP) bad packets failure which occur when the
switch receives unexpected packets and packets with incorrect transmission IDs.
SLAP Failures
SLAP failures which occur when packets try to pass from a nonsecure switch to a
secure fabric.
Telnet Violations
Telnet violations which occur when a Telnet connection request reaches a secure
switch from an unauthorized IP address.
TS Out of Sync
Time Server (TS) which occur when an out-of-synchronization error has been detected.
WSNMP Violations
WSNMP violations which occur when an SNMP
set
operation reaches a secure switch
from an unauthorized IP address.