HP StorageWorks 2/16V Brocade Secure Fabric OS Administrator's Guide (53-10002 - Page 23

Preparing the Fabric for Secure Fabric OS, Prerequisites for a Secure Fabric Environment

Page 23 highlights

Preparing the Fabric for Secure Fabric OS Chapter 2 Secure Fabric OS is supported by Fabric OS v2.6.2, v3.1.0, v4.1.0 and later; it can be added to fabrics that contain any combination of these versions. This manual applies to v5.2.0 only, it is based on the assumption that a compatible version of Fabric OS is running on all switches in the fabric before adding Secure Fabric OS. Note Adding Secure Fabric OS to the fabric might require access to the Web site of the switch support supplier. If the supplier is Brocade, navigate to http://partner.brocade.com (if a partner login is not already assigned, follow the instructions to receive a username and password). This chapter includes the following sections: • "Prerequisites for a Secure Fabric Environment," next • "Verifying Compatible Fabric OS Version" on page 2-2 • "Verifying or Activating Secure Fabric OS and Advanced Zoning Licenses" on page 2-3 • "Verifying the Digital Certificate" on page 2-4 • "Configuring Switch-to-Switch Authentication" on page 2-22 • "Preparing SilkWorm 24000 for Secure Fabric OS" on page 2-26 • "Installing a Supported CLI Client on a Workstation" on page 2-28 Prerequisites for a Secure Fabric Environment To implement Secure Fabric OS in a fabric, each switch in the fabric must have the following: • A compatible version of Fabric OS. See "Verifying Compatible Fabric OS Version" on page 2-2 for a list of compatible versions and instructions on identifying the current Fabric OS version. • An activated Secure Fabric OS license and Brocade Advanced Zoning license. See "Verifying or Activating Secure Fabric OS and Advanced Zoning Licenses" on page 2-3 for detailed instructions. • The required PKI objects and a digital certificate. See "Verifying the Digital Certificate" on page 2-4 for detailed instructions. • Switch-to-switch authentication configured; note when using DH-CHAP, you must set up all shared secrets before enabling secure mode. See "Configuring Switch-to-Switch Authentication" on page 2-22 for switch authentication protocol set up instructions. • Backup Fabric OS policies that are not compatible with Secure FOS; Fabric OS v5.1.0 and later password policies and v5.2.0 local SCC and DCC ACL polices are not supported. Secure Fabric OS Administrator's Guide 2-1 Publication Number: 53-1000244-01

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118

Secure Fabric OS Administrator’s Guide
2-1
Publication Number: 53-1000244-01
Chapter
2
Preparing the Fabric for Secure Fabric OS
Secure Fabric OS is supported by Fabric OS v2.6.2, v3.1.0, v4.1.0 and later; it can be added to fabrics
that contain any combination of these versions. This manual applies to v5.2.0 only, it is based on the
assumption that a compatible version of Fabric OS is running on all switches in the fabric before adding
Secure Fabric OS.
This chapter includes the following sections:
“Prerequisites for a Secure Fabric Environment,”
next
“Verifying Compatible Fabric OS Version”
on page 2-2
“Verifying or Activating Secure Fabric OS and Advanced Zoning Licenses”
on page 2-3
“Verifying the Digital Certificate”
on page 2-4
“Configuring Switch-to-Switch Authentication”
on page 2-22
“Preparing SilkWorm 24000 for Secure Fabric OS”
on page 2-26
“Installing a Supported CLI Client on a Workstation”
on page 2-28
Prerequisites for a Secure Fabric Environment
To implement Secure Fabric OS in a fabric, each switch in the fabric must have the following:
A
compatible version of Fabric OS
. See
“Verifying Compatible Fabric OS Version”
on page 2-2
for a list of compatible versions and instructions on identifying the current Fabric OS version.
An
activated Secure Fabric OS license
and
Brocade Advanced Zoning license
. See
“Verifying
or Activating Secure Fabric OS and Advanced Zoning Licenses”
on page 2-3 for detailed
instructions.
The required
PKI objects
and a
digital certificate
. See
“Verifying the Digital Certificate”
on
page 2-4 for detailed instructions.
Switch-to-switch authentication
configured; note when using DH-CHAP, you must set up all
shared secrets before enabling secure mode. See
“Configuring Switch-to-Switch Authentication”
on page 2-22 for switch authentication protocol set up instructions.
Backup Fabric OS policies
that are not compatible with Secure FOS; Fabric OS v5.1.0 and later
password policies and v5.2.0 local SCC and DCC ACL polices are not supported.
Note
Adding Secure Fabric OS to the fabric might require access to the Web site of the switch support
supplier. If the supplier is Brocade, navigate to
(if a partner login is not
already assigned, follow the instructions to receive a username and password).