HP StorageWorks 2/16V Brocade Secure Fabric OS Administrator's Guide (53-10002 - Page 73

To create a DCC policy, secPolicyCreate DCC_POLICY, secPolicySave, secPolicyActivate

Page 73 highlights

3 To create a DCC policy 1. From a sectelnet or SSH session, log in to the primary FCS switch as admin. 2. Type secPolicyCreate "DCC_POLICY_nnn", "member;...;member". DCC_POLICY_nnn is the name of the DCC policy to be created; nnn is a string consisting of up to 19 alphanumeric or underscore characters to differentiate it from any other DCC policies. member contains device or switch port information: deviceportWWN;switch(port): • deviceportWWN is the WWN of the device port. • switch can be the switch WWN, domain ID, or switch name. The port can be specified by port or area number. Designating ports automatically includes the devices currently attached to those ports. The ports can be specified using any of the following syntax methods: (1-6)-Selects ports 1 through 6. (*)-Selects all ports on the switch. [*]-Selects all ports and all devices attached to those ports. [3, 9]-Selects ports 3 and 9 and all devices attached to those ports. [1-3, 9]-Selects ports 1, 2, 3, 9, and all devices attached to those ports. Note Fabric OS v5.1.x and earlier switches have a 256 ports limit per DCC policy. Fabric OS v5.2.0 limit is 384 ports. DCC policies used in fabrics that contain v5.1.0 or earlier switches may only have 256 ports (or less). 3. To save or activate the new policy, enter either the secPolicySave or the secPolicyActivate command. If neither of these commands is entered, the changes are lost when the session is logged out. For more information about these commands, see "Saving Changes to Secure Fabric OS Policies" on page 3-26 and "Activating Changes to Secure Fabric OS Policies" on page 3-27. For example, to create a DCC policy "DCC_POLICY_server" that includes device 11:22:33:44:55:66:77:aa and port 1 and port 3 of switch domain 1: primaryfcs:admin> secpolicycreate "DCC_POLICY_server", "11:22:33:44:55:66:77:aa;1(1,3)" DCC_POLICY_xxx has been created To create a DCC policy "DCC_POLICY_storage" that includes device port WWN 22:33:44:55:66:77:11:bb, all ports of switch domain 2, and all currently connected devices of switch domain 2: primaryfcs:admin> secpolicycreate "DCC_POLICY_storage", "22:33:44:55:66:77:11:bb;2[*]" DCC_POLICY_xxx has been created To create a DCC policy "DCC_POLICY_abc" that includes device 33:44:55:66:77:11:22:cc and ports 1 through 6 and port 9 of switch domain 3: primaryfcs:admin> secpolicycreate "DCC_POLICY_abc", "33:44:55:66:77:11:22:cc;3(1-6,9)" DCC_POLICY_xxx has been created Secure Fabric OS Administrator's Guide Publication Number: 53-1000244-01 3-23

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118

Secure Fabric OS Administrator’s Guide
3-23
Publication Number: 53-1000244-01
3
To create a DCC policy
1.
From a sectelnet or SSH session, log in to the
primary FCS switch as admin.
2.
Type
secPolicyCreate “DCC_POLICY_
nnn
”, “
member
;
...
;
member
.
DCC_POLICY_nnn
is the name of the DCC policy to be created;
nnn
is a string consisting of up to
19 alphanumeric or underscore characters to differentiate it from any other DCC policies.
member
contains device or switch port information:
deviceportWWN
;
switch(port)
:
deviceportWWN
is the WWN of the device port.
switch
can be the switch WWN, domain ID, or switch name. The port can be specified by port
or area number. Designating ports automatically includes the devices currently attached to
those ports. The ports can be specified using any of the following syntax methods:
(1-6)—Selects ports 1 through 6.
(*)—Selects all ports on the switch.
[*]—Selects all ports and all devices attached to those ports.
[3, 9]—Selects ports 3 and 9 and all devices attached to those ports.
[1-3, 9]—Selects ports 1, 2, 3, 9, and all devices attached to those ports.
3.
To save or activate the new policy, enter either the
secPolicySave
or the
secPolicyActivate
command.
If neither of these commands is entered, the changes are lost when the session is logged out. For
more information about these commands, see
“Saving Changes to Secure Fabric OS Policies”
on
page 3-26 and
“Activating Changes to Secure Fabric OS Policies”
on page 3-27.
For example, to create a DCC policy “DCC_POLICY_server” that includes device
11:22:33:44:55:66:77:aa and port 1 and port 3 of switch domain 1:
To create a DCC policy “DCC_POLICY_storage” that includes device port WWN
22:33:44:55:66:77:11:bb, all ports of switch domain 2, and all currently connected devices of
switch domain 2:
To create a DCC policy “DCC_POLICY_abc” that includes device 33:44:55:66:77:11:22:cc and
ports 1 through 6 and port 9 of switch domain 3:
Note
Fabric OS v5.1.x and earlier switches have a 256 ports limit per DCC policy. Fabric OS
v5.2.0 limit is 384 ports. DCC policies used in fabrics that contain v5.1.0 or earlier
switches may only have 256 ports (or less).
primaryfcs:admin>
secpolicycreate “DCC_POLICY_server”,
“11:22:33:44:55:66:77:aa;1(1,3)”
DCC_POLICY_
xxx
has been created
primaryfcs:admin>
secpolicycreate “DCC_POLICY_storage”,
“22:33:44:55:66:77:11:bb;2[*]”
DCC_POLICY_
xxx
has been created
primaryfcs:admin> secpolicycreate “DCC_POLICY_abc”,
“33:44:55:66:77:11:22:cc;3(1-6,9)”
DCC_POLICY_
xxx
has been created