Dell PowerConnect Brocade M6505 Brocade 7.1.0 Fabric Watch Administrator's Gui - Page 60

Security monitoring guidelines and default settings, Security class areas

Page 60 highlights

6 Security monitoring guidelines and default settings Security monitoring guidelines and default settings The Security class monitors all attempts to breach your SAN security, helping you fine-tune your security measures. Security class areas Table 5 lists Product Name areas in the Security class and describes what each area indicates. Although it is recommended that you leave the entire Security class in its default state (no alerts), you can configure the Security class using the thConfig command. TABLE 5 Security class areas Area Description DCC violations (DV) An unauthorized device attempts to log in to a secure fabric. HTTP violations (HV) A browser access request reaches a secure switch from an unauthorized IP address. Illegal command (IV) Commands permitted only to the primary Fibre Channel Switch (FCS) are executed on another switch. Incompatible security DB (ISB) Secure switches with different version stamps have been detected. Login violations (LV) Login violations which occur when a secure fabric detects a login failure. Invalid Certifications (IC) No-FCS (NF) The switch has lost contact with the primary FCS. SCC violations (SV) SCC violations which occur when an unauthorized switch tries to join a secure fabric. The WWN of the unauthorized switch appears in the ERRLOG. SLAP failures (FSLAP) SLAP failures which occur when packets try to pass from a nonsecure switch to a secure fabric. Telnet violations (TV) Telnet violations which occur when a Telnet connection request reaches a secure switch from an unauthorized IP address. TS out of sync (TS) Time Server (TS) which occur when an out-of-synchronization error has been detected. 40 Fabric Watch Administrator's Guide 53-1002752-01

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126

40
Fabric Watch Administrator’s Guide
53-1002752-01
Security monitoring guidelines and default settings
6
Security monitoring guidelines and default settings
The Security class monitors all attempts to breach your SAN security, helping you fine-tune your
security measures.
Security class areas
Table 5
lists Product Name areas in the Security class and describes what each area indicates.
Although it is recommended that you leave the entire Security class in its default state (no alerts),
you can configure the Security class using the
thConfig
command.
TABLE 5
Security class areas
Area
Description
DCC violations (DV)
An unauthorized device attempts to log in to a secure fabric.
HTTP violations (HV)
A browser access request reaches a secure switch from an unauthorized IP address.
Illegal command (IV)
Commands permitted only to the primary Fibre Channel Switch (FCS) are executed on
another switch.
Incompatible security
DB (ISB)
Secure switches with different version stamps have been detected.
Login violations (LV)
Login violations which occur when a secure fabric detects a login failure.
Invalid Certifications (IC)
No-FCS (NF)
The switch has lost contact with the primary FCS.
SCC violations (SV)
SCC violations which occur when an unauthorized switch tries to join a secure fabric.
The WWN of the unauthorized switch appears in the ERRLOG.
SLAP failures (FSLAP)
SLAP failures which occur when packets try to pass from a nonsecure switch to a
secure fabric.
Telnet violations (TV)
Telnet violations which occur when a Telnet connection request reaches a secure
switch from an unauthorized IP address.
TS out of sync (TS)
Time Server (TS) which occur when an out-of-synchronization error has been detected.