Brocade Secure Fabric OS Administrator's Guide - Supporting Fabric OS v3.2.0, v4.4.0, v5.0.1, v5.1.0, 5.2.0, and 5.3.0 (53-1000244-02, June 2007)

Secure Fabric OS Administrator’s Guide 39
53-1000244-02
3
Changing password for admin
New Non FCS switch admin password:
Re-type new password:
Enabling secure mode, this may take several minutes, please wait...
Broadcast message from root Mon Nov 7 19:22:58 2005...
Security Policy, Password or Account Attribute Change: root factory admin user
will be logged out
Connection to 10.32.157.26 closed.
All passwords are saved. The command distributes the new FCS policy and passwords to all
switches in the fabric, activates the local zoning configurations, and fastboots all Fabric OS
v2.6.2 switches in the fabric
NOTE
Record the passwords and store them in a secure place. Recovering passwords might require
significant effort and result in fabric downtime.
Modifying the FCS Policy
Only one FCS policy can exist, and it cannot be empty or deleted if secure mode is enabled. The
FCS policy is named FCS_POLICY.
Changes made to the FCS policy are saved to permanent memory only after the changes have been
saved or activated; they can be aborted later if desired (see “Managing Secure Fabric OS Policies”
on page 55).
The FCS policy can be modified through any of the following methods:
Using the secPolicyFCSMove command to change the position of a switch in the list, as
described in “Changing the Position of a Switch Within the FCS Policy” on page 40
Using the secFCSFailover command to fail over the primary FCS switch role to the backup FCS
switch from which the command is entered, as described in “Failing Over the Primary FCS
Switch” on page 41
Using the secPolicyAdd command to add members, as described in Adding a Member to an
Existing Policy” on page 56
Using the secPolicyRemove command to remove members, as described in “Removing a
Member from a Policy” on page 57
NOTE
If the last FCS switch is removed from the fabric, secure mode remains enabled but no primary FCS
switch is available. To specify a new primary FCS switch, enter the secModeEnable command again
and specify the primary and backup FCS switches. This is the only instance in which the
secModeEnable command can be entered when secure mode is already enabled.