Reference Guide

986 Brocade Fabric OS Command Reference
53-1004112-02
secPolicyRemove
secPolicyRemove
Removes members from an existing security policy.
Synopsis secpolicyremove "name" ,"member[;member...]"
Description Use this command to remove one or more members from an existing security policy. It is not possible to remove
all members from the FCS_POLICY; the local switch WWN cannot be deleted from the FCS policy. In the case of
SCC policy, if it is empty after removing all members, all access to the switch itself would be disallowed.
Beginning Fabric OS v7.3, this command will not remove the local WWN from SCC policy list in HIF and non-HIF
mode. The command also prompts for confirmation before removing any member if HIF is enabled.
Notes If an FCS policy is enabled, this command must be issued from the primary FCS switch.
After removing members from an existing security policy, execute the secPolicyActivate command to activate the
current defined policy.
The execution of this command is subject to Virtual Fabric restrictions that may be in place. Refer to "Using Fabric
OS Commands" and "Command Availability" for details.
Operands This command has the following operands:
"name"
Specify the name of an existing policy you want to remove members from. This operand is
required. Valid values for this operand include the following:
DCC_POLICY_nnn
FCS_POLICY
SCC_POLICY
The specified policy name must be capitalized.
The DCC_POLICY policy name has the common prefix DCC_POLICY_ followed by a
string of user-defined characters. These characters do not have to be capitalized like regular
policy names, but are case-sensitive.
"member"
Specify a member or list of members to delete from the policy. The list must be enclosed in
quotation marks; members must be separated by semicolons. This operand is required.
Depending on the policy type, members can be specified using IP address, WWN, domain,
or switch name.
WWN Member Policy Types
The following policy types require members be specified by WWN address:
FCS_POLICY
SCC_POLICY
These policy types require member IDs be specified as WWN strings, domains, or switch
names. If domain or switch names are used, the switches associated must be present in the
fabric or the command fails.