Brocade Secure Fabric OS Administrator's Guide - Supporting Fabric OS v3.2.0, v4.4.0, v5.0.1, v5.1.0, 5.2.0, and 5.3.0 (53-1000244-02, June 2007)

Secure Fabric OS Administrator’s Guide 1
53-1000244-02
Chapter
1
Introducing Secure Fabric OS
Brocade Secure Fabric OS is an optionally licensed product that provides customizable security
restrictions through local and remote management channels on a Brocade fabric. Secure Fabric OS
provides the ability to:
Create policies to customize fabric management access
Specify which switches and devices can join the fabric
View statistics related to attempted policy violations
Manage the fabric-wide Secure Fabric OS parameters through a single switch
Create temporary passwords specific to a login account and switch
Enable and disable Secure Fabric OS as desired
Secure Fabric OS uses digital certificates based on PKI or Diffie-Hellman with
Challenge-Handshake Authentication Protocol (DH-CHAP) shared secrets to provide
switch-to-switch authentication.
Table 1 lists which switches and fabrics support Secure Fabric OS.
In this chapter
Management Channel Security . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 2
Switch-to-Switch Authentication . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3
Fabric Configuration Server Switches . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4
Fabric Management Policy Set . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 5
TABLE 1 Secure Fabric OS-Supported Switches and Fabrics
Fabric OS Versions Supported Platforms
v2.6.2 SilkWorm 2000-series switches
v3.2.0 SilkWorm 3200 and 3800 switches
v4.4.0 SilkWorm 6400, Brocade 3016, 3250, 3850, 3900, and 4100 switches
SilkWorm 12000 and Brocade 24000 directors
v5.0.1 SilkWorm 6400, Brocade 3014, 3250, 3850, 3900, and 4100 switches
SilkWorm 12000, Brocade 24000 and 48000 directors
v5.1.0 SilkWorm 6400, Brocade 3014, 3250, 3850, 3900, 4100, 4900, and 7500
switches
Brocade 24000 and 48000 directors
v5.2.0 SilkWorm 6400, Brocade 3250, 3850, 3900, 4100, 4900, and 7500 switches
Brocade 24000 and 48000 directors
v5.3.0 Brocade 3250, 3850, 3900, 4100, 4900, and 7500 switches
Brocade 24000 and 48000 directors