Brocade Secure Fabric OS Administrator's Guide - Supporting Fabric OS v3.2.0, v4.4.0, v5.0.1, v5.1.0, 5.2.0, and 5.3.0 (53-1000244-02, June 2007)

36 Secure Fabric OS Administrator’s Guide
53-1000244-02
3
If downloading a configuration to the switch:
- Download the configuration to the primary FCS switch. A configuration downloaded to a
backup FCS switch or non-FCS switch is overwritten by the next fabric-wide update from
the primary FCS switch.
- If the configdownload file contains an RSNMP policy, it must also contain a WSNMP policy.
- The defined policy set in the configdownload file must have the following characteristics:
The defined policy set must exist.
The FCS policy must be the first policy.
The FCS policy must have at least one switch in common with the current defined FCS
policy in the fabric.
- The active policy set in the configdownload file must have the following characteristics:
The active policy set must exist.
The FCS policy must be the first policy.
The FCS policy must be identical to the active FCS policy in the fabric
If any part of the configuration download process fails, resolve the source of the problem and
repeat the configDownload command. For information about troubleshooting the configuration
download process, see the Fabric OS Administrator’s Guide.
After configDownload, the policy database might require up to 8 minutes to download.
For information about displaying the existing Secure Fabric OS policies, see “Displaying Individual
Secure Fabric OS Policies” on page 61.
CAUTION
Enabling secure mode fastboots all Fabric OS v2.6.x switches in the fabric.
To enable secure mode in the fabric
1. Ensure that all switches in the fabric have the following:
- Fabric OS v2.6.2, v3.2.x, v4.4.x, v5.0.1, v5.1.0, or v5.2.0
- An activated Secure Fabric OS license
- An activated Advanced Zoning license
- Digital certificate
2. Ensure that any zoning configuration downloads have completed on all switches in the fabric.
For information specific to zoning, see the Advanced Zoning User’s Guide for Fabric OS v2.6.x
and v3.2.x, the Fabric OS Procedures Guide for Fabric OS v4.4.x, or the Fabric OS
Administrator’s Guide for Fabric OS v5.0.1, v5.1.0, or v5.2.0.
3. Open a sectelnet or SSH connection to the switch that will be the primary FCS switch.
The login prompt is displayed.
NOTE
Most Secure Fabric OS commands must be executed on the primary FCS switch. The
secModeEnable command must be entered from a sectelnet or SSH connection.
4. Log in to the switch.