Data Center Fabric Manager Professional Plus User Manual - Supporting DCFM 10.3.x (53-1001356-01, October 2009)

192 DCFM Professional Plus User Manual
53-1001356-01
Adding thresholds
5
Security threshold
Use this type of threshold to block a port when one of the following security violations occur:
Authentication–the switch has repeatedly become unavailable due to authentication events.
Fabric Binding–the switch has repeatedly become unavailable due to fabric binding events.
Switch Binding–the switch has repeatedly become unavailable due to switch binding events.
Switch Binding is enabled through a product’s Element Manager.
Port Binding–the switch has repeatedly become unavailable due to port binding events.
ISL Security–(Generic Security Error) the switch on the other side of the ISL has detected a
specific security violation, but is only able to indicate that a generic security violation has
occurred or a security configuration mismatch was detected.
N_port Connection Not Allowed–the switch has repeatedly become unavailable due to N_port
connection not allowed events.
Adding thresholds
The Management application allows you to create Invalid CRCs, Invalid words, Link, Link Reset,
Protocol Error, Security, and Sync Loss thresholds.
Adding a C3 Discard Frames threshold
NOTE
This threshold is only available for Fabric OS devices.
To add an C3 Discard Frames threshold, complete the following steps.
1. Select Configure > Port Fencing.
The Port Fencing dialog box displays.
2. Select C3 Discard Frames (FOS only) from the Violation Type list.
3. Click Add.
The Add C3 Discard Frames Threshold dialog box displays.
4. Enter a name for the threshold in the Name field.
5. Select one of the following options:
Default—Uses device defaults. Go to step 8.
Custom—Uses your selections. Continue with step 6.
6. Enter the number of C3 discarded frames allowed for the threshold in the Threshold errors
field.
7. Select the time period for the threshold from the errors per list. The following choices are
available:
None—the port is blocked as soon as the specified number of C3 discarded frames
allowed is met.
Second—the port is blocked as soon as the specified number of C3 discarded frames
allowed is reached within a second.