Brocade Secure Fabric OS Administrator's Guide (53-1000244-01, November 2006)

Secure Fabric OS Administrator’s Guide A-1
Publication Number: 53-1000244-01
Appendix
A
Removing Secure Fabric OS Capability
You cannot remove Secure Fabric OS capability from a fabric by disabling secure mode and
deactivating the Secure Fabric OS license keys on the individual switches. Removing Secure Fabric OS
capability is not recommended unless absolutely required. If at all possible, consider disabling only
secure mode and leaving the Secure Fabric OS feature available so that secure mode can be reenabled if
desired.
One possible reason for disabling secure mode or removing Fabric OS capability includes the addition
of new switches to the fabric that do not support Secure Fabric OS.
Disabling secure mode includes the following tasks:
“Preparing the Fabric for Removal of Secure Fabric OS Policies,” next
“Disabling Secure Mode” on page A-2
In addition, undertake the following tasks if desired:
“Deactivating the Secure Fabric OS License on Each Switch” on page A-3
“Uninstalling Related Items from the Host” on page A-3
Preparing the Fabric for Removal of
Secure Fabric OS Policies
The following tasks are recommended to prepare the fabric before disabling secure mode:
Review the current Secure Fabric OS policies and the devices and users affected by each policy.
The current policy set can be displayed by entering the secPolicyDump command.
Review the types of attempted policy violations that have been occurring. The current Secure
Fabric OS statistics can be displayed by entering the secStatsShow command.
Evaluate the zoning configuration and other aspects of the fabric for any changes that could be
implemented to decrease the chance of security violations when Secure Fabric OS is disabled.
Educate users to minimize security risks and the impact of any security violations.
N
ote
This section provides general recommendations only. For best-practice information, refer to the
SOLUTIONware and other documentation provided on the Brocade Partner Web site.