Fabric OS Message Reference v6.4.0 (53-1001767-01, June 2010)

Table Of Contents
546 Fabric OS Message Reference
53-1001767-01
SEC-1199
90
Recommended
Action
Check to see if the host IP address specified in the message can be used to manage the fabric
through an API connection. If so, add the host IP address to the API policy of the fabric. If the host is
not allowed access to the fabric, this is a valid violation message and an unauthorized entity is
trying to access your fabric. Take appropriate action, as defined by your enterprise security policy.
Severity INFO
SEC-1199
Message <timestamp>, [SEC-1199], <sequence-number>,, INFO, <system-name>, Security
violation: Unauthorized access to serial port of switch
<switch instance>.
Probable Cause Indicates a serial connection policy security violation was reported. An attempt was made to access
the serial console on the specified switch instance when it is disabled.
Recommended
Action
Check to see if an authorized access attempt is being made on the console. If so, add the switch
world wide name (WWN) to the serial policy. If the host is not allowed access to the fabric, this is a
valid violation message and an unauthorized entity is trying to access your fabric. Take appropriate
action, as defined by your enterprise security policy.
Severity INFO
SEC-1200
Message <timestamp>, [SEC-1200], <sequence-number>,, INFO, <system-name>, Security
violation: MS command is forwarded from non-primary FCS switch.
Probable Cause Indicates a management server (MS) forward security violation was reported. A management
server command was forwarded from a non-primary fabric configuration server (FCS) switch.
Recommended
Action
Check the MS policy and verify that the connection is allowed. If the connection is allowed but not
specified, enable the connection in the MS policy. If the MS policy does not allow the connection,
this is a valid violation message and an unauthorized entity is trying to access your fabric. Take
appropriate action, as defined by your enterprise security policy.
Severity INFO
SEC-1201
Message <timestamp>, [SEC-1201], <sequence-number>,, INFO, <system-name>, Security
violation: MS device <device WWN> operates on non-primary FCS switch.
Probable Cause Indicates a management server (MS) operation security violation was reported. An MS device
operation occurred on a non-primary fabric configuration server (FCS) switch.
Recommended
Action
Check the management server policy and verify the connection is allowed. If the connection is
allowed but not specified, enable the connection in the MS policy. If the MS policy does not allow
the connection, this is a valid violation message and an unauthorized entity is trying to access your
fabric. Take appropriate action, as defined by your enterprise security policy.