Fabric OS Message Reference v6.4.0 (53-1001767-01, June 2010)

Table Of Contents
Fabric OS Message Reference 681
53-1001767-01
AUTH-3005
114
Probable Cause The specified E_Port was disabled because the neighboring switch rejected the authentication
negotiation, and the local switch has a strict switch authentication policy.
Recommended
Action
Correct the switch policy configuration on either of the switches using the authUtil command, and
then enable the specified port using the portEnable command.
Severity INFO
AUTH-3005
Message AUDIT, <timestamp>, [AUTH-3005], INFO, SECURITY, <event-initiator-details>,
<event-location>, , Event: <Event Name>, Status: failed, Info: Rejecting
authentication request on port <Port Number> because switch policy is turned off.
Probable Cause Indicates that the local switch has rejected the authentication request, because the switch policy is
turned off. If the neighboring switch has a strict (ON) switch policy, the light will go off due to
conflicting configuration settings. Otherwise the E_Port will form without authentication.
Recommended
Action
If the light on the specified port is off, correct the switch policy configuration on either of the
switches using the authUtil command, and then enable the port on the neighboring switch using
the portEnable command. If the E_Port formed no action is required.
Severity INFO
AUTH-3006
Message AUDIT, <timestamp>, [AUTH-3006], INFO, SECURITY, <event-initiator-details>,
<event-location>, , Event: <Event Name>, Status: failed, Info: Authentication
failed on port <port number> due to mismatch of DH-CHAP shared secrets.
Probable Cause Indicates that an authentication operation using a Diffie Hellman - challenge-handshake
authentication protocol (DH-CHAP) failed on the specified port due to mismatched response values
between two entities.
The error might indicate that an invalid entity attempted to connect to the switch.
Recommended
Action
Check the connection port for a possible security attack.
Check the shared secrets using the secAuthSecret command and reinitialize authentication using
the portDisable and portEnable commands.
If the message persists, run the supportFtp command (as needed) to set up automatic FTP
transfers; then run the supportSave command and contact your switch service provider.
Severity INFO
AUTH-3007
Message AUDIT, <timestamp>, [AUTH-3007], INFO, SECURITY, <event-initiator-details>,
<event-location>, , Event: <Event Name>, Status: failed, Info: Port <port number>
disabled due to receiving an authentication reject with code '<Reason String>' and
explanation '<Explanation String>'.