Users Guide

file-integrity-status(Applicable only when you enable the secure boot feature) Displays
file integrity status.
Default None
Security and
Access
Sysadmin and secadmin
Command Mode EXEC
Usage
Information
None
Example 1
OS10# show secure-boot status
Last boot was via secure boot : yes
Secure boot configured : yes
Latest startup config protected: yes
BIOS secure boot:
BIOS Secure boot configured: yes
Example 2
OS10# show secure-boot file-integrity-status
File Integrity Status: OK
Example 3
OS10# show secure-boot file-integrity-status
File Integrity Status: Failed
Potential Security Issues:
Files modified:
/opt/dell/os10/bin/dn_l3_core_services
Files added:
/opt/dell/os10/bin/trojan1
/opt/dell/os10/bin/virus123
Supported
Releases
10.5.1.0 or later
secure-boot verify
Validates the kernel, system, and startup configuration binary files of both the OS10 installed images.
Syntax
secure-boot verify {kernel | file-system-integrity | startup-config}
Parameters
kernelValidate the kernel image.
file-system-integrityValidate the OS10 system binaries.
startup-configValidate the startup configuration file.
Default None
Security and
Access
Sysadmin
Command Mode EXEC
Usage
Information
None
Example 1 -
Kernel
verification
OS10# secure-boot verify kernel
Active Partition
Kernel signature verified:success
Standby Partition
Kernel signature verified:success
Example 2 - File
system
verification
OS10# secure-boot verify file-system-integrity
Active Partition
File-system integrity verified:success
1358 Security