Brocade Fabric OS Message Reference guide v6.2.0 (53-1001157-01, April 2009)

566 Fabric OS Message Reference
53-1001157-01
SEC-3004
98
Recommended
Action
Verify the new policy creation was planned. If the new policy creation was planned, no action is
required. If the new policy creation was not planned, take appropriate action as defined by your
enterprise security policy.
Severity INFO
SEC-3004
Message AUDIT, <timestamp>, [SEC-3004], INFO, SECURITY, <event-initiator-details>,
<event-location>, , Event: <Event Name>, Status: success, Info: Created <Policy
name> policy.
Probable Cause Indicates a new security policy was created.
Note: If you use a wildcard (for example, an asterisk) in creating a member for a policy, the audit
message displays the wildcard in the event info field.
Recommended
Action
Verify the new policy creation was planned. If the new policy creation was planned, no action is
required. If the new policy creation was not planned, take appropriate action as defined by your
enterprise security policy.
Severity INFO
SEC-3005
Message AUDIT, <timestamp>, [SEC-3005], INFO, SECURITY, <event-initiator-details>,
<event-location>, , Event: <Event Name>, Status: success, Info: Added members
<Members added> to policy <Policy name>.
Probable Cause Indicates new members have been added to the specified security policy.
Note: If you use a wildcard (for example, an asterisk) in adding members to a policy, the audit
report displays the wildcard in the event info field.
Recommended
Action
Verify the addition of members to the policy was planned. If the addition of members was planned,
no action is required. If the addition of members was not planned, take appropriate action as
defined by your enterprise security policy.
Severity INFO
SEC-3006
Message AUDIT, <timestamp>, [SEC-3006], INFO, SECURITY, <event-initiator-details>,
<event-location>, , Event: <Event Name>, Status: success, Info: Removed members
<Members removed> from policy <Policy name>.
Probable Cause Indicates a user has removed the specific members from the specified security policy.
Note: If you use a wildcard (for example, an asterisk) in removing members from a policy, the audit
report displays the wildcard in the event info field.