Brocade Fabric OS Administrator's Guide - Supporting Fabric OS v7.0.1 (53-1002446-01, March 2012)

60 Fabric OS Administrator’s Guide
53-1002446-01
Configuring FLOGI-time handling of duplicate PWWN
3
4. Enter the auditCfg --show command to view the filter configuration and confirm that the
correct event classes are being audited, and the correct filter state appears (enabled or
disabled).
switch:admin> auditcfg --show
Audit filter is enabled.
2-SECURITY
4-FIRMWARE
5. Issue the auditDump -s command to confirm that the audit messages are being generated.
Example of the syslog (system message log) output for audit logging
Oct 10 08:52:06 10.3.220.7 raslogd: AUDIT, 2008/10/10-08:20:19 (GMT),
[SEC-3020], INFO, SECURITY, admin/admin/10.3.220.13/telnet/CLI,
ad_0/ras007/FID 128, , Event: login, Status: success, Info: Successful login
attempt via REMOTE, IP Addr: 10.3.220.13.
Oct 10 08:52:23 10.3.220.7 raslogd: 2008/10/10-08:20:36, [CONF-1001], 13, WWN
10:00:00:05:1e:34:02:0c | FID 128, INFO, ras007, configUpload completed
successfully. All config parameters are uploaded.
Oct 10 09:00:04 10.3.220.7 raslogd: AUDIT, 2008/10/10-08:28:16 (GMT),
[SEC-3021], INFO, SECURITY, admin/NONE/10.3.220.13/None/CLI, None/ras007/FID
128, , Event: login, Status: failed, Info: Failed login attempt via REMOTE, IP
Addr: 10.3.220.13.
Configuring FLOGI-time handling of duplicate PWWN
Fabric OS has two configurable options for handling duplicate PWWN conflicts occurring on the
same switch.
Existing login takes precedence over second login (default behavior).
Second login overrides existing login (optional behavior).
Table 8 shows details of the default behavior. Table 9 shows details of the optional behavior.
TABLE 8 Duplicate PWWN behavior: Existing login takes precedence over second login
Input port Duplicate found on
same F_Port
Duplicate found on different
F_Port
Duplicate found on same
NPIV port
Duplicate found on
different NPIV port
FLOGI
received
1 Implicit logout.
2 Send FLOGI ACC.
1Send FLOGI RJT.
2RASLog Duplicate
Found.
3 Persistently disable
input port.
N/A 1 Send FLOGI RJT.
2RASLog Duplicate
Found.
3 Persistently
disable input port.
FDISC
received
N/A 1 Send FDISC RJT.
2RASLog Duplicate
Found.
Send FDISC ACC with
previously assigned
PID.
1Send FDISC RJT.
2RASLog Duplicate
Found.