Brocade Web Tools Administrator's Guide v6.2.0 (53-1001194-01, April 2009)

Web Tools Administrator’s Guide 225
53-1001194-01
Access control list policy configuration
17
Access control list policy configuration
Support for the Access Control List (ACL) policies is currently defined in the Switch Connection
Control (SCC) and Device Connection Control (DCC) policies. SCC and DCC policy configuration in
base Fabric OS is performed on a switch-local basis.
Fabric Configuration Server (FCS) Policy can be created only once. While creating the FCS policy,
the local switch WWN is automatically included in the list. In the FCS list, the switch in the first
position becomes the primary FCS switch. If the first switch in the FCS list is not reachable, the next
switch becomes the primary switch. You can also explicitly specify the primary FCS switch.
If there is no FCS policy, the defined and active list is blank.
FIGURE 111 Security Policies tab for SCC/DCC/FCS policy configuration
Virtual Fabrics considerations
ACL policies can be implemented at the logical switch/logical fabric level.
Admin Domain considerations
ACL management can be done on AD255 and in AD0 only if there are no other user-defined Admin
Domains. Both AD0 (when no other user-defined Admin Domains exist) and AD255 provide an
unfiltered view of the fabric.