Enabling the usb device, Viewing the usb file system, Fips support – Brocade Fabric OS Upgrade Guide (Supporting Fabric OS v7.3.0) User Manual
Page 24: Public and private key management
Enabling the USB device
1.
Log in to the switch using an account assigned to the admin role.
2.
Enter the usbStorage -e command.
Viewing the USB file system
1.
Log in to the switch using an account assigned to the admin role.
2.
Enter the usbStorage -l command.
BrcdDCXBB:admin> usbstorage -l
firmware\ 381MB 2013 Jul 22 15:33
v7.3.0\ 381MB 2013 Jul 22 10:39
config\ 0B 2013 Jul 22 15:33
support\ 0B 2013 Jul 22 15:33
firmwarekey\ 0B 2013 Jul 22 15:33
Available space on usbstorage 79%
Downloading from the USB device using the relative path
1.
Log in to the switch using an account assigned to the admin role.
2.
Enter the firmwareDownload -U command.
ecp:admin>firmwaredownload -U v7.3.0
Downloading from the USB device using the absolute path
1.
Log in to the switch using an account assigned to the admin role.
2.
Enter the firmwareDownload command with the -U operand.
ecp:admin>firmwaredownload -U /usb/usbstorage/brocade/firmware/v7.3.0
FIPS support
Federal Information Processing Standards (FIPS) specify the security standards needed to satisfy a
cryptographic module utilized within a security system for protecting sensitive information in the
computer and telecommunication systems. For more information about FIPS, refer to
Configuring
Security Policies
.
Fabric OS v7.3.0 firmware is digitally signed using the OpenSSL utility to provide FIPS support.
If the firmware is not signed or if the signature validation fails, firmware download fails.
To enable or disable FIPS mode, refer to
Configuring Security Policies
.
Public and private key management
For signed firmware, Brocade uses RSA with 1024-bit length key pairs, a private key and a public key.
The private key is used to sign the firmware files when the firmware is generated. The public key is
packaged in an RPM package as part of the firmware, and is downloaded to the switch. After it is
downloaded, it can be used to validate the firmware to be downloaded next time when you run the
firmwareDownload command.
Enabling the USB device
22
Fabric OS Upgrade Guide
53-1003240-01