switch_audit
switch_audit -dir <data_file_directory>
Due to current audit requirements, it is necessary to implement a checking mechanism to ensure that all switches within the CITIgroup environment are configured against a standard template. This ensures that standardization is maintained throughout the environment and allows us to periodically check the status of the fibre environment. These checks are automated for the site using the switch_audit script.
At present, switch_audit checks for the following:
Check that telnet service is disabled.
Check that web server is disabled.
Check that alternate control prohibited is disabled.
Check that SNMP public without write authorization is turned on.
Check that SNMP authentication on trap enabled is set to true.
Check that management style is set to open systems.
Check that rerouting delay is set to false.
Check that domain RSCNs are set to false.
Check that switch priority default is set to default.
Check that interop mode is set to McDATA fabric 1.0.
Check that R_A_TOV is set to 100.
Check that E_D_TOV is set to 20.
Check that host control prohibited is set to false.
Check that preferred path is set to disabled.
Check that default zone is set to disabled.
Check that unique zone set is maintained.
- -dir <data_file_directory>
-
Specifies the directory containing the switch configuration txt files. These txt files can be created by expanding the switch within Connectrix Manager and selecting export configuration from the drop down menu.
- -help
-
Displays the help file.
Tim Robinson (2008)
Please mail all bugs/issues/enhancements to :-
tim1.robinson@citigroup.com