Brocade fabric os security policy. html>fq
0a, a local authenticated privileged user can trigger a buffer overflow condition, leading to a kernel panic with large input to buffers in the portcfgfportbuffers command. A validated module configuration is comprised of either Fabric OS v7. x; Security; User Accounts and Passwords; Brocade® Fabric OS® Features and Standards Support Matrix, 9. 1 and 1. Configuring the IP Filter Policies on a Chassis This example uses a POST request to configuring the chassis wide distribution of IP filter policies. For detailed concepts, procedures, and additional. 3c, and 7. Feb 16, 2022 · Brocade Fabric OS before v8. 0 to any earlier version of Fabric OS. This document describes the administration of Brocade® Fibre Channel Services (FCS) features and the configuration tasks of Brocade storage area networking (SAN) products that use the Fabric OS® command line interface (CLI). You can create an IP Filter policy specifying any name and using type IPv4 or IPv6. In Fabric OS 9. This appendix provides basic steps and commands to quickly configure a switch for fabric and possible FICON and cascaded FICON operation. These protocols use shared secrets and digital certificates, based on switch WWN and public key infrastructure (PKI) technology, to authenticate switches. brocade-security-type:user-config-user-name-type. 2. For a list of changes to this module by release, refer to the individual module YANG file. Apr 17, 2024 · Policy processing is disabled by default but can be enabled by passing the `-policy' argument to the command line utilities or by calling the `X509_VERIFY_PARAM_set1_policies()' function. If executed with optional arguments for a Gigabit Ethernet (GbE) port or VE_Port, the command displays extension-related port configuration parameters specific to the Brocade 7810 switches and the Brocade SX6 extension blades. Note: Older versions of Brocade Fabric OS (8. A database that is set to reject distributions cannot be specified in the fabric-wide consistency policy. This could allow an authenticated user to alter the UI of the Brocade Switch and change ports display. Brocade Fabric OS Web Tools User Guide, 9. MAPS Overview. Click Drivers & Software on the left menu panel. Determining the RBAC Permissions for a Specific Command. The switch connection control (SCC) policy restricts which switches can access each other. A vulnerability in the IPv6 stack on Brocade Fibre Channel SAN products running Brocade Fabric OS (FOS) versions before 7. Proactively monitor the health and performance of the SAN infrastructure to ensure the application uptime and availability by leveraging predefined Nov 24, 2023 · Several commands in Brocade Fabric OS v9. >. The message is specified by its message ID. x contain documented hard-coded credentials, which could allow attackers to gain access to the system. Customers that elect to upgrade their Brocade Fabric OS version can obtain a patch with the EZServer module removed: Brocade Fabric OS v9. x and v7. This activates the policy set on the local switch or all switches in the fabric depending on the fabric-wide consistency policy. Understanding Role-Based Access Control. 0, Brocade switches shipping with Fabric OS 9. 0 does not properly represent the portName to the user if the portName contains reserved characters. 1 could allow a local authenticated user to perform privilege escalation to root by breaking the rbash shell. Supported Hardware and Software The following table lists the CC-compliant operational environments for Brocade Fabric OS software and hardware This API call was modified to add the default-password-configured, crypto-version, boot-up-self-test-enabled, and certificate-verbose leafs, role-config, management-rbac-map, acl-policy, defined-fcs-policy-member-list, defined-scc-policy-member-list, defined-dcc-policy-member-list, active-fcs-policy-member-list, active-scc-policy-member-list, active-dcc-policy-member-list, security-violation Vulnerability Details. 0 could allow an attacker to cause a denial of service (CPU consumption and device hang) condition by sending crafted Router Advertisement (RA) messages to a targeted system. The IP filter policy sets up a packet filtering firewall to provide access control on the management IP interface. How Each Feature Is Marked in the Support Tables. This module enables you to configure and manage authentication-related policies and configurations on Jun 28, 2024 · The Brocade Web Interface in Brocade Fabric OS versions v9. Fabric OS Administration. Customers that The Fabric OS command line interface (CLI), accessed via Telnet, SSH, or a serial console, provides full management capability on a Brocade switch. Describes the number of logon violations that occurred when the switch detected a login failure. The policy name is a unique string composed of a maximum of 20 alphabetic, numeric, and underscore characters. 1c, v8. security policies. To set the fabric-wide consistency policy as tolerant, omit the "S". Nov 10, 2023 · brocade 300 fos brocade 3600 switches brocade 7810 brocade director brocade firmware brocade g610 | g620 | g720 | mxg610s fos brocade g730 brocade gen 5 fos brocade storage networks brocade switch firmware download brocade switches: 6505 | 6510 |6520 fos 8. Impact Dec 13, 2022 · To block, disable, or deny HTTP/Webtools access, telnet access to a Brocade B-series for security reasons. Use the tables in this reference manual to determine if a feature is supported on your product. You can create SCC, DCC, and FCS policies in the. x; Products Confirmed Not Affected Nov 30, 2023 · In Brocade Fabric OS before v9. The user name for a specific user account. Fabric OS use Diffie Hellman - Challenge Handshake Authentication Protocol) (DH-CHAP) or Fibre Channel Authentication Protocol (FCAP) for authentication. 2j, do not have this option and must upgrade to Brocade Fabric OS v7. The brocade-security module enables you to manage the following features: • IP filter policies. Jan 27, 2023 · Brocade Webtools in Brocade Fabric OS versions prior to v9. • User accounts. Here are the steps that are used to create a policy with a rule to deny access by any IP using HTTP port 80. For more information about licensing, refer to the Brocade Fabric OS Software Licensing Guide. Brocade Fabric OS Features and Standards Support Matrix, 9. 2j1 to protect their switches. The FCS policy is not present by default, but it must be created. The Monitoring and Alerting Policy Suite (MAPS) is a storage area network (SAN) health monitoring and alerting application with the capability of early fault detection and isolation. Destination port: The destination port number or name, such as Telnet, SSH, HTTP, or Brocade FOS Layer 2 Scalability Limits Fabric scalability is typically limited by the least capable switch that participates in the fabric. 0a release. • Remote authentication. A vulnerability in Brocade Fabric OS software v9. With the release of Fabric OS v6. Brocade Gen 7: The Intelligent, High-performance, Cyber Resilient Foundation of a Modern Data Center. 1 library to perform cryptographic functions. FCS Policies. Refer to the vendor advisory BSA-2023-2335 for additional details. This document provides the required conditions and Select the IP filter policy that you want to activate, and then select the. Describes the number of logon violations that occurred when the switch detected a logon failure. window. brocade-operation-security-policy-distribute This module enables you to manage security-related policies and configurations on switches. View More. Click on Manual Update to browse by Component type. help -p. There can be a maximum of 256 rules within an IP Filter policy. 2 and 8. Security. • Chapter 2, “Adding Secure Fabric OS to the Fabric” allows you to set up and get started using Secure Fabric OS. The fabric configuration server policy in base Fabric OS may be performed on a local switch basis and may be performed on any switch in the fabric. This command displays the policy database one page at a time. Information in this section provides you with an overview of Monitoring and Alerting Policy Suite (MAPS), its structural elements, and how to set it up and use its basic and advanced features. Starting with Fabric OS v9. Refer to the vendor advisory BSA-2022-2082 for additional details. The Monitoring and Alerting Policy Suite (MAPS) is a storage area network (SAN) health monitoring and The Brocade Fabric OS Features and Standards Support Matrix provides a high-level, consolidated view of all features that are supported on Brocade® Fibre Channel platforms that run Fabric OS® 9. command. x library to perform cryptographic functions. Products Affected. supports multiple IP Filter policies to be defined at the same time. Brocade Access Gateway features in Fabric OS 9. However, the JMS Appender class is not used in any The IP Filter policy is a set of rules applied to the IP management interfaces as a packet filtering firewall. secPolicyCreate "FCS_POLICY". MAPS is shipped with predefined rules, groups, and policies. Note: Since the default policy cannot be changed, you must clone whichever filter set you want to use. 2 fos 7. 1 fos 7. SCC Policies. Vulnerability Scoring Details Fabric OS Features and Benefits. Sets the fabric-wide consistency policy. The IPv4 and IPv6 policies are either in the defined configuration or in the active configuration. • Chapter 3, “Creating Secure Fabric OS Policies” helps you create the security policies needed for your SAN. Each rule has an index number identifying the rule. Vulnerability Scoring Details HTTP policy violations occur when the HTTP port (80) is blocked by the. The module must be used in a Federal Information Processing Standards (FIPS) compliant operational environment along with the proper device configuration. This section lists the extension features of Fibre Channel over IP (FCIP), FCIP tunnel management, and WAN analysis tools. 1a, changes have been made to the rules and groups. brocade-operation-security-fabric-wide-policy-distribute This module enables you to manage security-related policies fabric-wide. x all contain a modified Log4j 1. All Brocade FOS SAN equipment should have the additional protection of network firewalls, intrusion Brocade® Fabric OS® REST API Reference Manual, 9. aliadd Add a member to a zone alias. A vulnerability in the fosexec command of Brocade Fabric OS after Brocade Fabric OS v9. 2 fos 7 fos 7. x - Not Affected. 1, v9. aaaconfig Configure RADIUS for AAA services. Successful exploitation of this vulnerability could allow attackers to gain access to the system. This document, the Cryptographic Module Security Policy (CMSP), also referred to as the Security Policy, specifies the security rules under which the module must operate. CVEID: CVE-2020-15376 DESCRIPTION: Broadcom Brocade Fabric OS could allow a remote attacker to bypass security restrictions, caused by a weakness in the ldap implementation. The Brocade Fabric OS is the software foundation for Brocade’s Configuring the Authentication Policy. 0, 9. The command can be issued from all FCS switches. This section describes Fibre Channel, which defines the service The Brocade Fabric OS Features and Standards Support Matrix provides a high-level, consolidated view of all features that are supported on Brocade® Fibre Channel platforms that run Fabric OS® 9. Security Policies. The following example creates an FCS policy that allows a switch with domain ID 2 To download the version specified for your product below, follow these steps: Navigate to the Drivers & Software support site for your product: Search for your product by name or machine type. Before a policy is created, there is no enforcement for that management. These licenses allow optional features to be enabled on Brocade products for a limited period of time for evaluation or temporary-use purposes. x. Defined ACL Policy. These protocols use shared secrets and digital certificates, based on switch WWN and public key infrastructure (PKI) technology Jan 27, 2023 · Summary. Use this command to display the members of an existing policy in the Active or Defined security policy set. 1 and 8. method, which is all access is granted. The policy created is stored in a temporary buffer, and is lost if the current command session logs out. A logon failure occurs due to a wrong user ID or a wrong password. CVE-2017-6227. 4 fos 7. Use this command to display documentation for a specified RASlog message. NOTE . To set the fabric-wide consistency policy as strict, use the strictness indicator "S". (enabled) the Fabric Vision license in the Fabric OS software to use the full set of MAPS options. Brocade Fabric OS v9. A vulnerability in Brocade Fabric OS CLI prior to Brocade Fabric OS versions 9. x component. Settings. a policy acts as an access control list for that management method. Impact Topics. will be configured with default secure settings. This section lists the Basic Switch Configuration. Refer to the vendor advisory BSA-2022-2075 for additional details. Device authentication policy can also be categorized as an F_Port, a node port, or an HBA authentication policy. switch:admin> fosconfig --enable vf WARNING: This is a disruptive operation that requires a reboot to take effect. x Configuring Security Policies; IP Filter Policy; The following table provides the list of Brocade Custom IP • Chapter 1, “Introducing Secure Fabric OS” provides basic information about Secure Fabric OS. • Brocade employs an integrated “system-wide” approach to ensure the reliability and performance When E_Ports are active between two switches, the name of the FCS server and a zoning policy set version identifier are exchanged between the switches. If a fabric includes products that are operating with an older version of Brocade FOS, the limits of the Jan 13, 2023 · <p>A vulnerability has been discovered in Brocade Fabric OS, which could allow an attacker to execute arbitrary commands on the targeted system. Understanding Virtual Fabric Restrictions. Successful exploitation of this vulnerability could allow for arbitrary code execution in the context of the logged-on user This document describes the administration of Brocade® Fibre Channel Services (FCS) features and the configuration tasks of Brocade storage area networking (SAN) products that use the Fabric OS® command line interface (CLI). Impact You can delete an IP filter policy that you created. Using the Command Line Interface. Use the. 1c, and 8. 1, 3. When the operation is successful, the response contains an empty message body and a “201 Created” status appears in the header. Although many different software and hardware configurations are tested and supported by Broadcom for Fabric OS 9. 0 prior to v9. 2h, and all versions of Brocade Fabric OS v8. Successful exploitation of this vulnerability could lead to Denial of Service (DoS). 3c could allow a low privilege webtools user to gain elevated admin rights, or privileges, beyond what is intended or entitled for that user. x and 3. Fabric-wide distribution of the device authentication policy is not supported because the device authentication requires manual interaction in setting the HBA shared secrets and switch shared secrets, and most of the HBAs do not support the defined DH groups for use in the DH-CHAP Brocade® Fabric OS® Administration Guide, 9. secPolicyDump. When the FCS policy is created, the WWN of the local switch is automatically included in the FCS list. Impact Default Secure Switch Configuration. When E_Ports are active between two switches, the name of the FCS server and a zoning policy set version identifier are exchanged between the switches. 2 are vulnerable to this issue. The Brocade Fabric OS FIPS Cryptographic Module underpins Brocade’s Fabric Operating System equipment. SCC_POLICY does not exist until it is created and it accepts members listed as WWNs, domain IDs, or switch names. 2b, 8. - destination-domains. 0 and, before Brocade Fabric OS v9. user-name. The minimum number of days that must elapse before a password can be. Only the primary FCS switch is allowed to modify and distribute the database within the fabric. x), all versions of Brocade Network Advisor, and EZSwitch versions 8. Brocade AMPOS versions 2. SEC_LV. Administer Fibre Channel Services (FCS) features and configuration tasks using Fabric OS (FOS) software on Brocade platforms. Access Gateway is a software feature that allows multiple host bus adapters (HBAs) to access the fabric using fewer physical ports. Use this command to activate the current defined security policy to all switches in the fabric. x – Not Affected. You can set a switch to Access Gateway mode to transform it into a device management tool that is compatible with different types of fabrics, including Brocade Enterprise OS (EOS) and Cisco-based fabrics. The default secure configuration settings include: Use of all versions of Brocade’s Fabric OS is subject to the terms and conditions of the Brocade Fabric Operating System and Feature Licenses and License Keys End User License Agreement, effective October 1, 2019, as amended by Brocade from time to time. command to display the policy database without page breaks. The firewall permits or denies the traffic going through the IP management interfaces according to the policy rules. SEC_SCC. The Brocade Fabric OS Features and Standards Support Matrix provides a high-level, consolidated view of all features supported on Brocade® Fibre Channel platforms that run Fabric OS® software 8. The following hardware platforms are supported by Brocade® Fabric OS 9. 9. in the navigation bar, and then select. 1_01 and higher versions When a switch with an unsorted security policy member list tries to join a switch that runs Fabric OS v7. Deleting an IP filter policy removes it from the temporary buffer. changed. Impact. To delete a rule, click the ( ) icon next to a rule, and then select the. Brocade Fabric OS versions prior to v7. • Security protocols. 2x or later and is configured with an ordered security policy list, port segmentation occurs because of mismatching security policy lists. 0cbn5 could allow a local authenticated attacker to export out sensitive files with “seccryptocfg”, “configupload”. Brocade® Fabric OS® MAPS User Guide, 9. x are supported on the following hardware platforms. x; Configuring Security Policies; Policy Database Distribution; Fabric-Wide Enforcement; Displaying the Fabric-Wide Consistency Policy Apr 5, 2024 · <p>A vulnerability has been discovered in Broadcom Brocade Fabric OS that could allow for arbitrary code execution. Leverage the benefits of enhanced security and autonomous SAN technology with the Brocade G730 Switch to take the guesswork out of protecting and managing a network. After a policy is created and a. Secure Optics • Brocade switches validate that the installed optics are genuine, high-quality Brocade optics which optimizes the reliability and availability of your SAN. 3 fos 3. checkbox. Each IP Filter policy is identified by Brocade Fabric OS software uses the Brocade Fabric OS FIPS Cryptographic Module 8. By sending a specially-crafted request, an attacker could exploit this vulnerability to login in the Brocade Fibre Channel SAN switch with "user Description. 0 are susceptible to a vulnerability that could allow a remote unauthenticated attacker to execute arbitrary code to gain root access. x and 7. Create high-scale fabrics in less rack space with the industry’s highest-density 64G switch. Enter the. member is added to the policy, that policy is closed to all FOS-82x-MAPS-UG106 User Guide Brocade® Fabric OS® MAPS User Guide, 8. By HTTP policy violations occur when the HTTP port (80) is blocked by the. Brocade Fabric OS is the foundation for enabling the ability to proactively monitor millions of physical-layer, protocol-layer, and application-layer data points in real time and translate the information gathered into actionable insights on the performance and health of the storage area network (SAN). When the maximum-password-age is set to a non-zero value, Switches in the fabric are designated as either a primary FCS, backup FCS, or non-FCS switch. authUtil. 0b (P /N 63-1000968-01) or Fabric OS v7. July 2013 Fabric OS Administrator’s Guide 53-1002920-02 Corrections and additions for the Fabric OS 7. You must update your MAPS policies to use the correct rules and groups. Each rule contains the following elements: Source address: A source IP address or a group prefix. This section provides a basic example for using the brocade-operation-security-policy-chassis-distribute module. The list of members of. You cannot delete a default IP filter policy. 3. OpenSSL 3. The following actions are supported while adding or deleting IP filter policy rules: You can add one or more rules in a single operation. 1e, 8. Broadcom Brocade Fabric OS is the storage area networking firmware for Brocade Communications Systems’ Fibre Channel switch and Fibre Channel directors. Successful exploitation of this vulnerability could allow an attacker to execute arbitrary commands on a Brocade Fabric OS switch. The below platforms may be used in a validated module configuration: Firmware Part Number Fabric OS v7. The module must be used in a FIPS-compliant operational environment along with the proper device configuration. If the views of the two secure fabrics are the same, the fabric’s primary FCS server downloads the zone database and security policy sets to each switch in the fabric. To search for the string "zone" while paging is enabled (enter /zone after issuing the command): switch:admin>. Shell Function Commands. This module provides a detailed view of Fabric OS System Security configuration. Remove. Switch Connection Control Policy. Connect to the switch and log in either using an account with admin permissions, or an account with OM permissions for the Security RBAC class of commands. x, documenting all possible configurations and scenarios is beyond the scope of this document. factoryreset -set securitydefault. However, you can create custom rules, groups, and policies. Successful exploitation of this vulnerability could lead to disclosure of sensitive information, addition or modification of data, or Denial of Service (DoS). 0b 63-1000968-01 or Jan 27, 2023 · A vulnerability in Brocade Fabric OS CLI prior to Brocade Fabric OS versions 9. Brocade Fabric OS software is used by IBM b-type SAN directors and switches. Due to security policies, it would be required for few organization to disable unsecured protocols such as Telnet (TCP 23) in their environment and use secure protocol such as SSH Dec 15, 2021 · Brocade EZSwitch versions 8. ag Configure the Access Gateway feature. Impact The Brocade Fabric OS Features and Standards Support Matrix provides a high-level, consolidated view of all features that are supported on Brocade Fibre Channel platforms that run Fabric OS 9. Example of creating an FCS policy. feature, and the user tries to establish a connection. IP Filter Management. An IP Filter policy consists of a set of rules. Fabric OS Software; Brocade® Fabric OS® Administration Guide, 9. Brocade® Fabric OS® REST API Reference Manual, 9. September 2013 The following example shows how to enable Virtual Fabrics and configure the E_Ports to perform authentication using the AUTH policies. By default, Fabric OS. 1 Network Device Colloborative Protection Profile (NDcPP) to perform cryptographic functions. Fabric OS Administrator’s Guide 53-1002920-01 Added Fabric OS v7. This section describes Fibre Channel, which defines the service function residing at well-known addresses. use Diffie Hellman - Challenge Handshake Authentication Protocol) (DH-CHAP) or Fibre Channel Authentication Protocol (FCAP) for authentication. Creating an FCS Policy. Create SCC policy having all switches in fabric. To delete an IP filter policy, perform the following steps: Click. Dec 6, 2023 · Description. Jun 28, 2024 · Brocade Fabric OS versions v9. All EX ports will be disabled upon reboot. The command output is identical to the documentation provided in the. x; REST Running Config; brocade-security-type:security-policy-distribute-permission-type. option. If this command is executed for a specified port with no additional options, it displays general status and configuration for that port. For each message, the command displays the following information: MESSAGE. Brocade Web Tools is a graphical user interface (GUI) embedded in the Fabric OS firmware that enables administrators to monitor and manage single or small fabrics, switches, and ports. 2h, v8. • SSH configuration. 3c, and 8. command options to configure a switch for point-to-point and cascaded FICON operation, see Administering FICON Fabrics. Each policy corresponds to a management method. In this example, we are Brocade Fabric OS® firmware uses the Brocade Fabric OS FIPS Cryptographic Module 9. to include all the switches in the fabric, or click. Brocade Gen 7 (64G) Fixed-Port Switches • Brocade G720 Switch Brocade Gen 7 (64G) Directors For ease of reference, Brocade chassis-based storage systems are standardizing on the term director. minimum-password-age. The products that comprise Brocade’s Gen 7 portfolio are the Brocade X7 Director, the Brocade G720 Switch, and the Brocade G730 Switch. 3a, and v9. , select. These solutions are equipped with higher-performing hardware to unleash NVMe technology and can discover Topics. 3d are susceptible to vulnerabilities which when successfully exploited could lead to disclosure of sensitive information, addition or modification of data, or Denial of Service (DoS). • Password configuration. 2j could allow a local authenticated user to break out of restricted shells with “set context” and escalate privileges. 0 or if security default executed on the migrated switch using the. It allows you to manage and configure the IP filters. and. Table 1 provides the limits for products that are running Brocade Fabric OS 8. Impact Sep 8, 2023 · Brocade Fabric OS versions prior to 9. Topics. 1b are susceptible to vulnerabilities which when successfully exploited could lead to disclosure of sensitive information, addition or modification of data, or Denial of Service (DoS). Fabric OS. This example uses a POST request to configure the authentication policy. default_ipv4. 0, Brocade now supports Universal Temporary Licenses (UTLs, also known as “Universal Time-based Licenses”) for select features. The names. x MAPS Rules and Groups Altered in This Version For Fabric OS 8. agshow Displays the Access Gateway information. Only one SCC policy (named SCC_POLICY) can be created per switch and each switch might have a different SCC policy. ipfilter. x; REST RPC Operations; Policy name of the security database(s) to be distributed. 0 software features and support for embedded switches: Brocade 5431, M6505, and 6547. registered with the fabric. Brocade Fabric OS Message Reference Manual. int32. Brocade Fabric OS® firmware, SANnav™ software, and hardware platforms have the specified ability to restrict and protect from malicious intent. 10. To create these policies, perform the following steps: In. 0 could log the FTP/SFTP/SCP server password in clear text in the SupportSave file when performing a downgrade from Fabric OS v9. Brocade® Fabric OS® Administration Guide, 9. 2j, and earlier versions could allow a remote unauthenticated attacker to execute on a Brocade Fabric OS switch commands capable of modifying zoning, disabling the switch, disabling ports, and modifying the switch IP address. x and 9. It allows anyone within local network to sniff the data including login credentials in plain text that passes between the telnet client and the server. Depending on the setup of the device, an Aug 19, 2021 · Multiple NetApp products incorporate Brocade Fabric OS. 0b1 (P /N 63-1001098-01) installed on, a switch or backbone and a set of installed blades. It is the user’s responsibility to understand and comply with the terms of the EULA. 3c, v7. The legacy term backbone can be used interchangeably with the term director. This section describes about Fibre Channel that defines the service function resides at well-known addresses. Max CVSS. • Validates the integrity of the Fabric Operating System image. 0. Authentication Policy for Fabric Elements. Automatic distribution is supported and you can either configure the switches in your fabric to accept the FCS policy or manually distribute the FCS policy. 0, “root” account access is disabled. This document provides the required conditions and configurations for a device to operate in a FIPS Enables all the default secure settings on the switch that includes IPfilter policies, crypto configurations for all TLS applications and SSH, applicable password policies, regenerating default stronger crypto keys or notify on the key strength if already generated or installed. 1e, and v8. 1e, v8. • IP filter rules. 1. X. Brocade Gen 7 (64G) Fixed-Port Access Gateway is a software feature that allows multiple host bus adapters (HBAs) to access the fabric using fewer physical ports. 0, 1. Description. Brocade Web Tools is an embedded graphical user interface (GUI) that enables administrators to monitor and manage Apr 25, 2024 · Customers running on older versions of Brocade Fabric OS, including v7. 4. Active. Refer to the vendor advisory BSA-2022-2079 for additional details. Brocade Fabric OS® firmware uses the Brocade Fabric OS Common Criteria (CC) standards with Fabric OS 9. ck re iu rj sf ea yg mm fq sl