Revision History ..................................................................................................... 2 Product description ............................................................................................... 3 Security Vulnerability Fixes .................................................................................... 5 Supported switches ............................................................................................... 6 Fixed problems....................................................................................................... 7 Environment and system requirements................................................................... 9 Known problems and limitations ........................................................................... 21 Documentation .................................................................................................... 91 Software media, organization, and files................................................................ 92 Installation ........................................................................................................... 92 Troubleshooting and getting help ......................................................................... 92
Product description FOS v7.4.2j1 is a legacy supported CCE patch release based on FOS v7.4.2j. Brocade Gen 5 platforms are not supported in this legacy supported patch release. Please refer to the Supported Switches section of this document for the list of supported platforms. Features for the supported switches that are supported in FOS v7.4.2j are also supported in FOS v7.4.2j1.
Brocade Communications Systems Brocade Fabric OS V7.1.0a Release Notes
Download Zip 🔥 https://urlin.us/2yJlFM 🔥
Note: Target Releases are the recommended firmware versions to deploy because they are built upon mature and stable code streams with the most recently resolved defects. The latest Target Releases for Connectrix Directors and Switches can be found in the Connectrix section of the Target Revisions and Adoption Rates document on _Target-Revisions-and-Adoption-Rates.pdf?lang uage=en_US
This release of FOS is available for entitled equipment download in Platform Specific Download (PSD) form. FOS PSD releases provide a smaller version of the FOS image that can only be loaded on a single hardware platform, consisting of a single switch model or group of switch models. These FOS PSD images enable much faster download and file transfer times since they are between 65-90% smaller in size than traditional full FOS images.
Unlike traditional FOS release images that can be installed on any supported Connectrix switch and director, FOS PSD images must be downloaded separately for each platform that the FOS release will be used on. The full list of unique FOS PSD images available for this release and the models that each PSD image supports is noted in Section Image Filenames on page 4.
Once loaded onto a switch, the FOS image running is identical to what would be in use if a traditional full image was used for the installation. Issuing a firmwareshow command on a switch will display only the FOS version level, with no indication of whether the code was loaded from a FOS PSD image or a full FOS image.
Installing a FOS PSD image on a switch is performed in the same manner as using a traditional full FOS image. If a FOS PSD image is loaded on an incorrect switch model (for example, attempting to load a FOS PSD image for an entry level switch on an Extension switch), the following error message displays:
A vulnerability in Brocade Fabric OS software v9.1.1, v9.0.1e, v8.2.3c, v7.4.2j, and earlier versions could allow a remote unauthenticated attacker to execute (on a Brocade Fabric OS) switch commands capable of modifying zoning, disabling the switch, disabling ports and modifying the switch IP address.
An information disclosure vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0cbn5, 7.4.2.j could allow an attacker to read sensitive files using switch commands "configshow" and "supportlink".
A vulnerability in Brocade Fabric OS CLI before Brocade Fabric OS v9.1.0, 9.0.1e, 8.2.3c, 8.2.0cbn5, 7.4.2.j could allow an attacker to perform stack buffer overflow using in "firmwaredownload" and "diagshow" commands.
A vulnerability in Brocade Fabric OS fab_seg.c.h libraries could allow authenticated attackers to exploit stack-based buffer overflows, allowing the execution of arbitrary code as the root user account.
During key agreement in a TLS handshake using a DH(E) based ciphersuite a malicious server can send a very large prime value to the client. This will cause the client to spend an unreasonably long period of time generating a key for this prime resulting in a hang until the client has finished. This could be exploited in a Denial Of Service attack. Fixed in OpenSSL 1.1.0i-dev (Affected 1.1.0-1.1.0h). Fixed in OpenSSL 1.0.2p-dev (Affected 1.0.2-1.0.2o).
ap_escape_quotes() may write beyond the end of a buffer when given malicious input. No included modules pass untrusted data to these functions, but third-party/external modules may. This issue affects Apache HTTP Server 2.4.48 and earlier.
The OpenSSL public API function X509_issuer_and_serial_hash() attempts to create a unique hash value based on the issuer and serial number data contained within an X509 certificate. However it fails to correctly handle any errors that may occur while parsing the issuer field (which might occur if the issuer field is maliciously constructed). This may subsequently result in a NULL pointer deref and a crash leading to a potential denial of service attack. The function X509_issuer_and_serial_hash() is never directly called by OpenSSL itself so applications are only vulnerable if they use this function directly and they use it on certificates that may have been obtained from untrusted sources. OpenSSL versions 1.1.1i and below are affected by this issue. Users of these versions should upgrade to OpenSSL 1.1.1j. OpenSSL versions 1.0.2x and below are affected by this issue. However OpenSSL 1.0.2 is out of support and no longer receiving public updates. Premium support customers of OpenSSL 1.0.2 should upgrade to 1.0.2y. Other users should upgrade to 1.1.1j. Fixed in OpenSSL 1.1.1j (Affected 1.1.1-1.1.1i). Fixed in OpenSSL 1.0.2y (Affected 1.0.2-1.0.2x).
Dell may not support all of the functionality of FOS v7.4.2j1 or the operating environment. References to specific configurations, functionality, and capabilities of FOS v7.4.2j1 should not be interpreted to imply that Dell endorses or will support them. The only configurations, features, and functionality that Dell will support are documented in the Dell Simple Support Matrix at
Workaround: Use CLI command "portcfgpersistentdisable" to persistently disable all F-ports manually before reboot or switchenable. After reboot or switchenable, persistently enable the F-ports manually using CLI command "portcfgpersistentenable".
Condition: During FC Egress t imeouts from the FCIP DP on an FX8-24 blade, the current implementation does not limit the number of XTUN- 1006 RASLOGs that can be generated per second. When a severe event occurs where many FCIP FC Tx Timeouts occur, the FCIP DP will generate enough XTUIN-1006 RASLOGs to consume all CP memory resulting in the kernel panic.
ISL Trunking Provides the ability to aggregate multiple physical links into one logical link for enhanced network performance and fault tolerance. Also includes Access Gateway ISL Trunking on those products that support Access Gateway deployment.
Advanced Performance MonitoringAll Advanced Performance Monitoring features are obsolete in FOS v7.4.1 and higher. This license remains to provide end users with Fabric Watch license to upgrade to Fabric Vision capabilities.
Fabric Watch All Fabric Watch features are obsolete in FOS v7.4.1 and higher. This license remains to provide end users with Advanced Performance Monitoring license to upgrade to Fabric Vision capabilities.
Fabric Vision Enables MAPS (Monitoring and Alerting Policy Suite), Flow Vision, and ClearLink (D_Port) to non-Brocade devices. MAPS enables rules based monitoring and alerting capabilities, provides comprehensive dashboards to quickly troubleshoot problems in Connectrix B-Series SAN environments. Flow Vision enables host to LUN flow monitoring, application flow mirroring for non-disruptive capture and deeper analysis, and test traffic flow generation function for SAN infrastructure validation. D_Port to non-Brocade devices allows extensive diagnostic testing of links to devices other than Brocade switches and adapters.
Enhanced Group Management This license enables full management of devices in a data center fabric with deeper element management functionality and greater management task aggregation throughout the environment. This license is used in conjunction with Brocade Network Advisor application software and is applicable to all FC platforms supported by FOS v7.0 or later.
Note: This capability is enabled by default on all Gen 5 DS-65XX model switches and ED-DCX-8510 platforms, and on ED-DCX and ED-DCX-4S platforms that are running Fabric OS v7.0.0 or later. Gen 5 embedded switches receive this capability
by default with FOS v7.2.1 and later. Individual upgrade is required when upgrading directly to FOS v7.2.1 on Gen 5 embedded switches. Subsequent group operations on Gen 5 embedded switches including group upgrade are supported. .
Advanced Extension This license enables two advanced extension features: FCIP Trunking and Adaptive Rate Limiting. The FCIP Trunking feature allows multiple IP source and destination address pairs (defined as FCIP Circuits) via multiple 1GbE or 10GbE interfaces to provide a high bandwidth FCIP tunnel and failover resiliency. In addition, each FCIP circuit supports four QoS classes (Class-F, High, Medium and Low Priority), each as a TCP connection. The Adaptive Rate Limiting feature provides a minimum bandwidth guarantee for each tunnel with full utilization of the available network bandwidth without impacting throughput performance under high traffic load. This license is available on the MP-7800B, MP-7840B and the ED-DCX-B/ED-DCX-4S-B/ED-DCX8510-8B/ED-DCX8510-4B for the PB-DCX-FX8-24 (FX8-24) on an individual slot basis. 9d4ff6ea65