Welcome to Brigade B series troubleshooting videos.
This video will show how to disable and enable the non secure FTP protocol being an option during the four commands, conflict upload, config download support safe and affirm and download prior to fabric rest 920.
The default configuration and the sense of protocol and the ciphers led to platform not adhering to security best practices. One of them is a non secure FTP protocol. The option of enabling and disabling the FTP protocol has always been in the firmware by means of enabling or disabling the so called conflict upload security feature.
This feature was enabled by default with fabric os 9.2 0.0 and higher for new switches coming out of the factory switches were upgraded from lower firmware 29.2 0.0 and higher will have no changes to the settings. So the original changes stay in effect. In this example, I'm going to show you how to disable the f the feature.
This would be the common setting if the FTP protocol is not visible in the four commands mentioned earlier for exa M if you want to do a config upload and FTP option is not available. As you can see here FTB option is not available. You can check the feature if it is enabled or not by executing the command. Config show space dash all space pipe, space crab, space CFG load dot secure.
If the output shows one, then it is enabled and it will not show the FTP option. If it your zero, then it is disabled and it will show the FTP option. You can change the feature with the command configured chassis note that this will command will have no impact on the functionality of the switch switch or the FC traffic. You say yes to CFG load attributes.
So you can see the attributes and one of them will be enable secure switch mode. Here it is enabled, you say no to disable it and you accept all the other options to check if the setting has been accepted, run the command conflict show again. And as you can see the CFG load, secure option is set to zero and the config upload command, you can see now that the FTP option is available.
So you can choose FTB again. This is how to disable and enable the FP option during a conflict upload. Download supports safe and affirm a download command.
Thank you for watching.