– S_IDs and frames can be spoofed by a clever hacker
– Many layers of protection— difficult to administer, difficult to guarantee
One problem with all of these security techniques—zoning, port and fabric binding, and LUN masking—is that WWNs can be spoofed fairly easily. Port binding would prevent an unauthorized intruder from just plugging an HBA with a spoofed WWN directly into a switch, but a very clever hacker could find a way around that; for example, by forging ELP frames with known switch WWNs and connecting to an E_Port, and then forging frames that appear to come from a non-existing switch. This would be difficult but not impossible.
An even more likely scenario is that the many layers of security that would be necessary to make the fabric very secure will simply not be properly or consistently applied.