Chapter 3: System planning
Security planning
Page 3-62
Identify up to two SNMP users that will be configured to receive notifications (traps). Identify
the Internet address (IPv4 or IPv6) and UDP port number of the associated SNMP manager.
SNMPv3 default configuration (MIB-based)
When SNMPv3 MIB-based Security Mode is enabled, the default configuration for the
usmUserTable
table is based on one initial user and four template users as listed in
Table 78 Default SNMPv3 users
Object
Entry 1
Name
initial
SecurityName
initial
AuthProtocol
usmHMACMD5AuthProtocol
PrivProtocol
usmDESPrivProtocol
StorageType
nonVolatile
Object
Entry 2
Entry 3
Name
templateMD5_DES
templateSHA_DES
SecurityName
templateMD5_DES
templateSHA_DES
AuthProtocol
usmHMACMD5AuthProtocol
usmHMACSAHAuthProtocol
PrivProtocol
usmDESPrivProtocol
usmDESPrivProtocol
StorageType
nonVolatile
nonVolatile
Object
Entry 4
Entry 5
Name
templateMD5_AES
templateSHA_AES
SecurityName
templateMD5_AES
templateSHA_AES
AuthProtocol
usmHMACMD5AuthProtocol
usmHMACSHAAuthProtocol
PrivProtocol
usmAESPrivProtocol
usmAESPrivProtocol
StorageType
nonVolatile
nonVolatile
VACM default configuration
The default user
initial
is assigned to VACM group
initial
in the
vacmSecurityToGroupTable
table. The template users are not assigned to a group.
PTP 670 creates default view trees and access as shown in
Table 79
and
Table 80
.