host and to send packets to the host. Minimum: eight
characters long.
aes128
(OPTIONAL) Enter the keyword
aes128
to initiate the
AES128-CFB encryption algorithm for transmission of SNMP
packets.
priv-password
(OPTIONAL) Enter a text string (up to 20 characters long)
password that enables the host to encrypt the contents of
the message it sends to the agent and to decrypt the
contents of the message it receives from the agent.
Minimum: eight characters long.
Defaults
If no authentication or privacy option is configured, then the messages are
exchanged (attempted anyway) without any authentication or encryption.
Command
Modes
CONFIGURATION
Command
History
Version 9.3(0.0)
Added support for the AES128-CFB encryption algorithm on
MXL
Usage
Information
To enable robust, effective protection and security for SNMP packets transferred
between the server and the client, you can use the
snmp-server user
username
group
groupname
3 auth
authentication-type auth-
password
priv aes128
priv-password
to specify that AES128-CFB
encryption algorithm needs to be used.
You cannot modify the FIPS mode if SNMPv3 users are already configured and
present in the system. An error message is displayed if you attempt to change the
FIPS mode by using the
fips mode enable
command in Global Configuration
mode. You can enable or disable FIPS mode only if SNMPv3 users are not
previously set up. Otherwise, you must remove the previously configured users
before you change the FIPS mode.
Example
Dell# snmp-server user privuser v3group v3 encrypted auth md5
9fc53d9d908118b2804fe80e3ba8763d priv aes128
d0452401a8c3ce42804fe80e3ba8763d
Related
Commands
show snmp user
— Displays the information configured on each SNMP user name.
snmp-server view
Configure an SNMPv3 view.
Syntax
snmp-server view
view-name oid-tree
{included | excluded}
To remove an SNMPv3 view, use the
no snmp-server view
view-name oid-
tree
{included | excluded}
command.
1238
Simple Network Management Protocol (SNMP) and Syslog