Simple Network Management Protocol
11-10
11
CLI
– Use the
snmp-server user
command to configure a new user name and
assign it to a group.
Configuring Remote SNMPv3 Users
Each SNMPv3 user is defined by a unique name. Users must be configured with a
specific security level and assigned to a group. The SNMPv3 group restricts users to
a specific read and a write view.
To send inform messages to an SNMPv3 user on a remote device, you must first
specify the engine identifier for the SNMP agent on the remote device where the
user resides. The remote engine ID is used to compute the security digest for
authenticating and encrypting packets sent to a user on the remote host. (See
“Specifying Trap Managers and Trap Types” on page 11-4 and “Specifying a
Remote Engine ID” on page 11-7.)
Command Attributes
•
User Name
– The name of user connecting to the SNMP agent. (Range: 1-32
characters)
•
Group Name
– The name of the SNMP group to which the user is assigned.
(Range: 1-32 characters)
•
Engine ID
– The engine identifier for the SNMP agent on the remote device where
the remote user resides. Note that the remote engine identifier must be specified
before you configure a remote user. (See “Specifying a Remote Engine ID” on
page 11-7.)
•
Remote IP
– The Internet address of the remote device where the user resides.
•
Security Model
– The user security model; SNMP v1, v2c or v3. (Default: v1)
•
Security Level
– The security level used for the user:
- noAuthNoPriv – There is no authentication or encryption used in SNMP
communications. (This is the default for SNMPv3.)
- AuthNoPriv – SNMP communications use authentication, but the data is not
encrypted (only available for the SNMPv3 security model).
- AuthPriv – SNMP communications use both authentication and encryption (only
available for the SNMPv3 security model).
•
Authentication
Protocol
– The method used for user authentication. (Options:
MD5, SHA; Default: MD5)
•
Authentication
Password
– A minimum of eight plain text characters is required.
Console(config)#snmp-server user chris group r&d v3 auth md5
greenpeace priv des56 einstien
40-14
Console(config)#exit
Console#show snmp user
40-15
EngineId: 80000034030001f488f5200000
User Name: chris
Authentication Protocol: md5
Privacy Protocol: des56
Storage Type: nonvolatile
Row Status: active
Console#
Summary of Contents for Direk Tronik 24/48-Port
Page 2: ......
Page 4: ...ES4524D ES4548D F0 0 0 4 E112006 CS R01 149100030400A...
Page 22: ...xxii Tables...
Page 26: ...xxvi Figures...
Page 28: ...Getting Started...
Page 50: ...Initial Configuration 2 14 2...
Page 52: ...Switch Management Configuring Domain Name Service 29 1 Switch Clustering 30 1...
Page 68: ...Basic System Settings 4 8 4...
Page 118: ...Simple Network Management Protocol 11 18 11...
Page 142: ...Configuring 802 1X Port Authentication 14 8 14...
Page 154: ...Access Control Lists 15 12 15...
Page 232: ...Configuring Protocol Based VLANs 25 4 25...
Page 252: ...Quality of Service 27 8 27...
Page 282: ...Using the Command Line Interface 31 10 31...
Page 290: ...General Commands 33 6 33...
Page 300: ...System Management Commands 34 10 34...
Page 308: ...File Management Commands 35 8 35...
Page 326: ...Event Logging Commands 37 8 37...
Page 336: ...Time Commands 39 6 39...
Page 406: ...Access Control List Commands 44 18 44...
Page 418: ...Interface Commands 45 12 45...
Page 432: ...Broadcast Storm Control Commands 47 2 47...
Page 436: ...Rate Limit Commands 49 2 49...
Page 478: ...VLAN Commands 52 18 52...
Page 508: ...Quality of Service Commands 56 10 56...
Page 518: ...Multicast Filtering Commands 57 10 57...
Page 532: ...IPv4 Interface Commands 59 6 59...
Page 560: ...IPv6 Interface Commands 60 28 60...
Page 566: ...Switch Cluster Commands 61 6 61...
Page 568: ...Appendices...
Page 582: ...Glossary Glossary 8...
Page 587: ......
Page 588: ...ES4524D ES4548D E112006 CS R01 149100030400A...