![GE MDS iNET Series Reference Manual Download Page 132](http://html1.mh-extra.com/html/ge/mds-inet-series/mds-inet-series_reference-manual_4094123132.webp)
120
MDS iNET Series Reference Manual
05-2806A01, Rev. L
4.4.9 Placing an iNET Radio Behind a Firewall
iNET-II and iNET radios use the port numbers listed below. If you place the radio behind a firewall, make
sure these port numbers are included in the allowed list:
•
SSH:22<- Management
•
TELNET:23<- Management
•
SMTP:25<- DF1
•
TFTP:69<- Reprogramming
•
HTTP:80<- Management
•
NTP:123<- Time server
•
SNMP:161<- Management
•
SNMP-TRAP:162<- Event management via traps
•
HTTPS:443<- Management
•
SYSLOG:514<- Event management via remote syslog
server
These well-known port numbers follow the recommendation of IANA. For more information, go to
http://www.iana.org/assignments/port-numbers.
4.5
SNMPv3 Notes
4.5.1 Overview
The transceiver’s SNMP Agent supports SNMP version 3 (SNMPv3). The SNMPv3 protocol introduces
Authentication (MD5/SHA-1), Encryption (DES), the USM User Table, and View-Based Access (Refer to
RFC2574 for full details). The SNMP Agent has limited SNMPv3 support in the following areas:
• Both MD5 and SHA-1 Authentication for SNMPv3 are supported. To choose between the two dif-
ferent authentication protocols, choose the corresponding account which is described in the section
on page 120.
• Limited USM User Table Manipulation. The SNMP Agent starts with nine default accounts. iNET
does not support adding SNMPv3 accounts manually.
New views cannot be configured on the SNMP Agent. Views will be inherited for new accounts from
the account that was cloned.
The SNMP Agent uses one password pair (Authentication / Privacy) for all accounts. This means that
when the passwords change for one user, they change for all users.
SNMPv3 Accounts
The following default accounts are available for the SNMP Agent:
enc_mdsadmin
—Read/write account using MD5 Authentication and Encryption.
auth_mdsadmin
—Read/write account using MD5 Authentication.
enc_mdsviewer
—Read only account using MD5 Authentication and Encryption.
auth_mdsviewer
—Read only account using MD5 Authentication.
def_mdsviewer
—Read only account with no Authentication or Encryption.
sha1_enc_mdsadmin
—Read/write account using SHA-1 Authentication and Encryption.
Summary of Contents for MDS iNET Series
Page 12: ...x MDS iNET Series Reference Manual 05 2806A01 Rev L...
Page 159: ...05 2806A01 Rev L MDS iNET Series Reference Manual 147 Figure A 22 EDS Wizard Completion Screen...
Page 165: ...05 2806A01 Rev L MDS iNET Series Reference Manual 153 NOTES...
Page 166: ...154 MDS iNET Series Reference Manual 05 2806A01 Rev L NOTES...