199
Predefined user roles
network-admin
mdc-admin
Parameters
user-name
: Specifies an SNMPv3 username, a case-sensitive string of 1 to 32 characters.
group-name
: Specifies an SNMPv3 group name, a case-sensitive string of 1 to 32 characters.
user-role
role-name
: Specifies a user role name, a case-sensitive string of 1 to 63 characters.
remote
{
ip-address
|
ipv6
ipv6-address
}: Specifies the IPv4 or IPv6 address of the remote SNMP
entity.
vpn-instance
vpn-instance-name
: Specifies the VPN for the target host receiving SNMP
notifications. The
vpn-instance-name
argument specifies the name of the MPLS L3VPN, a
case-sensitive string of 1 to 31 characters. If this parameter is not specified, the target host is in the
public network.
cipher
: Specifies
auth-password
and
priv-password
as encrypted keys, which can be calculated to a
hexadecimal string by using the
snmp-agent calculate-password
command.
simple
: Specifies
auth-password
and
priv-password
as plaintext keys.
authentication-mode
: Specifies an authentication algorithm. MD5 is faster but less secure than
SHA. For more information about these algorithms, see
Security Configuration Guide
.
•
md5
: Specifies the MD5 authentication algorithm.
•
sha
: Specifies the SHA-1 authentication algorithm.
auth-password
: Specifies a case-sensitive plaintext or encrypted authentication key. For high
encryption in non-FIPS mode, a plaintext key is a string of 1 to 64 visible characters. For high
encryption in FIPS mode, a plaintext key is a string of 15 to 64 visible characters, which must contain
numbers, uppercase letters, lowercase letters, and special characters. If the
cipher
keyword is
specified, the encrypted authentication key length requirements differ by authentication algorithm
and key string format, as shown in
.
Table 44 Encrypted authentication key length requirements
Authentication
algorithm
Hexadecimal string
Non-hexadecimal string
MD5
32 characters
53 characters
SHA
40 characters
57 characters
privacy-mode
: Specifies an encryption algorithm for privacy. The encryption algorithms AES, 3DES,
and DES are in descending order of security strength. DES is enough to meet general security
requirements.
•
aes128
: Specifies the AES algorithm.
•
3des
: Specifies the 3DES algorithm.
•
des56
: Specifies the DES algorithm.
priv-password
: Specifies a case-sensitive plaintext or encrypted privacy key. For high encryption in
non-FIPS mode, a plaintext key is a string of 1 to 64 characters. For high encryption in FIPS mode, a
plaintext key is a string of 15 to 64 visible characters, which must contain numbers, uppercase letters,
lowercase letters, and special characters. If the
cipher
keyword is specified, the encrypted privacy
key length requirements differ by authentication algorithm and key string format, as shown in