Chapter 5
| SNMP Commands
SNMPv3 Commands
– 148 –
Command Mode
Global Configuration
Command Usage
◆
Local users (i.e., the command does not specify a remote engine identifier)
must be configured to authorize management access for SNMPv3 clients, or to
identify the source of SNMPv3 trap messages sent from the local switch.
◆
Remote users (i.e., the command specifies a remote engine identifier) must be
configured to identify the source of SNMPv3 inform messages sent from the
local switch.
◆
The SNMP engine ID is used to compute the authentication/privacy digests
from the password. You should therefore configure the engine ID with the
snmp-server engine-id
command before using this configuration command.
◆
Before you configure a remote user, use the
snmp-server engine-id
command
to specify the engine ID for the remote device where the user resides. Then use
the
snmp-server user
command to specify the user and the IP address for the
remote device where the user resides. The remote agent’s SNMP engine ID is
used to compute authentication/privacy digests from the user’s password. If the
remote engine ID is not first configured, the
snmp-server user
command
specifying a remote user will fail.
◆
SNMP passwords are localized using the engine ID of the authoritative agent.
For informs, the authoritative SNMP agent is the remote agent. You therefore
need to configure the remote agent’s SNMP engine ID before you can send
proxy requests or informs to it.
Example
Console(config)#snmp-server user steve group r&d v3 auth md5 greenpeace priv
des56 einstien
Console(config)#snmp-server user mark group r&d remote 192.168.1.19 v3 auth
md5 greenpeace priv des56 einstien
Console(config)#
snmp-server view
This command adds an SNMP view which controls user access to the MIB. Use the
no
form to remove an SNMP view.
Syntax
snmp-server view
view-name oid-tree
{
included
|
excluded
}
no snmp-server view
view-name
view-name
- Name of an SNMP view. (Range: 1-32 characters)
oid-tree
- Object identifier of a branch within the MIB tree. Wild cards can be
used to mask a specific portion of the OID string. (Refer to the examples.)
included
- Defines an included view.
Summary of Contents for EX-3524
Page 2: ......
Page 28: ...Figures 28 ...
Page 34: ...Section I Getting Started 34 ...
Page 58: ...Chapter 1 Initial Switch Configuration Setting the System Clock 58 ...
Page 72: ...Chapter 2 Using the Command Line Interface CLI Command Groups 72 ...
Page 156: ...Chapter 5 SNMP Commands Notification Log Commands 156 ...
Page 164: ...Chapter 6 Remote Monitoring Commands 164 ...
Page 218: ...Chapter 7 Authentication Commands Management IP Filter 218 ...
Page 268: ...Chapter 8 General Security Measures Port based Traffic Segmentation 268 ...
Page 292: ...Chapter 9 Access Control Lists ACL Information 292 ...
Page 312: ...Chapter 10 Interface Commands Power Savings 312 ...
Page 324: ...Chapter 11 Link Aggregation Commands Trunk Status Display Commands 324 ...
Page 366: ...Chapter 15 Address Table Commands 366 ...
Page 428: ...Chapter 17 VLAN Commands Configuring Voice VLANs 428 ...
Page 572: ...Chapter 25 IP Interface Commands IPv6 Interface 572 ...
Page 578: ...Section I Appendices 578 ...