![Nortel 2526T Configuration Download Page 149](http://html1.mh-extra.com/html/nortel/2526t/2526t_configuration_1707291149.webp)
Configuring Security using Device Manager
149
User-based Security Model
The User-based Security Model (USM) provides a mechanism to
authenticate and encrypt SNMPv3 messages.
A message, if configured, is authenticated with the help of a one-way hash
function that is associated with an individual user ID. In the Ethernet Routing
Switch 2500 Series, a user can be configured to use the HMAC-MD5-96 or
the HMAC-SHA-96 algorithm for the authentication of SNMPv3 messages.
An SNMPv3 message, if configured, is encrypted with the help of the Cipher
Block Chaining - Data Encryption Standard (CBC-DEC).
An SNMPv3 user can be configured in three ways.
Table 67 "SNMPv3 user configuration method" (page 149)
describes the
ways in which an SNMPv3 user can be configured.
Table 67
SNMPv3 user configuration method
SNMPv3 Configuration
Method
Description
NoAuthNoPriv
The user cannot use an authentication or an
encryption mechanism.
AuthNoPriv
The user can use an authentication but not an
encryption mechanism.
AuthPriv
The user can use an authentication as well as an
encryption mechanism.
For more information on USM, see RFC 3414.
Configuring the User-based Security Model
To create a user in the USM table, use the following procedure:
Step
Action
1
From the Device Manager menu bar, choose Edit > SnmpV3 >
USM Table.
The USM dialog box appears.
The following figure displays the USM dialog box.
Nortel Ethernet Routing Switch 2500 Series
Security — Configuration and Management
NN47215-505 (323165-B)
02.01
Standard
4.1
19 November 2007
Copyright © 2007, Nortel Networks
.
Summary of Contents for 2526T
Page 227: ......