Chapter 30 System
USG20(W)-VPN Series User’s Guide
580
The following table describes the labels in this screen.
Table 248
Configuration > System > SNMP
LABEL
DESCRIPTION
Enable
Select the check box to allow or disallow the computer with the IP address that matches
the IP address(es) in the
Service Control
table to access the USG using this service.
Server Port
You may change the server port number for a service if needed, however you must use the
same port number in order to use that service for remote management.
Trap
Community
Type the trap community, which is the password sent with each trap to the SNMP manager.
The default is public and allows all requests.
Destination
Type the IP address of the station to send your SNMP traps to.
SNMPv2c
Select the SNMP version for the USG. The SNMP version on the USG must match the
version on the SNMP manager.
Get
Community
Enter the
Get Community
, which is the password for the incoming Get and GetNext
requests from the management station. The default is public and allows all requests.
Set
Community
Enter the
Set community
, which is the password for incoming Set requests from the
management station. The default is private and allows all requests.
SNMPv3
Select the SNMP version for the USG. The SNMP version on the USG must match the
version on the SNMP manager. SNMPv3 (RFCs 3413 to 3415) provides secure access by
authenticating and encrypting data packets over the network. The USG uses your login
password as the SNMPv3 authentication and encryption passphrase.
Note: Your login password must consist of at least 8 printable characters for SNMPv3. An
error message will display if your login password has fewer characters.
Add
Click this to create a new entry. Select an entry and click
Add
to create a new entry after
the selected entry
Edit
Double-click an entry or select it and click
Edit
to be able to modify the entry’s settings.
Remove
To remove an entry, select it and click
Remove
. The USG confirms you want to remove it
before doing so. Note that subsequent entries move up by one when you take this action.
#
This is the index number of the entry.
User
This displays the name of the user object to be sent to the SNMP manager along with the
SNMP v3 trap.
Authenticati
on
This displays the authentication algorithm used for this entry.
MD5
(Message Digest 5) and
SHA
(Secure Hash Algorithm) are hash algorithms used to authenticate SNMP data. SHA
authentication is generally considered stronger than MD5, but is slower.
Privacy
This displays the encryption method for SNMP communication from this user. Methods
available are:
•
DES
- Data Encryption Standard is a widely used (but breakable) method of data
encryption. It applies a 56-bit key to each 64-bit block of data.
•
AES
- Advanced Encryption Standard is another method for data encryption that also
uses a secret key. AES applies a 128-bit key to 128-bit blocks of data.
Privlege
This displays the access rights to MIBs.
•
Read-Write
- The associated user can create and edit the MIBs on the USG, except the
user account.
•
Read-Only
- The associated user can only collect information from the USG MIBs.
Service Control
This specifies from which computers you can access which USG zones.
Add
Click this to create a new entry. Select an entry and click
Add
to create a new entry after
the selected entry. Refer to
for details on the screen that opens.
Edit
Double-click an entry or select it and click
Edit
to be able to modify the entry’s settings.
Remove
To remove an entry, select it and click
Remove
. The USG confirms you want to remove it
before doing so. Note that subsequent entries move up by one when you take this action.
Summary of Contents for ZyWall USG20-VPN
Page 17: ...17 PART I User s Guide ...
Page 18: ...18 ...
Page 99: ...99 PART II Technical Reference ...
Page 100: ...100 ...