1-27
[Sysname] snmp-agent usm-user v2c userv2c readCom
Specify the SNMP version of the NMS as
SNMPv2c
, fill the write community name field with
userv2c
.
Then the NMS can access the agent.
# Create an SNMPv2c user
userv2c
in group
readCom
, permitting only the NMS with an IP address
1.1.1.1 to access the agent, and denying the access of other NMSs.
<Sysname> system-view
[Sysname] acl number 2001
[Sysname-acl-basic-2001] rule permit source 1.1.1.1 0.0.0.0
[Sysname-acl-basic-2001] rule deny source any
[Sysname-acl-basic-2001] quit
[Sysname] snmp-agent sys-info version v2c
[Sysname] snmp-agent group v2c readCom
[Sysname] snmp-agent usm-user v2c userv2c readCom acl 2001
Specify the SNMP version of the NMS with an IP address 1.1.1.1 as
SNMPv2c
, fill the write community
name field with
userv2c
. Then the NMS can access the agent.
snmp-agent usm-user v3
Syntax
snmp
-
agent usm
-
user
v3
user-name
group-name
[ [
cipher
]
authentication
-
mode
{
md5
|
sha
}
auth-password
[
privacy
-
mode
{
des56
|
aes128
}
priv-password
] ] [
acl
acl-number
]
undo snmp
-
agent usm
-
user
v3
user-name
group-name
{
local
|
engineid
engineid-string
}
View
System view
Parameters
user-name
: Username, a string of 1 to 32 characters.
group-name
: Name of the group corresponding to the user, a string of 1 to 32 characters.
cipher
: Specifies the authentication password (
auth-password
) or encryption password (
priv-password
)
to be in cipher text. The cipher text password can be calculated using the
snmp-agent
calculate-password
command.
authentication-mode
: Specifies the security mode as authentication required. If you do not specify this
keyword, neither authentication nor encryption is performed.
md5
: Uses HMAC MD5 algorithm for authentication.
sha
: Uses HMAC SHA algorithm for authentication, which is securer than MD5.
auth-password
: Authentication password, a string of 1 to 64 characters in plain text, a 32-bit
hexadecimal number in cipher text if MD5 algorithm is used, and a 40-bit hexadecimal number in cipher
text if SHA algorithm is used.
privacy
: Specifies the security mode as encrypted.
des56
: Specifies the encryption protocol as Data Encryption Standard (DES).
aes128
: Specifies the encryption protocol as Advanced Encryption Standard (AES), which is securer
than DES.
Содержание 5500-EI PWR
Страница 43: ...2 6...
Страница 76: ...1 17...
Страница 228: ...ii stp transmit limit 1 44 vlan mapping modulo 1 45 vlan vpn tunnel 1 46...
Страница 477: ...5 24 Sysname vlan 2 Sysname vlan2 service type multicast...
Страница 503: ...2 3 System View return to User View with Ctrl Z Sysname dot1x url http 192 168 19 23...
Страница 519: ...iii...
Страница 597: ...2 2 security policy server 192 168 0 1 user name format without domain...
Страница 648: ...1 9 Examples Clear static ARP entries Sysname reset arp static...
Страница 663: ...4 3 Sysname resilient arp interface vlan interface 2...
Страница 767: ...1 28 From 12 00 Jan 1 2008 to 12 00 Jun 1 2008...
Страница 1111: ...ii xmodem get 3 18...
Страница 1314: ...A 44 Z...