Configuring SNMPv3 Management Access
To configure SNMPv3 management access to the switch, follow these steps:
1. If you want to change the default engine ID, do so before configuring other
SNMP parameters.
2. Specify read and write access views for the switch MIB tree.
3.
Configure SNMP user groups with the required security model (i.e., SNMP v1,
v2c or v3) and security level (i.e., authentication and privacy).
4.
Assign SNMP users to groups, along with their specific authentication and
privacy passwords.
Setting a Local Engine ID
An SNMPv3 engine is an independent SNMP agent that resides on the switch. This
engine protects against message replay, delay, and redirection. The engine ID is
also used in combination with user passwords to generate the security keys for
authenticating and encrypting SNMPv3 packets.
A local engine ID is automatically generated that is unique to the switch. This is
referred to as the default engine ID. If the local engineID is deleted or changed, all
SNMP users will be cleared. You will need to reconfigure all existing users.
A new engine ID can be specified by entering 9 to 64 hexadecimal characters. If an
odd number of characters are specified, a trailing zero is added to the value to fill in
the missing octet. For example, the value “123456789” is equivalent to
“1234567890”.
Web
– Click SNMP, SNMPv3, Engine ID. Enter an ID of up to 64 hexadecimal
characters and then click Save.
Figure 5-4 Setting the SNMPv3 Engine ID
CLI
– This example sets an SNMPv3 engine ID.
Configuring SNMPv3 Management Access
5
Console(config)#snmp-server engine-id local 12345abcdef
Console(config)#exit
Console#show snmp engine-id
Local SNMP engineID: 8000002a8000000000e8666672
Local SNMP engineBoots: 1
Console#
24-8
24-9
5-7
Содержание IC40240-10G
Страница 1: ...IntraCore 40240 40480 10G Layer 3 Gigabit Stackable Ethernet Switch User s Manual ...
Страница 4: ...IC40240 10G 99 00837 IC40480 10G 99 00836 ...
Страница 6: ...ii ...
Страница 33: ...Getting Started ...
Страница 43: ...1 1 10 Introduction ...
Страница 61: ...2 2 18 Initial Configuration ...
Страница 63: ...Switch Management ...
Страница 75: ...3 3 12 Configuring the Switch ...
Страница 117: ...4 4 42 Basic Management Tasks ...
Страница 163: ...6 6 28 User Authentication ...
Страница 175: ...7 7 12 Access Control Lists ...
Страница 283: ...14 14 8 Quality of Service ...
Страница 293: ...15 15 10 Multicast Filtering ...
Страница 299: ...16 16 6 Domain Name Service ...
Страница 309: ...17 17 10 Dynamic Host Configuration Protocol ...
Страница 319: ...18 18 10 Configuring Router Redundancy ...
Страница 343: ...19 19 24 IP Routing ...
Страница 355: ...Web Click Routing Protocol RIP Statistics Figure 20 5 RIP Statistics 20 12 Unicast Routing 20 ...
Страница 385: ...20 20 42 Unicast Routing ...
Страница 387: ...Command Line Interface ...
Страница 399: ...21 21 12 Overview of the Command Line Interface ...
Страница 465: ...24 24 16 SNMP Commands ...
Страница 519: ...26 26 18 Access Control List Commands ...
Страница 545: ...30 30 2 Rate Limit Commands ...
Страница 611: ...34 34 24 VLAN Commands ...
Страница 625: ...35 35 14 Class of Service Commands ...
Страница 633: ...36 7 police 36 ...
Страница 670: ...39 39 16 DHCP Commands ...
Страница 716: ...41 41 36 IP Interface Commands ...
Страница 768: ...42 42 52 IP Routing Commands ...
Страница 770: ...Appendices ...
Страница 791: ......
Страница 792: ...IC40240 10G IC40480 10G ...