Broadmore 1750 - Release 4.6
12-7
SNMP
Configuration
USM/VACM Configuration
USM provides authentication and privacy services for SNMPv3. USM provides
improved security over SNMPv1 and SNMPv2 by adding encryption and synchronized
time indicators. Although USM uses cryptography to support the underlying protocol,
it is a plain-text service and does not provide the level of data confidentiality or
protection required by FIPS-2. Consequently, it should be treated like any other plain-
text service port.
USM uses loosely synchronized monotonically increasing time indicators to defend
against certain message stream modification attacks. Automatic clock synchronization
mechanisms based on the protocol are specified without dependence on third-party
time sources and concomitant security considerations.
VACM is an architecture for viewing and controlling users. VACM defines the access
control policy that determines which users can access which subset of MIB objects in
the Broadmore. VACM also defines the type of access (Read/Write) over a view.
The Broadmore organizes the USM/VACM into four tables or
entities
: Views, Users,
Groups, and Access. With each entity, the following
actions
are associated:
Edit – used to modify an existing User, View, Group or an Access entry
Copy – used to copy the information for an existing User, View, Group or an
Access entry as a basis for a new one
Delete – used to delete an existing User, View, Group or an Access entry
New – used to add a new User, View, Group or an Access entry
Validate Table – used to check table entries for consistency with other tables.
The Communities table supports the coexistence of SNMP v1, v2, and v3 access
described in RFC 2576. The Communities table supports v1/v2 get, set, and trap
requests within USM/VACM.
NOTE:
When configuring USM/VACM, please note the consequences
of selecting certain “Storage Type” parameters in the tables. “Permanent”
entries cannot be deleted except by deleting the entire SNMP configuration
and rebooting. “Read Only” entries can only be edited or removed by
deleting the entire SNMP configuration and rebooting.
Содержание Broadmore 1750
Страница 1: ...Broadmore TM 1750 USER MANUAL Part Number 770 0020 DC Product Release 4 6 January 2008 ...
Страница 24: ...xii Broadmore 1750 Release 4 6 Table of Contents ...
Страница 50: ...1 26 Broadmore 1750 Release 4 6 Product Description Alarm Power Module IOM ...
Страница 69: ...CHAPTER 3 Receipt of Product In this Chapter Receipt 3 2 Unpacking 3 2 Inspection 3 3 ...
Страница 72: ...3 4 Broadmore 1750 Release 4 6 Receipt of Product Damage Reporting ...
Страница 82: ...4 10 Broadmore 1750 Release 4 6 Chassis Installation and Grounding AC Power Supply Tray ...
Страница 114: ...6 16 Broadmore 1750 Release 4 6 Electrical Installation Software ...
Страница 188: ...7 74 Broadmore 1750 Release 4 6 Configuration Help ...
Страница 199: ...Broadmore 1750 Release 4 6 8 11 Maintenance and Troubleshooting Slot Statistics for NIM SAM Cards ...
Страница 200: ...8 12 Broadmore 1750 Release 4 6 Maintenance and Troubleshooting Slot Statistics for NIM SAM Cards ...
Страница 234: ...8 46 Broadmore 1750 Release 4 6 Maintenance and Troubleshooting Summary of Front Panel LEDs ...
Страница 244: ...9 10 Broadmore 1750 Release 4 6 Command Line Interface About Command ...
Страница 266: ...10 22 Broadmore 1750 Release 4 6 Security Management FTP Login ...
Страница 302: ...11 36 Broadmore 1750 Release 4 6 Security Management FIPS Mode sshdShow ...
Страница 311: ...Broadmore 1750 Release 4 6 11 45 Security Management FIPS Mode Logging in with SecurID Disabled ...
Страница 314: ...11 48 Broadmore 1750 Release 4 6 Security Management FIPS Mode Logging in with SecurID Enabled ...
Страница 318: ...11 52 Broadmore 1750 Release 4 6 Security Management FIPS Mode Sanitation Procedures ...
Страница 362: ...12 44 Broadmore 1750 Release 4 6 SNMP Configuration Notify Profiles ...
Страница 363: ...APPENDIX A Technical Specifications In this Appendix Broadmore 1750 Platform A 2 Broadmore Modules A 6 ...
Страница 370: ...A 8 Broadmore 1750 Release 4 6 Technical Specifications E3 Unstructured Circuit Emulation SAM ...
Страница 373: ...APPENDIX C Software Error Messages In this Appendix Overview System Errors Setup Errors ...
Страница 383: ...APPENDIX E Chassis Differences ...
Страница 386: ...E 4 Broadmore 1750 Release 4 6 Chassis Differences Software Differences ...
Страница 394: ...F 8 Broadmore 1750 Release 4 6 IPv6 Support Deleting a Network Route ...
Страница 398: ...G 4 Broadmore 1750 Release 4 6 Broadmore Command List Commands Available at the CLI Prompt ...
Страница 408: ...Glossary 10 Broadmore 1750 Release 4 6 Glossary ...