
51
Simple Network Management Protocol (SNMP)
The Simple Network Management Protocol (SNMP) is designed to manage devices on IP networks by monitoring device operation,
which might require administrator intervention.
NOTE: On Dell Networking routers, standard and private SNMP management information bases (MIBs) are supported,
including all
Get
and a limited number of
Set
operations (such as
set vlan
and
copy cmd
).
Protocol Overview
Network management stations use SNMP to retrieve or alter management data from network elements.
A datum of management information is called a
managed object
; the value of a managed object can be static or variable. Network
elements store managed objects in a database called a
management information base
(MIB).
MIBs are hierarchically structured and use object identifiers to address managed objects, but managed objects also have a textual
name called an
object descriptor
.
Implementation Information
The following describes SNMP implementation information.
•
Dell Networking OS supports SNMP version 1 as defined by RFC 1155, 1157, and 1212, SNMP version 2c as defined by RFC 1901,
and SNMP version 3 as defined by RFC 2571.
•
Dell Networking OS supports up to 16 trap receivers.
•
Dell Networking OS implementation of the sFlow MIB supports sFlow configuration via SNMP sets.
•
SNMP traps for the spanning tree protocol (STP) and multiple spanning tree protocol (MSTP) state changes are based on
BRIDGE MIB (RFC 1483) for STP and IEEE 802.1
draft ruzin-mstp-mib-02
for MSTP.
SNMPv3 Compliance With FIPS
SNMPv3 is compliant with the Federal information processing standard (FIPS) cryptography standard. The Advanced Encryption
Standard (AES) Cipher Feedback (CFB) 128-bit encryption algorithm is in compliance with RFC 3826. SNMPv3 provides multiple
authentication and privacy options for user configuration. A subset of these options are the FIPS-approved algorithms: HMAC-
SHA1-96 for authentication and AES128-CFB for privacy. The other options are not FIPS-approved algorithms because of known
security weaknesses. The AES128-CFB privacy option is supported and is compliant with RFC 3826.
The SNMPv3 feature also uses a FIPS-validated cryptographic module for all of its cryptographic operations when the system is
configured with the
fips mode enable
command in Global Configuration mode. When the FIPS mode is enabled on the system,
SNMPv3 operates in a FIPS-compliant manner, and only the FIPS-approved algorithm options are available for SNMPv3 user
configuration. When the FIPS mode is disabled on the system, all options are available for SNMPv3 user configuration.
The following table describes the authentication and privacy options that can be configured when the FIPS mode is enabled or
disabled:
796
Simple Network Management Protocol (SNMP)
Содержание S4048-ON
Страница 1: ...Dell Configuration Guide for the S4048 ON System 9 9 0 0 ...
Страница 146: ...Figure 14 BFD Three Way Handshake State Changes 146 Bidirectional Forwarding Detection BFD ...
Страница 477: ...Figure 68 Inspecting Configuration of LAG 10 on ALPHA Link Aggregation Control Protocol LACP 477 ...
Страница 480: ...Figure 70 Inspecting a LAG Port on BRAVO Using the show interface Command 480 Link Aggregation Control Protocol LACP ...
Страница 481: ...Figure 71 Inspecting LAG 10 Using the show interfaces port channel Command Link Aggregation Control Protocol LACP 481 ...
Страница 522: ...Figure 87 Configuring Interfaces for MSDP 522 Multicast Source Discovery Protocol MSDP ...
Страница 523: ...Figure 88 Configuring OSPF and BGP for MSDP Multicast Source Discovery Protocol MSDP 523 ...
Страница 524: ...Figure 89 Configuring PIM in Multiple Routing Domains 524 Multicast Source Discovery Protocol MSDP ...
Страница 528: ...Figure 91 MSDP Default Peer Scenario 1 528 Multicast Source Discovery Protocol MSDP ...
Страница 529: ...Figure 92 MSDP Default Peer Scenario 2 Multicast Source Discovery Protocol MSDP 529 ...
Страница 530: ...Figure 93 MSDP Default Peer Scenario 3 530 Multicast Source Discovery Protocol MSDP ...
Страница 633: ...Policy based Routing PBR 633 ...
Страница 777: ...Figure 119 Single and Double Tag TPID Match Service Provider Bridging 777 ...
Страница 778: ...Figure 120 Single and Double Tag First byte TPID Match 778 Service Provider Bridging ...