
C
HAPTER
15
| Basic Administration Protocols
Simple Network Management Protocol
– 390 –
Managed devices supporting SNMP contain software, which runs locally on
the device and is referred to as an agent. A defined set of variables, known
as managed objects, is maintained by the SNMP agent and used to manage
the device. These objects are defined in a Management Information Base
(MIB) that provides a standard presentation of the information controlled
by the agent. SNMP defines both the format of the MIB specifications and
the protocol used to access this information over the network.
The switch includes an onboard agent that supports SNMP versions 1, 2c,
and 3. This agent continuously monitors the status of the switch hardware,
as well as the traffic passing through its ports. A network management
station can access this information using network management software.
Access to the onboard agent from clients using SNMP v1 and v2c is
controlled by community strings. To communicate with the switch, the
management station must first submit a valid community string for
authentication.
Access to the switch from clients using SNMPv3 provides additional security
features that cover message integrity, authentication, and encryption; as
well as controlling user access to specific areas of the MIB tree.
The SNMPv3 security structure consists of security models, with each
model having it’s own security levels. There are three security models
defined, SNMPv1, SNMPv2c, and SNMPv3. Users are assigned to “groups”
that are defined by a security model and specified security levels. Each
group also has a defined security access to set of MIB objects for reading
and writing, which are known as “views.” The switch has a default view (all
MIB objects) and default groups defined for security models v1 and v2c.
The following table shows the security models and levels available and the
system default settings.
Table 29: SNMPv3 Security Models and Levels
Model Level
Group
Read View
Write View
Notify View Security
v1
noAuthNoPriv public
(read only)
defaultview
none
none
Community string only
v1
noAuthNoPriv private
(read/write)
defaultview
defaultview
none
Community string only
v1
noAuthNoPriv
user defined user defined
user defined
user defined
Community string only
v2c
noAuthNoPriv public
(read only)
defaultview
none
none
Community string only
v2c
noAuthNoPriv private
(read/write)
defaultview
defaultview
none
Community string only
v2c
noAuthNoPriv
user defined user defined
user defined
user defined
Community string only
v3
noAuthNoPriv
user defined user defined
user defined
user defined
A user name match only
v3
AuthNoPriv
user defined user defined
user defined
user defined
Provides user authentication via MD5 or
SHA algorithms
v3
AuthPriv
user defined user defined
user defined
user defined
Provides user authentication via MD5 or
SHA algorithms and data privacy using
DES 56-bit encryption
Содержание DG-FS4526E
Страница 4: ...ABOUT THIS GUIDE 4...
Страница 34: ...CONTENTS 34...
Страница 50: ...TABLES 50...
Страница 52: ...SECTION I Getting Started 52...
Страница 62: ...CHAPTER 1 Introduction System Defaults 62...
Страница 80: ...CHAPTER 2 Initial Switch Configuration Managing System Files 80...
Страница 82: ...SECTION II Web Configuration 82...
Страница 100: ...CHAPTER 3 Using the Web Interface Navigating the Web Browser Interface 100...
Страница 128: ...CHAPTER 4 Basic Management Tasks Resetting the System 128...
Страница 166: ...CHAPTER 5 Interface Configuration VLAN Trunking 166...
Страница 198: ...CHAPTER 6 VLAN Configuration Configuring VLAN Mirroring 198...
Страница 516: ...CHAPTER 17 IP Services Displaying the DNS Cache 516...
Страница 562: ...CHAPTER 19 Using the Command Line Interface CLI Command Groups 562...
Страница 652: ...CHAPTER 22 SNMP Commands 652...
Страница 660: ...CHAPTER 23 Remote Monitoring Commands 660...
Страница 714: ...CHAPTER 24 Authentication Commands Management IP Filter 714...
Страница 802: ...CHAPTER 27 Interface Commands 802...
Страница 824: ...CHAPTER 29 Port Mirroring Commands RSPAN Mirroring Commands 824...
Страница 846: ...CHAPTER 32 Address Table Commands 846...
Страница 874: ...CHAPTER 33 Spanning Tree Commands 874...
Страница 886: ...CHAPTER 34 ERPS Commands 886...
Страница 928: ...CHAPTER 35 VLAN Commands Configuring Voice VLANs 928...
Страница 942: ...CHAPTER 36 Class of Service Commands Priority Commands Layer 3 and 4 942...
Страница 998: ...CHAPTER 38 Multicast Filtering Commands Multicast VLAN Registration 998...
Страница 1022: ...CHAPTER 39 LLDP Commands 1022...
Страница 1064: ...CHAPTER 40 CFM Commands 1064...
Страница 1084: ...CHAPTER 42 Domain Name Service Commands 1084...
Страница 1090: ...CHAPTER 43 DHCP Commands DHCP Client 1090...
Страница 1122: ...CHAPTER 44 IP Interface Commands IPv6 Interface 1122...
Страница 1124: ...SECTION IV Appendices 1124...
Страница 1129: ...APPENDIX A Software Specifications Management Information Bases 1129 Trap RFC 1215 UDP MIB RFC 2013...
Страница 1130: ...APPENDIX A Software Specifications Management Information Bases 1130...
Страница 1152: ...COMMAND LIST 1152...
Страница 1161: ......
Страница 1162: ...DG FS4526E 042012 HW R01...