137
In SNMPv3, User-based Security Model (USM) authenti-
cation is implemented along with encryption, allowing
you to configure a secure SNMP environment. The SN
-
MPv3 protocol uses different terminology than SNMPv1
and SNMPv2c as well. In the SNMPv1 and SNMPv2c
protocols, the terms agent and manager are used. In the
SNMPv3 protocol, agents and managers are renamed to
entities. With the SNMPv3 protocol, you create users and
determine the protocol used for message authentication
as well as if data transmitted between two SNMP enti-
ties is encrypted.
The SNMPv3 protocol supports two authentication pro-
tocols - HMAC-MD5-96 (MD5) and HMAC-SHA-96 (SHA).
Both MD5 and SHA use an algorithm to generate a mes-
sage digest. Each authentication protocol authenticates
a user by checking the message digest. In addition, both
protocols use keys to perform authentication. The keys
for both protocols are generated locally using the Engine
ID and the user password to provide even more security.
In SNMPv1 and SNMPv2c, user authentication is ac-
complished using types of passwords called Communi-
ty Strings, which are transmitted in clear text and not
supported by authentication. Users can assign views to
Community Strings that specify which MIB objects can be
accessed by a remote SNMP manager.
The default Community Strings for the Switch used
for SNMPv1 and SNMPv2c management access for the
Switch are public, which allows authorized management
stations to retrieve MIB objects, and private, which allow
authorized management stations to retrieve and modify
MIB objects.
Содержание EWS5912FP
Страница 7: ...7 Chapter 1 Product Overview ...
Страница 19: ...19 Chapter 2 Controller Management ...
Страница 47: ...47 Apply Click APPLY to update the the system settings ...
Страница 65: ...65 Chapter 3 Switch Management ...
Страница 78: ...78 Apply Click APPLY to update the the system settings ...
Страница 116: ...116 Group List The Group List displays VLAN ID Group IP Address and Members Port in the IGMP Snooping List ...
Страница 120: ...120 Group List The Group List displays the VLAN ID IPv6 Address and Members Port in the MLD Snooping List ...
Страница 165: ...165 Apply Click Apply to update the system settings ...
Страница 187: ...187 Click the Apply button to accept the changes or the Cancel button to discard them ...
Страница 194: ...194 Chapter 4 Maintenance ...
Страница 198: ...198 Appendix ...