Operation Manual – Login
H3C S3610&S5510 Series Ethernet Switches
Chapter 8 Controlling Login Users
8-6
To do…
Use the command…
Remarks
Apply the ACL while
configuring the SNMP
user name
snmp-agent usm-user
{
v1
|
v2c
}
user-name
group-name
[
acl
acl-number
]
snmp-agent usm-user
v3
user-name
group-name
[
authentication-mode
{
md5
|
sha
}
auth-password
[
privacy-mode
{
des56
|
aes128
}
priv-password
] ]
[
acl
acl-number
]
Required
Note:
You can specify different ACLs while configuring the SNMP community name, the
SNMP group name and the SNMP user name.
As SNMP community name is a feature of SNMPv1 and SNMPv2c, the specified ACLs
in the command that configures SNMP community names (the
snmp-agent
community
command) take effect in the network management systems that adopt
SNMPv1 or SNMPv2c.
Similarly, as SNMP group name and SNMP user name are features of SNMPv2c and
the higher SNMP versions, the specified ACLs in the commands that configure SNMP
group names (the
snmp-agent group
command and the
snmp-agent group
v3
command) and SNMP user names (the
snmp-agent usm-user
command and the
snmp-agent usm-user
v3
command) take effect in the network management systems
that adopt SNMPv2c or higher SNMP versions. If you configure both the SNMP group
name and the SNMP user name and specify ACLs in the two operations, the switch will
filter network management users by both SNMP group name and SNMP user name.
8.3.3 Configuration Example
I. Network requirements
Only SNMP users sourced from the IP addresses of 10.110.100.52 and 10.110.100.46
are permitted to access the switch.