Users - Alcatel-Lucent 7450 System Management Manual

Ethernet service switch
Hide thumbs Also See for 7450:
Table of Contents

Advertisement

Users

By default, authentication and encryption parameters are not configured. Authentication
parameters which a user must use in order to be validated by the router can be modified.
SNMP authentication allows the device to validate the managing node that issued the SNMP
message and determine if the message has been tampered with.
User access and authentication privileges must be explicitly configured. In a user
configuration, a user is associated with an access group, which is a collection of users who
have common access privileges and views (see
Per-VPRN Logs and SNMP Access
Configuration of VPRN-specific logs (with VPRN-specific syslog destinations, SNMP trap/
notification groups, etc) is supported in addition to the global logs configured under "config
log". The event streams for vprn logs contain only events that are associated with the
particular vprn.
Each VPRN service can be configured with a set of SNMP v1/v2c community strings. These
communities are mapped to the default "snmp-vprn" and "snmp-vprn-ro" views, which limit
SNMP access to objects associated with a specific VPRN. For example, walking the ifTable
(IF-MIB) using the community configured for VPRN 5 will return counters and status for
VPRN 5. See the "vprn <x> snmp community" command description for more details.
Per-SNMP Community Source IP Address Validation
SNMPv1 and SNMPv2c requests can be validated against per-snmp-community whitelists
(src-access-list) of configured source IPv4 and IPv6 addresses. Source IP address lists can be
configured and then associated with an SNMP community.
SNMPv1 and SNMPv2c requests that fail the source IP address and community validation
checks are discarded and are logged as SNMP event 2003 authenticationFailure (suppressed
by default under "event-control").
7450 ESS System Mangement Guide
Access
Groups).
SNMP
Page 287

Advertisement

Table of Contents
loading

Table of Contents