Snmpv3; Users - Avaya G250 Administration

Media gateway
Hide thumbs Also See for G250:
Table of Contents

Advertisement

Configuring SNMP

SNMPv3

SNMPv3 enables the following features over SNMPv1 or v2c:
User authentication with a user name and password.
Communication encryption between the Network Management Station (NMS) and the
SNMP agent at the application level.
Access control definition for specific MIB items available on the SNMP agent.
Notification of specified network events directed toward specified users.
Definition of roles using access control, each with unique access permissions and
authentication and encryption requirements.
The basic components in SNMPv3 access control are users, groups, and views. In addition,
SNMPv3 uses an SNMP engine ID to identify SNMP identity. An SNMP engine ID is assigned to
each MAC address of each device in the network. Each SNMP engine ID should be unique in
the network.

Users

SNMPv3 uses the User-based Security Model (USM) for security, and the View-based Access
Control Model (VACM) for access control. USM uses the HMAC-MD5-96 and HMAC-SHA-96
protocols for user authentication, and the CBC-DES56 protocol for encryption or privacy.
An unlimited number of uses can access SNMPv3 at the same time.
SNMP supports three security levels:
NoAuthNoPriv — This is the lowest level of SNMPv3 security. No Message
Authentication Code (MAC) is provided with the message, and no encryption is performed.
This method maintains the same security level as SNMPv1, but provides a method for
limiting the access rights of the user.
AuthNoPriv — User authentication is performed based on MD5 or SHA algorithms. The
message is sent with an HMAC that is calculated with the user key. The data part is sent
unencrypted.
AuthPriv — User authentication is performed based on MD5 or SHA algorithms. The
message is sent in encrypted MAC that is calculated with the user key, and the data part is
sent with DES56 encryption using the user key.
Use the snmp-server user command to create a user or to change the parameters of an
existing user. This command includes the following parameters:
Username — A string of up to 32 characters representing the name of the user.
Groupname — A string of up to 32 characters representing the name of the group with
which the user is associated.
206 Administration for the Avaya G250 and Avaya G350 Media Gateways

Advertisement

Table of Contents
loading

This manual is also suitable for:

G350

Table of Contents