Managing Network Security Notifications - HP PROCURVE 2520 Management And Configuration Manual

Hewlett-packard switch user manual
Hide thumbs Also See for PROCURVE 2520:
Table of Contents

Advertisement

Configuring for Network Management Applications
Using SNMP Tools To Manage the Switch
An example of how to configure SNMPv3 notification is shown here:
Params _name value in the snmpv3 targetaddress command
matches the params _name value in the snmpv3 params
command.
Configuring the security model ver3 requires you to configure
message processing ver3 and a security service level.
Figure 13-10. Example of an SNMPv3 Notification Configuration

Managing Network Security Notifications

By default, a switch is enabled to send the SNMP notifications listed in
"Supported Notifications" on page 13-17 when a network security event (for
example, authentication failure) occurs. However, before security
notifications can be sent, you must first configure one or more trap receivers
or SNMPv3 management stations as described in:
You can manage the default configuration of the switch to disable and re-
enable notifications to be sent for the following types of security events:
13-26
"Configuring an SNMP Trap Receiver" on page 13-19
"Configuring SNMPv3 Notifications" on page 13-23
ARP protection events
Unable to establish a connection with the RADIUS or TACACS+ authen­
tication server
DHCP snooping events
Link change notification
Invalid password entered in a login attempt through a direct serial, Telnet,
or SSH connection
Manager password changes
Port-security (web, MAC, or 802.1X) authentication failure
SNMP authentication failure
The tag _name value in snmpv3 notify command matches the
tag _name value in the snmpv3 targetaddress command.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents