Setting Community Access Strings - Digisol DG-FS4526 Management Manual

Mustang 4000 switch series
Table of Contents

Advertisement

3
Configuring the Switch
Access to the switch using from clients using SNMPv3 provides additional security
features that cover message integrity, authentication, and encryption; as well as
controlling user access to specific areas of the MIB tree.
The SNMPv3 security structure consists of security models, with each model having
it's own security levels. There are three security models defined, SNMPv1,
SNMPv2c, and SNMPv3. Users are assigned to "groups" that are defined by a
security model and specified security levels. Each group also has a defined security
access to set of MIB objects for reading and writing, which are known as "views."
The switch has a default view (all MIB objects) and default groups defined for
security models v1 and v2c. The following table shows the security models and
levels available and the system default settings.
Model Level
v1
noAuthNoPriv public
v1
noAuthNoPriv private
v1
noAuthNoPriv user defined user defined user defined user defined Community string only
v2c
noAuthNoPriv public
v2c
noAuthNoPriv private
v2c
noAuthNoPriv user defined user defined user defined user defined Community string only
v3
noAuthNoPriv user defined user defined user defined user defined A user name match only
v3
AuthNoPriv
v3
AuthPriv
Note:
The predefined default groups and view can be deleted from the system. You can
then define customized groups and views for the SNMP clients that require access.

Setting Community Access Strings

You may configure up to five community strings authorized for management access.
All community strings used for IP Trap Managers should be listed in this table. For
security reasons, you should consider removing the default strings.
Command Attributes
• SNMP Community Capability – Indicates that the switch supports up to five
community strings.
3-36
Table 3-4 SNMPv3 Security Models and Levels
Group
Read View
defaultview
(read only)
defaultview
(read/write)
defaultview
(read only)
defaultview
(read/write)
user defined user defined user defined user defined Provides user
user defined user defined user defined user defined Provides user
www.digisol.com
Write View Notify View Security
none
none
defaultview none
none
none
defaultview none
Community string only
Community string only
Community string only
Community string only
authentication via MD5 or
SHA algorithms
authentication via MD5 or
SHA algorithms and data
privacy using DES 56-bit
encryption

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents