Snmp Security - Alcatel-Lucent OmniSwitch 6860 Troubleshooting Manual

Hide thumbs Also See for OmniSwitch 6860:
Table of Contents

Advertisement

OmniSwitch OS6860/OS6900/OS10K Troubleshooting Guide
AOS Release 7.X and 8.X
187 alaLbdStateChangeForClearViolationA lbd
188 alaLbdStateChangeForAutoRecovery
The OS6860/OS6900/OS10K supports the SNMPv1 and SNMPv2c community strings security standards.
When a community string is carried over an incoming SNMP request, the community string must match up
with a user account name as listed in the community string database on the switch. Otherwise, the SNMP
request will not be processed by the SNMP agent in the switch.
The show snmp community-map command shows the local community strings database, including status,
community string text, and user account name. For example:
-> show snmp community-map
Community mode : enabled
status
community string
--------+--------------------------------+--------------------------------
enabled
public
SNMPv3 authentication is accomplished between the switch and the SNMP management station through the
use of a username and password identified via the SNMP station CLI syntax. The username and password are
used by the SNMP management workstation along with an authentication algorithm, either SHA or MD5, to
compute a hash value that is transmitted in the PDU. When the switch receives the PDU, it will verify the
authentication and encryption for validation.
To display the encryption type, use the show user command:
-> show user snmptest
User name = snmptest,
Password expiration
Password allow to be modified date
Account lockout
= None,
Password bad attempts
Read Only for domains
Read/Write for domains
Read/Write for families = snmp ,
Snmp allowed
= YES,
Snmp authentication
Snmp encryption
= DES
Console-Only
= Disabled

18.2. SNMP Security

By default, the switch is set to privacy all, which means the switch accepts only authenticated and encrypted
v3 Sets, Gets, and Get-Nexts.To verify the SNMP security setting, use the show snmp security command:
-> show snmp security
snmp security = no security
Alcatel-Lucent
lbd
user name
= None,
= None,
= 0,
= None,
= ,
= SHA,
15 seconds
15 seconds
public
Part No.032996-00 Rev.A
January 2015
Page 124 of 148

Hide quick links:

Advertisement

Table of Contents

Troubleshooting

loading

This manual is also suitable for:

Omniswitch 6900

Table of Contents