Table 27: Snmpv3 Security Models And Levels - LevelOne GEL-1061 User Manual

Managed gigabit switch
Table of Contents

Advertisement

Chapter 13
| Basic Administration Protocols
Simple Network Management Protocol

Table 27: SNMPv3 Security Models and Levels

Model Level
Group
v1
noAuthNoPriv
public
(read only)
v1
noAuthNoPriv
private
(read/write)
v1
noAuthNoPriv
user defined
v2c
noAuthNoPriv
public
(read only)
v2c
noAuthNoPriv
private
(read/write)
v2c
noAuthNoPriv
user defined
v3
noAuthNoPriv
user defined
v3
AuthNoPriv
user defined
v3
AuthPriv
user defined
information using network management software. Access to the onboard agent
from clients using SNMP v1 and v2c is controlled by community strings. To
communicate with the switch, the management station must first submit a valid
community string for authentication.
Access to the switch from clients using SNMPv3 provides additional security
features that cover message integrity, authentication, and encryption; as well as
controlling user access to specific areas of the MIB tree.
The SNMPv3 security structure consists of security models, with each model having
it's own security levels. There are three security models defined, SNMPv1, SNMPv2c,
and SNMPv3. Users are assigned to "groups" that are defined by a security model
and specified security levels. Each group also has a defined security access to set of
MIB objects for reading and writing, which are known as "views. " The switch has a
default view (all MIB objects) and default groups defined for security models v1 and
v2c. The following table shows the security models and levels available and the
system default settings.
Read View
Write View
defaultview
none
defaultview
defaultview
user defined
user defined
defaultview
none
defaultview
defaultview
user defined
user defined
user defined
user defined
user defined
user defined
user defined
user defined
Note:
The predefined default groups and view can be deleted from the system.
You can then define customized groups and views for the SNMP clients that require
access.
Notify View
Security
none
Community string only
none
Community string only
user defined
Community string only
none
Community string only
none
Community string only
user defined
Community string only
user defined
A user name match only
user defined
Provides user authentication via MD5 or SHA
algorithms
user defined
Provides user authentication via MD5 or SHA
algorithms and data privacy using DES 56-
bit encryption
– 348 –

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Gep-1061Gel-2861

Table of Contents