Optional) Controlling The Nm Station's Access To The Device - Huawei Quidway S5700 Series Configuration Manual - Network Management

Hide thumbs Also See for Quidway S5700 Series:
Table of Contents

Advertisement

Quidway S5700 Series Ethernet Switches
Configuration Guide - Network Management

1.4.3 (Optional) Controlling the NM Station's Access to the Device

This section describes how to specify an NM station and manageable MIB objects for SNMPv3-
based communication between the NM station and managed device to improve communication
security.
Context
If a device is managed by multiple NM stations that are in the same SNMPv3 user group, note
the following points:
l
l
l
l
Procedure
Step 1 Run:
system-view
The system view is displayed.
Step 2 Run:
acl acl-number
A basic ACL is created to filter the NM station users that can manage the device.
Step 3 Run:
rule [ rule-id ] { deny | permit } source { source-ip-address source-wildcard |
any }
A rule is added to the ACL.
Step 4 Run:
quit
Return to the system view.
Step 5 Run:
snmp-agent mib-view { excluded | included } view-name oid-tree
A MIB view is created, and manageable MIB objects are specified.
By default, an NM station has rights to access the objects in the Viewdefault view (1.3.6.1).
l If a few MIB objects on the device or some objects in the current MIB view do not or no
l If a few MIB objects on the device or some objects in the current MIB view need to be
Issue 01 (2011-10-26)
If all the NM stations need to have rights to access the objects in the Viewdefault view
(1.3.6.1), skip the following steps.
If some of the NM stations need to have rights to access the objects in the Viewdefault view
(1.3.6.1), skip Step 5.
If all the NM stations need to manage specified objects on the device, skip Steps 2, 3, and
4.
If some of the NM stations need to manage specified objects on the device, perform all the
following steps.
longer need to be managed by the NM station, excluded needs to be specified in the command
to exclude these MIB objects.
managed by the NM station, included needs to be specified in the command to include these
MIB objects.
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
1 SNMP Configuration
30

Advertisement

Table of Contents
loading

Table of Contents