HPE FlexNetwork 5130 HI Series Network Management And Monitoring Command Reference page 203

Hide thumbs Also See for FlexNetwork 5130 HI Series:
Table of Contents

Advertisement

If you specify only user roles but do not change any other settings each time, the snmp-agent
usm-user v3 command assigns different user roles to the user. Other settings remain
unchanged.
If you specify user roles and also change other settings each time, the snmp-agent usm-user
v3 command assigns different user roles to the user. The most recent configuration for other
settings takes effect.
You can specify an ACL for the user and group, respectively, to filter illegitimate NMSs from
accessing the agent. Only the NMSs permitted by the ACLs for both the user and group can access
the SNMP agent. The following rules apply to the ACLs for the user and group:
If you do not specify an ACL, the specified ACL does not exist, or the specified ACL does not
have any rules, all NMSs that use the username can access the SNMP agent.
If you have specified an ACL and the ACL has rules, only the NMSs permitted by the ACL can
access the agent.
For more information about ACL, see ACL and QoS Configuration Guide.
Examples
In VACM mode:
# Add user testUser to SNMPv3 group testGroup, and enable authentication for the group. Specify
authentication algorithm HMAC-SHA1 and plaintext-form authentication key 123456TESTplat&! for
the user.
<Sysname> system-view
[Sysname] snmp-agent group v3 testGroup authentication
[Sysname] snmp-agent usm-user v3 testUser testGroup simple authentication-mode sha
123456TESTplat&!
# For an NMS to access the MIB objects in the default view ViewDefault, make sure the following
configurations on the NMS are the same as the SNMP agent:
SNMPv3 username.
SNMP protocol version.
Authentication algorithm and key.
# Add user testUser to SNMPv3 group testGroup, and enable authentication and encryption for the
group. Specify authentication algorithm HMAC-SHA1, encryption algorithm AES, plaintext-form
authentication key 123456TESTauth&!, and plaintext-form encryption key 123456TESTencr&! for
the user.
<Sysname> system-view
[Sysname] snmp-agent group v3 testGroup privacy
[Sysname] snmp-agent usm-user v3 testUser testGroup simple authentication-mode sha
123456TESTauth&! privacy-mode aes128 123456TESTencr&!
# For an NMS to access the MIB objects in the default view ViewDefault, make sure the following
configurations on the NMS are the same as the SNMP agent:
SNMPv3 username.
SNMP protocol version.
Authentication algorithm.
Privacy algorithm.
Plaintext authentication and encryption keys.
# Add user remoteUser for the SNMP remote engine at 10.1.1.1 to SNMPv3 group testGroup, and
enable authentication and encryption for the group. Specify authentication algorithm HMAC-SHA1,
encryption algorithm AES, plaintext-form authentication key 123456TESTauth&!, and plaintext-form
encryption key 123456TESTencr&! for the user.
<Sysname> system-view
194

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents