Simple Network Management Protocol Version 3 (Snmpv3); Snmpv3 Overview - Siemens SWT 3000 Equipment Manual

Teleprotection system
Hide thumbs Also See for SWT 3000:
Table of Contents

Advertisement

alarmRx (severity 1)
The SWT 3000 reports receiver alarm.

Simple Network Management Protocol Version 3 (SNMPv3)

6.2.3
6.2.3.1

SNMPv3 Overview

Authentication in SNMP version 1 and version 2 is nothing more than a password (community string) which is
sent in plaintext between the network manager and the SNMP agent. It is simple to intercept the community
string because the SNMPv2 is a kind of unprotected protocol. Once the community string is known read out
and modification of the device configuration or even shutdown might be possible.
The Simple Network Management Protocol Version 3 (SNMPv3) addresses the cryptographic security weak-
ness of SNMPv1 and SNMPv2 using following methods:
User-based Security Model (USM):
Each user has a name, authentication key and privacy key. MD5 or SHA-1 authentication protocol is used
to authentication SNMPv3 message. SNMPv3 agent authenticates the incoming request message with
authentication key, and rejects the access if the authentication has failed.
The SNMPv3 message data is encrypted and decrypted with privacy key using DES protocol.
View-based Access Control Model:
It is used to control the access of USM user to the managed object of MIB.
SNMPv3 is supported in both PowerLink and SWT 3000 (release ≥ P3.5.120). Additionally, the notification
can be sent out through both SNMP Trap and Inform.
The standard MIB modules are used for SNMPv3 and notification operation.
Table 6-2
MIB
SNMP-FRAMEWORK-MIB
SNMP-NOTIFICATION-MIB
SNMP-TARGET-MIB
SNMP-USER-BASED-SM-MIB
SNMP-VIEW-BASED-ACM-MIB
The private MIB modules are used to access PowerLink and SWT 3000 device configurations.
Table 6-3
MIB
SIEMENS-POWERLINK-CSPI-MIB
SIEMENS-POWERLINK-CSPI-IPCON-MIB
SIEMENS-POWERLINK-CSPI-VMUX-MIB
SIEMENS-POWERLINK-CSPI-ISWT3000R3_5-
MIB
SIEMENS-SWT3000R35-MIB
It is possible to configure PowerLink and SWT 3000 via PowerSys application whether with SNMPv2 or SNMPv3
(for more details, see chapter
Smart Communication, SWT 3000 Teleprotection, Equipment Manual
C53000-G6040-C605-1, Edition 03.2020
Standard MIB Modules
Comments
SNMP Management Architecture MIB (RFC 3411).
This MIB module provides mechanisms to remotely configure the notifica-
tion parameters (RFC 3413).
This MIB module provides mechanisms to remotely configure the target
addresses and security parameters (RFC 3413).
This MIB module provides mechanisms to remotely configure User-based
Security Model (RFC 3414).
This MIB module provides mechanisms to remotely configure View-based
Access Control Model (RFC 3415).
Private MIB Modules of PowerLink and SWT 3000
Comments
This MIB module provides mechanisms to access PowerLink CSPi settings.
This MIB module provides mechanisms to access PowerLink CSPi IP related
settings.
This MIB module provides mechanisms to access PowerLink vMux
settings.
This MIB module provides mechanisms to access integrated SWT 3000
settings.
This MIB module provides mechanisms to access standalone SWT 3000
settings.
6.2.3.2 SNMPv3
Configuration). If SNMPv3 is configured, the USM users, VACM,
SNMP and Remote Access
6.2 SNMP
279

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents