Placing An Inet Radio Behind A Firewall; Snmpv3 Notes; Overview; Snmpv3 Accounts - GE MDS iNET Series Reference Manual

Wireless ip/ethernet transceiver
Hide thumbs Also See for MDS iNET Series:
Table of Contents

Advertisement

4.4.9 Placing an iNET Radio Behind a Firewall

iNET-II and iNET radios use the port numbers listed below. If you place the radio behind a firewall, make
sure these port numbers are included in the allowed list:
• SSH:22<- Management
• TELNET:23<- Management
• SMTP:25<- DF1
• TFTP:69<- Reprogramming
• HTTP:80<- Management
• NTP:123<- Time server
• SNMP:161<- Management
• SNMP-TRAP:162<- Event management via traps
• HTTPS:443<- Management
• SYSLOG:514<- Event management via remote syslog
server
These well-known port numbers follow the recommendation of IANA. For more information, go to
http://www.iana.org/assignments/port-numbers.

4.5 SNMPv3 Notes

4.5.1 Overview

The transceiver's SNMP Agent supports SNMP version 3 (SNMPv3). The SNMPv3 protocol introduces
Authentication (MD5/SHA-1), Encryption (DES), the USM User Table, and View-Based Access (Refer to
RFC2574 for full details). The SNMP Agent has limited SNMPv3 support in the following areas:
• Both MD5 and SHA-1 Authentication for SNMPv3 are supported. To choose between the two dif-
ferent authentication protocols, choose the corresponding account which is described in the section
on page 120.
• Limited USM User Table Manipulation. The SNMP Agent starts with nine default accounts. iNET
does not support adding SNMPv3 accounts manually.
New views cannot be configured on the SNMP Agent. Views will be inherited for new accounts from
the account that was cloned.
The SNMP Agent uses one password pair (Authentication / Privacy) for all accounts. This means that
when the passwords change for one user, they change for all users.

SNMPv3 Accounts

The following default accounts are available for the SNMP Agent:
—Read/write account using MD5 Authentication and Encryption.
enc_mdsadmin
—Read/write account using MD5 Authentication.
auth_mdsadmin
—Read only account using MD5 Authentication and Encryption.
enc_mdsviewer
—Read only account using MD5 Authentication.
auth_mdsviewer
—Read only account with no Authentication or Encryption.
def_mdsviewer
—Read/write account using SHA-1 Authentication and Encryption.
sha1_enc_mdsadmin
120
MDS iNET Series Reference Manual
05-2806A01, Rev. L

Advertisement

Table of Contents
loading

This manual is also suitable for:

Mds inet-ii 900Mds inet 900

Table of Contents