Controlling Network Management Users By Source Ip Addresses; Prerequisites - 3Com WX3000 Series Operation Manual

Unified switches switching engine
Table of Contents

Advertisement

Controlling Network Management Users by Source IP Addresses

You can manage the device through network management software. Network management users can
access switching engines through SNMP.
You need to perform the following two operations to control network management users by source IP
addresses.
Defining an ACL
Applying the ACL to control users accessing the switching engine through SNMP

Prerequisites

The controlling policy against network management users is determined, including the source IP
addresses to be controlled and the controlling actions (permitting or denying).
Controlling Network Management Users by Source IP Addresses
Controlling network management users by source IP addresses is achieved by applying basic ACLs,
which are numbered from 2000 to 2999.
Follow these steps to control network management users by source IP addresses:
To do...
Enter system view
Create a basic ACL or
enter basic ACL view
Define rules for the
ACL
Quit to system view
Apply the ACL while
configuring the SNMP
community name
Apply the ACL while
configuring the SNMP
group name
Apply the ACL while
configuring the SNMP
user name
Use the command...
system-view
acl number acl-number [ match-order
{ config | auto } ]
rule [ rule-id ] { deny | permit }
[ rule-string ]
quit
snmp-agent community { read |
write } community-name [ mib-view
view-name | acl acl-number ]*
snmp-agent group { v1 | v2c }
group-name [ read-view read-view ]
[ write-view write-view ] [ notify-view
notify-view ] [ acl acl-number ]
snmp-agent group v3 group-name
[ authentication | privacy ]
[ read-view read-view ] [ write-view
write-view ] [ notify-view notify-view ]
[ acl acl-number ]
snmp-agent usm-user { v1 | v2c }
user-name group-name [ acl
acl-number ]
snmp-agent usm-user v3 user-name
group-name [ cipher ]
[ authentication-mode { md5 | sha }
auth-password [ privacy-mode des56
priv-password ] [ acl acl-number ]
7-4
Remarks
Required
As for the acl number
command, the config keyword
is specified by default.
Required
Optional
By default, SNMPv1 and
SNMPv2c use community
name to access.
Optional
By default, the authentication
mode and the encryption mode
are configured as none for the
group.
Optional

Hide quick links:

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the WX3000 Series and is the answer not in the manual?

This manual is also suitable for:

Wx3024Wx3010Wx3008

Table of Contents