Configuration manual

Configuring SNMP
12-16 Configuring SNMP
Procedure 12-4 Configuring Secure Community Names
Step Task Command(s)
1. Create the following SNMP view group
configurations.
An admin (v3) view group with secure read,
write, and notify access
A read-only view group with unsecure (v1
and v2c) access
A read-write view group with unsecure (v1
and v2c) access
set snmp access admin-groupname
security-model usm privacy exact
read secured-viewname write secure-
viewname notify secured-viewname
set snmp access read-only-groupname
security-model v1 exact read
unsecured-viewname
set snmp access read-only-groupname
security-model v2c exact read
unsecured-viewname
set snmp access read-write-groupname
security-model v1 exact read
unsecure-viewname write unsecured-
viewname
set snmp access read-write-groupname
security-model v2c exact read
unsecured-viewname write unsecured-
viewname
2. Create v1/v2c “public” and “private” community
names and security names.
set snmp community private-
communityname securityname read-
write-securityname
set snmp community public-
communityname securityname read-
only-securityname
3. Create user groups and bind them to the
security names created in Step 2.
set snmp group admin-groupname user
admin-username
set snmp group read-only-groupname
user read-only-securityname
security-model v1
set snmp group read-write-groupname
user read-
write-securityname
security-model v1
set snmp group read-only-groupname
user read-only-securityname
security-model v2c
set snmp group read-write-groupname
user read-write-securityname
security-model v2c
4. Using the admin-username assigned in Step 3,
create the v3 user and define authentication
keys.
set snmp user admin-username privacy
priv-key authentication sha auth-key