User manual

C
HAPTER
4
| Configuring the Switch
Configuring Security
– 69 –
Version - Specifies the SNMP version to use. (Options: SNMP v1,
SNMP v2c, SNMP v3; Default: SNMP v2c)
Read Community - The community used for read-only access to the
SNMP agent. (Range: 0-255 characters, ASCII characters 33-126 only;
Default: public)
This parameter only applies to SNMPv1 and SNMPv2c. SNMPv3 uses the
User-based Security Model (USM) for authentication and privacy. This
community string is associated with SNMPv1 or SNMPv2 clients in the
SNMPv3 Communities table (page 72).
Write Community - The community used for read/write access to the
SNMP agent. (Range: 0-255 characters, ASCII characters 33-126 only;
Default: private)
This parameter only applies to SNMPv1 and SNMPv2c. SNMPv3 uses the
User-based Security Model (USM) for authentication and privacy. This
community string is associated with SNMPv1 or SNMPv2 clients in the
SNMPv3 Communities table (page 72).
Engine ID - The SNMPv3 engine ID. (Range: 10-64 hex digits,
excluding a string of all 0’s or all F’s; Default: 800007e5017f000001)
An SNMPv3 engine is an independent SNMP agent that resides on the
switch. This engine protects against message replay, delay, and
redirection. The engine ID is also used in combination with user
passwords to generate the security keys for authenticating and
encrypting SNMPv3 packets.
A local engine ID is automatically generated that is unique to the
switch. This is referred to as the default engine ID. If the local engine
ID is deleted or changed, all local SNMP users will be cleared. You will
need to reconfigure all existing users.
SNMP Trap Configuration
Trap Mode - Enables or disables SNMP traps. (Default: Disabled)
You should enable SNMP traps so that key events are reported by this
switch to your management station. Traps indicating status changes
can be issued by the switch to the specified trap manager by sending
authentication failure messages and other trap messages.
Trap Version - Indicates if the target user is running SNMP v1, v2c, or
v3. (Default: SNMP v1)
Trap Community - Specifies the community access string to use when
sending SNMP trap packets. (Range: 0-255 characters, ASCII
characters 33-126 only; Default: public)
Trap Destination Address - IPv4 address of the management station
to receive notification messages.
Trap Destination IPv6 Address - IPv6 address of the management
station to receive notification messages. An IPv6 address must be
formatted according to RFC 2373 “IPv6 Addressing Architecture,” using