User Manual

56
Users Manual of XGS-6350-24X4C
SNMPv1 uses group-based security format. Use IP address access control list and password to define the
management side group that can access to agent MIB.
SNMPv3 provides secure access to devices by a combination of authenticating and encrypting packets over
the network.
The security features provided in SNMPv3 are:
Message integrity—Ensuring that a packet has not been tampered with in-transit.
Authentication—Determining the message is from a valid source.
Encryption—Scrambling the contents of a packet prevent it from being seen by an unauthorized source.
SNMPv3 provides for both security models and security levels. A security model is an authentication strategy
that is set up for a user and the group in which the user resides. A security level is the permitted level of
security within a security model. A combination of a security model and a security level will determine which
security mechanism is employed when handling an SNMP packet. Three security models are available, that is,
authentication and encryption, authentication and no encryption, no authentication.
You need to configure SNMP agent to the SNMP version that the management working station supports. The
agent can communicate with many management sides.
c) Supported MIB
SNMP of our system supports all MIBII variables (which will be discussed in RFC 1213) and SNMP traps
(which will be discussed in RFC 1215).
Our system provides its own MIB extension for each system.
4.3.1.2 SNMP Configuration Tasks
Configuring SNMP view
Creating or modifying the access control for SNMP community
Configuring the contact method of system administrator and the systems location
Defining the maximum length of SNMP agent data packet
Monitoring SNMP state
Configuring SNMP trap
Configuring SNMP binding source address
Configuring NMPv3 group
Configuring NMPv3 user
Configuring NMPv3 EngineID
a) Configuring SNMP view
The SNMP view is to regulate the access rights (include or exclude) for MIB. Use the following command
to configure the SNMP view.
Command Description
snmp-server view nameoid]
Adds the subtree or table of OID-specified