Enterasys Networks N Standalone (NSA) Series Switch User Manual


  Open as PDF
of 1372
 
SNMP Configuration Summary
Using SNMP Contexts to Access Specific MIBs or Routing Modules
Matrix NSA Series Configuration Guide 5-3
5.1.4 Using SNMP Contexts to Access Specific MIBs
or Routing Modules
By default, when operating from the switch CLI, Matrix Series devices allow access to all SNMP
MIBs or contexts. A context is a collection of MIB objects, often associated with a particular
physical or logical device.
If no optional context parameters are configured for v1 and v2 “community” names and v3 “user”
groups, these groups are able to access all SNMP MIB objects when in switch mode.
Specifying a context parameter when setting up SNMP user group access would either:
Permit or restrict the group’s switch management access to the MIB(s) specified by the context
(MIB object ID) value, or
Allow the group to have SNMP management access to one or more router modules when
operating in router mode.
Table 5-1 SNMP Security Levels
Model Security Level Authentication Encryption How It Works
v1 NoAuthNoPriv Community
string
None Uses a community string
match for authentication.
v2c NoAuthNoPriv Community
string
None Uses a community string
match for authentication.
v3 NoAuthNoPriv User name None Uses a user name match for
authentication.
AuthNoPriv MD5 or SHA None Provides authentication based
on the HMAC-MD5 or
HMAC-SHA algorithms.
authPriv MD5 or SHA DES Provides authentication based
on the HMAC-MD5 or
HMAC-SHA algorithms.
Provides DES 56-bit
encryption in addition to
authentication based on the
CBC-DES (DES-56) standard.