Nortel Networks 5399 Network Card User Manual


 
Nortel Networks 5399 and 8000 Access Switch SNMP MIB Reference
2-6 300861-C Rev. 00
Defining the allow_snmp_sets Parameter
The RAC’s default setting for the allow_snmp_sets parameter does not permit
parameter value changes because the SNMP set command’s header transmits the
community string in clear text, which may be a security risk. To modify
parameters through SNMP, you must first set allow_snmp_sets to yes using the
na utility, the admin command, or from the ROM monitor. You cannot set this
parameter using SNMP. If security is a concern, you can take the following
measures:
1. Edit the %gateway section of the configuration file for the RAC to define
at least one community string with read/write privileges. Change the line:
snmp community public
to:
snmp community config_utility * read-write
The RAC accepts SNMP sets only from sources using the community string
config_utility. You can further restrict the access by including the IP address
of the host system running the management application (for example, the
Config Utility) on the annex:
snmp community web_rac_mgr 192.9.200.55 read-write
2. Invoke na, configure the RAC to accept and process SNMP command
sets, and exit na:
%na
command: annex 129.9.200.62
command: set annex allow_snmp_sets y
command: quit
3. Enter the selected community string when invoking the Config Utility or
other management applications.
Configuring BootP Relay
The bootp_enable parameter turns the BootP Relay feature on and off. For more
information about this parameter, see the xylo-anx.mib file.