Netband Project - SNMPv3

From Teknologisk videncenter
Jump to: navigation, search

SNMPv3

This page is part of the Netband Project

  • provides secure access to devices by authenticating and encrypting packets over the network.


Level
Authentication
Encryption
noAuthNoPriv
Username
no
authNoPriv
md5 or sha
no
authPriv
md5 or sha
des


Configuration

snmp-server group mrtg-snmp-group v3 priv
!
snmp-server user mrtg-user mrtg-snmp-group v3 auth sha ciscodisco priv des ciscodisco
!
HQRT1#sh snmp user
User name: mrtg-user
Engine ID: 800000090300001BD40F8AA4 
storage-type: nonvolatile active 
Authentication Protocol: SHA 
Privacy Protocol: DES 
Group-name: mrtg-snmp-group
root@hqmgmt1:~# snmpget -v3 -a sha -u mrtg-user -x des -A ciscodisco -X ciscodisco -l authpriv 10.0.0.11 1.3.6.1.2.1.1.3.0

DISMAN-EVENT-MIB::sysUpTimeInstance = Timeticks: (77270968) 8 days, 22:38:29.68
  • enable the router to send snmp notifications when a certain event takes place, like linkup/down, ospf state changes and many more.
snmp-server enable traps
snmp-server host 10.1.1.10 version 3 priv mrtg-user ospf

External links

Cisco IOS Network Management Configuration Guide, Release 12.4T