HP StorageWorks MSA 2/8 HP StorageWorks Fabric OS 3.X Document Addendum (AA-RW - Page 158

Operands, Example, is given to the access.

Page 158 highlights

Fabric OS reference guide There are six Access Control Lists (ACL) to restrict SNMP get and set operations to hosts under a host-subnet-area. Host-subnet-area is defined by comparing nonzero IP octets. For example, an ACL of 192.168.64.0 allows for access by any hosts that start with 192.168.64, regardless of the fourth octet. ACL entries also have a flag to set each host-subnet-area to be read-write or read-only. The highest privilege matched out of six entries is given to the access. ACL check is turned off when all six entries contain 0.0.0.0. Note: This command does not display the ACL in secure mode. When secure mode is enabled, the Access Control List feature is incorporated into the WSNMP and RSNMP security policies. Operands Example None To display the SNMP agent configuration: switch:admin> agtcfgShow Current SNMP Agent Configuration Customizable MIB-II system variables: sysDescr = FC Switch sysLocation = End User Premise sysContact = Field Support. swEventTrapLevel = 3 authTrapsEnabled = true SNMPv1 community and trap recipient configuration: Community 1: Secret Code (rw) Trap recipient: 192.168.1.51 Community 2: OrigEquipMfr (rw) Trap recipient: 192.168.1.26 Community 3: private (rw) No trap recipient configured yet Community 4: public (ro) No trap recipient configured yet Community 5: common (ro) No trap recipient configured yet Community 6: FibreChannel (ro) No trap recipient configured yet SNMP access list configuration: Entry 0: Access host subnet area 192.168.64.0 (rw)] Entry 1: No access host configured yet Entry 2: No access host configured yet Entry 3: No access host configured yet Entry 4: No access host configured yet Entry 5: No access host configured yet 158 Fabric OS 3.x Document Addendum

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250

Fabric OS reference guide
158
Fabric OS 3.x Document Addendum
There are six Access Control Lists (ACL) to restrict SNMP get and set operations to hosts
under a host-subnet-area. Host-subnet-area is defined by comparing nonzero IP octets. For
example, an ACL of
192.168.64.0
allows for access by any hosts that start with
192.168.64
, regardless of the fourth octet. ACL entries also have a flag to set each
host-subnet-area to be read-write or read-only. The highest privilege matched out of six entries
is given to the access.
ACL check is turned off when all six entries contain
0.0.0.0
.
Note:
This command does not display the ACL in secure mode. When secure mode is enabled, the
Access Control List feature is incorporated into the WSNMP and RSNMP security policies.
Operands
None
Example
To display the SNMP agent configuration:
switch:admin>
agtcfgShow
Current SNMP Agent Configuration
Customizable MIB-II system variables:
sysDescr = FC Switch
sysLocation = End User Premise
sysContact = Field Support.
swEventTrapLevel = 3
authTrapsEnabled = true
SNMPv1 community and trap recipient configuration:
Community 1: Secret Code (rw)
Trap recipient: 192.168.1.51
Community 2: OrigEquipMfr (rw)
Trap recipient: 192.168.1.26
Community 3: private (rw)
No trap recipient configured yet
Community 4: public (ro)
No trap recipient configured yet
Community 5: common (ro)
No trap recipient configured yet
Community 6: FibreChannel (ro)
No trap recipient configured yet
SNMP access list configuration:
Entry 0:
Access host subnet area 192.168.64.0 (rw)]
Entry 1:
No access host configured yet
Entry 2:
No access host configured yet
Entry 3:
No access host configured yet
Entry 4:
No access host configured yet
Entry 5:
No access host configured yet