D-Link DGS-3200-10 Product Manual - Page 52

SNMP Settings, Traps, MIBs - des e

Page 52 highlights

xStack® DGS-3200 Series Layer 2 Gigabit Ethernet Managed Switch SNMP Settings Simple Network Management Protocol (SNMP) is an OSI Layer 7 (Application Layer) designed specifically for managing and monitoring network devices. SNMP enables network management stations to read and modify the settings of gateways, routers, switches, a nd other net work devices. Use SNMP t o co nfigure sy stem f eatures for proper operation, monitor pe rformance an d detect potential problems in the Switch, switch group or network. Managed devices that support SNMP include software (referred to as an agent), which runs locally on the device. A defined set of variables (m anaged objects) i s m aintained b y t he S NMP a gent an d used to m anage t he de vice. These o bjects are defined i n a Management I nformation B ase (M IB), which provides a standard presentation o f t he information c ontrolled by t he o n-board SNMP agent. SNMP defines both the format of t he MIB specifications and the protocol used to access this information over the network. The Switch supports the SNMP versions 1, 2c, and 3. The three versions of SNMP vary in the level of security provided between the management station and the network device. In SNMP v.1 and v.2, user authentication is accomplished using 'community strings', which function like passwords. The remote user SNMP application and the Switch SNMP must use the same community string. SNMP packets from any station that has not been authenticated are ignored (dropped). The default community strings for the Switch used for SNMP v.1 and v.2 management access are:  public - Allows authorized management stations to retrieve MIB objects.  private - Allows authorized management stations to retrieve and modify MIB objects. SNMPv3 uses a more sophisticated authentication process that is sep arated into two parts. The first p art is to maintain a list of users and their attributes that are allowed to act as SNMP managers. The second part describes what each user on that list can do as an SNMP manager. The Switch allows groups of users to be listed and configured with a shared set of privileges. The SNMP version may also be set for a l isted group of S NMP m anagers. T hus, y ou m ay creat e a group of S NMP m anagers t hat a re allowed t o vi ew read-only information or receive traps using SNMPv1 while assigning a higher level of secu rity to another group, granting read/write privileges using SNMPv3. Using S NMPv3 i ndividual users or g roups of S NMP m anagers ca n be al lowed t o p erform or be restricted f rom pe rforming specific SNM P m anagement fun ctions. Th e fun ctions allowed or re stricted are defined usin g th e Obj ect Id entifier (OID) associated wit h a s pecific MIB. An a dditional layer of secu rity is av ailable for SNMPv3 in th at SNMP m essages m ay b e encrypted. To read more about how to configure SNMPv3 settings for the Switch read the next section. Traps Traps are m essages that alert network personnel of eve nts that occur on the Switch. The eve nts ca n be as se rious as a reboot (someone acci dentally turned OFF the Switch), or less serious like a port status ch ange. The Switch generates tra ps and se nds them to the trap recipient (or network manager). Typical traps include trap messages for Authentication Failure, Topology Change and Broadcast\Multicast Storm. MIBs The S witch i n t he M anagement In formation B ase (MIB) st ores m anagement and counter i nformation. The Switch u ses t he standard MIB-II Management Information Base module. Consequently, values for MIB objects can be retrieved from any SNMPbased network management software. In addition to the standard MIB-II, the Switch also supports its own proprietary enterprise MIB as an extended Management Information Base. Specifying the MIB Object Identifier may also retrieve the proprietary MIB. MIB values can be either read-only or read-write. The Switch incorporates a flexible SNMP management for the switching environment. SNMP management can be customized to suit the needs of the networks and the preferences of the network administrator. Use the SNMP V3 menus to select th e SNMP version used for specific tasks. The Switch supports the Simple Network Management Protocol (SNMP) versions 1, 2c, and 3. The administrator can specify the SNMP version use d t o m onitor a nd c ontrol t he S witch. The t hree ve rsions o f S NMP va ry i n t he level o f sec urity pro vided between the management station and the network device. SNMP settings are configured using the menus located on the SNMP V3 folder of the Web manager. Workstations on the network that are allowed SNMP privileged access to the Switch can be restricted with the Management Station IP Address menu. 39

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302

xStack
®
DGS-3200 Series Layer 2 Gigabit Ethernet Managed Switch
39
SNMP Settings
Simple Network Management Protocol (SNMP) is an OSI Layer 7 (Application Layer) designed specifically for managing and
monitoring network devices. SNMP enables network management stations to read and modify the settings of gateways, routers,
switches, a nd other net work devices. Use SNMP t o co nfigure sy stem f eatures for proper operation, monitor pe rformance an d
detect potential problems in the Switch, switch group or network.
Managed devices that support SNMP include software (referred to as an agent), which runs locally on the device. A defined set of
variables (managed objects) is maintained by the SNMP agent and used to manage the device. These objects are defined in a
Management I nformation B ase (M IB), which provides a standard presentation o f t he information c ontrolled by t he o n-board
SNMP agent. SNMP defines both the format of the MIB specifications and the protocol used to access this information over the
network.
The Switch supports the SNMP versions 1, 2c, and 3. The three versions of SNMP vary in the level of security provided between
the management station and the network device.
In SNMP v.1 and v.2, user authentication is accomplished using ‘community strings’, which function like passwords. The remote
user SNMP application and the Switch SNMP must use the same community string. SNMP packets from any station that has not
been authenticated are ignored (dropped).
The default community strings for the Switch used for SNMP v.1 and v.2 management access are:
public
– Allows authorized management stations to retrieve MIB objects.
private
– Allows authorized management stations to retrieve and modify MIB objects.
SNMPv3 uses a more sophisticated authentication process that is separated into two parts. The first part is to maintain a list of
users and their attributes that are allowed to act as SNMP managers. The second part describes what each user on that list can do
as an SNMP manager.
The Switch allows groups of users to be listed and configured with a shared set of privileges. The SNMP version may also be set
for a l isted group of S NMP m anagers. T hus, y ou m ay creat e a group of S NMP m anagers t hat a re allowed t o vi ew read-only
information or receive traps using SNMPv1 while assigning a higher level of security to another group, granting read/write privi-
leges using SNMPv3.
Using S NMPv3 i ndividual users or g roups of S NMP m anagers ca n be al lowed t o p erform or be restricted f rom pe rforming
specific SNM P m anagement fun ctions. Th e fun ctions allowed or re stricted are
defined usin g th e Obj ect Id entifier (OID)
associated wit h a s pecific MIB. An a dditional layer of secu
rity is av
ailable for SNMPv3 in th
at SNMP m
essages m ay b e
encrypted. To read more about how to configure SNMPv3 settings for the Switch read the next section.
Traps
Traps are m essages that alert network
personnel of eve nts that occur on
the Switch. The events can be as serious as a reboot
(someone accidentally turned OFF the
Switch), or less serious like a
port status ch ange. The Switch generates tra ps and se nds
them to the trap recipient (or network manager). Typical traps include trap messages for Authentication Failure, Topology Change
and Broadcast\Multicast Storm.
MIBs
The S witch i n t he M anagement In formation B ase (MIB) st ores m anagement and counter i nformation. The Switch u ses t he
standard MIB-II Management Information Base module. Consequently, values for MIB objects can be retrieved from any SNMP-
based network management software. In addition to the standard MIB-II, the Switch also supports its own proprietary enterprise
MIB as an extended Management Information Base. Specifying the MIB Object Identifier may also retrieve the proprietary MIB.
MIB values can be either read-only or read-write.
The Switch incorporates a flexible SNMP management for the switching environment. SNMP management can be customized to
suit the needs of the networks and the preferences of the network ad ministrator. Use the SNMP V3 menus to select th e SNMP
version used for specific tasks.
The Switch supports the Simple Network Management Protocol (SNMP) versions 1, 2c, and 3. The administrator can specify the
SNMP version use d t o m onitor a nd c ontrol t he S witch.
The t hree ve rsions o f S NMP va ry i n t he level o f sec urity pro vided
between the management station and the network device.
SNMP settings are configured using the menus located on the SNMP V3 folder of the Web manager. Workstations on the network
that are allowed SNMP privileged access to the Switch can be restricted with the Management Station IP Address menu.