HP GbE2c HP GbE2c Ethernet Blade Switch for c-Class BladeSystem Command Refere - Page 100

View-based Access Control Model configuration, SNMPv3 Group configuration

Page 100 highlights

View-based Access Control Model configuration Command: /cfg/sys/ssnmp/snmpv3/access [SNMPv3 vacmAccess 1 Menu] name - Set group name model - Set security model level - Set minimum level of security rview - Set read view index wview - Set write view index nview - Set notify view index del - Delete vacmAccess entry cur - Display current vacmAccess configuration The view-based Access Control Model defines a set of services that an application can use for checking access rights of the user. Access control is needed when the user has to process SNMP retrieval or modification request from an SNMP entity. The following table describes the User Access Control Configuration Menu options. Table 88 View-based Access Control Configuration Menu options Command Description name Defines the name of the group, up to a maximum of 32 characters. model usm|snmpv1|snmpv2 Selects the security model to be used. level noAuthNoPriv|authNo Priv|authPriv Defines the minimum level of security required to gain access rights. The level noAuthNoPriv means that the SNMP message will be sent without authentication and without using a privacy protocol. The level authNoPriv means that the SNMP message will be sent with authentication but without using a privacy protocol. The authPriv means that the SNMP message will be sent both with authentication and using a privacy protocol. rview Defines a 32 character long read view name that allows you read access to a particular MIB view. If the value is empty or if there is no active MIB view having this value then no access is granted. wview Defines a 32 character long write view name that allows you write access to the MIB view. If the value is empty or if there is no active MIB view having this value then no access is granted. nview Defines a 32 character long notify view name that allows you notify access to the MIB view. del Deletes the View-based Access Control entry. cur Displays the View-based Access Control configuration. SNMPv3 Group configuration Command: /cfg/sys/ssnmp/snmpv3/group [SNMPv3 vacmSecurityToGroup 1 Menu] model - Set security model uname - Set USM user name gname - Set group name del - Delete vacmSecurityToGroup entry cur - Display current vacmSecurityToGroup configuration Configuration Menu 100

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175

Configuration Menu 100
View-based Access Control Model configuration
Command:
/cfg/sys/ssnmp/snmpv3/access
[SNMPv3 vacmAccess 1
Menu]
name
- Set group name
model
- Set security model
level
- Set minimum level of security
rview
- Set read view index
wview
- Set write view index
nview
- Set notify view index
del
- Delete vacmAccess entry
cur
- Display current vacmAccess configuration
The view-based Access Control Model defines a set of services that an application can use for checking access rights
of the user. Access control is needed when the user has to process SNMP retrieval or modification request from an
SNMP entity.
The following table describes the User Access Control Configuration Menu options.
Table 88
View-based Access Control Configuration Menu options
Command
Description
name <
1-32
characters
>
Defines the name of the group, up to a maximum of 32 characters.
model
usm|snmpv1|snmpv2
Selects the security model to be used.
level
noAuthNoPriv|authNo
Priv|authPriv
Defines the minimum level of security required to gain access rights. The level
noAuthNoPriv
means that the SNMP message will be sent without authentication and
without using a privacy protocol. The level
authNoPriv
means that the SNMP message
will be sent with authentication but without using a privacy protocol. The
authPriv
means
that the SNMP message will be sent both with authentication and using a privacy protocol.
rview <
1-32
characters
>
Defines a 32 character long read view name that allows you read access to a particular MIB
view. If the value is empty or if there is no active MIB view having this value then no access is
granted.
wview <
1-32
characters
>
Defines a 32 character long write view name that allows you write access to the MIB view. If
the value is empty or if there is no active MIB view having this value then no access is
granted.
nview <
1-32
characters
>
Defines a 32 character long notify view name that allows you notify access to the MIB view.
del
Deletes the View-based Access Control entry.
cur
Displays the View-based Access Control configuration.
SNMPv3 Group configuration
Command:
/cfg/sys/ssnmp/snmpv3/group
[SNMPv3 vacmSecurityToGroup 1 Menu]
model
- Set security model
uname
- Set USM user name
gname
- Set group name
del
- Delete vacmSecurityToGroup entry
cur
- Display current vacmSecurityToGroup configuration