HP GbE2c HP GbE2c Ethernet Blade Switch for c-Class BladeSystem ISCLI Referenc - Page 90

SNMPv3 View configuration, View-based Access Control Model configuration, no snmp-server view

Page 90 highlights

SNMPv3 View configuration The following table describes the SNMPv3 View Configuration commands. Table 84 SNMPv3 View Configuration commands Command Description snmp-server view name Defines the name for a family of view subtrees up to a maximum of 32 characters. Command mode: Global configuration snmp-server view tree Defines the Object Identifier (OID), a string of maximum 32 characters, which when combined with the corresponding mask defines a family of view subtrees. An example of an OID is 1.3.6.1.2.1.1.1.0 Command mode: Global configuration snmp-server view mask Defines the bit mask, which in combination with the corresponding tree defines a family of view subtrees. The mask can have a maximum of 32 characters. Command mode: Global configuration snmp-server view type {included|excluded} Selects whether the corresponding instances of vacmViewTreeFamilySubtree and vacmViewTreeFamilyMask define a family of view subtrees, which is included in or excluded from the MIB view. Command mode: Global configuration no snmp-server view Deletes the vacmViewTreeFamily group entry. Command mode: Global configuration show snmp-server view Displays the current vacmViewTreeFamily configuration. Command mode: All View-based Access Control Model configuration The view-based Access Control Model defines a set of services that an application can use for checking access rights of the user. Access control is needed when the user has to process SNMP retrieval or modification request from an SNMP entity. The following table describes the User Access Control Configuration commands. Table 85 View-based Access Control Configuration commands Command snmp-server access name snmp-server access security {usm|snmpv1|snmpv2} snmp-server access level {noAuthNoPriv|authNoPriv|authPriv} snmp-server access read-view snmp-server access write-view Description Defines the name of the group, up to a maximum of 32 characters. Command mode: Global configuration Allows you to select the security model to be used. Command mode: Global configuration Defines the minimum level of security required to gain access rights. The level noAuthNoPriv means that the SNMP message will be sent without authentication and without using a privacy protocol. The level authNoPriv means that the SNMP message will be sent with authentication but without using a privacy protocol. The authPriv means that the SNMP message will be sent both with authentication and using a privacy protocol. Command mode: Global configuration Defines a 32 character long read view name that allows you read access to a particular MIB view. If the value is empty or if there is no active MIB view having this value then no access is granted. Command mode: Global configuration Defines a 32 character long write view name that allows you write access to the MIB view. If the value is empty or if there is no active MIB view having this value then no access is granted. Command mode: Global configuration Configuration Commands 90

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153

Configuration Commands 90
SNMPv3 View configuration
The following table describes the SNMPv3 View Configuration commands.
Table 84
SNMPv3 View Configuration commands
Command
Description
snmp-server view
<1-128>
name
<1-32 characters>
Defines the name for a family of view subtrees up to a maximum of 32
characters.
Command mode
: Global configuration
snmp-server view
<1-128>
tree
<1-32 characters>
Defines the Object Identifier (OID), a string of maximum 32 characters, which
when combined with the corresponding mask defines a family of view
subtrees.
An example of an OID is
1.3.6.1.2.1.1.1.0
Command mode
: Global configuration
snmp-server view
<1-128>
mask
<1-32 characters>
Defines the bit mask, which in combination with the corresponding tree
defines a family of view subtrees. The mask can have a maximum of 32
characters.
Command mode
: Global configuration
snmp-server view
<1-128>
type
{included|excluded}
Selects whether the corresponding instances of
vacmViewTreeFamilySubtree
and
vacmViewTreeFamilyMask
define a family of view subtrees, which is
included in or excluded from the MIB view.
Command mode
: Global configuration
no snmp-server view
<1-128>
Deletes the
vacmViewTreeFamily
group entry.
Command mode
: Global configuration
show snmp-server view
<1-128>
Displays the current
vacmViewTreeFamily
configuration.
Command mode
: All
View-based Access Control Model configuration
The view-based Access Control Model defines a set of services that an application can use for checking access rights
of the user. Access control is needed when the user has to process SNMP retrieval or modification request from an
SNMP entity.
The following table describes the User Access Control Configuration commands.
Table 85
View-based Access Control Configuration commands
Command
Description
snmp-server access
<1-32>
name
<1-32 characters>
Defines the name of the group, up to a maximum of 32 characters.
Command mode
: Global configuration
snmp-server access
<1-32>
security {usm|snmpv1|snmpv2}
Allows you to select the security model to be used.
Command mode
: Global configuration
snmp-server access
<1-32>
level {noAuthNoPriv|authNo-
Priv|authPriv}
Defines the minimum level of security required to gain access rights. The level
noAuthNoPriv
means that the SNMP message will be sent without
authentication and without using a privacy protocol. The level
authNoPriv
means that the SNMP message will be sent with authentication but without
using a privacy protocol. The
authPriv
means that the SNMP message will
be sent both with authentication and using a privacy protocol.
Command mode
: Global configuration
snmp-server access
<1-32>
read-view
<1-32 characters>
Defines a 32 character long read view name that allows you read access to a
particular MIB view. If the value is empty or if there is no active MIB view
having this value then no access is granted.
Command mode
: Global configuration
snmp-server access
<1-32>
write-view
<1-32 characters>
Defines a 32 character long write view name that allows you write access to
the MIB view. If the value is empty or if there is no active MIB view having this
value then no access is granted.
Command mode
: Global configuration