ZyXEL ES3500-24HP User Guide - Page 304

Table 134, Label, Description

Page 304 highlights

Chapter 39 Access Control The following table describes the labels in this screen. Table 134 Management > Access Control > SNMP > User LABEL DESCRIPTION User Information Note: Use the username and password of the login accounts you specify in this screen to create accounts on the SNMP v3 manager. Username Security Level Specify the username of a login account on the Switch. Select whether you want to implement authentication and/or encryption for SNMP communication from this user. Choose: • noauth -to use the username as the password string to send to the SNMP manager. This is equivalent to the Get, Set and Trap Community in SNMP v2c. This is the lowest security level. • auth - to implement an authentication algorithm for SNMP messages sent by this user. • priv - to implement authentication and encryption for SNMP messages sent by this user. This is the highest security level. Authentication Password Privacy Password Group Add Cancel Clear Index Username Security Level Authenticati on Privacy Note: The settings on the SNMP manager must be set at the same security level or higher than the security level settings on the Switch. Select an authentication algorithm. MD5 (Message Digest 5) and SHA (Secure Hash Algorithm) are hash algorithms used to authenticate SNMP data. SHA authentication is generally considered stronger than MD5, but is slower. Enter the password of up to 32 ASCII characters for SNMP user authentication. Specify the encryption method for SNMP communication from this user. You can choose one of the following: • DES - Data Encryption Standard is a widely used (but breakable) method of data encryption. It applies a 56-bit key to each 64-bit block of data. • AES - Advanced Encryption Standard is another method for data encryption that also uses a secret key. AES applies a 128-bit key to 128-bit blocks of data. Enter the password of up to 32 ASCII characters for encrypting SNMP packets. SNMP v3 adopts the concept of View-based Access Control Model (VACM) group. SNMP managers in one group are assigned common access rights to MIBs. Specify in which SNMP group this user is. admin - Members of this group can perform all types of system configuration, including the management of administrator accounts. readwrite - Members of this group have read and write rights, meaning that the user can create and edit the MIBs on the Switch, except the user account and AAA configuration. readonly - Members of this group have read rights only, meaning the user can collect information from the Switch. Click Add to insert the entry in the summary table below and save your changes to the Switch's run-time memory. The Switch loses these changes if it is turned off or loses power, so use the Save link on the top navigation panel to save your changes to the non-volatile memory when you are done configuring. Click Cancel to reset the fields to your previous configuration. Click Clear to reset the fields to the factory defaults. This is a read-only number identifying a login account on the Switch. Click on an index number to view more details and edit an existing account. This field displays the username of a login account on the Switch. This field displays whether you want to implement authentication and/or encryption for SNMP communication with this user. This field displays the authentication algorithm used for SNMP communication with this user. This field displays the encryption method used for SNMP communication with this user. 304 ES3500 Series User's Guide

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360

Chapter 39 Access Control
ES3500 Series User’s Guide
304
The following table describes the labels in this screen.
Table 134
Management > Access Control > SNMP > User
LABEL
DESCRIPTION
User
Information
Note: Use the username and password of the login accounts you specify in this screen to
create accounts on the SNMP v3 manager.
Username
Specify the username of a login account on the Switch.
Security Level
Select whether you want to implement authentication and/or encryption for SNMP
communication from this user. Choose:
noauth
-to use the username as the password string to send to the SNMP manager.
This is equivalent to the Get, Set and Trap Community in SNMP v2c. This is the lowest
security level.
auth
- to implement an authentication algorithm for SNMP messages sent by this user.
priv
- to implement authentication and encryption for SNMP messages sent by this
user. This is the highest security level.
Note: The settings on the SNMP manager must be set at the same security level or higher
than the security level settings on the Switch.
Authentication
Select an authentication algorithm.
MD5
(Message Digest 5) and
SHA
(Secure Hash
Algorithm) are hash algorithms used to authenticate SNMP data. SHA authentication is
generally considered stronger than MD5, but is slower.
Password
Enter the password of up to 32 ASCII characters for SNMP user authentication.
Privacy
Specify the encryption method for SNMP communication from this user. You can choose
one of the following:
DES
- Data Encryption Standard is a widely used (but breakable) method of data
encryption. It applies a 56-bit key to each 64-bit block of data.
AES
- Advanced Encryption Standard is another method for data encryption that also
uses a secret key. AES applies a 128-bit key to 128-bit blocks of data.
Password
Enter the password of up to 32 ASCII characters for encrypting SNMP packets.
Group
SNMP v3 adopts the concept of View-based Access Control Model (VACM) group. SNMP
managers in one group are assigned common access rights to MIBs. Specify in which SNMP
group this user is.
admin
- Members of this group can perform all types of system configuration, including
the management of administrator accounts.
readwrite
- Members of this group have read and write rights, meaning that the user can
create and edit the MIBs on the Switch, except the user account and AAA configuration.
readonly
- Members of this group have read rights only, meaning the user can collect
information from the Switch.
Add
Click
Add
to insert the entry in the summary table below and save your changes to the
Switch’s run-time memory. The Switch loses these changes if it is turned off or loses power,
so use the
Save
link on the top navigation panel to save your changes to the non-volatile
memory when you are done configuring.
Cancel
Click
Cancel
to reset the fields to your previous configuration.
Clear
Click
Clear
to reset the fields to the factory defaults.
Index
This is a read-only number identifying a login account on the Switch. Click on an index
number to view more details and edit an existing account.
Username
This field displays the username of a login account on the Switch.
Security
Level
This field displays whether you want to implement authentication and/or encryption for
SNMP communication with this user.
Authenticati
on
This field displays the authentication algorithm used for SNMP communication with this
user.
Privacy
This field displays the encryption method used for SNMP communication with this user.