NEC N8406-022 manual SNMPv3 configuration

Page 65

SNMPv3 configuration

SNMP version 3 (SNMPv3) is an extensible SNMP Framework that supplements the SNMPv2 Framework by supporting the following:

a new SNMP message format

security for messages

access control

remote configuration of SNMP parameters

For more details on the SNMPv3 architecture please see RFC2271 to RFC2275.

The following table describes the SNMPv3 Configuration commands.

Table 62 SNMPv3 Configuration commands

Command

Description

snmp-server user <1-16>

Configures a user security model (USM) entry for an authorized user. You can

 

also configure this entry through SNMP. The range is 1-16.

 

Command mode: Global configuration

snmp-server view <1-128>

Configures different MIB views. The range is 1-128.

 

Command mode: Global configuration

snmp-server access <1-32>

Configures access rights. The View-based Access Control Model defines a set

 

of services that an application can use for checking access rights of the user.

 

You need access control when you have to process retrieval or modification

 

request from an SNMP entity. The range is 1-32.

 

Command mode: Global configuration

snmp-server group <1-16>

Configures an SNMP group. A group maps the user name to the access group

 

names and their access rights needed to access SNMP management objects. A

 

group defines the access rights assigned to all names that belong to a particular

 

group. The range is 1-16.

 

Command mode: Global configuration

snmp-server community <1-

16>

Configures a community table entry. The community table contains objects for mapping community strings and version-independent SNMP message parameters. The range is 1-16.

Command mode: Global configuration

snmp-server target-

Configures the destination address and user security levels for outgoing

address <1-16>

notifications. This is also called the transport endpoint. The range is 1-16.

 

Command mode: Global configuration

snmp-server target- parameters <1-16>

Configures SNMP parameters, consisting of message processing model, security model, security level, and security name information. There may be multiple transport endpoints associated with a particular set of SNMP parameters, or a particular transport endpoint may be associated with several sets of SNMP parameters. The range is 1-16.

Command mode: Global configuration

snmp-server notify <1-16>

Configures a notification index. A notification application typically monitors a

 

system for particular events or conditions, and generates Notification-Class

 

messages based on these events or conditions. The range is 1-16.

 

Command mode: Global configuration

snmp-server version

Enables or disables the access to SNMP version 1 and version 2. This

{v1v2v3v3only}

command is enabled by default.

 

Command mode: Global configuration

show snmp-server v3

Displays the current SNMPv3 configuration.

 

Command mode: All

Configuration Commands 65

Image 65
Contents N8406-022 1Gb Intelligent L2 Switch Page Contents Statistics commands Operations Commands Iscli Reference Connecting to the switchIntroduction Additional referencesTelnet 1Gb Intelligent L2 Switch IP address Setting an IP addressEstablishing a Telnet connection Establishing an SSH connection# ssh user@1Gb Intelligent L2 Switch IP address Accessing the switchTypographical conventions Idle timeoutPing IP address Show portchannel 1-12hashinformationShow spanning-tree stp Show ip interfaceIscli basics Accessing the IscliIscli Command Modes Global commands Command abbreviation Command line interface shortcutsSwitchconfig# spanning-tree stp 1 bridge hello Switchconfig# sp stp 1 br hInformation Commands SNMPv3 Information commands System Information commandsSNMPv3 View Table information SNMPv3 USM User Table informationUser Name ProtocolView Name SNMPv3 Access Table informationGroup Name PrefixSNMPv3 Community Table information SNMPv3 Group Table informationSec Model Index Name User Name Tag Trap1 Public V1v2only V1v2trapSec Level SNMPv3 Target Address Table informationSNMPv3 Target Parameters Table information NameTag V1v2trapv1v2trap SNMPv3 Notify Table informationSNMPv3 dump Show snmp-server v3 Command mode AllSystem information System user information Usernames Enabled Oper Disabled Admin Always EnabledShow recent syslog messages Layer 2 information Show all FDB information FDB information commandsShow spanning-tree stp 1-32information Spanning Tree informationRapid Spanning Tree and Multiple Spanning Tree information Designated bridge Priority bridgeDesg 8000-000342fa3b80 8001 P2P, Edge 128 2000 Common Internal Spanning Tree informationDesg 8000-000342fa3b80 8002 128 2000 128 2000Discarding DISC, Learning LRN, Forwarding FWD, or Disabled DSBCist Root Vlan information Trunk group 1, Enabled port state STG 1 forwardingTrunk group information ARP information Layer 3 informationIP information Show layer3 information Command mode AllShow all ARP entry information ARP address list informationIgmp multicast router port information Igmp multicast group informationRmon Information Rmon history informationInterval Rmon alarm informationShow rmon alarm Show rmon event Rmon event informationLink status information VLANs Port informationPort Tag Rmon Pvid Uplink Failure Detection information Show geaport Command mode AllLogical Port to GEA Port mapping Information dump Port Statistics Statistics commandsEthernet statistics Bridging statisticsDot3StatsFCSErrors Dot3StatsAlignmentErrorsDot3StatsInternalMacTransmitError Dot3StatsSingleCollisionFramesInterface statistics Show interface gigabitethernet port number ip-counters Internet Protocol IP statisticsLink statistics Layer 2 statisticsFDB statistics Show interface gigabitethernet port number link-countersIP statistics Layer 3 statisticsARP statistics ArpEntriesCur ArpEntriesHighWater ARP statisticsDNS statistics DnsInRequests DnsOutRequests DnsBadRequests DNS statisticsIcmp statistics TCP statistics UDP statistics Igmp Multicast Group statistics Management Processor statisticsShow mp tcp-block Show mp udp-block161 10ad41e8/10ad5790All UDP allocated control blocks Listen Snmp statistics Show snmp-server counters Command mode All except User ExecCPU statistics Decoding Snmp messages received NTP statistics Show ntp counters Command mode AllStatistics dump Uplink Failure Detection statisticsSaving the configuration Configuration CommandsSystem configuration Viewing and saving changesSystem host log configuration Secure Shell Server configuration Radius server configuration TACACS+ server configuration NTP server configuration System Snmp configuration SNMPv3 configuration Privacy-password password User Security Model configurationPrivacy-protocol desnone No snmp-server userView-based Access Control Model configuration SNMPv3 View configurationSNMPv3 Community Table configuration SNMPv3 Group configurationSNMPv3 Target Parameters Table configuration SNMPv3 Target Address Table configurationManagement Networks configuration SNMPv3 Notify Table configurationSystem Access configuration User ID configuration User Access Control configurationHttps Access configuration Temporarily disabling a port Port configurationPort link configuration Layer 2 configurationSpanning-tree mrst Enable Spanning-tree mrst ModeSpanning-tree mstp NameCist bridge configuration Common Internal Spanning Tree configurationCist port configuration Spanning Tree configuration Bridge Spanning Tree configuration Spanning Tree port configuration Static FDB configuration Forwarding Database configurationTrunk configuration Vlan configuration Layer 3 configurationDefault Gateway configuration IP interface configurationIgmp snooping configuration Address Resolution Protocol configurationIgmp configuration Igmp filtering configuration Igmp static multicast router configurationIgmp filter definition Domain Name System configurationIgmp filtering port configuration Rmon event configuration Remote Monitoring configurationRmon history configuration Rmon alarm configuration Port-based port mirroring Uplink Failure Detection configurationPort mirroring Failure Detection Pair configuration Configuration DumpLink to Monitor configuration Link to Disable configurationRestoring the active switch configuration Saving the active switch configurationOperations-level port options Operations CommandsUpdating the switch software image Boot OptionsDownloading new software to the switch Router# copy tftp image1image2boot-imageRouterconfig# boot image image1image2 Uploading a software image from the switchSwitch# copy image1image2boot-image tftp Selecting a software image to runAccessing the AOS CLI Selecting a configuration blockResetting the switch Forwarding Database maintenance Maintenance CommandsSystem maintenance Debugging options ARP cache maintenanceUuencode flash dump Igmp Snooping maintenanceIgmp Mrouter maintenance Switch# copy flash-dump tftp server filename Panic commandSwitch# clear flash-dump Tftp system dump putUnscheduled system dumps Index
Related manuals
Manual 62 pages 46.6 Kb

N8406-022 specifications

The NEC N8406-022 is a robust and versatile networking device designed primarily for organizations requiring high-performance connectivity solutions. As part of NEC's extensive portfolio of networking equipment, the N8406-022 is engineered to address the demands of modern enterprise environments, ensuring seamless communication and data processing capabilities.

One of the key features of the N8406-022 is its multi-layer switching functionality. This device supports Layer 2 and Layer 3 switching, allowing for efficient data routing and reducing latency within local area networks (LANs). This capability is particularly beneficial for businesses that rely on real-time data access and transfer, such as those in financial services, media, and telecommunications.

The N8406-022 is equipped with advanced Quality of Service (QoS) features that help prioritize critical network traffic. This means that voice and video data packets can be given precedence over less time-sensitive information, ensuring that essential communication remains clear and uninterrupted. This is crucial for organizations leveraging VoIP and video conferencing solutions.

In terms of connectivity, the NEC N8406-022 offers a variety of ports, including multiple Gigabit Ethernet ports, which facilitate high-speed data transfer and enable seamless integration into existing network infrastructures. The device may also include 10 Gigabit SFP+ ports, providing the flexibility for high-capacity uplinks to support bandwidth-intensive applications and storage solutions.

Security is another focal point of the NEC N8406-022, with integrated features such as VLAN support, access control lists (ACLs), and port security measures. These capabilities protect sensitive data from unauthorized access and ensure that only legitimate users and devices can connect to the network.

Moreover, the N8406-022 often incorporates advanced energy-efficient technologies that minimize power consumption without compromising performance. This not only contributes to operational cost savings but also supports organizations in their sustainability efforts.

With its combination of performance, security, and energy efficiency, the NEC N8406-022 stands out as a reliable networking solution suitable for a wide range of enterprises looking to enhance their connectivity and operational efficiency. Whether deployed in data centers or as part of a corporate network, this device is built to meet the evolving demands of today’s digital landscape.