Enterasys Networks RBT-4102 manual Security Level

Page 69


User specifies string to identify an SNMP user. (32 characters maximum)

Group is the name of the SNMP group to which the user is assigned (32 characters maximum). There are three pre‐defined groups: RO, RWAuth, or RWPriv.

Auth Type specifies the authentication type used for user authentication: “md5” or “none.”

Priv Type is the encryption type used for SNMP data encryption: Either DES or none. If DES is selected, a key must be entered in the Passphrase field.

Passphrase is the user password required when data encryption, Priv Type, is used (8 to 32 characters).

Action: Add adds a new user. Edt allows you to edit an existing user, Del deletes the user.

SNMP Groups allows you to combine the users into groups of authorization and privileges. Users must be assigned to groups that have the same security levels. If a user who has “AuthPriv” security (uses authentication and encryption) is assigned to a read‐only (RO) group, the user will not be able to access the database. An AuthPriv user must be assigned to the RWPriv group with the AuthPriv security level.

Group List is the list of groups for SNMP v3 users. The access point enables SNMP v3 users to be assigned to three pre‐defined groups. The available groups are:

RO is a read‐only group using no authentication and no data encryption. Users in this group use no security, authentication or encryption, in SNMP messages they send to the agent. This is the same as SNMP v1 or SNMP v2c.

RWAuth is a read/write group using authentication, but no data encryption. Users in this group send SNMP messages that use an MD5 key/password for authentication, but not a DES key/password for encryption.

RWPriv is a read/write group using authentication and data encryption. Users in this group send SNMP messages that use an MD5 key/password for authentication and a DES key/password for encryption. Both the MD5 and DES key/passwords must be defined.

Security Level

noAuthNoPriv — A read‐only level using no authentication and no data encryption. Users assigned to this group use no security, either authentication or encryption, in SNMP messages they send to the agent. This is the same as SNMP v1 or SNMP v2c.

authNoPriv — A read/write level using authentication, but no data encryption. Users assigned to this group send SNMP messages that use an MD5 password for authentication, but not a DES key for encryption.

authPriv — A read/write group using authentication and data encryption. Users assigned to this group send SNMP messages that use an MD5 password for authentication and a DES key for encryption. Both the MD5 password and DES key must be defined.

WriteView — Specifies an SNMPv3 write view for the group

None: No view specified indicates read‐only access.

Write: Users in the group have write access to all objects.

Action — Adds a new group; Edt allows you to edit an existing group; Del deletes the group.

RoamAbout RBT-4102 Wireless Access Point Configuration Guide 4-33

Image 69
Contents Enterasys RoamAbout Page Page Enterasys Networks, Inc. Firmware License Agreement Iii Page Enterasys Networks, Inc. Software License Agreement Page General Viii Contents Snmp Index Appendix a Default Settings Appendix B TroubleshootingXii Intended Audience Purpose of This ManualFirmware Version Support Associated DocumentsConvention Description Getting HelpOverview IntroductionPolicy FeaturesApplications Applications Introduction Network Configuration Network Topologies Ad Hoc Wireless LAN no Access Point or BridgeInfrastructure Wireless LAN Infrastructure Wireless LANInfrastructure Wireless LAN for Roaming Infrastructure Wireless LAN for Roaming Wireless PCsInfrastructure Wireless Bridge Infrastructure Wireless BridgeNetwork Topologies Network Configuration Required Connections Initial Setup Using the CLILogging Enter no ip dhcp to disable Dhcp Using Web Management Initial Setup Using the CLI ```` Initial Setup Using the CLI Initial Setup Using the CLI Initial Setup Using the CLI Initial Setup Using the CLI Using the Command Line Interface CLI Using the Web InterfaceSnmp Identification Using Web Management to Configure System InformationEnabled Using the CLI to Configure System InformationDisabled SG SingaporeTCP / IP Settings Using Web Management to Configure TCP/IP TCP / IP Settings TCP/IP Configuration Using the CLI to Configure TCP/IPEthernet Settings Configuration SSH ConfigurationTCP / IP Settings Radius Using Web Management to Configure Radius Radius Attributes Radius Accounting Attribute Description Using the CLI to Configure Radius Authentication Using Web Management to Configure Authentication Using the CLI to Configure Authentication LocalAllowed Filter Control and VLANs Using Web Management to Configure Filter Control and VLANsFilter Control and VLANs CLI Commands for Vlan Support Using the CLI to Configure Filter Control and VLANsFilter Control and VLANs CLI Commands for Filtering SVP Commands Using Web Management to Configure CDP CDP SettingsCDP Settings Using the CLI to Configure CDP Rogue AP Detection Using Web Management to Configure Rogue AP DetectionUsing the CLI to Configure Rogue AP Detection TT5 SsidSnmp Using Web Management to Configure SnmpSnmp Notifications Description Snmp Notifications Security Level Snmp Targets CLI Commands for Snmp Using the CLI to Configure SnmpTPS CLI Commands for Configuring SNMPv3 Users and GroupsSnmp CLI Commands for Configuring SNMPv3 Trap Filters CLI Commands for Configuring SNMPv3 TargetsChanging the Password AdministrationUsing Web Management to Change the Password Using Web Management to Enable and Disable Com Port Using the CLI to Change the PasswordUsing the CLI to Enable and Disable Com Port Enabling and Disabling Com PortUpgrading Firmware Using Web Management to Upgrade Firmware Using the CLI to Upgrade Firmware System Log Using Web Management to Configure System LogLogging Level Descriptions Error Level Using the CLI to Configure System Log Using Web Management to Configure Sntp TAIPEI, Beijing Using the CLI to Configure SntpWDS and STP Using Web Management to Configure WDS and STP WDS and STP WDS and STP Using the CLI to Configure WDS Using the CLI to Configure STP Radio Interface Radio Signal CharacteristicsUsing Web Management to Configure Interface Radio Settings Radio SettingsVlan ID Radius Attributes Number Value Radio Interface Radio Interface Radio Interface Example AES-TKIP WEPNot Supported DynamicAdmission Control No Example Tkip LongRequired PRE Shared KEYAC1Background Txop Limit 0.000 ms WMM Operation Wi-Fi Multimedia WMM ConfigurationWMM Backoff Wait times Using Web Management to Configure WMMSsid SW-WDS Using the CLI to Configure WMMAntenna Admission Control No AC2Video Txop Limit Using Web Management to Configure Virtual APs Virtual APs VAPs ConfigurationRadio Interface Using the CLI to Configure Virtual APs WPA-ONLY BIT EncryptionAdmission Control No WEP SecurityUsing Web Management to Configure Security Settings Wired Equivalent Privacy WEPSecurity Page Authentication 802.1x Authentication Security Security Using the CLI to Configure WPA over 802.1X Security Using the CLI to Configure WPA Pre-Shared KeyQuality of Service AC1Background LogCwMin LogCwMax Nopassword Allowed Local Using the CLI to Configure Local MAC AuthenticationNopassword Allowed EmptySecurity Using the CLI to Configure Radius MAC Authentication Remote Using the CLI to Configure WEP Shared Key Security Ssid WPA TKIP-WEPShared Ssid ETS Using the CLI to Configure WEP over 802.1x SecurityAuthentication Parameters AES Using the CLI to Configure WPA2 SecurityWPA2-ONLY Using the CLI to Configure WPA2 Pre-Shared Key Security WPA2-PSK Status Menu Description Status InformationUsing Web Management to View AP Status Status Information SQA Using the CLI to Display AP StatusUsing Web Management to View CDP Status Using the CLI to Display CDP Status Using Web Management to View Station Status Status Information Using Web Management to View Neighbor AP Detection Status Ibss Using the CLI to View Neighbor AP Detection StatusGtac LAB R2 DEMOWEP1Using Web Management to View WDS-STP Status Using the CLI to View WDS-STP Status Show bridgeSTP Child Status Show bridge linkNone Root Bridge StatusUsing Web Management to View Event Logs RoamAbout 4102#show events Using the CLI to View Event LogsOct 101551 Status Information Advanced Configuration Default Settings CDP WDS & STP VAP1 Nopassword Preamble Length Long Wireless Interface 802.11b/g Troubleshooting Steps TroubleshootingTroubleshooting Steps 80 m 264 ft Maximum Distance TablesMaximum Distance Tables Troubleshooting Index Radius MAC WDS 4-50bridge 4-52CLI Index-4
Related manuals
Manual 78 pages 58.85 Kb