User Manual

UPS Network Management Card 3 User Guide57
Enable SNMPv3 access under access enables this method of communication with this device.
User Profiles. By default, lists the settings of four user profiles, configured with the user names apc snmp
profile1 through apc snmp profile4, with no authentication and no privacy (no encryption). To edit the
following settings for a user profile, click a user name in the list.
User Name: The identifier of the user profile. SNMP version 3 maps GETs, SETs, and traps to a user
profile by matching the user name of the profile to the user name in the data packet being transmitted.
A user name can have up to 32 ASCII characters.
Authentication Passphrase: A phrase of 15 to 32 ASCII characters that verifies that the NMS
communicating with this device through SNMPv3 is the NMS it claims to be.
It also verifies that the message has not been changed during transmission, and that the message was
communicated in a timely manner. This indicates that it was not delayed and that it was not copied and
sent again later at an inappropriate time.
Privacy Passphrase: A phrase of 15 to 32 ASCII characters that ensures the privacy of the data that
an NMS is sending to or receiving from this device through SNMPv3, by using encryption.
Authentication Protocol: The implementation of SNMPv3 supports SHA and MD5 authentication.
One of these must be selected.
Privacy Protocol: The implementation of SNMPv3 supports AES and DES as the protocols for
encrypting and decrypting data. You must use both a privacy protocol and a privacy password,
otherwise the SNMP request is not encrypted.
In turn, you cannot select the privacy protocol if no authentication protocol is selected.
Access Control. You can configure up to four access control entries to specify which Network Management
Systems (NMSs) have access to the NMC. To edit, click a user name.
By default one entry is assigned to each of the four user profiles. You can edit these settings to apply more
than one entry to any one user profile to grant access by several specific IP addresses, host names, or IP
address masks.
By default, all NMSs that use that profile have access to this device.
If you configure multiple access control entries for one user profile, it means that one or more of the
other user profiles must have no access to this device.
User Name: From the drop-down list, select the user profile to which this access control entry will apply. The
choices available are the four user names that you configure through the “User Profiles” option.
NMS IP/Host Name: The IP address, IP address mask, or host name that controls access by the NMS. A host
name or a specific IP address (for example, 149.225.12.1) allows access only by the NMS at that location. An
IP address mask that contains 255 restricts access as follows:
149.225.12.255: Access only by an NMS on the 149.225.12 segment.
149.225.255.255: Access only by an NMS on the 149.225 segment.
149.255.255.255: Access only by an NMS on the 149 segment.
0.0.0.0 (the default setting) which can also be expressed as 255.255.255.255: Access by any NMS on
any segment.
Modbus screens
Use the Modbus options to configure your NMC to use the Modbus protocol, to connect to a Building
Management System (BMS).
To use SNMPv3, you must have a MIB program that supports SNMPv3.
The NMC supports SHA or MD5 authentication and AES or DES encryption.
SNMPv3 is disabled by default. A valid user profile must be enabled with passphrases
(
Authentication Passphrase, Privacy Passphrase) set before SNMPv3 communications can be
established.