User's Manual
18-7
Cisco IOS Software Configuration Guide for Cisco Aironet Access Points
OL-11350-01
Chapter 18 Configuring SNMP
 Configuring SNMP
To disable access for an SNMP community, set the community string for that community to the null 
string (do not enter a value for the community string). To remove a specific community string, use the 
no snmp-server community string global configuration command. 
This example shows how to assign the strings open and ieee to SNMP, to allow read-write access for 
both, and to specify that open is the community string for queries on non-IEEE802dot11-MIB objects 
and ieee is the community string for queries on IEEE802dot11-mib objects:
ap(config)# snmp-server view dot11view ieee802dot11 included
ap(config)# snmp-server community open 
rw
ap(config)# snmp-server community ieee view ieee802dot11 rw
Specifying SNMP-Server Group Names 
To configure a new SNMP group, or a table that maps SNMP users to SNMP views, use the following 
command in global configuration mode:
Step 3
access-list access-list-number 
{deny | permit} source [source-wildcard]
(Optional) If you specified an IP standard access list number in 
Step 2, then create the list, repeating the command as many times 
as necessary.
• For access-list-number, enter the access list number specified 
in Step 2.
• The deny keyword denies access if the conditions are 
matched. The permit keyword permits access if the conditions 
are matched.
• For source, enter the IP address of the SNMP managers that 
are permitted to use the community string to gain access to the 
agent.
• (Optional) For source-wildcard, enter the wildcard bits in 
dotted decimal notation to be applied to the source. Place ones 
in the bit positions that you want to ignore.
Recall that the access list is always terminated by an implicit deny 
statement for everything.
Step 4
end Return to privileged EXEC mode.
Step 5
show running-config Verify your entries.
Step 6
copy running-config startup-config (Optional) Save your entries in the configuration file.
Command Purpose
Command Purpose
snmp-server group [groupname  {v1 | v2c | v3 [auth | noauth 
| priv]}][read readview] [write writeview] [notify notifyview] 
[access access-list]
Configures a new SNMP group, or a table that maps SNMP 
users to SNMP views.










