FW 08.01.00 McDATA E/OS Command Line Interface User Manual (620-000134-740, November 2005)

2
CLI Commands
2-75
config
5a:6b:7d:b9:35:3e:13:53:61:38:be:bb:54:39:18:39:23:ac:
52:a1:bf:d4:87:79:22:2c:ee:fb:3e:40:89:3d:97:9e:c7:b3:
7f:f2:4f:2e:af:67:3c:08:63:71:1b:b3:85:7b:dc:81:a8:3c:
85:da:84:07:62:2b:a5:83:92:aa
PEM:
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
MD5:
1F:AC:B8:FF:BD:92:F0:13:E7:43:5E:AB:7F:C4:2D:E6
SHA-1:
5E:4A:0E:91:33:4B:10:75:00:EE:33:A8:AD:55:14:46:F4:E3:6B:43
config.snmp
The E/OS provides additional level of security to the existing SNMP
framework by supporting SNMPV3 in addition to SNMP versions 1
and 2, which authenticate the SNMP requests based on the
“community” string.
SNMPv3 provides security and access control by supporting a set of
authentication protocols (HMAC-MD5-96, HMAC-SHA-96) and a
privacy protocol (CBC-DES symmetric encryption protocol). The
security and access based on the User-based Security Model (USM)
and View-based Access Control Model (VACM) requires using
multiple tables: User Table, Access Table, Security-to-Group Table
and Target Table. The E/OS CLI provides commands to configure
these tables and enable or disable v1-v2/v3 support.
The SNMP client must be configured according to the security and
access settings on the agent. To ensure that existing v1 and v2
community strings can continue to communicate with the agent, they
must be configured appropriately in SNMPv3.