User manual
CONFIDENTIAL Protium Technologies, Inc. 4050-9901
Rev No: 05
5 GHz RF Modem 31-Jan-2007 36 of 84
This document and information contained herein is subject to the restrictions set forth on the title page
.
5 SNMP - Simple Network Management Protocol
5.1 Overview
The Models 4050 and 4050R include an SNMPv3 agent with the User-based Security Module (USM) using MD5
pass phrases for authentication and DES encryption for privacy. In these systems both authentication and privacy
options are permanently enabled and are required. SNMPv1 and SNMPv2 are not supported.
Authentication requires an account name and a pass phrase to gain access. There are no guest or anonymous
accounts to permit access without a known account. In addition, the privacy feature requires a separate pass
phrase for the encryption. Access is not possible without both the authentication and privacy pass phrases.
The SNMP accounts are separate from and independent of the user accounts used for local management. Creating,
changing, or deleting a local user account has no effect on SNMP accounts, and vice versa.
The SNMPv3 implementation implements the view-based access control model (VACM). Each account is
assigned a “view” of the MIB structure that defines which objects may be viewed and which may be changed. In
the 4050 and 4050R there are two predefined views, once corresponding approximately to the administrator
access available at the local management port, and one corresponding approximately to the operator access.
5.2 MIBs
There are three MIBs that are useful when accessing the Models 4050 and 4050R. Two of the these are from
Protium Technologies, Inc. and one is from the University of California at Davis (UCD). One of the MIBs from
Protium Technologies, Inc. is general information and the other is specific to the Models 4050 and 4050R. The
MIB from UCD is used for saving SNMPv3 user account information to non-volatile memory.
The Protium Technologies, Inc. MIBs are printed in the appendices of this document for reference. However,
computer files of the MIBs are generally more useful than the printed versions. These may be downloaded from
the Protium Technologies, Inc. web site at http://www.protiumtechnologies.com/support/4050.
The MIB files are:
PROTIUMTECH-MIB.mib
PROTIUMTECH-PRODUCTS-MODEL4050-MIB.mib
UCD-SNMP-MIB.txt
5.3 SNMP Tools
There are many SNMP tools (“MIB browsers”) available for Windows, Unix, Linux and other operating systems
that may be used to access the agent in the modem. Some simple tools are command line based while many have
graphical user interfaces, scripting capability, historical databases, and other features. Many are commercial
products while others are freely available, or have limited versions that are freely available.
Any recommendation for a specific MIB browser is beyond the scope of this document. However, when selecting
a browser be sure that it supports SNMPv3 since this is required. It will also be helpful if the MIB definition files
for the 4050/4050R can be imported into the MIB browser.
5.4 Account Management
SNMPv3 user accounts are managed via SNMP itself. They are not accessible from the local management port.
When shipped from the factory, there is a predefined user that may be used for account management and to create
additional user accounts. For security, the pass phrase on this predefined user should be changed to prevent