Cisco Systems C2960XSTACK Manuel d'utilisateur Page 56

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer
  • Page
    / 112
  • Table des matières
  • MARQUE LIVRES
  • Noté. / 5. Basé sur avis des utilisateurs
Vue de la page 55
SNMPv2C replaces the Party-based Administrative and Security Framework of SNMPv2Classic with
the community-string-based Administrative Framework of SNMPv2C while retaining the bulk retrieval
and improved error handling of SNMPv2Classic. It has these features:
SNMPv2Version 2 of the Simple Network Management Protocol, a Draft Internet Standard,
defined in RFCs 1902 through 1907.
SNMPv2CThe community-string-based Administrative Framework for SNMPv2, an Experimental
Internet Protocol defined in RFC 1901.
SNMPv3Version 3 of the SNMP is an interoperable standards-based protocol defined in RFCs 2273
to 2275. SNMPv3 provides secure access to devices by authenticating and encrypting packets over the
network and includes these security features:
Message integrityEnsures that a packet was not tampered with in transit.
AuthenticationDetermines that the message is from a valid source.
EncryptionMixes the contents of a package to prevent it from being read by an unauthorized
source.
To select encryption, enter the priv keyword.Note
Both SNMPv1 and SNMPv2C use a community-based form of security. The community of managers able to
access the agents MIB is defined by an IP address access control list and password.
SNMPv2C includes a bulk retrieval function and more detailed error message reporting to management
stations. The bulk retrieval function retrieves tables and large quantities of information, minimizing the number
of round-trips required. The SNMPv2C improved error-handling includes expanded error codes that distinguish
different kinds of error conditions; these conditions are reported through a single error code in SNMPv1. Error
return codes in SNMPv2C report the error type.
SNMPv3 provides for both security models and security levels. A security model is an authentication strategy
set up for a user and the group within which the user resides. A security level is the permitted level of security
within a security model. A combination of the security level and the security model determine which security
method is used when handling an SNMP packet. Available security models are SNMPv1, SNMPv2C, and
SNMPv3.
The following table identifies characteristics and compares different combinations of security models and
levels:
Table 7: SNMP Security Models and Levels
ResultEncryptionAuthenticationLevelModel
Uses a community
string match for
authentication.
NoCommunity stringnoAuthNoPrivSNMPv1
Uses a community
string match for
authentication.
NoCommunity stringnoAuthNoPrivSNMPv2C
Catalyst 2960-X Switch Network Management Configuration Guide, Cisco IOS Release 15.0(2)EX
44 OL-29044-01
Configuring Simple Network Management Protocol
Prerequisites for SNMP
Vue de la page 55
1 2 ... 51 52 53 54 55 56 57 58 59 60 61 ... 111 112

Commentaires sur ces manuels

Pas de commentaire