13.07.2015 Views

Administration of the Avaya G350 Media Gateway - Avaya Support

Administration of the Avaya G350 Media Gateway - Avaya Support

Administration of the Avaya G350 Media Gateway - Avaya Support

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Configuring SNMPUsersSNMPv3 uses <strong>the</strong> User-based Security Model (USM) for security, and <strong>the</strong> View-based AccessControl Model (VACM) for access control. USM uses <strong>the</strong> HMAC-MD5-96 and HMAC-SHA-96protocols for user au<strong>the</strong>ntication, and <strong>the</strong> CBC-DES56 protocol for encryption or privacy.An unlimited number <strong>of</strong> uses can access SNMPv3 at <strong>the</strong> same time.SNMP supports three security levels:● NoAuthNoPriv — This is <strong>the</strong> lowest level <strong>of</strong> SNMPv3 security. No MessageAu<strong>the</strong>ntication Code (MAC) is provided with <strong>the</strong> message, and no encryption is performed.This method maintains <strong>the</strong> same security level as SNMPv1, but provides a method forlimiting <strong>the</strong> access rights <strong>of</strong> <strong>the</strong> user.●AuthNoPriv — User au<strong>the</strong>ntication is performed based on MD5 or SHA algorithms. Themessage is sent with an HMAC that is calculated with <strong>the</strong> user key. The data part is sentunencrypted.● AuthPriv — User au<strong>the</strong>ntication is performed based on MD5 or SHA algorithms. Themessage is sent in encrypted MAC that is calculated with <strong>the</strong> user key, and <strong>the</strong> data part issent with DES56 encryption using <strong>the</strong> user key.Use <strong>the</strong> snmp-server user command to create a user or to change <strong>the</strong> parameters <strong>of</strong> anexisting user. This command includes <strong>the</strong> following parameters:●●●●●●●Username — A string <strong>of</strong> up to 32 characters representing <strong>the</strong> name <strong>of</strong> <strong>the</strong> user.Groupname — A string <strong>of</strong> up to 32 characters representing <strong>the</strong> name <strong>of</strong> <strong>the</strong> group withwhich <strong>the</strong> user is associated.SecurityModel — The SNMP version functionality that <strong>the</strong> user is authorized to use.Possible values are: v1 (SNMPv1), v2c (SNMPv2c), and v3 (SNMPv3).Au<strong>the</strong>ntication Protocol — The au<strong>the</strong>ntication protocol to use. Possible values are:noAuth (no au<strong>the</strong>ntication), md5 (HMAC MD5), and sha (HMAC SHA-1).Au<strong>the</strong>ntication Password — A string <strong>of</strong> between 8 and 64 characters specifying <strong>the</strong>user’s au<strong>the</strong>ntication password. The au<strong>the</strong>ntication password is transformed using <strong>the</strong>au<strong>the</strong>ntication protocol and <strong>the</strong> SNMP engine ID to create an au<strong>the</strong>ntication key.Privacy Protocol — The privacy protocol to use. Possible values are: No privacy,DES privacy.Privacy Password — A string <strong>of</strong> between 8 and 64 characters specifying <strong>the</strong> user’sprivacy password.Use <strong>the</strong> no form <strong>of</strong> <strong>the</strong> snmp-server user command to remove a user and its mapping to aspecified group. If you do not specify a group, <strong>the</strong> no form <strong>of</strong> <strong>the</strong> snmp-server usercommand removes <strong>the</strong> user from all groups.122 <strong>Administration</strong> <strong>of</strong> <strong>the</strong> <strong>Avaya</strong> <strong>G350</strong> <strong>Media</strong> <strong>Gateway</strong>

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!