Microsens MS453490M Management Guide User Manual

Page 67

Advertising
background image

C

HAPTER

2

| Initial Switch Configuration

Basic Configuration

– 67 –

C

OMMUNITY

S

TRINGS

(

FOR

SNMP

VERSION

1

AND

2

C

CLIENTS

)

Community strings are used to control management access to SNMP

version 1 and 2c stations, as well as to authorize SNMP stations to receive

trap messages from the switch. You therefore need to assign community

strings to specified users, and set the access level.

The default strings are:

public - with read-only access. Authorized management stations are

only able to retrieve MIB objects.

private - with read/write access. Authorized management stations are

able to both retrieve and modify MIB objects.

To prevent unauthorized access to the switch from SNMP version 1 or 2c

clients, it is recommended that you change the default community strings.

To configure a community string, complete the following steps:

1.

From the Privileged Exec level global configuration mode prompt, type
“snmp-server community string mode,” where “string” is the

community access string and “mode” is rw (read/write) or ro (read

only). Press <Enter>. (Note that the default mode is read only.)

2.

To remove an existing string, simply type “no snmp-server community
string,” where “string” is the community access string to remove. Press

<Enter>.

Console(config)#snmp-server community admin rw

Console(config)#snmp-server community private

Console(config)#

N

OTE

:

If you do not intend to support access to SNMP version 1 and 2c

clients, we recommend that you delete both of the default community

strings. If there are no community strings, then SNMP management access

from SNMP v1 and v2c clients is disabled.

T

RAP

R

ECEIVERS

You can also specify SNMP stations that are to receive traps from the

switch. To configure a trap receiver, use the “snmp-server host” command.

From the Privileged Exec level global configuration mode prompt, type:

“snmp-server host host-address community-string

[version {1 | 2c | 3 {auth | noauth | priv}}]”

where “host-address” is the IP address for the trap receiver, “community-

string” specifies access rights for a version 1/2c host, or is the user name

of a version 3 host, “version” indicates the SNMP client version, and “auth |

noauth | priv” means that authentication, no authentication, or

Advertising