Dell PowerEdge VRTX User Manual

Page 163

background image


FILE LOCATION: C:\Users\gina\Desktop\Checkout_new\Dell Plasma\User


D E L L CO N F I D E N T I A L – P R E L I MI N A RY 4/ 1 8 /1 3 - F O R PR O O F O N LY

The switch supports SNMP notification filters, based on Object IDs (OIDs),

which are used by the system to manage switch features.
Authentication or Privacy Keys are modified in the User Security Model

SNMPv3 can only be enabled if the Local Engine ID is enabled.

SNMP Access Rights

Access rights in SNMP are managed in the following ways:

SNMPv1 and SNMPv2 — Communities

The community name is a password sent by the SNMP management

station to the device for authentication purposes.
A community string is transmitted along with the SNMPv1,v2 frames, but

neither the frames nor the community string are encrypted. Since

SNMPv1 and SNMPv2 are not encrypted, they are not secure.
Communities can be associated with views or groups, and they are defined

in the

Community pages.

SNMPv3 — Users and Groups
SNMP v3 works with users instead of communities. The users belong to

groups that have access rights assigned to them. Users are defined in the

User Security Model pages
SNMPv3 provides two security mechanisms:

Authentication — The switch checks that the SNMP user is an

authorized system administrator. This is done for each and every


Privacy — SNMP frames can carry encrypted data.

These mechanisms can be combined to provide three levels of security:

No security


Authentication and Privacy. Note that for both authentication and

privacy to be enabled, two groups with the same name, one with

authentication and one with privacy, must be created.