beautypg.com

H3C Technologies H3C SecBlade IPS Cards User Manual

Page 26

background image

19

To do…

Use the command…

Remarks

Set the SNMP version

snmp-agent sys-info { contact
sys-contact | location
sys-location | version { all |

{ v1 | v2c | v3 }* } }

Required
Currently, the SecBlade IPS card only

supports SNMPv3.
By default, SNMPv3 applies.

Configure a new SNMP group
and configure its access right

For SNMP v3:
snmp-agent group v3
group-name [ authentication

| privacy ] [ read-view

read-view ] [ write-view

write-view ] [ notify-view
notify-view ] [ acl

acl-number ]

Required
By default, the SNMP group configured with
the snmp-agent group v3 command adopts

non-authentication and non-encryption.

Create or update a MIB view
to specify the MIB objects that

the NMS can access

snmp-agent mib-view
{ excluded | included }

view-name oid-tree [ mask

mask-value ]

Required
The default view is ViewDefault.

Add a user to the SNMP group

snmp-agent usm-user v3
user-name group-name

[ [ cipher ]

authentication-mode { md5 |
sha } auth-password

[ privacy-mode { des56 |

aes128 } priv-password ] ]

[ acl acl-number ]

Required
If you execute this command for the same
user repeatedly, the last configuration takes

effect.

Enable the ACFP server

acfp server enable

Required
Disabled by default.

Enable the ACSEI server

acsei server enable

Required
Disabled by default.