beautypg.com

H3C Technologies H3C SecBlade IPS Cards User Manual

Page 44

background image

37

To do…

Use the command… Remarks

Set the SNMP version

snmp-agent sys-info
{ contact sys-contact |
location sys-location |

version { all | { v1 | v2c

| v3 }* } }

Required
Currently, the SecBlade IPS card only supports

SNMPv3.
By default, SNMPv3 applies.

Configure a new SNMP group
and configure its access right

For SNMP v3:
snmp-agent group v3

group-name
[ authentication |

privacy ] [ read-view

read-view ] [ write-view

write-view ]
[ notify-view

notify-view ] [ acl

acl-number ]

Required
By default, the SNMP group configured with

the snmp-agent group v3 command adopts
non-authentication and non-encryption.

Create or update a MIB view to
specify the MIB objects that the

NMS can access

snmp-agent mib-view
{ excluded | included }

view-name oid-tree
[ mask mask-value ]

Required
The default view is ViewDefault.

Add a user to the SNMP group

snmp-agent usm-user
v3 user-name
group-name
[ [ cipher ]

authentication-mode

{ md5 | sha }

auth-password
[ privacy-mode { des56

| aes128 }

priv-password ] ] [ acl

acl-number ]

Required
If you execute this command for the same user

repeatedly, the last configuration takes effect.

Enable the ACFP server

acfp server enable

Required
Disabled by default.

Enable the ACSEI server

acsei server enable

Required
Disabled by default.