beautypg.com

H3C Technologies H3C SecBlade IPS Cards User Manual

Page 53

background image

46

To do…

Use the command…

Remarks

Set the SNMP version

snmp-agent sys-info { contact
sys-contact | location
sys-location | version { all |

{ v1 | v2c | v3 }* } }

Required
Currently, the SecBlade IPS card only

supports SNMPv3.
By default, SNMPv3 applies.

Create an SNMP group and set its
access right

For SNMP v3:
snmp-agent group v3
group-name [ authentication |

privacy ] [ read-view

read-view ] [ write-view

write-view ] [ notify-view
notify-view ] [ acl acl-number ]

Required
By default, the SNMP group
configured with the snmp-agent

group v3 command uses

non-authentication and

non-encryption.

Create or update a MIB view to
specify the MIB objects that the NMS
can access

snmp-agent mib-view
{ excluded | included }
view-name oid-tree [ mask

mask-value ]

Required
The default view is ViewDefault.

Add a user to the SNMP group

snmp-agent usm-user v3
user-name group-name

[ [ cipher ]

authentication-mode { md5 |

sha } auth-password
[ privacy-mode { des56 |

aes128 } priv-password ] ]

[ acl acl-number ]

Required
If you execute this command for the
same user repeatedly, the last

configuration takes effect.

Enable the ACFP server

acfp server enable

Required
Disabled by default.

Enable the ACSEI server

acsei server enable

Required
Disabled by default.