Re: Help setting up snmpd.conf for encrypted V3 access only
"Joe Asdf" <[email protected]>
| Newsgroups | gmane.network.net-snmp.user |
|---|---|
| Message-ID | <[email protected]> |
Hi all, Thanks Dave for the quick reply. I changed "auth" to "priv". I added the -Dread_config option to snmpd. Here's the output: # snmpd -f -Le -Dread_config -c /etc/snmpd.conf /etc/snmpd.conf: line 1: Warning: Unknown token: rouser. Creating directory: /tmp/net-snmp NET-SNMP version 5.2.1 I was surprised -- I was expecting a lot more output after adding the -Dread_config option. Any ideas? Thanks! DS> From: Dave Shield DS> To: Joe Asdf DS> CC: [email protected] DS> Subject: Re: Help setting up snmpd.conf for encrypted V3 access only DS> Date: Mon, 10 Oct 2005 10:56:36 +0100 DS> DS> On Fri, 2005-10-07 at 15:17 -0700, Joe Asdf wrote: DS> > I can't figure out how to enforce that users connect to my DS> > agent via encrypted & authenticated SNMPv3. DS> > DS> > Currently, I have a fairly simple snmpd.conf: DS> > __________________________ DS> > rouser joe_username auth .1.3.6.1.4.1.bla.bla.bla DS> DS> First thing - for *encrypted* SNMPv3, you need to specify DS> "priv" instead of "auth" DS> DS> DS> > The problem is that I can walk my agent specifying SNMP v1 or v2 DS> DS> That sounds as if there's some other access control settings DS> somewhere, allowing community-based access. DS> DS> Try starting the agent using 'snmpd -f -Le -Dread_config' DS> and examine the output for any unexpected configuration. DS> DS> Dave ------------------------------------------------------- This SF.Net email is sponsored by: Power Architecture Resource Center: Free content, downloads, discussions, and more. http://solutions.newsforge.com/ibmarch.tmpl _______________________________________________ Net-snmp-users mailing list [email protected] Please see the following page to unsubscribe or change other options: https://lists.sourceforge.net/lists/listinfo/net-snmp-users