Re: Help setting up snmpd.conf for encrypted V3 access only

"Joe Asdf" <[email protected]>
Newsgroups gmane.network.net-snmp.user
Message-ID <[email protected]>
Hi all,

Thanks Dave for the quick reply.

I changed "auth" to "priv".  I added the -Dread_config option to snmpd.  
Here's the output:

# snmpd -f -Le -Dread_config -c /etc/snmpd.conf
/etc/snmpd.conf: line 1: Warning: Unknown token: rouser.
Creating directory: /tmp/net-snmp
NET-SNMP version 5.2.1

I was surprised -- I was expecting a lot more output after adding the 
-Dread_config option.  Any ideas?


Thanks!


DS> From: Dave Shield
DS> To: Joe Asdf
DS> CC: [email protected]
DS> Subject: Re: Help setting up snmpd.conf for encrypted V3 access only
DS> Date: Mon, 10 Oct 2005 10:56:36 +0100
DS>
DS> On Fri, 2005-10-07 at 15:17 -0700, Joe Asdf wrote:
DS> >  I can't figure out how to enforce that users connect to my
DS>  > agent via encrypted & authenticated SNMPv3.
DS>  >
DS>  > Currently, I have a fairly simple snmpd.conf:
DS>  > __________________________
DS>  > rouser joe_username auth .1.3.6.1.4.1.bla.bla.bla
DS>
DS> First thing - for *encrypted* SNMPv3, you need to specify
DS> "priv" instead of "auth"
DS>
DS>
DS>  > The problem is that I can walk my agent specifying SNMP v1 or v2
DS>
DS> That sounds as if there's some other access control settings
DS> somewhere, allowing community-based access.
DS>
DS> Try starting the agent using 'snmpd -f -Le -Dread_config'
DS> and examine the output for any unexpected configuration.
DS>
DS> Dave




-------------------------------------------------------
This SF.Net email is sponsored by:
Power Architecture Resource Center: Free content, downloads, discussions,
and more. http://solutions.newsforge.com/ibmarch.tmpl
_______________________________________________
Net-snmp-users mailing list
[email protected]
Please see the following page to unsubscribe or change other options:
https://lists.sourceforge.net/lists/listinfo/net-snmp-users
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.