IBM Support

SNMPv3 security enhancements

News


Abstract

SNMP attributes can be configured to allow only SNMPv3 for the SNMP agent, the local trap manager, and the SNMP manager APIs. An SNMPv3 driver is available for network-attached printers. In addition, it is now possible to restrict information being returned by SNMPv3 by defining View-based Access Control Model (VACM) rules. Additional SHA-2 authentication types for SHA-256 and SHA-512 are new options when configuring SNMPv3 users.

Content

You are in: IBM i Technology Updates > IBM i Security > SNMPv3 security enhancements
New SNMPv3 Features provide a higher level of security than previous options.
Configure to allow only SNMPv3 for SNMP agent, local trap manager, and SNMP manager APIs.   This can be done by changing the value of the Allow SNMPv3 (ALWSNMPV3) attribute as follows: 
Other options for a less restrictive environment are also supported for the ALWSNMPV3 attribute.
Define View-based Access Control  Model (VACM) rules to restrict information returned. 
 
New SHA-256 and SHA-512 options can be configured as authentication types for users
New and changed commands include:

[{"Type":"MASTER","Line of Business":{"code":"LOB57","label":"Power"},"Business Unit":{"code":"BU058","label":"IBM Infrastructure w\/TPS"},"Product":{"code":"SWG60","label":"IBM i"},"ARM Category":[{"code":"a8m0z0000000CLCAA2","label":"Communications-\u003ESNMP"}],"Platform":[{"code":"PF012","label":"IBM i"}],"Version":"7.5.0"}]

Document Information

Modified date:
03 May 2022

UID

ibm16578685