snmp-server group
Creates user-defined groups for SNMPv1/v2/v3 and configures read, write, and notify permissions to access the MIB view.
Syntax
snmp-server group
groupname
{
v1
|
v2c
|
v3
{
auth
|
noauth
|
priv
}
}
[
read
viewname
]
[
write
viewname
]
[
notify
viewname
]
no snmp-server group
groupname
{
v1
|
v2c
|
v3
{
auth
|
noauth
|
priv
}
}
[
read
viewname
]
[
write
viewname
]
[
notify
viewname
]
Parameters
-
groupname
- Specifies the name of the SNMP group to be created.
-
v1
|
v2c
|
v3
- Specifies the version of SNMP.
- auth
|
noauth
|
priv
- Specifies the various security levels for SNMPv3.
- auth
- Specifies the authNoPriv security level. Password authentication is used based on either MD5 or SHA hash authentication and no encryption is used for communications between the devices.
- noauth
- Specifies the noAuthNoPriv security level. If no security level is specified, noauth is the default. This security level means that there is no authentication password exchanged and the communications between the agent and the server are not encrypted. The SNMP requests are authorized based on a username string match similar to the community string for SNMPv1/v2c.
- priv
- Specifies the authPriv security level. Password authentication is used based on either MD5 or SHA hash authentication and the communication between the agent and the server are also encrypted.
-
read
viewname
- Specifies the name of the view that enables you to provide read access.
-
write
viewname
- Specifies the name of the view that enables you to provide both read and write access.
-
notify
viewname
- Specifies the name of the view that enables you to provide access to the MIB for trap or inform.
Modes
Global configuration mode
Usage Guidelines
Maximum number of SNMP groups supported is 10.
SNMP SET is no longer allowed. Therefore, when configured, the write view will not take effect.
Examples
The following example creates SNMP server group entries for SNMPv3 user group with auth or noauth permission.
device(config)# snmp-server group group1 v3 auth read myview write myview notify myview
device(config)# snmp-server group group2 v3 noauth read all write all notify all
device(config)# snmp-server group group3 v3 auth
The following example removes the configured SNMP server groups.
device(config)# no snmp-server group test1 v3 auth
device(config)# no snmp-server group TEST1 v3 auth read myview write myview
device(config)# no snmp-server group TEST2 v3 noauth read all write all notify all
The following examples shows the message that is displayed when trying to use the write
configuration on a group.
SLX(config)# snmp-server group group2_test v2c read view_all write view_all notify view_all
% Info: SNMP set operation is not supported. write view configured will not take effect.