SNMP Engine ID and SNMPv3 in general

From: Filyurin, Yan (yan.filyurin@eds.com)
Date: Sat Mar 24 2007 - 19:15:00 ART


I was recently reviewing SNMP and was looking into version 3 and I
realized I am not completely sure I understand the most basic thing and
that is the use of SNMP Engine ID command. Rom what I understand it is
pretty much the SNMP process instance that runs on the router that is
responsible for SNMP activities and I understand you can only have one
in a router. What confuses me is the concept that you can have local
SNMP engine and remote SNMP engine ID. I found an earlier post
regarding this:

http://www.groupstudy.com/archives/cisco/200111/msg02511.html

but I am still a little confused. Maybe seriously confused. In other
words, I can see why you would want to define local SNMP engine, but at
what point would you ever want to define a remote engine ID. If you
just want to send traps or informs to NMS, could you just define a user
and just do something this:

snmp-server host X.X.X.X version 3 auth remoteuser

snmp-server host X.X.X.X informs version 3 noauth remoteuser

And can an IOS device be used as an SNMP proxy?

Also other than Cisco documentation, any good pointers to SNMP
configuration examples would be great. For example I found this one and
it helped a little:

http://www.loriotpro.com/ServiceAndSupport/How_to/howto_snmpv3_cisco_EN.
php

 thank you!

Yan Filyurin
EDS - Bank of America, Network Design
MS: MA6-536-0501
1025 Main Street
Waltham, MA 02451
Office: +1-781-788-2207
Cell: +1-617-875-4862
yan.filyurin@eds.com



This archive was generated by hypermail 2.1.4 : Sun Apr 01 2007 - 06:35:52 ART