
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-23-2020 12:16 PM
Hi, is it possible to restrict an SNMPv3 user to certain MIBs?
Solved! Go to Solution.
- Labels:
-
Identity Services Engine (ISE)
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-23-2020 02:34 PM
You can if you leverage SNMP views. I'll admit that the documentation around it isn't great, but it is certainly doable. A lot of SNMP bugs have workarounds suggested leveraging views to exclude problem MIBs.
basic ex.
SNMPv3:
snmp-server user psirt psirt-snmp v3
snmp-server group psirt-snmp v3 noauth read psirt
snmp-server view psirt cipSecSpiEntry excluded
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-23-2020 02:34 PM
You can if you leverage SNMP views. I'll admit that the documentation around it isn't great, but it is certainly doable. A lot of SNMP bugs have workarounds suggested leveraging views to exclude problem MIBs.
basic ex.
SNMPv3:
snmp-server user psirt psirt-snmp v3
snmp-server group psirt-snmp v3 noauth read psirt
snmp-server view psirt cipSecSpiEntry excluded
