cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
8005
Views
0
Helpful
2
Replies

SNMP v3 with sha-256 Authentication

hhadorn
Level 1
Level 1

Hi there,

I have a customer running Catalyst WS-C2960+24TC-L with IOS Release 15.0(2)SE5.

 

He would like to run SNMP v3 with following:

snmp-server user snmpuser GROUP-RO v3 auth sha-256 xxxxx priv aes 256 yyyyy

 

unfortunately I am not able to find any configuration option for auth sha-256, only for auth sha. On the other side i can configure aes 256.

 

Ist auth sha-256 supported with the running IOS Release? 

If yes, how do i have to configure it?

If not, please indicate the minimum release number, wher sha-256 for snmpv3 auth is supported

 

Thanks a lot

Heinz

2 Replies 2

Mark Malone
VIP Alumni
VIP Alumni
Hi
You cant configure the SHA option like that in SNMPv3 in Cisco switches anyway ,you only get 2 choices SHA or MD5 even on newer 9ks its the same , you have option aes 256 in priv section alright

https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/snmp/configuration/xe-3se/3850/snmp-xe-3se-3850-book/nm-snmp-snmpv3.html

authPriv


MD5 or SHA


Data Encryption Standard (DES)


Provides authentication based on the HMAC-MD5 or HMAC-SHA algorithms. In addition to authentication, provides DES 56-bit encryption based on the Cipher Block Chaining (CBC)-DES (DES-56) standard.

m_pfeiler
Level 1
Level 1

Helpful !  Because of still using insecure obsoleted / depreciated  auth. meth. / algorithms I think I will consider in making purchasing decisions.
br