How to ensure the security of configuring SNMP

  

In the process of using win 2003 system, it is necessary to configure the snmp protocol of the network. The configuration method of this kind of network protocol is not known to all users, so how to use it in Windows Server 2003 is a simple network management protocol. & rdquo; (SNMP) service configures network security.

The SNMP service acts as an agent that collects information that can be reported to an SNMP management station or console. You can use SNMP services to collect data and manage Windows Server 2003, Microsoft Windows XP and Microsoft Windows 2000-based computers across the entire corporate network.

Typically, the method of securing communication between an SNMP agent and an SNMP management station is to assign a shared community name to these agents and management stations. When the SNMP management station sends a query to the SNMP service, the community name of the requester is compared to the community name of the agent. If it matches, the SNMP management station has been authenticated. If it does not match, it indicates that the SNMP agent considers the request to be "failed to access" and may send an SNMP trap message.

SNMP messages are sent in clear text. These plaintext messages are easily intercepted and decoded by a network analysis program such as "Microsoft Network Monitor". Unauthorized personnel can capture community names to get important information about network resources.

<;IP Security Protocol" (IP Sec) can be used to protect SNMP communications. You can create an IP Sec policy that protects traffic on TCP and UDP ports 161 and 162 to protect SNMP transactions.

Creating a Filter List

To create an IP Sec policy that protects SNMP messages, first create a filter list. Here's how:

Click Start, point to Administrative Tools, and then click Local Security Policy.

Expand security settings, right-click on "IP Security Policy on Local Computer" and click "Manage IP Filter List and Filter Action".

Click the “Manage IP Filter List& rdquo; tab and click Add.

In the IP Filter List dialog box, type SNMP message (161/162) (in the Name box), then type the TCP and UDP port 161 filter (in the Description box).

Click the Use “Add Wizard” checkbox to clear it, then click Add.

In the "Source Address" box (located on the Address tab of the displayed IP Filter Properties dialog box), click “any IP address”. In the “Destination Address" box, click My IP Address. Click on “Mirror. Match the packet with the opposite source and destination address check box to select it.

Click the Protocols tab. In the “Select Protocol Type” box, select UDP. In the “Set IP Protocol Port” box, select “From this port”, then type 161 in the box. Click “to this port”, then type 161 in the box.

Click OK.

In the IP Filter List dialog, select Add.

In the "Source Address" box (located on the Address tab of the displayed IP Filter Properties dialog box), click “any IP address”. In the “Destination Address" box, click My IP Address. Check the "Mirror, match packets with opposite source and destination addresses" checkbox.

Click the Protocols tab. In the Select Protocol Type box, click TCP. In the “Set IP Protocol" box, click “From this port”, then type 161 in the box. Click “to this port”, then type 161 in the box.

Click OK.

Copyright © Windows knowledge All Rights Reserved