A:ALA-1# show snmp counters
==============================================================================
SNMP counters:
==============================================================================
in packets : 463
------------------------------------------------------------------------------
in gets : 93
in getnexts : 0
in sets : 370
out packets: 463
------------------------------------------------------------------------------
out get responses : 463
out traps : 0
variables requested: 33
variables set : 497
==============================================================================
A:ALA-1#
*A:Dut-B# show snmp streaming counters
==============================================================================
STREAMING counters:
==============================================================================
in getTables : 772
in getManys : 26
------------------------------------------------------------------------------
out responses : 848
==============================================================================
A:ALA-1# show system information
===============================================================================
System Information
===============================================================================
System Name : ALA-1
System Type : 7750 SR-12
System Version : B-0.0.I1204
System Contact :
System Location :
System Coordinates :
System Active Slot : A
System Up Time : 1 days, 02:12:57.84 (hr:min:sec)
SNMP Port : 161
SNMP Engine ID : 0000197f00000479ff000000
SNMP Max Message Size : 1500
SNMP Admin State : Enabled
SNMP Oper State : Enabled
SNMP Index Boot Status : Not Persistent
SNMP Sync State : OK
Telnet/SSH/FTP Admin : Enabled/Enabled/Disabled
Telnet/SSH/FTP Oper : Up/Up/Down
BOF Source : cf1:
Image Source : primary
Config Source : primary
Last Booted Config File: ftp://172.22.184.249/./debby-sim1/debby-sim1-config.cfg
Last Boot Cfg Version : THU FEB 15 16:58:20 2007 UTC
Last Boot Config Header: # TiMOS-B-0.0.I1042 both/i386 Alcatel-Lucent SR 7750
Copyright (c) 2000-2007 Alcatel-Lucent. # All rights
reserved. All use subject to applicable license
agreements. # Built on Sun Feb 11 19:26:23 PST 2007 by
builder in /rel0.0/I1042/panos/main # Generated THU
FEB 11 16:58:20 2007 UTC
Last Boot Index Version: N/A
Last Boot Index Header : # TiMOS-B-0.0.I1042 both/i386 Alcatel-Lucent SR 7750
Copyright (c) 2000-2007 Alcatel-Lucent. # All rights
reserved. All use subject to applicable license
agreements. # Built on Sun Feb 11 19:26:23 PST 2007 by
builder in /rel0.0/I1042/panos/main # Generated THU
FEB 15 16:58:20 2007 UTC
Last Saved Config : N/A
Time Last Saved : N/A
Changes Since Last Save: No
Max Cfg/BOF Backup Rev : 5
Cfg-OK Script : N/A
Cfg-OK Script Status : not used
Cfg-Fail Script : N/A
Cfg-Fail Script Status : not used
Management IP Addr : 192.168.2.121/20
DNS Server : 192.168.1.246
DNS Domain : eng.timetra.com
BOF Static Routes :
A:ALA-1# show system security access-group
===============================================================================
Access Groups
===============================================================================
group name security security read write notify
model level view view view
-------------------------------------------------------------------------------
snmp-ro snmpv1 none no-security no-security
snmp-ro snmpv2c none no-security no-security
snmp-rw snmpv1 none no-security no-security no-security
snmp-rw snmpv2c none no-security no-security no-security
snmp-rwa snmpv1 none iso iso iso
snmp-rwa snmpv2c none iso iso iso
snmp-trap snmpv1 none iso
snmp-trap snmpv2c none iso
-------------------------------------------------------------------------------
No. of Access Groups: 8
===============================================================================
A:ALA-1#
A:ALA-1# show system security access-group detail
===============================================================================
Access Groups
===============================================================================
group name security security read write notify
model level view view view
-------------------------------------------------------------------------------
snmp-ro snmpv1 none no-security no-security
-------------------------------------------------------------------------------
No. of Access Groups:
...
===============================================================================
A:ALA-1#
A:ALA-49>show>system>security# authentication
===============================================================================
Authentication sequence : radius tacplus local
===============================================================================
server address status type timeout(secs) single connection retry count
-------------------------------------------------------------------------------
10.10.10.103 up radius 5 n/a 5
10.10.0.1 up radius 5 n/a 5
10.10.0.2 up radius 5 n/a 5
10.10.0.3 up radius 5 n/a 5
-------------------------------------------------------------------------------
radius admin status : down
tacplus admin status : up
health check : enabled
-------------------------------------------------------------------------------
No. of Servers: 4
===============================================================================
A:ALA-49>show>system>security#
A:ALA-48>show>system>security# password-options
===============================================================================
Password Options
===============================================================================
Password aging in days : 365
Number of invalid attempts permitted per login : 5
Time in minutes per login attempt : 5
Lockout period (when threshold breached) : 20
Authentication order : radius tacplus local
Configured complexity options :
Minimum password length : 8
===============================================================================
A:ALA-48>show>system>security#
A:ALA-48>show>system>security# per-peer-queuing
=================================================
CPM Hardware Queuing
=================================================
Per Peer Queuing : Enabled
Total Num of Queues : 8192
Num of Queues In Use : 0
=================================================
A:ALA-48>show>system>security#
A:ALA-48>config>system>snmp# show system security profile
===============================================================================
User Profile
===============================================================================
User Profile : test
Def. Action : none
-------------------------------------------------------------------------------
Entry : 1
Description :
Match Command:
Action : unknown
===============================================================================
User Profile : default
Def. Action : none
-------------------------------------------------------------------------------
Entry : 10
Description :
Match Command: exec
Action : permit
-------------------------------------------------------------------------------
Entry : 20
Description :
Match Command: exit
Action : permit
-------------------------------------------------------------------------------
Entry : 30
Description :
Match Command: help
Action : permit
-------------------------------------------------------------------------------
...
-------------------------------------------------------------------------------
Entry : 80
Description :
Match Command: enable-admin
Action : permit
===============================================================================
User Profile : administrative
Def. Action : permit-all
-------------------------------------------------------------------------------
Entry : 10
Description :
Match Command: configure system security
Action : permit
-------------------------------------------------------------------------------
Entry : 20
Description :
Match Command: show system security
Action : permit
===============================================================================
-------------------------------------------------------------------------------
No. of profiles: 3
===============================================================================
A:ALA-48>config>system>snmp#
This command lists SNMP communities and characterisics. Including the community-name parameter modifies the output to include all details for the specified community, including the source IP address list and validation failure counters.
Note: The system-created communities that begin with “cli-” are only used for internal CLI management purposes and are not exposed to external SNMP access.
A:ALA-1# show system security snmp community
==============================================================================
Communities
==============================================================================
community access view version group name
------------------------------------------------------------------------------
cli-li-readwrite n/a li-view v2c cli-li-readwrite
cli-readonly r iso v2c cli-readonly
cli-readwrite rw iso v2c cli-readwrite
my-private1 rw iso v1 v2c snmp-rwa
my-public2 r no-security v1 v2c snmp-ro
test-123 rwa n/a v2c snmp-trap
------------------------------------------------------------------------------
No. of Communities: 6
==============================================================================
A:ALA-1#
A:ALA-1# show system security snmp community "my-public2"
==============================================================================
Communities
==============================================================================
community access view version group name
src-access-list authFailures
------------------------------------------------------------------------------
my-public2 r no-security v1 v2c snmp-ro
my-list1 5
==============================================================================
A:ALA-1#
This command displays source access lists and the hosts for each. Including the list-name parameter modifies the output show only the specified
src-access-list.
A:ALA-1# show system security snmp src-access-list
=============================================================================
Source Access Lists
=============================================================================
List Name
HostName Host Address
-----------------------------------------------------------------------------
L1
H1 100.100.100.1
H2 100.100.100.2
L2
HA 100.100.101.1
HB 100.100.101.2
-----------------------------------------------------------------------------
Total Access Lists: 2
=============================================================================
A:ALA-1#
A:ALA-1# show system security snmp src-access-list L1
=============================================================================
Source Access Lists
=============================================================================
List Name
HostName Host Address
-----------------------------------------------------------------------------
L1
H1 100.100.100.1
H2 100.100.100.2
-----------------------------------------------------------------------------
Total Access Lists: 1
=============================================================================
A:ALA-1#
A:ALA-7# show system security ssh
SSH is enabled
Key fingerprint: 34:00:f4:97:05:71:aa:b1:63:99:dc:17:11:73:43:83
=======================================================
Connection Encryption Username
=======================================================
192.168.5.218 3des admin
-------------------------------------------------------
Number of SSH sessions : 1
=======================================================
A:ALA-7#
A:ALA-49>config>system>security# show system security ssh
SSH is disabled
A:ALA-49>config>system>security#
A:ALA-1# show system security user
===============================================================================
Users
===============================================================================
user id need user permissions password attempted failed local
new pwd console ftp snmp expires logins logins conf
-------------------------------------------------------------------------------
admin n y n n never 2 0 y
testuser n n n y never 0 0 y
-------------------------------------------------------------------------------
Number of users : 2
view [view-name] [detail
]
A:ALA-1# show system security view
===============================================================================
Views
===============================================================================
view name oid tree mask permission
-------------------------------------------------------------------------------
iso 1 included
no-security 1 included
no-security 1.3.6.1.6.3 excluded
no-security 1.3.6.1.6.3.10.2.1 included
no-security 1.3.6.1.6.3.11.2.1 included
no-security 1.3.6.1.6.3.15.1.1 included
-------------------------------------------------------------------------------
No. of Views: 6
===============================================================================
A:ALA-1#
A:ALA-1# show system security view no-security detail
===============================================================================
Views
===============================================================================
view name oid tree mask permission
-------------------------------------------------------------------------------
no-security 1 included
no-security 1.3.6.1.6.3 excluded
no-security 1.3.6.1.6.3.10.2.1 included
no-security 1.3.6.1.6.3.11.2.1 included
no-security 1.3.6.1.6.3.15.1.1 included
-------------------------------------------------------------------------------
No. of Views: 5
===============================================================================
=======================================
no-security used in
=======================================
group name
---------------------------------------
snmp-ro
snmp-rw
=======================================
A:ALA-1#