SNMP agents can be instructed not to notify management stations |
---|
Risk Level: | Medium | Check or Attack Name: SNMPKillAuthTrap |
---|---|---|
Platforms: | SNMP | |
Description: | Many SNMP agents can be configured to send an SNMP trap or notification to a management station when the agent receives SNMP messages that fail authentication tests. If the snmpEnableAuthenTraps object can be written, these notifications can be silenced, preventing the agent from issuing notification |
|
Remedy: | Set the community string to a value that is not easily guessed. Use uppercase, lowercase, and numeric characters. If the agent supports View Access Control, limit the views that the agent may reveal. Follow the agent manufacturer's recommendations for controlling access via SNMP. |
|
References: | Request for Comment document RFC 1157, A Simple Network Management Protocol (SNMP), ftp://ftp.isi.edu/in-notes/rfc1157.txt |
Know Your Risks |