Security
7450 ESS System Mangement Guide Page 171
hash — When hash is not specified, then non-encrypted characters can be entered. When hash is 
configured, then all specified keys are stored in an encrypted format in the configuration file. The 
password must be entered in encrypted form when the hash parameter is used. 
md5 key — The authentication protocol can either be HMAC-MD5-96 or HMAC-SHA-96. 
The MD5 authentication key is stored in an encrypted format. The minimum key length is 
determined by the config>system>security>password>minimum-length value. The maximum 
length is 16 octets (32 printable characters).
The complexity of the key is determined by the complexity-rules command.
sha key — The authentication protocol can be either HMAC-MD5-96 or HMAC-SHA-96. 
The sha authentication key is stored in an encrypted format. The minimum key length is 
determined by the config>system>security>password>minimum-length value. The maximum 
length is 20 octets (40 printable characters).
The complexity of the key is determined by the complexity-rules command.
privacy none — Do not perform SNMP packet encryption. 
Default privacy none
privacy des-key key-2  — Use DES for SNMP payload encryption and configure the key.  The key 
must be a 32 hex-character string and is stored in an encrypted format. 
privacy aes-128-cfb-key key-2   — Use 128 bit CFB mode AES for SNMP payload encryption and 
configure the key.  The key must be a 32 hex-character string and is stored in an encrypted 
format.
Default  privacy none
group
Syntax group group-name
no group
Context config>system>security>user>snmp
Description This command associates (or links) a user to a group name. The group name must be configured with 
the config>system>security>user >snmp>group command. The access command links the group 
with one or more views, security model (s), security level (s), and read, write, and notify permissions
Default No group name is associated with a user.
Parameters group-name — Enter the group name (between 1 and 32 alphanumeric characters) that is associated 
with this user. A user can be associated with one group-name per security model. 
cannot-change-password
Syntax [no] cannot-change-password