201
group-name: Specifies an SNMPv3 group name, a case-sensitive string of 1 to 32 characters.
user-role role-name: Specifies a user role name, a case-sensitive string of 1 to 63 characters.
remote { ip-address | ipv6 ipv6-address }: Specifies the IPv4 or IPv6 address of the remote SNMP entity.
vpn-instance vpn-instance-name: Specifies the VPN for the target host receiving SNMP notifications. The
vpn-instance-name argument specifies the name of the MPLS L3VPN, a case-sensitive string of 1 to 31
characters. If this parameter is not specified, the target host is in the public network.
cipher: Specifies auth-password and priv-password as encrypted keys, which can be calculated to a
hexadecimal string by using the snmp-agent calculate-password command.
simple: Specifies auth-password and priv-password as plaintext keys.
authentication-mode: Specifies an authentication algorithm. MD5 is faster but less secure than SHA. For
more information about these algorithms, see Security Configuration Guide.
• md5: Specifies the MD5 authentication algorithm.
• sha: Specifies the SHA-1 authentication algorithm.
auth-password: Specifies a case-sensitive plaintext or encrypted authentication key. In non-FIPS mode, a
plaintext key is a string of 1 to 64 visible characters. In FIPS mode, a plaintext key is a string of 15 to 64
visible characters, which must contain numbers, uppercase letters, lowercase letters, and special
characters. If the cipher keyword is specified, the encrypted authentication key length requirements differ
by authentication algorithm and key string format, as shown in Table 44.
Table 44 Encrypted authentication key length requirements
Authentication
al
orithm
Hexadecimal string Non-hexadecimal string
MD5 32 characters 53 characters
SHA 40 characters 57 characters
privacy-mode: Specifies an encryption algorithm for privacy. The encryption algorithms AES, 3DES, and
DES are in descending order of security strength. DES is enough to meet general security requirements.
• aes128: Specifies the AES algorithm.
• 3des: Specifies the 3DES algorithm.
• des56: Specifies the DES algorithm.
priv-password: Specifies a case-sensitive plaintext or encrypted privacy key. In non-FIPS mode, a
plaintext key is a string of 1 to 64 characters. In FIPS mode, a plaintext key is a string of 15 to 64 visible
characters, which must contain numbers, uppercase letters, lowercase letters, and special characters. If
the cipher keyword is specified, the encrypted privacy key length requirements differ by authentication
algorithm and key string format, as shown in Table 45.
Table 45 Encrypted privacy key length requirements
Authentication
al
orithm
Encryption
al
orithm
Hexadecimal string Non-hexadecimal string
MD5 3DES 64 characters 73 characters
MD5
AES128 or
DES-56
32 characters 53 characters
SHA 3DES 80 characters 73 characters