1.5.8 Set 'snmp-server enable traps snmp'

Information

SNMP notifications can be sent as traps to authorized management systems.

Rationale:

SNMP has the ability to submit traps.

Solution

Enable SNMP traps.


hostname(config)#snmp-server enable traps snmp authentication linkup linkdown coldstart

Impact:

Organizations using SNMP should restrict trap types only to explicitly named traps to reduce unintended traffic. Enabling SNMP traps without specifying trap type will enable all SNMP trap types.

Default Value:

SNMP notifications are disabled.

References:

http://www.cisco.com/en/US/docs/ios-xml/ios/snmp/command/nm-snmp-cr-s3.html#GUID-EB3EB677-A355-42C6-A139-85BA30810C54

See Also

https://workbench.cisecurity.org/files/2585

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-12, CSCv6|11.7

Plugin: Cisco

Control ID: 4cecaafc17c8eedee8a3cad77e9b8a2165aba0f6518850ebf06c99c2a2d6f329