Management Services Security - Allow SNMP queries and/or send traps to more than one trusted server - client-list restrict

Information

SNMP traps are unsolicited messages sent by network devices to notify management stations of important events.

Solution

If SNMP version 1 or 2 is required, configure the communitys to restrict all non-specified clients in client-lists by default.

user@host# edit snmp client-list <LIST_NAME>
user@host# set <IP_ADDRESS>
user@host# set 0.0.0.0/0 restrict

See Also

http://www.juniper.net/us/en/training/jnbooks/day-one/fundamentals-series/hardening-junos-devices-checklist/

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7(5)

Plugin: Juniper

Control ID: dd9e33d2e1d7caf30b1ec14a176ef9b9b91009e62798c39ad64597ac438abf11