SV-279268r1170603_rule
V-279268
SRG-APP-000395-NDM-000310
SYME-ND-000710
CAT II
10
1. In the Edge SWG Web UI, navigate to the Administration tab.
2. Select the "SNMP" and "SNMP" areas.
3. Under "V3 Users", click "Add User".
4. Enter the username.
5. Select "SHA" for authentication and type a passphrase.
6. Select AES and type a passphrase.
7. Under "V3 Traps and Informs", add a trap destination if applicable.
1. In the Edge SWG Web UI, navigate to the Configuration tab.
2. Select the "Services" and "Management Services" areas.
3. Enable SNMP, add the listener for both IPv4 and IPv6.
1. In the Edge SWG Web UI, navigate to the Visual Policy Manager.
Note: Ensure the Admin Access Layer was created before moving on to this step.
2. Under the "Admin Access Layer", click "Add Rule".
3. Under "Source", select "Any".
4. Under "Service", select "Service Name: SNMP".
5. Under "Action", select "Allow Read-only Access".
6. Apply the policy.
1. Log in to the Edge SWG SSH CLI.
2. Enter "show snmp".
If the line for SNMPv1 and SNMPv2c does not say "disabled", this is a finding.
Below is an example of what the line will look in a correct state:
"SNMPv1 is disabled. SNMPv2c is disabled."
V-279268
False
SYME-ND-000710
1. Log in to the Edge SWG SSH CLI.
2. Enter "show snmp".
If the line for SNMPv1 and SNMPv2c does not say "disabled", this is a finding.
Below is an example of what the line will look in a correct state:
"SNMPv1 is disabled. SNMPv2c is disabled."
M
5726