<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Restrict SNMP to OIDs in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Restrict-SNMP-to-OIDs/m-p/162222#M28816</link>
    <description>&lt;P&gt;Works like a charm:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;add snmp usm user remote security-level authNoPriv [...]&lt;/LI&gt;&lt;LI&gt;echo "rouser remote auth 1.3.6.1.2.1.4.22.1.2" &amp;gt;&amp;gt; /etc/snmp/userDefinedSettings.conf&lt;/LI&gt;&lt;LI&gt;clish -c "set snmp agent off" &amp;amp;&amp;amp;&amp;nbsp;clish -c "set snmp agent on"&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;Tested with "Get Arp Cache" OID&amp;nbsp; (&lt;A href="https://oidref.com/1.3.6.1.2.1.4.22.1.2" target="_blank"&gt;https://oidref.com/1.3.6.1.2.1.4.22.1.2&lt;/A&gt;), user "remote" can only query this specific OID.&lt;/P&gt;&lt;P&gt;Mission complete.&amp;nbsp;&lt;span class="lia-unicode-emoji" title=":beaming_face_with_smiling_eyes:"&gt;😁&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 16 Nov 2022 13:00:24 GMT</pubDate>
    <dc:creator>dj0Nz</dc:creator>
    <dc:date>2022-11-16T13:00:24Z</dc:date>
    <item>
      <title>Restrict SNMP to OIDs</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Restrict-SNMP-to-OIDs/m-p/162121#M28788</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I searched the documentation but found nothing: Is there a way to restrict SNMP (v3) access for a certain user to a specific set of or single OIDs? F5 (&lt;A href="https://support.f5.com/csp/article/K13625" target="_blank"&gt;https://support.f5.com/csp/article/K13625&lt;/A&gt;) and other vendors have that feature ("Views").&lt;/P&gt;&lt;P&gt;Thanks in advance!&lt;/P&gt;&lt;P&gt;Cheers,&lt;BR /&gt;Michael&lt;/P&gt;</description>
      <pubDate>Tue, 15 Nov 2022 12:14:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Restrict-SNMP-to-OIDs/m-p/162121#M28788</guid>
      <dc:creator>dj0Nz</dc:creator>
      <dc:date>2022-11-15T12:14:42Z</dc:date>
    </item>
    <item>
      <title>Re: Restrict SNMP to OIDs</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Restrict-SNMP-to-OIDs/m-p/162193#M28805</link>
      <description>&lt;P&gt;If it's not mentioned in&amp;nbsp;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk90860&amp;amp;partition=Basic&amp;amp;product=Quantum" target="_blank"&gt;sk90860: How to configure&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;SNMP&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;on&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;Gaia&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;OS&lt;/STRONG&gt;&lt;/A&gt;&amp;nbsp;it's likely an RFE that will require further discussion with your local SE, that being said I would suggest referencing&amp;nbsp;&lt;SPAN&gt;sk110113 in your request since it hints at what you're after.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Nov 2022 04:30:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Restrict-SNMP-to-OIDs/m-p/162193#M28805</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-11-16T04:30:18Z</dc:date>
    </item>
    <item>
      <title>Re: Restrict SNMP to OIDs</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Restrict-SNMP-to-OIDs/m-p/162198#M28808</link>
      <description>&lt;P&gt;This is exactly what I've been looking for. Doesn't survive upgrades, not officially supported but I don't care.&amp;nbsp;&lt;span class="lia-unicode-emoji" title=":beaming_face_with_smiling_eyes:"&gt;😁&lt;/span&gt;&lt;BR /&gt;Will check if that works in R81.10.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks a lot.&lt;/P&gt;</description>
      <pubDate>Wed, 16 Nov 2022 07:00:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Restrict-SNMP-to-OIDs/m-p/162198#M28808</guid>
      <dc:creator>dj0Nz</dc:creator>
      <dc:date>2022-11-16T07:00:08Z</dc:date>
    </item>
    <item>
      <title>Re: Restrict SNMP to OIDs</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Restrict-SNMP-to-OIDs/m-p/162222#M28816</link>
      <description>&lt;P&gt;Works like a charm:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;add snmp usm user remote security-level authNoPriv [...]&lt;/LI&gt;&lt;LI&gt;echo "rouser remote auth 1.3.6.1.2.1.4.22.1.2" &amp;gt;&amp;gt; /etc/snmp/userDefinedSettings.conf&lt;/LI&gt;&lt;LI&gt;clish -c "set snmp agent off" &amp;amp;&amp;amp;&amp;nbsp;clish -c "set snmp agent on"&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;Tested with "Get Arp Cache" OID&amp;nbsp; (&lt;A href="https://oidref.com/1.3.6.1.2.1.4.22.1.2" target="_blank"&gt;https://oidref.com/1.3.6.1.2.1.4.22.1.2&lt;/A&gt;), user "remote" can only query this specific OID.&lt;/P&gt;&lt;P&gt;Mission complete.&amp;nbsp;&lt;span class="lia-unicode-emoji" title=":beaming_face_with_smiling_eyes:"&gt;😁&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Nov 2022 13:00:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Restrict-SNMP-to-OIDs/m-p/162222#M28816</guid>
      <dc:creator>dj0Nz</dc:creator>
      <dc:date>2022-11-16T13:00:24Z</dc:date>
    </item>
  </channel>
</rss>

