Switches, Hubs, and Modems
1753468 Members
5057 Online
108794 Solutions
New Discussion юеВ

Re: Disable SNMP on Procurve 2524 Switch

 
SOLVED
Go to solution
KHodowsky
New Member

Disable SNMP on Procurve 2524 Switch

I have 5 Procurve 2524 switches all with firmware F.05.22

Security scans tell me I have SNMP vulnerabilities yet from HP's information having this firmware should eliminate any vulnerabilities.

Does anyone know how to turn off SNMP completly?

and/or should I simply delete the public SNMP community?

I don't require use of SNMP.
5 REPLIES 5
Matt Hobbs
Honored Contributor
Solution

Re: Disable SNMP on Procurve 2524 Switch

Deleting the public SNMP community name should effectively disable SNMP. Give that a try.
Mohieddin Kharnoub
Honored Contributor

Re: Disable SNMP on Procurve 2524 Switch

Hi

Deleting the community named ├в public├в disables many network management functions (such as auto-discovery, traffic monitoring, SNMP trap generation, and threshold setting).

If security for network management is a concern, it is recommended that you change the write access for the ├в public├в community to ├в Restricted├в .

Don;t forget to assign points.

Good Luck !!!
Science for Everyone
KHodowsky
New Member

Re: Disable SNMP on Procurve 2524 Switch

Thanks guys, I will give this a try.

Mohieddin - you mention removing the snmp will disable some features of the switch. are these anything that will impact the performance of the switch?

I don't use any monitoring software with these switches.

Thanks
Mohieddin Kharnoub
Honored Contributor

Re: Disable SNMP on Procurve 2524 Switch

If you are not using SNMP software, of course it won't affect anything, but its a matter of traps sent to the SNMP server i you have configured it.

Don't forget the points, it the way to say thanks :)

Good Luck !!!
Science for Everyone
Markob
New Member

Re: Disable SNMP on Procurve 2524 Switch

Change the community string name - in case you wish to use SNMP later e.g. Insight Manager.

i would then disable access to telnet...

telnet to switch...

cmd>telnet x.x.x.x

switch>config

switch>config#no telnet-server