[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Updating the MIB security guidelines



On Thu, 2 Jan 2003, Tom Petch wrote:
> So how about

       then
        ^
> "It is a customer/operator responsibility to ensure that the SNMP
> entity giving access to an instance of this MIB module is properly
> configured to give access to objects only for those principals (users)
> that have legitimate rights to access them."

With the insertion ("It is then ...") it sounds fine to me.

> Subsidiary thought; is "grant access" better than "give access"?  I
> think that "grant" is more the terminology of security -  eg VACM [RFC
> 3415] - while "give" is more the terminology of SNMP applications.

Either term is OK with me.

//cmh