--- 1/draft-ietf-opsawg-hmac-sha-2-usm-snmp-04.txt 2015-03-23 08:14:55.707428776 -0700 +++ 2/draft-ietf-opsawg-hmac-sha-2-usm-snmp-05.txt 2015-03-23 08:14:55.723429156 -0700 @@ -1,19 +1,19 @@ OPSAWG J. Merkle, Ed. Internet-Draft Secunet Security Networks Intended status: Standards Track M. Lochter Expires: September 24, 2015 BSI March 23, 2015 HMAC-SHA-2 Authentication Protocols in USM for SNMP - draft-ietf-opsawg-hmac-sha-2-usm-snmp-04 + draft-ietf-opsawg-hmac-sha-2-usm-snmp-05 Abstract This memo specifies new HMAC-SHA-2 authentication protocols for the User-based Security Model (USM) for SNMPv3 defined in RFC 3414. Status of This Memo This Internet-Draft is submitted in full conformance with the provisions of BCP 78 and BCP 79. @@ -278,41 +278,40 @@ The MIB module specified in this memo does not define any managed objects, subtrees, notifications or tables, but only object identities (for authentication protocols) under a subtree of an existing MIB. 7. Relationship to Other MIB Modules 7.1. Relationship to SNMP-USER-BASED-SM-MIB - RFC 3414 [RFC3414] specifies the MIB for the User-based Security - Model (USM) for SNMPv3 (SNMP-USER-BASED-SM-MIB), which defines - authentication protocols for USM based on the hash functions MD5 and - SHA-1, respectively. The following MIB module defines new HMAC-SHA2 - authentication protocols for USM based on the SHA-2 hash functions - [SHA]. The use of the HMAC-SHA2 authentication protocols requires - the usage of the objects defined in the SNMP-USER-BASED-SM-MIB. + RFC 3414 [RFC3414] specifies the MIB module for the User-based + Security Model (USM) for SNMPv3 (SNMP-USER-BASED-SM-MIB), which + defines authentication protocols for USM based on the hash functions + MD5 and SHA-1, respectively. The following MIB module defines new + HMAC-SHA2 authentication protocols for USM based on the SHA-2 hash + functions [SHA]. The use of the HMAC-SHA2 authentication protocols + requires the usage of the objects defined in the SNMP-USER-BASED-SM- + MIB. 7.2. Relationship to SNMP-FRAMEWORK-MIB - RFC 3411 [RFC3411] specifies the The SNMP Management Architecture MIB - (SNMP-FRAMEWORK-MIB), which defines a subtree snmpAuthProtocols for - SNMP authentication protocols. The following MIB module defines new - authentication protocols in the snmpAuthProtocols subtree. - Therefore, the use of the HMAC-SHA2 authentication protocols requires - the usage of the objects defined in the SNMP-FRAMEWORK-MIB. + RFC 3411 [RFC3411] specifies the SNMP-FRAMEWORK-MIB, which defines a + subtree snmpAuthProtocols for SNMP authentication protocols. The + following MIB module defines new authentication protocols in the + snmpAuthProtocols subtree. 7.3. MIB modules required for IMPORTS - The following MIB module IMPORTS objects from SNMPv2-SMI [RFC2578] - and SNMP-FRAMEWORK-MIB [RFC3411]. + The following MIB module IMPORTS definitions from SNMPv2-SMI + [RFC2578] and SNMP-FRAMEWORK-MIB [RFC3411]. 8. Definitions SNMP-USM-HMAC-SHA2-MIB DEFINITIONS ::= BEGIN IMPORTS MODULE-IDENTITY, OBJECT-IDENTITY, snmpModules FROM SNMPv2-SMI -- [RFC2578] snmpAuthProtocols FROM SNMP-FRAMEWORK-MIB; -- [RFC3411] snmpUsmHmacSha2MIB MODULE-IDENTITY