SNMP V3 Privacy mode AES-128?

Solved
Ronny63
Here to help

SNMP V3 Privacy mode AES-128?

HI all , do anyone know if SNMP V3 AES-128 now are fully supported or is DES still the only choice.

1 Accepted Solution
Ronny63
Here to help

I  also asked Meraki support that gave me below answer.

I don't have any confirmation that AES128 is recommended for use in a production environment at this time.
Our current documentation doesn't mention this option as being ready for production.
As the option is currently selectable, you have the option of trying it out if you desire.
If you have any additional questions, please let us know. Thank you.
 

View solution in original post

7 Replies 7
Ronny63
Here to help

The question applies for all products MX,MS,MR etc.

alemabrahao
Kind of a big deal

Theoretically yes, you can enable and configure it in Organization > Settings. Here you can choose between DES and AES (128).

I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.
Ronny63
Here to help

Yes I know it´s possible and also working but still in February it was some issues with AES so Meraki recommended to use DES
So the question are whether the AES problems now are solved and Meraki fully supports it to be used in a production environment.

alemabrahao
Kind of a big deal

I think it would be better to ask Meraki support.

I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.
PhilipDAth
Kind of a big deal
Kind of a big deal

I've been using SNMPv3 and AES with a customer for a good year or two without issue.

JanVandenberghe
New here

Just enabled it on a test site and it seems to be working ...

Ronny63
Here to help

I  also asked Meraki support that gave me below answer.

I don't have any confirmation that AES128 is recommended for use in a production environment at this time.
Our current documentation doesn't mention this option as being ready for production.
As the option is currently selectable, you have the option of trying it out if you desire.
If you have any additional questions, please let us know. Thank you.
 

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco ID. If you don't yet have a Cisco ID, you can sign up.
Labels