All MIBs › SNMP-COMMUNITY-MIB
Organization: SNMPv3 Working Group
Last Updated: 2003-08-06
Category: SNMP Framework
Description: Defines objects for mapping between community strings and version-independent SNMP message parameters, with source address validation on incoming requests.
IPNetwork Monitor uses several OIDs from this MIB in network discovery and polling the applicable devices. Start monitoring SNMP-COMMUNITY-MIB with a free 30-day trial of IPNetwork Monitor.
What Is SNMP-COMMUNITY-MIB?
SNMP-COMMUNITY-MIB is an IETF standards MIB (RFC 3584) that defines objects for mapping SNMPv1/SNMPv2c community strings to version-independent SNMPv3 security parameters, enabling coexistence of SNMPv1, SNMPv2c, and SNMPv3 on the same agent. Categories exposed are security/access-configuration data — community-to-security-name mappings, context engine/name bindings, transport tags, and source-address validation for incoming community-based requests. It is a configuration/security-state MIB rather than a hardware/performance MIB — an operator uses it to confirm which communities are configured, their storage type (permanent vs. volatile), and row status (active/notInService), effectively auditing SNMP access-control configuration and management-plane software health rather than physical device status. It explicitly exists to bridge SNMPv1/v2c with the SNMPv3 USM/VACM security framework and is commonly deployed alongside SNMP-TARGET-MIB via its snmpTargetAddrExtTable extension. It is deployed on any SNMP agent — router, switch, server, or other managed device — that needs to support SNMPv1/v2c community-based access alongside SNMPv3. The SNMP-COMMUNITY-MIB RFC (RFC 3584) is cited directly in the module itself, underscoring its role as the standards-track bridge between legacy community-based access and SNMPv3 security.
IPNetwork Monitor allows you to monitor SNMP objects defined in SNMP-COMMUNITY-MIB. Use the built-in SNMP Monitoring Browser to explore available variables, view their current values and descriptions, and select the objects you want to monitor. You can then create SNMP monitors, configure thresholds, and receive alerts when monitored values change.
Supported Devices
- vendor-neutral, standards-based MIB, not tied to a specific manufacturer
- any SNMP-managed network device, server, or agent
Monitoring Examples
An admin would walk snmpCommunityTable to audit each snmpCommunityEntry's snmpCommunityName against its snmpCommunitySecurityName, snmpCommunityContextEngineID, and snmpCommunityContextName, confirming community strings map to the intended security identity. snmpCommunityStorageType and snmpCommunityStatus reveal whether a given community row is a permanent configuration entry or a volatile one that could disappear on reboot, and whether it is currently active. The snmpTargetAddrExtTable extension adds source-address tagging so an operator can verify a community is restricted to expected source addresses, flagging a misconfiguration if an unexpected source is accepted; an unexpected active row in snmpCommunityTable could reveal an unauthorized or forgotten legacy SNMPv1/v2c community still granting access.
What Can Be Monitored
- community string to security name mapping
- SNMP community row status
- SNMP community storage type (permanent/volatile)
- context engine/context name bindings
- source-address restriction for community access
Imported Objects
From SNMP-FRAMEWORK-MIB
| SnmpAdminString | |
| SnmpEngineID |
From SNMP-TARGET-MIB
| SnmpTagValue | |
| snmpTargetAddrEntry | OBJECT-TYPE |
From SNMPv2-CONF
| MODULE-COMPLIANCE | |
| OBJECT-GROUP |
From SNMPv2-SMI
| Integer32 | |
| IpAddress | |
| MODULE-IDENTITY | |
| OBJECT-TYPE | |
| snmpModules |
From SNMPv2-TC
| RowStatus | |
| StorageType |
OIDs
RFC description
Defines SNMP community-based security model for SNMPv1/v2c authentication and access control (RFC 3584).
Start monitoring vendor-neutral, standards-based MIB, any SNMP-managed network device, server, or agent (community-to-security mapping) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.