Uploaded image for project: 'ZABBIX BUGS AND ISSUES'
  1. ZABBIX BUGS AND ISSUES
  2. ZBX-24068

SNMPV3 password-to-key algorithm issue

XMLWordPrintable

    • Icon: Documentation task Documentation task
    • Resolution: Unresolved
    • Icon: Trivial Trivial
    • None
    • None
    • None
    • None

      Hi.

      I encountered problem with SNMPv3 when I launched latest VMware Zabbix appliance solution (6.4.11) to test some data exchange. I can't decipher SNMP request when hash native key length is shorter than cipher key length, for example, MD5 with AES-256 (leaving aside considerations about security - this is the correct combination that the system allows you to set, and the user who sets these parameters expects that my device will return the correct answer to him). It is clear that Zabbix use different key expansion algorithm than described in CISCO draft so Wireshark can't correctly unencrypt message. I wrote a simple program on Java to test decipher algorithm with accordance with CISO draft and got same results as Wireshark. Please provide me with appropriate algorithm itself used in Zabbix or link to its documentation.

        1. Screen1.png
          Screen1.png
          38 kB
        2. Screen2.png
          Screen2.png
          88 kB
        3. Screen3.png
          Screen3.png
          14 kB
        4. Screen4.png
          Screen4.png
          166 kB
        5. Screen5.png
          Screen5.png
          92 kB

            bmickiewicz Bartosz Mickiewicz
            Thomson Abraham
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated: