Enhanced SNMP trap security (7.6.1)
FortiWeb support sending traps to a designated SNMP (Simple Network Management Protocol) manager to notify it of specific events or conditions, such as error states or performance issues. It allows you to integrate the appliance into your SNMP-based network monitoring system, providing centralized visibility and management of the FortiWeb.
Starting from 7.6.1, we have introduced support for the SNMP Authentication Algorithm SHA-2, which includes the SHA-2 family hash functions sha224, sha256, sha384, and sha512. This enhancement allows for more secure authentication of SNMP messages, as SHA-2 is a stronger algorithm than previous options (e.g., SHA-1).
Additionally, authentication with the Privacy Algorithm AES256 provides encryption for SNMP data, further protecting sensitive information exchanged between network devices. Together, SHA-2 authentication and AES256 encryption help to secure SNMP communications, ensuring both the integrity and confidentiality of the data.
Configure it in System > Config > SNMP. The SHA-2 authentication and AES256 encryption are only available in SNMP v3.
For more information, see SNMP traps & queries.