I have installed SNMP on my server machine. I just followed an online tutorial for doing this. I had no idea what it is. Few days back from where we bought our server they sent an email as
Abuse Message [AbuseID:2B760B:25]: AbuseBSI: [CERT-Bund#2015020428001579] Offene SNMP-Dienste in AS24940 - 2016-09-17
Shadowserver provides CERT-Bund with the test results for IP addresses hosted in Germany for notifying the owners of the affected systems. Futher information on the tests run by Shadowserver is available at [2].
Please find below a list of affected systems hosted on your network. The timestamp (timezone UTC) indicates when the system was tested and responded to SNMP requests from the Internet.
We would like to ask you to check this issue and take appropriate steps to secure the SNMP services on the affected systems or notify your customers accordingly.
My question is what are those steps to secure SNMP? On a blog there was a person who referred for changing the default community string. So I googled about this and edited this file nano /etc/snmp/snmpd.conf
and added community string as public hostIP(on which snmp installed)
.
But am not sure about what I did so far. If anyone have some same experience please guide me with that. Any help will be appreciated.