Configuring SNMP. Understanding SNMP CHAPTER

Similar documents
This chapter describes how to configure Simple Network Management Protocol (SNMP) to monitor the Cisco ASA.

SNMP Agent Setup. Simple Network Management Protocol Support. SNMP Basics

Managing Events and Alarms

Configuring SNMP. Understanding SNMP CHAPTER

Configuring SNMP. Understanding SNMP CHAPTER

Configuring SNMP. Understanding SNMP CHAPTER

Configuring Communication Services

Configuring Anomaly Detection

Serviceability. Access Cisco VVB Serviceability. Alarms

Cisco Unified CM SNMP

User and System Administration

Configure SNMP. Understand SNMP. This chapter explains Simple Network Management Protocol (SNMP) as implemented by Cisco NCS 4000 series.

N E T W O R K M A N A G E M E N T P R I N C I P L E S R E V I E W

Configuring with the CMM Administration Tool

Configuring SNMP CHAPTER. This chapter describes how to configure the Simple Network Management Protocol (SNMP) on your access point.

Overview of IPM. What Is IPM? CHAPTER

Configuring SNMP. Information about SNMP CHAPTER

Monitoring. 18 Nov TM and copyright Imagicle spa

Simple Network Management Protocol

Cisco Discovery Protocol Version 2

Modifying IPM Components

CPU Thresholding Notification

Configuring sflow. Information About sflow. sflow Agent. This chapter contains the following sections:

CHAPTER. Introduction

Using the Startup Wizard

GIGABYTE Remote Management Console User s Guide. Version: 1.0

Performance Monitor Administrative Options

Network Management Standards Architectures & Applications. Network Management

Lab Exercise - Introduction to Network Management. Objective of the exercise

Configuring the Cisco Discovery Protocol

Understanding Simple Network Management Protocol

Cisco Prime Collaboration Deployment Configuration and Administration

Configure Notification

Viewing System Status, page 404. Backing Up and Restoring a Configuration, page 416. Managing Certificates for Authentication, page 418

Overview of IPM. What is IPM? CHAPTER

Cisco Discovery Protocol Version 2

Firmware Revision History and Upgrade Instructions

Simple Network Management Protocol

Configuring Embedded Resource Manager-MIB

ehealth Integration for HP OpenView User Guide

Configuring RMON. Understanding RMON CHAPTER

For complete syntax and usage information for the commands used in this chapter, see the Cisco IOS Configuration Fundamentals Command Reference

Setting Up the Sensor

Network Layer: ICMP and Network Management

SCOM 2012 with Dell Compellent Storage Center Management Pack 2.0. Best Practices

Introduction to the Catalyst 3920

Proprietary MIB Reference

Using Templates. 5.4 Using Templates

SNMP and Network Management

Performing Administrative Tasks

Configuring Simple Network Management Protocol (SNMP)

Configuring SNMP. Understanding SNMP CHAPTER

Chapter 3 Managing System Settings

Copyright 2016 IPT PDUUM Revision

Advanced Application Reporting USER GUIDE

ehealth SPECTRUM Integration

Configuring SNMP. Understanding SNMP CHAPTER

Configuring IP SLAs TCP Connect Operations

Audit report and analyse overview. Audit report user guide v1.1

Configuring ATM SNMP Trap and OAM Enhancements

SNMP SIMULATOR. Description

Server Status Dashboard

Getting Started with Prime Network

DHCP Server MIB. Finding Feature Information. Prerequisites for the DHCP Server MIB

SNMP and Network Management

Xerox CentreWare for HP OpenView NNM Users Guide Version 1.5

SNMP Commands CHAPTER

Table of Contents. 2 MIB Style Configuration 2-1 Setting the MIB Style 2-1 Displaying and Maintaining MIB 2-1

SNMP CEF-MIB Support

Getting Started with IPM

Using Cisco Discovery Protocol

Implementing MPLS Forwarding

MIB Browser Version 10 User Guide

COSC 301 Network Management

Security, Internet Access, and Communication Ports

Configure Controller and AP Settings

Operation Manual SNMP-RMON H3C S3610&S5510 Series Ethernet Switches. Table of Contents

IPMI View User Guide

Managing CX Devices in Multiple Device Mode

Getting Started with ehealth for Voice Cisco Unity & Unity Bridge

TELE 301 Network Management

Chapter 23. Simple Network Management Protocol (SNMP)

CA Spectrum Multicast Manager

AT-GS950/8. AT-GS950/8 Web Interface User Guide AT-S113 Version [ ] Gigabit Ethernet Switch Rev A

Configuring VLANs. Finding Feature Information. Prerequisites for VLANs

Dell EMC OpenManage Essentials Device Support

NEC Express5800 Series NEC ESMPRO Manager User's Guide

Dell OpenManage Essentials Device Support

Configuring SNMP. Information About SNMP. SNMP Functional Overview. This chapter contains the following sections:

Reference. Base Configuration Updates

Configuring IP SLAs ICMP Echo Operations

Security Management System Central Monitoring Station with Push Mode Connectivity

Configuring Cisco IOS IP SLAs Operations

Configure Link Layer Discovery Protocol (LLDP) Properties on a Switch

Configuring RADIUS. Information About RADIUS. RADIUS Network Environments. Send document comments to

Configuring IP SLAs ICMP Echo Operations

NetFlow Multiple Export Destinations

vrealize Operations Management Pack for NSX for vsphere 2.0

Getting Started. Logging into Cisco Multicast Manager CHAPTER

CajunRules Policy Manager User Guide. Version 2.0

Transcription:

9 CHAPTER To have the sensor send SNMP traps, you must also choose Request SNMP Trap as the event action when you configure signatures. For more information, see Assigning Actions to Signatures, page 5-23. This chapter describes how to configure the sensor to use SNMP and SNMP traps. This chapter contains the following sections: Understanding SNMP, page 9-1, page 9-2 Traps, page 9-4 Supported MIBS, page 9-7 Understanding SNMP SNMP is an application layer protocol that facilitates the exchange of management information between network devices. SNMP enables network administrators to manage network performance, find and solve network problems, and plan for network growth. SNMP is a simple request/response protocol. The network-management system issues a request, and managed devices return responses. This behavior is implemented by using one of four protocol operations: Get, GetNext, Set, and Trap. You can configure the sensor for monitoring by SNMP. SNMP defines a standard way for network management stations to monitor the health and status of many types of devices, including switches, routers, and sensors. You can configure the sensor to send SNMP traps. SNMP traps enable an agent to notify the management station of significant events by way of an unsolicited SNMP message. Trap-directed notification has the following advantage if a manager is responsible for a large number of devices, and each device has a large number of objects, it is impractical to poll or request information from every object on every device. The solution is for each agent on the managed device to notify the manager without solicitation. It does this by sending a message known as a trap of the event. After receiving the event, the manager displays it and can take an action based on the event. For instance, the manager can poll the agent directly, or poll other associated device agents to get a better understanding of the event. 9-1

Chapter 9 Trap-directed notification results in substantial savings of network and agent resources by eliminating frivolous SNMP requests. However, it is not possible to totally eliminate SNMP polling. SNMP requests are required for discovery and topology changes. In addition, a managed device agent cannot send a trap if the device has had a catastrophic outage. This section describes how to configure SNMP, and contains the following topics: Overview, page 9-2 Supported User Role, page 9-2 Field Definitions, page 9-2, page 9-3 Overview Use the SNMP General Configuration pane to configure the sensor to use SNMP. Supported User Role The following user roles are supported: Administrator Operator Viewer You must be Administrator to configure the sensor to use SNMP. Field Definitions The following fields and buttons are found in the SNMP General Configuration pane. Field Descriptions: Enable SNMP Gets/Sets If checked, allows SNMP gets and sets. SNMP Agent Parameters Configures the parameters for SNMP agent. Read-Only Community String Identifies the community string for read-only access. Read-Write Community String Identifies the community string for read and write access. Sensor Contact Identifies the contact person, contact point, or both for the sensor. Sensor Location Identifies the location of the sensor. 9-2

Chapter 9 Sensor Agent Port Identifies the IP port of the sensor. The default is 161. Sensor Agent Protocol Identifies the IP protocol of the sensor. The default is UDP. Button Functions: Apply Applies your changes and saves the revised configuration. Reset Refreshes the pane by replacing any edits you made with the previously configured value. To have the sensor send SNMP traps, you must also choose Request SNMP Trap as the event action when you configure signatures. For more information, see Assigning Actions to Signatures, page 5-23. To set the general SNMP parameters, follow these steps: Step 1 Step 2 Step 3 Step 4 Log in to IDM using an account with administrator privileges. Choose Configuration > SNMP > SNMP General Configuration. The SNMP General Configuration pane appears. Check the Enable SNMP Gets/Sets check box to enable SNMP so that the SNMP management workstation can issue requests to the sensor SNMP agent. Configure the SNMP agent parameters: These are the values that the SNMP management workstation can request from the sensor SNMP agent. a. Assign the read-only community string in the Read-Only Community String field. The read-only community string helps to identify the sensor SNMP agent. b. Assign the read-write community string in the Read-Write Community String field. The read-write community string helps to identify the sensor SNMP agent. The management workstation sends SNMP requests to the sensor SNMP agent, which resides on the sensor. If the management workstation issues a request and the community string does not match what is on the senor, the sensor will reject it. c. Enter the sensor contact user ID in the Sensor Contact field. d. Enter the location of the sensor in the Sensor Location field. e. Enter the port of the sensor SNMP agent in the Sensor Agent Port field. The default SNMP port number is 161. 9-3

Traps Chapter 9 f. Choose the protocol the sensor SNMP agent will use from the Sensor Agent Protocol list. g. The default protocol is UDP. Tip Step 5 To discard your changes, click Reset. Click Apply to apply your changes and save the revised configuration. Traps This section describes how to configure SNMP traps, and contains the following topics: Overview, page 9-4 Supported User Role, page 9-4 Field Definitions, page 9-4 Traps, page 9-6 Overview Use the SNMP Traps Configuration pane to set up SNMP traps and trap destinations on the sensor. An SNMP trap is a notification. You configure the sensor to send traps based on whether the event is fatal, an error, or a warning. Supported User Role The following user roles are supported: Administrator Operator Viewer You must be Administrator to configure SNMP traps on the sensor. Field Definitions This section lists the field definitions for SNMP traps, and contains the following topics: SNMP Traps Configuration Pane, page 9-5 Add and Edit SNMP Trap Destination Dialog Boxes, page 9-5 9-4

Chapter 9 Traps SNMP Traps Configuration Pane The following fields and buttons are found in the SNMP Traps Configuration pane. Field Descriptions: Enable SNMP Traps If checked, indicates the remote server will use a pull update. Select the error events to notify through SNMP: Fatal Generates traps for all fatal error events. Error Generates traps for all error error events. Warning Generates traps for all warning error events. Enable detailed traps for alerts If checked, includes the full text of the alert in the trap. Otherwise, sparse mode is used. Sparse mode includes less than 484 bytes of text for the alert. Default Trap Community String The community string used for the traps if no specific string has been set for the trap. Specify SNMP trap destinations Identifies the destination for the trap. You must specify the following information about the destination: IP Address The IP address of the trap destination. UDP Port The UDP port of the trap destination. Trap Community String The trap community string. Button Functions: Add Opens the Add SNMP Trap Destination dialog box. From this dialog box you can add a new destination for SNMP traps. Edit Opens the Edit SNMP Trap Destination dialog box. From this dialog box you can change the parameters that define the chosen destination. Delete Deletes the chosen destination. Apply Applies your changes and saves the revised configuration. Reset Refreshes the pane by replacing any edits you made with the previously configured value. Add and Edit SNMP Trap Destination Dialog Boxes The following fields and buttons are found in the Add and Edit SNMP Trap Destination dialog boxes. Field Descriptions: IP Address The IP address of the trap destination. UDP Port The UDP port of the trap destination. The default is port 162. Trap Community String The trap community string. Button Functions: OK Accepts your changes and closes the dialog box. Cancel Discards your changes and closes the dialog box. Help Displays the help topic for this feature. 9-5

Traps Chapter 9 Traps To have the sensor send SNMP traps, you must also choose Request SNMP Trap as the event action when you configure signatures. For more information, see Assigning Actions to Signatures, page 5-23. To configure SNMP traps, follow these steps: Step 1 Step 2 Step 3 Step 4 Step 5 Log in to IDM using an account with administrator privileges. Choose Configuration > SNMP > SNMP Traps Configuration. The SNMP Traps Configuration pane appears. Check the Enable SNMP Traps check box to enable SNMP traps. Set the parameters for the SNMP trap: a. Choose the error events you want to be notified about through SNMP traps. You can choose to have the sensor send an SNMP trap based on one or all of the following events: fatal, error, warning. b. Choose whether you want detailed SNMP traps by checking the Enable detailed traps for alerts check box. c. Enter the community string to be included in the detailed traps in the Default Trap Community String field. Set the parameters for the SNMP trap destinations so the sensor knows which management workstations to send them to: a. Click Add. The Add SNMP Trap Destination dialog box appears. b. Enter the IP address of the SNMP management station in the IP Address field. c. Enter the UDP port of the SNMP management station in the UDP Port field. d. Enter the trap Community string in the Trap Community String field. The community string appears in the trap and is useful if you are receiving multiple types of traps from multiple agents. For example, a router or sensor could be sending the traps, and if you put something that identifies the router or sensor specifically in your community string, you can filter the traps based on the community string. Tip To discard your changes and close the Add SNMP Trap Destination dialog box, click Cancel. Step 6 Step 7 Click OK. The new SNMP trap destination appears in the list in the SNMP Traps Configuration pane. To edit an SNMP trap destination, select it, and click Edit. The Edit SNMP Trap Destination dialog box appears. 9-6

Chapter 9 Supported MIBS Step 8 Edit the UDP Port and Trap Community String fields. Tip To discard your changes and close the Edit SNMP Trap Destination dialog box, click Cancel. Step 9 Step 10 Click OK. The edited SNMP trap destination appears in the list in the SNMP Traps Configuration pane. To delete an SNMP trap destination, select it, and click Delete. The SNMP trap destination no longer appears in the list in the SNMP Traps Configuration pane. Tip Step 11 To discard your changes, click Reset. Click Apply to apply your changes and save the revised configuration. Supported MIBS The following private MIBs are supported on the sensor: CISCO-CIDS-MIB CISCO-ENHANCED-MEMPOOL-MIB CISCO-ENTITY-ALARM-MIB You can obtain these private Cisco MIBs under the heading SNMP v2 MIBs at this URL: http://www.cisco.com/public/sw-center/netmgmt/cmtk/mibs.shtml MIB II is available on the sensor, but we do not support it. We know that some elements are not correct (for example, the packet counts from the IF MIB on the sensing interfaces). While you can use elements from MIB II, we do not guarantee that they all provide correct information. We fully support the other listed MIBs and their output is correct. CISCO-PROCESS-MIB is available on the sensor, but we do not support it. We know that some elements are not available. While you can use elements from CISCO-PROCESS-MIB, we do not guarantee that they all provide correct information. We fully support the other listed MIBs and their output is correct. 9-7

Supported MIBS Chapter 9 9-8