Network Security Internet Technology Development Database Servers Mobile Phone Android Software Apple Software Computer Software News IT Information

In addition to Weibo, there is also WeChat

Please pay attention

WeChat public account

Shulou

Brief introduction and practice of snmp Communication Line Management

2025-02-22 Update From: SLTechnology News&Howtos shulou NAV: SLTechnology News&Howtos > Network Security >

Share

Shulou(Shulou.com)06/01 Report--

Snmp simple Network Management Protocol

The predecessor of SNMP (Simple Network Management Protocol, simple Network Management Protocol) is simple Gateway Monitoring Protocol (SGMP), which is used to manage communication lines. Subsequently, people made a lot of changes to SGMP, especially the addition of SMI and MIB: architecture that meet the definition of Internet, and the improved protocol is the famous SNMP.

Simple Network Management Protocol (SNMP), which consists of a set of network management standards, includes an application layer protocol (application layer protocol), a database model (database schema), and a set of data objects. The protocol can support the network management system to monitor whether the devices connected to the network have any management concerns. The protocol is part of the internet protocol suite defined by the Internet Engineering working Group (IETF,Internet Engineering Task Force).

Working process:

In typical SNMP usage, many systems are managed, and one or more systems manage them. Each managed system runs a software component called agent, and reports information to the management system through SNMP.

Basically, SNMP agents present management data as variables. The management system retrieves information through GET,GETNEXT and GETBULK protocol instructions, or the agent uses TRAP or INFORM to transmit data without being questioned. The management system can also send requests for configuration updates or control to achieve the purpose of actively managing the system through SET protocol instructions. Configuration and control instructions are used only when the basic structure of the network needs to be changed, while monitoring instructions are usually routine.

Variables that can be accessed through SNMP are combined in a hierarchical manner. This hierarchy and other metadata, such as the type and description of variables, are described in a management information base (MIBs).

Configure SNMP basic features-SNMP v1 version, SNMP v2C version

Enter the system view

System-view

Start the SNMP Agent service

Snmp-agent by default, the SNMP Agent service is turned off. Execute this command or execute any configuration command of snmp-agent to start SNMP Agent.

Set up system information

Snmp-agent sys-info {contact sys-contact | location sys-location | version {{v1 | V2C |

V3} * | all}} by default, the system maintenance contact information is "rotated Beijing,HuaweiTechnologies"

Co.,Ltd. "; physical location information is" Beijing China "; version is SNMPv3

Set the group name and access rights

Set up directly

Set the group name

Snmp-agent community {read | write} community-name [acl acl-number | mib-view

View-name] *

Indirect settin

Set up a SNMP group

Snmp-agent group {v1 | V2C} group-name [read-view read-view] [write-view write-view]

[notify-view notify-view] [acl acl-number

Add a new user to a SNMP group

Snmp-agent usm-user {v1 | V2C} user-namegroup-name [acl acl-number]

Sets the size of SNMP message packets that Agent can receive / send

The optional default value for snmp-agent packet max-size max-size is 1500 bytes

Configure SNMP basic features (SNMP v3 version)

Enter the system view

System-view

Start the SNMP Agent service

Snmp-agent required SNMP Agent service is turned off by default

Set up a SNMP group

Snmp-agent group v3 group-name [authentication | privacy] [read-view read-view]

[write-view write-view] [notify-viewnotify-view] [acl acl-number] required

Add a new user to a SNMP group

Snmp-agent usm-user v3 user-name group-name [authentication-mode {md5 | sha}]

Auth-password [privacy-mode des56priv-password]] [acl acl-number] required

Configure Trap

Enter the system view

System-view

Set the Trap destination host address

Snmp-agent target-host trap addressudp-domain {ip-address} [udp-port port-number]

Params securityname security-string [v1 | V2C | v3 {authentication | privacy} required

Set the source address to send the Trap

Snmp-agent trap source interface-typeinterface-number optional

Sets the length of the message queue for Trap messages sent to the destination host

Snmp-agent trap queue-size size optional

SNMP display and maintenance

Displays system information for the current SNMP device

Display snmp-agent sys-info [contact | location | version] *

Display the group information for the device

Display snmp-agent group [group-name]

Display SNMP user information

Display snmp-agent usm-user [engineidengineid | username user-name | group group-name]

Display Trap list information

Display snmp-agent trap-list

Displays the currently configured community name

Display snmp-agent community [read | write]

Displays the MIB view of the current configuration

Display snmp-agent mib-view [exclude | include | viewname view-name]

Experiment:

Environment: virtual machine: server2003 one linux5.4

The topology diagram is as follows:

Enable and configure Server2003 SNMP:

View snmp port 161,

Basic configuration of the R1 port:

Test communication with the host:

Enabling of SNMP

Set the group name

Set up contact person: Zhang San

Location: computer room 1

Supported protocols: (all all when not clear)

Turn on the proactive reporting feature:

Reported host: 192.168.2.200

Status of reports: (those reports)

The basic port configuration of R2:

Test communication with R1, host:

Enable settings community name for SNMP:

Set up contact person: Li Si

Location: computer room 2

Supported protocols: (all all when not clear)

Turn on the proactive reporting feature:

Reported host: 192.168.2.200

Switch sw1 port configuration

Set up an account:

Server 2003

Enable WhatsUp Gold

Enable scanning as follows:

The basic view is as follows:

Click Map in the lower left corner of the window to change the view.

Right-click the switch icon to log in to the management device:

Enter 192.168.4.2 as follows:

The icon prompts when the test disconnects the web server:

After successfully connecting to the display, you can monitor the device as follows:

Welcome to subscribe "Shulou Technology Information " to get latest news, interesting things and hot topics in the IT industry, and controls the hottest and latest Internet news, technology news and IT industry trends.

Views: 0

*The comments in the above article only represent the author's personal views and do not represent the views and positions of this website. If you have more insights, please feel free to contribute and share.

Share To

Network Security

Wechat

© 2024 shulou.com SLNews company. All rights reserved.

12
Report