modify /etc/snmp/snmpd.conf


first step:
#com2sec paranoid default public
  com2sec local   localhost public
  com2sec localNet 192.168.0.0 /24 public
#   com2sec readonly 127.0.0.1 public
#com2sec readwrite default private


second step:
group MyROSystem v1 local
group MyROSystem v2c local
group MyROSystem usm local
group MyROGroup v1 localnet
group MyROGroup v2c localnet
group MyROGroup usm localnet
group MyRWGroup v1 local
group MyRWGroup v2c local
group MyRWGroup usm local


third step:
# incl/excl subtree mask
view all included .1 80
view system included .iso.org.dod.internet.mgmt.mib-2.system


final step:
# context sec.model sec.level match read write notif
access MyROSystem "" any noauth exact system none none
access MyROGroup "" any noauth exact all none none
access MyRWGroup "" any noauth exact all all none


mibs locate:
/usr/share/snmp/mibs


snmptrap file:
SNMPv2-MIB.txt
recvie snmptrap: use root permissions
/usr/sbin/snmptrapd -f -Lo
send snmptrap
command:snmptrap -v2c -c public 127.0.0.1 ' ' coldSstart coldStart i 2


snmptranslate -On -IR coldStart
result:.1.3.6.1.6.3.1.1.5.1





issue:Warning: no access control information configured 
solve method:/etc/snmp/snmptrapd.conf  
snmpTrapdAddr udp:0.0.0.0:162,udp6:[::]:162
doNotRetainNotificationLogs yes
doNotLogTraps no
doNotFork no
authCommunity log,execute,net public

authCommunity log,execute,net genie

 




issue:read_config_store open failure on /var/lib/snmp/snmpapp.conf
solve method:use root permissions execute snmptrap commmands

arrow
arrow
    全站熱搜

    = = 發表在 痞客邦 留言(0) 人氣()