Jump to:navigation, search
Wiki





notempty
Dieser Artikel bezieht sich auf eine nicht mehr aktuelle Version!

notempty
Der Artikel für die neueste Version steht hier

notempty
Zu diesem Artikel gibt es bereits eine neuere Version, die sich allerdings auf eine Beta-Version bezieht

































































Konfiguration of SNMP-Monitoring

Last adaptation to the version: 12.2.1

New:
  • Layout adjustments
notempty
This article refers to a Beta version
Access: UTM-IP:Port or UTM-URL:Port
Port as configured at Network / Appliance Settings / Webserver
Default-Port: 11115
i.e.: https://utm.ttt-point.de:11115
Default: https://192.168.175.1:11115
→ Network →Server configurationTab SNMP


Introduction

The SNMP protocol is used for monitoring, error detection and error notification and is standardized.
The SNMP configuration of the UTM generally allows read-only access.
The UTM supports the following version of the SNMP protocol:

  • SNMP version 1
  • SNMP version 2c
  • SNMP version 3

Version 3 of the SNMP protocol allows encrypted communication. SHA1 and AES are used for encryption.

If this data is requested, SNMP version 3 must be used for data protection reasons mandatory!


Configure UTM

Enable SNMP

SNMP Version 1 and 2c

SNMP Version: 12c3 Choose prefered version
Edit Community String: public These versions use a community string that must be entered here.
+ Add Network 203.0.113.0/24 Opens a window in which a new network can be created.
If a network is to be shared, the exact network address must be selected.
Delete Löscht das Netzwerk
Save Saves the settings



SNMP Version 3

SNMP Version: 12c3 Choose prefered version
SNMP Version 3 Username: snmpv3user Enter username
SNMP Version 3 Password: •••••••••• Enter password
Save Saves the settings



After the SNMP setup is completed, the SNMP service should be checked under → Applications →Application Status and started if necessary.


Port filter rule

A port filter rule is required to access the SNMP service.

General
Source: Monitoring Server Network object that contains the host or network that will access the SNMP service
Destination: internal-interface The interface via which the UTM is reached
Service: snmp Choose SNMP
Action: ACCEPT
Logging: NONE - Do not log
Group: default
NAT
Type: NONE There is no need for NAT
Add and close Saves the settings
Update Rules Must be clicked for the rule to be finally activated.



OIDs

The SNMP section of the Securepoint Reseller Portal in the download area contains a .mib file that contains all OIDs currently available on the UTM with description and can be imported into common monitoring applications.
An overview of the most important OIDs that can be queried can be found in the article SNMP-OIDs .