OPNsense Forum
English Forums => Tutorials and FAQs => Topic started by: Rob2500 on July 01, 2020, 03:18:54 pm
-
I haven't seen any posts regarding this topic. So maybe everything is clear to everyone except me.. ;-)
Here are my questions:
Does SNMPv3 require to configure Listen IPs, or is this only for SNMPv1?
Then I don't see where I can add trap destinations. Is this possible somehow?
Cheers,
Rob
-
Traps are currently not supported, you can add a Feature request via GitHub Plugins repo
-
Hello @mimugmail,
I tried the following command (to initiate a collection of MIBs that I could use subsequently for Nagios NRPE work):
$ snmpwalk -v1 -c public 192.168.1.1 1.3.6.1.2.1.1.6.0
and the response was:
Timeout: No Response from 192.168.1.1
I have enabled SNMP through OPNsense for the box. What else do I need to do to collect some sample data for further tests?
Thanks.
-
Allowed Port 161/udp on Firewall? Community is correct?
-
Hello @mimugmail,
Firewall rule is LAN <-> LAN wildcard for any port number. Double checked the community string too - it is correct. The Listen IP address is the one where the command is being typed. FWIW, the equivalent command in the same LAN gets me a boatload of data from a NetGear ProSafe switch with the top few (name, uptime and some traffic counts) are the MIBs of interest for a common dashboard view of the farm. Thanks.
Kind regards.
-
Listen IP Address is the LAN IP of your firewall, correct?
-
Listen IP originally was 127.0.0.1. I changed it to that for the console terminal machine where snmpwalk was being typed. Upon reading your email I have both IP addresses (the console terminal as well as the OPNsense box). The error message remains the same:
Timeout: No Response from 192.168.1.1
Thanks.
-
sockstat -4 | grep 161 via console please
-
Thx for the socksat suggestion. Let me install it, run it and get back to you later this evening.
Kind regards.
-
Hello @mimugmail,
sockstat returns nothing - drops to command prompt on the succeeding line in the console window.
Something configured incorrectly on my OPNsense box?
Kind regards.
-
The snmpd is not running, please check the logs
-
Net-SNMP was configured previously on the OPNsense box and has been presumably operational since then. Pardon my ignorance. Do I need to init and start snmpd separately on the OPNsense box? Thanks.
-
Net-snmp when enabled starts a process snmpd, but when you dont see port 161 via sockstat it's not running. So just check the logs for errors
-
You are absolutely correct! The OPNsense Dashboard clearly shows snmpd is not running - the service, associated with Net-SNMP, has the red square icon. In fact, it is the only one that is suspended in the list owing perhaps for some unknown operation on my part.
Clicking the adjacent right play icon has no effect. Something I need to figure out at my end. Issue resolved!!
Sorry that it turned out to be a basic newbie mistake but your patience and understanding is gratefully appreciated. Thanks a bunch again.
Kind regards.