Header Only - DO NOT REMOVE - Extreme Networks
Question

VSP - unable send traps to XMC SNMPv3

  • 6 June 2019
  • 3 replies
  • 1072 views

Badge
  • Contributor
  • 19 replies
Hi team,

I´m unable recive traps in the XMC server form VSPs, and in the VSP logs I can see:

SNMP ERROR Failed to create trap (Reason=Failed to create v3 trap) for host A.B.C.D:162

Any idea?

Regards,

EF

3 replies

Userlevel 7
in some versions of VSP commands must be entered in following order.

Here are CLI commands:
VOSS02:1(config)#snmp-server authentication-trap enable
VOSS02:1(config)#snmp-server contact MasterOfUniverse
VOSS02:1(config)#snmp-server force-iphdr-sender enable
VOSS02:1(config)#snmp-server location MiddleOfTheWorld
VOSS02:1(config)#snmp-server group "RWgroup" "" auth-priv read-view root write-view root notify-view root
VOSS02:1(config)#snmp-server user snmpuser group RWgroup md5 snmpauthcred des snmpprivcred

VOSS02:1(config)#snmp-server sender-ip 192.168.130.30 192.168.130.16
VOSS02:1(config)#snmp-server user engine-id 0x80:00:1f:88:80:cb:4b:36:51:8f:1b🇧🇦5a snmpuser md5 snmpauthcred des snmpprivcred
VOSS02:1(config)#snmp-server host 192.168.130.30 v3 authpriv snmpuser inform

Where:
0x80:00:1f:88:80:cb:4b:36:51:8f:1b🇧🇦5a = SNMP engine ID of the XMC
192.168.130.30 = IP address of the XMC
192.168.130.16 = IP address of the VSP

While the snmpuser is used with the same credentials for both SNMP queries and for SNMP informs. Both with authpriv.
Userlevel 5
Badge

Hi

Just seeing if anyone has a working SNMPv3 configuration for an ERS 3600 series switch.

Typically you would need to configure three elements:

  • Group 
  • Access
  • User

In the ERS configuration I can’t see how to do this, as the commands above do not translate equally to BOSS?

The configuration I have so far is

For MD5/DES:

snmp-server user engine-id 0x80:00:1f:88:80:d5:74:92:2d:32:d4:4a:5d snmpuser md5 des

For SHA/AES

snmp-server user snmpuser sha aes

 

The engine ID has been taken from XMC via:

 

/usr/local/Extreme_Networks/NetSight/services/snmptrapd.conf

 

In addition, do you know what configuration is required in XMC. Running version 8.3 but I am falling back to the java version and adding the engine ID for the switch into the snmptrapd file.

 

For MD5/DES I’m thinking it will look something like the below, with the engineID being that of the switch:

createUser -e 0x800002328002005d31384f4c3531303045333030 snmpuser MD5 snmpauthcred DES snmpprivcred

 

For SHA/AES thinking I just need to add:

# createUser myAuthPrivUser SHA mypassword AES myotherpassword

 

Maybe I don’t need to go to all this trouble at all and like EXOS its done automatically?

 

Many thanks in advance

Userlevel 5
Badge

These commands worked for me. Yet to configure traps, but will post when working

snmp-server view root +1
snmp-server user netsight sha aes read-view root write-view root notify-view root

 

Reply