Hi dwhitfield,
thanks for your reply!
i see a lot of .txt files in there, and the sophos mib. I added the sophos mib with nagiosxi gui. ("admin -> manage mibs -> browse ... etc.")
Here is the output. I also atteched the mib file wich was sent to me by the sophos support team.
-rw-rw-r-- 1 apache apache 6617 Feb 28 11:33 sophos-sav-mib
Code: Select all
[root@localhost ~]# ll /usr/share/snmp/mibs/
total 1804
-rw-r--r-- 1 root nagios 17455 Aug 23 2016 AGENTX-MIB.txt
-rw-r--r-- 1 root nagios 50948 Aug 23 2016 BRIDGE-MIB.txt
-rw-r--r-- 1 root nagios 68104 Aug 23 2016 DISMAN-EVENT-MIB.txt
-rw-r--r-- 1 root nagios 24613 Aug 23 2016 DISMAN-SCHEDULE-MIB.txt
-rw-r--r-- 1 root nagios 64311 Aug 23 2016 DISMAN-SCRIPT-MIB.txt
-rw-r--r-- 1 root nagios 84492 Aug 23 2016 EtherLike-MIB.txt
-rw-r--r-- 1 root nagios 4660 Aug 23 2016 HCNUM-TC.txt
-rw-r--r-- 1 root nagios 52544 Aug 23 2016 HOST-RESOURCES-MIB.txt
-rw-r--r-- 1 root nagios 10583 Aug 23 2016 HOST-RESOURCES-TYPES.txt
-rw-r--r-- 1 root nagios 4819 Aug 23 2016 IANA-ADDRESS-FAMILY-NUMBERS-MIB.txt
-rw-r--r-- 1 root nagios 29665 Aug 23 2016 IANAifType-MIB.txt
-rw-r--r-- 1 root nagios 4299 Aug 23 2016 IANA-LANGUAGE-MIB.txt
-rw-r--r-- 1 root nagios 3513 Aug 23 2016 IANA-RTPROTO-MIB.txt
-rw-r--r-- 1 root nagios 5066 Aug 23 2016 IF-INVERTED-STACK-MIB.txt
-rw-r--r-- 1 root nagios 71691 Aug 23 2016 IF-MIB.txt
-rw-r--r-- 1 root nagios 16782 Aug 23 2016 INET-ADDRESS-MIB.txt
-rw-r--r-- 1 root nagios 46286 Aug 23 2016 IP-FORWARD-MIB.txt
-rw-r--r-- 1 root nagios 185667 Aug 23 2016 IP-MIB.txt
-rw-r--r-- 1 root nagios 15936 Aug 23 2016 IPV6-ICMP-MIB.txt
-rw-r--r-- 1 root nagios 48703 Aug 23 2016 IPV6-MIB.txt
-rw-r--r-- 1 root nagios 7257 Aug 23 2016 IPV6-TCP-MIB.txt
-rw-r--r-- 1 root nagios 2367 Aug 23 2016 IPV6-TC.txt
-rw-r--r-- 1 root nagios 4400 Aug 23 2016 IPV6-UDP-MIB.txt
-rw-r--r-- 1 root nagios 5931 Aug 23 2016 LM-SENSORS-MIB.txt
-rw-r--r-- 1 root nagios 42375 Aug 23 2016 MTA-MIB.txt
-rw-r--r-- 1 root nagios 19760 Feb 7 01:03 NAGIOS-NOTIFY-MIB.txt
-rw-r--r-- 1 root nagios 2093 Feb 7 01:03 NAGIOS-ROOT-MIB.txt
-rw-r--r-- 1 root nagios 15901 Aug 23 2016 NET-SNMP-AGENT-MIB.txt
-rw-r--r-- 1 root nagios 9160 Aug 23 2016 NET-SNMP-EXAMPLES-MIB.txt
-rw-r--r-- 1 root nagios 9198 Aug 23 2016 NET-SNMP-EXTEND-MIB.txt
-rw-r--r-- 1 root nagios 2036 Aug 23 2016 NET-SNMP-MIB.txt
-rw-r--r-- 1 root nagios 3350 Aug 23 2016 NET-SNMP-PASS-MIB.txt
-rw-r--r-- 1 root nagios 4686 Aug 23 2016 NET-SNMP-TC.txt
-rw-r--r-- 1 root nagios 5039 Aug 23 2016 NET-SNMP-VACM-MIB.txt
-rw-r--r-- 1 root nagios 21006 Aug 23 2016 NETWORK-SERVICES-MIB.txt
-rw-r--r-- 1 root nagios 24694 Aug 23 2016 NOTIFICATION-LOG-MIB.txt
-rw-r--r-- 1 root nagios 3067 Aug 23 2016 RFC1155-SMI.txt
-rw-r--r-- 1 root nagios 79667 Aug 23 2016 RFC1213-MIB.txt
-rw-r--r-- 1 root nagios 1174 Aug 23 2016 RFC-1215.txt
-rw-r--r-- 1 root nagios 147822 Aug 23 2016 RMON-MIB.txt
-rw-r--r-- 1 root nagios 45323 Aug 23 2016 SCTP-MIB.txt
-rw-r--r-- 1 root nagios 4649 Aug 23 2016 SMUX-MIB.txt
-rw-r--r-- 1 root nagios 15490 Aug 23 2016 SNMP-COMMUNITY-MIB.txt
-rw-r--r-- 1 root nagios 22342 Aug 23 2016 SNMP-FRAMEWORK-MIB.txt
-rw-r--r-- 1 root nagios 5496 Aug 23 2016 SNMP-MPD-MIB.txt
-rw-r--r-- 1 root nagios 20014 Aug 23 2016 SNMP-NOTIFICATION-MIB.txt
-rw-r--r-- 1 root nagios 9106 Aug 23 2016 SNMP-PROXY-MIB.txt
-rw-r--r-- 1 root nagios 22769 Aug 23 2016 SNMP-TARGET-MIB.txt
-rw-r--r-- 1 root nagios 39201 Aug 23 2016 SNMP-USER-BASED-SM-MIB.txt
-rw-r--r-- 1 root nagios 2205 Aug 23 2016 SNMP-USM-AES-MIB.txt
-rw-r--r-- 1 root nagios 21101 Aug 23 2016 SNMP-USM-DH-OBJECTS-MIB.txt
-rw-r--r-- 1 root nagios 8263 Aug 23 2016 SNMPv2-CONF.txt
-rw-r--r-- 1 root nagios 29305 Aug 23 2016 SNMPv2-MIB.txt
-rw-r--r-- 1 root nagios 8924 Aug 23 2016 SNMPv2-SMI.txt
-rw-r--r-- 1 root nagios 38034 Aug 23 2016 SNMPv2-TC.txt
-rw-r--r-- 1 root nagios 5775 Aug 23 2016 SNMPv2-TM.txt
-rw-r--r-- 1 root nagios 34162 Aug 23 2016 SNMP-VIEW-BASED-ACM-MIB.txt
-rw-rw-r-- 1 apache apache 6617 Feb 28 11:33 sophos-sav-mib
-rw-r--r-- 1 root nagios 28564 Aug 23 2016 TCP-MIB.txt
-rw-r--r-- 1 root nagios 16418 Aug 23 2016 TRANSPORT-ADDRESS-MIB.txt
-rw-r--r-- 1 root nagios 2163 Aug 23 2016 UCD-DEMO-MIB.txt
-rw-r--r-- 1 root nagios 4402 Aug 23 2016 UCD-DISKIO-MIB.txt
-rw-r--r-- 1 root nagios 3010 Aug 23 2016 UCD-DLMOD-MIB.txt
-rw-r--r-- 1 root nagios 8118 Aug 23 2016 UCD-IPFWACC-MIB.txt
-rw-r--r-- 1 root nagios 46150 Aug 23 2016 UCD-SNMP-MIB.txt
-rw-r--r-- 1 root nagios 20882 Aug 23 2016 UDP-MIB.txt
As mentioned, i added the mib with the nagiosxi gui. Not sure if the script will do an snmpttconvert or an addmib.
But something must went wrong, because shouldnt the mib be a txt in /usr/share/snmp/mibs/ ?
What i didnt mention in my initial post is, that i tested to send a trap from nagiosxi localhost. Here is the output.
Code: Select all
snmptrap -v 2c -c public localhost '' 1.3.6.1.4.1.8072.2.3.0.1 1.3.6.1.4.1.8072.2.3.2.1 i 123456
[root@localhost snmp]# tail /var/log/snmptt/snmpttunknown.log -n 20
Value 9:
Value 10:
Ent Value 0: .1.3.6.1.4.1.8072.2.3.2.1=123456
Tue Feb 28 11:09:17 2017: Unknown trap (.1.3.6.1.4.1.8072.2.3.0.1) received from localhost at:
Value 0: localhost
Value 1: 127.0.0.1
Value 2: 5:0:31:00.06
Value 3: .1.3.6.1.4.1.8072.2.3.0.1
Value 4: 127.0.0.1
Value 5:
Value 6:
Value 7:
Value 8:
Value 9:
Value 10:
Ent Value 0: .1.3.6.1.4.1.8072.2.3.2.1=123456
So the general system should work as i understanded it in the guideline document.
The snmpttunknown.log logs the traps where no mibs exists it said.
The snmptrapd.conf file should also be good regarding to the guide.
Code: Select all
[root@localhost snmptt]# tail /etc/snmp/snmptrapd.conf
disableAuthorization yes
traphandle default /usr/sbin/snmptthandler
One thing i do not understand is, that my trap should be in the snmptt.conf file the guide says. If not the trap will be logged in the snmpttunknown.log file when it hits nagiosxi server.
Guide says, i should monitor that traps are not logged to snmpttunknown.log - but how can i take the unknown trap and match it to my .conf file? There are only 5 entries in my conf...
("unconfigured objects" in nagiosxi gui is empty. i had a problem here at the beginning. for some circumstances, nagiosxi and snmp traps dont like a fqdn as hostname i think. it couldnt match my server to the incoming trap, so i altered the name to netbios name. Maybe a bug?)
I think there are one, two, three? things i dont get right.
Thanks for your help!
You do not have the required permissions to view the files attached to this post.