LMS 4.2 forward traps to Netcool

We want to forward LMS 4.2 traps to a remote NMS (Netcool).
In order to translate the traps into an event, we need the MIB's which LMS 4.2.3 is using.
Does anyone know the location of the directory on the LMS server of these MIB's?

Hi,
you can forward the traps directly  from here : Monitor > Fault Settings > SNMP Traps > Notification
check this location on the server:
NMSROOT\CSCOpx\hum\mibmanager\mibcompiler\mibs
If you want to add a new MIB to LMS , you can LOAD the MIB to the server from here :
Admin > Network > Monitor / Troubleshoot > Load MIB
Thanks-
Afroz
[Do rate the useful post]

Similar Messages

  • LMS 4.0 SNMP Traps Forwarding

    Hello,
    I have installed a new version of CiscoWorks LMS 4.0.
    I would like to forward certain SNMP traps to another server. Not all traps but only the traps of devices which are down.
    Is it possible to filter the traps and then forward the traps who match the filter to a server?
    Thanks,
    Best Regards,
    Joris

    If you enable trap forwarding in LMS, all traps received by LMS will be forwarded to the external NMS.
    You can, however, look at NMSROOT/objects/smarts/conf/trapd/trapd.conf.  You can modify this file to specify exactly what traps to forward.  The comments in the file should help you figure out the syntax.  However, direct modification of this file is not supported by TAC, so be sure to save a backup just in case.

  • LMS 3.2 snmp trap forwardig to HP-open view

    Hi,
    I want to forward snmp traps from cisco LMS to HP-open view. Both applications are installed on different servers.
    From previous post in this forum, I found a similar post that recommand using snmp forwording in DFM.
    What I want to know is do I need any integration or packages to install on both platforms to do this? Also, will DFM forward all traps that it receives from installed devices or it will forward some of them.
    Thank you
    BR,
    ZS

    Chris;
       current version of Java is 1.6.0 Update 20
    Additional information to the issue:  a WS-C3750 has been discovered (connected to another 6509 that is running hybrid) and added to the topology map as it one would expect.
    craig

  • Forwarding traps to another port

    The Master Agent listens to Port 162 for SNMP traps. Is there a way to forward raw Enterprise traps from the Master Agent to another port on the local host? I have a trap listener application on Port 8162 and need traps forwarded to it.
    I was able to use Domain Manager's /etc/opt/SUNWconn/snm.conf file, setting the na.snmp-trap.forward.snmp-traps variable to localhost,8162 but the Domain Manager package will not be installed anymore on my systems.
    Thanks,
    Warren Lim
    [email protected]

    The iPhone does not support MMS which is a software issue.
    Apple could provide MMS if they wanted to via a software update.

  • Configure sunMC 3.5 U 1 to forward traps to 3rd party NMS

    Hi,
    Basically I am trying to set trap forwarding to a NNM on the network from sunMC 3.5 Update 1.
    I have followed all the directions in sunMC snmp FAQ and other threads on this forum but I am not able to set the trap destinations.
    I have added topology object and set the community as user name. When I try to perform a snmpset operation the error I get is as follows:
    $ ./snmpset -h sparc -p 162 -c user1 1.3.6.1.4.1.42.2.12.2.1.4.1.0 "OctetString" "{10.1.1.131}"
    Request Id: 0
    Error: noSuchName
    Index: 1
    Count: 1
    Name: 1.3.6.1.4.1.42.2.12.2.1.4.1.0
    Kind: OctetString
    Value: "{10.1.1.131}"
    I had exported the mib for above OIDs from the sunMC agent in interactive mode.. and after loading it on NNM machine and performing same set operation I get the same (noSuchName) error.
    I also came across command es-trapdest which allows one to add multiple trap destinations from sunMC agent (and not sunMC server). However even using this method I am unable to receive any traps from agents.
    Any help here is appreciated.
    Other thread having same question is http://forum.sun.com/thread.jspa?threadID=15625&tstart=0
    Thanks...
    Nikhil.

    Hi Nikhil!
    Basically I am trying to set trap forwarding to a
    a NNM on the network from sunMC 3.5 Update 1.
    I have followed all the directions in sunMC snmp FAQ
    and other threads on this forum but I am not able to
    set the trap destinations.<snip>
    Other thread having same question is
    http://forum.sun.com/thread.jspa?threadID=15625&tstart
    =0Have you reviewed the options in the other thread? (i.e. Halcyon SNMP integration or HP integration packages). Both are off-the-shelf and if you can understand SunMC SNMP infrastructure you certainly wouldn't have trouble configuring either. If you've looked at both packages, what parts made you decide not to use them? Note: I work for Halcyon.
    Building your own custom integration with direct traps may be difficult: the generic snmp faq doens't have all the info you need to do so (i.e. how to get NNM to go backwards to an Agent to request the details of an event like "Warning /op is 95% full" or "Critical: Power Supply 2 is Offline"). I'm not even sure how I'd go about it, and I've been using SunMC for years :)
    Regards,
    Mike
    ([email protected])

  • Ciscoworks lms 2.6 snmp trap notification

    Hi
    Can anyone help with a problem I'm having, how do you go about setting up an alert email notification for a logging event coming from a firewall? The logging event is an alert.

    Is this alert in the form of a syslog message?  If so, then you can configure an RME Automated Action under RME > Tools > Syslog > Automated Actions.  Fill in the desired facility, severity, and mnemonic, then set the type of Action to be email.

  • LMS 3.2.1 integration with Clarity NMS for snmp trap forwarding

    Our client have integrated Clarity NMS to Ciscoworks LMS 3.2.1. So far they are receiving raw alarms/snmp traps but it lacks information/inventory of the originating device. Kindly see sample raw alarms below:
    2420: 2011-11-25 12:10:46 Received trap ==> Received SNMPv1 Trap
    Community=ciscoworks
    Enterprise=1.3.6.1.6.3.1.1.5
    Generip trap type=2
    Specific Trap Type=0
    Trap From=10.220.10.1
    Trap ID=1.3.6.1.6.3.1.1.5.2
    Trap Time=-1436283373
    1.3.6.1.2.1.2.2.1.1.83=83
    1.3.6.1.2.1.2.2.1.2.83=GigabitEthernet1/40
    1.3.6.1.2.1.2.2.1.3.83=6
    1.3.6.1.4.1.9.2.2.1.1.20.83=Lost Carrier
    EndTrap
    10933: 2011-11-24 11:57:53 Received trap ==> Received SNMPv1 Trap
    Community=ciscoworks
    Enterprise=1.3.6.1.4.1.9.1.291
    Generip trap type=2
    Specific Trap Type=0
    Trap From=10.220.10.1
    Trap ID=1.3.6.1.4.1.9.1.291.2
    Trap Time=1628056965
    1.3.6.1.2.1.2.2.1.1.8=8
    1.3.6.1.2.1.2.2.1.2.8=E1 0/0/0
    1.3.6.1.2.1.2.2.1.3.8=18
    EndTrap
    As you can see, those raw alarms doesn’t contain any information about the originating equipment or the physical card, port related information where those alarms were generated. Instead those alarms received are just NMS level alarms.
    How do we resolve this so that the inventory of the equipment would be part of the trap to be received by Clarity from Ciscoworks.

    Hi,
    Is the issue you have the source IP address of the forwarded trap?  Per RFC it is the IP of the actual device sending the trap.  The originating IP should be contained within the packet. I have included some additional information you may find helpful.
    Q. What is the difference between SNMP Raw Trap Forwarding and SNMP Trap alert/event Trap Forwarding? Does DFM support both?
    A. You can configure raw trap forwarding at DFM > Other configuration > SNMP Trap forwarding, and processed event/alert trap forwarding at DFM > Notification Services > SNMP Trap Forwarding. Processed trap is "when DFM receives certain SNMP traps, it analyzes the data found in fields (Enterprise/Generic trap identifier/Specific Trap identifier/variable−bindings) of each SNMP trap message, and changes the property value of the object property (if required)". Raw trap is the trap that the device forwards to DFM and DFM has yet to process it. For more information, refer to the DFM User Guide. Yes, DFM supports both ways of trap forwarding.
    http://www.cisco.com/en/US/products/sw/cscowork/ps2421/products_qanda_item09186a0080a9b35b.shtml
    DFM will only forward SNMP traps from devices in the DFM inventory. It will not change the trap format—it will forward the raw trap in the format in which the trap was received from the device. However, you must enable SNMP on your devices and you must do one of the following:
    Configure SNMP to send traps directly to DFM
    Integrate SNMP trap receiving with an NMS or a trap daemon
    The versions of SNMP traps supported by DFM are described in SNMP and ICMP Polling. For information on forwarding processed and pass-through traps, see Processed and Pass-Through Traps, and Unidentified Traps and Events.
    Pass-through traps are traps that DFM receives from devices that are not in the DFM inventory, and DFM has not processed. Forwarding these traps is controlled using Configuration > Other Configurations > SNMP Trap Forwarding. These traps are shown in the Alerts and Activities display because of their relevance to fault monitoring. Pass-through traps are displayed as follows:
    As one of the following events:
    > InformAlarm
    > MinorAlarm
    > MajorAlarm
    With the device type and the device name from which it was generated.
    If DFM does not know which device generated the trap, it ignores the trap. Pass-through traps will be cleared after a default interval of 10 minutes to one hour
    http://www.cisco.com/en/US/docs/net_mgmt/ciscoworks_device_fault_manager/3.2/user/guide/dfm32ug_Book.html

  • LMS 3.2 not forwarding SNMP Traps

    I am using LMS 3.2 and under DFM... Notification Services... SNMP Trap Notification, I have a Subscription set up to forward Traps to Unicenter 11.1.  I have tried a combination of sending Alerts and Events, Critical and Informational, Active and Cleared messages.
    At this time I have it set to send:
    Alerts Informational and Cleared
    Events Critical and Informational, Active and Cleared.
    Every Trap that is forwarded from LMS I get in the Unicenter console Twice.   Also, I occasionally get a clear in Unicenter, but normally clears are not being forwaded.
    Any ideas on this issue?
    Thanks
    -Scott

    You should first install the consolidated DFM 3.2 patch from http://tools.cisco.com/support/downloads/go/ImageList.x?relVer=3.2.0&mdfid=282640771&sftType=CiscoWorks+Device+Fault+Manager+Patches&optPlat=Windows&nodecount=2&edesignator=null&modelName=CiscoWorks+Device+Fault+Manager+3.2&treeMdfId=268439477&treeName=Network+Management&modifmdfid=&imname=&hybrid=Y&imst=N&lr=Y (patch for CSCta56151).  If the problem persists after that, post the NMSROOT/log/dfmLogs/NOS/nos.log after reproducing the problem with a new event/alert.

  • Generate SNMP Traps report from LMS database

    Hi Experts,
    Just wondering how LMS handle all SNMP traps received by LMS? Are the traps keep into a database on the server? Is there a way to extract them out as a report?
    Regards,
    Yi Shyuan

    Hello,
    Thank you for your answer, unfortunately this isn't what I was looking for.
    My idea was to generate fake-positives traps to test efficiently our NMS station.
    Traps that I would like to tests would be Temperature, Fan, Board.
    I found that chaning the yellow level of the temp sensor to the lower threshold can provide some start point, but I would like to ensure when a real event arrives that my NMS will react accordingly.
    Thanks

  • LMS 4.2 and SNMPv3 traps

    Hello,
    Does LMS4.2 or better the DFM of LMSv4.2 support SNMPv3 traps? I read in lms42rel.pdf => In this release, Trap support is provided for SNMPv3 configured devices, SNMPv2 configured devices, unknown devices, and non-Cisco devices.
    If yes, do we need to provide the SNMP Engine-IDs of target devices sending traps so that LMS can decrypt the traps or will LMS deploy the Engine-IDs from the poll cache to the DFM trap receiver? If manual Engine-ID maintanance is required, where in LMS can we type in the Engine-ID's?
    thx for answers in advance,
    Steffen

    Seems the SNMP v3 config is not correct.
    Please see my comments inline (in bold blue) as per your config, in what i think is incorrect:
    snmp-server view LMS iso included     --> correct
    snmp-server view LMS ####at excluded     --> dont know if #'s are by mistake
    snmp-server view NMS snmpUsmMIB excluded --> Not sure if NMS is typo or you made a new view after LMS.
    snmp-server view LMS snmpVacmMIB excluded      --> correct
    snmp-server view LMS snmpCommunityMIB excluded     --> correct
    snmp-server group LMS v3 priv read v3read write v3write notify LMS `--> Incorrerect, as after read and write you should have a SNMP View which is configured with "snmp-server view" command, which is either LMS or NMS in your case. There is no v3read or v3write configured.
    snmp-user LMS LMS v3 auth md5 authPW priv aes 128 privPW      -->Not sure if "snmp-user" is again a typo, else everything is correct.
    snmp-server host x.x.x.x traps version 3 priv NMS      --> There is no user as 'NMS'. after priv it should be either "SNMPv1/v2c community string or SNMPv3 user name". I dont see any username as NMS, as per config it should be LMS.
    -Thanks

  • Forwarding of traps

    The SMC FAQ for SNMP lists steps to take to forward traps to a 3rd party management application. The steps listed here: http://wwws.sun.com/software/solaris/sunmanagementcenter/faq/snmp.html#0q10 do not seem to be valid. Has anyone gotten this to work? After reading the Appendix of the DE manual it says that you need to set OID .1.3.6.1.4.1.42.2.12.2.1.4.1.0 with the forwarding information. When I attempt this I'm told that there is no such variable in this MIB. Was this functionality removed from 3.5? Is the manual wrong? Any help would be appreciated.
    Thanks,
    Brian T. O'Neill

    I just tested it on my 3.5 server without problems, but I did it a little differently:
    - I created the topology object on port 162 as described
    - used the attribute editor on the topology object to set the administrator community string to public
    Then I ran the SNMP command (using the SunMC SNMP utilities):
    bash-2.05$ /opt/SUNWsymon/util/bin/snmpset -h localhost -p 162 -c public 1.3.6.1.4.1.42.2.12.2.1.4.1.0 "OctetString" "10.0.0.201"
    Request Id: 0
    Error: noError
    Index: 0
    Count: 1
    Name: 1.3.6.1.4.1.42.2.12.2.1.4.1.0
    Kind: OctetString
    Value: "10.0.0.201"
    One thing that comes occassionally with SNMP utilities/libraries is the use or lack or a starting "." on the OID. In this case, using .1.3.6.1.4... did not work for me.
    Hope this helps,
    Jeff Grabell
    http://www.cirba.com

  • LMS E-Mail Notifications Errors Defination

    Dears,
    LMS send email notification to the customer (critical) as i customized
    with error (authentication failure)
    is there any sheet to know or identify what each error means ?
    as i googled it and didnt find a solution
    Thanks in advance

    You can check following document which describes what alerts mean, which are raised by LMS:
    http://www.cisco.com/en/US/docs/net_mgmt/ciscoworks_lan_management_solution/4.2/user/guide/lms_monitor/Events.html#wp1078033
    Also, LMS listens to some specific traps sent from device and process them to send some alerts.
    For some SNMP traps, LMS either processes them or treats them as pass-through traps. These traps, and how LMS treats them, are described in these topics:
    Processed SNMP Traps
    When LMS receives certain SNMP traps, it analyzes the data found in the following fields of each SNMP trap message, and changes the property value of the object property if required:
    •Enterprise (the sysObjectID of the agent or object)
    •Generic Trap Identifier
    •Specific Trap Identifier
    •Variable-Bindings
    •IP address of the SNMP agent
    Pass-Through SNMP Unidentified Traps
    Pass-through traps are the traps that are generated from devices and are not processed by LMS. The traps appear in the alerts and activities page, if they are generated from the devices that are managed by LMS. LMS cannot process these traps and map them to a topology element such as cards and interfaces. However, LMS can forward the traps irrespective of the device state is either managed or unmanaged. Forwarding these traps is controlled using Monitor > Fault Settings > SNMP Traps > Forwarding.
    Pass-through traps are displayed as follows:
    •As one of the following events:
    –InformAlarm
    –MinorAlarm
    –MajorAlarm
    •With the device type and the device name from which it was generated
    Unidentified Traps
    LMS may display an event as an Unidentified Trap. Normally an Unidentified Trap is reported when an event occurs on a device that is being discovered by LMS. To get more information on an Unidentified Trap see the corresponding Events page.
    For more details check :
    http://www.cisco.com/en/US/docs/net_mgmt/ciscoworks_lan_management_solution/4.2/user/guide/lms_monitor/TrapFwd.html#wp1007519
    -Thanks
    Vinod

  • Added a Northbound SNMP Trap Receiver in Cisco PI 1.3, but not getting traps

    Hi;
    I tried going into the Administration, System Settings, Notification Receivers menu and adding a receiver. The receiver was our  Zenoss 4.2.3 Resource Manager system. Zenoss has no problems  receiving traps from  IOS devices such as switches; that is routine for us. For example, we  see snmpTrap_Linkdown events from 2960s,etc.
    However, even with all the possible events and severities checked in the PI GUI for the receiver, we did not get anything.
    As a quick test I added my desktop computer as a receiver and ran Wireshark. Nothing comes through from Cisco PI. 
    This is supposed to be UDP 162 stuff, so there ought not be a need for a handshake or need  to permit anything on the receiver side. I would expect to  see a total  fire-hose of traps after the receiver is added. But that reasoning conflicts with the need to set the SNMP Community string for the Notification Receiver...
    I downloaded the logs from Cisco PI and grepped through all of them for the IPs & names of the test receivers, but found no messages.
    Any idea what might be wrong? Do I need to restart something after adding the receiver?
    I did notice that even if I supply a ficticious IP and name for the receiver, after it is added the "Operational Status" still says "Up" ...
    I sure wish NCS came with a better help system - I can't find anything in the Cisco config guides that explains what a "Northbound" receiver is.
    So confused,
    Steve

    Hi Matt, thanks for taking the time to reply.
    >> Not sure why you are trying to do this with PI, this is really more of an ISE function
    We don't have ISE and won't be getting it ... still trying to afford the > $100K for PI licenses. Our Content Filter vendor suggested using PI.
    >>Is PI set to forward traps for client authentication?
    I have all traps and severities checked. Not sure last week nothing showed up in Wireshark. Today I am seeing some UDP info from PI hitting my test workstation. However, when I associate and dissassociate my laptop, nothing comes through. Most of what I see are rogue notifications.
    >> Are the controllers that PI is managing also set to forward the same traps?
    In Configure,Controllers, , Management, TrapControl, all possible boxes are checked.
    >> Is PI configured correctly to forward the traps you want?
    Please see answer above.
    >> Does your content filter have the right MIBs to decipher the traps correctly?
    The content filter vendor says they will customize their software as needed, but the first step is to see traps getting forwarded, and right now, it appeards that PI is not forwarding what I would expect from the GUI settings. Let's worry about MIB stuff after we are getting the raw trap data.
    Thanks,
    Steve
    Message was edited by: Stephen Crye, elaborated & provided latest info.

  • Dynamic User update issue on LMS 3.2

    Win2008 VM:
    1. Campus Manager 5.2.1
    2. CiscoView 6.1.9
    3. CiscoWorks Assistant 1.2.0
    4. CiscoWorks Common Services 3.3.0
    5. Device Fault Manager 3.2.0
    6. Integration Utility 1.9.0
    7. LMS Portal 1.2.0
    8. Resource Manager Essentials 4.3.1
    hello
    Setup Dynamic Updates on LMS a few months back and tested ok with a WS-C2960-24PC-L running c2960-lanbasek9-mz.122-52.SE. Dynamic Updates has now stopped working! no changes on LMS or on switch. i've attached a trace debug for MAC UHIC - i can see the mac address (sent by the 2960) ok but the process ends with "macuhic INFO MacUhicDBTransaction: No data in the MAC notification entry.getMacEventSize() is 0". i've also attached the mac notification config on the 2960.
    previously i could configure the 2960 switch from LMS through the Device Trap Configuration page. now when i try this i get:
    There are no ports to configure for the selected device(s).
    Check whether you have selected any router(s).
    any ideas on where i go from here?
    thanks
    andy
    ps i've also rebooted server but issue persists

    hello
    thanks for the response. i had found the following in the MACUHIC log:
    2010/10/08 16:15:33 main macuhic INFO TrapListenerFilterImpl: FileNotFoundExcpetion was caught since NMSRoot\campus\etc\cwsi\portsData.xml and NMSRoot\campus\etc\cwsi\vlanData.xml file is not found
    2010/10/08 16:15:33 main macuhic INFO TrapListenerFilterImpl: FileNotFoundException occured since Campus Data Collection has not run even once
    2010/10/08 16:15:33 main macuhic INFO TrapListenerFilterImpl: NullPointerException occured since there are no XML files. XML file will be generated only at the completion of Data Collection
    i checked NMSRoot\campus\etc\cwsi and these files didn't exist.
    i reinitialized the ANI database and done a network discovery before running a full Data Collection. Data Collection finishes but the  vlanData.xml and portsData.xml still aren't created.
    when i now try and run a manual UT acquisition i get the error:
    Failed to start acquisition: Construction of XML data required for UT is in progress. Please try after some time.
    there are 2 autonomous AP managed by LMS but i excluded them from the Data Collection - does this sound like bug CSCtd49439?
    i've attached a pdshow output - the ani.log contains a lot of IP/naming which i'll have to edit
    cheers
    andy

  • Email alerts in LMS 4.0

    Hi,
    I want to implement email based alerts like for interface down, node down in LMS 4.0. Kindly provide complete procedure/steps how to implement this in LMS.
    Looking forward for a quick reply from your side.
    Thanks & regards,
    Majid Saeed 

    Sure, if you take a port that you can disconnect without causing any issue then you can go to the DFM detailed device view and put the port in a managed state.
    To do this goto Monitor -> Fault Settings -> Setup -> Fault Device Details, select the device with the port you want to manage, and in the screen that appears click again on the devicename.
    Under interface status select the port and change the managed state to true and hit submit and apply when it pops up.
    Next time this port goes down you will se an event in Fault management.
    When the device get rediscovered the state goes back to unmanaged.
    Cheers,
    Michel

Maybe you are looking for

  • Pages document opened as a PDF on the web shows old name; why?

    I created a pages document with a file name "Seifert Waldren" last year. Then this year I used that same document, either as a duplicate or version and saved it with a new name Seifert Thum. Then I've put this in my web page and when I use Firefox to

  • Html and Images on Email

    MydeviceisBBCurve8330Verizon,andIthinkit'sgreat.Bu​tIneedhelp. I have BB Smart app and it helps with emails. However, I had some Emails come thru with how they would look as they came thru on my PC.  I would have to press menu (on my Device) and clic

  • Handling Out-of-Range and Overflow

    How to deal with Out-of-Range and Overflow? Suppose I have a SQL table with one column of datatype "tinyint". tinyint's range is 0-255. Table: create table xyz (     userid tinyint not null auto_increment, After inserting 256 rows, we cannot insert a

  • How should the DOCTYPE statement appear when saving as XML?

    This seems so trivial, but I cannot figure it out. When I save a Frame file as XML, the DOCTYPE statement is written as <?DOCTYPE ..... ?> instead of <!DOCTYPE ..... > I noticed this because Frame exports the content of empty table cells as the nobre

  • HLP!!!!!!!!

    My iphoto doesnt open it says its damaged or incomplete???, My iphoto doesnt open it says its damaged or incomplete???