SNMP configuration in Ironport Cluster

Hi everyone, 
I have 2 Ironport appliances X series in a cluster configuration, I want to configurate SNMP in both appliances but if I run the command snmpconfig it only allows me to configure snmp for the cluster, in this way I only can "ask" for status to 1 interface  on behalf of the entire cluster and I dont know if a high cpu trap or high memory trap on the other appliance can be send to my snmp manager.
I tried to configure snmp in every machine (not cluster mode) but the appliance sends me an strange error and kick me out of the cli.
Anyone of you had configure snmp in a cluster environment? Can you guys tell me how can I do this?
Best Regards!

The term cluster is a misnomer. It is more of a centralize configuration. Both appliances will send traps individually and will share the same configurations. Basically both appliances act on their own, and don't share IP addresses or failover (the beauty of email is failover is built into MX records and transport configurations). There are instances when it makes sense to have separate configurations for a group of systems in the "Configuration Cluster". For SNMP this can be done at the Cluster or "Cluster Group" Level.
In my example I wanted to have a different SNMP Location for two sets of appliances:
What I had to do for SNMP, was to configure a Cluster Group for each location. This way I could say Appliance A & B are at location 1, and Appliances C & D are at location 2.So in the CLI, you will need to create the groups, and then assign your appliances to each group. Then Change your cluster mode in the CLI to the appropriate group and make the SNMP changes. Repeat for your other group.
Please let me know if this was helpful, I would be happy to go into more details.

Similar Messages

  • Snmp configuration on weblogic 10 has no effect

    SNMP in MMC(Mobile Management Center, A HP Product), use joesnmp.jar internal to send snmp trap generated by mmc app. This part works well in weblogic 10;
    snmp in weblogic , configured by weblogic console. In weblogic 8, we configure such items:
    Weblogic Subsystem
    Purpose
    Level
    Deployer
    Monitor all war/ear deploy/undeploy/redeploy
    INFO
    JDBC
    Monitor all warnings/errors in jdbc operation
    WARN
    Current tests shows that the snmp configuration on weblogic 10 has no effect.
    Due to MMC4.6 gets the Weblogic updated from 8.16 to 10.3, we didn’t find the configuration about “Enable JDBC Logging”. Below is the former config page about Weblogic 8.16.
    But in Weblogic 10.3 we cannot find this configuration. We have followed the guide http://e-docs.bea.com/wls/docs100/jdbc_admin/monitor.html#wp1048793
    And tried to set the appropriate properties on the command line like this,
    -Dweblogic.debug.DebugJDBCSQL=true -Dweblogic.log.StdoutSeverity="Info"
    Actually we can get the DM, Core, SMTP, Bulk, Adaptor Class, and connection fail error messages in weblogic backend log, but seems Weblogic cannot send SNMP trap messages to SNMP monitoring tool like Openview.
    PS. Weblogic can send out the SNMP trap messages when the server starts and stops.
    So till now the SNMP cannot monitor the DM, Core, SMTP, Bulk, Adaptor Class, and connection fail for MMC4.6.

    Hi, I am on 12.1 weblogic, and I am stuck on where you set the SNMP Servername and port number.
    We are on windows 2008, I see there is a services, SNMP .
    Is there something I need to do on the weblogic side before i get into the SNMP agenets and traps, this part I understand, I am just unsure where to add the SNMP Servername and the user I wish the emails to go to.
    I see in the security realms the user i can add to the group monitors.
    -->, I am running WL 10.3 and SNMP works fine. The cluster generates traps based on particular mbeans, such as when a server's health state is not "OK", or when there are JDBC connection issues. You have to create a new SNMP agent within the admin server then build the individual traps ( String, Gauge, Counter, etc. ) and make sure you have a Trap Destination.

  • SNMP Configuration on solaris10

    Please can anybody put some light on SNMP configuration on Solaris 10.I am newbie on this.I read SMA Agaent on solaris 10 is NET-SNMP compliant.I need to monitor disk usage,CPU load ..So I configured snmpd.conf (inside /etc/sma/snmp) for this.The traps I am getting are of series 1.3.6.1.4.1.8072.3.2.3.But I am not able to figure the MIB s which contains the description of these kind of traps.
    Please help me.

    Hi, I am on 12.1 weblogic, and I am stuck on where you set the SNMP Servername and port number.
    We are on windows 2008, I see there is a services, SNMP .
    Is there something I need to do on the weblogic side before i get into the SNMP agenets and traps, this part I understand, I am just unsure where to add the SNMP Servername and the user I wish the emails to go to.
    I see in the security realms the user i can add to the group monitors.
    -->, I am running WL 10.3 and SNMP works fine. The cluster generates traps based on particular mbeans, such as when a server's health state is not "OK", or when there are JDBC connection issues. You have to create a new SNMP agent within the admin server then build the individual traps ( String, Gauge, Counter, etc. ) and make sure you have a Trap Destination.

  • Configuring WAR-Scoped Cluster Nodes Error

    I did a test following the guide: http://download.oracle.com/docs/cd/E15357_01/coh.360/e15829/cweb_wls.htm#BABCDJGC
    2.2.5.3 Configuring WAR-Scoped Cluster Nodes
    i deploy coherece.jar and active-cache.jar, the following errors occurs at weblogic console
    "Issues were encountered while parsing this deployment to determine module type. Assuming this is a library deployment."
    but I can deploy them successfuly and ignore errors.
    but then I deploy the test war app, deployment will be failed with following errors:
    Caused By: weblogic.management.DeploymentException: Error: Unresolved Webapp Lib
    rary references for "ServletContext@1391083548[app:CoherenceWeb module:Coherence
    Web.war path:/CoherenceWeb spec-version:2.5]", defined in weblogic.xml [Extensio
    n-Name: coherence, exact-match: false], [Extension-Name: active-cache, exact-mat
    ch: false]
    My question is how to fix it?

    Unfortunately, a WAR cannot refer a jar deployed as a share library in WebLogic. This is a limitation that will hopefully be fixed in future versions of WebLogic.
    For no you will have to either package your application as an EAR, or bundle the coherence.jar inside your WAR under WEB-INF/lib/.
    Hope that helps.
    Regards,
    Torkel

  • SNMP configuration of Aironet1200 (ios based)

    Hi,
    Could somebody explain where I am going wrong with my SNMP configuration of my Aironet 1200AP.
    I am trying to set up a new SSID, with a WEP key, some radius server info and the ability to toggle requireEAP and requireMAC on and off.
    The sequence of commands I have been trying is given below, this is from the factory default config. After I blast the AP with this config, I get the following problems:
    1. I cannot manipulate the SSID in the web interface any longer
    2. The radius server info never shows up in the web interface
    3. If I try to set RequireMac and/or RequireEAP, the set request goes through, but a get on OIDs shows them as false again.
    4. I cannot associate at all with the device.
    Any thoughts/help would be greatly appreciated.
    Thanks
    Ashleyb
    snmpset -v1 -mall -cpublic 10.8.200.112 \
    CISCO-DOT11-IF-MIB::cd11IfAuxSsidBroadcastSsid.1.1 = 1
    snmpset -v1 -mall -cpublic 10.8.200.112 \
    CISCO-DOT11-IF-MIB::cd11IfAuxSsid.1.1 = "MyNewSid"
    snmpset -v1 -mall -cpublic 10.8.200.112 \
    CISCO-WLAN-VLAN-MIB::cwvlWlanEncryptionMode.0 = 2
    snmpset -v1 -mall -cpublic 10.8.200.112 \
    CISCO-WLAN-VLAN-MIB::cwvlWlanEncryptionMandatory.0 = 1
    snmpset -v1 -mall -cpublic 10.8.200.112 \
    CISCO-DOT11-IF-MIB::cd11IfAuxSsidAuthAlgRequireMac.1.1.1 = 1
    snmpset -v1 -mall -cpublic 10.8.200.112 \
    CISCO-DOT11-IF-MIB::cd11IfAuxSsidAuthAlgRequireEap.1.1.1 = 1
    snmpset -v1 -mall -cpublic 10.8.200.112 \
    RFC1213-MIB::ifAdminStatus.1 = 1
    snmpset -v1 -mall -cpublic 10.8.200.112 \
    CISCO-AAA-SERVER-MIB::casConfigRowStatus.radius.1 = 4
    snmpset -v1 -mall -cpublic 10.8.200.112 \
    CISCO-AAA-SERVER-MIB::casAddress.radius.1 = 10.8.200.109
    snmpset -v1 -mall -cpublic 10.8.200.112 \
    CISCO-AAA-SERVER-MIB::casAuthenPort.radius.1 = 1812
    snmpset -v1 -mall -cpublic 10.8.200.112 \
    CISCO-AAA-SERVER-MIB::casKey.radius.1 = "secret"
    snmpset -v1 -mall -cpublic 10.8.200.112 \
    CISCO-DOT11-IF-MIB::cd11IfVlanEncryptKeyStatus.1.0.1 = 6
    snmpset -v1 -mall -cpublic 10.8.200.112 \
    CISCO-DOT11-IF-MIB::cd11IfVlanEncryptKeyLen.1.0.1 = 13 \
    CISCO-DOT11-IF-MIB::cd11IfVlanEncryptKeyValue.1.0.1 =
    "zzzzzzzzzzzzz" \
    CISCO-DOT11-IF-MIB::cd11IfVlanEncryptKeyTransmit.1.0.1 = 1 \
    CISCO-DOT11-IF-MIB::cd11IfVlanEncryptKeyStatus.1.0.1 = 4

    Getting the SNMP trap community string is not trivial.  The reason for this is that anything which shows the configuration will have this field starred out. You can get to the value, but not in a report-like fashion.  You can, however, search the archived configs under RME > Config Mgmt > Archive Mgmt > Search Archive.  Assuming you know the SNMP trap receiver IP, you could search on:
    snmp-server host x.x.x.x old-string
    That would show you all devices that still had the old community string.
    If you need to force RME to get the new config data, you can simply schedule a Sync Archive job under RME > Config Mgmt > Archive Mgmt > Sync Archive.  Of course, if you made the changes outside of LMS, you will need to manually update DCR with the new community string.

  • SNMP Configuration question

    I have a question.If i have a SNMP configuration in a switch 4510r, is there any posibility to reach the snmp server without the community command and without the server snmp command??????I have only this lines on the configuration.THANKSSS.
    snmp-server engineID local 8000000903000025841E8C38
    snmp-server trap-source Vlan10
    snmp-server source-interface informs Vlan10
    snmp-server packetsize 1024
    snmp-server enable traps snmp authentication linkdown linkup coldstart warmstart
    snmp-server enable traps config-copy
    snmp-server enable traps config
    snmp-server enable traps config-ctid
    snmp-server enable traps syslog

    If i have configured the communities and the server lines on the device, what could be the possible issue when the SNMP server reach the switch but the switch doesn´t respond to the request, and when i use the command #show snmp, we have an output in this way:THANKS FOR YOUR HELP
    switch#show snmp
    Chassis:
    Contact: GISN Americas Network - tel: 978-858-7000
    0 SNMP packets input
        0 Bad SNMP version errors
        0 Unknown community name
        0 Illegal operation for community name supplied
        0 Encoding errors
        0 Number of requested variables
        0 Number of altered variables
        0 Get-request PDUs
        0 Get-next PDUs
        0 Set-request PDUs
        0 Input queue packet drops (Maximum queue size 1000)
    145568 SNMP packets output
        0 Too big errors (Maximum packet size 1024)
        0 No such name errors
        0 Bad values errors
        0 General errors
        0 Response PDUs
        145568 Trap PDUs
    SNMP global trap: enabled
    SNMP agent enabled
    SNMP logging: enabled
        Logging to 131.98.27.6.162, 0/10, 34282 sent, 0 dropped.
        Logging to 192.97.141.173.162, 0/10, 1721 sent, 0 dropped.
        Logging to 192.97.141.176.162, 0/10, 1721 sent, 0 dropped.
        Logging to 192.97.141.55.162, 0/10, 1721 sent, 0 dropped.

  • SNMP configuration in WLC

    hi all,
    Can any one tell me if there is document available for SNMP configuration for WLC 4404?

    http://www.cisco.com/en/US/docs/wireless/controller/7.0MR1/configuration/guide/cg_controller_setting.html#wpmkr1372608
    Configuring the device via snmp is very difficult and there really isn't a document covering that.  WCS uses snmp to configure the controllers.

  • [svn:bz-trunk] 9522: Add new configuration options to cluster defined in qa-regress.

    Revision: 9522
    Author:   [email protected]
    Date:     2009-08-24 10:37:30 -0700 (Mon, 24 Aug 2009)
    Log Message:
    Add new configuration options to cluster defined in qa-regress. These options were added in checkin 9201 and expose JGroups channel configuration settings that weren't configurable previously.
    Modified Paths:
        blazeds/trunk/qa/apps/qa-regress/WEB-INF/flex/services-config.mods.xml

    Remember that Arch Arm is a different distribution, but we try to bend the rules and provide limited support for them.  This may or may not be unique to Arch Arm, so you might try asking on their forums as well.

  • Is it possible to obtain a report from Ciscoworks LMS3.1 to detail the SNMP configuration of all devices?

    I am about to update/standardize to secure the SNMP configuration for all devices in the network utilizing Ciscoworks.
    There is likely to be variations amongst the devices. Therefore, I would like to generate one report for all the devices, capturing the SNMP configurations, is this possible?
    I know how to complete the work afterwards but am struggling to produce a meaningful report that I can use to build my tasks from.
    I am trying to achieve this using a particular 'role based' account via ACS, so it is possible that I don't have the permissions with this account at present which maybe why I'm not able to do it.
    Thanks!

    Getting the SNMP trap community string is not trivial.  The reason for this is that anything which shows the configuration will have this field starred out. You can get to the value, but not in a report-like fashion.  You can, however, search the archived configs under RME > Config Mgmt > Archive Mgmt > Search Archive.  Assuming you know the SNMP trap receiver IP, you could search on:
    snmp-server host x.x.x.x old-string
    That would show you all devices that still had the old community string.
    If you need to force RME to get the new config data, you can simply schedule a Sync Archive job under RME > Config Mgmt > Archive Mgmt > Sync Archive.  Of course, if you made the changes outside of LMS, you will need to manually update DCR with the new community string.

  • SNMP Configure OnCommand System Manager 3.1 on FAS2020 Ontap 7.3.7

    Hi, I have the to discover snmp after configure SNMP. Even I tried both trap hosts with my windows IP where I installed Oncommand system manager and the IP of Ontap 7.3.7. Can someone please verify which host is correct one? what is the requirement for SNMP configure. Thanks,Kevin.

    Sorry, access for this KB is restricted. Then, check following point and fix them. 1. Check if SNMP agent is enabled.
       filer> options snmp.enable
       If not, enable it by "options snmp.enable on"
    2. Check if SNMP access is allowed.
       filer> options snmp.access
       If IP address of System Manager host is not listed, set it by "options snmp.access host=<IP address>"
    3. Check filer's SNMP community name.
       filer> snmp community
       By default, "ro public" is displayed.
       If you have modified SNMP community name, you need to modify registration on System Manager.
       Edit C:\Users\<username>\NetApp\SystemManager\SystemManager.config and adjust snmp-community
       element under storage-system element.

  • Configuring Active-Passive cluster for Oracle Database on Red hat

    Can I configure the red hat cluster suite to implement an Active-Passive Oracle Service without configuring GFS Volume manager?
    In other words, I want to install Oracle Standard Edition for Red hat on 2 node separately. Subsequently I am creating an Oracle Instance on the firsth node whith Oracle datafile, redologfile, controlfile,initfile on a SAN Storage. Subsequently I want to configure red hat cluster suite to start the Oracle Instance on the second node when the the firsth node fail. Only one node at time have the Oracle Instance up. Does this configuration works correctly or I have to install and configure any software to manage shared storage file system(like GFS Volume Manager or OCFS, ASM ecc.)?
    Thanks

    This scenario is usually done through custom scripts.
    To get an idea of what is required, I recommend you look through Oracle's DataGuard documentation, as Data Guard is a free utility included in the Enterprise Edition to do exactly what you want.
    (Having spent a lot less money to buy the less expensive product, you now have the opportunity to spend more in programmer and maintenance costs to create your own solution.)

  • Ironport Cluster

    Hi,
    I'm aware this is not the correct section to log this question. But I have two IronPort ESA C160 devices and would like to cluster them for redundancy. My question is:
    When the devices are clustered, is there a cluster IP address (not an interface on either device) which is created which emails from Exchange can be routed to? Since only 1 of the 2 devices will be active at any given time, how can Exchange distingiush which Ironport device to route to?
    I read a post where a user wanted to know how to upgrade a machine in a cluster and he stated that he had a cluster IP address. I'm not sure where this is as I haven't seen anything about this during the cluster creation.
    Any assistance would be greatly appriciated.
    Cheers,
    Shelton

    Hi
    IronPort Clusters are not the same as for example Microsoft Clusters i.e. does not have a shared cluster address.  The easiest way to do this is to use a load balancer (for example Cisco ACE) and let the load balancer take care of it.  Point the Exchange servers at a load balanced address configured on the load balancer.
    Regards
    Paul

  • Ironport Cluster Load Balancing

    Anyone knows if it is possible to configure a load balancing of two C100 in a cluster.
    I configured the second machine in the cluster two weeks ago. when I look in the stats, the second machine does nothing. the first machine is on 3% CPU and whe have about 120000 mail per day.
    is there any way to configure the cluster that the two machine share their work ? or is the cluster only for fail-safe ?

    Hello,
    Most mail admins know how to use MX records for load balancing (and redundancy) on their mail servers.
    Less people know you can use MX also for your outgoing mail traffic.
    Just add a MX record to your local DNS and specify a name for the record. (i.e. outgoingMX.local.domain) put the IP's or hostnames of your internal Ironport card in the data and configure your internal mail system to deliver it’s outgoing mail to smarthost outgoingMX.local.domain
    Works for most mail systems. I'm sure it is working for Exchange (5.5. and higher) and Domino (5 and higher)
    Regards, Steven

  • Question on potential configurations for resource cluster as virtual machine server / beowulf / render farm

    I am looking for a starting point on where to focus my efforts in researching a desired configuration.  Of course anyone who spends anytime researching in forums knows that one thing that people hate is for people
    to ask questions that can be easily answered with a simple Google search, so let me start by saying I have done many hours of research on this already.  The problem I am having is that although there is a huge amount of information out there on what I
    am looking to do, I don't believe many people have attempted this on as small of a scale as a single user system.  Also, the amount of routes to go down seems endless, which for me so far has led to many hours of wasted trial and error.  So keep
    in mind that I am not so much looking for a handout on answers but rather a more narrowed path of searching and researching.
    What I am looking to do is take the current equipment that I have and consolidate it into a 9-12U server rack using mounted 2 or 3U atx cases so that I can have a more organized, space saving setup.  That is the
    easy part, what I have been looking into though is the combining of cores and processing power to make a "super computer" yet I use this term very loosely.  From what I have read, the closest thing I can compare the idea in my head to is referred
    to as a Beowulf Cluster, or a Render farm but I believe as the name suggests that this is more dedicated to a single task of rendering.  I like the idea of a virtual machine server where I would never actually locally use this machine but rather set up
    many virtual machines that I can remote into.  I started to compile a ProxMox Server, and this was the right idea, however when running a VM, that VM is constrained to the hardware resources of the single node that it is assigned to.  If there is
    a way to be able to have a machine that would utilize the 20 some odd cores that I would have in the cluster, along with the 40-50 gigs of ram, well that would be ideal but sounds too good to be possible. Also, ProxMox isnt quite there in compatibility for
    a home/home office user. I understand that the programs that are used have to be written in a way where the architecture allows for such, but if it could even be used for speeding up my render time with Adobe and Autodesk (which I know do have such functionality)
    that would be wonderful. 
    So without writing a whole book I am looking for suggestions on how to proceed.  Can I literally build a "super computer" that is not really that super... more mediocre super... or am I better off just consolidating the hardware but not the
    OS's and programs.   Also, I do currently use three or four different distros of Linux, mostly for ethical hacking and security type work like pen testing.  One thing I have never been a fan of though is dual booting.   Perhaps investing
    in a hot-swap HDD chassis that I could load all the different OS's on where I could just pop in whatever OS I am looking to use.  As you can see I am far from knowing where to spend my efforts in research.... THANK YOu for ANY help.
    I was recently suggested Microsoft HPC Pack as a platform?  Anything?
    Here is what I currently have:
    these are all fully built)
    Intel i5 3.7 quad core
    Nvidia (ASUS) GTX-760
    16 Gb DDR3 @ 1600 Corsair
    ASUS Sabertooth Z87 MoBo
    Autodesk - Inventor, Revit, 3Ds Max, Maya, Fusion 360, Flow, etc.
    Adobe - PhotoShop, After Effects, Dreamweaver, Illustrator, etc.
    Basically as you can see this is used for my work in 3d modeling, rendering, and drafting along with 3D printing.
    Sys. #2
    AMD 4.7-5.0 8 Core
    Nvidia GTX 760 (Same as sys #1)
    16 Gb DDR3 @ 2400 Mhz
    ASUS Crosshair V Formula Z
    Various programs for programming, app development, gaming, etc.  (This is my daily driver)
    Sys #3
    AMD 4.5-4.7 8 core
    16 Gb DDR3 @ 1600 Mhz
    Asus Crosshair V Formula Z MoBo
    Not currently using this one but is fully functional.
    Sys #4
    HP built i5 3.4 quad core
    12 Gb DDR3 @ 1600
    Nothing Special - this is the one I was using for school work but being that school and programming became one and the same I have all but abandoned it.
    THANK YOU AGAIN TO ANYONE WHO HAS MADE IT THIS FAR in reading this.

    The cluster works only for standalone webcache and httpserver installations types.
    If you want to do this you have to use dcmctl command to change from one farm to another.
    try checking with dcmctl command with out options an dyou will get a full list of options.
    then run dcmctl usage(orhelp) option to see what you need.
    As far as I remember
    you have to check the farm id of the server you want to be the master
    then in the second, you have to run dcmctl joinfarm or something like that.
    Regards.

  • SNMP Configuration

    I want to configure SNMP for Oracle Instance. What I have done is
    Configured master SNMP on OS i.e. SNMP Service + SNMP Trap Service. (verified by using management utility Getif, its working fine. I'm getting all the OS information / OID's)
    Now I want that my Oracle SNMP Child process should report to my main server process. For doing so, what should I do ?
    Oracle Documentation, says some directory structure like ORACLE_HOME\PEER\ADMIN .... But I could not find these directories in my oracle installation.
    Do I need to execute some script which will create these directories ? or I need to Install oracle Again ? What if I already have oracle Installed ?
    What is the role of ORACLE IA in this ? How to install that ?
    Need help

    Hi,
    Can you check with this command:
    # snmpwalk -v2c -c public localhost system
    This link may help you https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/6/html/Deployment_Guide/sect-System_Monitoring_To…
    Best regards

Maybe you are looking for

  • When using TODATE function MDX query is not correctly generated

    Essbase 9.3.1.2 and OBIEE 10.1.3.4.1. When using TODATE function MDX query is not correctly generated. This leads to unexpected values not only on cumulative columns in report (generated with TODATE), but also other columns (calculated with AGO funct

  • Unlock ipod touch 5 gen

    what do i do when i need to connect my ipod to itunes and it said that i need to unlock it which i cant do so what do i do

  • Build elements slideshow but screen shows black. What did I do wrong?

    I build a slideshow of 100 slides with music.  Everything looks good but when I preview the screen shows black with the music playing in the background.  What am I missing, or doing wrong?

  • MacBook dead after update to 10.8.1

    Hi My config: MacBook 6,1 with OS X: 10.8.0 - Language: German. The installations is fresh and only a few days old.... Today, I've notived that 10.8.1 is available, so I've decided to install it with the following procedure: Hit 'Update' in Mac AppSt

  • Layer Flicker on MouseOver

    Just wondering why on mouse over the layer that I show flickers as the mouse is moved across the host spot that activates the show layer. I have played around and found that when the hotspot and the layer are not overlapping there is no problem but w