viernes, 11 de mayo de 2012

Configuracion SNMP, V3, 3 tipos Autenticacion en router Juniper

bueno para la configuracion del servicio SNMP en V· fue mas dificil de la que parecia pero encontre un link en la pagina de Juniper donde explica casi todo.

Para la refrencia del link:

http://kb.juniper.net/InfoCenter/index?page=content&id=KB22048&cat=security_products&actp=LIST

Donde encontramos la siguiente informacion:

set snmp v3 usm local-engine user noauth authentication-none
set snmp v3 usm local-engine user authnopriv authentication-md5 authentication-password testtest
set snmp v3 usm local-engine user authnopriv privacy-none
set snmp v3 usm local-engine user authpriv authentication-md5 authentication-password testtest
set snmp v3 usm local-engine user authpriv privacy-des privacy-password testtest
set snmp v3 vacm security-to-group security-model usm security-name v3test group v3test
set snmp v3 vacm security-to-group security-model usm security-name noauth group v3test
set snmp v3 vacm security-to-group security-model usm security-name authnopriv group v3test
set snmp v3 vacm security-to-group security-model usm security-name authpriv group v3test
set snmp v3 vacm access group v3test default-context-prefix security-model any security-level none read-view v3testview
set snmp v3 vacm access group v3test default-context-prefix security-model any security-level none write-view v3testview
set snmp v3 vacm access group v3test default-context-prefix security-model any security-level none notify-view v3testview
set snmp v3 vacm access group v3test default-context-prefix security-model any security-level authentication read-view v3testview
set snmp v3 vacm access group v3test default-context-prefix security-model any security-level authentication write-view v3testview
set snmp v3 vacm access group v3test default-context-prefix security-model any security-level authentication notify-view v3testview
set snmp v3 vacm access group v3test default-context-prefix security-model any security-level privacy read-view v3testview
set snmp v3 vacm access group v3test default-context-prefix security-model any security-level privacy write-view v3testview
set snmp v3 vacm access group v3test default-context-prefix security-model any security-level privacy notify-view v3testview
set snmp v3 snmp-community v3test security-name v3test
set snmp view v3testview oid system include
set snmp view v3testview oid .1 include

despues de realizar pruebas de conectividad no podia lograr ver las informacion en el servidor sin embaro hace falta habilitar el servicio sobre la interface que vamos a monitorear, en mi caso la realice asi:


set security zones security-zone trust interfaces vlan.0 host-inbound-traffic system-services snmp


No hay comentarios :