eSight添加交换机后,SNMP参数配置正确,交换机告警无法在网管上显示

发布时间:  2015-07-22 浏览次数:  530 下载次数:  0
问题描述
在eSight上添加交换机成功,测试SNMP通过,在设备上的日志中有接口UP DOWN的告警,但是网管上告警没有显示出来。
处理过程
interface LoopBack0
ip address 10.228.255.9 255.255.255.255
#
snmp-agent
snmp-agent local-engineid 800007DB0304F93890F760
snmp-agent community write cipher %#%#uC&FKV;y4(:eo}Coo*fB{,6b8LYORQ8nU[,-PHQMBqk6>+x.826~iO"H)~GVK%~lY}V]=ZgtX+M,w"\X%#%# acl 2001
snmp-agent community read cipher %#%#x<QiB#Y[KF,3dEJ]6Q})7;)qX9-1;*>Rr.$JU.xYtB{ZBaG6'Tu-NLEa\Ow=X[R&6MEKn$0aV_(e^KRW%#%# mib-view iso-view
snmp-agent sys-info version all
snmp-agent target-host trap address udp-domain 10.228.248.1 params securityname cipher %#%#>w66BjD|XM1DF+H(uz\EMza"XM#5`1BX`tB=EmfT%#%# v2c
snmp-agent mib-view included iso-view iso
snmp-agent trap source LoopBack0
snmp-agent inform timeout 5
snmp-agent inform resend-times 6
snmp-agent inform pending 7
snmp-agent trap enable

[SRCU-A-NT-OPM-ZDS01-N5-GigabitEthernet2/5/0/13] shut
May 11 2015 15:44:29+08:00 SRCU-A-NT-OPM-ZDS01-N5 %%01IFPDT/4/IF_STATE(l)[6]:Interface GigabitEthernet2/5/0/13 has turned into UP state.
May 11 2015 15:43:13+08:00 SRCU-A-NT-OPM-ZDS01-N5 %%01IFPDT/4/IF_STATE(l)[7]:Interface GigabitEthernet2/5/0/13 has turned into DOWN state.
May 11 2015 15:34:03+08:00 SRCU-A-NT-OPM-ZDS01-N5 %%01IFPDT/4/IF_STATE(l)[8]:Interface GigabitEthernet2/5/0/13 has turned into UP state.
May 11 2015 15:33:00+08:00 SRCU-A-NT-OPM-ZDS01-N5 %%01IFPDT/4/IF_STATE(l)[9]:Interface GigabitEthernet2/5/0/13 has turned into DOWN state.
May 11 2015 15:32:29+08:00 SRCU-A-NT-OPM-ZDS01-N5 %%01IFPDT/4/IF_STATE(l)[10]:Interface GigabitEthernet2/5/0/13 has turned into UP state.

esight上说是没有做屏蔽规则,经过在服务器侧抓包分析,对应的告警报文是发送至esight服务器上的:

根因

由抓包可知,用户添加设备的地址使用的10.228.225.254,而SNMP配置中发送告警的源地址是10.228.255.9,告警Trap是设备主动上报的,那么网管侧就需要判断trap来源IP是否是网元的管理IP来过滤报文。


解决方案
删除网管上的网元,重新以10.228.255.9这个地址添加设备,或者修改SNMP配置中发送告警的源地址是10.228.225.254。

END