No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

eSight V300R009C00 Operation Guide 10

Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
How Do I Handle the Problem that eSight Cannot Receive Network Device Alarms in the SUSE IPv6 Scenario

How Do I Handle the Problem that eSight Cannot Receive Network Device Alarms in the SUSE IPv6 Scenario

Question

How can I handle the problem that eSight cannot receive device alarms in the SUSE IPv6 scenario?

Answer

Set the port number used by devices to send Trap messages to eSight to 10162 to solve the problem.

NOTE:
  • In the Windows IPv6 scenario, the default port number 162 needs to be used. It is recommended that the port not be modified. To modify the port number, contact technical engineers for help.
  • The alarm management of eSight does not support the SNMPv1. To manage device alarms using the eSight, use the SNMPv2c or SNMPv3.

The following uses Huawei S5720-52X-PWR-SI-AC V200R011C10 as an example to describe the configuration. For other device models, see the configuration manual.

  • SNMPv3
    <Device> system-view
    [Device] snmp-agent sys-info version v3
    [Device] snmp-agent mib-view included View_ALL iso   //View_ALL indicates the name of the MIB view. To ensure that eSight can properly manage devices (for example, discover device links through the LLDP protocol), the MIB view must contain the iso node.
    [Device] snmp-agent group v3 snmpv3group privacy write-view View_ALL notify-view View_ALL   //snmpv3group indicates the configured user group. Set the name of the write view and notification view to View_ALL. By default, the write view has the read permission and you do not need to set read-view. The notification view is used to restrict the MIB node that sends alarms to eSight.
    [Device] snmp-agent usm-user v3 snmpv3user group snmpv3group   //snmpv3user indicates the configured user name, which is the same as the eSight security name. The security level of a user cannot be lower than that of the user group to which the user belongs. Otherwise, the communication fails. For example, if the security level of user group snmpv3group is set to privacy, the security level of user snmpv3user must be authentication and encryption.
    [Device] snmp-agent usm-user v3 snmpv3user authentication-mode sha   //Set the authentication protocol and password of the user, which are the same as those of eSight.
    [Device] snmp-agent usm-user v3 snmpv3user privacy-mode aes128   // Set the encryption protocol and password of the user, which must be the same as those of eSight.
    [Device] snmp-agent trap enable
    [Device] snmp-agent target-host trap ipv6 address udp-domain 1001::10:10:10:20 udp-port 10162 params securityname snmpv3user v3 privacy   //1001::10:10:10:20 is the IP address of the eSight server. (If the southbound and northbound network isolation solution is used, this IP address is the southbound IP address of eSight.) 10162 is the port number of the trap packet. Set securityname to the user name.
    [Device] snmp-agent packet max-size 12000   //Set the maximum size of an SNMP packet that can be received and sent by the device to 12000 bytes. By default, the maximum size of an SNMP packet is 12000 bytes. Since this parameter may be modified, you need to reset this parameter.
    [Device] quit
    <Device> save
  • SNMPv2c
    <Device> system-view
    [Device] snmp-agent sys-info version v2c
    [Device] snmp-agent mib-view included View_ALL iso   //View_ALL indicates the name of the MIB view. To ensure that eSight can properly manage devices (for example, discover device links through the LLDP protocol), the MIB view must contain the iso node.
    [Device] snmp-agent community read cipher Public_123 mib-view View_ALL   //Public_123 is the specified read community. The value must be the same as Read community on eSight. 
    [Device] snmp-agent community write cipher Private_123 mib-view View_ALL   //Private_123 is the specified write community. The value must be the same as Write community on eSight.
    [Device] snmp-agent trap enable
    [Device] snmp-agent target-host trap ipv6 address udp-domain 1001::10:10:10:20 udp-port 10162 params securityname Public_123 v2c   //1001::10:10:10:20 is the IP address of the eSight server. (If the southbound and northbound network isolation solution is used, this IP address is the southbound IP address of eSight.) 10162 is the port number of the trap packet. Set securityname to the read community.
    [Device] snmp-agent packet max-size 12000   //Set the maximum size of an SNMP packet that can be received and sent by the device to 12000 bytes. By default, the maximum size of an SNMP packet is 12000 bytes. Since this parameter may be modified, you need to reset this parameter.
    [Device] quit
    <Device> save
Translation
Download
Updated: 2019-09-07

Document ID: EDOC1100011877

Views: 314332

Downloads: 637

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next