Using SNMP with Content Gateway (not V-Series)



Similar documents
May PZ-0502A-WWEN Prepared by: Internet & E-Commerce Solutions

Using SNMP to Obtain Port Counter Statistics During Live Migration of a Virtual Machine. Ronny L. Bull Project Writeup For: CS644 Clarkson University

White Paper. Fabasoft on Linux Performance Monitoring via SNMP. Fabasoft Folio 2015 Update Rollup 2

Monitoring disk stats with Cacti

Dell SupportAssist Version 2.0 for Dell OpenManage Essentials Quick Start Guide

Intel Simple Network Management Protocol (SNMP) Subagent v6.0

Installing and Configuring Websense Content Gateway

Server Management Agent for Linux User s Guide. Server Management 2.0 and Higher

unisys Server Management Agent for Linux User s Guide imagine it. done. Server Management 2.2 and Higher October

QStar SNMP installation, configuration and testing. Contents. Introduction. Change History

You can create configurations using the following modes:

Newton Linux User Group Graphing SNMP with Cacti and RRDtool

Simple Network Management Protocol

Install and configure the Net- SNMP agent for Windows

This configuration guide describes the installation process of SNMP on Windows and Linux with the NetBorder Express Gateway.

OnCommand Performance Manager 1.1

How to simulate network devices using the Verax SNMP Simulator (Linux/Windows)

Red Hat System Administration 1(RH124) is Designed for IT Professionals who are new to Linux.

Using RADIUS Agent for Transparent User Identification

CRMS SNMP Software Overview

SNMP COMMAND SNMP SNMP [HELP] [COMMUNITY SYSCONTACT SYSLOCATION SYSNAME SYSOBJECID/OID TRAPS LIST]

SNMP Monitoring. The Sequel by Manuel Deschambault. Support Tool Architect Symbiotic System Design

Install Cacti Network Monitoring Tool on CentOS 6.4 / RHEL 6.4 / Scientific Linux 6.4

v7.8.2 Release Notes for Websense Content Gateway

How to configure Microsoft System Center Operations Manager (SCOM) 2012 R2 as SNMP trap receiver for VMware vcenter on MS Windows?

This watermark does not appear in the registered version - SNMP and OpenNMS. Part 1 SNMP.

Oracle Enterprise Manager. Description. Versions Supported. Prerequisites

Installing and Configuring the Intel Server Manager 8 SNMP Subagents. Intel Server Manager 8.40

Management, Logging and Troubleshooting

Network Monitoring & Management Introduction to SNMP

Avaya Aura Communication Manager SNMP Renewal Quick Reference Guide

Simple Network Management Protocol

Intuit QuickBooks Enterprise Solutions. Linux Database Server Manager Installation and Configuration Guide

Network Monitoring. Dhruba Raj Bhandari (CCNA) Manager Systems Soaltee Crowne Plaza Kathmandu NEPAL

SIMPLE NETWORK MANAGEMENT PROTOCOL (SNMP)

Introduction to Operating Systems

Websense Content Gateway v7.x: Troubleshooting

GroundWork Monitor Open Source Installation Guide

Oracle, the Oracle logo, Java, and MySQL are registered trademarks of the Oracle Corporation and/or its affiliates.

QuickBooks Enterprise Solutions. Linux Database Server Manager Installation and Configuration Guide

Kaseya 2. Quick Start Guide. for Network Monitor 4.1

Deploying the BIG-IP LTM with the Cacti Open Source Network Monitoring System

System Administration

EventSentry Overview. Part I About This Guide 1. Part II Overview 2. Part III Installation & Deployment 4. Part IV Monitoring Architecture 13

THE SNMP PROTOCOL THE SNMP REQUEST MIB SATELLAR 2DS/20DS SIMPLE NETWORK MANAGEMENT PROTOCOL SATELLAR MANAGEMENT WITH SNMP GET AND SET SMART RADIO

Remote Management. Vyatta System. REFERENCE GUIDE SSH Telnet Web GUI Access SNMP VYATTA, INC.

SNMP Adapter Installation and Configuration Guide

Network Management & Monitoring Introduction to SNMP

網 路 品 質 管 理 工 具 The Dude 簡 介

Vital Security Web Appliances NG-1100/NG-5100/NG How to Use Simple Network Management Protocol (SNMP) Monitoring

orrelog SNMP Trap Monitor Software Users Manual

User Service and Directory Agent: Configuration Best Practices and Troubleshooting

INASP: Effective Network Management Workshops

Oracle Enterprise Manager. Description. Platforms Supported. Versions Supported

Command Line Interface User Guide for Intel Server Management Software

Integrate Websense Web Security Gateway (WSG)

How To Set Up A Network Map In Linux On A Ubuntu 2.5 (Amd64) On A Raspberry Mobi) On An Ubuntu (Amd66) On Ubuntu 4.5 On A Windows Box

There are numerous ways to access monitors:

TECHNICAL NOTE. Technical Note P/N REV 03. EMC NetWorker Simplifying firewall port requirements with NSR tunnel Release 8.

Monitoring Clearswift Gateways with SCOM

Network Management & Monitoring Introduction to SNMP

Filtering remote users with Websense remote filtering software v7.6

Quick Start for Network Agent. 5-Step Quick Start. What is Network Agent?

Release Notes for McAfee(R) VirusScan(R) Enterprise for Linux Version Copyright (C) 2014 McAfee, Inc. All Rights Reserved.

vcenter Operations Management Pack for SAP HANA Installation and Configuration Guide

Cisco Setting Up PIX Syslog

NetSight Suite Installation

Configuring Dell OpenManage IT Assistant 8.0 to Monitor SNMP Traps Generated by VMware ESX Server

Tue Apr 19 11:03:19 PDT 2005 by Andrew Gristina thanks to Luca Deri and the ntop team

SNMP Test er Manual 2015 Paessler AG

How To Install Acronis Backup & Recovery 11.5 On A Linux Computer

Host Configuration (Linux)

SNMP Diagnostics. Albert Kagarmanov, Matthias Clausen (DESY)

Network Monitoring with SNMP

Network Monitoring with SNMP

How To Set Up Foglight Nms For A Proof Of Concept

Maintaining Non-Stop Services with Multi Layer Monitoring

TPAf KTl Pen source. System Monitoring. Zenoss Core 3.x Network and

File Transfer Examples. Running commands on other computers and transferring files between computers

Partek Flow Installation Guide

Avira AntiVir MailGate 3.2 Release Notes

User Manual. Onsight Management Suite Version 5.1. Another Innovation by Librestream

Managing Linux Servers with System Center 2012 R2

Basic Installation of the Cisco Collection Manager

Installing, Uninstalling, and Upgrading Service Monitor

Installing QuickBooks Enterprise Solutions Database Manager On Different Linux Servers

Log Correlation Engine 4.6 Quick Start Guide. January 25, 2016 (Revision 2)

Wavelink Avalanche Mobility Center Linux Reference Guide

MRTG used for Basic Server Monitoring

Volume SYSLOG JUNCTION. User s Guide. User s Guide

Configuring MailArchiva with Insight Server

Using the VCDS Application Monitoring Tool

Abstract. Microsoft Corporation Published: November 2011

How To Monitor A Network With Snmp (Network Monitoring)

NetIQ Sentinel Quick Start Guide

IBM Tivoli Composite Application Manager for Microsoft Applications: Microsoft Hyper-V Server Agent Version Fix Pack 2.

RPM Utility Software. User s Manual

Transcription:

Using SNMP with Content Gateway (not V-Series) Topic 60035 / Updated: 9-May-2011 Applies To: Websense Web Security Gateway 7.6.x Websense Web Security Gateway Anywhere 7.6.x Websense Content Gateway 7.6.x This article describes how to use Net-SNMP with software installations of Content Gateway (not V-Series appliances) to monitor Content Gateway processes. It assumes that the reader is familiar with SNMP. Note For information about using SNMP with V-Series appliances, see V-Series Appliance Manager online Help. If you are not familiar with SNMP, an introductory article can be found in Wikipedia. An essential resource and the location of Net-SNMP software is www.net-snmp.org. For documentation, go to: http://net-snmp.sourceforge.net/docs/man/. To use SNMP with Content Gateway you must: Install the Net-SNMP RPMs Configure snmpd.conf to monitor Content Gateway processes and send traps to the SNMP Manager Verify the configuration SNMP on the Content Gateway host system Websense Content Gateway version 7.6.x is typically installed on a minimal installation of:

Red Hat Enterprise Linux 5 series, update 3 or later, base or Advanced Platform (32-bit only) Note Installations on Red Hat Enterprise Linux 6 series are not supported. RPM compat-libstdc++-33-3.2.3-61.3.i386.rpm is also required. See the Content Gateway v7.6 Release Notes for a complete specification. The minimal installation does not include Net-SNMP. To see if Net-SNMP is installed on your system, on the command line run: rpm -qa grep snmp If SNMP is installed, you will see something like: net-snmp-libs-5.3.2.2-5.el5 net-snmp-5.3.2.2-5.el5 net-snmp-utils-5.3.2.2-5.el5 NOTE: SELinux should be disabled or in permissive mode when using Net-SNMP. To confirm its state, edit /etc/sysconfig/selinux and locate the SELINUX= variable. Installing Net-SNMP If Net-SNMP is not installed, install it now. The necessary RPMs are included with the Red Hat Enterprise Linux distribution media (disks or iso). For release 5, update 3, expect version 5.3.2.2-5.EL5.i386. The RPMs can also be downloaded from the Internet. To install Net-SNMP: 1. Place the following RPMs in a temporary directory: net-snmp-libs-5.3.2.2-5.el5.i386.rpm net-snmp-5.3.2.2-5.el5.i386.rpm net-snmp-utils-5.3.2.2-5.el5.i386.rpm 2. Install the RPMs with the following commands: rpm -ivh net-snmp-libs-5.3.2.2-5.el5.i386.rpm rpm -ivh net-snmp-5.3.2.2-5.el5.i386.rpm rpm -ivh net-snmp-utils-5.3.2.2-5.el5.i386.rpm After Net-SNMP is installed, it is important that you use up2date to get the latest Net-SNMP updates: up2date -f net-snmp-libs net-snmp net-snmp-utils

Starting and stopping the SNMP service After configuration is complete (see below) or any time it is necessary to start or stop the SNMP Agent service, use the following commands: [root]# service snmpd start [root]# service snmpd stop Basic SNMP configuration: For detailed configuration information, see the comments in /etc/snmp/snmpd.conf and read the man page for snmpd.conf(5). After initial installation, for security purposes the SNMP service (snmpd) responds only to queries on the system MIB. The following example shows how to configure snmpd.conf to change community names and open write access to the MIB tree. Edit /etc/snmp/snmpd.conf, locate the lines boxed in red in the screen capture below, and modify each line to match the example.

Configuring SNMP to monitor and report on Content Gateway processes To monitor Content Gateway processes, you must add the process names and MAX/ MIN process values to the Process checks section of snmpd.conf. You also need to add the v2 trap specification. Edit /etc/snmp/snmpd.conf and add the following lines in the Process checks area: proc content_cop 1 1 proc content_gateway 1 1 proc content_manager 1 1 proc DownloadService 1 1 proc microdasys 2 1 proc microdasysws 1 1 # send v2 traps trap2sink IP_address_of_SNMP_Manager:162 informsink IP_address_of_SNMP_Manager:162 rwuser all agentsecname all defaultmonitors yes If Websense Web filtering is also running on the Content Gateway machine and you want to monitor it, add: proc EIMServer 1 1 Verify SNMP configuration and trap reporting Verify that the SNMP Agent (snmpd) is sending process trap messages, and that the SNMP Manager is receiving them. snmptrapd is the process used by the SNMP Manager to listen for SNMP trap messages arriving on port 162 (default). A typical snmptrapd startup command might look like: snmptrapd -f -Ls 162 where -f means do not fork() from the calling shell, and -Ls specifies where logging output is sent ( -Ls sends output to syslog). 162 is the standard listening port for SNMP messages. For more detailed information, read the man page for snmptrapd. NOTE: The default trap reporting interval for Agents is 10 minutes. If the default period is used, it can take as long as 10 minutes from the time a trap occurs to when

the trap message is sent to the SNMP Manager. This parameter is configurable through the snmp set operation of mtetriggerfrequency. It can also be set in the snmpd.conf file for each expression with the -r FREQUENCY switch. See the man page for SNMPD.CONF. To verify that SNMP Agent is sending trap messages: 1. On the SNMP Agent/Content Gateway machine, start a network packet analyzer and terminate the DownloadService process. 2. In the packet capture data, look for an SNMPv2-Trap message for DownloadService going to the SNMP Manager. The trap message might be similar to: Value: STRING: Too few DownloadService running (# = 0) To verify that SNMP Manager is receiving trap messages: 1. On the SNMP Agent/Content Gateway machine, terminate the DownloadService process. Note that it may take several minutes from the time the trap occurs until the trap is sent to the SNMP Manager. 2. On the SNMP Manager machine, check the SNMP trap log for an entry for DownloadService. The name and location of the log file is specified in the snmptrapd startup command (example provided above). Here is one way to find the message if it is being logged in /var/log/messages: cat /var/log/messages grep DownloadService An entry might look like: Nov 25 15:09:42 localhost snmptrapd[11980]: 10.10.10.10]: Trap, DISPAN-EV = STRING, DISMAN-EVENT-MIB::mteHotOID = OID, DISMAN-EVENT-IB::prErrMessage.4 = STRING: Too few DownloadService running (# = 0) Grep for snmptrapd to see all log entries related to snmptrapd. Use nc (netcat) to test basic UDP connectivity between the Agent and the Manager. For example, this command could be run on either side of the connection to test the designated UDP ports. [root]# nc -u -v -z -w2 10.228.85.10 161-162 where -u indicates UPD, -v indicates verbose output, -z means to scan for listening daemons, and -w2 indicates to wait 2 seconds before timing out. Sample results: 10.228.85.10: inverse host lookup failed: Unknown host (UNKNOWN) [10.228.85.10] 161 (snmp) open For more information, see the man page for nc.

Monitoring Red Hat Enterprise Linux system status with SNMP snmpwalk is a query command that uses SNMP GETNEXT requests to retrieve tree values. The following are several examples of commands that return information about various aspects of system status. For more information, see the comments in snmpd.conf, the Linux man page for snmpd.conf, and www.net-snmp.org. For all system status information: or [root]# snmpwalk -v 1 -c public HOST-RESOURCES-MIB::hrSWRun [root]# snmpwalk -v 2c -c public HOST-RESOURCES-MIB::hrSWRun For system information including date and time, initialized devices, kernel parameters, and more: [root]# snmpwalk -v 1 -c public HOST-RESOURCES-MIB::hrSystem For memory size, disk space, usage status, and more: [root]# snmpwalk -v 1 -c public HOST-RESOURCES- MIB::hrStorage For device ID and descriptions: [root]# snmpwalk -v 1 -c public HOST-RESOURCES-MIB::hrDevice For process ID, process name, parameter, and status: [root]# snmpwalk -v 1 -c public HOST-RESOURCES-MIB::hrSWRun For CPU times and memory consumed by the process: [root]# snmpwalk -v 1 -c public HOST-RESOURCES- MIB::hrSWRunPerf For installed software package names: [root]# snmpwalk -v 1 -c public HOST-RESOURCES- MIB::hrSWInstalledName