SNMP Monitoring: One Critical Component to Network Management



Similar documents
Deploying Probes and Analyzers in an Enterprise Environment

Observer Probe Family

Extending Network Visibility by Leveraging NetFlow and sflow Technologies

Observer Reporting Server Sample Executive Reports

Best Practices in Gigabit Capture

Observer Probe Family

Analyzing Full-Duplex Networks

Network Management and Monitoring Software

Monitoring Service Delivery in an MPLS Environment

Using RMON to Manage Remote Networks Gilbert Held

Intelligent Network Monitoring for Your LAN, WAN and ATM Network

RMON, the New SNMP Remote Monitoring Standard Nathan J. Muller

Network Instruments white paper

Observer Analysis Advantages

Best Practices for NetFlow/IPFIX Analysis and Reporting

SolarWinds Network Performance Monitor

Auditing the LAN with Network Discovery

Extending Network Visibility by Leveraging NetFlow and sflow Technologies

OptiView. Total integration Total control Total Network SuperVision. Network Analysis Solution. No one knows the value of an

Chapter 18. Network Management Basics

RUGGEDCOM NMS. Monitor Availability Quick detection of network failures at the port and

OptiView. Total integration Total control Total Network SuperVision. Network Analysis Solution. No one knows the value of an

SOLARWINDS NETWORK PERFORMANCE MONITOR

Network Management & Security (CS 330) RMON

SolarWinds Network Performance Monitor powerful network fault & availabilty management

SolarWinds Network Performance Monitor

Datasheet: Visual Performance Manager and TruView Advanced MPLS Package with VoIPIntegrity (SKU 01923)

Gaining Operational Efficiencies with the Enterasys S-Series

Cisco Network Analysis Module Software 4.0

Cover. White Paper. (nchronos 4.1)

Cisco Performance Visibility Manager 1.0.1

ENC Enterprise Network Center. Intuitive, Real-time Monitoring and Management of Distributed Devices. Benefits. Access anytime, anywhere

Observer Analyzer Provides In-Depth Management

Latency Analyzer (LANZ)

Configuring and Managing Token Ring Switches Using Cisco s Network Management Products

WHITE PAPER OCTOBER CA Unified Infrastructure Management for Networks

WHITE PAPER September CA Nimsoft For Network Monitoring

Network performance and capacity planning: Techniques for an e-business world

White Paper. The Ten Features Your Web Application Monitoring Software Must Have. Executive Summary

Cisco Bandwidth Quality Manager 3.1


Troubleshooting an Enterprise Network

Section 11.1, Simple Network Management Protocol. Section 11.2, Port Data Capture

Focused Vendor Module Avaya Aura Communication Manager (ACM)

Network Security Forensics

ALCATEL-LUCENT VITALSUITE Application & Network Performance Management Software

Troubleshooting LANs with Network Statistics Analysis

Diagnosing the cause of poor application performance

Monitoring and Managing Network Application Performance

Traffic Analysis With Netflow. The Key to Network Visibility

A Guide to Understanding SNMP

SolarWinds Certified Professional. Exam Preparation Guide

Traffic Analysis with Netflow The Key to Network Visibility

Network Troubleshooting with the LinkView Classic Network Analyzer

Top-Down Network Design

OpManager MSP Edition

ICND2 NetFlow. Question 1. What are the benefit of using Netflow? (Choose three) A. Network, Application & User Monitoring. B.

Remote Network Monitoring Software for Managed Services Providers

CA NSM System Monitoring. Option for OpenVMS r3.2. Benefits. The CA Advantage. Overview

Kaseya Traverse. Kaseya Product Brief. Predictive SLA Management and Monitoring. Kaseya Traverse. Service Containers and Views

Network change is constant: Configuration and compliance management can help

Managing Central Monitoring in Distributed Systems

Cisco Discovery 3: Introducing Routing and Switching in the Enterprise hours teaching time

Achieving Service Quality and Availability Using Cisco Unified Communications Management Suite

Empirix OneSight for VoIP: Avaya Aura Communication Manager

PROACTIVE PERFORMANCE MANAGEMENT

QuickSpecs. HP PCM Plus v4 Network Management Software Series (Retired) Key features

Delivering actionable service knowledge

Nimsoft for Network Monitoring. A Nimsoft Service Level Management Solution White Paper

Choosing Application Performance Management (APM) Tools

Network Management System (NMS) FAQ

How Much Broadcast and Multicast Traffic Should I Allow in My Network?

Beyond Monitoring Root-Cause Analysis

A FAULT MANAGEMENT WHITEPAPER

Cisco Prime Virtual Network Analysis Module

How To Configure Rmon On Cisco Me 2600X On Ios 2.5A (Cisco) With A Network Monitor On A Network Device (Network) On A Pnet (Network Monitor) On An Ip

ehealth and VoIP Overview

Motorola AirDefense Network Assurance Solution. Improve WLAN reliability and reduce management cost

Traffic Monitoring in a Switched Environment

Introduction to Network Management

Troubleshooting and Maintaining Cisco IP Networks Volume 1

Using ODVA Common Industrial Protocol to Enhance Performance White Paper

mbits Network Operations Centrec

pc resource monitoring and performance advisor

Wireless Network Analysis. Complete Network Monitoring and Analysis for a/b/g/n

Cisco Network Analysis Modules (NAM) Tutorial

Network Monitoring Comparison

Transcription:

Network Instruments White Paper SNMP Monitoring: One Critical Component to Network Management Although SNMP agents provide essential information for effective network monitoring and troubleshooting, SNMP alone does not provide all the information you need to stay on top of your network. For comprehensive analysis of many issues, a network analyzer with packet capture capabilities is required as well. This white paper describes how SNMP works, the advantages of SNMP monitoring, and how SNMP continues to remain a critical part of a complete network analysis solution. www.networkinstruments.com

Overview SNMP (Simple Network Management Protocol) is the common language of network monitoring it is integrated into most network infrastructure devices today, and many network management tools include the ability to pull and receive SNMP information. SNMP extends network visibility into network-attached devices by providing data collection services useful to any administrator. These devices include switches and routers as well as servers and printers. The following information is designed to give the reader a general understanding of what SNMP is, the benefits of SNMP, and the proper usage of SNMP as part of a complete network monitoring and management solution. What is SNMP? The Simple Network Management Protocol (SNMP) is a standard application layer protocol (defined by RFC 1157) that allows a management station (the software that collects SNMP information) to poll agents running on network devices for specific pieces of information. What the agents report is dependent on the device. For example, if the agent is running on a server, it might report the server s processor utilization and memory usage. If the agent is running on a router, it could report statistics such as interface utilization, priority queue levels, congestion notifications, environmental factors (i.e. fans are running, heat is acceptable), and interface status. All SNMP-compliant devices include a specific text file called a Management Information Base (MIB). A MIB is a collection of hierarchically organized information that defines what specific data can be collected from that particular device. SNMP is the protocol used to access the information on the device the MIB describes. MIB compilers convert these text-based MIB modules into a format usable by SNMP management stations. With this information, the SNMP management station queries the device using different commands to obtain device-specific information. There are three principal commands that an SNMP management station uses to obtain information from an SNMP agent: 1. The get command collects statistics on SNMP devices. 2. The set command changes the values of variables stored within the device. 3. The trap command reports on unusual events that occur on the SNMP device. The SNMP management console reviews and analyzes the different variables maintained by that device to report on device uptime, bandwidth utilization, and other network details. Why use SNMP? SNMP delivers management information in a common, non-proprietary manner, making it easy for an administrator to manage devices from different vendors using the same tools and interface. Its power is in the fact that it is a standard: one SNMP-compliant management station can communicate with agents from multiple vendors, and do so simultaneously. Illustration 1 shows a sample SNMP management station screen displaying key network statistics. Another advantage of SNMP is in the type of data that can be acquired. For example, when using a protocol analyzer to monitor network traffic from a switch's SPAN or mirror port, physical layer errors are invisible. This is because switches do not forward error packets to either the original destination port or to the analysis port. However, the switch maintains a count of the discarded error frames and this counter can be retrieved via an SNMP query. 1

Sample SNMP management station showing utilization on an SNMP device Where should you use SNMP? SNMP can be used in any environment where constant monitoring of key devices is required. Many SNMP management stations offer long-term reporting capabilities, allowing an administrator to watch network trends develop over time and to take appropriate action before problems can seriously affect users. Illustration 2 shows a sample report illustrating maximum, minimum and average router utilization. Triggered notifications are also available from many SNMP management stations. Notifications allow the administrator to receive an e-mail or page if certain user-defined thresholds have been exceeded, such as maximum port utilization. Sample SNMP Report showing Router Utilization Switch Port Router Utilization average utilization over time average utilization by time slice lowest and highest utilization for the given time slice on that port 2

What is missing from SNMP? While SNMP provides excellent statistics on the macro level, it does not provide the level of detail that is often required to completely resolve many network issues. For example, while SNMP may show high utilization on the router s Internet interface, it may not show what kinds of traffic are using up the bandwidth or who is responsible for the traffic. This leaves the administrator knowing what the problem is (high bandwidth consumption to the Internet), but not knowing the cause, and therefore, lacking the ability to quickly resolve the issue. Illustration 3 shows how a network analyzer s Top Talkers view with detailed analysis capabilities can assist in in-depth problem solving scenarios. By reviewing the network s Top Talkers (who is causing the traffic), the network administrator can isolate the cause of the excessive utilization and take steps to resolve the issue. This deeper level of detail is not found inside an SNMP management console. However a network analyzer with SNMP management capability can offer the full view of the fundamental network issue. Network analyzer console showing network Top Talkers SNMP A Component of Total Network Management Make no mistake-snmp monitoring should be a part of any network management solution. But effective administration of enterprise networks requires more than SNMP management. Only a comprehensive network analyzer can deliver both in-depth analysis along with the ability to manage and view statistics from SNMPcompliant devices. When selecting a network analyzer, choose a solution that provides full network coverage for multi-vendor hardware networks including a console for SNMP devices anywhere on your LAN or WAN. Also, look for a solution that includes a network mapping program that can help you visualize the network by continually monitoring and displaying device and route statuses. In addition, the network analyzer should report information about services running on the primary devices. This information is important to an administrator of a single site, and invaluable to an administrator who is responsible for multiple sites. Often, the network mapping program is integrated with the SNMP management station, allowing the two systems to share information. This is accomplished by using the network mapping tool as a first step, SNMP as a high-level drill down, and finally a network analyzer for deeper level statistics and information. A comprehensive network analyzer also includes a packet decoding and analysis tool. Providing the additional depth that SNMP management lacks, a network analyzer allows you to look beyond simple statistics into the actual frames being transmitted across the network. While network analyzers vary greatly in their feature sets, some of the primary functions you should look for in addition to packet capture and decode is some form of Expert analysis for advanced problem identification and resolution, long-term reporting capabilities, and triggered notifications. These features can provide ongoing insight into the day-to-day operations of the network, at a level beyond the scope of SNMP. Figure 1 is a checklist designed for any network administrator to review when choosing a comprehensive network management solution. 3

Conclusion SNMP management provides valuable insight to any network administrator who requires complete visibility into the network, and it acts as a primary component of a complete management solution. However, SNMP was never intended as a comprehensive network monitoring solution. It therefore must be complimented by a complete suite of network monitoring and management tools. You should not have to choose whether you want to review network traffic or network devices. For complete visibility, choose a solution that provides both. When shopping for the right network analyzer for your network, consider a comprehensive solution for complete coverage. Network Management Solution Checklist Capabilities to look for when choosing a network management solution Network Coverage LAN support WAN support Gigabit support Wireless support VoIP analysis VLAN analysis Device Management Ability to optimize and manage SNMP-compliant devices Remote console for SNMP devices RMON management Support for multi-vendor hardware networks Report on services running Distributed Analysis Local and remote visibility Remote collection and analysis capabilities Multiple remote probe access Network Mapping Continuously monitor for device and route uptime Ability to build network maps Network Statistics Real-time statistics Network utilization Application-level statistics Access point statistics Protocol Analysis Packet capture Packet decode Remote real-time capture and decode capability Filtering capabilities Data-mining options Post-capture filters Fault Analysis Real-time Expert system Monitor for pre-defined Expert events Comprehensive list of Expert conditions Ability to custom design Expert conditions Proactive Network Management Pre-defined alarms User-defined or customizable alarms Multiple alarm options (e-mail, page, trouble ticket, log, etc.) What-if analysis Trending and Reporting Long-term capability Ability to save data, not just reports Web publishing option Modeling Corporate Headquarters Network Instruments, LLC 8800 West Highway Seven Fourth Floor Minneapolis, MN 55426 USA toll free (800) 526-7919 telephone (952) 932-9899 fax (952) 932-9545 www.networkinstruments.com European Office Network Instruments 7 Old Yard Rectory Lane Brasted, Westerham Kent TN16 1JP United Kingdom telephone +44 (0) 1959 569880 fax +44 (0) 1959 569881 www.networkinstruments.co.uk France, Italy and Spain Network Instruments 1 rue du 19 janvier 92380 Garches Paris France telephone +33 (0) 1 47 10 95 21 fax +33 (0) 1 47 10 95 19 www.networkinstruments.fr Germany Network Instruments Allacherstr. 189a 80997 München Germany telephone +49 (0)89 159 842-48 fax +49 (0)89 159 842-49 www.networkinstruments.de 2005 Network Instruments, LLC. All rights reserved. Network Instruments and the Network Instruments logo are trademarks or registered trademarks of Network Instruments, LLC. 4