SNMP
SNMP is a discovery technology that works by using an agentless discovery device which has the SNMP configuration applied. The configuration comprises of the credentials, port, retries and time to wait for response. The agent sends out SNMP GET queries using Object Identifiers (OIDs) to devices based on previously discovered device IP address information. OIDs uniquely identify managed objects in a MIB hierarchy defined by an organization or vendor. Ivanti Neurons SNMP queries a default list of OIDs, which you can add to in the Custom OIDs section.
- System Description (1.3.6.1.2.1.1.1.0)
- System SmiEnterprise (1.3.6.1.2.1.1.2.0)
- System Contact (1.3.6.1.2.1.1.4.0)
- System Name (1.3.6.1.2.1.1.5.0)
- System Location (1.3.6.1.2.1.1.6.0)
- System Services (1.3.6.1.2.1.1.7.0)
- Subnet Mask (1.3.6.1.2.1.4.20.1.3. +IP)
- System MAC Address Instance (1.3.6.1.2.1.4.20.1.2. +IP)
- System MAC Address (1.3.6.1.2.1.2.2.1.6. +MAC Address Instance Value)
- Entity Physical Description (1.3.6.1.2.1.47.1.1.1.1.2.1)
- Entity Physical Serial Number (1.3.6.1.2.1.47.1.1.1.1.11.1)
- Printer General Printer Name (1.3.6.1.2.1.43.5.1.1.16.1)
- Printer General Serial Number (1.3.6.1.2.1.43.5.1.1.17.1)
For further information on Object Identifiers (OIDs) see http://oid-info.com/
- Credentials
- From the drop-down list, select the credential to be used for SNMP communication.
- Click Add to add the credential to the list.
- Select and Add more credentials to continue to build up the list, as required. If the first credential fails, the next will be attempted, and so on, in order of the list.
- Use the arrow buttons to change the order of priority of the credentials.
- From the drop-down list, select Create New Credential.
The New Credential panel appears. - SNMP Version: Select the version of SNMP communication, the version you select determines the fields that must be completed on the next step.
- Version 3 : allows communication for authentication (MD5 or SHA) and privacy (DES or AES128). Depending on the security level selected for authentication and privacy you will need to enter all or some of the following data; a name for the set of credentials, an optional description, the username, authentication type and password, and privacy type and password.
- Version 1 or 2c: uses community strings for authentication to obtain information from SNMP enabled devices. You will need the following data; a name for the set of credentials. an optional description, and a community string.
- Version 3 : allows communication for authentication (MD5 or SHA) and privacy (DES or AES128). Depending on the security level selected for authentication and privacy you will need to enter all or some of the following data; a name for the set of credentials, an optional description, the username, authentication type and password, and privacy type and password.
- Click Next. Follow Step 4; a or b depending on which SNMP Version you selected.
- a. Version 3 selected: Security Level: Select the security level for the SNMP communication.
- authPriv: Select for communication with Authentication (MD5 or SHA) and Privacy (DES or AES128).
- authNoPriv: Select for communication with Authentication (MD5 or SHA) but without Privacy.
- noAuthNoPriv: Select for communication without Authentication and Privacy.
Click Next. Complete the credential fields:
- Name: Enter the name for the credentials.
- Description: Enter an optional description for the credentials.
- Username: Enter the username.
- Authentication Type: Select the authentication type; MD5 or SHA (only applicable for security levels; authPriv or authNoPriv).
- Authentication Password: Enter the authentication password (only applicable for security levels; authPriv or authNoPriv).
- Privacy Type: Select the privacy type; DES or AES128 (only applicable for security level; authPriv).
- Password Privacy: Enter the privacy password (only applicable for security level; authPriv).
b. Version 1 or 2c selected: Complete the credential fields:
- Name: Enter the name for the credentials.
- Description: Enter an optional description for the credentials.
- Community String: Enter the community string.
- Click Submit.
The newly created credential is added to the list. - The credentials are attempted in the order in which they are listed. Use the arrows to change the priority order of the list.
- Port: Enter the UDP port number, the default is 161.
- Retries: Enter the number of retry attempts. The default is 3, the maximum is 5.
- Wait for response (seconds): Enter the number of seconds to wait before retrying. The default is 2.
If the SNMP discovery fails it will automatically retry again every 24 hours.
- Custom OIDs
- In the Custom OIDs section, select Add.
The Add Custom OID panel appears. - Enter the Name for the OID.
- Enter the OID, using the format 1.3.6.1.2.1.1.3.0
- Enter a Description for the OID.
- Click OK to save the new OID.
The OID entry displays in the Custom OIDs grid. - Click Save on the Discovery Settings page to save any changes.
- In the Custom OIDs section, locate the OID Name that you want to add a OID to.
- Select the ellipsis to display the drop-down menu.
- From the drop-down menu, select Insert.
The Insert Custom OID panel appears. - Enter the OID, using the format 1.3.6.1.2.1.1.3.0
- Enter a Description for the OID.
- Click OK to save the additional OID. The additional OID displays in the grid, under the Custom OID Name.
- Click Save on the Discovery Settings page to save any changes.
- In the Custom OIDs section, locate the OID Name.
- Expand the Name by selecting the arrow .
- Locate the OID you want to edit, select the ellipsis to display the drop-down menu.
- From the drop-down menu, select Edit.
- In the Edit Custom OID panel, edit the Name, OID, or Description.
- Select OK to save the edits and close the panel.
- Select Save on the Discovery Settings page to save any changes.
Add custom Object Identifiers (OIDs) to retrieve unique device data.
Example: Add a single custom OID NameSerial Number and add multiple additional OIDs for different vendor serial number OIDs, such as Cisco, Juniper. The results will then retrieve data per device under the one name Serial Number.
The scan results can be seen in Devices: Ivanti Neurons Platform > Devices > Device > Details.
The Ivanti Neurons Agent must successfully check-in before these settings, or any changes you have made, will take effect.