[prev in list] [next in list] [prev in thread] [next in thread] 

List:       opennms-discuss
Subject:    Re: [opennms-discuss] SNMP traps via Minion not working
From:       Marc Doesburg <doesburg107 () gmail ! com>
Date:       2018-02-13 19:04:00
Message-ID: CAE_XvpZFYvDppaH7OoO9FFwhfxku9u2W-5=u5iLxNueXND_ezg () mail ! gmail ! com
[Download RAW message or body]

[Attachment #2 (multipart/alternative)]


COOL!!! Thanks!!!

Would have been nice if that was in the manual instead of the firewalld
"crap"  :-) Would have saved me a few hours trying to get that to work :-)

Thanks again!

On Tue, Feb 13, 2018 at 5:35 PM, Dino Yancey <dino2gnt+opennms@gmail.com>
wrote:

> Hi,
>
> I (and others) have had the exact same experience.  @mobius in
> chat.opennms.com suggested to create an
> /opt/minion/etc/org.opennms.netmgt.trapd.cfg containing:
>
> trapd.listen.port = 162
> trapd.listen.interface = 0.0.0.0
>
>
> ...and then restarting the minion, to instead bind it directly to 162
> and bypassing all the firewalld / iptables BS.
>
> It worked for me.
>
> Dino
>
> On Tue, Feb 13, 2018 at 4:31 AM, Marc Doesburg <doesburg107@gmail.com>
> wrote:
> > Hello All,
> >
> >
> >
> > I'm having trouble setting up SNMP traps using Minion.
> >
> >
> >
> > The Minion is setup and OpenNMS can query SNMP and is able to get the
> SNMP
> > information out of the systems that are monitored.
> >
> >
> >
> > The problem is that the Minion doesn't seem to get the SNMP traps on
> > 127.0.0.1:1162. When I tcpdump the ens160 interface (Centos7) I can see
> the
> > traps coming in on port 162. But when I do a tcpdump of the lo interface
> I
> > do not see any data coming in on port 1162.
> >
> >
> >
> > The Minion (Java) is listening on port 1162 and firewalld rules are
> setup:
> >
> >
> >
> > public (active)
> >
> >   target: default
> >
> >   icmp-block-inversion: no
> >
> >   interfaces: ens160
> >
> >   sources:
> >
> >   services: dhcpv6-client ssh
> >
> >   ports: 514/tcp 162/udp 514/udp 162/tcp
> >
> >   protocols:
> >
> >   masquerade: yes
> >
> >   forward-ports: port=514:proto=udp:toport=1514:toaddr=127.0.0.1
> >
> >         port=162:proto=udp:toport=1162:toaddr=127.0.0.1
> >
> >         port=514:proto=tcp:toport=1514:toaddr=127.0.0.1
> >
> >         port=162:proto=tcp:toport=1162:toaddr=127.0.0.1
> >
> >   source-ports:
> >
> >   icmp-blocks:
> >
> >   rich rules:
> >
> >
> >
> > I even tried to setup firewalld on lo but that doesn't work either:
> >
> >
> >
> > trusted (active)
> >
> >   target: ACCEPT
> >
> >   icmp-block-inversion: no
> >
> >   interfaces: lo
> >
> >   sources:
> >
> >   services:
> >
> >   ports: 1162/udp 1162/tcp 1514/udp 1514/tcp
> >
> >   protocols:
> >
> >   masquerade: no
> >
> >   forward-ports:
> >
> >   source-ports:
> >
> >   icmp-blocks:
> >
> >   rich rules:
> >
> >
> >
> > I think it's an CentOS issue somewhere... But I just can't find the
> > problem...
> >
> >
> >
> > If someone can help me with this it would be awesome!
> >
> >
> >
> > Best regards,
> >
> > --
> >
> > Marc D.
> >
> > Real is just a matter of perception
> >
> >
> > ------------------------------------------------------------
> ------------------
> > Check out the vibrant tech community on one of the world's most
> > engaging tech sites, Slashdot.org! http://sdm.link/slashdot
> > _______________________________________________
> > Please read the OpenNMS Mailing List FAQ:
> > http://www.opennms.org/index.php/Mailing_List_FAQ
> >
> > opennms-discuss mailing list
> >
> > To *unsubscribe* or change your subscription options, see the bottom of
> this
> > page:
> > https://lists.sourceforge.net/lists/listinfo/opennms-discuss
>
> ------------------------------------------------------------
> ------------------
> Check out the vibrant tech community on one of the world's most
> engaging tech sites, Slashdot.org! http://sdm.link/slashdot
> _______________________________________________
> Please read the OpenNMS Mailing List FAQ:
> http://www.opennms.org/index.php/Mailing_List_FAQ
>
> opennms-discuss mailing list
>
> To *unsubscribe* or change your subscription options, see the bottom of
> this page:
> https://lists.sourceforge.net/lists/listinfo/opennms-discuss
>



-- 
Marc D.

Real is just a matter of perception

[Attachment #5 (text/html)]

<div dir="ltr">COOL!!! Thanks!!!<div><br></div><div>Would have been nice if that was \
in the manual instead of the firewalld &quot;crap&quot;   :-) Would have saved me a \
few hours trying to get that to work :-)</div><div><br></div><div>Thanks \
again!</div></div><div class="gmail_extra"><br><div class="gmail_quote">On Tue, Feb \
13, 2018 at 5:35 PM, Dino Yancey <span dir="ltr">&lt;<a \
href="mailto:dino2gnt+opennms@gmail.com" \
target="_blank">dino2gnt+opennms@gmail.com</a>&gt;</span> wrote:<br><blockquote \
class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc \
solid;padding-left:1ex">Hi,<br> <br>
I (and others) have had the exact same experience.   @mobius in<br>
<a href="http://chat.opennms.com" rel="noreferrer" \
                target="_blank">chat.opennms.com</a> suggested to create an<br>
/opt/minion/etc/org.opennms.<wbr>netmgt.trapd.cfg containing:<br>
<br>
trapd.listen.port = 162<br>
trapd.listen.interface = 0.0.0.0<br>
<br>
<br>
...and then restarting the minion, to instead bind it directly to 162<br>
and bypassing all the firewalld / iptables BS.<br>
<br>
It worked for me.<br>
<br>
Dino<br>
<div><div class="h5"><br>
On Tue, Feb 13, 2018 at 4:31 AM, Marc Doesburg &lt;<a \
href="mailto:doesburg107@gmail.com">doesburg107@gmail.com</a>&gt; wrote:<br> &gt; \
Hello All,<br> &gt;<br>
&gt;<br>
&gt;<br>
&gt; I&#39;m having trouble setting up SNMP traps using Minion.<br>
&gt;<br>
&gt;<br>
&gt;<br>
&gt; The Minion is setup and OpenNMS can query SNMP and is able to get the SNMP<br>
&gt; information out of the systems that are monitored.<br>
&gt;<br>
&gt;<br>
&gt;<br>
&gt; The problem is that the Minion doesn&#39;t seem to get the SNMP traps on<br>
&gt; <a href="http://127.0.0.1:1162" rel="noreferrer" \
target="_blank">127.0.0.1:1162</a>. When I tcpdump the ens160 interface (Centos7) I \
can see the<br> &gt; traps coming in on port 162. But when I do a tcpdump of the lo \
interface I<br> &gt; do not see any data coming in on port 1162.<br>
&gt;<br>
&gt;<br>
&gt;<br>
&gt; The Minion (Java) is listening on port 1162 and firewalld rules are setup:<br>
&gt;<br>
&gt;<br>
&gt;<br>
&gt; public (active)<br>
&gt;<br>
&gt;     target: default<br>
&gt;<br>
&gt;     icmp-block-inversion: no<br>
&gt;<br>
&gt;     interfaces: ens160<br>
&gt;<br>
&gt;     sources:<br>
&gt;<br>
&gt;     services: dhcpv6-client ssh<br>
&gt;<br>
&gt;     ports: 514/tcp 162/udp 514/udp 162/tcp<br>
&gt;<br>
&gt;     protocols:<br>
&gt;<br>
&gt;     masquerade: yes<br>
&gt;<br>
&gt;     forward-ports: port=514:proto=udp:toport=<wbr>1514:toaddr=127.0.0.1<br>
&gt;<br>
&gt;              port=162:proto=udp:toport=<wbr>1162:toaddr=127.0.0.1<br>
&gt;<br>
&gt;              port=514:proto=tcp:toport=<wbr>1514:toaddr=127.0.0.1<br>
&gt;<br>
&gt;              port=162:proto=tcp:toport=<wbr>1162:toaddr=127.0.0.1<br>
&gt;<br>
&gt;     source-ports:<br>
&gt;<br>
&gt;     icmp-blocks:<br>
&gt;<br>
&gt;     rich rules:<br>
&gt;<br>
&gt;<br>
&gt;<br>
&gt; I even tried to setup firewalld on lo but that doesn&#39;t work either:<br>
&gt;<br>
&gt;<br>
&gt;<br>
&gt; trusted (active)<br>
&gt;<br>
&gt;     target: ACCEPT<br>
&gt;<br>
&gt;     icmp-block-inversion: no<br>
&gt;<br>
&gt;     interfaces: lo<br>
&gt;<br>
&gt;     sources:<br>
&gt;<br>
&gt;     services:<br>
&gt;<br>
&gt;     ports: 1162/udp 1162/tcp 1514/udp 1514/tcp<br>
&gt;<br>
&gt;     protocols:<br>
&gt;<br>
&gt;     masquerade: no<br>
&gt;<br>
&gt;     forward-ports:<br>
&gt;<br>
&gt;     source-ports:<br>
&gt;<br>
&gt;     icmp-blocks:<br>
&gt;<br>
&gt;     rich rules:<br>
&gt;<br>
&gt;<br>
&gt;<br>
&gt; I think it&#39;s an CentOS issue somewhere... But I just can&#39;t find the<br>
&gt; problem...<br>
&gt;<br>
&gt;<br>
&gt;<br>
&gt; If someone can help me with this it would be awesome!<br>
&gt;<br>
&gt;<br>
&gt;<br>
&gt; Best regards,<br>
&gt;<br>
&gt; --<br>
&gt;<br>
&gt; Marc D.<br>
&gt;<br>
&gt; Real is just a matter of perception<br>
&gt;<br>
&gt;<br>
</div></div>&gt; ------------------------------<wbr>------------------------------<wbr>------------------<br>
 &gt; Check out the vibrant tech community on one of the world&#39;s most<br>
&gt; engaging tech sites, Slashdot.org! <a href="http://sdm.link/slashdot" \
rel="noreferrer" target="_blank">http://sdm.link/slashdot</a><br> &gt; \
______________________________<wbr>_________________<br> &gt; Please read the OpenNMS \
Mailing List FAQ:<br> &gt; <a \
href="http://www.opennms.org/index.php/Mailing_List_FAQ" rel="noreferrer" \
target="_blank">http://www.opennms.org/index.<wbr>php/Mailing_List_FAQ</a><br> \
&gt;<br> &gt; opennms-discuss mailing list<br>
&gt;<br>
&gt; To *unsubscribe* or change your subscription options, see the bottom of this<br>
&gt; page:<br>
&gt; <a href="https://lists.sourceforge.net/lists/listinfo/opennms-discuss" \
rel="noreferrer" target="_blank">https://lists.sourceforge.net/<wbr>lists/listinfo/opennms-discuss</a><br>
 <br>
------------------------------<wbr>------------------------------<wbr>------------------<br>
 Check out the vibrant tech community on one of the world&#39;s most<br>
engaging tech sites, Slashdot.org! <a href="http://sdm.link/slashdot" \
rel="noreferrer" target="_blank">http://sdm.link/slashdot</a><br> \
______________________________<wbr>_________________<br> Please read the OpenNMS \
Mailing List FAQ:<br> <a href="http://www.opennms.org/index.php/Mailing_List_FAQ" \
rel="noreferrer" target="_blank">http://www.opennms.org/index.<wbr>php/Mailing_List_FAQ</a><br>
 <br>
opennms-discuss mailing list<br>
<br>
To *unsubscribe* or change your subscription options, see the bottom of this \
page:<br> <a href="https://lists.sourceforge.net/lists/listinfo/opennms-discuss" \
rel="noreferrer" target="_blank">https://lists.sourceforge.net/<wbr>lists/listinfo/opennms-discuss</a><br>
 </blockquote></div><br><br clear="all"><div><br></div>-- <br><div \
class="gmail_signature" data-smartmail="gmail_signature"><div>Marc D.<br><br>Real is \
just a matter of perception</div> <div>  </div></div>
</div>



------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot

_______________________________________________
Please read the OpenNMS Mailing List FAQ:
http://www.opennms.org/index.php/Mailing_List_FAQ

opennms-discuss mailing list

To *unsubscribe* or change your subscription options, see the bottom of this page:
https://lists.sourceforge.net/lists/listinfo/opennms-discuss

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic