<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: APIC SNMP engineID in DevNet Sandbox</title>
    <link>https://community.cisco.com/t5/devnet-sandbox/apic-snmp-engineid/m-p/3699681#M3033</link>
    <description>&lt;P&gt;Hi Nik,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We have issued the same problem. How did you resolve the issue ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Ahmed&lt;/P&gt;</description>
    <pubDate>Mon, 03 Sep 2018 11:07:46 GMT</pubDate>
    <dc:creator>Ahmed Boujelben</dc:creator>
    <dc:date>2018-09-03T11:07:46Z</dc:date>
    <item>
      <title>APIC SNMP engineID</title>
      <link>https://community.cisco.com/t5/devnet-sandbox/apic-snmp-engineid/m-p/3679189#M2959</link>
      <description>&lt;P&gt;Hi folks,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;for some reason my APIC does not reveal an SNMP engine ID:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;PRE&gt;apic1# show snmp summary &lt;BR /&gt;&lt;BR /&gt;Active Policy: SNMP-NAME, Admin State: enabled&lt;BR /&gt;&lt;BR /&gt;Local SNMP engineID: &lt;FONT color="#993300"&gt;&lt;STRONG&gt;[Hex] Not Found&lt;/STRONG&gt;&lt;/FONT&gt;&lt;BR /&gt;&lt;BR /&gt;----------------------------------------&lt;BR /&gt;Community Description &lt;BR /&gt;----------------------------------------&lt;BR /&gt;&lt;BR /&gt;------------------------------------------------------------&lt;BR /&gt;User Authentication Privacy &lt;BR /&gt;------------------------------------------------------------&lt;BR /&gt;PRTG hmac-sha1-96 aes-128 &lt;BR /&gt;&lt;BR /&gt;------------------------------------------------------------&lt;BR /&gt;Client-Group Mgmt-Epg Clients&lt;BR /&gt;------------------------------------------------------------&lt;BR /&gt;PRTG-SNMP default (Out-Of-Band) ###.###.###.###&lt;BR /&gt;&lt;BR /&gt;------------------------------------------------------------&lt;BR /&gt;Host Port Version Level SecName &lt;BR /&gt;------------------------------------------------------------&lt;BR /&gt;###.###.###.### 162 v2c noauth Public &lt;BR /&gt;###.###.###.### 162 v2c noauth WHATEVER &lt;/PRE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;SNMP ist configured and the fabric switches all have engine IDs...&lt;/P&gt;
&lt;P&gt;Only for the controller I can't find a way to configure one. Searching the web I found&amp;nbsp; a couple of screenshots and examples where the APIC&amp;nbsp;does indeed have an engine ID, so I guess mine is not supposed to be behaving&amp;nbsp;the way it does.&lt;/P&gt;
&lt;P&gt;What am I missing? Can I manually assign an ID somewhere? Shouldn't there be one by default?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Kind regards,&lt;BR /&gt;Nik&lt;/P&gt;</description>
      <pubDate>Tue, 04 Jun 2019 09:40:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/devnet-sandbox/apic-snmp-engineid/m-p/3679189#M2959</guid>
      <dc:creator>Nik Noltenius</dc:creator>
      <dc:date>2019-06-04T09:40:56Z</dc:date>
    </item>
    <item>
      <title>Re: APIC SNMP engineID</title>
      <link>https://community.cisco.com/t5/devnet-sandbox/apic-snmp-engineid/m-p/3699681#M3033</link>
      <description>&lt;P&gt;Hi Nik,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We have issued the same problem. How did you resolve the issue ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Ahmed&lt;/P&gt;</description>
      <pubDate>Mon, 03 Sep 2018 11:07:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/devnet-sandbox/apic-snmp-engineid/m-p/3699681#M3033</guid>
      <dc:creator>Ahmed Boujelben</dc:creator>
      <dc:date>2018-09-03T11:07:46Z</dc:date>
    </item>
    <item>
      <title>Re: APIC SNMP engineID</title>
      <link>https://community.cisco.com/t5/devnet-sandbox/apic-snmp-engineid/m-p/3700125#M3037</link>
      <description>&lt;P&gt;Hi Ahmed,&lt;/P&gt;
&lt;P&gt;unfortunately we haven't been able to resolve the issue yet. I will update the thread, if we ever find a solution...&lt;/P&gt;
&lt;P&gt;Regards,&lt;BR /&gt;Nik&lt;/P&gt;</description>
      <pubDate>Tue, 04 Sep 2018 06:34:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/devnet-sandbox/apic-snmp-engineid/m-p/3700125#M3037</guid>
      <dc:creator>Nik Noltenius</dc:creator>
      <dc:date>2018-09-04T06:34:11Z</dc:date>
    </item>
    <item>
      <title>Re: APIC SNMP engineID</title>
      <link>https://community.cisco.com/t5/devnet-sandbox/apic-snmp-engineid/m-p/3703736#M3048</link>
      <description>&lt;P&gt;Hi Ahmed,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I wouldn't call it a solution per se, but we figured out, that the APICs generate an engine ID as soon as a community policy is configured under the SNMP policy.&lt;/P&gt;
&lt;P&gt;We are only using SNMPv3 so from my understanding we wouldn't have required a community, but apparently it is a way to have an engine ID for the APICs. I'm not sure if there are any side-effects, though.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards,&lt;BR /&gt;Nik&lt;/P&gt;</description>
      <pubDate>Mon, 10 Sep 2018 07:03:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/devnet-sandbox/apic-snmp-engineid/m-p/3703736#M3048</guid>
      <dc:creator>Nik Noltenius</dc:creator>
      <dc:date>2018-09-10T07:03:03Z</dc:date>
    </item>
    <item>
      <title>Re: APIC SNMP engineID</title>
      <link>https://community.cisco.com/t5/devnet-sandbox/apic-snmp-engineid/m-p/3704835#M3055</link>
      <description>&lt;P&gt;Sorry to answer my own question but maybe it'll be helpful to others.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So, as I already stated in an answer below the first thing one can do to get the SNMP engine ID on an APIC to show up is configure a Community Policy under the SNMP policy. This feels kind of counter-intuitive if one is using SNMPv3 but hey, it works.&lt;/P&gt;
&lt;P&gt;However this does not mean, the APIC won't use an engine ID without a community. As a matter of fact, packet captures show that the APIC does indeed send it's engine ID in SNMP reports even if the community is not configured. It just doesn't show up in the CLI which is kind of unexpected.&lt;/P&gt;
&lt;P&gt;This is also TAC-confirmed behavior. They said, SNMP simply works differently on the APICs than on the leaf and spine switches thus there are differences in the output as well. - Fine, I don't have to understand that but I definitely can live with it.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;tl;dr&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;Configure a community and "show snmp engineid" will reveal the ID on the APIC&lt;/P&gt;
&lt;P&gt;Leave the community or delete it, the engine ID stays the same and is sent in messages even if it's not presented in the output of aforementioned CLI command any more.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Kind regards,&lt;/P&gt;
&lt;P&gt;Nik&lt;/P&gt;</description>
      <pubDate>Tue, 11 Sep 2018 13:51:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/devnet-sandbox/apic-snmp-engineid/m-p/3704835#M3055</guid>
      <dc:creator>Nik Noltenius</dc:creator>
      <dc:date>2018-09-11T13:51:34Z</dc:date>
    </item>
  </channel>
</rss>

