11-12-2018 03:05 AM - edited 03-01-2019 05:41 AM
Hello,
I'm trying to configure SNMP for ACI on APIC controller.
I have done all the configs but I still see the SNMP engine is not running.
=====================================================================
ACI-APIC01# show snmp summary
Active Policy: ACISNMPv3, Admin State: enabled
Local SNMP engineID: [Hex] Not Found
----------------------------------------
Community Description
----------------------------------------
------------------------------------------------------------
User Authentication Privacy
------------------------------------------------------------
lmsuser hmac-sha1-96 aes-128
------------------------------------------------------------
Client-Group Mgmt-Epg Clients
------------------------------------------------------------
SNMPClientGroupPolicy default (Out-Of-Band) 10.100.239.216,10.100.254.1
------------------------------------------------------------
Host Port Version Level SecName
------------------------------------------------------------
10.100.236.196 162 v3 priv lmsuser
========================================================================
10.100.236.196 = SolarWinds
10.100.254.1 = APIC controller ( I added this because I was confused what it is referring to)
Please advise on this, many thanks!
Regards,
B
11-12-2018 04:44 AM
Hi,
it is running, and it is sending an engineID.
Please refer to this post: https://community.cisco.com/t5/devnet-sandbox/apic-snmp-engineid/m-p/3699681#M3033
We had the same problem and even involved TAC.
Basically for the engineID to show up you need to configure a community even though you don't technically need one. Or you could run a packet trace and figure out the enigneID. If you don't need the engine ID and are only worried that your config might not work, rest assured, SNMP is running.
Regards,
Nik
11-12-2018 07:05 AM
Thanks Nik.
As per you said, SNMP is working.
I have tested it through SNMPwalk and MIB search program.
It does not connect at all.
So I believed SNMP is not running properly.
There's something I'm missing.. though I have consulted my configurations through the Cisco Docs and Cisco ACI cookbook.
Regards,
Shaiq
11-12-2018 10:46 PM
Hi,
I don't think it's necessarily harmful but I don't get why you configured your APIC's address as an SNMP client.
Another thing you could check is if you have an Out-of-Band contract in place (Tenants > mgmt > Node Management EPGs > Out-of-Band EPG - default > Provided Out-of-Band Contracts). Other than forgetting that I didn't encounter any problems using SNMP in the past.
Kind regards,
Nik
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide