Ad Widget

Collapse

Monitoring port security voilations on Cisco switches over SNMP

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • sf-it
    Junior Member
    • Oct 2021
    • 4

    #1

    Monitoring port security voilations on Cisco switches over SNMP

    Hello there,

    so we are running some Cisco switches (sg350x-48p), where port security is configured and we would like to monitor if someone caused a port violation. We already do have a existing template but would like to add these OIDs

    portAdditionalOperStatus 1.3.6.1.4.1.9.5.1.4.1.1.23
    or
    cpsIfPortSecurityStatus 1.3.6.1.4.1.9.9.315.1.2.1.1.2

    to the Item prototypes but i've got no idea how. Do I have to create a new discovery list or edit an existing one? Iam fairly new to this topic and on how the discoverylist exactly works and if the key always need to be a specific one. I couldnt find any clues on the internet on how i could get these SNMP OIDs
    queried.

    Big thanks in advance for any help.

    Here are some screenshots of how the Template looks:

    Discovery List:
    Click image for larger version

Name:	Zabbix_discovery_list.png
Views:	1650
Size:	25.8 KB
ID:	433685

    Network interfaces Discovery:
    Click image for larger version

Name:	Zabbix_discovery_list_IF.png
Views:	1593
Size:	30.0 KB
ID:	433686


    Item Prototypes:
    Click image for larger version

Name:	Zabbix_item_prototypes.png
Views:	1550
Size:	39.9 KB
ID:	433687



    Best regards,
  • tomdom
    Member
    • Nov 2021
    • 38

    #2
    Hey st-it did you fix the problem? Also wants to monitor port-security status

    Comment

    • ISiroshtan
      Senior Member
      • Nov 2019
      • 324

      #3
      Just add new item prototypes under same discovery.

      For example you can go with following for port Additional Operational Status: key like net.if.adStatus[portAdditionalOperStatus.{#SNMPINDEX}], making sure to set data type corresponding to data that is actually returned(not sure data type for said OID. Can start with string and see what is actually returned).

      Comment

      • Regie Quinio
        Junior Member
        • Jun 2023
        • 2

        #4
        Hi sf-it

        Did you successfully monitored port secuirty violations ? can you share ? I already added the same config just like on your photos but still unable to monitor port sec violations on my cisco switches. TIA.

        Comment

        Working...