110 likes | 213 Views
Networked Device Management with SNMP. SIA Working Group Presentation ASIS 2014 (Atlanta). Background. What is SNMP IETF [3] protocol suite [1] for network management Standards-based solution for managing devices on a network W hy use SNMP
E N D
Networked Device Management with SNMP SIA Working Group Presentation ASIS 2014 (Atlanta) SIA SNMP Working Group ASIS 2014
Background • What is SNMP • IETF [3] protocol suite [1] for network management • Standards-based solution for managing devices on a network • Why use SNMP • Part of the expected feature set of modern civilized network-attached enterprise-class devices • Because you need the network before you can access the device • IOT: You need the internet before you can have the thing • SNMP history • First specified last century (RFC 1155 is from 1988) • IETF standard • Current state of the art is RFC 6353 (SNMP over TLS over TCP) SIA SNMP Working Group ASIS 2014
SNMP Requirements • Follow the standards and styles of the SNMP implementor community including the common open source options • Support network management • definition of "network management" • Support management of the protocol stack • Support network management of the application and platform SIA SNMP Working Group ASIS 2014
Example MIB Object SIA SNMP Working Group ASIS 2014
SNMP Preferred Features • Accurate device identification • Support enough MIB objects to manage the device in question • MIB publically distributed • MIB “compilable” with standard tools • Secure access (TLS please?) SIA SNMP Working Group ASIS 2014
SNMP MIB Compatibility SIA SNMP Working Group ASIS 2014
Preferred SNMP - Details • Relevant MIB object groups • From RFC 1213: System, Interfaces, Address Translation, IP, ICMP, TCP, UDP, EGP, Transmission, SNMP • Multicast (RFC 5132) • PoE (example: CISCO-POE-PD-MIB-V1SMI [2]) • At least read access, preferably secure read/write SIA SNMP Working Group ASIS 2014
How to Evaluate SNMP • Find the public copy of the MIB • Install the MIB in open source and commercial tools • Configure the device to support snmp as securely as possible • Walk the MIB collecting data • Validate the data is accurate • Exercise manipulation of the device through SNMP • Evaluate the implementation for security SIA SNMP Working Group ASIS 2014
Terms • IETF • SNMP • MIB SIA SNMP Working Group ASIS 2014
References [1] http://en.wikipedia.org/wiki/Simple_Network_Management_Protocol [2] ftp://ftp.cisco.com/pub/mibs/v1/CISCO-POE-PD-MIB-V1SMI.my [3] www.ietf.org SIA SNMP Working Group ASIS 2014
About This presentation is available online after the meeting at https://convergence.smithee.us/SIA/snmp-asis2014.pptx Rodney Thayer rodney@smithee.us Doc rev. 00 SIA SNMP Working Group ASIS 2014