For more information regarding the security incident at F5, the actions we are taking to address it, and our ongoing efforts to protect our customers, click here.

Forum Discussion

ReynaldoQ_14206's avatar
ReynaldoQ_14206
Icon for Nimbostratus rankNimbostratus
Apr 11, 2014

snmp

Hi, I am trying to allow a server to have snmp access to an HA pair. I have added the server ip to the client allow list and still not seeing any snmp traffic. Is the anything else I should configure on the F5 pair?

 

Thank you in advance.

 

3 Replies

  • In addition to adding the allowed addresses/ranges to the client allowed list, you'll also need to configure the appropriate SNMP agent access (v2c, v3). Without this, the BIG-IP can't verify community information and respond to SNMP requests. What version of SNMP polling are you using?

     

    • ReynaldoQ_14206's avatar
      ReynaldoQ_14206
      Icon for Nimbostratus rankNimbostratus
      Cory ,,thanks for the quick response. SNMP acess(v1,v2c) community string is already present or created. Someone mentioned to me about doing something on the management ip but just not exactly sure what config to do and how?
    • Cory_50405's avatar
      Cory_50405
      Icon for Noctilucent rankNoctilucent
      SNMP access should occur over your management interface. Your BIG-IP will need the proper management route configured to get back to the SNMP pollers. You can see all defined management routes through TMSH by typing 'list sys management-route'