110 likes | 224 Views
This presentation from the SIA SNMP Working Group at ASIS 2014 provides a comprehensive overview of the Simple Network Management Protocol (SNMP) and its relevance in managing network devices. Covering its historical background, operational requirements, and preferred features, it emphasizes the importance of standards-based solutions in contemporary networks, including IoT considerations. Attendees will gain insights into SNMP's compatibility, MIB object evaluation, and secure access methodologies, making it essential knowledge for network management professionals.
E N D
Networked Device Management with SNMP SIA Working Group Presentation ASIS 2014 (Atlanta) SIA SNMP Working Group ASIS 2014
Background • What is SNMP • IETF [3] protocol suite [1] for network management • Standards-based solution for managing devices on a network • Why use SNMP • Part of the expected feature set of modern civilized network-attached enterprise-class devices • Because you need the network before you can access the device • IOT: You need the internet before you can have the thing • SNMP history • First specified last century (RFC 1155 is from 1988) • IETF standard • Current state of the art is RFC 6353 (SNMP over TLS over TCP) SIA SNMP Working Group ASIS 2014
SNMP Requirements • Follow the standards and styles of the SNMP implementor community including the common open source options • Support network management • definition of "network management" • Support management of the protocol stack • Support network management of the application and platform SIA SNMP Working Group ASIS 2014
Example MIB Object SIA SNMP Working Group ASIS 2014
SNMP Preferred Features • Accurate device identification • Support enough MIB objects to manage the device in question • MIB publically distributed • MIB “compilable” with standard tools • Secure access (TLS please?) SIA SNMP Working Group ASIS 2014
SNMP MIB Compatibility SIA SNMP Working Group ASIS 2014
Preferred SNMP - Details • Relevant MIB object groups • From RFC 1213: System, Interfaces, Address Translation, IP, ICMP, TCP, UDP, EGP, Transmission, SNMP • Multicast (RFC 5132) • PoE (example: CISCO-POE-PD-MIB-V1SMI [2]) • At least read access, preferably secure read/write SIA SNMP Working Group ASIS 2014
How to Evaluate SNMP • Find the public copy of the MIB • Install the MIB in open source and commercial tools • Configure the device to support snmp as securely as possible • Walk the MIB collecting data • Validate the data is accurate • Exercise manipulation of the device through SNMP • Evaluate the implementation for security SIA SNMP Working Group ASIS 2014
Terms • IETF • SNMP • MIB SIA SNMP Working Group ASIS 2014
References [1] http://en.wikipedia.org/wiki/Simple_Network_Management_Protocol [2] ftp://ftp.cisco.com/pub/mibs/v1/CISCO-POE-PD-MIB-V1SMI.my [3] www.ietf.org SIA SNMP Working Group ASIS 2014
About This presentation is available online after the meeting at https://convergence.smithee.us/SIA/snmp-asis2014.pptx Rodney Thayer rodney@smithee.us Doc rev. 00 SIA SNMP Working Group ASIS 2014