Section 6 - Lecture 50 - MONITORING - PROTOCOLS - DOCUMENT.pdf

(510 KB) Pobierz
xa
m
ite
pr
itexampractice.net
ac
CCNA Security
Monitoring
tic
e.
ne
t
CCNA Security – Monitoring
In this lesson...
Syslog Server
SNMP
Netflow
ite
xa
m
pr
ac
tic
e.
ne
t
2
CCNA Security – Monitoring
Syslog Server
ite
Valid levels are:
emergency
alert
critical
error
warning
notification
informational
debug
xa
m
pr
What level to capture?
Router(config)# logging trap informational
Valid logging facilities are local0 through local7.
ac
tic
Enable logging:
Router(config)# logging on
Specify a syslog server:
Router(config)# logging 172.16.1.2
e.
ne
t
3
CCNA Security – Monitoring
SNMP
TEST IT!
ite
xa
m
Free MIB browser:
http://ireasoning.com/mibbrowser.shtml
pr
SNMP
Simple Network Management Protocol (SNMP) is a protocol for managing devices on IP networks. SNMP
exposes management data in the form of variables on the managed systems, which describe the
system configuration.
SNMP itself does not define which information (which variables) a managed system should offer. Rather,
SNMP uses an extensible design, where the available information is defined by management information
bases (MIBs). MIBs describe the structure of the management data of a device subsystem.
There are three versions of SNMP -- v1, v2, and v3. Each has more features than the next. Most
network admins today use v2, but v3 offers many more security features.
ac
tic
e.
ne
t
4
CCNA Security – Monitoring
SNMP
Enable SNMP:
Router(config)# snmp-server community cisco123 RO
Options:
Router(config)# snmp-server contact xxxx
Router(config)# snmp-server location xxxx
Router(config)# snmp-server chassis-id xxxx
ite
xa
m
pr
ac
tic
e.
ne
t
5
Zgłoś jeśli naruszono regulamin