SNMP
Managers poll MIB objects over UDP with Get and GetBulk, agents push traps and informs, and v3 adds per-user auth and encryption. Network gear still speaks it, so monitoring interviews reach it.
on this pageshowhide
explore
- Manager/Agent Architecture5 questions
- MIBs and OIDs5 questions
- PDU Operations5 questions
- Traps and Informs5 questions
- Protocol Versions5 questions
- SNMPv3 Security Model5 questions
- Interface Counters5 questions
questions
page 2 of 2In SNMP's AgentX protocol, what do the master agent and its subagents each do, and why does the manager never see the split?
basics
~20 sAn AgentX master agent speaks SNMP on the agent's address and enforces access control and MIB views; subagents register MIB regions with it and hold the actual instrumentation. RFC 2741 makes the split invisible: managers see one ordinary agent.
A revised vendor MIB module keeps an object's OID but changes its SYNTAX from Counter32 to Gauge32; which SMIv2 rule does that break, and what should the revision have done?
basics
~20 sIt breaks RFC 2578's rule that a registered OID's semantics never change: a SYNTAX change outside the allowed list needs a new OID. The revision should define a new object at an unassigned OID and mark the old one deprecated or obsolete.
An SNMP SetRequest with three variable bindings returns inconsistentValue with error-index 2; which of the three changes did the agent apply, and why?
basics
~20 sAn SNMP agent assigns nothing: RFC 3416 has it validate every SetRequest binding before assigning any, so a validation error such as inconsistentValue on binding 2 leaves all three unchanged; the manager fixes that binding and resends the request.
What does a Response to an SNMP InformRequest actually prove, and what can still be lost or duplicated after the agent receives it?
basics
~20 sA noError Response to an InformRequest proves the receiving SNMP entity accepted the notification and passed it to its receiver application. It does not prove storage, alerting or a human, and a lost Response makes the agent resend a duplicate.
Using SNMPv3's VACM, how would you give a NOC group read-write access and an automation account read-only access to interface objects only?
basics
~20 sMap each USM user to a VACM group, give the group an authPriv access row naming read, write and notify views, and build views from included and excluded OID subtrees. The automation group gets an interfaces-only read view and no write view.
showing 31–35 of 35