<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SNMP modular input not indexing data for multiple oid's in v3 in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109290#M7733</link>
    <description>&lt;P&gt;Well , according to your log message :&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;Exception with bulkCmd to &amp;lt;ip&amp;gt;:161: string index out of range
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;One of your OIDs is most likely incorrect  for performing an SNMP walk.&lt;/P&gt;</description>
    <pubDate>Thu, 19 Jun 2014 23:16:39 GMT</pubDate>
    <dc:creator>Damien_Dallimor</dc:creator>
    <dc:date>2014-06-19T23:16:39Z</dc:date>
    <item>
      <title>SNMP modular input not indexing data for multiple oid's in v3</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109286#M7729</link>
      <description>&lt;P&gt;SNMP v3 (AuthNoPriv) is not indexing data when it contains multiple comma separated OID's in configuration.&lt;BR /&gt;
    &lt;CODE&gt;[snmp://&amp;lt;ip&amp;gt;]&lt;BR /&gt;
destination = &amp;lt;ip&amp;gt;&lt;BR /&gt;
do_bulk_get = 1&lt;BR /&gt;
host = &amp;lt;ip&amp;gt;&lt;BR /&gt;
index = netapp&lt;BR /&gt;
ipv6 = 0&lt;BR /&gt;
mib_names = NETWORK-APPLIANCE-MIB&lt;BR /&gt;
object_names = 1.3.6.1.4.1.789.1.5.11.1.9,1.3.6.1.4.1.789.1.5.4.1.1,1.3.6.1.4.1.789.1.5.4.1.10,1.3.6.1.4.1.789.1.5.4.1.14,1.3.6.1.4.1.789.1.5.4.1.15,1.3.6.1.4.1.789.1.5.4.1.16,1.3.6.1.4.1.789.1.5.4.1.17,1.3.6.1.4.1.789.1.5.4.1.18,1.3.6.1.4.1.789.1.5.4.1.19&lt;BR /&gt;
snmp_mode = attributes&lt;BR /&gt;
snmp_version = 3&lt;BR /&gt;
snmpinterval = 60&lt;BR /&gt;
sourcetype = IP&lt;BR /&gt;
split_bulk_output = 1&lt;BR /&gt;
v3_authProtocol = usmHMACMD5AuthProtocol&lt;BR /&gt;
v3_privProtocol = usmDESPrivProtocol&lt;BR /&gt;
v3_securityName = User_name&lt;BR /&gt;
v3_authKey = PassWord&lt;/CODE&gt;&lt;/P&gt;

&lt;P&gt;But if I configure it with only one OID then it is getting data into Splunk.&lt;/P&gt;

&lt;P&gt;&lt;CODE&gt;object_names = 1.3.6.1.4.1.789.1.5.11.1.9&lt;/CODE&gt;&lt;/P&gt;

&lt;P&gt;This problem is with SNMP v3 version please help.&lt;/P&gt;

&lt;P&gt;Thanks in advance&lt;BR /&gt;
Harshal&lt;/P&gt;</description>
      <pubDate>Wed, 18 Jun 2014 09:06:31 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109286#M7729</guid>
      <dc:creator>d12harshal</dc:creator>
      <dc:date>2014-06-18T09:06:31Z</dc:date>
    </item>
    <item>
      <title>Re: SNMP modular input not indexing data for multiple oid's in v3</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109287#M7730</link>
      <description>&lt;P&gt;Any error messages ? &lt;/P&gt;

&lt;P&gt;Search   -&amp;gt;   index=_internal ExecProcessor error snmp.py&lt;/P&gt;</description>
      <pubDate>Wed, 18 Jun 2014 09:34:04 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109287#M7730</guid>
      <dc:creator>Damien_Dallimor</dc:creator>
      <dc:date>2014-06-18T09:34:04Z</dc:date>
    </item>
    <item>
      <title>Re: SNMP modular input not indexing data for multiple oid's in v3</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109288#M7731</link>
      <description>&lt;P&gt;06-18-2014 11:35:43.593 +0200 ERROR ExecProcessor - message from "python "D:\Program files\Splunk\etc\apps\snmp_ta\bin\snmp.py"" Exception with bulkCmd to &lt;IP&gt;:161: string index out of range snmp_stanza:snmp://&lt;IP&gt; snmp_destination:&lt;IP&gt; snmp_port:161&lt;/IP&gt;&lt;/IP&gt;&lt;/IP&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 28 Sep 2020 16:52:53 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109288#M7731</guid>
      <dc:creator>d12harshal</dc:creator>
      <dc:date>2020-09-28T16:52:53Z</dc:date>
    </item>
    <item>
      <title>Re: SNMP modular input not indexing data for multiple oid's in v3</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109289#M7732</link>
      <description>&lt;P&gt;And also following error.&lt;BR /&gt;
&lt;CODE&gt;6/18/14 &lt;BR /&gt;
1:44:32.817 PM  &lt;BR /&gt;
06-18-2014 13:44:32.817 +0200 ERROR ExecProcessor - message from "python "D:\Program files\Splunk\etc\apps\snmp_ta\bin\snmp.py"" No SNMP response received before timeout snmp_stanza:snmp://&amp;lt;ip&amp;gt; snmp_destination:&amp;lt;ip&amp;gt; snmp_port:161&lt;/CODE&gt;&lt;/P&gt;

&lt;P&gt;But if I configure it with one or two OIDs Splunk indexing data and no error message please help. I am using SNMP modular input v1.2.3 and Splunk 6.0&lt;/P&gt;</description>
      <pubDate>Wed, 18 Jun 2014 11:49:56 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109289#M7732</guid>
      <dc:creator>d12harshal</dc:creator>
      <dc:date>2014-06-18T11:49:56Z</dc:date>
    </item>
    <item>
      <title>Re: SNMP modular input not indexing data for multiple oid's in v3</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109290#M7733</link>
      <description>&lt;P&gt;Well , according to your log message :&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;Exception with bulkCmd to &amp;lt;ip&amp;gt;:161: string index out of range
&lt;/CODE&gt;&lt;/PRE&gt;

&lt;P&gt;One of your OIDs is most likely incorrect  for performing an SNMP walk.&lt;/P&gt;</description>
      <pubDate>Thu, 19 Jun 2014 23:16:39 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109290#M7733</guid>
      <dc:creator>Damien_Dallimor</dc:creator>
      <dc:date>2014-06-19T23:16:39Z</dc:date>
    </item>
    <item>
      <title>Re: SNMP modular input not indexing data for multiple oid's in v3</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109291#M7734</link>
      <description>&lt;P&gt;I have configured all OIDs separately to check whether it indexes data. Then Splunk is collecting data from all OIDs. But when I configure multiple OIDs at one time following message occurred please help. &lt;/P&gt;

&lt;P&gt;Disabled "Perform GET BULK" and "Split Bulk Results".&lt;/P&gt;

&lt;P&gt;&lt;CODE&gt;06-20-2014 14:02:58.404 +0200 ERROR ExecProcessor - message from "python "D:\Program files\Splunk\etc\apps\snmp_ta\bin\snmp.py"" Exception with getCmd to &amp;lt;ip&amp;gt;:161: poll error: Traceback (most recent call last):&lt;/CODE&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 20 Jun 2014 12:22:28 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109291#M7734</guid>
      <dc:creator>d12harshal</dc:creator>
      <dc:date>2014-06-20T12:22:28Z</dc:date>
    </item>
    <item>
      <title>Re: SNMP modular input not indexing data for multiple oid's in v3</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109292#M7735</link>
      <description>&lt;P&gt;&lt;CODE&gt;06-20-2014 14:02:58.404 +0200 ERROR ExecProcessor - message from "python "D:\Program files\Splunk\etc\apps\snmp_ta\bin\snmp.py""  snmp_stanza:snmp://&amp;lt;ip&amp;gt; snmp_destination:&amp;lt;ip&amp;gt;  snmp_port:161&lt;/CODE&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 20 Jun 2014 12:22:34 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109292#M7735</guid>
      <dc:creator>d12harshal</dc:creator>
      <dc:date>2014-06-20T12:22:34Z</dc:date>
    </item>
    <item>
      <title>Re: SNMP modular input not indexing data for multiple oid's in v3</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109293#M7736</link>
      <description>&lt;P&gt;Hi Damien, I have tested SNMP with SNMP v2 and it works for multiple OIDs successfully. When I change it to SNMP v3 it doesn't working with multiple OIDs, but it works with single OID (one OID) at a time.&lt;BR /&gt;
Following is the error for SNMP v3 multiple OIDs: "No SNMP response received before timeout". &lt;BR /&gt;
Thanks&lt;/P&gt;</description>
      <pubDate>Tue, 24 Jun 2014 14:27:01 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109293#M7736</guid>
      <dc:creator>d12harshal</dc:creator>
      <dc:date>2014-06-24T14:27:01Z</dc:date>
    </item>
    <item>
      <title>Re: SNMP modular input not indexing data for multiple oid's in v3</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109294#M7737</link>
      <description>&lt;P&gt;Hello!&lt;BR /&gt;
Did you solve this problem?&lt;BR /&gt;
I have similar problem, but with multiple hosts. I have 140 servers, which cpu i must monitor, and use snmp polling for it. But from 140 servers, i get only 110-120. And after every restart of splunk, the number of servers change between 110-120. For example if taking from server A smnp logs, after restart it may not work.&lt;BR /&gt;
And in splunkd.log getting similar error like yours:&lt;BR /&gt;
&lt;EM&gt;05-20-2020 09:54:41.578 +0600 ERROR ExecProcessor - message from "/opt/splunk/bin/python2.7 /opt/splunk/etc/apps/snmp_ta/bin/snmp.py"     obj.handle_error()&lt;BR /&gt;
05-20-2020 10:16:31.405 +0600 ERROR ExecProcessor - message from "/opt/splunk/bin/python2.7 /opt/splunk/etc/apps/snmp_ta/bin/snmp.py" Exception with getCmd to 192.168.1.34:161: poll error: Traceback (most recent call last):&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 30 Sep 2020 05:28:48 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109294#M7737</guid>
      <dc:creator>askhat_pernebek</dc:creator>
      <dc:date>2020-09-30T05:28:48Z</dc:date>
    </item>
    <item>
      <title>Re: SNMP modular input not indexing data for multiple oid's in v3</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109295#M7738</link>
      <description>&lt;P&gt;By the way, for one input I'm writing 3 hosts. And now have 47 data inputs.&lt;/P&gt;</description>
      <pubDate>Wed, 20 May 2020 07:11:32 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/SNMP-modular-input-not-indexing-data-for-multiple-oid-s-in-v3/m-p/109295#M7738</guid>
      <dc:creator>askhat_pernebek</dc:creator>
      <dc:date>2020-05-20T07:11:32Z</dc:date>
    </item>
  </channel>
</rss>

