Getting Data In
Highlighted

SNMP Modular Input Custom MIB

New Member

Hello.

After installing snmp modular input have a problem with MIB. Logs are not human readable format.

Example:
notificationfromaddress = "10.253.242.15" notificationfromport = "55681" notificationenterprise = "1.3.6.1.4.1.18494.2" notificationagentaddress = "10.253.242.15" notificationgenerictrap = "'enterpriseSpecific'" notificationspecifictrap = "1" notificationuptime = "1" 1.3.6.1.4.1.18494.2.1.1 = ObjectSyntax: simple=SimpleSyntax: string=atyn 1.3.6.1.4.1.18494.2.1.2 = ObjectSyntax: simple=SimpleSyntax: string=05/09/2019 1.3.6.1.4.1.18494.2.1.3 = ObjectSyntax: simple=SimpleSyntax: string=11:31:15 1.3.6.1.4.1.18494.2.1.4 = ObjectSyntax: simple=SimpleSyntax: string=MXS 1.3.6.1.4.1.18494.2.1.5 = ObjectSyntax: simple=SimpleSyntax: number=10023 1.3.6.1.4.1.18494.2.1.6 = ObjectSyntax: simple=SimpleSyntax: string=Info 1.3.6.1.4.1.18494.2.1.7 = ObjectSyntax: simple=SimpleSyntax: string=Communication 1.3.6.1.4.1.18494.2.1.8 = ObjectSyntax: simple=SimpleSyntax: string=Session Closed 1.3.6.1.4.1.18494.2.1.9 = ObjectSyntax: simple=SimpleSyntax: string=0x4d65737361676520506172746e6572204d54314f75742c2053657373696f6e20393833202d2053657373696f6e20636c6f7365640a20202020496e707574206d6573736167657320203a20616363657074656420303030303030202d2072656a6563746564203030303030300a202020204f7574707574206d65737361676573203a20616363657074656420303030303031202d2072656a6563746564203030303030300a2020202020202020202020202020202020202020202020202020202020202020202020202d20627970617373656420303030303030 1.3.6.1.4.1.18494.2.1.10 = ObjectSyntax: simple=SimpleSyntax: string=8370f116-2250-47c6-86d9-e435fa6127f5

I already converted MIB into Python Modules and put it /opt/splunk/etc/apps/snmp_ta/bin/mibs

My inputs.conf
[snmp://Swiftaltyn]
activation
key = ***************************
communitystring = public
dobulkget = 0
dogetsubtree = 0
ipv6 = 0
snmpmode = traps
snmp
version = 2C
sourcetype = swiftaltyn
split
bulkoutput = 0
trap
host = SERVERNAME
trapport = 10162
trap
rdns = 0
v3authProtocol = usmHMACMD5AuthProtocol
v3
privProtocol = usmDESPrivProtocol
mib_names = SAATRAP

Help please!!!

Tags (3)
0 Karma