Getting Data In

What should be the source type for SNMP traps collected by snmptrapd?

Path Finder

Following the instruction from here, Send SNMP events to your Splunk deployment I'm setting up the monitoring of the file al /var/log/snmp-traps. I wonder what would be the source type. I guess that there should be one defined already.

It has the following content: for example, 

 

 

 

NET-SNMP version 5.7.3
2020-06-22 16:30:44 localhost [UDP: [127.0.0.1]:49799->[127.0.0.1]:162]:
iso.3.6.1.2.1.1.3.0 = Timeticks: (1) 0:00:00.01	iso.3.6.1.6.3.1.1.4.1.0 = OID: ccitt.1
2020-06-22 16:50:44 localhost [UDP: [127.0.0.1]:59061->[127.0.0.1]:162]:
iso.3.6.1.2.1.1.3.0 = Timeticks: (1) 0:00:00.01	iso.3.6.1.6.3.1.1.4.1.0 = OID: ccitt.1
2020-06-22 16:50:48 localhost [UDP: [127.0.0.1]:59062->[127.0.0.1]:162]:
iso.3.6.1.2.1.1.3.0 = Timeticks: (1) 0:00:00.01	iso.3.6.1.6.3.1.1.4.1.0 = OID: ccitt.1
2020-06-22 17:21:36 localhost [UDP: [127.0.0.1]:58259->[127.0.0.1]:162]:
iso.3.6.1.2.1.1.3.0 = Timeticks: (1) 0:00:00.01	iso.3.6.1.6.3.1.1.4.1.0 = OID: ccitt.1

 

 

 

 Thanks for your help!

Labels (2)
0 Karma