snmp ipaddrtable fails

Tom Higgins <[email protected]>
Newsgroups gmane.network.net-snmp.user
Message-ID <14182079.49751241478180457.JavaMail.root@gonzo>
Hi guys... 
I was just wondering if anyone knew about this problem with net-snmp returning bogus results... Just hadn't heard from anyone, any advice would be greatly appreciated 

Cheers 
Tom 




Tom Higgins 
Epoch Labs 
p: 03 8320 1000 
w: www.epochlabs.com.au 


----- Forwarded Message ----- 
From: "Tom Higgins" <[email protected]> 
To: [email protected] 
Sent: Friday, 1 May, 2009 10:04:21 AM GMT +10:00 Canberra / Melbourne / Sydney 
Subject: snmp ipaddrtable buggy packets 



Hi guys... 
I have recently been posting about having problems with the ipAddrTable and getting opennms to discover it, I managed to get it work on 1 machine... I wsa using an old version, I then went implement it on all the servers but have run into another issue with snmp, grrrr. I have the problem where I get a timeout trying to get the IP addresses back. I have got the same results on 5 different machines. Through tcpdump and looking at the packets I have discovered that the problem is this: the response from the net-snmp server is returning dodgy IP address maching, example: ip.ipAddrTable.ipAddrEntry.ipAdEntAddr.10.61.30.254=172.61.30.254 
the difference is in the first octect, instead of 10.x it's returning 172.x 
Seeing that I can reproduce this across 5 different servers I am sure that I am not the only one having this issue. 
The machines are all running Ubuntu 8.04 server and net-snmp 5.4.1 
The machine that is working is running the same stack. 
Below is the config files and the output of the tcpdump that I get. Has anyone had this issue, and if so, how do you resolve it?? Or how can I make net-snmp work properly, I understand that is the million dollar question. 
But any input is greatly appreciated. 
root@draco:/etc/snmp# cat snmpd.conf 
#agentaddress 192.168.0.1:161 

#rocommunity epoch 192.168.1.0/24 
#rocommunity epoch 192.168.0.0/24 
rocommunity epoch 172.10.239.0/24 

disk / 

root@draco:/etc/snmp# cat /etc/default/snmpd 
# This file controls the activity of snmpd and snmptrapd 

# MIB directories. /usr/share/snmp/mibs is the default, but 
# including it here avoids some strange problems. 
export MIBDIRS=/usr/share/snmp/mibs 

# snmpd control (yes means start daemon). 
SNMPDRUN=yes 

# snmpd options (use syslog, close stdin/out/err). 
SNMPDOPTS='-Lsd -Lf /dev/null -u snmp -I -smux -p /var/run/snmpd.pid' 
# 127.0.0.1' 

# snmptrapd control (yes means start daemon). As of net-snmp version 
# 5.0, master agentx support must be enabled in snmpd before snmptrapd 
# can be run. See snmpd.conf(5) for how to do this. 
TRAPDRUN=no 

# snmptrapd options (use syslog). 
TRAPDOPTS='-Lsd -p /var/run/snmptrapd.pid' 

# create symlink on Debian legacy location to official RFC path 
SNMPDCOMPAT=yes 

08:07:28.082353 IP 172.10.239.18.57039 > 172.20.4.254.snmp: C=epoch GetNextRequest(27) ip.ipAddrTable 
E..E..@[email protected]. 
0...+........80'.....epoch....)..o......0 
08:07:28.174679 IP 172.20.4.254.snmp > 172.10.239.18.57039: C=epoch GetResponse(38) ip.ipAddrTable.ipAddrEntry.ipAdEntAddr.10.61.30.254=172.61.30.254 
E..P..@.?..m..... 
.......<..02.....epoch.&..)..o......0.0...+........ 
=..~@..=.. 
08:07:29.085351 IP 172.10.239.18.57039 > 172.20.4.254.snmp: C=epoch GetNextRequest(27) ip.ipAddrTable 
E..E..@[email protected]. 
0...+........80'.....epoch....)..o......0 
08:07:29.356221 IP 172.20.4.254.snmp > 172.10.239.18.57039: C=epoch GetResponse(38) ip.ipAddrTable.ipAddrEntry.ipAdEntAddr.10.61.30.254=172.61.30.254 
E..P..@.?..m..... 
.......<..02.....epoch.&..)..o......0.0...+........ 
=..~@..=.. 
08:07:30.090354 IP 172.10.239.18.57039 > 172.20.4.254.snmp: C=epoch GetNextRequest(27) ip.ipAddrTable 
E..E..@[email protected]. 
0...+........80'.....epoch....)..o......0 
08:07:30.184799 IP 172.20.4.254.snmp > 172.10.239.18.57039: C=epoch GetResponse(38) ip.ipAddrTable.ipAddrEntry.ipAdEntAddr.10.61.30.254=172.61.30.254 
E..P..@.?..m..... 
.......<..02.....epoch.&..)..o......0.0...+........ 
=..~@..=.. 





Tom Higgins 
Epoch Labs 
p: 03 8320 1000 
w: www.epochlabs.com.au 


------------------------------------------------------------------------------ Register Now & Save for Velocity, the Web Performance & Operations Conference from O'Reilly Media. Velocity features a full day of expert-led, hands-on workshops and two days of sessions from industry leaders in dedicated Performance & Operations tracks. Use code vel09scf and Save an extra 15% before 5/3. http://p.sf.net/sfu/velocityconf 
_______________________________________________ Net-snmp-users mailing list [email protected] Please see the following page to unsubscribe or change other options: https://lists.sourceforge.net/lists/listinfo/net-snmp-users

------------------------------------------------------------------------------
Register Now & Save for Velocity, the Web Performance & Operations 
Conference from O'Reilly Media. Velocity features a full day of 
expert-led, hands-on workshops and two days of sessions from industry 
leaders in dedicated Performance & Operations tracks. Use code vel09scf 
and Save an extra 15% before 5/3. http://p.sf.net/sfu/velocityconf

_______________________________________________
Net-snmp-users mailing list
[email protected]
Please see the following page to unsubscribe or change other options:
https://lists.sourceforge.net/lists/listinfo/net-snmp-users
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.