Specifications
13-12
Cisco NAC Appliance - Clean Access Manager Configuration Guide
OL-28003-01
Chapter 13 Monitoring Event Logs
SNMP
Note Cisco recommends to increase the count and limit moderately.
Note Use service perfigo restart to pickup the new logging configuration.
For additional details see also:
• Support Logs, page 14-42
• Certificate-Related Files, page 14-24.
• Backing Up the CAM Database, page 14-58
SNMP
You can configure the Clean Access Manager to be managed/monitored by an SNMP management tool
(such as HP OpenView). This feature provides minimal manageability using SNMP (v1).
You can configure the Clean Access Manager for basic SNMP polling and alerting through
Monitoring > SNMP. Note that SNMP polling and alerts are disabled by default.
Clicking the Enable button preceding SNMP on NAC Manager under Monitoring > SNMP activates
the following features:
• SNMP Polling—If an SNMP rocommunity (“Read-only community”) string is specified, the Clean
Access Manager will respond to
snmpget and snmpwalk requests with the correct community string.
• SNMP Traps—The Clean Access Manager can be configured to send traps by adding trap sinks. A
trap sink is any computer configured to receive traps, typically a management box. All traps sent are
version 1 (v1) traps. A copy of each trap will be sent to each trapsink.
When enabled, the SNMP module monitors the following processes:
• SSH Daemon
• Postgres Database
• Clean Access Manager
• Apache Web Server
The Clean Access Manager also sends traps in the following cases:
• When the Clean Access Manager comes online.
• When the Clean Access Manager shuts down.
• When the Clean Access Manager gains or loses contact with any Clean Access Servers it manages.
• When the SNMP service starts (a Cold Start Trap is sent).
Starting from Cisco NAC Appliance Release 4.9, you can configure the Clean Access Server to be
managed/monitored by the SNMP management tool as well. Clicking the Enable button preceding
SNMP on NAC Servers under Monitoring > SNMP activates the following features:
• SNMP Polling—If an SNMP rocommunity (“Read-only community”) string is specified, the Clean
Access Server will respond to
snmpget and snmpwalk requests with the correct community string.