Specifications

Network and System Management
344
ProSAFE Gigabit Quad WAN SSL VPN Firewall SRX5308
2. To specify a new SNMP configuration, in the Create New SNMP Configuration Entry section
of the screen, configure the settings as described in the following table:
3. Click Add to add the new SNMP configuration to the SNMP Configuration table.
To edit an SNMP configuration:
1. On the SNMP screen (see the previous figure), click the Edit button in the Action
column of the SNMP Configuration table for the SNMP configuration that you want to
modify
. The Edit SNMP screen displays:
Table 84. SNMP screen settings
Setting Description
Access From WAN
Enable access from
WAN
T
o enable SNMP access by an SNMP manager through the WAN interface, select
the Enable access from WAN check box. By default, this check box is cleared and
access is disabled.
Create New SNMP Configuration Entry
IP Address Enter the IP address of the new SNMP manager.
Subnet Mask
Enter the subnet mask of the new SNMP manager
.
Note the following:
If you want to narrow down the number of devices that can access the VPN
firewall through the host IP address and receive traps, enter an IP address with
a subnet mask of 255.255.255.252.
If you want to allow a subnet to access the VPN firewall through the host IP
address and receive traps, enter an IP address with a subnet mask of
255.0.0.0.
The traps are received at the IP address, but almost the entire
subnet has access through the community string.
Port Enter the port number of the new SNMP manager. The default port number is 162.
SNMP V
ersion
From the drop-down list, select the SNMP version:
v1. SNMPv1.
v2c. SNMPv2c.
v3. SNMPv3.
Community Enter the community string that allows the SNMP manager access to the MIB
objects of the VPN firewall for the purpose of reading only
.
SNMP T
rap Events
Select the check boxes to specify which SNMP trap events are sent to an SNMP manager:
W
AN Connection Failure. Sent when the WAN connection fails.
Firewall
. Sent when a new connection is initiated through addition of a custom firewall rule.
IPSec VPN. Sent when an IPSec VPN tunnel is established or disconnected.
SSL VPN. Sent when an SSL VPN tunnel is established or disconnected.
User Login. Sent when a user logs in to the VPN firewall.
User Login Fail. Sent when a user attempt to log in to the VPN firewall but fails to do so.
W
an Fail Over. Sent when an auto-rollover occurs from one W
AN interface to another.
Configuration Change. Sent when the configuration of the VPN firewall changes.