Hot!SNMP Fortigate : timeout - not responding

Author
Nco_L
New Member
  • Total Posts : 13
  • Scores: 0
  • Reward points: 0
  • Joined: 2019/05/21 01:21:02
  • Status: offline
2019/09/19 01:56:39 (permalink)
0

SNMP Fortigate : timeout - not responding

Hello,
 
I would like to request information from my Fortigate via the SNMP protocol, so I configured the protocol, community etc. on the web interface, then activated the protocol on an internal interface to make it operational.
However, I have no answer from my Fortigate during the requests: Timeout,...
 
Thank you for your help.
#1
Druss
New Member
  • Total Posts : 13
  • Scores: 0
  • Reward points: 0
  • Joined: 2012/04/19 06:15:34
  • Status: offline
Re: SNMP Fortigate : timeout - not responding 2019/09/19 05:26:41 (permalink)
0
Are you using VDOM? If so the management VDOM is root…
 
"To get SNMP working with VDOM enabled: 
 
Make sure that the interface where the SNMP collector connects to is part of the management VDOM.
 
This can be fixed in two ways
  1. Making sure that the VDOM the SNMP interface is configured for on fortigate is the management vdom by changing the management vdom.
    FGT # config global
    FGT (global) # config system global
    FGT (global) # set grep management-vdom
  2. Using an interface that belongs to default "root" vdom for SNMP traps"
#2
Nco_L
New Member
  • Total Posts : 13
  • Scores: 0
  • Reward points: 0
  • Joined: 2019/05/21 01:21:02
  • Status: offline
Re: SNMP Fortigate : timeout - not responding 2019/09/19 06:10:57 (permalink)
0
Thank you for your quick answer, but we do not use in VDOM in our current configuration.
#3
rwpatterson
Expert Member
  • Total Posts : 8417
  • Scores: 195
  • Reward points: 0
  • Joined: 2006/08/08 10:08:18
  • Location: Long Island, New York, USA
  • Status: online
Re: SNMP Fortigate : timeout - not responding 2019/09/19 06:53:18 (permalink)
0
Do you have trusted hosts defined? If so, is the SNMP server in that list?

-Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

-4.3.19-b0694
FWF60B
FWF80CM (4)
FWF81CM (2)
 
#4
Nco_L
New Member
  • Total Posts : 13
  • Scores: 0
  • Reward points: 0
  • Joined: 2019/05/21 01:21:02
  • Status: offline
Re: SNMP Fortigate : timeout - not responding 2019/09/19 07:17:58 (permalink)
0
My SNMP server is not declared as a trusted host but trusted hosts are not reserved only for users?
Because I would like to use Centreon to send SNMP requests, so I don't connect to the Firewall.
(I use SNMP version 2c)
#5
rwpatterson
Expert Member
  • Total Posts : 8417
  • Scores: 195
  • Reward points: 0
  • Joined: 2006/08/08 10:08:18
  • Location: Long Island, New York, USA
  • Status: online
Re: SNMP Fortigate : timeout - not responding 2019/09/19 08:27:07 (permalink)
0
I may be wrong on this, but once you start entering into the trusted hosts, all firewall access will be restricted by those allowed hosts/subnets. Someone correct me if I am wrong. I don't use them myself since I never know where I will need to be supporting from.
 
If you are using trusted hosts, simply as a test add your SNMP server to the list. Quick and easy test.

-Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

-4.3.19-b0694
FWF60B
FWF80CM (4)
FWF81CM (2)
 
#6
Nco_L
New Member
  • Total Posts : 13
  • Scores: 0
  • Reward points: 0
  • Joined: 2019/05/21 01:21:02
  • Status: offline
Re: SNMP Fortigate : timeout - not responding 2019/09/20 00:19:07 (permalink)
0
yes I understand, however, as mentioned above, I don't think that trusted hosts is a real impact on my problem because the action you are proposing to me is to add a new administrator of some kind.
#7
Jump to:
© 2019 APG vNext Commercial Version 5.5