Cisco Cisco Web Security Appliance S690 User Guide

Page of 486
22-36
AsyncOS 10.0 for Cisco Web Security Appliances User Guide
 
Chapter 22      Perform System Administration Tasks
  Monitoring System Health and Status Using SNMP
Note
When you run the 
revert
 command in the next step, several warning prompts are issued. After these 
warning prompts are accepted, the revert action takes place immediately. Therefore, do not begin the 
reversion process until after you have completed the pre-reversion steps. 
Step 2
Enter the 
revert
 command.
Step 3
Confirm twice that you want to continue with the reversion.
Step 4
Choose one of the available versions to revert to.
The appliance reboots twice.
Note
The reversion process is time-consuming. It may take fifteen to twenty minutes before reversion 
is complete and console access to the appliance is available again.
The appliance should now run using the selected AsyncOS for Web version. You can access the web 
interface from a web browser.
Monitoring System Health and Status Using SNMP
The AsyncOS operating system supports system status monitoring via SNMP (Simple Network 
Management Protocol). (For more information about SNMP, see RFCs 1065, 1066, and 1067.) 
Please note: 
SNMP is off by default. 
SNMP SET operations (configuration) are not implemented.
AsyncOS supports SNMPv1, v2, and v3. For more information on SNMPv3, see RFCs 2571-2575.
Message authentication and encryption are mandatory when enabling SNMPv3. Passphrases for 
authentication and encryption should be different. The encryption algorithm can be AES 
(recommended) or DES. The authentication algorithm can be SHA-1 (recommended) or MD5. The 
snmpconfig
 command “remembers” your passphrases the next time you run the command. 
The SNMPv3 username is: v3get. 
If you use only SNMPv1 or SNMPv2, you must set a community string. The community string does 
not default to 
public
.
For SNMPv1 and SNMPv2, you must specify a network from which SNMP GET requests are accepted.
To use traps, an SNMP manager (not included in AsyncOS) must be running and its IP address 
entered as the trap target. (You can use a host name, but if you do, traps will only work if DNS 
is working.)
> snmpwalk -v 3 -l AuthNoPriv -u v3get -a MD5 serv.example.com