Security

 View Only
last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).
Expand all | Collapse all

Profiling with SNMP query probe - Does it Require SNMP Trap ?

This thread has been viewed 15 times
  • 1.  Profiling with SNMP query probe - Does it Require SNMP Trap ?

    Posted Jul 01, 2022 11:32 PM
    Hi All,

    Just double-check if these details below pertaining SNMP query probe are true,

    especially under Remarks column, where it says 'can be triggered by SNMP trap'.

    This table comes from my solution architect.

    No Profiling Methods Active / Passive Pre-requisite from Medical Device Remarks Conclusion Challenges
    1 SNMP query probe Passive Medical device supports LLDP to be able to be queried through switch Not required if Device Sensor enabled. Configure SNMP at NAD settings in ISE / CPPM, and it will probe periodically, or it can be triggered upon RADIUS accounting start / SNMP trap This probe mainly able to profile devices based on CDP or LLDP, especially IP camera, IP phones, infrastructure devices (such as AP).  This might not be feasible if CDP / LLDP is turned off


  • 2.  RE: Profiling with SNMP query probe - Does it Require SNMP Trap ?
    Best Answer

    EMPLOYEE
    Posted Jul 02, 2022 01:00 AM

    Hi,

    SNMP trap was mandatory in earlier versions of ClearPass to profiler devices through NAD >> SNMP Read. But now it is just an option starting with 6.8.1.
    You are good with periodic polling without traps.