You are on page 1of 67
DO én mén hge Quan ly hé théng_mang VIETHANITC LOL NOI DAU Mén hoc Quan ly hé thong mang li mén hoc cung cap cho sinh vién cc kién thite vé cac giao thite quan ly mang cing nhu cdc phan mém, céng cy can thiét dé quan ly hé théng mang. Nim bit duge trang thai hé thong mang dé dim bao hé thong mang duge hoat dong xuyén suédt.... Vi vay, viée tim hiéu ly thuyét vé cdc giao thite quan ly mang cing nhu chon céng cy thich hgp dé nghién ctu, thye hanh trong qué trinh hoe tap 1a digu khong thé thiéu. Voi mye dich va ¥ nghia trén, nhom 1 lop MMO2A da Iya chon dé tdi “Tim hidu vé giao thire quan ly mang SNMP va thye hign gidm sat, quan tri mang véi phan mém Solarwinds Orion Network Performance Monitor (NPM)” dé lam dé an cudi mén hoc, Ni dung cia dé an chia lam ba chuong: Y Chuong |: Téng quan vé giao thite SNMP. Mue dich ciia chuong nay la cung cap cho ching ta nhimg khdi niém co ban nhdt vé giao thite quan Ii mang don gidn SNMP, cde thanh phin, chire nang va phuong thite hoat dng cia giao thite. Y Chuong 2: Gigi thigu tng quan vé phan mém gidm sét va quan tri mang Solarwinds. Trong chuong nay giéi thigu vé phan mém, cdc chite ning chinh cing nhu huéng dan cai dat phan mém. Y Chuong 3: Di vio huéng din sit dung eéc tinh nang chinh trong Solarwinds Orion Trong qué trinh Lim dé én chic chin khéng tranh khoi thiéu sét. Mong cdc thdy c6 va cac ban déng gop ¥ kién dé dé an duge hoan thign hon. Xin chan thanh cam on! Dat nding, thang 3 nam 2011. Nhém 1 - MMO2A DO én mén hge Quan ly hé théng_mang VIETHANITC MUC LUC LOT NOI DAU......... sescestaeatcnes senses sescsnenntcssesenel MUC LUC MUC LUC HiNH AN CHUONG 1. TONG QUAN VE GIAO THUC SNMP 1.1, Hai phuong thie gidm sat Poll va Alert 1.1.1, Phuong thite Poll. 1.1.2, Phuong thite Alert 1.2, Giéi thigu giao thite 34. Cosa thong tin quan ly - MIB. 1.3.5. Cac Ignh eo ban trong SNMP..... an li lién lac gi agent . soe 1.6, Bao vé truyén théng lién lac gitta management va cae agent khdi sur cb. 1.7, Cae phuong thite cia SNMP. 1.7.1, GetRequest 1.7.2, GetNextRequest. . SetRequest. 174, Getkesponse 1.7.5. Trap 1.8. Cae og ché bio mat cho SNMP 1.8.1, Community string 1.8.2. View... SNMP acess control list u tre ban tin SNMP 2.1. Gidi thigu ve solarwinds ... 2.2. Cée chite ning quan tr eta Solarwinds. 2.4, Cai dat va cau hinh 2.4.1.1, Yéu cdu can thiét truée khi 1.2. Cai dat... 2.4.1.3. Cau hinh, ii DO én mén hge Quan ly hé théng_mang VIETHANITC CHUONG 3. HUONG DAN SU DUNG CAC Ti SOLARWINDS ORION NETWORK PERFORMANCE MONITOR (NPM) 3.1, Ding Nhaj 3.2. Giao Dign a Churong Trinh: ... 3.3. Gidi Thigu Giao Dign Home: 3.3.1. Summary .. 2. Group .. 3.3.3. Top 10 3.3.4. Event (sur kign) .. 3.3.5, Alerts (canh bao) 3.3.6. SSO$.esersraree 3.3.7. Trap (bay Iéi). 4. Gidi thigu giao dign Network... 3.4.1. Wireless... . 3.4.2. VSAN (Virtual Storage Ar 3.4.3. Overview .. os 3.4.3.1. IP Network Browser... 3.4.3.2. Trace route.. 3 Ping. . 3.4.3.4, Enhanced ping 3.4.3.5, Port Scanner. 3.4.3.6, Telnet. 3.4.3.7. Watehlt! 3.4.3.8, Subnet list... 3.4.3.9. CPU Gauge 3.4.3.10, Real-Time Interface Monitor 3.43.11. MIB Browser... 3.43.12, DOS Ping 3.4.3.13. Remote Desktop 3.5. Thyc hah giém sét mang voi Solarwinds NPM 3.5.1. M6 hinh gid 3.5.2. Cau hinh Rout 35 3.5.4. Thue hign giém sat router Cisco 3620.., __ 3.5.5. Thiét lap mét cinh béo (Alen) Network): cisco ho trg gidm sét mang... TAI LIEU THAM KHAO 30 30 30 31 31 32 32 33 34 we 34 34 34 oe 34 ‘The hign tim kiém phat hign thict bj mang sit dung Network Sonar Winzad 44 35 35 36 37 38 38 38 39 39 39 40 40 40 41 4l 42 42 42 oe SL 54 60 61 iii MUC LUC HI Hinh 1-1 Minh hga co ché Poll... Hinh 1-2 Minh hoa co ché Alert...... Hinh 1-3 Mé hinh giao thite hoat déng SNMP... Hinh 1-4 Hoat d6ng cita giao thire SNMP Hinh 1-5 Hinh minh hoa ede phuong thite SNMPV1.. Hinh 1-6 Céu trae ban tin SNMP...... . Hinh 2-1 Giao dign bat da Hinh 2-2 Dién Email dé dang ky truée khi bi Hinh 2-3 Bat dau cai da sesesneseese Hinh 2-4 Chon duong Hinh 2-5 Lya chon cai dat Hinh 2-6 Qué trinh cai dat cdc géi edu hinh Hinh 2-7 Cai dat thinh cong Hinh 2-8 Giao dign ding nhép quan Iy Solarwinds Hinh 2-9 Duong din dén ti . Hinh 2-10 Lya chon ede Hinh 2-11 Lyra chon kiéu chimg thye. Hinh 2-12 Sir dung CSDL hign hanh Hinh 2-13 Lya chon tiry chon kich h Hinh 2-15 Qué tinh edu hinb...... Hinh 3-1 Giao dign ding nhap Hinh 3-2 Giao dign chinh cia chuong trinh Hinh 3-3 Tinh nang thong ké sy kita Hinh 3-4 Tinh nang tim kié . Hinh 3-5 Xép hang va théng ké cde syrkien cia hé thong . Hinh 3-6 So dé nhin téng quan cia mang Hinh 3-7 Hé théng quan ly node.. Hinh 3-8 Quin ly triggered Alerts... Hinh 3-9 Top 10 node responed ICMP . Hinh 3-10 Thong ké sy kign eiia cde meng dang quan ly . Hinh 3-11 H@ théng cinh bao - Alerts. Hinh 3-12 Quan ly thiét bi mang khéng day Wireless, Hinh 3-13 Trang thai cde node trong mang......e0e Hinh 3-14 Menu cdc tinh nang quan ly node. Hinh 3-15 IP Network Browser .. . Hinh 3-17 Tinh nang Ping .... Hinh 3-18 Enhanced ping Hinh 3-19 Tinh nang port scanner. ; Hinh 3-20 Tinh ning gidm sét cée thiét bi mang... Hinh 3-21 SubnetList ~ Xéy dung danh sich cée subnet trong mang Hinh 3-22 CPU Gauge — Gidm sat CPU cia server va router Cisco .. DO én mén hge Quan ly hé théng_mang VIETHANITC Hinh 3-23 Hien thy ede thong tin ve Router Hinh 3-24 Truy van cau hinh software hode la hardware qua SNMP Hinh 3-25 Ping nodes Hinh 3-26 Mé hinh gia lap quan ly mang véi Solarwinds NPM... Hinh 3-27 Lénh cdu hinh kich hoat SNMP trén router cisco a Hinh 3-28 Két qua thong ké hoat dong cia SNMP trén router cisco bing Ténh Hinh 3-29 Két qua debug dé gidm sét SNMP trén router... Hinh 3-30 Khéi dng Network Discovery Hinh 3-31 Tay chon tao Discovery méi Hinh 3-32 Tao Discovery m@i ............. Hinh 3-33 Dicn tham sé SNMP......... Hinh 3-34 Két qua sau khi tao SNMP Hinh 3-35 Tao méi vCenter . Hinh 3-36 Tao méi Vmware Credential... Hinh 3-37 Day IP cin quét.. Hinh 3-38 Digu cdc tham sé SNMP dé Scan... Hinh 3-39 Chon lich Discovery Hinh 3-40 Qué trinh Discovery... Hinh 3-41 Két qua, Discovery Hinh 3-42. Lau két qua Discovery vio CSDL Hinh 3-43 Cac node mang va trang thai sau khi quét Hinh 3-44 Théng tin tong quan ciia router. .. Hinh 3-45 Thong tin cu thé vé router... Hinh 3-46 Thong tin vé CPU vi Memory duge sta dung. Hinh 3-47 Gidm sat cdc interface cia router Hinh 3-48 xem chi tiét théng tin vé interface Hinh 3-49 Thiét lp quan ly Alerts....... Hinh 3-50 Cau hinh Alerts. Hinh 3-51 Cl stra Alerts .. Hinh 3-52 Thiet lp cau hinh thoi gian cho Alerts, Hinh 3-53 Reset condition... se . Hinh 3-54 Suppress alert. Hinh 3-55 Lp lich el Hinh 3-56 Tiry chon 149 49 DO én mén hge Quan ly hé théng_mang VIETHANITC CHUONG 1. TONG QUAN VE GIAO THUC SNMP Muc dich cia chuong nay Ia cung cap cho ching ta nhimg khdi niém co ban nhat vé giao thite quan li mang don gian SNMP, cac thanh phan, chire nang va phuong thic hoat déng ciia giao thite Phan chuong gidi thigu téng quan vé SNMP, cau tric va dic diém cing nhuw hoat dng cia giao thite niy. Sau dé gidi thigu cde phién ban sau cia SNMP va phan tich duge nhiing khée bigt cia cde phién ban sau v6i phién ban SNMP dau tign. 1.1. Hai phuong thite giftm sit Poll va Alert Day 1a hai phuong thite co ban cia cdc kf thudt gidm sat hé théng, nhiéu phan mém va giao thire duge xy dyng dya trén hai phuong thite nay, trong dé e6 SNMP. Vige hiéu r6 hoat d6ng cia Poll & Alert va uu nhuge diém cita ching sé giip ching ta dé dang tim hiéu nguyén tac hoat dng cia cdc giao thirc hay phan mém gidm sat, Hoe néu muén ty phat trién m6t co ché gidm sat cla riéng minh thi né cing la co so dé gidp ching ta xdy dung mét nguyén tic hoat déng dang dan. LL.1. Phuong thite Poll Neguyén tic hoat dng: Trung tm gidm sit (manager) sé thudng xuyén hoi thong tin cia thiét bi cdn gidm sat (device). Néu Manager khéng hoi thi Device khéng tra lei, néu Manager héi thi Device phai tra Iéi. Bang cach héi thuéng xuyén, Manager sé luén cap nhat duge théng tin méi nhat tr Device. Vi du : Ngudi quan ly can theo déi khi nio thg lam xong vige. Anh ta ctr thuong xuyén hoi ngudi thy “Anh da kim xong chu: ngudi thy sé tra loi “Xong” hoae “Chua”. 1 ‘DO én mén hgc Quan ly hé théng_mang VIETHANITC Request #L Response #: Request #2 Response #. Hinh 1-1 Minh hoa co ché Poll 1.1.2. Plucong thice Alert Nguyén tie hoat ding: Méi khi trong Device xay ra mt su kién (event) nao dé thi Device sé ty dng giti théng béo cho Manager, goi la Alert. Manager khong hoi thong tin dinh ky tir Device. Vi dy: Ngudi quan ly cén theo doi tinh hinh lam viée cia th, anh ta yéu clu nguéi th théng béo cho minh khi c6 van dé gi dé xay ra. Neudi thg sé thong jén d da hoan thanh 50%”, “Mat dign lic 10h”, “C6 dign bao cae sy kign dai loai nhu “1 lai ic 11h”, “Méi c6 tai nan xay ra”. mert ft j Event #2 Alert #2 ‘event 42 { (ito event) alert #3 ‘event #3 Hinh 1-2 Minh hoa co ché Alert 2 DO én mén hge Quan ly hé théng_mang VIETHANITC 1.2. Gidi thigu giao thie SNMP SNMP [a “giao thite quan ly mang don gin”, dich tir cym tir “Simple Network Management Protocol”. Thé nao la jao thite quin ly mang don gidn ? Giao thite 1a mt tap hgp cde tha tue ma cdc bén tham gia can tudn theo dé cé thé giao tiép duge véi nhau, Trong linh vue théng tin, mét giao thite quy dinh cAu tric, dinh dang (format) cla dong dit ligu trao déi v6i nhau va quy dinh trinh ty, thi tuc dé trao déi dong dit ligu d6. Néu mét bén tham git giti dit ligu khng ding dinh dang hoje khéng theo trinh ty thi céc bén khée s€ khong hiéu hodc tir chéi trao déi théng tin. SNMP la mét giao thitc, do dé né cé nhing quy dinh riéng mA cdc thinh phan trong mang phai tudn theo. M6t thiét bj hiéu duge va hoat déng tudn theo giao thire SNMP duge goi la “6 hG try SNMP” (SNMP supported) hoe “tong thich SNMP” (SNMP compartible). SNMP ding dé quan ly, nghia la 6 thé theo dai, ¢6 thé lay théng tin, ¢6 thé duge théng béo, va cé thé téc déng dé hé théng hoat dong nhu ¥ muén, VD mét sé kha ning cua phan mém SNMP > Theo doi téce d6 duéng truyén cia mét router, bidt duge téng sé byte da truyén/nhan. > Lay théng tin may chi dang cé bao nhiéu 6 cig, méi 6 ctmg con tréng bao nhiéu, > Ty dGng nhin canh béo khi switch 6 mot port bj down. > Diéu khién tat (shutdown) cdc port trén switch. SNMP ding dé quan ly mang, nghia la né duge thiét ké dé chay trén nén TCP/IP va quan ly cdc thiét bj c6 néi mang TCP/IP. Céc thiét bj mang khéng nbt thiét phai la may tinh ma cé thé la switch, router, firewall, adsl gateway, va ca mét sé phan mém cho phép quan tri IMP. Gia sit ban cé mét cai may giat cé thé néi mang IP va né hd gS trg SNMP thi ban c6 thé quan ly né tir xa bang SNMP. SNMP li giao thie don gian, do né duge thiét ké don gidn trong cdu tric ban tin va thi tye hoat déng, va con don gién trong bio mat (ngogi trir SNMP version 3). Sir dung phan mém SNMP, nguéi quan tri mang cé thé quan ly, giam sat tp trung tir xa toan mang ciia minh. 3 Uu ‘SNMP SNMP duge thiét ké dé don gién héa qué trinh quan ly cdc thanh phan trong im trong thiet ké mang, Nhé dé cdc phan mém SNMP cé thé duge phat trién nhanh va tén it chi phi. SNMP dugc thiét ké dé c6 thé mé réng cdc chire nang quan ly, gidm sat, Khong cé giéi han ring SNMP co thé quan ly duge cdi gi. Khi c6 mét thiét bj méi véi cde thuge tinh, tinh ning méi thi ngudi ta custom” SNMP dé phye vu cho riéng SNMP). 6 thé hoat déng déc lip véi cdc kién trac va co el minh (trong chong 3 ea SNMP duge thiét k cdc thiét bi hd tro SNMP. Cée thiét bi khdée nhau cé hoat déng khéc nhau nhung dép img SNMP 1a giéng nhau. VD ban cé thé ding | phan mém may chi chay HDH Windows va Linux; trong khi néu khéng ding SNMP ma lam trye trinh bay file cau tric dit li theo déi dung lugng 6 cig con tréng cila cdc trén cdc HDH nay thi ban phai thyc hign theo cdc céch khéc nhau. 1.2.2. Niuge diém cia SNMP. > Lam tang luu lugng dang ké. > Khéng cho phép phan bé tac dong true tiép cho cdc dai ly. > Khong c6 sy diéu khién téng hop cia nhiéu noi quan ly. 1.2.3. Cée phién bin cia SNMP SNMP co 4 phién ban: SNMPv1, SNMPv2c, SNMPv2u va SNMPv3. Cac phién ban nay khéc nhau mét chat & dinh dang ban tin va phuong thite hogt dng. Hign tai SNMPvI 1a phé bién nhat do cé nhiéu thiét bi tuong thich nhdt va cé nhiéu phan mém hé tro nhdt. Trong khi dé chi cé mét sé thiét bj va phdn mém hé try SNMPv3 Nam 1993, SNMP Version 2 (SNMPv2) duge IETF dua ra véi mye dich gidi quyét van dé tén tai trong SNMPv1 18 co ché dim bao bao mit. SNMPv2 cé nhiéu thay déi so vi SNMPv1 nhu hé trg cic mang trung tim cap cao, mang phan tan, co ché bao mat, lam vige véi khdi dit ligu Ion... Tuy nhién SNMPv2 khéng duge chap nhan hoan toan béi vi SNMPv2 chua thod man van dé bdo mft va quan tr] béi vay nam 1996 nhing phin bao mit trong SNMPy2 bj bé qua va SNMPv2 duge goi la “SNMPV2 trén co sé truyén thong” hay SNMPy2¢. 4 DO én mén hge Quan ly hé théng_mang VIETHANITC im 1998, IETF bat dau dua ra S' trong RFCs 2571-2575, ‘Vé ban chat, SNMPv3 mé rng dé dat duge ca hai mue dich 1a bao mat va quan tri. SNMPv3 é 06 thé é dang mé réng. Nhu thé néu cdc é duge hé try boi SNMPvV3 bang cach dinh 6 tra kién tric theo kiéu module giao thite bao mat duge mé rong ching c6 nghia nhu [a cde module rigng. 1.3. Diu hanh SNMP 1.3.1. Cie thanh phan trong SNMP Hé théng quan ly mang dya trén SNMP gém ba thanh phan: b6 phan quan li (manager), dai ly (agent) va cor s6 dit ligu goi 14 Co sé thong tin quan Iy (MIB). Mac dit SNMP |i m6t giao thite quan ly viée chuyén giao théng tin gitta ba thy thé trén, song nd cing dinh nghia méi quan hé client-server (chi t6). & day, nhimg chuong trinh client Ia b6 phan quan ly, trong khi client thyc hign 6 cae thiét bi th xa cé thé duge coi la server. Khi dé, co sé dit ligu do agent SNMP quan ly la dai dign cho MIP cia SNMP. 1.3.2. BO phiin quan If (manager) BO phan quan ly 14 mt chuong trinh, nhigu may tinh tram, Tay thude vo edu hinh, méi b6 phn quan li cé thé duge ding dé quan ly mét mang con, hode nhiéu bé phan quan ly cé thé duge ding dé quan ly cang mét mang con hay mét mang chung. Tuong tac thc sy gita mt ngudi str dung cudi (end-user) va bé phén quan ly duge duy tri qua dung mot hoge nhigu chuong trinh ung dung ma cing véi bo phan quan ly, bién mat bang phan cimg thanh Tram quan ly mang (NMS). Ngay nay, trong théi ky chuong trinh giao dién nguéi sir dung dé hoa (GUD, hau hét nhimg chuong trinh img dung cung cdp méi trudng cita sé chi va click chudt, thye hi ign van hanh véi bd phan quan ly dé tgo ra nhiing ban dé hoa va biéu dé cung cdp nhiing tng két hoat déng cia mang duéi dang thay duge. Qua bé phan quan ly, nhimg yéu cdu duge chuyén téi mt hoge nhiéu thiét bi chin su quan ly. Ban dau SNMP duge phat trién dé sir dung trén mang TCP/IP va nhimg mang nay tigp tue Kim mang van chuyén cho phan Ién cée sn phim quin ly mang dya trén SNMP. Tuy nhién SNMP ciing cé thé duge chuyén qua NetWare IPX va nhitng co cau van chuyén khée. 5 DO én mén hge Quan ly hé théng_mang VIETHANITC 13.3. Agent Thiét bi chiu sy quan ly (Managed device): La m6t nit mang hé tro giao thire SNMP va thuge vé mang bj quan ly. Thiét bj cé nhiém vu thu thap théng tin quan ly va luu trit 48 phue vy cho hé théng quan ly mang. Nhing thiét bj chju sy quan ly, di khi duge goi 1a nhimg phan tir mang, c6 thé 1a nhimg b6 dinh tuyén va may chu truy cap- Access Server, switch va bridge, hub, may tinh hay la nhing my in trong mang. ‘M&i thiét bi chiu sy quan ly bao gdm phan mém hod phan syn (firmware) duéi dang ma phién dich nhimg yéu cdu SNMP va dap img cia nhiing yéu cdu dé. Phin mém hoac phan sun nay duge coi 1a mét agent. Mac di mdi thiét bi bat buéc bao gdm mét agent chju quan ly tre tiép, nhing thiét bi twong thich khéng theo SNMP ciing ¢6 thé quan ly duge néu nhu chang hé tr mét giao thire quan ly d6c quyén. Dé thuc hién duge diéu nay, phai gianh duge mét agent dy nhiém (proxy agent). Proxy agent nay cé thé duge xét nhu mét bd chuyén ddi giao thire vi né phién dich nhimg yéu cdu SNMP thanh giao thire quan ly déc quyén ciia thiét bj khng hoat déng theo giao thtre SNMP. Mie di SNMP chit yéu 1a giao thie dip img thim dd (poll-respond) véi nhiing yéu cau do bé phan quan ly tao ra dan dén nhiing dap img trong agent, agent cing cé kha nang dé xuéng ra m6t “dap mg ty nguyén”. Dap img ty nguyén nay 1a diéu kién canh béo tir vige gidm sat agent véi hoat dng da duge dinh nghia truée va chi ra ring da t6i nguéng dinh truéc. Duéi sy diéu khién cia SNMP, viée truyén canh béo nay duge coi 1A cai bay (trap), 1.3.4. Co sé thong tin quan Ip - MIB ‘Méi thiét bi chiu sy quan ly cé thé cé cdu hinh, trang thai va théng tin théng ké rat da dang, dinh nghia chic nding va kha nang van hanh cua thiét bi. Théng tin nay cé thé bao gém vige thiét lap chuyén mach phan ctmg, nhimg gia tri khéc nhau hu trit trong cdc file va bang ghi nhé dé ligu, b6 hé so hodc cac trudng théng tin trong hé so lwu tit nhimg bién hoac thanh phan di ligu tuong ty. Nhin chung, nhing thanh phan dé ligu nay duge coi 1a co sé théng tin quan ly ciia thiét bi chiu sy quan ly. Xét riéng, méi thanh phan dé ligu bién déi duge coi 14 mét déi tugng bi quan ly va bao gém tén, mét hodc nhiéu thuge tinh, va mOt tap cde hoat dng (operation) thye hign trén déi tugng dé. Vi vay MIB 6 DO én mén hge Quan ly hé théng_mang VIETHANITC inh nghia logi thong tin c i phi 1 thiet bj chju sv quan ly va nhimg bo tri (settings) thiét bi ma cé thé digu khién tir hé théng quan li. Cie lénh co bin trong SNMP SNMP sir dung cde dich vy chuyén tai di ligu duge cung cép bai cdc giao thie UDP/IP, Mét tmg dung ciia Manager phai nhan dang duge Agent can théng tin véi n6. M6t img dung cia Agent duge nhan dang bai dia chi IP cia né va mét cong UDP. Mét img dung Manager déng géi yéu cau SNMP trong mét UDP/P, UDP/IP chita ma nhgn dang céng nguén, dia chi IP dich va ma nhan dang céng UDP cia né. Khung UDP sé duge gui di théng qua thye thé IP ti hé théng duge quan ly, 61 dé khung UDP sé duge phan phéi béi thyc thé UDP t6i Agent. Tuong ty cdc ban tin TRAP phai duge nhan dang bai céc Manager. Cac ban tin str dyng dia chi IP va ma nhén dang céng UDP cia Manager SNMP. > SNMP sit dung 3 lénh co ban la Read, Write, Trap va mét sé lénh tay bién dé quan ly thiét bi. * Lénh Read: Duge SNMP ding dé doe théng tin tir thiét bj. Céc thong tin nay duge *cung cp qua cae bién SNMP luu tro trén thiét bi va duge cép nhat bei thi * Lénh Write: Duge SNMP ding dé ghi cée théng tin ién SNMP bang cach thay déi gid tri cde © Lénh Trap: Ding dé nhan cae sy kién giti tir thiét bi dén SNMP. Mi khi c6 mét si kign xay ra trén thiét bj mét lénh Trap sé duge giri ti NMS. SNMP dicu khién, theo déi thiét bj ing cach thay déi hodc thu thép théng tin qua cde bién gid tri liu trén thi Jat trén thiét bj tuong tac véi nhimg chip diéu khién hé try SNMP |. Clic Agent cai Jay ndi dung hoc viét lai ndi dung. 7 DO én mén hgc Quan ly hé théng_mang ‘Tram quiin tr] SNMP Ug dang quiet jetRequest NesiRequest SetRequest GetReponse SNMP Manager Cie ‘UDP [ee Ung dung quan tr VIETHANITC SNMP Agent (Cae tai nguyén dug quia tr Cae di trom urge SNMP quan tei z 2) 2 32 2 aig & | SNMP Agent thong bio WP SNMP iP Cie gino thie pphu thuds mang Hinh 1-3 M6 hinh giao thitc hoat dng SNMP. MANAGER, Get, Set Get-next, Get-bul Response NETWORK AGENT > ‘Response Trap Inform ‘Note 1; Inform is only allowed for dual agent-mnanager entities Note 2: Get-bulk and Inform have been added in SNMIPV2 Hinh 1-4 Hoat dng cia giao thie SNMP 8 DO én mén hge Quan ly hé théng_mang VIETHANITC 1.4. Quin Ii lien Ige gitta management voi cae agent Nhin trén phuong dign truyén théng, nha quan li (manager) va cdc tée nhdn (agent) cfing 1A nhimg ngudi sir dung, sir dung mét giao thie ting dung. Giao thire quin ly yéu cau co cl é van tai dé hé trg tuong tac gitta cac tac nhén va nha quan ly. Management trude hét phai xc dinh duge cde agent ma né muén lign lac. ¢6 thé a chi IP cia né va céng UDP duge gan cho né, h SNMP vio xée dinh duge img dung tic nhan bing Céng UDP 161 duge dinh rigng cho cae agent SNMP. Management g6i 1d m6t phong bi UDP/IP. Phong bi ndy chita céng ngudn, dja chi IP dich va céng 161, Mot thye thé IP tai ché sé chuyén giao khung UDP t6i hé théng bi quan ly. Tip d6, mét thyc thé UDP tai ché sé chuyén phat né téi cdc agent. Tuong ty nhu vay, Iénh TRAP ciing can xac dinh nhimg management ma no can lién hé. Ching sir dung dia chi IP cing nhu céng UDP danh cho mamagement SNMP, dé li céng 162. Co ché van chuyén théng tin gitta management va agent Vie Iva chon co ché van chuyén cé tinh tryc giao véi giao thirc truyén théng dé. SNMP chi dai hoi co ché truyén tai khéng tin cay dit ligu dé (datagram) dé trayén dua cde PDU (don vi dit ligu giao thitc) gitta management va cdc agent. Digu ndy cho phép st anh xa cia SNMP téi nhiéu nhém giao thitc. M6 hinh van chuyén datagram giam duge d6 phite tap cia 4nh xa ting van chuyén. Tuy nhién, van phai nhan thite thdy sy tham gia ctia mét sé Iya chon tang van chuyén. Cac ting van chuyén khée nhau cé ir dung nhiéu ky thugt danh dia chi khée nhau. Cac ting van chuyén khde nhau cé thé dua ra nhing han ché quy mé cia PDU. Anh xa tang van chuyén cé trach nhigm phai xit ly cde vin dé danh dia chi, han ché quy mé PDU va m6t sé tham sé tang van chuyén khéc. Trong phién ban thir hai cia SNMP, ngudi ta sir dung kinh nghigm dé lam sc nét va don gian héa qué trinh anh xa t6i cde chudn van chuyén khée nhau. Giao thre quan ly duge tach khéi méi truéng van chuyén mét cach tryc giao, diéu nay cing duge khuyén Khich sir dyng cho bit ctr nhém giao thite nio, 1.6. Bao vé truyén thang lién Igc gitra management va cic agent khdi sy c6 Trong diéu kign mang thiéu én dinh va thidu dé tin cay thi sé lién lac quan ly cang trénén quan trong. Lam thé nao dé cde management lién lac véi cde agent mét each tin 9 DO én mén hge Quan ly hé théng_mang VIETHANITC cay? Vice SNMP sir dung co che UDP de licn Ige da co nghia 18 thicu di do tin cdy. SNMP hoan toan dé lai cho chuong trinh management chiu trach nhiém va xtr ly viée mat thong tin. Cée Ignh GET, G NEXT, va SET déu duge phic dip bang mot Iénh GET- RESPONSE. Hé théng cé thé dé dang phat hién ra viée bi mat mét Iénh khi khong nhan duge Iénh tra lai, Né c6 thé lap lai yéu cdu dé mét lin nia hoae c6 nhimg hanh déng khac. Tuy nhién, cdc ban tin TRAP do agent tao ra va khéng duge phtic dap khang dinh. Khi lénh TRAP bj that lac, cac chuong trinh agent sé khéng biét vé diéu do (tat nhién la management cing khong hay biét vé diéu nay). Théng thuéng cée ban tin TRAP_ mang nhing théng tin hét site quan trong cho management, do vay management cn cha ¥ va cdn bao dim vic chuyén phat chting mét cach tin cdy. ‘M6t cau hoi dat ra 1a lam thé ndo dé chuyén phét cdc ban tin TRAP trinh mat mat, that lac? Ta cé thé thiét ké cho cdc agent lap lai ban tin TRAP. Bin sé MIB cé thé doc sé Jan lap lai theo yéu cau. Lénh SET cia management cé thé dat cdu hinh cho bién sé nay. C6 mét cach khdc 1a agent cé thé lap lai lénh TRAP cho dén khi management dat bién sé MIB dé cham ditt sy 6, Hay ghi nhé rang, ca hai phuong php trén déu chi cho ta nhimg giai php timg phan. Trong truémg hop tha nhat, sé lan lap lai co thé khéng di dé dim bao lin lac mét cach tin cy. Trong truémg hgp thir hai, m6t su cé mang cé thé dan dén viée hang loat ban tin TRAP bi mit tiy thuc vao téc d6 ma cdc agent tao ra chang. Diéu nay lam cho sy cé mang tré nén tram trong hon. Trong ca hai truéng hgp, néu ta can chuyén phat nhing bin tin TRAP t6i nhigu management, thi cé thé xdy ra tinh trang khong nhdt quan gitta céc management hodc xay ra hién tugng that lac théng tin rat phir tap. Néu cdc agent phai chiu trach nhiém vé thiét ké cho viée phye héi nhimg ban tin TRAP thi cang Lim ting thém d§ phite tap trong vige quan ly cée agent trong méi truong da nha ché tao. Ngudi ta cing da theo dudi cai tién co ché xt ly ban tin sw +ho phién ban thit hai cua SNMP. Thir nhat la don nguyén TRAP duge bé di va thay thé né bang mét lénh GET/RESPONSE khéng yéu cau. Lénh nay do agent tao ra va chuyén dén cho “management bay” tai cong UDP-162. Diéu nay phan anh mét quan diém 1a nha quan ly su c6 c6 thé théng nhit cdc ban tin sy c6 réi tra lai cho cde yéu cdu do. Bang cach bé di mOt don thé, giao thie duge don gidn héa, Ngudi ta efing bé sung mot co so thong 10 DO én mén hge Quan ly hé théng_mang VIETHANITC tin quan Ty dae bigt TRAP MIB de thong nhat vie xi ly sy c0, cdc management nhan ban tin vé cde sy cé nay va viée lap lai dé cai thién d6 tin cay trong chuyén phat théng tin. 1.7. Cae phuong thie etia SNMP Giao thite SNMPv1 cé 5 phuong thre hoat dong, twong img véi 5 loai ban tin nhu. sau: Ban tin/phufdng thife | M6 ta tacdung GetRequest Manaver oi GetRequest cho agent dé yéu Gu agent cung cp thing tin nio dé dvs vo ObjectID (trong Geiftequest o6 chia O1D) GetNextRequest Manager olf GetNextRequest cé chia mbt ObjectID cho agent d& yeu cau cung cp thing tin nm ké tp ObjectiD dé trong MiB, setmequest Manager gif Setequest cho agent dé dt qi tr cho di tong cla agent éyavdo ObjectID eaneipiiie ‘Agent gli GetResponse cho Manager G€ wa Idi khi nhin dave GetRequest/GetNextRequest Trap ‘Agent ty dng ali Trap cho Manager khi cb mOt sy kién xay ra doi véi mgt cbject nao dé trong avent Méi ban tin déu cé chita OID dé cho biét object mang trong né Ia gi. OID trong GetRequest cho biét né muén ldy théng tin cia object nao. OID trong GetResponse cho biét né mang gid tri cha object nao. OID trong SetRequest chi ra né mudn thiét lap gid tri cho object nao, OID trong Trap chi ra né thong bao sy kign xay ra déi véi object nao. 17.1 GetRequest Ban tin GetRequest duge manager gui agent dé lay mét théng tin nao dé. Trong GetRequest 6 chita OID cia object muén lay, VD : Muén lay théng tin tén cua Devicel thi manager giri ban tin GetRequest OID=1,3.6,1.2.1.1.5 dén Device, tién trinh SNMP agent trén Devicel sé nhan duge ban tin va tao ban tin tra 16 Trong mét ban tin GetRequest cé thé chita nhigu OID, nghia la ding mét GetRequest cé thé lay vé cing lic nhiéu théng tin. 1.7.2. GetNextRequest Ban tin GetNextRequest cting ding dé ldy théng tin va cling cé chita OID, tuy nhién né ding dé ldy théng tin cia object nim ké tigp object duge chi ra trong ban tin. 1 DO én mén hge Quan ly hé théng_mang VIETHANITC Tai sao phai co phuong thire Go 7 Nhw ban da biet khi doc qua nhing phan trén : m6t MIB bao gém nhiéu OID duge sip xép thir tw nhung khéng lién tuc, néu biét mt OID thi khéng xéc dinh duge OID ké tiép. Do dé ta cin GetNextRequest dé lay vé gid tri cia OID ké thye hign GetNextRequest lién tuc thi ta sé duge toan b6 théng tin ciia agent. SetRequest Ban tin SetRequest duge manager giti cho agent dé thiét lap gid tri cho mét object nao dé, Vidy > Co thé dat lai tén cha mét mdy tinh hay router bing phan mém SNMP manager, bing céch gui bin tin SetRequest 6 OID 1 1.3.6.1.2.1.1.5.0 (sysName.0) va c6 gid tri la tén méi can dat. > C6 thé shutdown mét port trén switch bang phan mém SNMP manager, bang cach giri ban tin ¢6 OID 1a 1.3.6.1.2.1.2.2.1.7 (ifAdminStatus) va c6 gid tr) 142 7. Chi nhiig object cé quyén READ_WRITE méi cé thé thay déi duge gid tri. 1.7.4, GetResponse M&i khi SNMP agent nhan duge céc ban tin GetRequest, GetNextRequest hay SetRequest thi né sé giti i ban tin GetResponse dé tra 16i, Trong ban tin GetResponse 6 chita OID cia object duge request v: { ca object dé, 1.7.5. Trap Ban tin Trap duge agent ty dng giti cho manager mdi khi c6 su kign xy ra bén trong agent, cde sy kign nay khong phai la cde hogt dGng thudng xuyén eiia agent ma 1a mang tinh bién cd. Vi du : Khi cé mét port down, khi cé mét ngudi ding cde sit login kh6ng thanh céng, hoge khi thiét bj khoi dong lai, agent sé gui trap cho manager. Tuy nhién khéng phai moi bién cé déu duge agent giti trap, cing khéng phai moi agent déu giti trap khi xay ra cling mét bién cd. Vige agent giti hay khéng giti trap cho bign c6 ndo la do hing sn xudt device/agent quy dinh. 12 DO én mén hge Quan ly hé théng_mang VIETHANITC Phuong thie trap 1a doc lap voi cde phwong thie requestresponse. SNMP request/response ding dé quan ly con SNMP trap ding dé canh béo. Nguén giti trap goi la Trap Sender va noi nhan trap goi ld Trap Receiver. Mét trap sender c6 thé duge cau hinh dé giti trap dén nhigu trap receiver ciing hic, C6 2 loai trap : trap phé bién (generic trap) va trap dic thi (specific trap), Generic trap duge quy dinh trong cdc chuan SNMP, con specific trap do ngudi ding ty dinh nghia (ngudi ding & day 1a hang sin xudt SNMP device). Loai trap la m6t sé nguyén chita trong ban tin trap, dya yao dé ma phia nhén trap biét ban tin trap cé nghia gi. Theo SNMPv1, generic trap cé 7 loi sau : coldStart(0), warmStart(1), linkDown(2), linkUp(3), authenticationFailure(4), cgpNeighborloss(5), enterpriseSpecifie(6) Gia tri trong ngodc 14 ma sé cia cdc loai trap. Y nghia ciia cdc ban tin generic-trap hu sau : + ColdStart: théng bao rang thiét bi giti ban tin nay dang khéi déng lai (reinitialize) va cau hinh cia né cé thé bi thay déi sau khi khoi dng. + WarmStart; théng bao ring thiét bj giri ban tin nay dang khéi dong lai va gitt nguyén cau hinh ci. + LinkDown: théng bao ring thiét bi giti ban tin nay phat hién duge mét trong nhiing két néi truyén thong (communication link) cua né gap 1éi. Trong ban tin trap cé tham s6 chi ra iffndex cia két ndi bi 18. + LinkUp: théng bdo ring thiét bj gii ban tin nay phat hién duge mét trong nhing két néi truyén théng cia né da khéi phue tré lai. Trong ban tin trap c6 tham sé chi ra iflndex cha két néi duge khéi phyc. + AuthenticationFailure: théng bao rang thiét bi ban tin nay da nhgn duge mt ban tin khéng duge chimg thy thinh céng (ban tin bj chimg thye khéng thanh cong 6 thé thude nhigu giao thie khéc nhau nhu telnet, ssh, snmp, fip, ...). Thong thudmg trap loai nay xay ra 1a do user dang nhap khéng thin céng vio thiét bj, + EgpNeighborloss: thong bao ring mét trong sé nhimg “EGP neighbor” 8 cla thiét bi giti trap da bi coi 14 down va quan hé déi tac (peer relationship) gitta 2 bén khéng con duge duy tri 13, DO én mén hge Quan ly hé théng_mang VIETHANITC + EnterpriseSpecific : thong bao rang ban tin trap nay khong thude cdc kicu generic nhw trén ma né 1a mt loai ban tin do ngudi ding ty dinh nghia. Ngudi ding cé thé ty dinh nghia thém cdc loai trap dé lam phong pha thém kha nang cénh béo cia thiét bj nhw : boardFailed, configChanged, powerLoss, cpuTooHigh, V.v.... Ngudi ding ty quy dinh ¥ nghia va gid tri clia ede specific trap nay, va di nhién chi nhimg trap receiver va trap sender hé try cling mét MIB méi cé thé hiéu ¥ nghia cia specific trap, Do dé néu ban ding mét phan mém trap receiver bat ky dé nhn trap cia cdc trap sender bat ky, ban c6 thé doc va hiéu cdc generic trap khi ching xay ra; nhung ban sé khéng hiéu ¥ nghia cde specific trap khi ching hign lén man hinh vi ban tin trap chi chira nhimg con sé. Manager ‘Agent Manager | GetReauest H t eee st ‘ : GetResponse=-—<—<$ $$» Se —______Estfsponse i« Tap ; ; gy | cetnentRequest : tap ‘ 4 GetResponse | 7 | SetRequest, ‘ Hinh 1-5 Hinh minh hoa cae phuong thie SNMPv1 Déi véi cic phuong thite Get/Set/Response thi SNMP Agent ling nghe & port UDP 161, con phuong thitc trap thi SNMP Trap Receiver ling nghe & port UDP 162. 1.8. Cae co ché bio mat cho SNMP Mt SNMP management station c6 thé quan ly/gidm sdt nhigu SNMP clement, théng qua hoat dng giti request va nhén trap. Tuy nhién mot SNMP element cé thé duge cdu hinh dé chi cho phép céc SNMP management station no d6 duge phé quan ly/giém sit minh, Cae co ché bio mat don gidn nay gdm cé : community string, view va SNMP access control list. 14 DO én mén hge Quan ly hé théng_mang VIETHANITC 1.8.1. Community string Community string 14 mét chudi ky ty duge cai djt giéng nhau trén cd SNMP manager va SNMP agent, dong vai tro nhu “mat khdu” gitta 2 bén khi trao déi dit ligu. ‘Community string cé 3 loai : Read-community, Write-Community va Trap-Community. Khi manager giti GetRequest, GetNextRequest dén agent thi trong ban tin giti di 6 chita Read-Community. Khi agent nhjin duge ban tin request thi nd s€ so sinh Read- community do manager gti va Read-community ma né duge cai dit. Néu 2 chudi nay giéng nhau, agent sé tra 1i; néu 2 chudi ndy khdc nhau, agent sé khéng tra 10i. + Write-Community duge ding trong ban tin SetRequest. Agent chi chap nhan thay ddi dir ligu khi write-community 2 bén giéng nhau. + Trap-community nim trong ban tin trap cia trap sender guti cho trap receiver. Trap receiver chi nhén va Iu trét ban tin trap chi khi trap-community 2 bén giéng nhau, tuy nhién cing cé nhieu trap receiver duge cau hinh nhén tat ca ban tin trap ma khéng quan tam dén trap-community. + Community string 6 3 Io; nhu trén nhung cing mot lo: string khae nhau. Nghia 1a mét agent c6 thé khai béo nhiéu read-community, nhiéu write- ‘community. Trén hau hét hé théng, read-community mac dinh la “public”, write-community dinh 1a “public” Community string chi l& chudi ky tyr dang cleartext, do dé hoan toan ¢6 thé bi nghe mic dinh la “private” va trap-community Ign khi truyén trén mang. Hon nia, cde community mie dinh thuéng li “public” va “private” nén néu ngudi quan tri khéng thay déi thi ching c6 thé dé dang bi do ra. Khi community string trong mang bj 19, mot ngudi ding binh thudng tai mot my tinh ndo 46 trong mang cé thé quan ly/gidm sit ton b6 cdc device cé cing community mi khéng duge sx cho phép ciia ngudi quan tri. 1.8.2, View Khi manager ¢6 read-community thi né cé thé doc toin bé OID cia agent. Tuy nhién agent cé thé quy dinh chi cho phép doc mét sé OID 6 lién quan nhau, tite 1 chi doc duge mét phan cia MIB. Tap con cia MIB nay goi la view, trén agent cé thé dinh 15 DO én mén hge Quan ly hé théng_mang VIETHANITC nghia nhicu view. Vi du : agent c6 thé dinh nghia view interfaceView bao gom cae OID lién quan dén interface, storageView bao gdm cde OID lién quan dén Iuu tr, hay AllView bao gém tat ca cde OID. M6t view phai gin lién véi m6t community string. Tuy vio community string nhgn duge 1a gi ma agent xt ly trén view tuong (mg. Vi du : agent dinh nghia read- community “inf” trén view interfaceView, va “sto” trén storageView; khi manager giti request lay OID ifNumber véi community la “inf” thi sé duge dap img do if{Number nam trong interfaceView; néu manager request OID hrStorageSize véi community “inf” thi agent sé khéng tra 1di do hrStorageSize khéng nim trong interfaceView; nhung néu manager request hrStorageSize véi community “sto” thi s¢ duge tra ldi do hrStorageSize nim trong storageView. Vige dinh nghia cae view nhu thé nao tity thuge vao timg SNMP agent khée nhau. C6 nhiéu hé théng khéng hé trg tinh nang view. 1.8.3. SNMP access control list Khi manager giti khéng ding community hode khi OID can lay lai khéng nam trong view cho phép thi agent sé khéng tra di, Tuy nhién khi community bj 16 thi mot manager nao 6 van request duge théng tin. Dé ngan chin hoan toan céc SNMP manager khéng duge phép, ngudi quan tri cé thé dig dén SNMP access control list (ACL). SNMP ACL li mt danh sch cde dia chi IP duge phép quan ly/giém sat agent, né chi 4p dung riéng cho giao thite SNMP va duge cai trén agent, Néu mt manager c6 IP khong duge phép trong ACL giti request thi agent st khong xirly, dii request 6 community string 14 ding. Da sé cdc thiét bi tuong thich SNMP déu cho phép thiét lip SNMP ACL. 1.9. CAu trite ban tin SNMP SNMP chay trén nén UDP. Céu tric cia mét ban tin SNMP bao gém : version, community va data 16 DO én mén hge Quan ly hé théng_mang VIETHANITC Ethernet frame IP packet | UDP packet SNMP packet version Community string Data (GetRequest PDU, GetNextRequest PDU, SetRequest PDU, GetResponse PDU, Trap PDU) Hinh 1-6 Cau trie ban tin SNMP + Version : vi = 0, v2e = 1, v2u=2, v3 =3 Phin Data trong bin tin SNMP goi i PDU (Protocol Data Unit). SNMPv1 cé 5 phuong thite hoat dng tuong img 5 logi PDU. Tuy nhién chi ¢6 2 loai dinh dang ban tin 1a PDU va Trap-PDU; trong dé céc ban tin Get, GetNext, Set, GetResponse c6 cing dinh dgng la PDU, cén ban tin Trap ¢6 dinh dang 1a Trap-PDU. 17 DO én mén hge Quan ly hé théng_mang VIETHANITC CHUONG 2. TONG QUAN VE PHAN MEM GIAM SAT VA QUAN TRI MANG SOLARWINDS 2.1. Gidi thigu vé solarwinds Solarwinds 14 b6 céng cu hé tro dic lye cho nha quan tri nham phan tich, gidm sat ¢ thyc thi trén hé théng mang. Phan én cdc céng cu cing nhur cde céng cu quan ly vi trong solarwinds déu sir dung giao thire SNMP dé truyén thong, Solarwinds bao gdm 32 céng cy duge chia 1am 6 phan ln. Y Network Discovery Tools Y Ping Diagnostic Tools Y Tools for Cisco Routers YIP Address Management Tools Y Fault & Performance Monitoring Tools Y Miscellaneous Tools 2.2, Cée ehite ning quan trj cia Solarwinds. 1, Performance management: Quan ly vige thye thi cia hé théng, > D6 tin cay. > Thoi gian truyén > Tinh higu qua > Céng cy sir dung: Network performance monitor ic thong s6 cau hinh cia hé thong. 2. Configuration management: Quan ly > Install (Cai dat) > Update (Cap nhat) > Extension (Me rng) > Cong cu sit dung: Network performance monitor, DNS Analyser va DNS/Whois Resover 3. Fault management: Quan ly Idi cho hé théng mang. > Preactive: Khe phye khi e6 sy ¢6 xay ra. & Proactive: Tac déng dén hé théng truéc khi hé théng xay ra 1i (diéu nay dua yao kinh nghiém cia nguéi quan tri mang) > Céng cy sir dung: Network performance monitor 4. Security management: Quan ly bao mat hé théng mang. > Packer Filter: Loc goi dit ligu 18 DO én mén hge Quan ly hé théng_mang VIETHANITC > Access Control: Dieu khicn truy cp. > Tai nguyén mang. > Service: © Xéc thy ai muén ding tai nguyén © Giéi han quyén cho tt cd ngudi ding sir dung tai nguyén. © Bat ky dit ligu luu tri nao cing duge c4p quyén. * Tinh toan ven dif ligu trén duéng truyén. * Tinh khong cl > Céng ey sit dung: cai ciia vige chia sé. * Port Scanner: Xée dinh trén Agent c6 nhimg dich vu nio dang chay thong qua sé higu céng cia dich vu. * SNMP Brute Force Attack: Cong cy quét community cla Agent. 5. Accounting management: Quan ly tai khon ngudi ding, > Xéc thyc. > ‘ap quyén. > Giam sat quyén han trén Agent. > Céng cy sit dung: IP Network Browser 2.3. Cai dit va cu hinh Solarwinds Orion NetWork Performance Monitor (NPM) 2.3.1. Gi6i thigu vé Orion Network Porformance Monitor (NPM). Orion Network Performance Monitor (Orion NPM) cung ep toan dign vé ede 151 va higu sudt quan ly mang véi sw phat trién mang nhanh chéng va mé rong mang luéi gidm sit véi nhu cdu cia ban. Cho phép ban thu thép va xem mot cdch kha dung véi thai gian thye va sé ligu théng ké tryc tiép tir trinh duyét web ca ban. Trong khi theo dai, thu thp va phdn tich di ligu tir thiét bi dinh tuyén (router), chuyén mach (switch), tuéng Ira (firewall), may chii (server), va bat cif thiét bj hd try SNMP. Orion NPM gidip cho ban don gian, dé sir dung.. Orion NPM cé thé mit it thoi gian dé trién khai va khéng can thiét phai c6 chuyén gia tu van. Orion NPM cung cap kha nang hién thi nhanh chéng va hiéu van dé cia cdc thiét bi mang (Network device), may chu (server) va ic ting dung trén mang cia ban. 19 DO én mén hge Quan ly hé théng_mang VIETHANITC ¥ Tai sao lai sir dung Orion NPM? * Orion NPM gitip ban thco déi sé ligu higu sudt quan trong sau day thiét bi trén mang. 6 = Mang ludi ing sut sir dung bang thong = CPU va sit dung bé nhé = Phat hign 16i va loai bé = D6 tre Mang. * Node, giao dién, va tinh trang khdi hrgng, «= Khéi luong sit dung. © Cung cap kha nang gidm sat, day di cdc tay chon hoan toan dya trén giao dign Web, cdc cinh bao, béo cdo linh déng, va kha nding mé rong linh hoat. > Nhimg Igi ich ca NPM. = Cai dat nhanh. " Dé hiéu va dé ir dung. = Gia ca phai chang. ™ Cung cdp kha nang mé rng. 2.4, Cai dit va cfu hinh 2.4.1.1. Yéu cau can thiét truéc khi cai dat. a. Yéu cau vé phan cimg may chi. Yeu cau din ly tir 100 500< d6i tugng < | Lén hon 2000 déi 2000 tugng 2.0 GHz, 2.4 GHz, 3.0 GHz, Ghi chit: Diing 66 xit ly kép (Dual processor) Dung lugng vat lf 2GB 5GB 20GB t6i thiéu Ghi chit: can tt nhat TGB dung long trong dé cai dat Orio NPM va pai cai dat vao cing 6 hé thong noi dang lieu trie hé diéu hainh BQ nhé chinh 3GB 4GB 4GB Bang 2-1 Yéu cau phan cimg may chil truée khi cai dat Solawinds b. Yéu cau vé phan mém. Phan mem Yeu chu DO én mén hge Quan ly hé théng_mang VIETHANITC Opera System ~ Windows Server 2003 hoe 2008, vai IIS 6 ché d6 32-bit.IIS phai duge cai Nén quan trj cc bg dé dam bio day dit chire nang ctia cong cy Orion NPM. - Lum ¥: SolarWinds khuyén nguéi diing khéng nén cai dt Orion NPM trong méi trang Windows XP, Windows Vista ho’c Windows 7. May chi WEB bin 6.0 va cao NET Framework ~ Phién bin 3.5 tro len. Dich vu Trap SNMP ~ Cac thanh phan, cOng cu gidm sat va quan ly hé diéu hinh Windown Trinh duy@t web - Internet Explorer phién ban 6,0 tr lén hodc Firefox phién ban 3.0 tré én. Bang 2-2Yéu cu phin mém truée khi dit Solawinds c. Yéu cau vé co sé dit ligu. Yeu chu Quin iy ti 100°] 500 Mot sé luu y: * Truée khi cdi NPM phai cai. .Net Framwork phién ban 3.5 tré Ién truée. * Cai djt 1S true khi ban cai NPM, ma chit yéu i World Wide Web Service (www), Simple Network Management Protocol (SNMP) vi WMI SNMP Provider 16 nhat nén_ cai dit NPM va hé dicu hanh 1a mét. ‘a0 6 dia hé thong, ia logic liu file » Nén tit phan hé tro IPVv6 déi véi cdc hé diéu hanh Windows Server 2008, Windows Vista, or Windows 7 truéc khi cai dat. > Qué trinh cai dat NPM: ‘Tim dén file thye thi right click + open. Hinh 2-1 Giao dign bat dau cai dat NPM © Dién email cia ban vio + Continue Se [franceterancpometccad fae Please confirm the email address you provided when regstering to download Seen aed ea yout precast seer, educations aera, and other account communicators. Irstalaionraqures 4 ‘ald eral address Hinh 2-2 Dién Email dé dang ky truéc khi bit dau cai dat » Bat dau cai dat. Dé An mén hgc Quan ly hé théng_mang VIETHANITC Hinh 2-3 Bat dau cai dat * Chon dung din dé Iuu thu myc cai dit. Nén dé ro ‘Sedot fer wha otup wt ell he Hinh 2-4 Chon dug dan dé luu thir mye cai dat # Tay chon cdi dat. + Express Install: Cai dat khi khéng c6 SQL Server database sir dung cling véi NPM. + Advanced Install: Cai dt NPM sit dung SQL database dang hign hanh. "SSec to remesre f Once ten Hinh 2-6 Qué trinh cai dit ede géi cu hinh * Cai dat thanh céng. Nhom I - MMO2A— Nguyén Hoang — Ilia Nghj— Tan Vigt Trang VIETHANITC Completing the Orion Configuration Wiard ‘Youhave ecerly camped the sanigrion ew =e ara Se 1 AMSetacs oe ae nang Chek Fini to i onion wed % Hinh 2-7 Cai dat thanh céng Sau khi edi dat xong st xudt hién giao dign quan ly ctia Solan os PS mes Stat © + ee a Tecan Pe Asn grt so i Stig > Aen aap Hinh 2-8 Giao dign ding nhap quan ly Solarwinds 2.4.1.3. Cau hinh Dé cdu hinh chon Star + Program ~ Solarwinds Orion ~ Configuration and Auto-Discovery + Configuration Winzad. 2s ‘D6 an mén hgc Quan ly hé théng_mang VIETHANITC eee saat te + ame 1g mento SB ottattcren 1D taunettc misao ce Ronde ster Gp ace Cd Bi remaseisera ant + tamara ite © tehetsmet 5 stom 9 63 Sram 206 ie Ow. Ce Bid cwrnctcone Hinh 2-9 Dung din dén tign ich cdu hinh Cée Iva chon edu hinh. Wolcomo to th Oran® Gnfguaton Wind wea e Pattee Fo) Selec ene of rate Oven compen 0 mod (Dalaba Webste F Sewane (kk Neo corm, Hinh 2-10 Lya chon céc thanh phan duge cdu hinh > Céu hinh Database, * SQL Server: Chon Server SQL. * Use Windows Authentication: Chimg thye bing Windowns * Use SQL Server Authentication: Chimg thye bing SQL Server sir dung cor 86 dit ligu géc va password dé dang nh§p. 26 Dé én mén hge Quan ly hé théng mang VIETHANITC Database Settings a re) SL Sener [focsSOLARWINDS_OAION = Use Wire Aurion Use SR Senordutentaaion Use omg database nae and passin Loge: [ScisiinsOrrDaisbooe a hat ce of adbertcaon shod? ere aed Reveal Hinh 2-11 Lya chon kiéu chimg thye » Tiy chon tao méi co sé dit ligu hode la sit dung co sé dit ligu dang hign hanh, ca Database Settings 4 ay FAST SHS DeROSIER Ft 7 Chote anew databaxe Ne Clatabave © Use an sisi database EnvingDerabace — [SalaWindsOron o soe _|[a canes _| Hinh 2-12 Sir dung CSDL hign hanh Nhom 1 - MMO2A~ Nguyen Hoang —Ilttu Nebi— 27 DO én mén hge Quan ly hé théng_mang VIETHANITC > Cau hinh Website quan ly. # IP Address: dign dja chi IP ctia Web server. © Port: Sé higu céng truy cap ciia website. * Website Root Directory: Chon dudng dan thr mye géc Iuu website, Nén é mac dinh. # 2 tity chon bén dudi: = Néu chon yes khi ding nhap vio web Consol phai chimg thc ngudi ding. = Néu chon no thi khi dang nhp khéng cdn phai chimg thye ngudi ding. on = aes te oe Dozas ato eras oder xn img Woe iteration eh Dn Web Carce? Toe Monsoon vnginsonshuheracaon valde manne Yer Erle nscrate ogh wing redo uberewen ee veel Hinh 2-13 Lya chon tiy chon kich hoat hay khéng kich hoat chimg the > Chon cdc dich vy muén cai dat. 28 DO An mén hgc Quan ly hé thon; VIETHANITC Service Setings Hinh 2-14 Lya chon dich vy muén cdi dit Qué trinh tdi web vio SQL Server. Két thic qué trink nay 1a céng vige edu hinh think Configuring Orion a cong. Hinh 2-15 Qué tinh cdu hinh Nhom I - MMO2A— Nguyén Hoang — Ilia Nghj— Tan Vigt Trang 29 DO én mén hge Quan ly hé théng_mang VIETHANITC CHUONG 3. HUONG DAN SU’ DUNG CAC TINH NANG CHINH TRONG SOLARWINDS ORION NETWORK PERFORMANCE MONITOR (NPM) 3.1. Dang Nhap Lan Dau Tién User name: Fm Hinh 3-1 Giao dign ding nh > Nhap User name va password dé vao trang gi dign chinh cia chuong trinh, > Ding User name: Admin va dé trong password cho lan dang nhap dau tién. Sau Khi ding nh§p ban c6 thé di mt Khdu va thém user tiy ¥. 3.2. Giao Dign Chinh Cia Chwong Trinh: Orion Summary Home eee [BROUPED By VENDOR, STATUS Se@Lrenoon ‘All Triggered Alerts Hinh 3-2 Giao dign chinh cia chuong trinh > Home: hién thj cdc théng tin chung vé hé théng mang cia ban. Nhu cde su ‘h 10 sy kign ding quan tam (top 10), cde canh béo,... 30 DO én mén hge Quan ly hé théng_mang VIETHANITC > Network: hicn thy tinh trang cia cde Node mang cia he thong. tw day eo thé gidm sat hé théng mét cach téng thé nhat. 3.3. Gi6i Thigu Giao Dign Home: 3.3.1. Summary G tab nay ta cé cdi nhin tong quan vé cdc sy kién cua hé thong. > Cé thé biét téng cong ede logi sy kign 6 “Event Summary” Event summary tr Ha 1 heeseneng Papen Hinh 3-3 Tinh nang théng ké sy kign > Cé thé tim kiém node 6 “Search Nodes” Search Nodes ovr] se [nosenamne 5] [sat Hinh 3-4 Tinh nang tim kiém > Cé bang xép hang 25 sy kién sau cing. Last 25 Events or HEF ust ands Sarin se an fj NMETSISLST IES estas pps en ne aa aw wer Sinem os “pret 025a0 tee eD e019 tp Sco yo2-a @ wovests nerenngcsan Raprectnee masta ane 028 A Neincomasrtnnes Dae epratnons nz ce stron vera thins ns Rene nase ‘ar Send ein eee Seen nen RDA ANNO A ‘2rraoi teatau |x) Splatter tue cones Sash ea eestor ‘em. TY soscon a2 Anomse SnsciN $25 dh Neerane sca em 12168197 ZOMG Seem ae Asse Hinh 3-5 Xép hang va théng ké cdc sy kign cua hé thong > Cé thé cé cai nhin téng quan hé théng mang véi “Map” — so dé mang. 31 ‘DO én mén hgc Quan ly hé théng_mang VIETHANITC Map ror) ae Py Hinh 3-6 So dé nhin téng quan cia mang > Cé thé quan ly Nodes véi “All Nodes” ‘ANI Nodes MANAGENODES |EDIT [HELE GROUPED BY VENDOR, STATUS @Unknown Hinh 3-7 Hé théng quan ly node > Co thé quan ly alert véi “All Triggered Alerts” AllTriggered Alerts ay Ge ALLTRIGGERED ALERTS ‘dvareed Mest (dy 300011 06 11 AM UTR, ‘sateen «dk Srowots ons ant UTR, fgets Hinh 3-8 Quan ly triggered Alerts 3.3.2. Group Quan ly cde nhém Nodes, nhém cée Alerts, nhém cée van dé. 3.3.3. Top 10 Top 10 su kién cia cdc thé loai. Ching han nhu: top 10 Nodes cudi cing gi ICMP. gi 32 DO én mén hge Quan ly hé théng_mang VIETHANITC eo) [HALF Top 10 Nodes by Current Response Time one RESPONSE TME iss @ trurra No Response sw % sive Ane ox © 100039 2s 0% @ Huns 4 me ow @ t9200-37.118 one ow © urate ome o% @ ta2sats713 ons o% Hinh 3-9 Top 10 node responed ICMP Ngoai ra cén top 10 cdc van dé khac nhu: Top 10 Nodes ko nhén duge géi tin ICMP (Ping) ‘Top 10 Nodes véi chi sé CPU gin day nhat. ‘Top 10 Nodes véi chi sé memory gan day nbét. Top 10 Nodes e6 dung lugng 6 cimg sit dung cao, © Top 10 Access point cé s6 client két néi nhiéu nhat, Ow 6 Top 10 nay, ching ta cé thé biét mét vai Nodes, interface, AP,... vi nhéng chi , “bat thuéng” nhat. ° oo ° 36 cao nhi 6 thé dura ra huréng giai quyét. 3.3.4, Event (sw kign) Trong tab nay cé 14t cd cae su kién cila tat c& cdc mang dang quan ly. Cé top cdc su kign gan day nhat.., c6 thé chon mang minh muén xem sy kién, loai sy kign, thoi gian xay ra su kign,.. Event From AllNetwork Davies “Today oe) PN orawana, WOACHIGEE Tipo [pensceRe] OR [niorae wr Ewe nomsee Tine Petod ete Stow/=I— Everts Show Cleared Evers ames - Y7ON Moda 192.0187 parka oss es rapped om above OB a be 5% wu2uaM Baiccurenyo - mna01 TRO a Nee 102108 137.1186 Uo Hinh 3-10 Théng ké sy kign cia cde mang dang quan ly 33 DO én mén hge Quan ly hé théng_mang VIETHANITC 3.5. Alerts (cinh bio) Cé thé biét cé bao nhiéu alert dang hoat déng, tim kiém alert theo yéu cdu cia quan tr vién, Nhu theo tén, theo thiét bi, Alerts “THigaered Alerts for All Network Devices (a) monn, NEWORODet —_ TypeotDeven * [anietwork Oojects =] OR [at Dede "ywos Aenea ra ston Show cree jw Aer mae Hinh 3-11 Hé théng canh bao - Alerts 3.3.6. Syslog Day nhv file log trong windows. Cé thé tim kiém log theo céc yéu cau cia quan tri vién, Nhu theo thai gian, dia diém(nodes, interfaces,...), logi log, 3.3.7. Trap (bay 1éi) Theo doi cde Trap dang thye hign. Sau khi tgo Trap thi quan tri vién c6 thé theo doi tai day. N6i chung, trong tab Home quan tri vién cé thé theo doi, tim kiém cac théng tin vé hé théng mang cia minh. 3.4, Gidi thigu giao dign Network: Trong giao dign Network ¢6 cdc tab: NPM Summary, Top 10 Network, Wirel s, VSANs, Overview. Trong dé NPM Summary va Top 10 Network tuong ty trong giao dign Home nén ching ta khéng nhi 3.4.1. Wireless Quan ly vé cde thiét bi mang khéng day (AP, laptop,...). Biét duge cdc théng sé iia thiét bj dé. 34 DO én mén hge Quan ly hé théng_mang VIETHANITC Witeless Summary View iv [itsatamiy=] [~~ ee ‘Gray Access Point. IP Address Type: SSIs Channels Freese a Hinh 3-12 Quan ly thiét bi mang khéng day Wireless 3.4.2. VSAN (Virtual Storage Area Network): VSAN - Mang Iuéi khu vye Iuu trit do. Cho phép quan tri vién giém sat vé VSAN. Cig nhu nhiing tab khdc, 6 day c6 cdc chite nding nhu cho biét cdc sy kign gan day vé VSAN, VSAN nodes, . 3.4.3. Overview Diy a tab quan trong, quan ly cée nodes, céc interface Nodes Interfaces: [Noge Satus =] [rertace aie SSCS eens Hold your mouse over each Node orintsrtace Icon for details. Nodes Interfaces @ 100019 @ 192.168.137.119 @ 192 168,137 18 @ BTV.PC @ fuunghiicmnaks @ HUUNGHLPC Hinh 3-13 Trang thai cae node trong mang Nodes: © Node Status: tinh trang cia Node (up, down, warning, # IP Addres ia chi ip vita Node. * Machine Type: mé ta biéu tugng ctia nha cung cap * Average Response Time: théi gian tra Idi trung binh ctia node * Packet Loss: phan tram cac goi dit ligu bi mat © CPU Load: phan tram céng suat sir dung CPU * Memory Used: phan tram b6 nhé Ram phai sir dung Interfaces: 35, many VIETHANITC * Interface percent utilization: phan tran interface str dung, * Interface type: Loai interface * Interface errors and discards today: interface bj Idi va da logi bé trong hom nay. * Interface errors and discards this hour: interface Idi va da loai bé trong gi nay. * Interface status: tinh trang interface. * Interface traffic: Iuu lugng interface. Quan ly timg Nodes bing cach sau: right - click vao mt node, sé hign ra mot menu véi ede tinh nang nhu sau: Subret List Hide ena PU Gauge [GH] PNotnorkoronser vow system ms @ racehoute 8B Launch MD arowser ti Pha BP missrcucer uerr tH) [Enhanced Ping Dy Raskin incetface Wontar + telus Hoenn 4 NetFlow Conf quate BS Port scarcer By Netrlow Reakme @ wersronse Settings Dione GE poSsPing fe watcha $B remare vesteoo Hinh 3-14 Menu eéc tinh nang quin ly node 3.4.3.1. IP Network Browser LA mot cing cu dé phat hign ra m6t mang tuong tac, IP Network Browser ¢6 thé quét qua mét subnet va hign mét cach chi tiét cac thiét bj 6 trong subnet d6. Méi dia chi IP duge giti di trong g6i Ping. Déi véi mdi dia chi duge héi dap lai , IP Network Browser s@ tap hop duge mhidu théng tin, Céng cy nay sir dyng SNMP, M6t giao thie SNMP phai hoat d6ng duge trén thiét bj tir xa, hgp 1é dé IP Network Browser cé thé tap hgp théng tin chi tiét vé thiét bi. Dusi day 1a giao dign twong tac cua IP Network Browser Tool > Scan a Single Device : nh§p vio Hostname ciia Router, Server , Switch PC...rdi sau dé kich vio nit Scan Device dé quét. 36 DO én mén hge Quan ly hé théng_mang VIETHANITC > Scan a Subnet : ni dia chi IP va subnet mask . IP Network Browser sé queét nhiing host cing subnet mask trong mang > Scan an IP Address Range : Nhap vio dia chi IP bat dau va két thac etia day dia chi IP can quét , IP Network Browser sé quét ra tat ca cdc gid tri trong day dia chi IP bat du va két thie ( ké ca dia chi bit du va két thic ) Seana Se Ove ae SolarWinds Engineer's Edition Hinh 3-15 IP Network Browser 3.4.3.2. Trace route Khéng chi hién raluu lugng trén duéng truyén cia mang duge ldy tir may tinh dén 1 server dich hoe thiét bj khae.Né con hién thi théng tin SNMP durge chon tir thiét bj duge nhan ra.Day 14 1 céng cu dinh tuyén tim kiém manh.Théng tin vé théi gian Response va sé géi bi mat duge hign khéng chi dui dang sé ma con 1a dang thanh dé thi, on See ee Homann ease = te oe Caet ee eee Hinh 3-16 Tinh nang Trace route 37 DO én mén hge Quan ly hé théng_mang VIETHANITC 3.4.3.3. Ping Diy 14 m@t phién ban 43 hoa cia tign ich PING. Ping Tools sé gai g6i ICMP dén dia chi IP dich va tinh toan thai gian Response va s6 géi bi mat. fe Fe iat shns Help PAdiereatenoene [ETE SSCS El Te averaie, Ov lose, Onillisecomis, ne areraue, 0% Lose OQ millisecomis, re averayo, ON Lae PRG TAI Hinh 3-17 Tinh nang Ping 3.4.3.4. Enhanced ping Giam sat két ndi lién tye cita Router, Server, PC va ghi lai théi gian dép img tai nhiing thai diém that. Hinh 3-18 Enhanced ping 3.4.3.5, Port Scanner Gidm sat tir xa trang thai port trén thiét bi, Cé thé chi dinh day dia chi IP dé scan, ding nhu port dé scan. 38 VIETHANITC Sion Aes [ EI F Ue uk itotcte ea, Ending PAs [x] Part ange [F222 A Hinh 3-19 Tinh nang port scanner 3.4.3.6. Telnet Telnet dén thiét bj & xa. Thiét bi & xa phai duge thiét lap da diéu kién dé cé thé telnet dén. 3.4.3.7. Watehlt! Gidm sat server, router, web sites,... va théng bao khi cde thiét bj mang khong & trang thai san sang. es Hinh 3-20 Tinh nang gidm sat cdc thiét bj mang 3.4.3.8, Subnet list Cé thé xay dung mét danh séch cde subnet trong mang bang cdch duyét qua tat ca cdc muc trong bang dinh tuyén. Dich dén trong bang dinh tuyén phai c6 SNMP enable , va phi jt duge SNMP community s 39 ‘DO an mén hoc Quan ly hé théng_mang VIETHANITC Gene Ble Est Sibeet= He Hosta SNP Cowart Pada = Ss] _Fatwe sibs Hinh 3-21 SubnetList ~ Xay dung danh sch cdc subnet trong mang 3.4.3.9. CPU Gauge Sé giim sat b6 xit Ly duge cdi dit vio trén my Window 2000 va Router Cisco va switch. CPU cia thiét bi duge gidm sat qua giao thire SNMP. ors Select Device to Monitor Salnivinds CPU Gauge wil mertottha proceso load on \wincows 2000 machines and Cisco routes and suaches, The CEU Load ef these devices ae montored a Serpe et Margene Protocol SNMP) IP Atos ov Hoetnane FEETBES 27 ——] SNM Conmunity Suing [STS sl Hinh 3-22 CPU Gauge — Gidm sat CPU cia server va router Cisco 3.4,3.10. Real-Time Interface Monitor C6 thé hign thj nhiéu thong tin théng ké vé Router va Switch ding thai. 26 8 & semen OR Hinh 3-23 Hién thi cde théng tin vé Router va Switch 3.43.11. MIB Browser La cng cy co ban ( c6t Idi) cia ky thudt mang. N6 cho phép ngudi quan tri c6 thé truy vin 1 thiét bj & xa vé cdu hinh software hoje ld hardware qua SNMP. DO an mén hgc Quan ly hg théng_man, firmer Ee EB Behe Hy Tone rans ie 9 42W|4 Fim A, i%|0 oop) Hotere IPAs a SNMP Conary Sig 3 oaestan sae aAwindd.nec oaed *k Management Tools Sao lawn) Saree) Ez “Brame er sare2) Ebert #Bewwe Sarvs Beene fesnageer Essien losuty ere Edliinas ME 6 petranoe these and alii ME Hhovsands efor 9 Hinh 3-24 Truy van cdu hinh software hoie la hardware qua SNMP 3.4,3.12, DOS Ping Giti g6i ICMP cho nodes 6. Nhu mt Iénh ping binh thudng, CEL econo ue Ce Ree tiertey merece aU Cie restr noe See cease ferrenns orci rs CCCI Tears Hinh 3-25 Ping nodes 3.4,3.13. Remote Desktop Cho phép thye hign thao téc remote desktop dén may tinh & xa. Nhom I - MMO2A— Nguyén Hoang — Ilia Nghj— Tan Vigt 4 DO én mén hge Quan ly hé théng_mang VIETHANITC 3.5, Thye hanh giém sit mang véi Solarwinds NPM 3.5.1. Mé hinh gid lap Inset J EB g2339 Server Manager PC Hinh 3-26 M6 hinh gia Ip quan ly mang véi Solarwinds NPM Dé thye hign gidm sét véi m6 hinh gid lip nhu trén, giao thie SNMP phai duge kich hoat trén cdc thiét bi mang va thye hién cai dat phan mém Solarwinds NPM trén Server Manager chay hé digu hanh Windows server 2003 3.5.2, Cdu hink Router cisco hé tro gidm sit mang Mat dinh Router cisco khong kich hoat dich vu SNMP. Dé kich hoat, vio mode global configuration thye hign céc dong lénh sau. Demo duge thyc hign trén Router Cisco 3620. Router(config)isnmp-server community public RO Router(config)tisnmp-server community private RW Router(config)tisnmp-server chassic-id Cisco-Viethanit 42 ‘Dé an mén hoc Quan ly hé théng_mang VIETHANITC Penrose a ere teats eee Cd ree Hinh 3-27 Lénh cau hinh kich hoat SNMP trén router cisco Dé xem théng ké hoat dgng cla SNMP trén router. Thye hign g6 lénh show snmp (ererer erremer sy Cee EE re oeaecaacc tts Couette Ceaser cree) Poe eer dey Cie seterst ee ae ec Ceres rca Pere er ieee cae er sey Scr} Crea ae thee esc iated Pe eee Boe erro a ae eee ee aC R a a esc ecm L)) stents a emctoats Pe PSC ccre Mccece ir eto cere ee) ee Cpcec eres) eee eros] Corer oe Eee Cec amniny Hinh 3-28 Két qua théng ké hoat déng cla SNMP trén router cisco bang 1énh Dé gidm sat tién tinh hoat déng cia SNMP. Tién hanh g6 lénh debug snmp va g6 no debug snmp Aé tit gidm sat. Nhom I - MMO2A— Nguyén Hoang — Ilia Nghj— Tan Vigt 4B a Petercer see) Pannier ree ee eee eee ot eect aa aacca ae eereeemereres Cesc ay Creecire ee: Prpenireees Crees Ceres ay co co cr Coren) ets via co ae ry i ee Creer pond ea Hinh 3-29 Két qua debug dé giam sat SNMP trén router 5.3. The hign tim kiém phat hign thiét bi mang sie dung Network Sonar Winzad: Mue dich: Dé dé tim xem c6 nhingthiét bj ndo dang tham gia trong mang. Vio Start + Program > Solarwinds Orion + Configuration and Auto-Dis: ‘overy Network Discovery. x : - ames > Aa at ; E) Pecan acces ho 1B sap > ERRIERERESEINEENE © covtarcton vine , pe eee eore 5) cut bee Bcecrsediceecetl Mrs reserrcs oe ean [By nee Seer EE > 6) Seo SP Te CREE 0 se Ib fox loe 1 Hinh 3-30 Khéi déng Network Discovery o Néu muén tao Discovery méi, chon Add New Discovery. co Néu muén sit dung m6t Discovery da cé dé tim lai mang cila ban, chon Discovery ban muén sir dung, nhép vio Discover Now. o Néu muén chinh sita Discovery da c6, chon Discovery dé va nhap vao Edit 46 thye hign vige thay déi. o Néu ban muén nh§p mét sé hode tat ca cdc thiét bi tim thay trong nhiéu Discovery da cé thinh m6t Discovery, chon Import All Results. 44 DO én mén hge Quan ly hé théng_mang VIETHANITC ‘© Neu muon nhap nhing thict bj moi da duge kich hoat ket hgp thanh mgt Discovery méi, chon mét Discovery da cé va nhdp vao Import New Results. ‘éu muén loai bé Discovery nao dé thi chon Discovery dé va nhdp vao Delete an ‘Pema | [Network Sonar Discovery HAW ew Decne [C Dicower Now 7 Est Atnpot Al Results impor New acute Date Hinh 3-31 Tuy chon tao Discovery méi © Néu cdc thiét bj mang khéng yéu cdu chudi truyén théng khée Public hoge Private thi nhan Next dé tigp tuc. éu cae thiét bj mang yéu cau chudi truyén théng khéc Public hay Private hoge néu muén sit dung SNMPv3 thi nhan Add New Credential SNMP credentials Enter ihe SN eedenls ed on your mete The Decoy Engine murat dterines the ernment org fn SHNP erst i foreach net Snes. Crdar als te ead nth rer et bales See nave nomatan sean SAME Fame ) {cama aie 8 8 2 nmi te meee 8 3 eam Sie mere 8 ec maan csi mre sees 494R Hinh 3-32 Tao Discovery méi Dién théng tin chudi truyén théng vio SNMP Community String. Chon phién ban celia SNMP muén sir dung trong phin SNMP Version. Chon Add va nhdp Next dé tiép tue. 4s VIETHANITC Neiwork Sonar Wizard FED eee erm scenes espero su ar SP cise Dy Decay Exp atone A New Cresent oes | sa Ves faornovs — a) S94? Conran Sg awe 937% gee ee 2Oee (omg es fem ce Hinh 3-33 Dien tham sé SNMP Network Sonar Wheard ‘Pease Elise Hinh 3-34 Két qua sau khi tao SNMP Néu muén tim hiéu bat ky vCenter VMware ESX may chi hode trén mang cia, xée nhan rang Tham do y kién cho VMware duge kiém tra, va sau dé hoan tat cde buée sau dé thém hoge chinh stra cdc théng tin Credent VMware. Click Add vCenter or ESX 46 "Network Sonar Wizard emma sie REIN neroane oncovenv serine stoner seo Entra eed rte arte ESK Rot se. Def ESX ut are “a Chon a ued in ter ied bon, atic vane Hinh 3-35 Tao méi vCenter Néu muén add thém VMware chon New credential, dién tén, user name va password. Sau dé chon Add va Next dé tiép tuc. Add VMware Credential Enter @ local credential for the wenter or ESX host server. Choose Credential: [ (Credential Name: pamsat ‘User Name: fruunrs Password: [eseese. Confirm Password once, Hinh 3-36 Tao méi Vmware Credential Néu muén tim kiém thiét bj qua dia chi IP thi dién day IP muén tham dé vao IP Ranges, néu muén thém dja chi IP thi nhan vao Add More. Nhom 1 - MMO2A~ Nguyen Hoang —Ilttu Nebi— 47 DO én mén hge Quan ly hé théng_mang VIETHANITC ‘Neu mudn tim Kiem nhimg thict bj dang ket noi den | router nao do trong I subnet thi chon Subnet, néu muén tim trong I subnet nao dé thi chon Add a New Subnet va dién subnet mask cho subnet dé réi chon Add, néu muén tim I router cy thé nao d6 thi chon Add a Seed Router ri chon Add. Xéc nhén ring hign tim kiém duge kiém tra, sau dé kich Next. ca cdc mang ma ban muén thye Néu da biét cdc dia chi IP hoae tén may chi cia cdc thiét bj mudn tim kiém va dua vao co s@ dit ligu Orion, chon Specific Nodes sau dé dién dia chi IP hoje hostnam cia thidt bi do. Netw Sona Wate tm Wine Hinh 3-37 Day IP can quét Cung cdp tén va m6 ta dé phan biét véi cdc Discovery khac. Thay d6i vj tri cdc thanh trugt hodc gé mét gid tri trong ms, dé thiét lap théi gian dgi SNMP, tim kiém .. Néu chi muén str dung SNMP thi tich chon User SNMP-only. Ma Network Sonar sit dung ICMP. dinh thi 48 DO én mén hgc Quan ly hé théng_mang VIETHANITC Network Sonar Ward Penne Be Co se ct 0 [am eae Ten ® an sare co Hevcomt ih Go ios ee Hinh 3-38 Dieu cde tham s6 SNMP dé Scan Néu muén chay Discovery hang ngay hoac theo lich cé dinh thi chon Daily hoc Custom sau dé dién théi gian gitra cde lan thye hién. Néu muén chay ngay thi chon Yes, run this discovery now, con khéng thi chon No. Network Sonar Wizard ‘Pease te te eae sere sucosr tries Discover Seneduing Cig 9 chee ye conn a | fae ana © ee by Hinh 3-39 Chon lich Discovery Qua trinh tim kiém cac thiét bi dang cé trén mang. 49 VIETHANITC SW Palate oes Dore ‘ute Deon Hinh 3-40 Qua trinh Discovery Két qua tim kiém: Hién thi tat ca cac thiét bi tim thay dang c6 trén mang trong d6 6 Router Cisco 3620 nhu trong mé hinh gid lip. Network Sonar Results Wizard Bice Import Preview - HUUNGHI-OMNDKS Select onocesstelaces, and yokes that you mish te ignere wr port Al ignored tame wl be rammed for th tard wll act be ibund dutng any Aire naire Geer, manual sowed. ¥ you wo ge ome do 0 Gre mpeng iv) sees no acta ene vs a en vemeor sere © tener neva oa ®t tomere or xen 60 mane ome ote en) cance I a eo) aroma er ‘ewons (ee we Coe Hinh 3-41 Két qua Discovery © Liru két qua vao co sé dit ligu. Nhom I - MMO2A— Nguyén Hoang — Ilia Nghi— Tan Viet Trang SO DO én mén hge Quan ly hé théng_mang VIETHANITC Network Sonar Results Wizard DEVICES INTERFACES VOLUMES NPMINPORT SETTINGS IMPORT PREVIEW ESET Import Results Node 182.168.137.1 skipped. Alteady exists in Orion DB. Node 182.168.137-19 skipped. Already exists in Orion DB Node Router updated Interface FastEthemst0/0 of Node Router added to the Orion DB. Intorface FastEthemet0/ of Node Router added to the Orion DB. Interface Null of Noda Router added to the Gnion DB: Node huunghiOemndks skipped. Already exists in Orion DB Node CHIP-PC slapped. Already exists in Onon DB. Hinh 3-42 Law Qué trinh tim kiém hoan tat. ét qua Discovery vio CSDL 3.5.4. Thue hign gidm sdt router Cisco 3620 Sau khi qué trinh scan mang két thiic, trong phan NPM Summary sé xuat hién nodes mang phat hign duge va trang thai cia timg nodes mang, NPM Summary All Nodes managed by NPM MANAGE NOGES | EDIT) [HELP @vetharitt 3) @ Unknow ede Up. Up ww adaress: yaz388 197.100 @10.0.0.19 oo. qo26e 137, Machine Type: 2 cison 2600 192.168.137,) Avg Resp Time: ms @huunghiiOmr peokettose: 0% @Doun © 192.168.137,| CPU Load: % E @192.160.137 wemoryUsed: 70% BTV-AC huunghi-Omndks HUUNGH)-PC @TRUTRA Hinh 3-43 Cae node mang va trang thai sau khi quét sl DO én mén hge Quan ly hé théng_mang VIETHANITC Thye hign click vao Router cisco 3620 de gidm sat thict bi nay. ‘rong fegene ine AP oee UAOGOH I Niece hart ie ag Te Pat ot i as a worivor | § ee tee as ae @ineen core Hinh 3-44 Théng tin tng quan cia router. Solarwinds NPM cho phép ngudi quin tr} cé thé gidm sit théng tin vé CPU, Memory dang sir dung, IP, Tén, loai router, trang thai interface... va lap biéu dé két qua rat true quan. 32 DO én mén hge Quan ly hé théng_mang VIETHANITC Node Details eT HELE Pest Node EB ListResources 0 Unmenage @ Poters Management agement Ge rotnow ( Redecover ode satus @ nove nue Wadsress 192.168.137.909 Dynamic iP No Machine Tye #8 Cxsco 2820 ns System Neme (sco 10S Software, 3700 Sofware (C3T2S-AOVEN oull), Version 124(75)TS, RELEASE SOFTWARE (fod) Description Technical Support inp Hiwww.cisco convlechsuppor Copyright () 1985-2008 by Cisco Systems, nc. Compled Wed 30-Apr-08 4827 by prod rel leam RISE Location Contact Last Boot Operating system 105 imoge Unknown Hardware Physical telneti/182.166.137 98 np 160. 168.137 98 Hinh 3-45 Théng tin cu thé vé router CPU Load & Memory Utilization TESOL | (EBT) HELP CPU Loai Memary Used Hinh 3-46 Théng tin vé CPU va Memory duge sira dung Nhom 1 - MMO2A~ Nguyen Hoang —Tlttu Nehj — Tan Vit 33 Dé én mén hge Quan ly hé théng mang VIETHANITC Current Percent Utilization of Each Interface corr save INTERAC © w& 1 rasicheretio-F @ 2 stuitown TF rostenemeni Fattehernetan Fan @ © w sal wwto-ng >) O06 Stas “ @ Adrin Sins: Up wntertce Tyee = Wletnemet Disk Volumes ‘Yniaat corr Current Trattc: 179043 ps alive dh Fiala Percentutioon’ 0% ive Alerts on This Node coir [Ht ALL TRIGGERED ALERTS Bae TIME OF ALERT NETWORK DEVICE CHEMIN one MESSAGE Percentutzstan: 0% Hinh 3-47 Giam sat cdc interface cia router Click vao interface cu thé dé xem chi tiét théng tin vé interface Router-FastEthemet0/0 - Fab MinMadieragebet ot Rey 10DMEp: 2st 120 Mboe Elevate bps EI Mean Tanzmit bos — Average Recsivatps ~ Average Wancnit ios — Tend 4500,0bpe 4000.0 bps 3500.0bor 3000 0 bo 2500.0 bps 2000.0 bos 1500.0 bos 1000 0 bos 500.6 bos obgs Tha 100M 2.09 AM 2011 25th Percentile: Average Receive bps ix 4046.939 bos. verape Transmit bpsis 1798.133 bps Soisdwines Orien Core Sawveas 20702 Hinh 3-48 xem chi tiét théng tin vé interface 3.5.5. Thiét lp mt canh béo (Alerts) Dé thiét lap cdnh bdo. Tién hanh click Start > All Programs > SolarWinds Orion > Alerting, Reporting, and Mapping > Advanced Alert Manager. Nhom 1 - MMO2A~ Nguyen Hoang —Ilttu Nebi— 34 Dé én mén hge Quan ly hé théng mang VIETHANITC one a econo soaker) Cattng Started with Oron Alert Manager etsy Sreenrtentre iranmma e, Hinh 3-49 Thiét lap quan ly Alerts © Click View > Configure Alerts ! me an age yom | tee F slerne wren agi yocorowsnrg cial tte 5 etme ster ananaaeimmcatara ences dhs | Ry 1 Alct ne nen amanaged adel pltets TO mnt a a eee ah sede eee sem Dea an aed abate | Acme shan azclng eras hee neds ed 51 det ne nen oFlagieAccss Prt cdo’ 1 etme tere Thiele cms Fin gmecdorm _ | [Net mene or Phas mae the 1 coe ) etm an an efaace cordon 1 dete sen sonnets dounan ace 1 Hi bare estan yon Acces Pet [A Hh Psat ans Meri Boss | ew | Hinh 3-50 Cau hinh Alerts 20 mot alert méi hoge chon trong bang cdc alert da c6 sin. Click New C6 nhidu ogi alert nhu: cdnh béo cé nhigu hon 10 client truy cép mang khéng day, cinh béo vé mot interface bj tat, Sau khi chon duge loai cinh bao ching ta cé thé lap lich dé thiét lip né chay vao gid, ngay, thang ching ta muén. Bang cach chon edit: xudt hign bang Edit Alert Nhom 1 - MMO2A~ Nguyen Hoang —Ilttu Nebi— 55 DO én mén hge Quan ly hé théng_mang VIETHANITC Hinh 3-51 Chinh sira Alerts « Trong bang Edit Alert c6 nhigu tab dé ching ta cdu hinh nhu © General: dat tén cho alert, hign ra cau théng bdo khi thyc hign alert nay, click chon nat “enable this alert” dé bat dau alert, Thyc hign thai gian alert chay & 6 “Alert Evaluation Frequency” ndition: thiét lp diéu kign cho alert: “oo At terol ello th egal ikon Hinh 3-52 Thiét lap = Chon loai déi tugng gidm sat trong “Type of Propenty to Monitor”. C6 nhieu loai nhu: Node, Interface, Volume, Wireless access,... é lap diéu kién, c6 cde sy Iva chon: all, any, none, not all. Diéu kign nay sé ndi r hon & phan sau. ™ Add hodc Delete: dé thém hoac x6a diéu kign. * Export Condition: xuat ra dé sit dung cho ede alert khée néu can. = Import Condition: thém cde diéu kign tirnhing alert di tgo tit truéc. hinh théii gian cho Alerts 56 DO én mén hge Quan ly hé théng_mang VIETHANITC ‘Chi dinh mot Khoang thoi gian cho ede dieu kign duge hop 1g ta nhap khoang thai gian vio 6 “Do not trigger this action until condition exits for more than. o_ Reset Conditior a pe nae Roe Coin nan ten ww | pe act |r A | + | ee “i cephon tage |e wooo |G pmcins Siete eee arene) 6 fa I ees =) Hinh 3-53 Reset condition = Reset when trigger conditions are no longer true: thye hign lai khi diéu kign ko con nita, = Reset this alert when the following conditions are met: thy hign Iai alert nay khi gap diéu kign bén dudi day. = Phan bén dudi tuong ty Trigger Condition. Alert Supprenssion: thiét kip m6t dan dp Alert. Cée buds iu hinh twong déi giéng ‘Trigger Condition. a) ee a eee Hinh 3-54 Suppress alert Time of Day: thiét I§p lich cho alert, khodng thoi gian thye hign alert. 37 ‘DO én mén hgc Quan ly hé théng_mang VIETHANITC A ax ee ee fos st | ona rs | estrada gc rgd cele Fema Top] HesendotieTearein anette Then be Trager ox | _ ca is Hinh 3-55 Lp lich cho Alerts ‘Trigger Actions: bao higu dang thyc hign alert nay. Myc dich 1a béo cho quan tri vien biét alert nay dang hoat déng, ko hoat d6ng, xay ra sy c6,... thy vao viée cdu hinh ma phuong thite béo higu cita alert khée nhau, Cé thé 1a giti mail, choi mot dogn nhac hoe chay mét img dung,... dya vao cau hinh nay quan tri vién di & xa cling cé thé bidt dugc hé théng mang ctia minh nhu thé nao, inka ‘Gee eae conn Rebeca Alt Sunred | necting Tiss Acne [ease cto | F_tehscttcon dui lel tie om | | ta Hinh 3-56 Tuy chon cdu hinh phuong thite béo higu ciia Alerts ™ Add new action: thém loai hinh thife bao higu = Edit selected action: chinh sita hinh thite bao higu * Copy Actions To Reset: lap lai bao higu 1 Lin nia 38 DO én mén hge Quan ly hé théng_mang VIETHANITC = Delete Selected Actions: x6a bo bao higu = Export Selected Actions: hu Iai file cdu hinh béo higu dé sir dung cho cae alert sau nay. * Import Actions: thém file edu hinh bio higu da 6 tir nhiing alert trude day. © Reset Actions: tuong ty nhu Triger Actions, nhung béo higu nay xay ra khi xay ra su c6, dua vao nhimg diéu kién da khai béo trong tab “Reset Condition”. Nhu vay 1a di hoan thinh cae bude edu hinh mot alert, * iéu kién All, Any, None, Not Alll trong vige cau hinh mét alert: dé hiéu diéu kign nay ta xét vi dy sau day: CPU >=80%, Node=down, g6i tin that bai>=75%. Véi cach hiéu cia 4 kiéu all, any, none, not all nhur sau: © All: chi thye hign khi ca 3 diéu kign d&u ding, tite li CPU>=85% va Node=down va géi tin that bai>=75%, © Any: thye hign khi I trong 3 diéu kign sai, tie 1a o Node=down hoc géi tin that bai>=75%. CPU>=85% hoac © None: chi thye hién khi CPU<85% va Node=up va géi tin that bai<75%, Nhu vay né nguge Iai v6i All. co Notall: thye hign khi I trong diéu kign dao nguge sai, tire 1a CPU<85% ho&c Node=up hod géi tin that bai<75%, Ching ta ca duge higu qua cao ai dua ra cdc diéu kién mét cach chinh xc va hop ly dé dat trong vige quan ly hé théng, 39 DO én mén hge Quan ly hé théng_mang VIETHANITC KET LUAN > Ké qua dat duge o Vély thuyét: Nhém da tim hiéu duge téng quan vé giao thite gidm sat mang SNMP. cdc phuong thire gidm st mang. Uu nhuge diém trong thiét ké cla SNMP. Tim hiéu ly thuyét vé phin mém quan tri mang Solarwinds. o Vé thye hanh Trién khai hé théng gidm sat va quan tri mang véi Solarwinds trén m6 hinh gid lap, thyc hign mot s6 tign ich giém sat va. quan tr] mang co ban > Han ché ‘Vi théi gian cé han nén chua tim hiéu hét cdc tinh nang cia bé phan mém Solarwinds. Chua di su vio giao thire SNMP. Cé sit dung tai ligu ty dich ti nude ngoai nén chic chin sé cé ché sai vé ngit nghia efing nhu thugt ngtr chuyén mén sit dung. Dé an chua mang tinh thye té cao. Hé théng mang img dung phin mém Solarwinds khéng trién khai thye té nén cha phat hién duge céc Idi cing nhu cde van dé phat sinh, > Huéng me Trién khai phin mém gidm sat va quan ly mang Solarwind trong méi trudng thye 1 néu c6 didu kign. Tiép tuc tim hiéu b6 phin mém Solarwind mét cach trién dé hon nia. 60 [2]. AdministratorGuide-OrionNPM - ta [3]. EvaluationGuide-OrionNPM - tai ligu tham khéo tir nha sin xudt [4]. QuickStartGuide-OrionNPM - tai ligu tham khao tir nha sin xudt, [5]. Bao Céo Trién Khai Solawind trong mé hinh thyc Nguyén Tién Lye - Hoe Vign Buu Chinh Vién Thong. © Internet [1]. _ http:/solarwinds.convsupport/ 61

You might also like