0001994Endian FirewallOther Servicespublic2009-07-10 14:052009-10-27 11:59
0001994: SNMPD logging is too high
I use Cacti to monitor my systems including EFW, when it polls EFW I see the following in /var/log/messages:

Jan 8 13:45:02 example snmpd[2048]: Connection from UDP: []:51890
Jan 8 13:45:02 example snmpd[2048]: Received SNMP packet(s) from UDP: []:51890

These are repeated about 10 times on each polling session (every 5 minutes). Prior to the 2.2 final I was able to reduce the logging with the fix in this article: [^]

Since the installation of EFW 2.2 final the problem has recurred, it appears this version ignores the /etc/snmp/snmpd.options file. In the snmpd startup script I changed the following lines:

PTIONS="-Lsd -Lf /dev/null -p /var/run/ -a"
if [ -e /etc/sysconfig/snmpd ]; then
  . /etc/sysconfig/snmpd

to this:

if [ -e /etc/snmp/snmpd.options ]; then
  . /etc/snmp/snmpd.options
   OPTIONS="-Lsd -Lf /dev/null -p /var/run/ -a"

This now honours any additional options you have in this file and logging is reduced to a more manageable level.

I don't know if that's the correct fix as my scripting skills aren't that great but it works for me.

No tags attached.
Issue History
2009-07-10 14:05phoenixNew Issue
2009-07-10 20:09peter-endianNote Added: 0002750
2009-07-10 20:09peter-endianStatusnew => resolved
2009-07-10 20:09peter-endianFixed in Version => 2.3
2009-07-10 20:09peter-endianResolutionopen => fixed
2009-07-10 20:09peter-endianAssigned To => peter-endian
2009-10-27 11:59peter-endianStatusresolved => closed

2009-07-10 20:09   
thank's for the fix
changed it slightly in order to read out /etc/sysconfig/snmpd and added it to the codebase