我有以下设备和配置:
型号: ex4300-32f
朱诺斯: 17.3R3-S3.3
显示配置组
GLOBAL-SNMP {
snmp {
client-list MANAGERS {
10.8.9.0/28;
}
community TEST-COMMUNITY {
authorization read-only;
client-list-name MANAGERS;
}
trap-options {
source-address 10.8.7.2;
context-oid;
}
trap-group TEST-COMMUNITY {
version v2;
targets {
10.8.9.2;
}
}
}
}
显示配置应用组
## Last changed: 2019-02-28 09:36:59 UTC
apply-groups GLOBAL-SNMP;
# show switch-options
interface ge-0/0/31.0 {
interface-mac-limit {
24;
packet-action shutdown;
}
}
interface-shutdown-action hard-shutdown;
当超出 MAC 限制时,交换机确实发送了linkDown SNMP 陷阱,我成功地收到了它。我希望交换机也发送jnxSecAccessIfMacLimitExceeded (.1.3.6.1.4.1.2636.3.40.1.2.1.0.2) SNMP 陷阱。但我只收到系统日志消息:
L2ALD_MAC_LIMIT_REACHED_IF: Limit on learned MAC addresses reached for ge-0/0/31.0; current count is 24
L2ALD_MAC_LIMIT_EXCEEDED_BLOCK: Limit on learned MAC addresses exceeded for ge-0/0/31.0; current count is 24 SHUTTING THE INTERFACE
我可以使用raise-trap,但我想我错过了一些东西,而 switch 可以更“本机”地做到这一点。
我应该如何配置 EX4300 以发送有关超出 MAC 限制的 SNMP 陷阱?