This is a discussion on RE: snmpnetstat/snmpwalk don't show all open ports within the SNMP Users forums, part of the Networking and Network Related category; This is a multi-part message in MIME format. ------=_NextPartTM-000-43a53bd9-983b-498f-9faf-5f63ad7b28c5 Content-Type: multipart/alternative; ...
|
|||||||
| FAQ | Members List | Calendar | Search | Today's Posts | Mark Forums Read |
|
|||
|
This is a multi-part message in MIME format.
------=_NextPartTM-000-43a53bd9-983b-498f-9faf-5f63ad7b28c5 Content-Type: multipart/alternative; boundary="----_=_NextPart_001_01C79172.A2910715" ------_=_NextPart_001_01C79172.A2910715 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: quoted-printable The snmpnetstat command shows active connections. This means that if you have a web server running but no one is actually downloading any of your web pages, no connections will be shown on port 80. Likewise if you have an sshd daemon running but no one is connected in via ssh there will be no ssh sockets shown. =20 Can you confirm that you have active sockets open that are not being displayed? =20 |\/|artin -----Original Message----- From: net-snmp-users-bounces@lists.sourceforge.net [mailto:net-snmp-users-bounces@lists.sourceforge.net] On Behalf Of Manuel Diaz Sent: 07 May 2007 07:13 To: net-snmp-users@lists.sourceforge.net Subject: snmpnetstat/snmpwalk don't show all open ports =09 =09 I have red hat enterprise 4 update 4, and I have compiled source net-snmp 5.4. =09 When I execute the command: snmpnetstat -c public -a localhost, don't show all open ports, like 22 (ssh), 80 (http).=20 =09 When I execute the command: snmpwalk -c public localhost tcp, don't show all open ports, like 22 (ssh), 80 (http).=20 =09 If I execute the command nmap or netstat, show these ports (22, 80, ...)=20 =09 What's the problem ?=20 =09 Thanks=20 ************************************************** *************************= ********** The message is intended for the named addressee only and may not be disclos= ed to or used by anyone else, nor may it be copied in any way.=20 The contents of this message and its attachments are confidential and may a= lso be subject to legal privilege. If you are not the named addressee and/= or have received this message in error, please advise us by e-mailing secur= ity@colt.net and delete the message and any attachments without retaining a= ny copies.=20 Internet communications are not secure and COLT does not accept responsibil= ity for this message, its contents nor responsibility for any viruses.=20 No contracts can be created or varied on behalf of COLT Telecommunications,= its subsidiaries or affiliates ("COLT") and any other party by email Commu= nications unless expressly agreed in writing with such other party. =20 Please note that incoming emails will be automatically scanned to eliminate= potential viruses and unsolicited promotional emails. For more information= refer to www.colt.net or contact us on +44(0)20 7390 3900. ------_=_NextPart_001_01C79172.A2910715 Content-Type: text/html; charset="us-ascii" Content-Transfer-Encoding: quoted-printable <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN"> <HTML><HEAD><TITLE>Message</TITLE> <META http-equiv=3DContent-Type content=3D"text/html; charset=3Dus-ascii"> <META content=3D"MSHTML 6.00.2900.2180" name=3DGENERATOR></HEAD> <BODY> <DIV><SPAN class=3D373341113-08052007><FONT face=3DArial color=3D#0000ff si= ze=3D2>The=20 snmpnetstat command shows active connections. This means that if you have a= web=20 server running but no one is actually downloading any of your web pages, no= =20 connections will be shown on port 80.</FONT></SPAN></DIV> <DIV><SPAN class=3D373341113-08052007><FONT face=3DArial color=3D#0000ff=20 size=3D2>Likewise if you have an sshd daemon running but no one is connecte= d in=20 via ssh there will be no ssh sockets shown.</FONT></SPAN></DIV> <DIV><SPAN class=3D373341113-08052007><FONT face=3DArial color=3D#0000ff=20 size=3D2></FONT></SPAN> </DIV> <DIV><SPAN class=3D373341113-08052007><FONT face=3DArial color=3D#0000ff si= ze=3D2>Can=20 you confirm that you have active sockets open that are not being=20 displayed?</FONT></SPAN></DIV> <DIV><SPAN class=3D373341113-08052007><FONT face=3DArial color=3D#0000ff=20 size=3D2></FONT></SPAN> </DIV> <DIV><SPAN class=3D373341113-08052007><FONT face=3DArial color=3D#0000ff=20 size=3D2>|\/|artin</FONT></SPAN></DIV> <BLOCKQUOTE=20 style=3D"PADDING-LEFT: 5px; MARGIN-LEFT: 5px; BORDER-LEFT: #0000ff 2px soli= d; MARGIN-RIGHT: 0px"> <DIV></DIV> <DIV class=3DOutlookMessageHeader lang=3Den-us dir=3Dltr align=3Dleft><FO= NT=20 face=3DTahoma size=3D2>-----Original Message-----<BR><B>From:</B>=20 net-snmp-users-bounces@lists.sourceforge.net=20 [mailto:net-snmp-users-bounces@lists.sourceforge.net] <B>On Behalf Of=20 </B>Manuel Diaz<BR><B>Sent:</B> 07 May 2007 07:13<BR><B>To:</B>=20 net-snmp-users@lists.sourceforge.net<BR><B>Subject:</B> snmpnetstat/snmpw= alk=20 don't show all open ports<BR><BR></FONT></DIV><SPAN class=3Dpostbody>I ha= ve red=20 hat enterprise 4 update 4, and I have compiled source net-snmp=20 5.4.<BR><BR>When I execute the command: <SPAN=20 style=3D"FONT-WEIGHT: bold">snmpnetstat -c public -a localhost</SPAN>, do= n't=20 show all open ports, like 22 (ssh), 80 (http). <BR><BR>When I execute the= =20 command: <SPAN style=3D"FONT-WEIGHT: bold">snmpwalk -c public localhost= =20 tcp</SPAN>, don't show all open ports, like 22 (ssh), 80 (http). <BR><BR>= If I=20 execute the command nmap or netstat, show these ports (22, 80, ...)=20 <BR><BR>What's the problem ? <BR><BR>Thanks</SPAN> </BLOCKQUOTE><FONT SIZ= E=3D3><BR> <BR> ************************************************** *************************= **********<BR> The message is intended for the named addressee only and may not be disclos= ed to or used by anyone else, nor may it be copied in any way. <BR> <BR> The contents of this message and its attachments are confidential and may a= lso be subject to legal privilege. If you are not the named addressee and/= or have received this message in error, please advise us by e-mailing secur= ity@colt.net and delete the message and any attachments without retaining a= ny copies. <BR> <BR> Internet communications are not secure and COLT does not accept responsibil= ity for this message, its contents nor responsibility for any viruses. <BR> <BR> No contracts can be created or varied on behalf of COLT Telecommunications,= its subsidiaries or affiliates ("COLT") and any other party by email Commu= nications unless expressly agreed in writing with such other party. <BR> <BR> Please note that incoming emails will be automatically scanned to eliminate= potential viruses and unsolicited promotional emails. For more information= refer to www.colt.net or contact us on +44(0)20 7390 3900.<BR> </FONT> </BODY></HTML> =00 ------_=_NextPart_001_01C79172.A2910715-- ------=_NextPartTM-000-43a53bd9-983b-498f-9faf-5f63ad7b28c5 Content-Type: text/plain; charset="us-ascii" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit Content-Disposition: inline ------------------------------------------------------------------------- This SF.net email is sponsored by DB2 Express Download DB2 Express C - the FREE version of DB2 express and take control of your XML. No limits. Just data. Click to get it now. http://sourceforge.net/powerbar/db2/ ------=_NextPartTM-000-43a53bd9-983b-498f-9faf-5f63ad7b28c5 Content-Type: text/plain; charset="us-ascii" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit Content-Disposition: inline _______________________________________________ Net-snmp-users mailing list Net-snmp-users@lists.sourceforge.net Please see the following page to unsubscribe or change other options: https://lists.sourceforge.net/lists/...net-snmp-users ------=_NextPartTM-000-43a53bd9-983b-498f-9faf-5f63ad7b28c5-- |