Getting Data In

Using Splunk 6.4.2, how to send SNMP traps from Splunk to other systems?

mayurr98
Super Champion

Hi

I am using Splunk Enterprise 6.4.2. However http://docs.splunk.com/Documentation/Splunk/6.2.1/alert/SendingSNMPtrapstoothersystems does not support latest versions of Splunk.
Is there any alternative solution to this?

Thanks in advance

0 Karma

aaraneta_splunk
Splunk Employee
Splunk Employee

@mayurr98 - Did one of the answers below help provide a solution your question? If yes, please click “Accept” below the best answer to resolve this post and upvote anything that was helpful. If no, please leave a comment with more feedback. Thanks.

0 Karma

woodcock
Esteemed Legend

Here is the best answer I have seen about SNMP; it is older and some new options surely exist but it is a great starting point:

https://answers.splunk.com/answers/229041/how-to-send-snmp-traps-from-my-linux-machine-to-a.html

0 Karma

lguinn2
Legend

Ultimately, the way to do this is to run a search that triggers a script (as an alert action). All the documentation supplied was tips about how to do this.
Here are a couple of scripts that people have posted: Generate SNMP trap from Splunk
But you could just google "python send snmp trap" (or your language of choice) for example scripts.

Also, you can take a look at the documentation on triggering a script as an alert: Run a script alert action.

0 Karma

mayurr98
Super Champion

Hey thanks for the answer.But these scripts supports latest versions of splunk ?

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...