Download as pptx, pdf, or txt
Download as pptx, pdf, or txt
You are on page 1of 42

Basic Principles of N

etwork Management

www.huawei.com

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved.


Foreword
 Network management including the use of hardware, sof
tware and manpower, and coordination, monitoring, tes
ting, configuration, analysis, evaluation and control
to network resources, so you can meet the needs of th
e network at a reasonable price, such as real-time pe
rformance and quality of service.
 This course introduces the basic principles of networ
k management.

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 3
Objectives
 On completion of this course, you will be able to:
 Describe the basic concepts of network management
 Describe the network management functions
 Describe the network management component

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 4
Contents
1. The basic concepts of network management
2. Network management functions
3. Network management component

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 5
The Objectives of Network Management
 Network management should be:
 Ensure that the network user receives the desired netwo
rk service quality and technical service information.
 Enable the deployment, operation and maintenance of net
works and network services quickly according to the net
work planning.
 Help network engineers faced with a complex network dat
a and to ensure that data can quickly complete presente
d to the user.

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 6
The environment of network management
Network transmission and
network technology
Growth rate

Network maintenance resources


(Support staff and maintenance
costs)
Time
 Growth rate network is proportional to the time, this is t
he functional requirements of network management.
 Network management requires not only of the basis of netwo
rk management, network business management.
Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 7
Contents
1. The basic concepts of network management
2. Network management functions
3. Network management component

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 8
Network management functions
 ISO definition of five network management functional
domains (referred to as the FCAPS), basically coverin
g the entire range network management:
 Fault Management
 Configuration Management
 Accounting Management
 Performance Management
 Security Management

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 9
Fault Management
 Fault management of the four main activities:
Equipment Fault
 Fault Detection
 Fault Diagnosis
 Fault Repair
 Fault History Link Fault

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 10
Configuration Management
 Configuration management is resp Version of the software
Rate
onsible for monitoring the netwo Configuration file Duplex mode
Device type Connectivity
rk configuration information, ne
twork managers can generate, que
ry and modify the operating para
meters and conditions of the har
dware / software, and related bu
siness configuration.

Port aggregation
VLAN
STP

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 12
Accounting Management
 Accounting management: record the user to use network reso
urces, and nuclear charges, but also statistical utilizati
on of the network.

 Main features are:
 Collection of accounting records
 Calculate the user billing
 Distribution network operating costs
 Network operating budget Bandwidth traffic
Application requests

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 13
Performance Management
Utilization
 Performance Management includes the f
Threshold value / maximum / minimum
ollowing features: Error rate
Unicast rate
 The choice of test objects and methods Broadcast Rate

.
 Collection and analysis of statistical
data.
 Provide valuable network performance r
eport.
 Be adjusted according to the data on t
he network to control the network perf Forwarding rate
ormance. Response time
CPU utilization Delay
Memory usage Availability
Reliability

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 14
Security Management
 The network security divided into two levels:
MAC address
 Network Security: Interface Lock
 Malicious attacks
 Privacy Protection
 Network Management Security:
 User authority management
 User login management
 Log Management

Access control
Blocking the connection

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 15
The benefits of network management
 Network management is often defined in accordance wit
h its own objectives, such as ensuring network usabil
ity, ease of day-to-day operations and minimizing tec
hnology complexity.
 Network management is necessity network maintenance a
nd network upgrades.
 A mature network management strategy will reduce netw
ork outages and enhance user productivity.

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 16
Contents
1. The basic concepts of network management
2. Network management functions
3. Network management component
 Management Information Base (MIB)
 Structure of Management Information (SMI)
 Simple Network Management Protocol (SNMP)
 Telnet Configuration

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 17
Network management
Disk Full

VRP5.3
90% % Bandwidth utilization

VRP5.5
Gateway Down

 Network is a very complex distributed systems.


 There are many network elements , running multiple protocols, and
these nodes are still communicate with each other and exchange in
formation. The state of the network are constantly changing, we m
ust use the network to manage the network. We need to have a prot
ocol to read the status information on these nodes, and sometimes
some of the new state information is written to these nodes.

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 18
A few basic concepts
 Manager : network management station.
 Agent: Managed network elements (also called the managed device)
. Managed device-side and management-related software called agen
t or proxy process.
 Communication between the manager and the agent process in two wa
ys:
 The manager request agent, ask a specific parameter values.
 Agency initiative to report the manager there some important events o
ccur.
 Of course, It can also change agent values.

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 19
Management Information Base (MIB)
SNMP
SNMP Iso (1)
AGENT
AGENT
org (3)

dod (6)

internet (1)

OID for the mgmt (2) experimental (3)


directory (1) private (4)
System is
1.3.6.1.2.1.1 mib-2 (1) enterprise (1)

system (1) tcp (6) proteon (1) SUN (42)

interfaces (2) udp (7) IBM (2) apple (63)

address (3) egp (8) cisco (9) microsoft(311)


translation
cmot (9) HP (11)
..
ip (4) .
transmission (10) Huawei (2011) unassigned
icmp (5) (9118)

IAB Manage snmp (11) Enterprise MIB

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 20
Huawei MIB
iso (1)
org (3)
dod (6)
internet (1)
private (4)
enterprise (1)

Huawei (2011) hwlocal

hwProducts(2)

huawei
x
huaweiMgmt(5)
..
.
huaweiUtility

Huawei MIB

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 22
Contents
1. The basic concepts of network management
2. Network management functions
3. Network management component
 Management Information Base (MIB)
 Structure of Management Information (SMI)
 Simple Network Management Protocol (SNMP)
 Telnet Configuration

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 23
Management information structure (SMI)
 Structure and representation of the MIB a common set
of symbols, called Structure of Management Informatio
n(SMI). This is defined in RFC1155 [Rose and McCloghr
ie1990]. For example: the SMI definition of the count
er is a non-negative integer count range is 0 to 4 29
4 967 295, when the maximum is reached, again startin
g at 0 counting.

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 24
Contents
1. The basic concepts of network management
2. Network management functions
3. Network management component
 Management Information Base (MIB)
 Structure of Management Information (SMI)
 Simple Network Management Protocol (SNMP)
 Telnet Configuration

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 25
Simple management protocol (SNMP)
 SNMP structure includes the Network Management Station(NM
S) and the Agent. SNMP is an application layer protocol w
hich is to transfer management information between NMS and
Agent.
Managed system
1
Perform MIB
operations 1 2
SNMP
Agent notify 1 2

NMS Managed
1 2
Object
5 6

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 26
Versions of SNMP
 SNMPv1: Simple, weak security, can not communicate be
tween manager.
 SNMPv2c: A certain degree of security, can communicat
e between managers. VLAN Switch management. The most
widely used.
 SNMPv3: Definition of a management framework, introd
uced the User Security Model user's security model(US
M ), provide users with a secure access mechanism.

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 27
SNMP Protocol Data Unit (PDU)
 Packet Structure
Version Community SNMP PDU

GET-REQUEST Get value from variable(NMS sent)


GET-NEXT Get next value from table(NMS sent)
REQUEST Response to get action(Agent sent)
GET-RESPONSE Set value to a specific variable(NMS sent)
SET-REQUEST Report alarm information(Agent sent)
TRAP

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 28
SNMP Interaction (1)
 Message exchange process

Get Request

NMS Response Agent


Get Next Request
Response

Set Request
Response
UDP Port 162 UDP Port 161
Trap

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 29
SNMP Interaction (2)
 Message exchange process (example)

PSTN
ISDN

1.  Get the total number of interface from device.


SNMP Get-Request:1.3.6.1.2.1.2.1.0
 Answer is two interfaces.
2.
SNMP Get-Response: 2  Take the first, return the rate of the interface.
3.  Answer is 10000000 bps.
SNMP Get-Request:1.3.6.1.2.1.2.2.1.5.1
4.  Take the second, return the rate of the
SNMP Get-Response: 10000000 interface.
5.
SNMP Get-Next-Request:1.3.6.1.2.1.2.2.1.5.1  Answer is 56000 bps.
6.
SNMP Get-Response: 56000

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 30
SNMP Configuration Procedure on Route
r
Start

Set parameters for sending trap messages


Configure device to communicate with NMS properly

Enable SNMP Agent function Specify destination host for receiving trap
messages and error codes

Set SNMP Version

Configure the equipment administrators


Set SNMP community name contact information or location

End

Mandatory Optional

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 31
SNMP configuration on Router

G0/0/0

Router
172.16.50.253

[Router]snmp-agent
[Router]snmp-agent sys-info version v2c
[Router]snmp-agent community read public mib-view iso-view
[Router]snmp-agent community write private mib-view iso-view
[Router]snmp-agent mib-view iso-view include iso
[Router]snmp-agent target-host trap-paramsname trapnms v2c
securityname adminnms
[Router]snmp-agent target-host trap-hostname nms address
172.16.50.253 trap-paramsname trapnms
[Router]snmp-agent trap enable
[Router]snmp-agent trap source GigabitEthernet0/0/0

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 32
SNMP Configuration Procedure on Switch
Start

Configure device to communicate with NMS properly Set SNMP community name

Enable SNMP Agent function Specify destination host for receiving trap
messages and error codes

Change the listening port number of the SNMP


agent Configure the equipment administrators
contact information or location
Set SNMP Version

Set the maximum size of SNMP messages

End

Mandatory Optional

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 34
SNMP Configuration on Switch

G0/0/0

Switch
172.16.50.253

[Switch]snmp-agent
[Switch]snmp-agent sys-info version v2c
[Switch]snmp-agent community read Public mib-view iso-view
[Switch]snmp-agent community write Private mib-view iso-view
[Switch]snmp-agent mib-view included iso-view iso
[Switch]snmp-agent target-host trap address udp-domain
172.16.50.253 params securityname adminnms v2c
[Switch]snmp-agent trap enable
[Switch]snmp-agent trap source GigabitEthernet0/0/0

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 35
Contents
1. The basic concepts of network management
2. Network management functions
3. Network management component
 Management Information Base (MIB)
 Structure of Management Information (SMI)
 Simple Network Management Protocol (SNMP)
 Telnet Configuration

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 37
SNMP Configuration Difference betw
een Router and Switch
 Create MIB View
 Router
[Router]snmp-agent mib-view iso-view include iso

 Switch
[Switch] snmp-agent mib-view included iso-view iso

 Set parameters and specify destination host for trap


 Router
[Router] snmp-agent target-host trap-paramsname
trapnms v2c securityname adminnms
[Router] snmp-agent target-host trap-hostname nms
address 172.16.50.253 trap-paramsname trapnms

 Switch
[Switch] snmp-agent target-host trap address udp-
domain 172.16.50.253 params securityname adminnms v2c

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 38
Basic Commands - Configuring Telne
t Password
 Configuring users to login the device through Telnet,
using password authentication.
<Huawei>system-view
Enter system view, return user view with Ctrl+Z.
[Huawei]user-interface vty 0 4
[Huawei-ui-vty0-4]protocol inbound telnet
[Huawei-ui-vty0-4]authentication-mode password
[Huawei-ui-vty0-4]set authentication password cipher
Enter Password(<8-128>):(Enter the login password)
Confirm password:(Re-enter the login password to
confirm)
[Huawei-ui-vty0-4]user privilege level 15
[Huawei-ui-vty0-4]

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 39
Basic Commands - Configuring Telne
t Users and Password
 Configuring users to login the device through Telnet,
using User + password authentication.
<Huawei>system-view
Enter system view, return user view with Ctrl+Z.
[Huawei]user-interface vty 0 4
[Huawei-ui-vty0-4]protocol inbound telnet
[Huawei-ui-vty0-4]authentication-mode aaa
[Huawei-ui-vty0-4]quit
[Huawei]aaa
[Huawei-aaa]local-user user1 password cipher huawei@123
Info: Add a new user.
[Huawei-aaa]local-user user1 service-type telnet
[Huawei-aaa]local-user user1 privilege level 3
[Huawei-aaa]quit

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 40
Basic Commands - Telnet from a PC
 Telnet from Windows:

Login authentication

Password:(Enter the password configured in VTY view)


Info: The max number of VTY users is 20, and the number
of current VTY users on line is 1.
<Huawei>

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 41
Basic Commands - Configuring STeln
et Login (1)
 Generate a local key pair for the SSH server.
<HUAWEI>system-view
[HUAWEI]sysname SSH_Server
[SSH_Server]dsa local-key-pair create
Info: The key name will be: HUAWEI_Host_DSA.
Info: The key modulus can be any one of the following : 1024,
2048.
Info: If the key modulus is greater than 512, it may take a few
minutes.
Please input the modulus [default=2048]:
Info: Generating keys...
Info: Succeeded in creating the DSA host keys.

 Create an SSH user on the server. Configure the VTY user i


nterface.
[SSH_Server]user-interface vty 0 14
[SSH_Server-ui-vty0-14]authentication-mode aaa
[SSH_Server-ui-vty0-14]protocol inbound ssh
[SSH_Server-ui-vty0-14]quit

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 42
Basic Commands - Configuring STeln
et Login (2)
 Create SSH user client001 and set the authentication mode
to password authentication.
[SSH_Server]aaa
[SSH_Server-aaa]local-user client001 password
irreversible-cipher Huawei@123
[SSH_Server-aaa]local-user client001 privilege level 3
[SSH_Server-aaa]local-user client001 service-type ssh
[SSH_Server-aaa]quit
[SSH_Server]ssh user client001 authentication-type
password

 Enable the STelnet service on the SSH server. Set the serv
ice type of client001 to STelnet on the SSH server.
[SSH_Server]stelnet server enable
[SSH_Server]ssh user client001 service-type stelnet

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 43
Basic Commands - sTelnet from a PC
1. Log in to the device using PuTTY, 2. Click Open. In the displayed page,
enter the device's IP address, and select enter the user name and password and
the SSH protocol. press Enter to log in to the SSH server.

login as: client001


Sent username "client001"
client001@10.137.217.203's
password:

Info: The max number of


VTY users is 8, and the
number of current VTY
users on line is 5.
The current login time is
2016-11-06 09:35:28+00:00.
<SSH_Server>

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 44
Quiz
1. Which SNMP basic operation below is sent by NMS ?
A. get-request
B. get-next-request
C. set-request
D. get-response

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 45
Summary
 The basic concepts of network management
 Network management functions
 Network management component

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 46
Thank You
www.huawei.com

Copyright © 2018 Huawei Technologies Co., Ltd. All rights reserved. Page 47

You might also like