Details
-
Bug
-
Resolution: Not A Bug
-
Critical
-
None
-
Community Edition
-
None
Description
Hello - first many thanks for a very cool project,
I have been looking for such a long time after zabbix etc did't do what i would like to achieve. However I have found something strange.
Case; I have yesterday installed Observium monitor server and added a few devices (Linux VPS servers) - ubuntu 16/18. I have been inspired by the following script;
I did change the IP in "/etc/xinetd.d/observium_agent" to have the IP of the monitor server.
However I did a nmap port scanning afterward from a different/unrelated IP and found that SNMP (161) open - I also did a snmp test; nmap command from a
sudo nmap -sU -p 161 --script=snmp-processes IP_of_Linux_VPN and got the snmp info
Expected behavior: Only the IP in observium_agent could retrieve snmp information
Observed behavior: I might have misunderstood the setup - but should a 'unknown IP' be able to pull the snmp.
I do understand a firewall rule only allowing the monitor server to query the information on the device (Linux VPS) would 'solve' the problem, but then i miss to see the point of the observium_agent file settings.
Have I missed some required steps, or information in the documentation provided, but after my reading, I was not able to find such information - if so I would like to apologize upfront
I would be most happy to assist and/or provide further information/clarifications if required
Many kind regards,
Mikael Vingaard
Mikael@vingaard.dk
'