SNMP configuration on Huawei OLT

SNMP Configuration on Huawei OLT (MA5800 & MA5680T)

📅 Published: 🔄 Updated:

Configuring SNMP on a Huawei OLT allows you to monitor your GPON/EPON network using tools like Zabbix, PRTG, LibreNMS, or SolarWinds. This guide walks you through every CLI command needed to enable SNMP v2c, create read/write communities, and activate traps on Huawei MA5800-X17 and MA5680T OLTs.

Prerequisites

  • Console or Telnet/SSH access to the OLT
  • Admin-level (enable) privileges
  • SNMP monitoring server IP ready (for trap destination)
  • SNMP tool installed (Zabbix, PRTG, LibreNMS, etc.)

Step 1: Disable the Security Feature Blocking Standard Community Names

By default, newer Huawei OLT firmware blocks weak community strings like public and private. You must disable this protection first.

enable
config
undo snmp-agent community complexity-check
⚠️ Security note Only disable complexity-check in lab or trusted environments. For production, use strong community strings instead.

Step 2: Access Configuration Mode & Set SNMP Version

enable
config
snmp-agent sys-info version v2c

Available options: v2c, v3, or all.

Step 3: Create SNMP Communities

snmp-agent community write private
snmp-agent community read public
  • read – used by monitoring tools to poll metrics
  • write – allows configuration changes via SNMP (restrict access)

Step 4: Enable SNMP Traps & Set Format

snmp-agent trap enable standard
snmp-agent trap-format standard

Step 5: (Optional) Configure Trap Destination Host

Replace 192.168.1.100 with your NMS server IP and public with your community string.

snmp-agent target-host trap address udp-domain 192.168.1.100 params securityname public v2c

Step 6: Save the Configuration

save
quit
✅ Congratulations! SNMP is now active on your Huawei OLT and ready for monitoring.

Verification Commands

CommandPurpose
display snmp-agent sys-infoShow SNMP version and contact info
display snmp-agent communityList configured communities
display snmp-agent target-hostVerify trap destinations
display snmp-agent trap allConfirm trap status

Complete Example Configuration

Copy this entire block to configure SNMP in one go.

enable
config
undo snmp-agent community complexity-check
snmp-agent sys-info version v2c
snmp-agent community read public
snmp-agent community write private
snmp-agent trap enable standard
snmp-agent trap-format standard
snmp-agent target-host trap address udp-domain 192.168.1.100 params securityname public v2c
save
quit

Example Scenario

  • OLT IP: 192.168.1.1
  • NMS Server: 192.168.1.100
  • Community: public (read), private (write)
  • SNMP Version: v2c
  • Result: OLT reachable via SNMP polling and sends traps to NMS.

How It Works

SNMP (Simple Network Management Protocol) allows a Network Management System (NMS) to query the OLT’s MIB (Management Information Base) for status data such as ONT status, PON port alarms, temperature, and traffic counters.

  • Polling (Read): NMS sends GET requests every N seconds to the OLT.
  • Traps: OLT pushes alerts (link down, LOS, dying gasp) to the NMS in real time.
  • Community string: Acts as a password shared between OLT and NMS.

Technical Details

ItemValue
Supported VersionsSNMP v1, v2c, v3
Default PortUDP 161 (polling), UDP 162 (traps)
Recommended Versionv2c for simplicity, v3 for security
Max CommunitiesTypically 20+
MIB SupportHuawei proprietary + standard MIB-II

Limitations:

  • SNMP v2c has no encryption – use v3 in secure environments.
  • Community names are case-sensitive.
  • Complexity-check must be disabled for public/private on newer firmware.

Practical Technician Tips

  • 🔧 Common mistake: Forgetting to save – config lost after reboot.
  • 🔧 Use SNMP v3 with authPriv for production networks.
  • 🔧 Restrict SNMP access using ACLs (snmp-agent acl).
  • 🔧 Verify reachability: ping NMS from OLT before troubleshooting SNMP.
  • 🔧 If polling fails, check UDP 161 isn’t blocked by firewall.
  • 🔧 For MA5680T, same commands apply with minor syntax variations.

Frequently Asked Questions

Q1: What is the default SNMP community on Huawei OLT?

There is no default. You must manually create public/private communities.

Q2: Why does the OLT reject public as a community name?

Newer firmware enforces complexity-check. Disable it with undo snmp-agent community complexity-check or use a stronger name.

Q3: How do I monitor a Huawei OLT with Zabbix?

Enable SNMP v2c, add the OLT as a host in Zabbix, use community public, and import the Huawei OLT template.

Q4: Can I use SNMP v3 instead of v2c?

Yes. Use snmp-agent sys-info version v3 and configure USM users with auth/priv.

Q5: What port does SNMP trap use?

UDP 162.

Q6: How do I test SNMP from Linux?

Run snmpwalk -v2c -c public 192.168.1.1

Q7: Does SNMP configuration survive a reboot?

Only if you run save after configuration.

Q8: How do I delete an SNMP community?

Run undo snmp-agent community read public

Disclaimer: This guide is for educational purposes. SNMP community strings act as passwords—always use strong, unique values in production. Configuration syntax may vary slightly across firmware versions; verify against your OLT’s official Huawei documentation before applying.

Sources / References: Huawei MA5800 Series Configuration Guide • Huawei MA5680T CLI Reference Manual • RFC 3411–3418 (SNMPv3, IETF) • RFC 1157 (SNMPv1)