SNMP configuration on Huawei OLT
SNMP Configuration on Huawei OLT (MA5800 & MA5680T)
Configuring SNMP on a Huawei OLT allows you to monitor your GPON/EPON network using tools like Zabbix, PRTG, LibreNMS, or SolarWinds. This guide walks you through every CLI command needed to enable SNMP v2c, create read/write communities, and activate traps on Huawei MA5800-X17 and MA5680T OLTs.
Prerequisites
- Console or Telnet/SSH access to the OLT
- Admin-level (
enable) privileges - SNMP monitoring server IP ready (for trap destination)
- SNMP tool installed (Zabbix, PRTG, LibreNMS, etc.)
Step 1: Disable the Security Feature Blocking Standard Community Names
By default, newer Huawei OLT firmware blocks weak community strings like public and private. You must disable this protection first.
enable
config
undo snmp-agent community complexity-checkStep 2: Access Configuration Mode & Set SNMP Version
enable
config
snmp-agent sys-info version v2cAvailable options: v2c, v3, or all.
Step 3: Create SNMP Communities
snmp-agent community write private
snmp-agent community read public- read – used by monitoring tools to poll metrics
- write – allows configuration changes via SNMP (restrict access)
Step 4: Enable SNMP Traps & Set Format
snmp-agent trap enable standard
snmp-agent trap-format standardStep 5: (Optional) Configure Trap Destination Host
Replace 192.168.1.100 with your NMS server IP and public with your community string.
snmp-agent target-host trap address udp-domain 192.168.1.100 params securityname public v2cStep 6: Save the Configuration
save
quitVerification Commands
| Command | Purpose |
|---|---|
display snmp-agent sys-info | Show SNMP version and contact info |
display snmp-agent community | List configured communities |
display snmp-agent target-host | Verify trap destinations |
display snmp-agent trap all | Confirm trap status |
Complete Example Configuration
Copy this entire block to configure SNMP in one go.
enable
config
undo snmp-agent community complexity-check
snmp-agent sys-info version v2c
snmp-agent community read public
snmp-agent community write private
snmp-agent trap enable standard
snmp-agent trap-format standard
snmp-agent target-host trap address udp-domain 192.168.1.100 params securityname public v2c
save
quitExample Scenario
- OLT IP:
192.168.1.1 - NMS Server:
192.168.1.100 - Community:
public(read),private(write) - SNMP Version: v2c
- Result: OLT reachable via SNMP polling and sends traps to NMS.
How It Works
SNMP (Simple Network Management Protocol) allows a Network Management System (NMS) to query the OLT’s MIB (Management Information Base) for status data such as ONT status, PON port alarms, temperature, and traffic counters.
- Polling (Read): NMS sends GET requests every N seconds to the OLT.
- Traps: OLT pushes alerts (link down, LOS, dying gasp) to the NMS in real time.
- Community string: Acts as a password shared between OLT and NMS.
Technical Details
| Item | Value |
|---|---|
| Supported Versions | SNMP v1, v2c, v3 |
| Default Port | UDP 161 (polling), UDP 162 (traps) |
| Recommended Version | v2c for simplicity, v3 for security |
| Max Communities | Typically 20+ |
| MIB Support | Huawei proprietary + standard MIB-II |
Limitations:
- SNMP v2c has no encryption – use v3 in secure environments.
- Community names are case-sensitive.
- Complexity-check must be disabled for
public/privateon newer firmware.
Practical Technician Tips
- 🔧 Common mistake: Forgetting to
save– config lost after reboot. - 🔧 Use SNMP v3 with authPriv for production networks.
- 🔧 Restrict SNMP access using ACLs (
snmp-agent acl). - 🔧 Verify reachability:
pingNMS from OLT before troubleshooting SNMP. - 🔧 If polling fails, check UDP 161 isn’t blocked by firewall.
- 🔧 For MA5680T, same commands apply with minor syntax variations.
Frequently Asked Questions
Q1: What is the default SNMP community on Huawei OLT?
There is no default. You must manually create public/private communities.
Q2: Why does the OLT reject public as a community name?
Newer firmware enforces complexity-check. Disable it with undo snmp-agent community complexity-check or use a stronger name.
Q3: How do I monitor a Huawei OLT with Zabbix?
Enable SNMP v2c, add the OLT as a host in Zabbix, use community public, and import the Huawei OLT template.
Q4: Can I use SNMP v3 instead of v2c?
Yes. Use snmp-agent sys-info version v3 and configure USM users with auth/priv.
Q5: What port does SNMP trap use?
UDP 162.
Q6: How do I test SNMP from Linux?
Run snmpwalk -v2c -c public 192.168.1.1
Q7: Does SNMP configuration survive a reboot?
Only if you run save after configuration.
Q8: How do I delete an SNMP community?
Run undo snmp-agent community read public
Sources / References: Huawei MA5800 Series Configuration Guide • Huawei MA5680T CLI Reference Manual • RFC 3411–3418 (SNMPv3, IETF) • RFC 1157 (SNMPv1)
