System monitoring Page 88 FortiRecorder 2.4.2 Administration Guide
6. Create at least one SNMP community to define which hosts are allowed to query, and which
hosts will receive traps. See “Configuring an SNMP community”.
7. If using SNMPv3, see “Configuring SNMP v3 users”.
See also
• Configuring an SNMP community
• Configuring SNMP v3 users
Configuring an SNMP community
An SNMP community is a grouping of equipment for network administration purposes. You
must configure your FortiRecorder appliance to belong to at least one SNMP community so that
community’s SNMP managers can query the FortiRecorder appliance’s system information and
receive SNMP traps from the FortiRecorder appliance.
On FortiRecorder, SNMP communities are also where you enable the traps that will be sent to
that group of hosts.
You can add up to three SNMP communities. Each community can have a different
configuration for queries and traps, and the set of events that trigger a trap. You can also add
the IP addresses of up to 8 SNMP managers to each community to designate the destination of
traps and which IP addresses are permitted to query the FortiRecorder appliance.
To add an SNMP community via the web UI
1. Go to System > Configuration > SNMP.
2. If you have not already configured the agent, do so before continuing. See “To configure the
SNMP agent via the web UI”.
3. Under Community, click New.
A dialog appears.
4. Configure these settings:
Setting name Description
Name Type the name of the SNMP community to which the FortiRecorder
appliance and at least one SNMP manager belongs, such as public.
The FortiRecorder appliance will not respond to SNMP managers whose
query packets do not contain a matching community name. Similarly,
trap packets from the FortiRecorder appliance will include community
name, and an SNMP manager may not accept the trap if its community
name does not match.
Caution: Fortinet strongly recommends that you do ne add
FortiRecorder to the community named public. This popular default
name is well-known, and attackers that gain access to your network will
often try this name first.
Enable Enable this community entry.