From b7160d18cb97c2847200aaa27da3a73cb640ae8d Mon Sep 17 00:00:00 2001 From: garnier-quentin Date: Tue, 23 Jun 2015 17:30:37 +0200 Subject: [PATCH] + Add netasq plugin (Ref #14) (need some test) --- network/netasq/snmp/mode/vpnstatus.pm | 360 ++++++++++++++++++++++++++ network/netasq/snmp/plugin.pm | 72 ++++++ 2 files changed, 432 insertions(+) create mode 100644 network/netasq/snmp/mode/vpnstatus.pm create mode 100644 network/netasq/snmp/plugin.pm diff --git a/network/netasq/snmp/mode/vpnstatus.pm b/network/netasq/snmp/mode/vpnstatus.pm new file mode 100644 index 000000000..c80a9d29a --- /dev/null +++ b/network/netasq/snmp/mode/vpnstatus.pm @@ -0,0 +1,360 @@ +################################################################################ +# Copyright 2005-2014 MERETHIS +# Centreon is developped by : Julien Mathis and Romain Le Merlus under +# GPL Licence 2.0. +# +# This program is free software; you can redistribute it and/or modify it under +# the terms of the GNU General Public License as published by the Free Software +# Foundation ; either version 2 of the License. +# +# This program is distributed in the hope that it will be useful, but WITHOUT ANY +# WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A +# PARTICULAR PURPOSE. See the GNU General Public License for more details. +# +# You should have received a copy of the GNU General Public License along with +# this program; if not, see . +# +# Linking this program statically or dynamically with other modules is making a +# combined work based on this program. Thus, the terms and conditions of the GNU +# General Public License cover the whole combination. +# +# As a special exception, the copyright holders of this program give MERETHIS +# permission to link this program with independent modules to produce an executable, +# regardless of the license terms of these independent modules, and to copy and +# distribute the resulting executable under terms of MERETHIS choice, provided that +# MERETHIS also meet, for each linked independent module, the terms and conditions +# of the license of that module. An independent module is a module which is not +# derived from this program. If you modify this program, you may extend this +# exception to your version of the program, but you are not obliged to do so. If you +# do not wish to do so, delete this exception statement from your version. +# +# For more information : contact@centreon.com +# Authors : Quentin Garnier +# +#################################################################################### + +package network::netasq::snmp::mode::vpnstatus; + +use base qw(centreon::plugins::mode); + +use strict; +use warnings; +use centreon::plugins::values; +use centreon::plugins::statefile; +use Digest::MD5 qw(md5_hex); + +my $thresholds = { + vpn => [ + ['larval', 'WARNING'], + ['mature', 'OK'], + ['dying', 'CRITICAL'], + ['dead', 'CRITICAL'], + ], +}; +my $instance_mode; + +my $maps_counters = { + vpn => { + '000_status' => { set => { + key_values => [ { name => 'ntqVPNState' } ], + closure_custom_calc => \&custom_status_calc, + output_template => 'Status : %s', output_error_template => 'Status : %s', + output_use => 'ntqVPNState', + closure_custom_perfdata => sub { return 0; }, + closure_custom_threshold_check => \&custom_threshold_output, + } + }, + '001_traffic' => { set => { + key_values => [ { name => 'ntqVPNBytes', diff => 1 }, { name => 'num' } ], + per_second => 1, output_change_bytes => 2, + output_template => 'Traffic: %s %s/s', + perfdatas => [ + { label => 'traffic', value => 'ntqVPNBytes_per_second', template => '%s', + unit => 'b/s', min => 0, label_extra_instance => 1, cast_int => 1, instance_use => 'num_absolute' }, + ], + } + }, + }, +}; + + +sub custom_threshold_output { + my ($self, %options) = @_; + + return $instance_mode->get_severity(section => 'vpn', value => $self->{result_values}->{ntqVPNState}); +} + +sub custom_status_calc { + my ($self, %options) = @_; + + $self->{result_values}->{ntqVPNState} = $options{new_datas}->{$self->{instance} . '_ntqVPNState'}; + return 0; +} + +sub new { + my ($class, %options) = @_; + my $self = $class->SUPER::new(package => __PACKAGE__, %options); + bless $self, $class; + + $self->{version} = '1.0'; + $options{options}->add_options(arguments => + { + "filter-id:s" => { name => 'filter_id' }, + "filter-src-ip:s" => { name => 'filter_src_ip' }, + "filter-dst-ip:s" => { name => 'filter_dst_ip' }, + "threshold-overload:s@" => { name => 'threshold_overload' }, + }); + + $self->{statefile_value} = centreon::plugins::statefile->new(%options); + + foreach my $key (('vpn')) { + foreach (keys %{$maps_counters->{$key}}) { + my ($id, $name) = split /_/; + if (!defined($maps_counters->{$key}->{$_}->{threshold}) || $maps_counters->{$key}->{$_}->{threshold} != 0) { + $options{options}->add_options(arguments => { + 'warning-' . $name . ':s' => { name => 'warning-' . $name }, + 'critical-' . $name . ':s' => { name => 'critical-' . $name }, + }); + } + $maps_counters->{$key}->{$_}->{obj} = centreon::plugins::values->new(statefile => $self->{statefile_value}, + output => $self->{output}, perfdata => $self->{perfdata}, + label => $name); + $maps_counters->{$key}->{$_}->{obj}->set(%{$maps_counters->{$key}->{$_}->{set}}); + } + } + + return $self; +} + +sub check_options { + my ($self, %options) = @_; + $self->SUPER::init(%options); + + foreach my $key (('vpn')) { + foreach (keys %{$maps_counters->{$key}}) { + $maps_counters->{$key}->{$_}->{obj}->init(option_results => $self->{option_results}); + } + } + + $instance_mode = $self; + $self->{statefile_value}->check_options(%options); + + $self->{overload_th} = {}; + foreach my $val (@{$self->{option_results}->{threshold_overload}}) { + if ($val !~ /^(.*?),(.*?),(.*)$/) { + $self->{output}->add_option_msg(short_msg => "Wrong threshold-overload option '" . $val . "'."); + $self->{output}->option_exit(); + } + my ($section, $status, $filter) = ($1, $2, $3); + if ($self->{output}->is_litteral_status(status => $status) == 0) { + $self->{output}->add_option_msg(short_msg => "Wrong threshold-overload status '" . $val . "'."); + $self->{output}->option_exit(); + } + $self->{overload_th}->{$section} = [] if (!defined($self->{overload_th}->{$section})); + push @{$self->{overload_th}->{$section}}, {filter => $filter, status => $status}; + } +} + +sub run { + my ($self, %options) = @_; + # $options{snmp} = snmp object + $self->{snmp} = $options{snmp}; + $self->{hostname} = $self->{snmp}->get_hostname(); + $self->{snmp_port} = $self->{snmp}->get_port(); + + $self->manage_selection(); + + my $multiple = 1; + if (scalar(keys %{$self->{vpn}}) == 1) { + $multiple = 0; + } + + if ($multiple == 1) { + $self->{output}->output_add(severity => 'OK', + short_msg => 'All VPN are ok'); + } + + my $matching = ''; + foreach (('filter_id', 'filter_src_ip', 'filter_dst_ip')) { + $matching .= defined($self->{option_results}->{$_}) ? $self->{option_results}->{$_} : 'all'; + } + $self->{new_datas} = {}; + $self->{statefile_value}->read(statefile => "netasq_" . $self->{hostname} . '_' . $self->{snmp_port} . '_' . $self->{mode} . '_' . md5_hex($matching)); + $self->{new_datas}->{last_timestamp} = time(); + + foreach my $id (sort keys %{$self->{vpn}}) { + my ($short_msg, $short_msg_append, $long_msg, $long_msg_append) = ('', '', '', ''); + my @exits = (); + foreach (sort keys %{$maps_counters->{vpn}}) { + my $obj = $maps_counters->{vpn}->{$_}->{obj}; + $obj->set(instance => $id); + + my ($value_check) = $obj->execute(values => $self->{vpn}->{$id}, + new_datas => $self->{new_datas}); + + if ($value_check != 0) { + $long_msg .= $long_msg_append . $obj->output_error(); + $long_msg_append = ', '; + next; + } + my $exit2 = $obj->threshold_check(); + push @exits, $exit2; + + my $output = $obj->output(); + $long_msg .= $long_msg_append . $output; + $long_msg_append = ', '; + + if (!$self->{output}->is_status(litteral => 1, value => $exit2, compare => 'ok')) { + $short_msg .= $short_msg_append . $output; + $short_msg_append = ', '; + } + + $maps_counters->{vpn}->{$_}->{obj}->perfdata(extra_instance => $multiple); + } + + $self->{output}->output_add(long_msg => "VPN '$self->{vpn}->{$id}->{num}/$self->{vpn}->{$id}->{src}/$self->{vpn}->{$id}->{dst}' $long_msg"); + my $exit = $self->{output}->get_most_critical(status => [ @exits ]); + if (!$self->{output}->is_status(litteral => 1, value => $exit, compare => 'ok')) { + $self->{output}->output_add(severity => $exit, + short_msg => "VPN '$self->{vpn}->{$id}->{num}/$self->{vpn}->{$id}->{src}/$self->{vpn}->{$id}->{dst}' $short_msg" + ); + } + + if ($multiple == 0) { + $self->{output}->output_add(short_msg => "VPN '$self->{vpn}->{$id}->{num}/$self->{vpn}->{$id}->{src}/$self->{vpn}->{$id}->{dst}' Usage $long_msg"); + } + } + + $self->{statefile_value}->write(data => $self->{new_datas}); + $self->{output}->display(); + $self->{output}->exit(); +} + +sub get_severity { + my ($self, %options) = @_; + my $status = 'UNKNOWN'; # default + + if (defined($self->{overload_th}->{$options{section}})) { + foreach (@{$self->{overload_th}->{$options{section}}}) { + if ($options{value} =~ /$_->{filter}/i) { + $status = $_->{status}; + return $status; + } + } + } + foreach (@{$thresholds->{$options{section}}}) { + if ($options{value} =~ /$$_[0]/i) { + $status = $$_[1]; + return $status; + } + } + + return $status; +} + +my %map_state = ( + 0 => 'larval', + 1 => 'mature', + 2 => 'dying', + 3 => 'dead', +); +my $mapping = { + ntqVPNIPSrc => { oid => '.1.3.6.1.4.1.11256.1.1.1.1.2' }, +}; +my $mapping2 = { + ntqVPNIPDst => { oid => '.1.3.6.1.4.1.11256.1.1.1.1.3' }, +}; +my $mapping3 = { + ntqVPNState => { oid => '.1.3.6.1.4.1.14823.2.2.1.1.3.3.1.7', map => \%map_state }, +}; +my $mapping4 = { + ntqVPNBytes => { oid => '.1.3.6.1.4.1.11256.1.1.1.1.13' }, +}; + +sub manage_selection { + my ($self, %options) = @_; + + $self->{results} = $self->{snmp}->get_multiple_table(oids => [ + { oid => $mapping->{ntqVPNIPSrc}->{oid} }, + { oid => $mapping2->{ntqVPNIPDst}->{oid} }, + { oid => $mapping3->{ntqVPNState}->{oid} }, + { oid => $mapping4->{ntqVPNBytes}->{oid} }, + ], + , nothing_quit => 1); + + $self->{vpn} = {}; + foreach my $oid (keys %{$self->{results}->{$mapping->{ntqVPNState}->{oid}}}) { + next if ($oid !~ /^$mapping->{ntqVPNState}->{oid}\.(.*)$/); + my $instance = $1; + my $result = $self->{snmp}->map_instance(mapping => $mapping, results => $self->{results}->{$mapping->{ntqVPNIPSrc}->{oid}}, instance => $instance); + my $result2 = $self->{snmp}->map_instance(mapping => $mapping2, results => $self->{results}->{$mapping2->{ntqVPNIPDst}->{oid}}, instance => $instance); + my $result3 = $self->{snmp}->map_instance(mapping => $mapping3, results => $self->{results}->{$mapping3->{ntqVPNState}->{oid}}, instance => $instance); + my $result4 = $self->{snmp}->map_instance(mapping => $mapping4, results => $self->{results}->{$mapping4->{ntqVPNBytes}->{oid}}, instance => $instance); + + if (defined($self->{option_results}->{filter_id}) && $self->{option_results}->{filter_id} ne '' && + $instance !~ /$self->{option_results}->{filter_id}/) { + $self->{output}->output_add(long_msg => "Skipping '" . $instance . "': no matching filter id."); + next; + } + if (defined($self->{option_results}->{filter_src_ip}) && $self->{option_results}->{filter_src_ip} ne '' && + $result->{ntqVPNIPSrc} !~ /$self->{option_results}->{filter_src_ip}/) { + $self->{output}->output_add(long_msg => "Skipping '" . $result->{ntqVPNIPSrc} . "': no matching filter src-ip."); + next; + } + if (defined($self->{option_results}->{filter_dst_ip}) && $self->{option_results}->{filter_dst_ip} ne '' && + $result2->{ntqVPNIPDst} !~ /$self->{option_results}->{filter_dst_ip}/) { + $self->{output}->output_add(long_msg => "Skipping '" . $result2->{ntqVPNIPDst} . "': no matching filter dst-ip."); + next; + } + + $self->{vpn}->{$instance} = { num => $instance, %$result, %$result2, %$result3, %$result4}; + $self->{vpn}->{$instance}->{ntqVPNBytes} *= 8 if (defined($self->{vpn}->{$instance}->{ntqVPNBytes})); + } + + if (scalar(keys %{$self->{vpn}}) <= 0) { + $self->{output}->add_option_msg(short_msg => "No entry found."); + $self->{output}->option_exit(); + } +} + +1; + +__END__ + +=head1 MODE + +Check VPN states. + +=over 8 + +=item B<--warning-*> + +Threshold warning. +Can be: 'traffic'. + +=item B<--critical-*> + +Threshold critical. +Can be: 'traffic'. + +=item B<--filter-id> + +Filter by id (regexp can be used). + +=item B<--filter-src-ip> + +Filter by src ip (regexp can be used). + +=item B<--filter-dst-ip> + +Filter by dst ip (regexp can be used). + +=item B<--threshold-overload> + +Set to overload default threshold values (syntax: section,status,regexp) +It used before default thresholds (order stays). +Example: --threshold-overload='vpn,CRITICAL,^(?!(mature)$)' + +=back + +=cut diff --git a/network/netasq/snmp/plugin.pm b/network/netasq/snmp/plugin.pm new file mode 100644 index 000000000..52d6ba472 --- /dev/null +++ b/network/netasq/snmp/plugin.pm @@ -0,0 +1,72 @@ +################################################################################ +# Copyright 2005-2013 MERETHIS +# Centreon is developped by : Julien Mathis and Romain Le Merlus under +# GPL Licence 2.0. +# +# This program is free software; you can redistribute it and/or modify it under +# the terms of the GNU General Public License as published by the Free Software +# Foundation ; either version 2 of the License. +# +# This program is distributed in the hope that it will be useful, but WITHOUT ANY +# WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A +# PARTICULAR PURPOSE. See the GNU General Public License for more details. +# +# You should have received a copy of the GNU General Public License along with +# this program; if not, see . +# +# Linking this program statically or dynamically with other modules is making a +# combined work based on this program. Thus, the terms and conditions of the GNU +# General Public License cover the whole combination. +# +# As a special exception, the copyright holders of this program give MERETHIS +# permission to link this program with independent modules to produce an executable, +# regardless of the license terms of these independent modules, and to copy and +# distribute the resulting executable under terms of MERETHIS choice, provided that +# MERETHIS also meet, for each linked independent module, the terms and conditions +# of the license of that module. An independent module is a module which is not +# derived from this program. If you modify this program, you may extend this +# exception to your version of the program, but you are not obliged to do so. If you +# do not wish to do so, delete this exception statement from your version. +# +# For more information : contact@centreon.com +# Authors : Quentin Garnier +# +#################################################################################### + +package network::netasq::snmp::plugin; + +use strict; +use warnings; +use base qw(centreon::plugins::script_snmp); + +sub new { + my ($class, %options) = @_; + my $self = $class->SUPER::new(package => __PACKAGE__, %options); + bless $self, $class; + # $options->{options} = options object + + $self->{version} = '1.0'; + %{$self->{modes}} = ( + 'cpu' => 'snmp_standard::mode::cpu', + 'cpu-detailed' => 'snmp_standard::mode::cpudetailed', + 'load' => 'snmp_standard::mode::loadaverage', + #'ha-status' => 'network::netasq::snmp::mode::hastatus', + 'memory' => 'snmp_standard::mode::memory', + 'storage' => 'snmp_standard::mode::storage', + 'swap' => 'snmp_standard::mode::swap', + 'traffic' => 'snmp_standard::mode::traffic', + 'vpn-status' => 'network::netasq::snmp::mode::vpnstatus', + ); + + return $self; +} + +1; + +__END__ + +=head1 PLUGIN DESCRIPTION + +Check Netasq equipment in SNMP. + +=cut