Can't seem to SNMP across interfaces



  • Hi

    I have a Mikrotik-AP hanging off interface igb2 (WIFI) with an address of 172.16.1.2. I also have my LAN interface on igb1 addressed as 10.1.1.2.  I would like to do an snmpwalk from a machine (10.1.1.30) connected to 10.1.1.2 to the AP at 172.16.1.2.

    The Mikrotik is setup to listen on 0.0.0./0 ( all addresses ).

    I have created a rule to allow UDP traffic from LAN interface to the WIFI interface on ports 161,162.

    I have a laptop connected to WIFI with an address of 172.16.1.14 - it can do an snmpwalk across the AP fine.

    From the firewall itself I can do a bsnmpwalk across 172.16.1.2 fine as well.

    I can see the rule being triggered when attempting an snmpwalk from 10.1.1.30 to 172.16.1.2 - but it just times out.

    A packet capture on the WIFI interface only shows this:

    22:58:24.586120 IP 10.1.1.10.44521 > 172.16.1.2.161: UDP, length 40
    22:58:25.587230 IP 10.1.1.10.44521 > 172.16.1.2.161: UDP, length 40
    22:58:26.588424 IP 10.1.1.10.44521 > 172.16.1.2.161: UDP, length 40
    22:58:27.589628 IP 10.1.1.10.44521 > 172.16.1.2.161: UDP, length 40
    

    and this is in the firewall log

    Mar 10 22:58:32	LAN	 SNMP Access to wireless access point (1454148788)	  10.1.1.10:56686	  172.16.1.2:161	UDP
    

    How do I go about getting this working?

    Thanks