NetApp - ONTAP: AutoSupport
NetApp Solution · Config document · referenced from Logging, monitoring and AutoSupport
The AutoSupport configuration of a node as it was first set, with every parameter spelled out, and the one later change the notes record. The command runs in the diagnostic privilege level because several of its parameters exist only there.
| Item | Value |
|---|---|
| Runs on | The cluster shell, as admin, privilege level diag |
| Shown here for | Node 1 of DC1-A-XNAS001 |
| Also applied to | The other three nodes of site 1, see the table below |
| Mail host | dc1-a-vcmsx001.adm.example.net |
| Proxy | dc1-a-vcprx001.adm.example.net:3128 |
| ONTAP version at the time | 9.1 |
The command set
# --- 1. Diagnostic privilege level ------------------------------------------- # Throttle, payload format, transmission window, rate limits, local collection # and the OnDemand parameters are visible only here. set d # --- 2. The complete configuration of one node (one line) -------------------- # state enable, mail through the internal mail host, HTTPS to the vendor # through the proxy; delivery to vendor support disabled at this stage, # private data removed, AutoSupport OnDemand disabled. system node autosupport modify -node DC1-A-ANAS001M -state enable -mail-hosts dc1-a-vcmsx001.adm.example.net -from netapp@ad.example.net -to ops@example.net,ops@example.net,ops@example.net -noteto ops@example.net,ops@example.net,ops@example.net -partner-address - -support disable -transport https -url support.netapp.com/asupprod/post/1.0/postAsup -put-url support.netapp.com/put/AsupPut -proxy-url dc1-a-vcprx001.adm.example.net:3128 -support-address autosupport@netapp.com -hostname-subj true -nht true -perf true -retry-interval 4m -retry-count 15 -reminder false -throttle true -payload-format tgz -periodic-tx-window 1h -max-http-size 50MB -max-smtp-size 5MB -max-download-rate unlimited -max-upload-rate unlimited -remove-private-data true -validate-digital-certificate true -local-collection true -ondemand-state disable -ondemand-remote-diagnostics-state disable -ondemand-download-state disable -ondemand-server-url https://support.netapp.com/aods/asupmessage -ondemand-polling-interval 60 # --- 3. Check ---------------------------------------------------------------- # Notes beside the output: "Send AutoSupport Messages to Vendor Support" must # be changed to enable, "Validate Digital Certificate Received" to false. autosupport show -node DC1-A-ANAS001M # --- 4. Later: temporarily send private data too (for a support case) -------- system node autosupport modify -node DC1-A-ANAS001 -remove-private-data false
The three recipients are three different internal addresses in the original; they are anonymized to the same one here.
| Node | -node in the command | Everything else |
|---|---|---|
| Site 1, datacenter A, node 1 | DC1-A-ANAS001M | As shown |
| Site 1, datacenter A, node 2 | DC1-A-ANAS002M | Identical |
| Site 1, datacenter B, node 1 | DC1-B-ANAS001M | Identical, the same mail host and proxy |
| Site 1, datacenter B, node 2 | DC1-B-ANAS002M | Identical, the same mail host and proxy |
At the time of the command the nodes carried an M at the end of their names; the later line 4 and the as-built report use the names without it.
What the as-built report of March 2018 shows differs from the command in three places.
| Parameter | In the command | In the as-built report |
|---|---|---|
-support | disable | Enabled |
-remove-private-data | true | False |
-from | netapp@ad.example.net | netapp_mail@ad.example.net |
The commands that made the first and the third change are not in the notes. The output taken before the command shows the earlier state: support enabled, payload 7z, reminder on, private data not removed, no -to addresses, OnDemand enabled with a polling interval of 60 minutes.
Checked against ONTAP 9.19.1
| As built | Today |
|---|---|
system node autosupport modify with -state, -mail-hosts, -from, -to, -support, -transport https, -proxy-url | Valid. -transport accepts only smtp and https. -proxy-url also accepts an http:// or https:// prefix and user@host:port |
-noteto | Deprecated; an EMS email destination takes its place |
| Mail host without authentication or encryption | New parameters: -smtp-encryption with none or start_tls, -validate-smtp-certificate, and a user and password for the mail host |
-url, -put-url, -support-address, -nht, -throttle, -payload-format, -periodic-tx-window, -max-download-rate, -max-upload-rate, -local-collection, -ondemand-download-state, -ondemand-server-url, -ondemand-polling-interval | None of these is in the 9.19.1 reference, which lists the admin and advanced parameters. Whether they still exist at the diagnostic level could not be confirmed |
-validate-digital-certificate, which the notes wanted to set to false | Still exists, at the advanced level. Disabling it removes the validation of the server certificate for AutoSupport delivery |
The mail problem of 2017, a mail server that demands authentication, has a parameter now. The long line should not be copied: about half of its parameters are diagnostic-level settings that the current reference does not document.