MIB Viewer

CISCO-IPSEC-FLOW-MONITOR-MIB

449 objects
This is a MIB Module for monitoring the structures in IPSec-based Virtual Private Networks. The MIB has been designed to be adopted as an IETF standard. Hence Cisco-specific features of IPSec protocol are excluded from this MIB. Acronyms The following acronyms are used in this document: IPSec: Secure IP Protocol VPN: Virtual Private Network ISAKMP: Internet Security Association and Key Exchange Protocol IKE: Internet Key Exchange Protocol SA: Security Association MM: Main Mode - the process of setting up a Phase 1 SA to secure the exchanges required to setup Phase 2 SAs QM: Quick Mode - the process of setting up Phase 2 Security Associations using a Phase 1 SA. Overview of IPsec MIB The MIB contains six major groups of objects which are used to manage the IPSec Protocol. These groups include a Levels Group, a Phase-1 Group, a Phase-2 Group, a History Group, a Failure Group and a TRAP Control Group. The following table illustrates the structure of the IPSec MIB. The Phase 1 group models objects pertaining to IKE negotiations and tunnels. The Phase 2 group models objects pertaining to IPSec data tunnels. The History group is to aid applications that do trending analysis. The Failure group is to enable an operator to do troubleshooting and debugging of the VPN Router. Further, counters are supported to aid Intrusion Detection. In addition to the five major MIB Groups, there are a number of Notifications. The following table illustrates the name and description of the IPSec TRAPs. For a detailed discussion, please refer to the IETF draft draft-ietf-ipsec-flow-monitoring-mib-00.txt.
Imported Objects
CISCO-MEDIA-GATEWAY-MIBcmgwIndex
CISCO-SMIciscoMgmt
SNMPv2-CONFMODULE-COMPLIANCE NOTIFICATION-GROUP OBJECT-GROUP
SNMPv2-SMICounter32 Counter64 Gauge32 Integer32 MODULE-IDENTITY NOTIFICATION-TYPE OBJECT-TYPE Unsigned32
SNMPv2-TCDisplayString TEXTUAL-CONVENTION TimeInterval TimeStamp TruthValue
OIDNameAccessStatusDescription
1.3.6.1.4.1.9.9.171IdentityciscoIpSecFlowMonitorMIBThis is a MIB Module for monitoring the structures in IPSec-based Virtual Private Networks. The MIB has been designed to be adopted as an IETF standard. Hence …
1.3.6.1.4.1.9.9.171.1NodecipSecMIBObjects
1.3.6.1.4.1.9.9.171.1.1NodecipSecLevels
1.3.6.1.4.1.9.9.171.1.1.1ScalarcipSecMibLevelread-onlycurrentThe level of the IPsec MIB.
1.3.6.1.4.1.9.9.171.1.2NodecipSecPhaseOne
1.3.6.1.4.1.9.9.171.1.2.1NodecikeGlobalStats
1.3.6.1.4.1.9.9.171.1.2.1.1ScalarcikeGlobalActiveTunnelsread-onlycurrentThe number of currently active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.2ScalarcikeGlobalPreviousTunnelsread-onlycurrentThe total number of previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.3ScalarcikeGlobalInOctetsread-onlycurrentThe total number of octets received by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.4ScalarcikeGlobalInPktsread-onlycurrentThe total number of packets received by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.5ScalarcikeGlobalInDropPktsread-onlycurrentThe total number of packets which were dropped during receive processing by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.6ScalarcikeGlobalInNotifysread-onlycurrentThe total number of notifys received by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.7ScalarcikeGlobalInP2Exchgsread-onlycurrentThe total number of IPsec Phase-2 exchanges received by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.8ScalarcikeGlobalInP2ExchgInvalidsread-onlycurrentThe total number of IPsec Phase-2 exchanges which were received and found to be invalid by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.9ScalarcikeGlobalInP2ExchgRejectsread-onlycurrentThe total number of IPsec Phase-2 exchanges which were received and rejected by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.10ScalarcikeGlobalInP2SaDelRequestsread-onlycurrentThe total number of IPsec Phase-2 security association delete requests received by all currently and previously active and IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.11ScalarcikeGlobalOutOctetsread-onlycurrentThe total number of octets sent by all currently and previously active and IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.12ScalarcikeGlobalOutPktsread-onlycurrentThe total number of packets sent by all currently and previously active and IPsec Phase-1 Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.13ScalarcikeGlobalOutDropPktsread-onlycurrentThe total number of packets which were dropped during send processing by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.14ScalarcikeGlobalOutNotifysread-onlycurrentThe total number of notifys sent by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.15ScalarcikeGlobalOutP2Exchgsread-onlycurrentThe total number of IPsec Phase-2 exchanges which were sent by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.16ScalarcikeGlobalOutP2ExchgInvalidsread-onlycurrentThe total number of IPsec Phase-2 exchanges which were sent and found to be invalid by all currently and previously active IPsec Phase-1 Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.17ScalarcikeGlobalOutP2ExchgRejectsread-onlycurrentThe total number of IPsec Phase-2 exchanges which were sent and rejected by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.18ScalarcikeGlobalOutP2SaDelRequestsread-onlycurrentThe total number of IPsec Phase-2 SA delete requests sent by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.19ScalarcikeGlobalInitTunnelsread-onlycurrentThe total number of IPsec Phase-1 IKE Tunnels which were locally initiated.
1.3.6.1.4.1.9.9.171.1.2.1.20ScalarcikeGlobalInitTunnelFailsread-onlycurrentThe total number of IPsec Phase-1 IKE Tunnels which were locally initiated and failed to activate.
1.3.6.1.4.1.9.9.171.1.2.1.21ScalarcikeGlobalRespTunnelFailsread-onlycurrentThe total number of IPsec Phase-1 IKE Tunnels which were remotely initiated and failed to activate.
1.3.6.1.4.1.9.9.171.1.2.1.22ScalarcikeGlobalSysCapFailsread-onlycurrentThe total number of system capacity failures which occurred during processing of all current and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.23ScalarcikeGlobalAuthFailsread-onlycurrentThe total number of authentications which ended in failure by all current and previous IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.24ScalarcikeGlobalDecryptFailsread-onlycurrentThe total number of decryptions which ended in failure by all current and previous IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.25ScalarcikeGlobalHashValidFailsread-onlycurrentThe total number of hash validations which ended in failure by all current and previous IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.1.26ScalarcikeGlobalNoSaFailsread-onlycurrentThe total number of non-existent Security Association in failures which occurred during processing of all current and previous IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.2TablecikePeerTablenot-accessiblecurrentThe IPsec Phase-1 Internet Key Exchange Peer Table. There is one entry in this table for each IPsec Phase-1 IKE peer association which is currently associated …
1.3.6.1.4.1.9.9.171.1.2.2.1RowcikePeerEntrynot-accessiblecurrentEach entry contains the attributes associated with an IPsec Phase-1 IKE peer association.
1.3.6.1.4.1.9.9.171.1.2.2.1.1ColumncikePeerLocalTypenot-accessiblecurrentThe type of local peer identity. The local peer may be identified by: 1. an IP address, or 2. a host name.
1.3.6.1.4.1.9.9.171.1.2.2.1.2ColumncikePeerLocalValuenot-accessiblecurrentThe value of the local peer identity. If the local peer type is an IP Address, then this is the IP Address used to identify the local peer. If the local peer t…
1.3.6.1.4.1.9.9.171.1.2.2.1.3ColumncikePeerRemoteTypenot-accessiblecurrentThe type of remote peer identity. The remote peer may be identified by: 1. an IP address, or 2. a host name.
1.3.6.1.4.1.9.9.171.1.2.2.1.4ColumncikePeerRemoteValuenot-accessiblecurrentThe value of the remote peer identity. If the remote peer type is an IP Address, then this is the IP Address used to identify the remote peer. If the remote pe…
1.3.6.1.4.1.9.9.171.1.2.2.1.5ColumncikePeerIntIndexnot-accessiblecurrentThe internal index of the local-remote peer association. This internal index is used to uniquely identify multiple associations between the local and remote pe…
1.3.6.1.4.1.9.9.171.1.2.2.1.6ColumncikePeerLocalAddrread-onlycurrentThe IP address of the local peer.
1.3.6.1.4.1.9.9.171.1.2.2.1.7ColumncikePeerRemoteAddrread-onlycurrentThe IP address of the remote peer.
1.3.6.1.4.1.9.9.171.1.2.2.1.8ColumncikePeerActiveTimeread-onlycurrentThe length of time that the peer association has existed in hundredths of a second.
1.3.6.1.4.1.9.9.171.1.2.2.1.9ColumncikePeerActiveTunnelIndexread-onlycurrentThe index of the active IPsec Phase-1 IKE Tunnel (cikeTunIndex in the cikeTunnelTable) for this peer association. If an IPsec Phase-1 IKE Tunnel is not current…
1.3.6.1.4.1.9.9.171.1.2.3TablecikeTunnelTablenot-accessiblecurrentThe IPsec Phase-1 Internet Key Exchange Tunnel Table. There is one entry in this table for each active IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1RowcikeTunnelEntrynot-accessiblecurrentEach entry contains the attributes associated with an active IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1.1ColumncikeTunIndexnot-accessiblecurrentThe index of the IPsec Phase-1 IKE Tunnel Table. The value of the index is a number which begins at one and is incremented with each tunnel that is created. Th…
1.3.6.1.4.1.9.9.171.1.2.3.1.2ColumncikeTunLocalTyperead-onlycurrentThe type of local peer identity. The local peer may be identified by: 1. an IP address, or 2. a host name.
1.3.6.1.4.1.9.9.171.1.2.3.1.3ColumncikeTunLocalValueread-onlycurrentThe value of the local peer identity. If the local peer type is an IP Address, then this is the IP Address used to identify the local peer. If the local peer t…
1.3.6.1.4.1.9.9.171.1.2.3.1.4ColumncikeTunLocalAddrread-onlycurrentThe IP address of the local endpoint for the IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1.5ColumncikeTunLocalNameread-onlycurrentThe DNS name of the local IP address for the IPsec Phase-1 IKE Tunnel. If the DNS name associated with the local tunnel endpoint is not known, then the value o…
1.3.6.1.4.1.9.9.171.1.2.3.1.6ColumncikeTunRemoteTyperead-onlycurrentThe type of remote peer identity. The remote peer may be identified by: 1. an IP address, or 2. a host name.
1.3.6.1.4.1.9.9.171.1.2.3.1.7ColumncikeTunRemoteValueread-onlycurrentThe value of the remote peer identity. If the remote peer type is an IP Address, then this is the IP Address used to identify the remote peer. If the remote pe…
1.3.6.1.4.1.9.9.171.1.2.3.1.8ColumncikeTunRemoteAddrread-onlycurrentThe IP address of the remote endpoint for the IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1.9ColumncikeTunRemoteNameread-onlycurrentThe DNS name of the remote IP address of IPsec Phase-1 IKE Tunnel. If the DNS name associated with the remote tunnel endpoint is not known, then the value of t…
1.3.6.1.4.1.9.9.171.1.2.3.1.10ColumncikeTunNegoModeread-onlycurrentThe negotiation mode of the IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1.11ColumncikeTunDiffHellmanGrpread-onlycurrentThe Diffie Hellman Group used in IPsec Phase-1 IKE negotiations.
1.3.6.1.4.1.9.9.171.1.2.3.1.12ColumncikeTunEncryptAlgoread-onlycurrentThe encryption algorithm used in IPsec Phase-1 IKE negotiations.
1.3.6.1.4.1.9.9.171.1.2.3.1.13ColumncikeTunHashAlgoread-onlycurrentThe hash algorithm used in IPsec Phase-1 IKE negotiations.
1.3.6.1.4.1.9.9.171.1.2.3.1.14ColumncikeTunAuthMethodread-onlycurrentThe authentication method used in IPsec Phase-1 IKE negotiations.
1.3.6.1.4.1.9.9.171.1.2.3.1.15ColumncikeTunLifeTimeread-onlycurrentThe negotiated LifeTime of the IPsec Phase-1 IKE Tunnel in seconds.
1.3.6.1.4.1.9.9.171.1.2.3.1.16ColumncikeTunActiveTimeread-onlycurrentThe length of time the IPsec Phase-1 IKE tunnel has been active in hundredths of seconds.
1.3.6.1.4.1.9.9.171.1.2.3.1.17ColumncikeTunSaRefreshThresholdread-onlycurrentThe security association refresh threshold in seconds.
1.3.6.1.4.1.9.9.171.1.2.3.1.18ColumncikeTunTotalRefreshesread-onlycurrentThe total number of security associations refreshes performed.
1.3.6.1.4.1.9.9.171.1.2.3.1.19ColumncikeTunInOctetsread-onlycurrentThe total number of octets received by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1.20ColumncikeTunInPktsread-onlycurrentThe total number of packets received by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1.21ColumncikeTunInDropPktsread-onlycurrentThe total number of packets dropped by this IPsec Phase-1 IKE Tunnel during receive processing.
1.3.6.1.4.1.9.9.171.1.2.3.1.22ColumncikeTunInNotifysread-onlycurrentThe total number of notifys received by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1.23ColumncikeTunInP2Exchgsread-onlycurrentThe total number of IPsec Phase-2 exchanges received by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1.24ColumncikeTunInP2ExchgInvalidsread-onlycurrentThe total number of IPsec Phase-2 exchanges received and found to be invalid by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1.25ColumncikeTunInP2ExchgRejectsread-onlycurrentThe total number of IPsec Phase-2 exchanges received and rejected by this IPsec Phase-1 Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1.26ColumncikeTunInP2SaDelRequestsread-onlycurrentThe total number of IPsec Phase-2 security association delete requests received by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1.27ColumncikeTunOutOctetsread-onlycurrentThe total number of octets sent by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1.28ColumncikeTunOutPktsread-onlycurrentThe total number of packets sent by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1.29ColumncikeTunOutDropPktsread-onlycurrentThe total number of packets dropped by this IPsec Phase-1 IKE Tunnel during send processing.
1.3.6.1.4.1.9.9.171.1.2.3.1.30ColumncikeTunOutNotifysread-onlycurrentThe total number of notifys sent by this IPsec Phase-1 Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1.31ColumncikeTunOutP2Exchgsread-onlycurrentThe total number of IPsec Phase-2 exchanges sent by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1.32ColumncikeTunOutP2ExchgInvalidsread-onlycurrentThe total number of IPsec Phase-2 exchanges sent and found to be invalid by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1.33ColumncikeTunOutP2ExchgRejectsread-onlycurrentThe total number of IPsec Phase-2 exchanges sent and rejected by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1.34ColumncikeTunOutP2SaDelRequestsread-onlycurrentThe total number of IPsec Phase-2 security association delete requests sent by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.2.3.1.35ColumncikeTunStatusread-writecurrentThe status of the MIB table row. This object can be used to bring the tunnel down by setting value of this object to destroy(2). This object cannot be used to …
1.3.6.1.4.1.9.9.171.1.2.4TablecikePeerCorrTablenot-accessiblecurrentThe IPsec Phase-1 Internet Key Exchange Peer Association to IPsec Phase-2 Tunnel Correlation Table. There is one entry in this table for each active IPsec Phas…
1.3.6.1.4.1.9.9.171.1.2.4.1RowcikePeerCorrEntrynot-accessiblecurrentEach entry contains the attributes of an IPsec Phase-1 IKE Peer Association to IPsec Phase-2 Tunnel Correlation.
1.3.6.1.4.1.9.9.171.1.2.4.1.1ColumncikePeerCorrLocalTypenot-accessiblecurrentThe type of local peer identity. The local peer may be identified by: 1. an IP address, or 2. a host name.
1.3.6.1.4.1.9.9.171.1.2.4.1.2ColumncikePeerCorrLocalValuenot-accessiblecurrentThe value of the local peer identity. If the local peer type is an IP Address, then this is the IP Address used to identify the local peer. If the local peer t…
1.3.6.1.4.1.9.9.171.1.2.4.1.3ColumncikePeerCorrRemoteTypenot-accessiblecurrentThe type of remote peer identity. The remote peer may be identified by: 1. an IP address, or 2. a host name.
1.3.6.1.4.1.9.9.171.1.2.4.1.4ColumncikePeerCorrRemoteValuenot-accessiblecurrentThe value of the remote peer identity. If the remote peer type is an IP Address, then this is the IP Address used to identify the remote peer. If the remote pe…
1.3.6.1.4.1.9.9.171.1.2.4.1.5ColumncikePeerCorrIntIndexnot-accessiblecurrentThe internal index of the local-remote peer association. This internal index is used to uniquely identify multiple associations between the local and remote pe…
1.3.6.1.4.1.9.9.171.1.2.4.1.6ColumncikePeerCorrSeqNumnot-accessiblecurrentThe sequence number of the local-remote peer association. This sequence number is used to uniquely identify multiple instances of an unique association between…
1.3.6.1.4.1.9.9.171.1.2.4.1.7ColumncikePeerCorrIpSecTunIndexread-onlycurrentThe index of the active IPsec Phase-2 Tunnel (cipSecTunIndex in the cipSecTunnelTable) for this IPsec Phase-1 IKE Peer Association.
1.3.6.1.4.1.9.9.171.1.2.5TablecikePhase1GWStatsTablenot-accessiblecurrentPhase-1 IKE stats information is included in this table. Each entry is related to a specific gateway which is identified by 'cmgwIndex'.
1.3.6.1.4.1.9.9.171.1.2.5.1RowcikePhase1GWStatsEntrynot-accessiblecurrentEach entry contains the attributes of an Phase-1 IKE stats information for the related gateway. There is only one entry for each gateway. The entry is created …
1.3.6.1.4.1.9.9.171.1.2.5.1.1ColumncikePhase1GWActiveTunnelsread-onlycurrentThe number of currently active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.2ColumncikePhase1GWPreviousTunnelsread-onlycurrentThe total number of previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.3ColumncikePhase1GWInOctetsread-onlycurrentThe total number of octets received by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.4ColumncikePhase1GWInPktsread-onlycurrentThe total number of packets received by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.5ColumncikePhase1GWInDropPktsread-onlycurrentThe total number of packets which were dropped during receive processing by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.6ColumncikePhase1GWInNotifysread-onlycurrentThe total number of notifys received by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.7ColumncikePhase1GWInP2Exchgsread-onlycurrentThe total number of IPsec Phase-2 exchanges received by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.8ColumncikePhase1GWInP2ExchgInvalidsread-onlycurrentThe total number of IPsec Phase-2 exchanges which were received and found to be invalid by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.9ColumncikePhase1GWInP2ExchgRejectsread-onlycurrentThe total number of IPsec Phase-2 exchanges which were received and rejected by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.10ColumncikePhase1GWInP2SaDelRequestsread-onlycurrentThe total number of IPsec Phase-2 'Security Association' delete requests received by all currently and previously active and IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.11ColumncikePhase1GWOutOctetsread-onlycurrentThe total number of octets sent by all currently and previously active and IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.12ColumncikePhase1GWOutPktsread-onlycurrentThe total number of packets sent by all currently and previously active and IPsec Phase-1 Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.13ColumncikePhase1GWOutDropPktsread-onlycurrentThe total number of packets which were dropped during send processing by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.14ColumncikePhase1GWOutNotifysread-onlycurrentThe total number of notifys sent by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.15ColumncikePhase1GWOutP2Exchgsread-onlycurrentThe total number of IPsec Phase-2 exchanges which were sent by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.16ColumncikePhase1GWOutP2ExchgInvalidsread-onlycurrentThe total number of IPsec Phase-2 exchanges which were sent and found to be invalid by all currently and previously active IPsec Phase-1 Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.17ColumncikePhase1GWOutP2ExchgRejectsread-onlycurrentThe total number of IPsec Phase-2 exchanges which were sent and rejected by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.18ColumncikePhase1GWOutP2SaDelRequestsread-onlycurrentThe total number of IPsec Phase-2 SA delete requests sent by all currently and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.19ColumncikePhase1GWInitTunnelsread-onlycurrentThe total number of IPsec Phase-1 IKE Tunnels which were locally initiated.
1.3.6.1.4.1.9.9.171.1.2.5.1.20ColumncikePhase1GWInitTunnelFailsread-onlycurrentThe total number of IPsec Phase-1 IKE Tunnels which were locally initiated and failed to activate.
1.3.6.1.4.1.9.9.171.1.2.5.1.21ColumncikePhase1GWRespTunnelFailsread-onlycurrentThe total number of IPsec Phase-1 IKE Tunnels which were remotely initiated and failed to activate.
1.3.6.1.4.1.9.9.171.1.2.5.1.22ColumncikePhase1GWSysCapFailsread-onlycurrentThe total number of system capacity failures which occurred during processing of all current and previously active IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.23ColumncikePhase1GWAuthFailsread-onlycurrentThe total number of authentications which ended in failure by all current and previous IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.24ColumncikePhase1GWDecryptFailsread-onlycurrentThe total number of decryptions which ended in failure by all current and previous IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.25ColumncikePhase1GWHashValidFailsread-onlycurrentThe total number of hash validations which ended in failure by all current and previous IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.2.5.1.26ColumncikePhase1GWNoSaFailsread-onlycurrentThe total number of non-existent 'Security Association' failures occurred during processing of current and previous IPsec Phase-1 IKE Tunnels.
1.3.6.1.4.1.9.9.171.1.3NodecipSecPhaseTwo
1.3.6.1.4.1.9.9.171.1.3.1NodecipSecGlobalStats
1.3.6.1.4.1.9.9.171.1.3.1.1ScalarcipSecGlobalActiveTunnelsread-onlycurrentThe total number of currently active IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.1.2ScalarcipSecGlobalPreviousTunnelsread-onlycurrentThe total number of previously active IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.1.3ScalarcipSecGlobalInOctetsread-onlycurrentThe total number of octets received by all current and previous IPsec Phase-2 Tunnels. This value is accumulated BEFORE determining whether or not the packet s…
1.3.6.1.4.1.9.9.171.1.3.1.4ScalarcipSecGlobalHcInOctetsread-onlycurrentA high capacity count of the total number of octets received by all current and previous IPsec Phase-2 Tunnels. This value is accumulated BEFORE determining wh…
1.3.6.1.4.1.9.9.171.1.3.1.5ScalarcipSecGlobalInOctWrapsread-onlycurrentThe number of times the global octets received counter (cipSecGlobalInOctets) has wrapped.
1.3.6.1.4.1.9.9.171.1.3.1.6ScalarcipSecGlobalInDecompOctetsread-onlycurrentThe total number of decompressed octets received by all current and previous IPsec Phase-2 Tunnels. This value is accumulated AFTER the packet is decompressed.…
1.3.6.1.4.1.9.9.171.1.3.1.7ScalarcipSecGlobalHcInDecompOctetsread-onlycurrentA high capacity count of the total number of decompressed octets received by all current and previous IPsec Phase-2 Tunnels. This value is accumulated AFTER th…
1.3.6.1.4.1.9.9.171.1.3.1.8ScalarcipSecGlobalInDecompOctWrapsread-onlycurrentThe number of times the global decompressed octets received counter (cipSecGlobalInDecompOctets) has wrapped.
1.3.6.1.4.1.9.9.171.1.3.1.9ScalarcipSecGlobalInPktsread-onlycurrentThe total number of packets received by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.1.10ScalarcipSecGlobalInDropsread-onlycurrentThe total number of packets dropped during receive processing by all current and previous IPsec Phase-2 Tunnels. This count does NOT include packets dropped du…
1.3.6.1.4.1.9.9.171.1.3.1.11ScalarcipSecGlobalInReplayDropsread-onlycurrentThe total number of packets dropped during receive processing due to Anti-Replay processing by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.1.12ScalarcipSecGlobalInAuthsread-onlycurrentThe total number of inbound authentication's performed by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.1.13ScalarcipSecGlobalInAuthFailsread-onlycurrentThe total number of inbound authentication's which ended in failure by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.1.14ScalarcipSecGlobalInDecryptsread-onlycurrentThe total number of inbound decryption's performed by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.1.15ScalarcipSecGlobalInDecryptFailsread-onlycurrentThe total number of inbound decryption's which ended in failure by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.1.16ScalarcipSecGlobalOutOctetsread-onlycurrentThe total number of octets sent by all current and previous IPsec Phase-2 Tunnels. This value is accumulated AFTER determining whether or not the packet should…
1.3.6.1.4.1.9.9.171.1.3.1.17ScalarcipSecGlobalHcOutOctetsread-onlycurrentA high capacity count of the total number of octets sent by all current and previous IPsec Phase-2 Tunnels. This value is accumulated AFTER determining whether…
1.3.6.1.4.1.9.9.171.1.3.1.18ScalarcipSecGlobalOutOctWrapsread-onlycurrentThe number of times the global octets sent counter (cipSecGlobalOutOctets) has wrapped.
1.3.6.1.4.1.9.9.171.1.3.1.19ScalarcipSecGlobalOutUncompOctetsread-onlycurrentThe total number of uncompressed octets sent by all current and previous IPsec Phase-2 Tunnels. This value is accumulated BEFORE the packet is compressed. If c…
1.3.6.1.4.1.9.9.171.1.3.1.20ScalarcipSecGlobalHcOutUncompOctetsread-onlycurrentA high capacity count of the total number of uncompressed octets sent by all current and previous IPsec Phase-2 Tunnels. This value is accumulated BEFORE the p…
1.3.6.1.4.1.9.9.171.1.3.1.21ScalarcipSecGlobalOutUncompOctWrapsread-onlycurrentThe number of times the global uncompressed octets sent counter (cipSecGlobalOutUncompOctets) has wrapped.
1.3.6.1.4.1.9.9.171.1.3.1.22ScalarcipSecGlobalOutPktsread-onlycurrentThe total number of packets sent by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.1.23ScalarcipSecGlobalOutDropsread-onlycurrentThe total number of packets dropped during send processing by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.1.24ScalarcipSecGlobalOutAuthsread-onlycurrentThe total number of outbound authentication's performed by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.1.25ScalarcipSecGlobalOutAuthFailsread-onlycurrentThe total number of outbound authentication's which ended in failure by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.1.26ScalarcipSecGlobalOutEncryptsread-onlycurrentThe total number of outbound encryption's performed by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.1.27ScalarcipSecGlobalOutEncryptFailsread-onlycurrentThe total number of outbound encryption's which ended in failure by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.1.28ScalarcipSecGlobalProtocolUseFailsread-onlycurrentThe total number of protocol use failures which occurred during processing of all current and previously active IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.1.29ScalarcipSecGlobalNoSaFailsread-onlycurrentThe total number of non-existent Security Association in failures which occurred during processing of all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.1.30ScalarcipSecGlobalSysCapFailsread-onlycurrentThe total number of system capacity failures which occurred during processing of all current and previously active IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.2TablecipSecTunnelTablenot-accessiblecurrentThe IPsec Phase-2 Tunnel Table. There is one entry in this table for each active IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1RowcipSecTunnelEntrynot-accessiblecurrentEach entry contains the attributes associated with an active IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.1ColumncipSecTunIndexnot-accessiblecurrentThe index of the IPsec Phase-2 Tunnel Table. The value of the index is a number which begins at one and is incremented with each tunnel that is created. The va…
1.3.6.1.4.1.9.9.171.1.3.2.1.2ColumncipSecTunIkeTunnelIndexread-onlycurrentThe index of the associated IPsec Phase-1 IKE Tunnel. (cikeTunIndex in the cikeTunnelTable)
1.3.6.1.4.1.9.9.171.1.3.2.1.3ColumncipSecTunIkeTunnelAliveread-onlycurrentAn indicator which specifies whether or not the IPsec Phase-1 IKE Tunnel currently exists.
1.3.6.1.4.1.9.9.171.1.3.2.1.4ColumncipSecTunLocalAddrread-onlycurrentThe IP address of the local endpoint for the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.5ColumncipSecTunRemoteAddrread-onlycurrentThe IP address of the remote endpoint for the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.6ColumncipSecTunKeyTyperead-onlycurrentThe type of key used by the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.7ColumncipSecTunEncapModeread-onlycurrentThe encapsulation mode used by the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.8ColumncipSecTunLifeSizeread-onlycurrentThe negotiated LifeSize of the IPsec Phase-2 Tunnel in kilobytes.
1.3.6.1.4.1.9.9.171.1.3.2.1.9ColumncipSecTunLifeTimeread-onlycurrentThe negotiated LifeTime of the IPsec Phase-2 Tunnel in seconds.
1.3.6.1.4.1.9.9.171.1.3.2.1.10ColumncipSecTunActiveTimeread-onlycurrentThe length of time the IPsec Phase-2 Tunnel has been active in hundredths of seconds.
1.3.6.1.4.1.9.9.171.1.3.2.1.11ColumncipSecTunSaLifeSizeThresholdread-onlycurrentThe security association LifeSize refresh threshold in kilobytes.
1.3.6.1.4.1.9.9.171.1.3.2.1.12ColumncipSecTunSaLifeTimeThresholdread-onlycurrentThe security association LifeTime refresh threshold in seconds.
1.3.6.1.4.1.9.9.171.1.3.2.1.13ColumncipSecTunTotalRefreshesread-onlycurrentThe total number of security association refreshes performed.
1.3.6.1.4.1.9.9.171.1.3.2.1.14ColumncipSecTunExpiredSaInstancesread-onlycurrentThe total number of security associations which have expired.
1.3.6.1.4.1.9.9.171.1.3.2.1.15ColumncipSecTunCurrentSaInstancesread-onlycurrentThe number of security associations which are currently active or expiring.
1.3.6.1.4.1.9.9.171.1.3.2.1.16ColumncipSecTunInSaDiffHellmanGrpread-onlycurrentThe Diffie Hellman Group used by the inbound security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.17ColumncipSecTunInSaEncryptAlgoread-onlycurrentThe encryption algorithm used by the inbound security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.18ColumncipSecTunInSaAhAuthAlgoread-onlycurrentThe authentication algorithm used by the inbound authentication header (AH) security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.19ColumncipSecTunInSaEspAuthAlgoread-onlycurrentThe authentication algorithm used by the inbound encapsulation security protocol (ESP) security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.20ColumncipSecTunInSaDecompAlgoread-onlycurrentThe decompression algorithm used by the inbound security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.21ColumncipSecTunOutSaDiffHellmanGrpread-onlycurrentThe Diffie Hellman Group used by the outbound security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.22ColumncipSecTunOutSaEncryptAlgoread-onlycurrentThe encryption algorithm used by the outbound security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.23ColumncipSecTunOutSaAhAuthAlgoread-onlycurrentThe authentication algorithm used by the outbound authentication header (AH) security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.24ColumncipSecTunOutSaEspAuthAlgoread-onlycurrentThe authentication algorithm used by the inbound encapsulation security protocol (ESP) security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.25ColumncipSecTunOutSaCompAlgoread-onlycurrentThe compression algorithm used by the inbound security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.26ColumncipSecTunInOctetsread-onlycurrentThe total number of octets received by this IPsec Phase-2 Tunnel. This value is accumulated BEFORE determining whether or not the packet should be decompressed…
1.3.6.1.4.1.9.9.171.1.3.2.1.27ColumncipSecTunHcInOctetsread-onlycurrentA high capacity count of the total number of octets received by this IPsec Phase-2 Tunnel. This value is accumulated BEFORE determining whether or not the pack…
1.3.6.1.4.1.9.9.171.1.3.2.1.28ColumncipSecTunInOctWrapsread-onlycurrentThe number of times the octets received counter (cipSecTunInOctets) has wrapped.
1.3.6.1.4.1.9.9.171.1.3.2.1.29ColumncipSecTunInDecompOctetsread-onlycurrentThe total number of decompressed octets received by this IPsec Phase-2 Tunnel. This value is accumulated AFTER the packet is decompressed. If compression is no…
1.3.6.1.4.1.9.9.171.1.3.2.1.30ColumncipSecTunHcInDecompOctetsread-onlycurrentA high capacity count of the total number of decompressed octets received by this IPsec Phase-2 Tunnel. This value is accumulated AFTER the packet is decompres…
1.3.6.1.4.1.9.9.171.1.3.2.1.31ColumncipSecTunInDecompOctWrapsread-onlycurrentThe number of times the decompressed octets received counter (cipSecTunInDecompOctets) has wrapped.
1.3.6.1.4.1.9.9.171.1.3.2.1.32ColumncipSecTunInPktsread-onlycurrentThe total number of packets received by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.33ColumncipSecTunInDropPktsread-onlycurrentThe total number of packets dropped during receive processing by this IPsec Phase-2 Tunnel. This count does NOT include packets dropped due to Anti-Replay proc…
1.3.6.1.4.1.9.9.171.1.3.2.1.34ColumncipSecTunInReplayDropPktsread-onlycurrentThe total number of packets dropped during receive processing due to Anti-Replay processing by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.35ColumncipSecTunInAuthsread-onlycurrentThe total number of inbound authentication's performed by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.36ColumncipSecTunInAuthFailsread-onlycurrentThe total number of inbound authentication's which ended in failure by this IPsec Phase-2 Tunnel .
1.3.6.1.4.1.9.9.171.1.3.2.1.37ColumncipSecTunInDecryptsread-onlycurrentThe total number of inbound decryption's performed by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.38ColumncipSecTunInDecryptFailsread-onlycurrentThe total number of inbound decryption's which ended in failure by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.39ColumncipSecTunOutOctetsread-onlycurrentThe total number of octets sent by this IPsec Phase-2 Tunnel. This value is accumulated AFTER determining whether or not the packet should be compressed. See a…
1.3.6.1.4.1.9.9.171.1.3.2.1.40ColumncipSecTunHcOutOctetsread-onlycurrentA high capacity count of the total number of octets sent by this IPsec Phase-2 Tunnel. This value is accumulated AFTER determining whether or not the packet sh…
1.3.6.1.4.1.9.9.171.1.3.2.1.41ColumncipSecTunOutOctWrapsread-onlycurrentThe number of times the out octets counter (cipSecTunOutOctets) has wrapped.
1.3.6.1.4.1.9.9.171.1.3.2.1.42ColumncipSecTunOutUncompOctetsread-onlycurrentThe total number of uncompressed octets sent by this IPsec Phase-2 Tunnel. This value is accumulated BEFORE the packet is compressed. If compression is not bei…
1.3.6.1.4.1.9.9.171.1.3.2.1.43ColumncipSecTunHcOutUncompOctetsread-onlycurrentA high capacity count of the total number of uncompressed octets sent by this IPsec Phase-2 Tunnel. This value is accumulated BEFORE the packet is compressed. …
1.3.6.1.4.1.9.9.171.1.3.2.1.44ColumncipSecTunOutUncompOctWrapsread-onlycurrentThe number of times the uncompressed octets sent counter (cipSecTunOutUncompOctets) has wrapped.
1.3.6.1.4.1.9.9.171.1.3.2.1.45ColumncipSecTunOutPktsread-onlycurrentThe total number of packets sent by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.46ColumncipSecTunOutDropPktsread-onlycurrentThe total number of packets dropped during send processing by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.47ColumncipSecTunOutAuthsread-onlycurrentThe total number of outbound authentication's performed by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.48ColumncipSecTunOutAuthFailsread-onlycurrentThe total number of outbound authentication's which ended in failure by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.49ColumncipSecTunOutEncryptsread-onlycurrentThe total number of outbound encryption's performed by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.50ColumncipSecTunOutEncryptFailsread-onlycurrentThe total number of outbound encryption's which ended in failure by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.2.1.51ColumncipSecTunStatusread-writecurrentThe status of the MIB table row. This object can be used to bring the tunnel down by setting value of this object to destroy(2). When the value is set to destr…
1.3.6.1.4.1.9.9.171.1.3.3TablecipSecEndPtTablenot-accessiblecurrentThe IPsec Phase-2 Tunnel Endpoint Table. This table contains an entry for each active endpoint associated with an IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.3.3.1RowcipSecEndPtEntrynot-accessiblecurrentAn IPsec Phase-2 Tunnel Endpoint entry.
1.3.6.1.4.1.9.9.171.1.3.3.1.1ColumncipSecEndPtIndexnot-accessiblecurrentThe number of the Endpoint associated with the IPsec Phase-2 Tunnel Table. The value of this index is a number which begins at one and is incremented with each…
1.3.6.1.4.1.9.9.171.1.3.3.1.2ColumncipSecEndPtLocalNameread-onlycurrentThe DNS name of the local Endpoint.
1.3.6.1.4.1.9.9.171.1.3.3.1.3ColumncipSecEndPtLocalTyperead-onlycurrentThe type of identity for the local Endpoint. Possible values are: 1) a single IP address, or 2) an IP address range, or 3) an IP subnet.
1.3.6.1.4.1.9.9.171.1.3.3.1.4ColumncipSecEndPtLocalAddr1read-onlycurrentThe local Endpoint's first IP address specification. If the local Endpoint type is single IP address, then this is the value of the IP address. If the local En…
1.3.6.1.4.1.9.9.171.1.3.3.1.5ColumncipSecEndPtLocalAddr2read-onlycurrentThe local Endpoint's second IP address specification. If the local Endpoint type is single IP address, then this is the value of the IP address. If the local E…
1.3.6.1.4.1.9.9.171.1.3.3.1.6ColumncipSecEndPtLocalProtocolread-onlycurrentThe protocol number of the local Endpoint's traffic.
1.3.6.1.4.1.9.9.171.1.3.3.1.7ColumncipSecEndPtLocalPortread-onlycurrentThe port number of the local Endpoint's traffic.
1.3.6.1.4.1.9.9.171.1.3.3.1.8ColumncipSecEndPtRemoteNameread-onlycurrentThe DNS name of the remote Endpoint.
1.3.6.1.4.1.9.9.171.1.3.3.1.9ColumncipSecEndPtRemoteTyperead-onlycurrentThe type of identity for the remote Endpoint. Possible values are: 1) a single IP address, or 2) an IP address range, or 3) an IP subnet.
1.3.6.1.4.1.9.9.171.1.3.3.1.10ColumncipSecEndPtRemoteAddr1read-onlycurrentThe remote Endpoint's first IP address specification. If the remote Endpoint type is single IP address, then this is the value of the IP address. If the remote…
1.3.6.1.4.1.9.9.171.1.3.3.1.11ColumncipSecEndPtRemoteAddr2read-onlycurrentThe remote Endpoint's second IP address specification. If the remote Endpoint type is single IP address, then this is the value of the IP address. If the remot…
1.3.6.1.4.1.9.9.171.1.3.3.1.12ColumncipSecEndPtRemoteProtocolread-onlycurrentThe protocol number of the remote Endpoint's traffic.
1.3.6.1.4.1.9.9.171.1.3.3.1.13ColumncipSecEndPtRemotePortread-onlycurrentThe port number of the remote Endpoint's traffic.
1.3.6.1.4.1.9.9.171.1.3.4TablecipSecSpiTablenot-accessiblecurrentThe IPsec Phase-2 Security Protection Index Table. This table contains an entry for each active and expiring security association.
1.3.6.1.4.1.9.9.171.1.3.4.1RowcipSecSpiEntrynot-accessiblecurrentEach entry contains the attributes associated with active and expiring IPsec Phase-2 security associations.
1.3.6.1.4.1.9.9.171.1.3.4.1.1ColumncipSecSpiIndexnot-accessiblecurrentThe number of the SPI associated with the Phase-2 Tunnel Table. The value of this index is a number which begins at one and is incremented with each SPI associ…
1.3.6.1.4.1.9.9.171.1.3.4.1.2ColumncipSecSpiDirectionread-onlycurrentThe direction of the SPI.
1.3.6.1.4.1.9.9.171.1.3.4.1.3ColumncipSecSpiValueread-onlycurrentThe value of the SPI.
1.3.6.1.4.1.9.9.171.1.3.4.1.4ColumncipSecSpiProtocolread-onlycurrentThe protocol of the SPI.
1.3.6.1.4.1.9.9.171.1.3.4.1.5ColumncipSecSpiStatusread-onlycurrentThe status of the SPI.
1.3.6.1.4.1.9.9.171.1.3.5TablecipSecPhase2GWStatsTablenot-accessiblecurrentPhase-2 IPsec stats information is included in this table. Each entry is related to a specific gateway which is identified by 'cmgwIndex'
1.3.6.1.4.1.9.9.171.1.3.5.1RowcipSecPhase2GWStatsEntrynot-accessiblecurrentEach entry contains the attributes of an Phase-2 IPsec stats information for the related gateway. There is only one entry for each gateway. The entry is create…
1.3.6.1.4.1.9.9.171.1.3.5.1.1ColumncipSecPhase2GWActiveTunnelsread-onlycurrentThe total number of currently active IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.5.1.2ColumncipSecPhase2GWPreviousTunnelsread-onlycurrentThe total number of previously active IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.5.1.3ColumncipSecPhase2GWInOctetsread-onlycurrentThe total number of octets received by all current and previous IPsec Phase-2 Tunnels. This value is accumulated BEFORE determining whether or not the packet s…
1.3.6.1.4.1.9.9.171.1.3.5.1.4ColumncipSecPhase2GWInOctWrapsread-onlycurrentThe number of times the global octets received counter (cipSecGlobalInOctets) has wrapped.
1.3.6.1.4.1.9.9.171.1.3.5.1.5ColumncipSecPhase2GWInDecompOctetsread-onlycurrentThe total number of decompressed octets received by all current and previous IPsec Phase-2 Tunnels. This value is accumulated AFTER the packet is decompressed.…
1.3.6.1.4.1.9.9.171.1.3.5.1.6ColumncipSecPhase2GWInDecompOctWrapsread-onlycurrentThe number of times the global decompressed octets received counter (cipSecGlobalInDecompOctets) has wrapped.
1.3.6.1.4.1.9.9.171.1.3.5.1.7ColumncipSecPhase2GWInPktsread-onlycurrentThe total number of packets received by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.5.1.8ColumncipSecPhase2GWInDropsread-onlycurrentThe total number of packets dropped during receive processing by all current and previous IPsec Phase-2 Tunnels. This count does NOT include packets dropped du…
1.3.6.1.4.1.9.9.171.1.3.5.1.9ColumncipSecPhase2GWInReplayDropsread-onlycurrentThe total number of packets dropped during receive processing due to Anti-Replay processing by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.5.1.10ColumncipSecPhase2GWInAuthsread-onlycurrentThe total number of inbound authentication's performed by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.5.1.11ColumncipSecPhase2GWInAuthFailsread-onlycurrentThe total number of inbound authentication's which ended in failure by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.5.1.12ColumncipSecPhase2GWInDecryptsread-onlycurrentThe total number of inbound decryption's performed by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.5.1.13ColumncipSecPhase2GWInDecryptFailsread-onlycurrentThe total number of inbound decryption's which ended in failure by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.5.1.14ColumncipSecPhase2GWOutOctetsread-onlycurrentThe total number of octets sent by all current and previous IPsec Phase-2 Tunnels. This value is accumulated AFTER determining whether or not the packet should…
1.3.6.1.4.1.9.9.171.1.3.5.1.15ColumncipSecPhase2GWOutOctWrapsread-onlycurrentThe number of times the global octets sent counter (cipSecGlobalOutOctets) has wrapped.
1.3.6.1.4.1.9.9.171.1.3.5.1.16ColumncipSecPhase2GWOutUncompOctetsread-onlycurrentThe total number of uncompressed octets sent by all current and previous IPsec Phase-2 Tunnels. This value is accumulated BEFORE the packet is compressed. If c…
1.3.6.1.4.1.9.9.171.1.3.5.1.17ColumncipSecPhase2GWOutUncompOctWrapsread-onlycurrentThe number of times the global uncompressed octets sent counter (cipSecGlobalOutUncompOctets) has wrapped.
1.3.6.1.4.1.9.9.171.1.3.5.1.18ColumncipSecPhase2GWOutPktsread-onlycurrentThe total number of packets sent by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.5.1.19ColumncipSecPhase2GWOutDropsread-onlycurrentThe total number of packets dropped during send processing by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.5.1.20ColumncipSecPhase2GWOutAuthsread-onlycurrentThe total number of outbound authentication's performed by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.5.1.21ColumncipSecPhase2GWOutAuthFailsread-onlycurrentThe total number of outbound authentication's which ended in failure by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.5.1.22ColumncipSecPhase2GWOutEncryptsread-onlycurrentThe total number of outbound encryption's performed by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.5.1.23ColumncipSecPhase2GWOutEncryptFailsread-onlycurrentThe total number of outbound encryption's which ended in failure by all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.5.1.24ColumncipSecPhase2GWProtocolUseFailsread-onlycurrentThe total number of protocol use failures which occurred during processing of all current and previously active IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.5.1.25ColumncipSecPhase2GWNoSaFailsread-onlycurrentThe total number of non-existent Security Association in failures which occurred during processing of all current and previous IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.3.5.1.26ColumncipSecPhase2GWSysCapFailsread-onlycurrentThe total number of system capacity failures which occurred during processing of all current and previously active IPsec Phase-2 Tunnels.
1.3.6.1.4.1.9.9.171.1.4NodecipSecHistory
1.3.6.1.4.1.9.9.171.1.4.1NodecipSecHistGlobal
1.3.6.1.4.1.9.9.171.1.4.1.1NodecipSecHistGlobalCntl
1.3.6.1.4.1.9.9.171.1.4.1.1.1ScalarcipSecHistTableSizeread-writecurrentThe window size of the IPsec Phase-1 and Phase-2 History Tables. The IPsec Phase-1 and Phase-2 History Tables are implemented as a sliding window in which only…
1.3.6.1.4.1.9.9.171.1.4.1.1.2ScalarcipSecHistCheckPointread-writecurrentThe current state of check point processing. This object will return ready when the agent is ready to create on-demand history entries for active IPsec Tunnels…
1.3.6.1.4.1.9.9.171.1.4.2NodecipSecHistPhaseOne
1.3.6.1.4.1.9.9.171.1.4.2.1TablecikeTunnelHistTablenot-accessiblecurrentThe IPsec Phase-1 Internet Key Exchange Tunnel History Table. This table is implemented as a sliding window in which only the last n entries are maintained. Th…
1.3.6.1.4.1.9.9.171.1.4.2.1.1RowcikeTunnelHistEntrynot-accessiblecurrentEach entry contains the attributes associated with a previously active IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.1ColumncikeTunHistIndexnot-accessiblecurrentThe index of the IPsec Phase-1 IKE Tunnel History Table. The value of the index is a number which begins at one and is incremented with each tunnel that ends. …
1.3.6.1.4.1.9.9.171.1.4.2.1.1.2ColumncikeTunHistTermReasonread-onlycurrentThe reason the IPsec Phase-1 IKE Tunnel was terminated. Possible reasons include: 1 = other 2 = normal termination 3 = operator request 4 = peer delete request…
1.3.6.1.4.1.9.9.171.1.4.2.1.1.3ColumncikeTunHistActiveIndexread-onlycurrentThe index of the previously active IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.4ColumncikeTunHistPeerLocalTyperead-onlycurrentThe type of local peer identity. The local peer may be identified by: 1. an IP address, or 2. a host name.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.5ColumncikeTunHistPeerLocalValueread-onlycurrentThe value of the local peer identity. If the local peer type is an IP Address, then this is the IP Address used to identify the local peer. If the local peer t…
1.3.6.1.4.1.9.9.171.1.4.2.1.1.6ColumncikeTunHistPeerIntIndexread-onlycurrentThe internal index of the local-remote peer association. This internal index is used to uniquely identify multiple associations between the local and remote pe…
1.3.6.1.4.1.9.9.171.1.4.2.1.1.7ColumncikeTunHistPeerRemoteTyperead-onlycurrentThe type of remote peer identity. The remote peer may be identified by: 1. an IP address, or 2. a host name.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.8ColumncikeTunHistPeerRemoteValueread-onlycurrentThe value of the remote peer identity. If the remote peer type is an IP Address, then this is the IP Address used to identify the remote peer. If the remote pe…
1.3.6.1.4.1.9.9.171.1.4.2.1.1.9ColumncikeTunHistLocalAddrread-onlycurrentThe IP address of the local endpoint for the IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.10ColumncikeTunHistLocalNameread-onlycurrentThe DNS name of the local IP address for the IPsec Phase-1 IKE Tunnel. If the DNS name associated with the local tunnel endpoint is not known, then the value o…
1.3.6.1.4.1.9.9.171.1.4.2.1.1.11ColumncikeTunHistRemoteAddrread-onlycurrentThe IP address of the remote endpoint for the IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.12ColumncikeTunHistRemoteNameread-onlycurrentThe DNS name of the remote IP address of IPsec Phase-1 IKE Tunnel. If the DNS name associated with the remote tunnel endpoint is not known, then the value of t…
1.3.6.1.4.1.9.9.171.1.4.2.1.1.13ColumncikeTunHistNegoModeread-onlycurrentThe negotiation mode of the IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.14ColumncikeTunHistDiffHellmanGrpread-onlycurrentThe Diffie Hellman Group used in IPsec Phase-1 IKE negotiations.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.15ColumncikeTunHistEncryptAlgoread-onlycurrentThe encryption algorithm used in IPsec Phase-1 IKE negotiations.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.16ColumncikeTunHistHashAlgoread-onlycurrentThe hash algorithm used in IPsec Phase-1 IKE negotiations.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.17ColumncikeTunHistAuthMethodread-onlycurrentThe authentication method used in IPsec Phase-1 IKE negotiations.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.18ColumncikeTunHistLifeTimeread-onlycurrentThe negotiated LifeTime of the IPsec Phase-1 IKE Tunnel in seconds.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.19ColumncikeTunHistStartTimeread-onlycurrentThe value of sysUpTime in hundredths of seconds when the IPsec Phase-1 IKE tunnel was started.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.20ColumncikeTunHistActiveTimeread-onlycurrentThe length of time the IPsec Phase-1 IKE tunnel was been active in hundredths of seconds.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.21ColumncikeTunHistTotalRefreshesread-onlycurrentThe total number of security associations refreshes performed.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.22ColumncikeTunHistTotalSasread-onlycurrentThe total number of security associations used during the life of the IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.23ColumncikeTunHistInOctetsread-onlycurrentThe total number of octets received by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.24ColumncikeTunHistInPktsread-onlycurrentThe total number of packets received by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.25ColumncikeTunHistInDropPktsread-onlycurrentThe total number of packets dropped by this IPsec Phase-1 IKE Tunnel during receive processing.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.26ColumncikeTunHistInNotifysread-onlycurrentThe total number of notifys received by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.27ColumncikeTunHistInP2Exchgsread-onlycurrentThe total number of IPsec Phase-2 exchanges received by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.28ColumncikeTunHistInP2ExchgInvalidsread-onlycurrentThe total number of IPsec Phase-2 exchanges received and found to be invalid by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.29ColumncikeTunHistInP2ExchgRejectsread-onlycurrentThe total number of IPsec Phase-2 exchanges received and rejected by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.30ColumncikeTunHistInP2SaDelRequestsread-onlycurrentThe total number of IPsec Phase-2 security association delete requests received by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.31ColumncikeTunHistOutOctetsread-onlycurrentThe total number of octets sent by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.32ColumncikeTunHistOutPktsread-onlycurrentThe total number of packets sent by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.33ColumncikeTunHistOutDropPktsread-onlycurrentThe total number of packets dropped by this IPsec Phase-1 IKE Tunnel during send processing.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.34ColumncikeTunHistOutNotifysread-onlycurrentThe total number of notifys sent by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.35ColumncikeTunHistOutP2Exchgsread-onlycurrentThe total number of IPsec Phase-2 exchanges sent by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.36ColumncikeTunHistOutP2ExchgInvalidsread-onlycurrentThe total number of IPsec Phase-2 exchanges sent and found to be invalid by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.37ColumncikeTunHistOutP2ExchgRejectsread-onlycurrentThe total number of IPsec Phase-2 exchanges sent and rejected by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.2.1.1.38ColumncikeTunHistOutP2SaDelRequestsread-onlycurrentThe total number of IPsec Phase-2 security association delete requests sent by this IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3NodecipSecHistPhaseTwo
1.3.6.1.4.1.9.9.171.1.4.3.1TablecipSecTunnelHistTablenot-accessiblecurrentThe IPsec Phase-2 Tunnel History Table. This table is implemented as a sliding window in which only the last n entries are maintained. The maximum number of en…
1.3.6.1.4.1.9.9.171.1.4.3.1.1RowcipSecTunnelHistEntrynot-accessiblecurrentEach entry contains the attributes associated with a previously active IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.1ColumncipSecTunHistIndexnot-accessiblecurrentThe index of the IPsec Phase-2 Tunnel History Table. The value of the index is a number which begins at one and is incremented with each tunnel that ends. The …
1.3.6.1.4.1.9.9.171.1.4.3.1.1.2ColumncipSecTunHistTermReasonread-onlycurrentThe reason the IPsec Phase-2 Tunnel was terminated. Possible reasons include: 1 = other 2 = normal termination 3 = operator request 4 = peer delete request was…
1.3.6.1.4.1.9.9.171.1.4.3.1.1.3ColumncipSecTunHistActiveIndexread-onlycurrentThe index of the previously active IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.4ColumncipSecTunHistIkeTunnelIndexread-onlycurrentThe index of the associated IPsec Phase-1 Tunnel (cikeTunIndex in the cikeTunnelTable).
1.3.6.1.4.1.9.9.171.1.4.3.1.1.5ColumncipSecTunHistLocalAddrread-onlycurrentThe IP address of the local endpoint for the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.6ColumncipSecTunHistRemoteAddrread-onlycurrentThe IP address of the remote endpoint for the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.7ColumncipSecTunHistKeyTyperead-onlycurrentThe type of key used by the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.8ColumncipSecTunHistEncapModeread-onlycurrentThe encapsulation mode used by the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.9ColumncipSecTunHistLifeSizeread-onlycurrentThe negotiated LifeSize of the IPsec Phase-2 Tunnel in kilobytes.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.10ColumncipSecTunHistLifeTimeread-onlycurrentThe negotiated LifeTime of the IPsec Phase-2 Tunnel in seconds.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.11ColumncipSecTunHistStartTimeread-onlycurrentThe value of sysUpTime in hundredths of seconds when the IPsec Phase-2 Tunnel was started.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.12ColumncipSecTunHistActiveTimeread-onlycurrentThe length of time the IPsec Phase-2 Tunnel has been active in hundredths of seconds.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.13ColumncipSecTunHistTotalRefreshesread-onlycurrentThe total number of security association refreshes performed.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.14ColumncipSecTunHistTotalSasread-onlycurrentThe total number of security associations used during the life of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.15ColumncipSecTunHistInSaDiffHellmanGrpread-onlycurrentThe Diffie Hellman Group used by the inbound security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.16ColumncipSecTunHistInSaEncryptAlgoread-onlycurrentThe encryption algorithm used by the inbound security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.17ColumncipSecTunHistInSaAhAuthAlgoread-onlycurrentThe authentication algorithm used by the inbound authentication header (AH) security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.18ColumncipSecTunHistInSaEspAuthAlgoread-onlycurrentThe authentication algorithm used by the inbound encapsulation security protocol (ESP) security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.19ColumncipSecTunHistInSaDecompAlgoread-onlycurrentThe decompression algorithm used by the inbound security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.20ColumncipSecTunHistOutSaDiffHellmanGrpread-onlycurrentThe Diffie Hellman Group used by the outbound security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.21ColumncipSecTunHistOutSaEncryptAlgoread-onlycurrentThe encryption algorithm used by the outbound security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.22ColumncipSecTunHistOutSaAhAuthAlgoread-onlycurrentThe authentication algorithm used by the outbound authentication header (AH) security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.23ColumncipSecTunHistOutSaEspAuthAlgoread-onlycurrentThe authentication algorithm used by the inbound encapsulation security protocol (ESP) security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.24ColumncipSecTunHistOutSaCompAlgoread-onlycurrentThe compression algorithm used by the inbound security association of the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.25ColumncipSecTunHistInOctetsread-onlycurrentThe total number of octets received by this IPsec Phase-2 Tunnel. This value is accumulated BEFORE determining whether or not the packet should be decompressed…
1.3.6.1.4.1.9.9.171.1.4.3.1.1.26ColumncipSecTunHistHcInOctetsread-onlycurrentA high capacity count of the total number of octets received by this IPsec Phase-2 Tunnel. This value is accumulated BEFORE determining whether or not the pack…
1.3.6.1.4.1.9.9.171.1.4.3.1.1.27ColumncipSecTunHistInOctWrapsread-onlycurrentThe number of times the octets received counter (cipSecTunInOctets) has wrapped.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.28ColumncipSecTunHistInDecompOctetsread-onlycurrentThe total number of decompressed octets received by this IPsec Phase-2 Tunnel. This value is accumulated AFTER the packet is decompressed. If compression is no…
1.3.6.1.4.1.9.9.171.1.4.3.1.1.29ColumncipSecTunHistHcInDecompOctetsread-onlycurrentA high capacity count of the total number of decompressed octets received by this IPsec Phase-2 Tunnel. This value is accumulated AFTER the packet is decompres…
1.3.6.1.4.1.9.9.171.1.4.3.1.1.30ColumncipSecTunHistInDecompOctWrapsread-onlycurrentThe number of times the decompressed octets received counter (cipSecTunInDecompOctets) has wrapped.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.31ColumncipSecTunHistInPktsread-onlycurrentThe total number of packets received by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.32ColumncipSecTunHistInDropPktsread-onlycurrentThe total number of packets dropped during receive processing by this IPsec Phase-2 Tunnel. This count does NOT include packets dropped due to Anti-Replay proc…
1.3.6.1.4.1.9.9.171.1.4.3.1.1.33ColumncipSecTunHistInReplayDropPktsread-onlycurrentThe total number of packets dropped during receive processing due to Anti-Replay processing by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.34ColumncipSecTunHistInAuthsread-onlycurrentThe total number of inbound authentication's performed by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.35ColumncipSecTunHistInAuthFailsread-onlycurrentThe total number of inbound authentication's which ended in failure by this IPsec Phase-2 Tunnel .
1.3.6.1.4.1.9.9.171.1.4.3.1.1.36ColumncipSecTunHistInDecryptsread-onlycurrentThe total number of inbound decryption's performed by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.37ColumncipSecTunHistInDecryptFailsread-onlycurrentThe total number of inbound decryption's which ended in failure by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.38ColumncipSecTunHistOutOctetsread-onlycurrentThe total number of octets sent by this IPsec Phase-2 Tunnel. This value is accumulated AFTER determining whether or not the packet should be compressed. See a…
1.3.6.1.4.1.9.9.171.1.4.3.1.1.39ColumncipSecTunHistHcOutOctetsread-onlycurrentA high capacity count of the total number of octets sent by this IPsec Phase-2 Tunnel. This value is accumulated AFTER determining whether or not the packet sh…
1.3.6.1.4.1.9.9.171.1.4.3.1.1.40ColumncipSecTunHistOutOctWrapsread-onlycurrentThe number of times the octets sent counter (cipSecTunOutOctets) has wrapped.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.41ColumncipSecTunHistOutUncompOctetsread-onlycurrentThe total number of uncompressed octets sent by this IPsec Phase-2 Tunnel. This value is accumulated BEFORE the packet is compressed. If compression is not bei…
1.3.6.1.4.1.9.9.171.1.4.3.1.1.42ColumncipSecTunHistHcOutUncompOctetsread-onlycurrentA high capacity count of the total number of uncompressed octets sent by this IPsec Phase-2 Tunnel. This value is accumulated BEFORE the packet is compressed. …
1.3.6.1.4.1.9.9.171.1.4.3.1.1.43ColumncipSecTunHistOutUncompOctWrapsread-onlycurrentThe number of times the uncompressed octets sent counter (cipSecTunOutUncompOctets) has wrapped.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.44ColumncipSecTunHistOutPktsread-onlycurrentThe total number of packets sent by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.45ColumncipSecTunHistOutDropPktsread-onlycurrentThe total number of packets dropped during send processing by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.46ColumncipSecTunHistOutAuthsread-onlycurrentThe total number of outbound authentication's performed by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.47ColumncipSecTunHistOutAuthFailsread-onlycurrentThe total number of outbound authentication's which ended in failure by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.48ColumncipSecTunHistOutEncryptsread-onlycurrentThe total number of outbound encryption's performed by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.1.1.49ColumncipSecTunHistOutEncryptFailsread-onlycurrentThe total number of outbound encryption's which ended in failure by this IPsec Phase-2 Tunnel.
1.3.6.1.4.1.9.9.171.1.4.3.2TablecipSecEndPtHistTablenot-accessiblecurrentThe IPsec Phase-2 Tunnel Endpoint History Table. This table is implemented as a sliding window in which only the last n entries are maintained. The maximum num…
1.3.6.1.4.1.9.9.171.1.4.3.2.1RowcipSecEndPtHistEntrynot-accessiblecurrentEach entry contains the attributes associated with a previously active IPsec Phase-2 Tunnel Endpoint.
1.3.6.1.4.1.9.9.171.1.4.3.2.1.1ColumncipSecEndPtHistIndexnot-accessiblecurrentThe number of the previously active Endpoint associated with a IPsec Phase-2 Tunnel Table. The value of this index is a number which begins at one and is incre…
1.3.6.1.4.1.9.9.171.1.4.3.2.1.2ColumncipSecEndPtHistTunIndexread-onlycurrentThe index of the previously active IPsec Phase-2 Tunnel Table.
1.3.6.1.4.1.9.9.171.1.4.3.2.1.3ColumncipSecEndPtHistActiveIndexread-onlycurrentThe index of the previously active Endpoint.
1.3.6.1.4.1.9.9.171.1.4.3.2.1.4ColumncipSecEndPtHistLocalNameread-onlycurrentThe DNS name of the local Endpoint.
1.3.6.1.4.1.9.9.171.1.4.3.2.1.5ColumncipSecEndPtHistLocalTyperead-onlycurrentThe type of identity for the local Endpoint. Possible values are: 1) a single IP address, or 2) an IP address range, or 3) an IP subnet.
1.3.6.1.4.1.9.9.171.1.4.3.2.1.6ColumncipSecEndPtHistLocalAddr1read-onlycurrentThe local Endpoint's first IP address specification. If the local Endpoint type is single IP address, then this is the value of the IP address. If the local En…
1.3.6.1.4.1.9.9.171.1.4.3.2.1.7ColumncipSecEndPtHistLocalAddr2read-onlycurrentThe local Endpoint's second IP address specification. If the local Endpoint type is single IP address, then this is the value of the IP address. If the local E…
1.3.6.1.4.1.9.9.171.1.4.3.2.1.8ColumncipSecEndPtHistLocalProtocolread-onlycurrentThe protocol number of the local Endpoint's traffic.
1.3.6.1.4.1.9.9.171.1.4.3.2.1.9ColumncipSecEndPtHistLocalPortread-onlycurrentThe port number of the local Endpoint's traffic.
1.3.6.1.4.1.9.9.171.1.4.3.2.1.10ColumncipSecEndPtHistRemoteNameread-onlycurrentThe DNS name of the remote Endpoint.
1.3.6.1.4.1.9.9.171.1.4.3.2.1.11ColumncipSecEndPtHistRemoteTyperead-onlycurrentThe type of identity for the remote Endpoint. Possible values are: 1) a single IP address, or 2) an IP address range, or 3) an IP subnet.
1.3.6.1.4.1.9.9.171.1.4.3.2.1.12ColumncipSecEndPtHistRemoteAddr1read-onlycurrentThe remote Endpoint's first IP address specification. If the remote Endpoint type is single IP address, then this is the value of the IP address. If the remote…
1.3.6.1.4.1.9.9.171.1.4.3.2.1.13ColumncipSecEndPtHistRemoteAddr2read-onlycurrentThe remote Endpoint's second IP address specification. If the remote Endpoint type is single IP address, then this is the value of the IP address. If the remot…
1.3.6.1.4.1.9.9.171.1.4.3.2.1.14ColumncipSecEndPtHistRemoteProtocolread-onlycurrentThe protocol number of the remote Endpoint's traffic.
1.3.6.1.4.1.9.9.171.1.4.3.2.1.15ColumncipSecEndPtHistRemotePortread-onlycurrentThe port number of the remote Endpoint's traffic.
1.3.6.1.4.1.9.9.171.1.5NodecipSecFailures
1.3.6.1.4.1.9.9.171.1.5.1NodecipSecFailGlobal
1.3.6.1.4.1.9.9.171.1.5.1.1NodecipSecFailGlobalCntl
1.3.6.1.4.1.9.9.171.1.5.1.1.1ScalarcipSecFailTableSizeread-writecurrentThe window size of the IPsec Phase-1 and Phase-2 Failure Tables. The IPsec Phase-1 and Phase-2 Failure Tables are implemented as a sliding window in which only…
1.3.6.1.4.1.9.9.171.1.5.2NodecipSecFailPhaseOne
1.3.6.1.4.1.9.9.171.1.5.2.1TablecikeFailTablenot-accessiblecurrentThe IPsec Phase-1 Failure Table. This table is implemented as a sliding window in which only the last n entries are maintained. The maximum number of entries i…
1.3.6.1.4.1.9.9.171.1.5.2.1.1RowcikeFailEntrynot-accessiblecurrentEach entry contains the attributes associated with an IPsec Phase-1 failure.
1.3.6.1.4.1.9.9.171.1.5.2.1.1.1ColumncikeFailIndexnot-accessiblecurrentThe IPsec Phase-1 Failure Table index. The value of the index is a number which begins at one and is incremented with each IPsec Phase-1 failure. The value of …
1.3.6.1.4.1.9.9.171.1.5.2.1.1.2ColumncikeFailReasonread-onlycurrentThe reason for the failure. Possible reasons include: 1 = other 2 = peer delete request was received 3 = contact with peer was lost 4 = local failure occurred …
1.3.6.1.4.1.9.9.171.1.5.2.1.1.3ColumncikeFailTimeread-onlycurrentThe value of sysUpTime in hundredths of seconds at the time of the failure.
1.3.6.1.4.1.9.9.171.1.5.2.1.1.4ColumncikeFailLocalTyperead-onlycurrentThe type of local peer identity. The local peer may be identified by: 1. an IP address, or 2. a host name.
1.3.6.1.4.1.9.9.171.1.5.2.1.1.5ColumncikeFailLocalValueread-onlycurrentThe value of the local peer identity. If the local peer type is an IP Address, then this is the IP Address used to identify the local peer. If the local peer t…
1.3.6.1.4.1.9.9.171.1.5.2.1.1.6ColumncikeFailRemoteTyperead-onlycurrentThe type of remote peer identity. The remote peer may be identified by: 1. an IP address, or 2. a host name.
1.3.6.1.4.1.9.9.171.1.5.2.1.1.7ColumncikeFailRemoteValueread-onlycurrentThe value of the remote peer identity. If the remote peer type is an IP Address, then this is the IP Address used to identify the remote peer. If the remote pe…
1.3.6.1.4.1.9.9.171.1.5.2.1.1.8ColumncikeFailLocalAddrread-onlycurrentThe IP address of the local peer.
1.3.6.1.4.1.9.9.171.1.5.2.1.1.9ColumncikeFailRemoteAddrread-onlycurrentThe IP address of the remote peer.
1.3.6.1.4.1.9.9.171.1.5.3NodecipSecFailPhaseTwo
1.3.6.1.4.1.9.9.171.1.5.3.1TablecipSecFailTablenot-accessiblecurrentThe IPsec Phase-2 Failure Table. This table is implemented as a sliding window in which only the last n entries are maintained. The maximum number of entries i…
1.3.6.1.4.1.9.9.171.1.5.3.1.1RowcipSecFailEntrynot-accessiblecurrentEach entry contains the attributes associated with an IPsec Phase-1 failure.
1.3.6.1.4.1.9.9.171.1.5.3.1.1.1ColumncipSecFailIndexnot-accessiblecurrentThe IPsec Phase-2 Failure Table index. The value of the index is a number which begins at one and is incremented with each IPsec Phase-1 failure. The value of …
1.3.6.1.4.1.9.9.171.1.5.3.1.1.2ColumncipSecFailReasonread-onlycurrentThe reason for the failure. Possible reasons include: 1 = other 2 = internal error occurred 3 = peer encoding error 4 = proposal failure 5 = protocol use failu…
1.3.6.1.4.1.9.9.171.1.5.3.1.1.3ColumncipSecFailTimeread-onlycurrentThe value of sysUpTime in hundredths of seconds at the time of the failure.
1.3.6.1.4.1.9.9.171.1.5.3.1.1.4ColumncipSecFailTunnelIndexread-onlycurrentThe Phase-2 Tunnel index (cipSecTunIndex).
1.3.6.1.4.1.9.9.171.1.5.3.1.1.5ColumncipSecFailSaSpiread-onlycurrentThe security association SPI value.
1.3.6.1.4.1.9.9.171.1.5.3.1.1.6ColumncipSecFailPktSrcAddrread-onlycurrentThe packet's source IP address.
1.3.6.1.4.1.9.9.171.1.5.3.1.1.7ColumncipSecFailPktDstAddrread-onlycurrentThe packet's destination IP address.
1.3.6.1.4.1.9.9.171.1.6NodecipSecTrapCntl
1.3.6.1.4.1.9.9.171.1.6.1ScalarcipSecTrapCntlIkeTunnelStartread-writecurrentThis object defines the administrative state of sending the IPsec IKE Phase-1 Tunnel Start TRAP
1.3.6.1.4.1.9.9.171.1.6.2ScalarcipSecTrapCntlIkeTunnelStopread-writecurrentThis object defines the administrative state of sending the IPsec IKE Phase-1 Tunnel Stop TRAP
1.3.6.1.4.1.9.9.171.1.6.3ScalarcipSecTrapCntlIkeSysFailureread-writecurrentThis object defines the administrative state of sending the IPsec IKE Phase-1 System Failure TRAP
1.3.6.1.4.1.9.9.171.1.6.4ScalarcipSecTrapCntlIkeCertCrlFailureread-writecurrentThis object defines the administrative state of sending the IPsec IKE Phase-1 Certificate/CRL Failure TRAP
1.3.6.1.4.1.9.9.171.1.6.5ScalarcipSecTrapCntlIkeProtocolFailread-writecurrentThis object defines the administrative state of sending the IPsec IKE Phase-1 Protocol Failure TRAP
1.3.6.1.4.1.9.9.171.1.6.6ScalarcipSecTrapCntlIkeNoSaread-writecurrentThis object defines the administrative state of sending the IPsec IKE Phase-1 No Security Association TRAP
1.3.6.1.4.1.9.9.171.1.6.7ScalarcipSecTrapCntlIpSecTunnelStartread-writecurrentThis object defines the administrative state of sending the IPsec Phase-2 Tunnel Start TRAP
1.3.6.1.4.1.9.9.171.1.6.8ScalarcipSecTrapCntlIpSecTunnelStopread-writecurrentThis object defines the administrative state of sending the IPsec Phase-2 Tunnel Stop TRAP
1.3.6.1.4.1.9.9.171.1.6.9ScalarcipSecTrapCntlIpSecSysFailureread-writecurrentThis object defines the administrative state of sending the IPsec Phase-2 System Failure TRAP
1.3.6.1.4.1.9.9.171.1.6.10ScalarcipSecTrapCntlIpSecSetUpFailureread-writecurrentThis object defines the administrative state of sending the IPsec Phase-2 Set Up Failure TRAP
1.3.6.1.4.1.9.9.171.1.6.11ScalarcipSecTrapCntlIpSecEarlyTunTermread-writecurrentThis object defines the administrative state of sending the IPsec Phase-2 Early Tunnel Termination TRAP
1.3.6.1.4.1.9.9.171.1.6.12ScalarcipSecTrapCntlIpSecProtocolFailread-writecurrentThis object defines the administrative state of sending the IPsec Phase-2 Protocol Failure TRAP
1.3.6.1.4.1.9.9.171.1.6.13ScalarcipSecTrapCntlIpSecNoSaread-writecurrentThis object defines the administrative state of sending the IPsec Phase-2 No Security Association TRAP
1.3.6.1.4.1.9.9.171.2NodecipSecMIBNotificationPrefix
1.3.6.1.4.1.9.9.171.2.0NodecipSecMIBNotifications
1.3.6.1.4.1.9.9.171.2.0.1NotificationcikeTunnelStartcurrentThis notification is generated when an IPsec Phase-1 IKE Tunnel becomes active.
1.3.6.1.4.1.9.9.171.2.0.2NotificationcikeTunnelStopcurrentThis notification is generated when an IPsec Phase-1 IKE Tunnel becomes inactive.
1.3.6.1.4.1.9.9.171.2.0.3NotificationcikeSysFailurecurrentThis notification is generated when the processing for an IPsec Phase-1 IKE Tunnel experiences an internal or system capacity error.
1.3.6.1.4.1.9.9.171.2.0.4NotificationcikeCertCrlFailurecurrentThis notification is generated when the processing for an IPsec Phase-1 IKE Tunnel experiences a Certificate or a Certificate Revoke List (CRL) related error.
1.3.6.1.4.1.9.9.171.2.0.5NotificationcikeProtocolFailurecurrentThis notification is generated when the processing for an IPsec Phase-1 IKE Tunnel experiences a protocol related error.
1.3.6.1.4.1.9.9.171.2.0.6NotificationcikeNoSacurrentThis notification is generated when the processing for an IPsec Phase-1 IKE Tunnel experiences a non-existent security association error.
1.3.6.1.4.1.9.9.171.2.0.7NotificationcipSecTunnelStartcurrentThis notification is generated when an IPsec Phase-2 Tunnel becomes active.
1.3.6.1.4.1.9.9.171.2.0.8NotificationcipSecTunnelStopcurrentThis notification is generated when an IPsec Phase-2 Tunnel becomes inactive.
1.3.6.1.4.1.9.9.171.2.0.9NotificationcipSecSysFailurecurrentThis notification is generated when the processing for an IPsec Phase-2 Tunnel experiences an internal or system capacity error.
1.3.6.1.4.1.9.9.171.2.0.10NotificationcipSecSetUpFailurecurrentThis notification is generated when the setup for an IPsec Phase-2 Tunnel fails.
1.3.6.1.4.1.9.9.171.2.0.11NotificationcipSecEarlyTunTermcurrentThis notification is generated when an an IPsec Phase-2 Tunnel is terminated earily or before expected.
1.3.6.1.4.1.9.9.171.2.0.12NotificationcipSecProtocolFailurecurrentThis notification is generated when the processing for an IPsec Phase-2 Tunnel experiences a protocol related error.
1.3.6.1.4.1.9.9.171.2.0.13NotificationcipSecNoSacurrentThis notification is generated when the processing for an IPsec Phase-2 Tunnel experiences a non-existent security association error.
1.3.6.1.4.1.9.9.171.3NodecipSecMIBConformance
1.3.6.1.4.1.9.9.171.3.1NodecipSecMIBGroups
1.3.6.1.4.1.9.9.171.3.1.1GroupcipSecLevelsGroupcurrentThis group consists of a: 1) IPsec MIB Level
1.3.6.1.4.1.9.9.171.3.1.2GroupcipSecPhaseOneGroupcurrentThis group consists of: 1) IPsec Phase-1 Global Objects 2) IPsec Phase-1 Peer Table 3) IPsec Phase-1 Tunnel Table 4) IPsec Phase-1 Correlation Table
1.3.6.1.4.1.9.9.171.3.1.3GroupcipSecPhaseTwoGroupcurrentThis group consists of: 1) IPsec Phase-2 Global Statistics 2) IPsec Phase-2 Tunnel Table 3) IPsec Phase-2 Endpoint Table 4) IPsec Phase-2 Security Protection I…
1.3.6.1.4.1.9.9.171.3.1.4GroupcipSecHistoryGroupcurrentThis group consists of: 1) IPsec History Global Objects 2) IPsec Phase-1 History Objects 3) IPsec Phase-2 History Objects
1.3.6.1.4.1.9.9.171.3.1.5GroupcipSecFailuresGroupcurrentThis group consists of: 1) IPsec Failure Global Objects 2) IPsec Phase-1 Tunnel Failure Table 3) IPsec Phase-2 Tunnel Failure Table
1.3.6.1.4.1.9.9.171.3.1.6GroupcipSecTrapCntlGroupcurrentThis group of objects controls the sending of IPsec TRAPs.
1.3.6.1.4.1.9.9.171.3.1.7GroupcipSecNotificationGroupcurrentThis group contains the notifications for the IPsec MIB.
1.3.6.1.4.1.9.9.171.3.1.8GroupcipSecGWStatsGroupcurrent
1.3.6.1.4.1.9.9.171.3.2NodecipSecMIBCompliances
1.3.6.1.4.1.9.9.171.3.2.1CompliancecipSecMIBComplianceread-onlydeprecatedThe compliance statement for SNMP entities the IP Security Protocol. This has been replaced by cipSecMIBComplianceRev1.
1.3.6.1.4.1.9.9.171.3.2.2CompliancecipSecMIBComplianceRev1read-onlycurrentThe compliance statement for SNMP entities the IP Security Protocol.
Type Definitions
NameSyntaxStatusDescription
AuthAlgoINTEGER { none(1), hmacMd5(2), hmacSha(3) }currentThe authentication algorithm used by a security association of an IPsec Phase-2 Tunnel.
CompAlgoINTEGER { none(1), ldf(2) }currentThe compression algorithm used by a security association of an IPsec Phase-2 Tunnel.
DiffHellmanGrpINTEGER { none(1), dhGroup1(2), dhGroup2(3) }currentThe Diffie Hellman Group used in negotiations.
EncapModeINTEGER { tunnel(1), transport(2) }currentThe encapsulation mode used by an IPsec Phase-2 Tunnel.
EncryptAlgoINTEGER { none(1), des(2), des3(3) }currentThe encryption algorithm used in negotiations.
EndPtTypeINTEGER { singleIpAddr(1), ipAddrRange(2), ipSubnet(3) }currentThe type of identity use to specify an IPsec End Point.
IkeAuthMethodINTEGER { none(1), preSharedKey(2), rsaSig(3), rsaEncrypt(4), revPublicKey(5) }currentThe authentication method used in IPsec Phase-1 IKE negotiations.
IkeHashAlgoINTEGER { none(1), md5(2), sha(3) }currentThe hash algorithm used in IPsec Phase-1 IKE negotiations.
IkeNegoModeINTEGER { main(1), aggressive(2) }currentThe IPsec Phase-1 IKE negotiation mode.
IkePeerTypeINTEGER { ipAddrPeer(1), namePeer(2) }currentThe type of IPsec Phase-1 IKE peer identity. The IKE peer may be identified by: 1. an IP address, or 2. a host name.
IPSIpAddressOCTET STRING (SIZE (4 | 16))currentAn IP V4 or V6 Address.
KeyTypeINTEGER { ike(1), manual(2) }currentThe type of key used by an IPsec Phase-2 Tunnel.
TrapStatusINTEGER { enabled(1), disabled(2) }currentThe administrative status for sending a TRAP.
TunnelStatusINTEGER { active(1), destroy(2) }currentThe status of a Tunnel. Objects of this type may be used to bring the tunnel down by setting value of this object to destroy(2). Objects of this type cannot be used to create a Tunnel.