CISCO-IPSEC-POLICY-MAP-MIB
22 objects
The MIB module maps the IPSec entities created dynamically to the policy entities that caused them. This is an appendix to the IPSEC-MONITOR-MIB that has been proposed to IETF for monitoring IPSec based Virtual Private Networks. Overview of Cisco IPsec Policy Map MIB MIB description There are two components to this MIB: #1 a table that maps an IPSec Phase-1 tunnel to the Internet Security Association and Key Exchange (ISAKMP) Policy and #2 a table that maps an IPSec Phase-2 tunnel to the corresponding IPSec Policy element - called 'cryptomaps' - in IOS (Internet Operating System) The first mappin (also called Internet Key Exchange or IKE mapping) yields, given the index of the IKE tunnel in the ikeTunnelTable (IPSEC-MONITOR-MIB), the ISAKMP policy definition defined using the CLI on the managed entity. The IPSec mapping yields, given the index of the IPSec tunnel in the ipSecTunnelTable (IPSEC-MONITOR-MIB), the IPSec transform and the cryptomap definition that gave rise to this tunnel. In implementation and usage, this MIB cannot exist independent of the IPSEC-MONITOR-MIB.
Imported Objects
| CISCO-SMI | ciscoMgmt |
| SNMPv2-CONF | MODULE-COMPLIANCE OBJECT-GROUP |
| SNMPv2-SMI | Integer32 MODULE-IDENTITY OBJECT-TYPE |
| SNMPv2-TC | DisplayString |
| OID | Name | Access | Status | Description |
|---|---|---|---|---|
| 1.3.6.1.4.1.9.9.172 | IdentityciscoIpSecPolMapMIB | The MIB module maps the IPSec entities created dynamically to the policy entities that caused them. This is an appendix to the IPSEC-MONITOR-MIB that has been … | ||
| 1.3.6.1.4.1.9.9.172.1 | NodeciscoIpSecPolMapMIBObjects | |||
| 1.3.6.1.4.1.9.9.172.1.1 | NodeipSecPhaseOnePolMap | |||
| 1.3.6.1.4.1.9.9.172.1.1.1 | TableikePolMapTable | not-accessible | current | The IPSec Phase-1 Internet Key Exchange Tunnel to Policy Mapping Table. There is one entry in this table for each active IPSec Phase-1 Tunnel. |
| 1.3.6.1.4.1.9.9.172.1.1.1.1 | RowikePolMapEntry | not-accessible | current | Each entry contains the attributes associated with mapping an active IPSec Phase-1 IKE Tunnel to it's configured Policy definition. |
| 1.3.6.1.4.1.9.9.172.1.1.1.1.1 | ColumnikePolMapTunIndex | not-accessible | current | The index of the IPSec Phase-1 Tunnel to Policy Map Table. The value of the index is the number used to represent this IPSec Phase-1 Tunnel in the IPSec MIB (i… |
| 1.3.6.1.4.1.9.9.172.1.1.1.1.2 | ColumnikePolMapPolicyNum | read-only | current | The number of the locally defined ISAKMP policy used to establish the IPSec IKE Phase-1 Tunnel. This is the number which was used on the crypto command. For ex… |
| 1.3.6.1.4.1.9.9.172.1.2 | NodeipSecPhaseTwoPolMap | |||
| 1.3.6.1.4.1.9.9.172.1.2.1 | TableipSecPolMapTable | not-accessible | current | The IPSec Phase-2 Tunnel to Policy Mapping Table. There is one entry in this table for each active IPSec Phase-2 Tunnel. |
| 1.3.6.1.4.1.9.9.172.1.2.1.1 | RowipSecPolMapEntry | not-accessible | current | Each entry contains the attributes associated with mapping an active IPSec Phase-2 Tunnel to its configured Policy definition. |
| 1.3.6.1.4.1.9.9.172.1.2.1.1.1 | ColumnipSecPolMapTunIndex | not-accessible | current | The index of the IPSec Phase-2 Tunnel to Policy Map Table. The value of the index is the number used to represent this IPSec Phase-2 Tunnel in the IPSec MIB (i… |
| 1.3.6.1.4.1.9.9.172.1.2.1.1.2 | ColumnipSecPolMapCryptoMapName | read-only | current | The value of this object should be the name of the IPSec Policy (cryptomap) as assigned by the operator while configuring the policy of the IPSec traffic. For … |
| 1.3.6.1.4.1.9.9.172.1.2.1.1.3 | ColumnipSecPolMapCryptoMapNum | read-only | current | The value of this object should be the priority of the IPSec Policy (cryptomap) assigned by the operator while configuring the policy of this IPSec tunnel. For… |
| 1.3.6.1.4.1.9.9.172.1.2.1.1.4 | ColumnipSecPolMapAclString | read-only | current | The value of this object is the number or the name of the access control string (ACL) that caused this IPSec tunnel to be established. The ACL that causes an I… |
| 1.3.6.1.4.1.9.9.172.1.2.1.1.5 | ColumnipSecPolMapAceString | read-only | current | The value of this object is the access control entry (ACE) within the ACL that caused this IPSec tunnel to be established. For instance, if an ACL defines acce… |
| 1.3.6.1.4.1.9.9.172.2 | NodeciscoIpSecPolMapMIBNotifPrefix | |||
| 1.3.6.1.4.1.9.9.172.3 | NodeciscoIpSecPolMapMIBConformance | |||
| 1.3.6.1.4.1.9.9.172.3.1 | NodeipSecPolMapMIBGroups | |||
| 1.3.6.1.4.1.9.9.172.3.1.1 | GroupipSecPhaseOnePolMapGroup | current | This group consists of a: 1) IPSec Phase-1 Policy Map Table | |
| 1.3.6.1.4.1.9.9.172.3.1.2 | GroupipSecPhaseTwoPolMapGroup | current | This group consists of a: 1) IPSec Phase-2 Policy Map Table | |
| 1.3.6.1.4.1.9.9.172.3.2 | NodeipSecPolMapMIBCompliances | |||
| 1.3.6.1.4.1.9.9.172.3.2.1 | ComplianceipSecPolMapMIBCompliance | current | The compliance statement for SNMP entities for IP Security Protocol Tunnels to Policy definition mappings. |