MIB Viewer

CISCO-NAC-NAD-MIB

134 objects
This MIB module is for the configuration of a Network Access Device (NAD) on the Cisco Network Admission Control (NAC) system. EndPoint (SecurApp) EAPoUDP/802.1x RADIUS HCAP (Plugin) (PA) Cisco NAC system The Cisco Network Admission Control (NAC) security solution offers a systems approach to customers for ensuring endpoint device compliancy and vulnerability checks prior to production access to the network. Cisco refers to these compliancy checks as posture validations. The intent of this systems approach is to prevent the spread of works, viruses, and rogue applications across the network. This systems approach requires integration with third party end point security applications, as well as endpoint security servers. The Network Access Device (NAD) enforces network access control privileges by controlling which endpoint devices have access to network destinations and services reachable through that NAD. Endpoint devices that do not have the PA installed, enabled, or cannot otherwise respond to the NAD posture challenges are considered non-responsive hosts. Upon recognition of an incoming endpoint device at L2 or L3, the NAD issues a challenge to the endpoint device for posture credentials. Endpoint devices with a PA will recognize the challenge and respond with the necessary posture credentials. The NAD acts as a relay agent between the endpoint device and AAA server for all messages in the posture validation exchange. Once the validation is complete, the NAD enforces the access policy profile downloaded from the AAA Server, e.g. (i) provide full access (ii) deny all access through the NAD restrict access (quarantine) or (iii) some intermediate level of network access restriction or quarantine. Between posture revalidations, the NAD may issue periodic status queries to determine that the each endpoint device using the NAD is still the same device that was first postured, and that the endpoint device's posture credentials have not changed. This mechanism is a challenge response protocol that does not involve the AAA Server nor does it require the posture plugins to resend any credentials. It is used to trigger a full posture revalidation with the AAA Server when the endpoint device's credentials have changed (e.g. to revalidate the host endpoint device after remediation), or a new host endpoint device connects with a previously authorized IP address. The NAD supports a local exception list based on IP, MAC address or device type so that certain endpoint devices can bypass the posture validation process based on system administrator configuration. Also, the NAD may be configured to query the AAA server for access policies associated with endpoint devices that do not have a Posture Agent installed, clientless host endpoint devices. Posture Validation occurs when a NAC-enabled network access device (NAC) detects an endpoint device attempting to connect or use its network resources and it issues the endpoint device a posture challenge. An endpoint device with a resident posture agent will respond to the challenge with sets of posture credentials from one or more posture plugins which can detail the state of the various hardware and software components on the endpoint device. The posture agent response is forwarded by the network access device to an AAA server which may in turn delegate parts of the decision to posture validation server. Evaluation of the credentials against posture validation policies results in an authorization decision or posture token, representing the endpoint device's relative compliance to the network compliance policy. The AAA server then sends the respective network access profile to the network access device for enforcement of the endpoint device authorization. The Cisco Technology consists of the following: Endpoint Device - Any host attempting to connect or use the resource of a network. - e.g., a personal computer, personal data digital assistant, or data server, or other network attached device. NAD - Network Access Device that enforces network access control policies through layer 2 or layer 3 challenge-responses with a network enabled Endpoint device. PC - Posture Credentials that describe the state of an application and/or operating system that is running on an endpoint device at the time a layer 2 or layer 3 challenge response is issued by a NAD. PP - Posture Plugin. A module implemented by an application or agent provider that is responsible for supplying the relevant posture credentials for the application or agent. PA - Posture Agent. Host agent software that serves as a broker on the host for aggregating credential from potentially multiple posture plugins and communicating with the network. CTA - Cisco Trust Agent. Cisco's implementation of the posture agent. EAP - Extensible Authentication Protocol. An extension to PPP. EOU - Extensible Authentication Protocol over UDP. ACS/AAA - Cisco Secure Access Control Server. The primary authorization server that is the network policy decision point and is extended to support posture validation. PVS - Posture Validation Server. UCT - Un Conditional Transition. Clientless - Client without Cisco Posture Agent. Tag - Tag is a policy specifier which is mapped to a policy template based on specific rules. The Tag allows network administrators to define enforcement policies on local device and have a RADIUS server specify the policy Template to be enforced.
OIDNameAccessStatusDescription
1.3.6.1.4.1.9.9.484IdentityciscoNacNadMIBThis MIB module is for the configuration of a Network Access Device (NAD) on the Cisco Network Admission Control (NAC) system. EndPoint (SecurApp) EAPoUDP/802.…
1.3.6.1.4.1.9.9.484.0NodeciscoNacNadMIBNotifs
1.3.6.1.4.1.9.9.484.1NodeciscoNacNadMIBObjects
1.3.6.1.4.1.9.9.484.1.1NodecnnEouGlobalObjects
1.3.6.1.4.1.9.9.484.1.1.1ScalarcnnEouVersionread-onlycurrentThe version of EOU in use on the local system. Value zero indicates the version can not be determined.
1.3.6.1.4.1.9.9.484.1.1.2ScalarcnnEouEnabledread-writecurrentIndicates whether the posture validation via EOU is globally enabled or disabled in the device.
1.3.6.1.4.1.9.9.484.1.1.3ScalarcnnEouAllowClientlessread-writecurrentIndicates whether to allow authentication of clientless hosts (system that does not run Cisco Trust Agent).
1.3.6.1.4.1.9.9.484.1.1.4ScalarcnnEouAllowIpStationIdread-writecurrentIt indicates whether to send the host IP address in the calling station ID field of RADIUS request.
1.3.6.1.4.1.9.9.484.1.1.5ScalarcnnEouLoggingEnabledread-writecurrentTo enable or disable EOU system logging events. Set to 'true' to enable syslog message at an informational level (syslog level 6).
1.3.6.1.4.1.9.9.484.1.1.6ScalarcnnEouMaxRetryread-writecurrentThe number of maximum retry attempts for EOU.
1.3.6.1.4.1.9.9.484.1.1.7ScalarcnnEouPortread-writecurrentThe UDP port for EOU. The port cannot conflict with other UDP application.
1.3.6.1.4.1.9.9.484.1.1.8ScalarcnnEouRateLimitread-writecurrentThe number of clients that can be simultaneously validated. Set the rate limit to 0 (zero), rate limiting will be turned off. If the rate limit is set to 100 a…
1.3.6.1.4.1.9.9.484.1.1.9ScalarcnnEouTimeoutAAAread-writecurrentTimeout period used by NAD with AAA (Authentication, Authorization and Accounting.
1.3.6.1.4.1.9.9.484.1.1.10ScalarcnnEouTimeoutHoldPeriodread-writecurrentLength of time that can elapse before the client sessions are purged from the system due to client inactivity.
1.3.6.1.4.1.9.9.484.1.1.11ScalarcnnEouTimeoutRetransmitread-writecurrentThe timeout period for the EOU message retransmitted.
1.3.6.1.4.1.9.9.484.1.1.12ScalarcnnEouTimeoutRevalidationread-writecurrentThe timeout period for the revalidation. Setting this object to 0 will globally disable periodic revalidation on this device.
1.3.6.1.4.1.9.9.484.1.1.13ScalarcnnEouTimeoutStatusQueryread-writecurrentThe timeout period for the status query after revalidation.
1.3.6.1.4.1.9.9.484.1.1.14ScalarcnnEouCriticalRecoveryDelayread-writecurrentThis object specifies the EOU critical recovery delay time for the device. A value of zero indicates that critical recovery delay feature is disabled.
1.3.6.1.4.1.9.9.484.1.1.15ScalarcnnEouRevalidationEnabledread-writecurrentIndicates whether the EOU revalidation is globally enabled or disabled in the device.
1.3.6.1.4.1.9.9.484.1.2NodecnnEouAuthorizeLists
1.3.6.1.4.1.9.9.484.1.2.1TablecnnEouAuthIpTablenot-accessiblecurrentA list of statically authorized IP devices in the system.
1.3.6.1.4.1.9.9.484.1.2.1.1RowcnnEouAuthIpEntrynot-accessiblecurrentAn entry containing the associated policy information of the statically authorized IP device. An entry can be created, or deleted by using cnnEouAuthIpRowStatu…
1.3.6.1.4.1.9.9.484.1.2.1.1.1ColumncnnEouAuthIpAddrTypenot-accessiblecurrentThe type of Internet address by which the statically authorized IP device is reachable.
1.3.6.1.4.1.9.9.484.1.2.1.1.2ColumncnnEouAuthIpAddrnot-accessiblecurrentThe Internet address for the statically authorized IP device. The type of this address is determined by the value of the cnnEouAuthIpAddrType object.
1.3.6.1.4.1.9.9.484.1.2.1.1.3ColumncnnEouAuthIpAddrMaskread-createcurrentUsing 'inverse mask' to support IP wildcards. The mask used with the source IP address will specify what traffic is exempted from EAP validation. e.g. cnnEouAu…
1.3.6.1.4.1.9.9.484.1.2.1.1.4ColumncnnEouAuthIpPolicyread-createcurrentThe policy associate with the statically authorized IP device. The policy needs to be present in the policy-database before an statically authorized IP device …
1.3.6.1.4.1.9.9.484.1.2.1.1.5ColumncnnEouAuthIpStorageTyperead-createcurrentThe storage type for this conceptual row.
1.3.6.1.4.1.9.9.484.1.2.1.1.6ColumncnnEouAuthIpRowStatusread-createcurrentThe status of this conceptual row. To create an entry, users set the value of this object to 'createAndGo'. The transition from 'active' to 'notInService' may …
1.3.6.1.4.1.9.9.484.1.2.2TablecnnEouAuthMacTablenot-accessiblecurrentA list of static authorized devices identified by MAC address.
1.3.6.1.4.1.9.9.484.1.2.2.1RowcnnEouAuthMacEntrynot-accessiblecurrentAn entry containing the associated policy information of the statically authorized device identified by MAC address. The entry is created, and deleted by using…
1.3.6.1.4.1.9.9.484.1.2.2.1.1ColumncnnEouAuthMacAddrnot-accessiblecurrentThe MAC address of the static authorized device.
1.3.6.1.4.1.9.9.484.1.2.2.1.2ColumncnnEouAuthMacAddrMaskread-createcurrentUsing 'inverse mask' support MAC wildcards. The mask used with the source MAC address will specify what traffic is exempted from EAP validation. e.g. cnnEouAut…
1.3.6.1.4.1.9.9.484.1.2.2.1.3ColumncnnEouAuthMacPolicyread-createcurrentThe policy associate with the statically authorized device identified by MAC address. The policy needs to be present in the policy-database before an device ca…
1.3.6.1.4.1.9.9.484.1.2.2.1.4ColumncnnEouAuthMacStorageTyperead-createcurrentThe storage type for this conceptual row.
1.3.6.1.4.1.9.9.484.1.2.2.1.5ColumncnnEouAuthMacRowStatusread-createcurrentThe status of this conceptual row. To create an entry, users set the value of this object to 'createAndGo'. The transition from 'active' to 'notInService' may …
1.3.6.1.4.1.9.9.484.1.2.3TablecnnEouAuthDeviceTypeTablenot-accessiblecurrentA list of static authorized devices indexed by device type.
1.3.6.1.4.1.9.9.484.1.2.3.1RowcnnEouAuthDeviceTypeEntrynot-accessiblecurrentAn entry containing the information of the static authorized device indexed by device type.
1.3.6.1.4.1.9.9.484.1.2.3.1.1ColumncnnEouAuthDeviceTypenot-accessiblecurrentThe static authorize device type.
1.3.6.1.4.1.9.9.484.1.2.3.1.2ColumncnnEouAuthDeviceTypeStorageTyperead-createcurrentThe storage type for this conceptual row.
1.3.6.1.4.1.9.9.484.1.2.3.1.3ColumncnnEouAuthDeviceTypeRowStatusread-createcurrentThis object is used to create or delete an entry in the cnnEouAuthDeviceTypeTable. A row may be created using the 'CreateAndGo' option. A row may be deleted by…
1.3.6.1.4.1.9.9.484.1.3NodecnnEouIfMIBObjects
1.3.6.1.4.1.9.9.484.1.3.1TablecnnEouIfConfigTablenot-accessiblecurrentA list of EOU configurations for the EOU capable interfaces.
1.3.6.1.4.1.9.9.484.1.3.1.1RowcnnEouIfConfigEntrynot-accessiblecurrentAn entry containing the EOU configuration information for a particular EOU capable interface.
1.3.6.1.4.1.9.9.484.1.3.1.1.1ColumncnnEouIfAdminStatusread-writecurrentSetting this object to 'auto' means the Posture Validation via EOU ability at this interface would be enabled if a end point device is found. If the value of t…
1.3.6.1.4.1.9.9.484.1.3.1.1.2ColumncnnEouIfMaxRetryread-writecurrentThe maximum number of retry by EOU for this interface.
1.3.6.1.4.1.9.9.484.1.3.1.1.3ColumncnnEouIfValidateActionread-writecurrentAn EOU validate action to the devices associated with the interface. This object always has the value 'none' when read. none(1) no operation is performed. init…
1.3.6.1.4.1.9.9.484.1.3.1.1.4ColumncnnEouIfTimeoutGlobalConfigread-writecurrentThis object indicates whether the timeout configurations on this interface are based on the corresponding global timeout configurations or not. aaa(0) If this …
1.3.6.1.4.1.9.9.484.1.3.1.1.5ColumncnnEouIfTimeoutAAAread-writecurrentThe timeout period used by EOU for the AAA server connection on this interface.
1.3.6.1.4.1.9.9.484.1.3.1.1.6ColumncnnEouIfTimeoutHoldPeriodread-writecurrentThe hold period of this interface. The hold period is the length of the time that can elapse before the client session entries are purged from the system due t…
1.3.6.1.4.1.9.9.484.1.3.1.1.7ColumncnnEouIfTimeoutRetransmitread-writecurrentThe timeout period for the EOU message retransmitted at this interface.
1.3.6.1.4.1.9.9.484.1.3.1.1.8ColumncnnEouIfTimeoutRevalidationread-writecurrentThe timeout period for the revalidation at this interface. Setting this object to 0 will disable periodic revalidation on this device.
1.3.6.1.4.1.9.9.484.1.3.1.1.9ColumncnnEouIfTimeoutStatusQueryread-writecurrentThe timeout period for the status query after revalidation at this interface.
1.3.6.1.4.1.9.9.484.1.3.1.1.10ColumncnnEouIfAaaFailPolicyread-writecurrentSpecified the name of the policy template to be applied when cnnEouHostResultState is 'aaaFail'. The specified policy name must exist in cpgPolicyTable if it i…
1.3.6.1.4.1.9.9.484.1.3.1.1.11ColumncnnEouIfAllowClientlessread-writecurrentThis object specifies whether to allow authentication of clientless hosts (system that does not run Cisco Trust Agent) on the interface.
1.3.6.1.4.1.9.9.484.1.3.1.1.12ColumncnnEouIfAllowIpStationIdread-writecurrentThis object specifies whether to send the host IP address in the calling station ID field of RADIUS request for hosts on the interface.
1.3.6.1.4.1.9.9.484.1.4NodecnnEouHostMIBObjects
1.3.6.1.4.1.9.9.484.1.4.1ScalarcnnEouHostValidateActionread-writecurrentAn EOU validate action to the devices. Initialize: When a device is initialized, all previous state information about that host is deleted and the admission co…
1.3.6.1.4.1.9.9.484.1.4.2ScalarcnnEouHostValidateIpAddrTyperead-writecurrentThe type of Internet address for a detected host.
1.3.6.1.4.1.9.9.484.1.4.3ScalarcnnEouHostValidateIpAddrread-writecurrentThe Internet address for a detected host. The type of this address is determined by the value of the cnnEouHostValidateIpAddrType.
1.3.6.1.4.1.9.9.484.1.4.4ScalarcnnEouHostValidateMacAddrread-writecurrentThe Mac address for a detected host.
1.3.6.1.4.1.9.9.484.1.4.5ScalarcnnEouHostValidatePostureTokenread-writedeprecatedType of posture token for a detected host. This object is deprecated and replaced by cnnEouHostValidatePostureTokenStr.
1.3.6.1.4.1.9.9.484.1.4.6ScalarcnnEouHostMaxQueriesread-onlycurrentMaximum number of query entries allowed to be outstanding at any time, in the cnnEouHostQueryTable.
1.3.6.1.4.1.9.9.484.1.4.7TablecnnEouHostQueryTablenot-accessiblecurrentA control table used to query the client host by specifying retrieval criteria for the EOU information. Each row instance in the table represents a query with …
1.3.6.1.4.1.9.9.484.1.4.7.1RowcnnEouHostQueryEntrynot-accessiblecurrentA conceptual row of the cnnEouHostQueryTable used to setup retrieval criteria to search for the EOU hosts on the system. The actual search is started by settin…
1.3.6.1.4.1.9.9.484.1.4.7.1.1ColumncnnEouHostQueryIndexnot-accessiblecurrentAn arbitrary integer in the range of 1 to cnnEouHostMaxQueries to identify this control query.
1.3.6.1.4.1.9.9.484.1.4.7.1.2ColumncnnEouHostQueryMaskread-createcurrentSetting each value causes the appropriate action: authenClientless(1) - causes the creation of row(s) in the cnnHostQueryResultTable corresponding to the curre…
1.3.6.1.4.1.9.9.484.1.4.7.1.3ColumncnnEouHostQueryInterfaceread-createcurrentAn index value that uniquely identifies an interface where the end point device is connected. The interface identified by a particular value of this index is t…
1.3.6.1.4.1.9.9.484.1.4.7.1.4ColumncnnEouHostQueryIpAddrTyperead-createcurrentThe internet address type for the queried host.
1.3.6.1.4.1.9.9.484.1.4.7.1.5ColumncnnEouHostQueryIpAddrread-createcurrentThe Internet address for the queried host. The type of this address is determined by the value of the cnnEouHostQueryIpAddrType. If the 'ip' option of cnnEouHo…
1.3.6.1.4.1.9.9.484.1.4.7.1.6ColumncnnEouHostQueryMacAddrread-createcurrentThe Mac address for the queried host. If the 'mac' option of cnnEouHostQueryMask is selected, an appropriate MAC address is assigned to this object then only t…
1.3.6.1.4.1.9.9.484.1.4.7.1.7ColumncnnEouHostQueryPostureTokenread-createdeprecatedThe assigned posture token for the queried host. If the 'postureToken' option of cnnEouHostQueryMask is selected, an appropriate posture token is assigned to t…
1.3.6.1.4.1.9.9.484.1.4.7.1.8ColumncnnEouHostQuerySkipNHostsread-createcurrentThe number of searched detected hosts to be skipped before storing any host in cnnEouHostResultTable. This object can be used along with cnnEouHostQueryTotalHo…
1.3.6.1.4.1.9.9.484.1.4.7.1.9ColumncnnEouHostQueryMaxResultRowsread-createcurrentThis is the maximum number of rows in the cnnEouHostResultTable, resulting from this query. A value of zero (0) indicates no limit rows in cnnEouHostResultTabl…
1.3.6.1.4.1.9.9.484.1.4.7.1.10ColumncnnEouHostQueryTotalHostsread-onlycurrentIndicating the total number of the hosts matching the query criterion. -1 - Either the query has not been started or the agent is still processing this query i…
1.3.6.1.4.1.9.9.484.1.4.7.1.11ColumncnnEouHostQueryRowsread-onlycurrentIndicating the status of the query by following values: -1 - Either the query has not been started or the agent is still processing this query instance. It is …
1.3.6.1.4.1.9.9.484.1.4.7.1.12ColumncnnEouHostQueryCreateTimeread-onlycurrentTime when this query was last set to active.
1.3.6.1.4.1.9.9.484.1.4.7.1.13ColumncnnEouHostQueryStatusread-createcurrentThe status object used to manage rows in this table. When set to 'createAndGo', the query is initiated. The completion of the query is indicated by the value o…
1.3.6.1.4.1.9.9.484.1.4.7.1.14ColumncnnEouHostQueryPostureTokenStrread-createcurrentThe assigned posture token string for the queried host. If the 'postureTokenString' option of cnnEouHostQueryMask is selected, an appropriate posture token str…
1.3.6.1.4.1.9.9.484.1.4.8TablecnnEouHostResultTablenot-accessiblecurrentA table containing current detected host information corresponding to all the completed queries set up in the cnnEouHostQueryTable, that were detected in the d…
1.3.6.1.4.1.9.9.484.1.4.8.1RowcnnEouHostResultEntrynot-accessiblecurrentA conceptual row of cnnEouHostResultTable, containing posture validation information of an detected host that matches the search criteria set in the correspond…
1.3.6.1.4.1.9.9.484.1.4.8.1.1ColumncnnEouHostResultIndexnot-accessiblecurrentA number which uniquely identifies a result entry matching a particular query.
1.3.6.1.4.1.9.9.484.1.4.8.1.2ColumncnnEouHostResultAssocIfread-onlycurrentAn index value that uniquely identifies an interface where the end point device is currently connected. The interface identified by a particular value of this …
1.3.6.1.4.1.9.9.484.1.4.8.1.3ColumncnnEouHostResultIpAddrTyperead-onlycurrentThe type of Internet address by which the detected host is reachable.
1.3.6.1.4.1.9.9.484.1.4.8.1.4ColumncnnEouHostResultIpAddrread-onlycurrentThe internet address for the detected host. The type of this address is determined by the value of the cnnEouHostResultIpAddrType object.
1.3.6.1.4.1.9.9.484.1.4.8.1.5ColumncnnEouHostResultMacAddrread-onlycurrentIndicates The MAC address of the detected host.
1.3.6.1.4.1.9.9.484.1.4.8.1.6ColumncnnEouHostResultAuthTyperead-onlycurrentThis object indicates the authentication type used in the posture validation process for this detected host.
1.3.6.1.4.1.9.9.484.1.4.8.1.7ColumncnnEouHostResultPostureTokenread-onlydeprecatedIndicates the posture token of the detected host. During the posture validation process, the host will be placed into a particular category and have a token as…
1.3.6.1.4.1.9.9.484.1.4.8.1.8ColumncnnEouHostResultAgeread-onlycurrentIndicates the length of time, in minutes, that host has been connected.
1.3.6.1.4.1.9.9.484.1.4.8.1.9ColumncnnEouHostResultUrlRedirread-onlycurrentThis object specifies the URL(Web page) where the latest Anti-Virus file can be downloaded or upgraded, if the detected host fails the credential validation th…
1.3.6.1.4.1.9.9.484.1.4.8.1.10ColumncnnEouHostResultAclNameread-onlycurrentThe mapped ACL to this detected host. A character string for an ACL (Access Control List) name. Valid characters are a-z, A-Z, 0-9, ,'#', '-', '_' and '.'. Som…
1.3.6.1.4.1.9.9.484.1.4.8.1.11ColumncnnEouHostResultStatusQryPeriodread-onlycurrentThe timeout period, in seconds, for the status query after revalidation at this interface.
1.3.6.1.4.1.9.9.484.1.4.8.1.12ColumncnnEouHostResultRevalidatePeriodread-onlycurrentThe timeout period, in second, for the revalidation at this interface.
1.3.6.1.4.1.9.9.484.1.4.8.1.13ColumncnnEouHostResultStateread-onlycurrentIndicates the current EOU state of this detected host.
1.3.6.1.4.1.9.9.484.1.4.8.1.14ColumncnnEouHostResultPostureTokenStrread-onlycurrentIndicates the posture token string of the detected host. During the posture validation process, the host will be placed into a particular category and have a t…
1.3.6.1.4.1.9.9.484.1.4.8.1.15ColumncnnEouHostResultUrlRedirectAclread-onlycurrentIndicates the name of the access control list(ACL) for URL redirection. Any ingress HTTP from the host that matches this ACL will be subjected to redirection t…
1.3.6.1.4.1.9.9.484.1.4.8.1.16ColumncnnEouHostResultTagNameread-onlycurrentIndicates the tag which is received as a policy response from the ACS server for the detected host.
1.3.6.1.4.1.9.9.484.1.4.8.1.17ColumncnnEouHostResultAuditSessionIdread-onlycurrentThis object uniquely identifies a host session. Session ID is included in access requests to AAA server and in Web requests to Audit server.
1.3.6.1.4.1.9.9.484.1.4.8.1.18ColumncnnEouHostResultAaaFailPolicyread-onlycurrentThis object indicates the name of policy template to be applied when EouHostResultState is 'aaaFail'.
1.3.6.1.4.1.9.9.484.1.4.9ScalarcnnEouHostValidatePostureTokenStrread-writecurrentPosture token string for a detected host.
1.3.6.1.4.1.9.9.484.1.5NodecnnIpDeviceTrackingObjects
1.3.6.1.4.1.9.9.484.1.5.1ScalarcnnIpDeviceTrackingEnabledread-writecurrentSpecifies whether the IP device tracking feature is globally enabled or disabled on this device.
1.3.6.1.4.1.9.9.484.1.5.2ScalarcnnIpDeviceTrackingProbeCountread-writecurrentSpecifies the number of times that this device sends the ARP probe to an IP device before removing the IP device from the IP device tracking table.
1.3.6.1.4.1.9.9.484.1.5.3ScalarcnnIpDeviceTrackingProbeIntervalread-writecurrentSpecifies the number of the seconds that this device waits before resending the ARP probe.
1.3.6.1.4.1.9.9.484.1.5.4TablecnnEouIfIpDevTrackConfigTablenot-accessiblecurrentA table of IP Device Tracking configuration for EOU interfaces in the system.
1.3.6.1.4.1.9.9.484.1.5.4.1RowcnnEouIfIpDevTrackConfigEntrynot-accessiblecurrentA set of EOU IP Device Tracking configuration information on an EOU interface.
1.3.6.1.4.1.9.9.484.1.5.4.1.1ColumncnnEouIfIpDevTrackEnabledread-writecurrentSpecifies if IP Device Tracking feature is enabled on this interface.
1.3.6.1.4.1.9.9.484.2NodeciscoNacNadMIBConformance
1.3.6.1.4.1.9.9.484.2.1NodeciscoNacNadMIBCompliances
1.3.6.1.4.1.9.9.484.2.1.1ComplianceciscoNacNadMIBComplianceread-onlydeprecatedThe compliance statement for the CISCO-NAC-NAD-MIB. OBJECT cnnEouAuthIpAddrType SYNTAX InetAddressType { ipv4(1) } DESCRIPTION An implementation is only requir…
1.3.6.1.4.1.9.9.484.2.1.2ComplianceciscoNacNadMIBCompliance2read-onlydeprecatedThe compliance statement for the CISCO-NAC-NAD-MIB. OBJECT cnnEouAuthIpAddrType SYNTAX InetAddressType { ipv4(1) } DESCRIPTION An implementation is only requir…
1.3.6.1.4.1.9.9.484.2.1.3ComplianceciscoNacNadMIBCompliance3read-onlydeprecatedThe compliance statement for the CISCO-NAC-NAD-MIB. OBJECT cnnEouAuthIpAddrType SYNTAX InetAddressType { ipv4(1) } DESCRIPTION An implementation is only requir…
1.3.6.1.4.1.9.9.484.2.1.4ComplianceciscoNacNadMIBCompliance4read-onlycurrentThe compliance statement for the CISCO-NAC-NAD-MIB. OBJECT cnnEouAuthIpAddrType SYNTAX InetAddressType { ipv4(1) } DESCRIPTION An implementation is only requir…
1.3.6.1.4.1.9.9.484.2.2NodeciscoNacNadMIBGroups
1.3.6.1.4.1.9.9.484.2.2.1GroupciscoNacNadEouGlobalGroupcurrentA collection of objects providing the global configuration on the NAD.
1.3.6.1.4.1.9.9.484.2.2.2GroupciscoNacNadEouAuthIpGroupcurrentA collection of objects providing the configuration for the static authorization IP device with policy associated.
1.3.6.1.4.1.9.9.484.2.2.3GroupciscoNacNadEouAuthMacGroupcurrentA collection of objects providing the configuration for the static authorization MAC device with policy associated.
1.3.6.1.4.1.9.9.484.2.2.4GroupciscoNacNadEouAuthDeviceTypeGrpcurrentA collection of objects providing the configuration for the static authorization device identified by device type.
1.3.6.1.4.1.9.9.484.2.2.5GroupciscoNacNadEouIfConfigGroupcurrentA collection of objects providing the interface configuration on the NAD.
1.3.6.1.4.1.9.9.484.2.2.6GroupciscoNacNadEouHostGroupdeprecatedA collection of objects providing the host configuration on the NAD.
1.3.6.1.4.1.9.9.484.2.2.7GroupciscoNacNadEouIfTimeoutGroupcurrentA collection of objects providing the timeout configuration on the interface.
1.3.6.1.4.1.9.9.484.2.2.8GroupciscoNacNadEouIfMaxRetryGroupcurrentA collection of objects providing the max-retry configuration on the interface.
1.3.6.1.4.1.9.9.484.2.2.9GroupciscoNacNadEouRateLimitGroupcurrentA collection of objects providing the rate limit configuration.
1.3.6.1.4.1.9.9.484.2.2.10GroupciscoNacNadEouIfAdminGroupcurrentA collection of objects providing the administrative configuration on the interfaces.
1.3.6.1.4.1.9.9.484.2.2.11GroupciscoNacNadEouHostAgeGroupcurrentA collection of objects providing the age information on the interface.
1.3.6.1.4.1.9.9.484.2.2.12GroupciscoNacNadEouHostUrlRedircurrentA collection of objects providing the redirect URL information on the interface.
1.3.6.1.4.1.9.9.484.2.2.13GroupciscoNacNadEouHostAclGroupcurrentA collection of objects providing the ACL(Access Control List) information on the interface.
1.3.6.1.4.1.9.9.484.2.2.14GroupciscoNacNadEouIfAaaFailPolicyGrpcurrentA collection of objects providing the AAA failed policy for the interface.
1.3.6.1.4.1.9.9.484.2.2.15GroupciscoNacNadEouHostGrpcurrentA collection of objects providing the host configuration on the NAD.
1.3.6.1.4.1.9.9.484.2.2.16GroupcnnIpDeviceTrackingConfigGrpcurrentA collection of objects providing IP device tracking for the device.
1.3.6.1.4.1.9.9.484.2.2.17GroupcnnEouCriticalRecoveryDelayGrpcurrentA collection of objects providing critical recovery delay for the device.
1.3.6.1.4.1.9.9.484.2.2.18GroupcnnEouIfIpDevTrackConfigGrpcurrentA collection of objects providing EOU IP device tracking per interface in the device.
1.3.6.1.4.1.9.9.484.2.2.19GroupciscoNacNadRevalidateConfigGrpcurrentA collection of objects providing the globally configuration for the system.
1.3.6.1.4.1.9.9.484.2.2.20GroupciscoNacNadEouHostGroup1currentA collection of objects providing the host extension configuration on the NAD.
1.3.6.1.4.1.9.9.484.2.2.21GroupciscoNacNadEouIfExtGroupcurrentA collection of objects providing the interface extension configuration on the NAD.