MIB Viewer

CISCO-PAE-MIB

206 objects
Cisco Port Access Entity (PAE) module for managing IEEE Std 802.1x. This MIB provides Port Access Entity information that are either excluded by IEEE8021-PAE-MIB or specific to Cisco products.
OIDNameAccessStatusDescription
1.3.6.1.4.1.9.9.220IdentityciscoPaeMIBCisco Port Access Entity (PAE) module for managing IEEE Std 802.1x. This MIB provides Port Access Entity information that are either excluded by IEEE8021-PAE-M…
1.3.6.1.4.1.9.9.220.0NodecpaeMIBNotification
1.3.6.1.4.1.9.9.220.0.1NotificationcpaeNoGuestVlanNotifcurrentA cpaeNoGuestVlanNotif is sent if a non-802.1x supplicant is detected on a PAE port for which the value of corresponding instance of dot1xAuthAuthControlledPor…
1.3.6.1.4.1.9.9.220.0.2NotificationcpaeNoAuthFailVlanNotifcurrentA cpaeNoAuthFailVlanNotif is sent if a 802.1x supplicant fails to authenticate on a PAE port for which the value of corresponding instance of dot1xAuthAuthCont…
1.3.6.1.4.1.9.9.220.0.3NotificationcpaeGuestVlanNotifcurrentA cpaeGuestVlanNotif is sent if value of the instance of cpaeGuestVlanNotifEnable is set to 'true', and a PAE port is being moved to the VLAN specified by valu…
1.3.6.1.4.1.9.9.220.0.4NotificationcpaeAuthFailVlanNotifcurrentA cpaeAuthFailVlanNotif is sent if value of the instance of cpaeAuthFailVlanNotifEnable is set to 'true', and a PAE port is being moved to the VLAN specified b…
1.3.6.1.4.1.9.9.220.1NodecpaeMIBObject
1.3.6.1.4.1.9.9.220.1.1TablecpaePortTablenot-accessiblecurrentA table of system level information for each port supported by the Port Access Entity. An entry appears in this table for each PAE port of this system. This ta…
1.3.6.1.4.1.9.9.220.1.1.1RowcpaePortEntrynot-accessiblecurrentAn entry containing additional management information applicable to a particular PAE port.
1.3.6.1.4.1.9.9.220.1.1.1.1ColumncpaeMultipleHostread-writedeprecatedSpecifies whether the port allows multiple-host connection or not.
1.3.6.1.4.1.9.9.220.1.1.1.2ColumncpaePortModeread-writecurrentSpecifies the current mode of dot1x operation on the port. singleHost(1): port allows one host to connect and authenticate. multiHost(2) : port allows multiple…
1.3.6.1.4.1.9.9.220.1.1.1.3ColumncpaeGuestVlanNumberread-writecurrentSpecifies the Guest Vlan of the interface. An interface with cpaePortMode value of 'singleHost' will be moved to its Guest Vlan if the supplicant on the interf…
1.3.6.1.4.1.9.9.220.1.1.1.4ColumncpaeInGuestVlanread-onlydeprecatedIndicates whether the interface is in its Guest Vlan or not. The object is deprecated in favor of newly added object cpaePortOperVlanType.
1.3.6.1.4.1.9.9.220.1.1.1.5ColumncpaeShutdownTimeoutEnabledread-writecurrentSpecifies whether shutdown timeout feature is enabled on the interface.
1.3.6.1.4.1.9.9.220.1.1.1.6ColumncpaePortAuthFailVlanread-writecurrentSpecifies the Auth-Fail (Authentication Fail) Vlan of the port. A port is moved to Auth-Fail Vlan if the supplicant which support IEEE-802.1x authentication is…
1.3.6.1.4.1.9.9.220.1.1.1.7ColumncpaePortOperVlanread-onlycurrentThe VlanIndex of the Vlan which is assigned to this port via IEEE-802.1x and related methods of authentication supported by the system. A value of zero for thi…
1.3.6.1.4.1.9.9.220.1.1.1.8ColumncpaePortOperVlanTyperead-onlycurrentThe type of the Vlan which is assigned to this port via IEEE-802.1x and related methods of authentication supported by the system. A value of 'other' for this …
1.3.6.1.4.1.9.9.220.1.1.1.9ColumncpaeAuthFailVlanMaxAttemptsread-writecurrentSpecifies the maximum number of authentication attempts should be made before the port is moved into the Auth-Fail Vlan.
1.3.6.1.4.1.9.9.220.1.1.1.10ColumncpaePortCapabilitiesEnabledread-writecurrentSpecifies the type of PAE functionality of the port which are enabled. authenticator: PAE Authenticator functions are enabled. supplicant : PAE Supplicant func…
1.3.6.1.4.1.9.9.220.1.2ScalarcpaeGuestVlanIdread-writedeprecatedSpecifies the Guest Vlan of the system. An interface with cpaePortMode value of 'singleHost' will be moved to Guest Vlan if the supplicant on the interface is …
1.3.6.1.4.1.9.9.220.1.3ScalarcpaeShutdownTimeoutread-writecurrentSpecifies the shutdown timeout interval to enable the interface automatically in case it is shutdown due to security violation. If the value of this object is …
1.3.6.1.4.1.9.9.220.1.4ScalarcpaeRadiusAccountingEnabledread-writecurrentSpecifies if RADIUS accounting is enabled for 802.1x on this devices.
1.3.6.1.4.1.9.9.220.1.5TablecpaeUserGroupTablenot-accessiblecurrentA table of Group Manager and authenticated users information on the device.
1.3.6.1.4.1.9.9.220.1.5.1RowcpaeUserGroupEntrynot-accessiblecurrentInformation about an 802.1x authenticated user on the devices.
1.3.6.1.4.1.9.9.220.1.5.1.1ColumncpaeUserGroupNamenot-accessiblecurrentSpecifies the name of the group that the user belongs to.
1.3.6.1.4.1.9.9.220.1.5.1.2ColumncpaeUserGroupUserIndexnot-accessiblecurrentThe index of an user within a group.
1.3.6.1.4.1.9.9.220.1.5.1.3ColumncpaeUserGroupUserNameread-onlycurrentSpecifies the name of the user authenticated on a port of the device.
1.3.6.1.4.1.9.9.220.1.5.1.4ColumncpaeUserGroupUserAddrTyperead-onlycurrentSpecifies the type of address used to determine the address of the user.
1.3.6.1.4.1.9.9.220.1.5.1.5ColumncpaeUserGroupUserAddrread-onlycurrentSpecifies the address of the host that the user logging from.
1.3.6.1.4.1.9.9.220.1.5.1.6ColumncpaeUserGroupUserInterfaceread-onlycurrentSpecifies the interface index that the user is authenticated on.
1.3.6.1.4.1.9.9.220.1.5.1.7ColumncpaeUserGroupUserVlanread-onlycurrentSpecifies the vlan that the user belongs to.
1.3.6.1.4.1.9.9.220.1.6TablecpaeAuthFailUserTablenot-accessiblecurrentA table to list user information for each port on the system supported by the Port Access Entity and assigned to Auth-Fail Vlan.
1.3.6.1.4.1.9.9.220.1.6.1RowcpaeAuthFailUserEntrynot-accessiblecurrentAn entry appears in this table for each PAE port on the system which is assigned to Vlan of type 'authFail' via IEEE-802.1x authentication.
1.3.6.1.4.1.9.9.220.1.6.1.1ColumncpaeAuthFailUserNameread-onlycurrentIndicates the name of the user who failed IEEE-802.1x authentication and hence now assigned to Auth-Fail Vlan. The Auth-Fail Vlan to which the user belongs is …
1.3.6.1.4.1.9.9.220.1.7NodecpaeNotificationControl
1.3.6.1.4.1.9.9.220.1.7.1ScalarcpaeNoGuestVlanNotifEnableread-writecurrentThis object specifies whether the system produces the cpaeNoGuestVlanNotif. A 'false' value will prevent cpaeNoGuestVlanNotif from being generated by this syst…
1.3.6.1.4.1.9.9.220.1.7.2ScalarcpaeNoAuthFailVlanNotifEnableread-writecurrentThis object specifies whether the system produces the cpaeNoAuthFailVlanNotif. A 'false' value will prevent cpaeNoAuthFailVlanNotif from being generated by thi…
1.3.6.1.4.1.9.9.220.1.7.3ScalarcpaeGuestVlanNotifEnableread-writecurrentThis object specifies whether the system produces the cpaeGuestVlanNotif. A 'false' value will prevent cpaeGuestVlanNotif from being generated by this system.
1.3.6.1.4.1.9.9.220.1.7.4ScalarcpaeAuthFailVlanNotifEnableread-writecurrentThis object specifies whether the system produces the cpaeAuthFailVlanNotif. A 'false' value will prevent cpaeAuthFailVlanNotif from being generated by this sy…
1.3.6.1.4.1.9.9.220.1.8NodecpaeMacAuthBypass
1.3.6.1.4.1.9.9.220.1.8.1ScalarcpaeMacAuthBypassReAuthTimeoutread-writecurrentSpecifies the waiting time before reauthentication is triggered on all MAC Auth-bypass authenticated ports.
1.3.6.1.4.1.9.9.220.1.8.2ScalarcpaeMacAuthBypassReAuthEnabledread-writecurrentThe reauthentication control for all MAC Auth-bypass ports. Setting this object to 'true' causes every MAC Auth-Bypass authenticated port to reauthenticate the…
1.3.6.1.4.1.9.9.220.1.8.3ScalarcpaeMacAuthBypassViolationread-writecurrentSpecifies the action upon reception of a security violation event. restrict(1): Packets from MAC address of the device causing security violation will be dropp…
1.3.6.1.4.1.9.9.220.1.8.4ScalarcpaeMacAuthBypassShutdownTimeoutread-writecurrentSpecifies time before a port is auto-enabled after being shutdown due to a MAC Auth-bypass security violation.
1.3.6.1.4.1.9.9.220.1.8.5ScalarcpaeMacAuthBypassAuthFailTimeoutread-writecurrentSpecifies the time a MAC Auth-bypass unauthenticated port waits before trying the authentication process again.
1.3.6.1.4.1.9.9.220.1.8.6TablecpaeMacAuthBypassPortTablenot-accessiblecurrentA table of MAC Authentication Bypass (MAC Auth-Bypass) configuration and information for ports in the device.
1.3.6.1.4.1.9.9.220.1.8.6.1RowcpaeMacAuthBypassPortEntrynot-accessiblecurrentAn entry containing management information for MAC Auth-Bypass feature on a port.
1.3.6.1.4.1.9.9.220.1.8.6.1.1ColumncpaeMacAuthBypassPortEnabledread-writecurrentSpecifies whether MAC Auth-Bypass is enabled on the port.
1.3.6.1.4.1.9.9.220.1.8.6.1.2ColumncpaeMacAuthBypassPortInitializeread-writecurrentThe initialization control for this port. Setting this object to 'true' causes the MAC Auth-bypass state machine to be initialized on the port. Setting this ob…
1.3.6.1.4.1.9.9.220.1.8.6.1.3ColumncpaeMacAuthBypassPortReAuthread-writecurrentThe reauthentication control for this port. Setting this object to 'true' causes the MAC address of the device connecting to the port to be reauthenticated. Se…
1.3.6.1.4.1.9.9.220.1.8.6.1.4ColumncpaeMacAuthBypassPortMacAddressread-onlycurrentIndicates the MAC address of the device connecting to the port.
1.3.6.1.4.1.9.9.220.1.8.6.1.5ColumncpaeMacAuthBypassPortAuthStateread-onlycurrentIndicates the current state of the MAC Auth-Bypass state machine. other(1) : An unknown state. waiting(2) : Waiting to receive the MAC address that needs to be…
1.3.6.1.4.1.9.9.220.1.8.6.1.6ColumncpaeMacAuthBypassPortTermActionread-onlycurrentIndicates the termination action received from RADIUS server that will be applied on the port when the current session timeout expired. other : none of the fol…
1.3.6.1.4.1.9.9.220.1.8.6.1.7ColumncpaeMacAuthBypassSessionTimeLeftread-onlycurrentIndicates the leftover time of the current MAC Auth-Bypass session on this port.
1.3.6.1.4.1.9.9.220.1.8.6.1.8ColumncpaeMacAuthBypassPortAuthMethodread-writecurrentSpecifies the authentication method used by MAC Authentication Bypass. radius(1) : communication with authentication server is performed via RADIUS messages. e…
1.3.6.1.4.1.9.9.220.1.8.6.1.9ColumncpaeMacAuthBypassPortSessionIdread-onlycurrentIndicates the session ID of the MAC Auth-Bypass Audit session on the port. A zero length string will be returned for this object if value of the corresponding …
1.3.6.1.4.1.9.9.220.1.8.6.1.10ColumncpaeMacAuthBypassPortUrlRedirectread-onlycurrentIndicates the URL of an Audit server, provided by AAA server, to which a MAC auth-Bypass host will be redirected to when an Audit session starts off. A zero-le…
1.3.6.1.4.1.9.9.220.1.8.6.1.11ColumncpaeMacAuthBypassPortPostureTokread-onlycurrentIndicates the Posture Token assigned to the MAC Auth-Bypass host connected to this port. A zero length string will be returned for this object if value of the …
1.3.6.1.4.1.9.9.220.1.8.7ScalarcpaeMacAuthBypassAcctEnableread-writecurrentSpecifies if accounting is enabled for Mac Authentication Bypass feature on this device.
1.3.6.1.4.1.9.9.220.1.8.8ScalarcpaeMabCriticalRecoveryDelayread-writecurrentThis object specifies the critical recovery delay time for Mac Authentication Bypass in the system. A value of zero indicates that critical recovery delay for …
1.3.6.1.4.1.9.9.220.1.8.9TablecpaeMabPortIpDevTrackConfTablenot-accessiblecurrentA table of IP Device Tracking configuration for MAC Auth-Bypass interfaces in the system.
1.3.6.1.4.1.9.9.220.1.8.9.1RowcpaeMabPortIpDevTrackConfEntrynot-accessiblecurrentAn entry of MAC Auth-Bypass configuration for IP Device Tracking on an MAC Auth-Bypass capable interface.
1.3.6.1.4.1.9.9.220.1.8.9.1.1ColumncpaeMabPortIpDevTrackEnabledread-writecurrentSpecifies whether IP Device Tracking is enabled or not on this port for the corresponding MAC Auth-bypass authenticated host.
1.3.6.1.4.1.9.9.220.1.9NodecpaeWebAuth
1.3.6.1.4.1.9.9.220.1.9.1ScalarcpaeWebAuthEnabledread-writecurrentSpecifies whether Web Proxy Authentication is enabled in the system.
1.3.6.1.4.1.9.9.220.1.9.2ScalarcpaeWebAuthSessionPeriodread-writecurrentSpecifies the Web Proxy Authentication session period for the system. Session period is the time after which an Web Proxy Authenticated session is terminated.
1.3.6.1.4.1.9.9.220.1.9.3ScalarcpaeWebAuthLoginPageread-writecurrentSpecifies the customized login page for Web Proxy Authentication, in the format of an URL. A customized login page is required to support the same input fields…
1.3.6.1.4.1.9.9.220.1.9.4ScalarcpaeWebAuthLoginFailedPageread-writecurrentSpecifies the customized login-failed page for Web Proxy Authentication, in the format of an URL. Login-failed page is sent back to the client upon an authenti…
1.3.6.1.4.1.9.9.220.1.9.5ScalarcpaeWebAuthQuietPeriodread-writecurrentSpecifies the time a Web Proxy Authentication state machine will be held in 'blackListed' state after maximum authentication attempts.
1.3.6.1.4.1.9.9.220.1.9.6ScalarcpaeWebAuthMaxRetriesread-writecurrentSpecifies the maximum number of unsuccessful login attempts a user is allowed to make.
1.3.6.1.4.1.9.9.220.1.9.7TablecpaeWebAuthPortTablenot-accessiblecurrentA table of Web Proxy Authentication configuration and information for the feature capable ports in the device.
1.3.6.1.4.1.9.9.220.1.9.7.1RowcpaeWebAuthPortEntrynot-accessiblecurrentAn entry containing management information for Web Proxy Authentication feature on a port.
1.3.6.1.4.1.9.9.220.1.9.7.1.1ColumncpaeWebAuthPortEnabledread-writecurrentSpecifies whether Web Proxy Authentication is enabled on the port.
1.3.6.1.4.1.9.9.220.1.9.7.1.2ColumncpaeWebAuthPortInitializeread-writecurrentThe initialization control for this port. Setting this object to 'true' causes Web Proxy Authentication state machine to be initialized for all the hosts conne…
1.3.6.1.4.1.9.9.220.1.9.7.1.3ColumncpaeWebAuthPortAaaFailPolicyread-writecurrentSpecifies the policy name to be applied on the port when the corresponding cpaeWebAuthHostState is 'aaaFail'. The specified policy name must either be an exist…
1.3.6.1.4.1.9.9.220.1.9.7.1.4ColumncpaeWebAuthPortIpDevTrackEnabledread-writecurrentSpecifies whether IP Device Tracking is enabled or not on this port for the corresponding Web Proxy authenticated host.
1.3.6.1.4.1.9.9.220.1.9.8TablecpaeWebAuthHostTablenot-accessiblecurrentA table of Web Proxy Authentication information for hosts currently managed by the feature. An entry is added to the table when a host is detected and Web Prox…
1.3.6.1.4.1.9.9.220.1.9.8.1RowcpaeWebAuthHostEntrynot-accessiblecurrentAn entry containing management information for Web Proxy Authentication feature on a host.
1.3.6.1.4.1.9.9.220.1.9.8.1.1ColumncpaeWebAuthHostAddrTypenot-accessiblecurrentIndicates the Internet address type for the host.
1.3.6.1.4.1.9.9.220.1.9.8.1.2ColumncpaeWebAuthHostAddressnot-accessiblecurrentIndicates the Internet address for the host. The type of this address is determined by the value of cpaeWebAuthHostAddrType.
1.3.6.1.4.1.9.9.220.1.9.8.1.3ColumncpaeWebAuthAaaSessionPeriodread-onlycurrentIndicates the session period for a Web Proxy Authenticated session on this host, supplied by the AAA server. If value of this object is none zero, it will take…
1.3.6.1.4.1.9.9.220.1.9.8.1.4ColumncpaeWebAuthHostSessionTimeLeftread-onlycurrentIndicates the leftover time of the current Web Proxy Authenticated session for this host.
1.3.6.1.4.1.9.9.220.1.9.8.1.5ColumncpaeWebAuthHostStateread-onlycurrentIndicates the current state of the Web Proxy Authentication state machine. initialize : Initial state of the Web Proxy Authentication state machine. connecting…
1.3.6.1.4.1.9.9.220.1.9.8.1.6ColumncpaeWebAuthHostInitializeread-writecurrentThe initialization control for this host. Setting this object to 'true' causes Web Proxy Authentication state machine to be initialized for the host. Setting t…
1.3.6.1.4.1.9.9.220.1.9.9ScalarcpaeWebAuthCriticalRecoveryDelayread-writecurrentThis object specifies the critical recovery delay time for Web Proxy Authentication in the system. A value of zero indicates that critical recovery delay for W…
1.3.6.1.4.1.9.9.220.1.9.10ScalarcpaeWebAuthUnAuthStateTimeoutread-writecurrentThe authentication timeout period for Web Proxy Authentication. Once a host enters 'initialize' state as indicated by its corresponding cpaeWebAuthHostState, s…
1.3.6.1.4.1.9.9.220.1.10TablecpaeAuthConfigTablenot-accessiblecurrentA table containing the configuration objects for the Authenticator PAE associated with each port. An entry appears in this table for each PAE port that may aut…
1.3.6.1.4.1.9.9.220.1.10.1RowcpaeAuthConfigEntrynot-accessiblecurrentAn entry containing additional management information applicable to a particular Authenticator PAE.
1.3.6.1.4.1.9.9.220.1.10.1.1ColumncpaeAuthReAuthPeriodSrcAdminread-writecurrentSpecifies the source of the reAuthPeriod constant to be used by the Reauthentication Timer state machine.
1.3.6.1.4.1.9.9.220.1.10.1.2ColumncpaeAuthReAuthPeriodSrcOperread-onlycurrentIndicates the source of the reAuthPeriod constant currently in use by the Reauthentication Timer state machine.
1.3.6.1.4.1.9.9.220.1.10.1.3ColumncpaeAuthReAuthPeriodOperread-onlycurrentIndicates the operational reauthentication period for this port.
1.3.6.1.4.1.9.9.220.1.10.1.4ColumncpaeAuthTimeToNextReAuthread-onlycurrentIndicates the leftover time of the current session for this port.
1.3.6.1.4.1.9.9.220.1.10.1.5ColumncpaeAuthReAuthActionread-onlycurrentIndicates the reauthentication action for this port. terminate: Session will be terminated, with the corresponding Authenticator PAE state machine transits to …
1.3.6.1.4.1.9.9.220.1.10.1.6ColumncpaeAuthReAuthMaxread-writecurrentThis object specifies the number of reauthentication attempts that are permitted before the port becomes unauthorized. The value of this object is used as the …
1.3.6.1.4.1.9.9.220.1.10.1.7ColumncpaeAuthIabEnabledread-writecurrentSpecifies whether the PAE port is declared as Inaccessible Authentication Bypass (IAB). IAB ports will be granted network access via the administrative configu…
1.3.6.1.4.1.9.9.220.1.10.1.8ColumncpaeAuthPaeStateread-onlycurrentIndicates the current value of the Authenticator PAE state machine on the port.
1.3.6.1.4.1.9.9.220.1.11TablecpaeHostInfoTablenot-accessiblecurrentA table containing 802.1x authentication information for hosts connecting to PAE ports in the system.
1.3.6.1.4.1.9.9.220.1.11.1RowcpaeHostInfoEntrynot-accessiblecurrentAn entry appears in the table for each 802.1x capable host connecting to an PAE port, providing its authentication information.
1.3.6.1.4.1.9.9.220.1.11.1.1ColumncpaeHostInfoHostIndexnot-accessiblecurrentAn arbitrary index assigned by the agent to identify the host.
1.3.6.1.4.1.9.9.220.1.11.1.2ColumncpaeHostInfoMacAddressread-onlycurrentIndicates the Mac Address of the host.
1.3.6.1.4.1.9.9.220.1.11.1.3ColumncpaeHostInfoPostureTokenread-onlyobsoleteIndicates the posture token assigned to the host. This object has been obsoleted and replaced by cpaeHostPostureTokenStr.
1.3.6.1.4.1.9.9.220.1.11.1.4ColumncpaeHostInfoUserNameread-onlycurrentIndicates the name of the authenticated user on the host.
1.3.6.1.4.1.9.9.220.1.11.1.5ColumncpaeHostInfoAddrTyperead-onlycurrentIndicates the type of Internet address of the host.
1.3.6.1.4.1.9.9.220.1.11.1.6ColumncpaeHostInfoAddrread-onlycurrentIndicates the Internet address of the host. The type of this address is determined by the value of cpaeHostInfoAddrType object.
1.3.6.1.4.1.9.9.220.1.11.1.7ColumncpaeHostPostureTokenStrread-onlycurrentIndicates the posture token assigned to the host.
1.3.6.1.4.1.9.9.220.1.11.1.8ColumncpaeHostUrlRedirectionread-onlycurrentIndicates the URL-redirection assigned for this host by AAA server.
1.3.6.1.4.1.9.9.220.1.11.1.9ColumncpaeHostAuthPaeStateread-onlycurrentIndicates the current value of the Authenticator PAE state machine for the host.
1.3.6.1.4.1.9.9.220.1.11.1.10ColumncpaeHostBackendStateread-onlycurrentIndicates the current state of the Backend Authentication state machine of the host.
1.3.6.1.4.1.9.9.220.1.11.1.11ColumncpaeHostSessionIdread-onlycurrentA unique identifier of the 802.1x session.
1.3.6.1.4.1.9.9.220.1.12ScalarcpaePortEapolTestLimitsread-onlycurrentIndicates the maximum number of entries allowed in cpaePortEapolTestTable.
1.3.6.1.4.1.9.9.220.1.13TablecpaePortEapolTestTablenot-accessiblecurrentA table for testing EAPOL (Extensible Authentication Protocol Over LAN) capable information of hosts connecting to PAE ports in the device.
1.3.6.1.4.1.9.9.220.1.13.1RowcpaePortEapolTestEntrynot-accessiblecurrentAn entry containing EAPOL capable information for hosts connecting to a PAE port.
1.3.6.1.4.1.9.9.220.1.13.1.1ColumncpaePortEapolTestResultread-onlycurrentIndicates the test result of whether there is EAPOL supporting host connecting to the port. inProgress: the test is in progress. notCapable: there is no EAPOL …
1.3.6.1.4.1.9.9.220.1.13.1.2ColumncpaePortEapolTestStatusread-createcurrentThis object is used to manage the creation, and deletion of rows in the table. An entry can be created by setting the instance value of this object to 'createA…
1.3.6.1.4.1.9.9.220.1.14NodecpaeCriticalConfig
1.3.6.1.4.1.9.9.220.1.14.1ScalarcpaeCriticalEapolEnabledread-writecurrentSpecifies if the device will send an EAPOL-Success message on successful Critical Authentication for a supplicant.
1.3.6.1.4.1.9.9.220.1.14.2ScalarcpaeCriticalRecoveryDelayread-writecurrentThis object specifies the critical recovery delay time for 802.1x in the system. A value of zero indicates that Critical Authentication recovery delay for 802.…
1.3.6.1.4.1.9.9.220.1.15TablecpaePortIpDevTrackConfigTablenot-accessiblecurrentA table of IP Device Tracking configuration for PAE ports in the system.
1.3.6.1.4.1.9.9.220.1.15.1RowcpaePortIpDevTrackConfigEntrynot-accessiblecurrentAn entry of IP Device Tracking configuration on a PAE port.
1.3.6.1.4.1.9.9.220.1.15.1.1ColumncpaePortIpDevTrackEnabledread-writecurrentSpecifies if IP Device Tracking is enabled on this port for the corresponding 802.1x authenticated host.
1.3.6.1.4.1.9.9.220.1.16ScalarcpaeGlobalAuthFailMaxAttemptsread-writecurrentA global configuration to specify the maximum number of authentication attempts that should be made before a port is moved into its Auth-Fail VLAN.
1.3.6.1.4.1.9.9.220.1.17ScalarcpaeGlobalSecViolationActionread-writecurrentA global configuration to specify the action that will be applied to a PAE port upon reception of a security violation event. restrict: Packets from MAC addres…
1.3.6.1.4.1.9.9.220.1.18ScalarcpaeDot1xSuppToGuestVlanAllowedread-writecurrentSpecifies whether ports associated with 802.1x supplicants are allowed to move to Guest Vlan when they stop responding to EAPOL inquiries.
1.3.6.1.4.1.9.9.220.1.19NodecpaeSupplicantObjects
1.3.6.1.4.1.9.9.220.1.19.1TablecpaeSuppPortTablenot-accessiblecurrentA list of objects providing information and configuration for the Supplicant PAE associated with each port. This table provides additional objects for the dot1…
1.3.6.1.4.1.9.9.220.1.19.1.1RowcpaeSuppPortEntrynot-accessiblecurrentAn entry containing supplicant configuration information for a particular PAE port.
1.3.6.1.4.1.9.9.220.1.19.1.1.1ColumncpaeSuppPortCredentialProfileNameread-writecurrentSpecifies the credentials profile of the Supplicant PAE. A zero length string for this object indicates that the Supplicant PAE does not have credential profil…
1.3.6.1.4.1.9.9.220.1.19.1.1.2ColumncpaeSuppPortEapProfileNameread-writecurrentSpecifies the EAP profile of the Supplicant PAE. A zero length string for this object indicates that the Supplicant PAE does not have EAP profile.
1.3.6.1.4.1.9.9.220.1.19.2TablecpaeSuppHostInfoTablenot-accessiblecurrentA list of dot1x supplicants in the system.
1.3.6.1.4.1.9.9.220.1.19.2.1RowcpaeSuppHostInfoEntrynot-accessiblecurrentAn entry containing dot1x supplicant information for a supplicant on a particular PAE port in the system.
1.3.6.1.4.1.9.9.220.1.19.2.1.1ColumncpaeSuppHostInfoSuppIndexnot-accessiblecurrentAn arbitrary index assigned by the agent to identify the supplicant.
1.3.6.1.4.1.9.9.220.1.19.2.1.2ColumncpaeSuppHostAuthMacAddressread-onlycurrentIndicates the MAC address of the authenticator, which authenticates the supplicant.
1.3.6.1.4.1.9.9.220.1.19.2.1.3ColumncpaeSuppHostPaeStateread-onlycurrentIndicates the current state of the Supplicant PAE State machine.
1.3.6.1.4.1.9.9.220.1.19.2.1.4ColumncpaeSuppHostBackendStateread-onlycurrentIndicates the current state of the Supplicant Backend state machine.
1.3.6.1.4.1.9.9.220.1.19.2.1.5ColumncpaeSuppHostStatusread-onlycurrentIndicates the status of the supplicant.
1.3.6.1.4.1.9.9.220.2NodecpaeMIBConformance
1.3.6.1.4.1.9.9.220.2.1NodecpaeMIBCompliances
1.3.6.1.4.1.9.9.220.2.1.1CompliancecpaeCompliancedeprecatedThe compliance statement for devices that implement the CISCO-PAE-MIB.
1.3.6.1.4.1.9.9.220.2.1.2CompliancecpaeCompliance2deprecatedThe compliance statement for devices that implement the CISCO-PAE-MIB.
1.3.6.1.4.1.9.9.220.2.1.3CompliancecpaeCompliance3deprecatedThe compliance statement for devices that implement the CISCO-PAE-MIB.
1.3.6.1.4.1.9.9.220.2.1.4CompliancecpaeCompliance4deprecatedThe compliance statement for devices that implement the CISCO-PAE-MIB.
1.3.6.1.4.1.9.9.220.2.1.5CompliancecpaeCompliance5obsoleteThe compliance statement for devices that implement the CISCO-PAE-MIB.
1.3.6.1.4.1.9.9.220.2.1.6CompliancecpaeCompliance6deprecatedThe compliance statement for devices that implement the CISCO-PAE-MIB.
1.3.6.1.4.1.9.9.220.2.1.7CompliancecpaeCompliance7deprecatedThe compliance statement for devices that implement the CISCO-PAE-MIB.
1.3.6.1.4.1.9.9.220.2.1.8CompliancecpaeCompliance8deprecatedThe compliance statement for devices that implement the CISCO-PAE-MIB.
1.3.6.1.4.1.9.9.220.2.1.9CompliancecpaeCompliance9deprecatedThe compliance statement for devices that implement the CISCO-PAE-MIB.
1.3.6.1.4.1.9.9.220.2.1.10CompliancecpaeCompliance10read-onlycurrentThe compliance statement for devices that implement the CISCO-PAE-MIB.
1.3.6.1.4.1.9.9.220.2.2NodecpaeMIBGroups
1.3.6.1.4.1.9.9.220.2.2.1GroupcpaeMultipleHostGroupdeprecatedA collection of objects that provide the multiple host configuration information for a PAE port. These are additional to the IEEE Std 802.1x PAE MIB.
1.3.6.1.4.1.9.9.220.2.2.2GroupcpaePortEntryGroupcurrentA collection of objects that provides the port-mode configuration for a PAE port.
1.3.6.1.4.1.9.9.220.2.2.3GroupcpaeGuestVlanGroupdeprecatedA collection of objects that provides the Guest Vlan configuration information for the system.
1.3.6.1.4.1.9.9.220.2.2.4GroupcpaeGuestVlanGroup2deprecatedA collection of objects that provides the per-interface Guest Vlan configuration information for the system.
1.3.6.1.4.1.9.9.220.2.2.5GroupcpaeShutdownTimeoutGroupcurrentA collection of objects that provides the dot1x shutdown timeout configuration information for the system.
1.3.6.1.4.1.9.9.220.2.2.6GroupcpaeRadiusConfigGroupcurrentA collection of objects that provides the RADIUS configuration information for the system.
1.3.6.1.4.1.9.9.220.2.2.7GroupcpaeUserGroupGroupcurrentA collection of objects that provides the group manager information of authenticated users in the system.
1.3.6.1.4.1.9.9.220.2.2.8GroupcpaeGuestVlanGroup3currentA collection of objects that provides the per-interface Guest Vlan configuration information for the system.
1.3.6.1.4.1.9.9.220.2.2.9GroupcpaePortOperVlanGroupcurrentA collection of object(s) that provides the information about Operational Vlan for each PAE port.
1.3.6.1.4.1.9.9.220.2.2.10GroupcpaePortAuthFailVlanGroupdeprecatedA collection of object(s) that provides the Auth-Fail (Authentication Fail) Vlan configuration and Auth-Fail user information for the system.
1.3.6.1.4.1.9.9.220.2.2.11GroupcpaeNoGuestVlanNotifEnableGrpcurrentA collection of object(s) that provides control over Guest Vlan related notification(s).
1.3.6.1.4.1.9.9.220.2.2.12GroupcpaeNoAuthFailVlanNotifEnableGrpcurrentA collection of object(s) that provides control over Auth-Fail related notification(s).
1.3.6.1.4.1.9.9.220.2.2.13GroupcpaeNoGuestVlanNotifGroupcurrentA collection of notification(s) providing the information for unconfigured Guest Vlan.
1.3.6.1.4.1.9.9.220.2.2.14GroupcpaeNoAuthFailVlanNotifGroupcurrentA collection of notifications providing the information for unconfigured Auth-Fail Vlan.
1.3.6.1.4.1.9.9.220.2.2.15GroupcpaeMacAuthBypassGroupdeprecatedA collection of object(s) that provides the MAC Auth-Bypass configuration and information for the system.
1.3.6.1.4.1.9.9.220.2.2.16GroupcpaeWebAuthGroupcurrentA collection of object(s) that provides the Web Proxy Authentication configuration and information for the system.
1.3.6.1.4.1.9.9.220.2.2.17GroupcpaeAuthConfigGroupdeprecatedA collection of object(s) that provides additional configuration information about an Authenticator PAE.
1.3.6.1.4.1.9.9.220.2.2.18GroupcpaeHostInfoGroupobsoleteA collection of object(s) that provides information about an host connecting to a PAE port.
1.3.6.1.4.1.9.9.220.2.2.19GroupcpaeWebAuthAaaFailGroupcurrentA collection of object(s) that provides Inaccessible Authentication Bypass configuration and information for Web Proxy Authentication in the system.
1.3.6.1.4.1.9.9.220.2.2.20GroupcpaeMacAuthBypassGroup2currentA collection of object(s) that provides additional information of MAC Auth-bypass feature in the system.
1.3.6.1.4.1.9.9.220.2.2.21GroupcpaePortEapolTestGroupcurrentA collection of object(s) that provides information about if connecting hosts are EAPOL capable.
1.3.6.1.4.1.9.9.220.2.2.22GroupcpaeHostInfoGroup2currentA collection of object(s) that provides information about an host connecting to a PAE port.
1.3.6.1.4.1.9.9.220.2.2.23GroupcpaeMacAuthBypassGroup3currentA collection of object(s) that provides configuration for authentication method for MAC Auth-bypass feature in the system.
1.3.6.1.4.1.9.9.220.2.2.24GroupcpaePortAuthFailVlanGroup2currentA collection of object(s) that provides configuration for maximum authentication attempts for Auth-Fail Vlan feature in the system.
1.3.6.1.4.1.9.9.220.2.2.25GroupcpaeAuthConfigGroup2currentA collection of object(s) that provides additional states in the PAE state machine.
1.3.6.1.4.1.9.9.220.2.2.26GroupcpaeCriticalRecoveryDelayGroupcurrentA collection of object(s) that provides recovery delay configuration for 802.1x Critical Authentication in the system.
1.3.6.1.4.1.9.9.220.2.2.27GroupcpaeAuthConfigGroup3currentA collection of object(s) that provides configuration and information related to re-authentication of 802.1x ports in the system.
1.3.6.1.4.1.9.9.220.2.2.28GroupcpaeAuthConfigGroup4currentA collection of object(s) that provides configuration of maximum reauthentication attempts of 802.1x ports in the system.
1.3.6.1.4.1.9.9.220.2.2.29GroupcpaeAuthIabConfigGroupcurrentA collection of object(s) to enable/disable IAB feature on capable interface for the system.
1.3.6.1.4.1.9.9.220.2.2.30GroupcpaeGlobalAuthFailVlanGroupcurrentA collection of object(s) that provides global configuration and information about maximum authentication attempts for Auth-Fail Vlan feature in the system.
1.3.6.1.4.1.9.9.220.2.2.31GroupcpaeMacAuthBypassCriticalGroupcurrentA collection of object(s) that provides control over critical configuration for Mac Authentication Bypass.
1.3.6.1.4.1.9.9.220.2.2.32GroupcpaeWebAuthCriticalGroupcurrentA collection of object(s) that provides control over critical configuration for Web Proxy Authentication.
1.3.6.1.4.1.9.9.220.2.2.33GroupcpaeCriticalEapolConfigGroupcurrentA collection of object(s) that provides EAPOL configuration for 802.1x Critical Authentication in the system.
1.3.6.1.4.1.9.9.220.2.2.34GroupcpaeHostPostureTokenGroupcurrentA collection of object(s) that provides information about Posture Token of an host connecting to a PAE port.
1.3.6.1.4.1.9.9.220.2.2.35GroupcpaeMabAuditInfoGroupcurrentA collection of object(s) that provides information about MAC Auth-Bypass Audit sessions.
1.3.6.1.4.1.9.9.220.2.2.36GroupcpaeMabPortIpDevTrackConfGroupcurrentA collection of object(s) that provides configuration and information about MAC Auth-Bypass IP Device Tracking feature.
1.3.6.1.4.1.9.9.220.2.2.37GroupcpaePortIpDevTrackConfGroupcurrentA collection of object(s) that provides configuration and information about 802.1x IP Device Tracking feature.
1.3.6.1.4.1.9.9.220.2.2.38GroupcpaeHostUrlRedirectGroupcurrentA collection of object(s) that provides information about URL-redirection of 802.1x authenticated hosts.
1.3.6.1.4.1.9.9.220.2.2.39GroupcpaeWebAuthIpDevTrackingGroupcurrentA collection of object(s) that provides configuration and information about Web Proxy Authentication IP Device Tracking feature.
1.3.6.1.4.1.9.9.220.2.2.40GroupcpaeWebAuthUnAuthTimeoutGroupcurrentA collection of object(s) that provides configuration and information about Init State Timeout of Web Proxy Authentication.
1.3.6.1.4.1.9.9.220.2.2.41GroupcpaeHostInfoGroup3currentA collection of object(s) that provides user and the address information for 802.1x authenticated host.
1.3.6.1.4.1.9.9.220.2.2.42GroupcpaeGlobalSecViolationGroupcurrentA collection of object(s) that provides global configuration and information about security violation action on PAE ports in the system.
1.3.6.1.4.1.9.9.220.2.2.43GroupcpaeMacAuthBypassPortEnableGroupcurrentA collection of object(s) to enable/disable Mac Auth-Bypass on capable interfaces for the system.
1.3.6.1.4.1.9.9.220.2.2.44GroupcpaeMacAuthBypassGroup4currentA collection of object(s) that provides the MAC Auth-Bypass configuration and information for the system.
1.3.6.1.4.1.9.9.220.2.2.45GroupcpaeHostSessionIdGroupcurrentA collection of object(s) that provides session identification information for 802.1x hosts in the system.
1.3.6.1.4.1.9.9.220.2.2.46GroupcpaeHostAuthInfoGroupcurrentA collection of object(s) that provides state machines and authentication information for 802.1x authenticated hosts in the system.
1.3.6.1.4.1.9.9.220.2.2.47GroupcpaePortCapabilitiesConfigGroupcurrentA collection of object(s) that provides configuration and information about PAE functionalities of ports in the systems.
1.3.6.1.4.1.9.9.220.2.2.48GroupcpaeDot1xSuppToGuestVlanGroupcurrentA collection of object(s) that provides configuration that allows moving ports with 802.1x supplicants to Guest Vlan.
1.3.6.1.4.1.9.9.220.2.2.49GroupcpaeGuestVlanNotifEnableGroupcurrentA collection of object(s) that provides control over Guest Vlan related notification(s).
1.3.6.1.4.1.9.9.220.2.2.50GroupcpaeGuestVlanNotifGroupcurrentA collection of notifications providing information for Guest Vlan.
1.3.6.1.4.1.9.9.220.2.2.51GroupcpaeAuthFailVlanNotifEnableGrpcurrentA collection of object(s) that provides control over Auth-Fail Vlan related notification(s).
1.3.6.1.4.1.9.9.220.2.2.52GroupcpaeAuthFailVlanNotifGroupcurrentA collection of notifications providing information for Auth-Fail Vlan.
1.3.6.1.4.1.9.9.220.2.2.53GroupcpaePortAuthFailVlanConfigGroupcurrentA collection of object(s) that provides the Auth-Fail (Authentication Fail) Vlan configuration for the system.
1.3.6.1.4.1.9.9.220.2.2.54GroupcpaePortAuthFailUserInfoGroupcurrentA collection of object(s) that provides the Auth-Fail user information for the system.
1.3.6.1.4.1.9.9.220.2.2.55GroupcpaeSuppPortProfileGroupcurrentA collection of object(s) that provides Credential and EAP profiles configuration for a Supplicant PAE.
1.3.6.1.4.1.9.9.220.2.2.56GroupcpaeSuppHostInfoGroupcurrentA collection of object(s) that provides information about supplicants in the system.
Type Definitions
NameSyntaxStatusDescription
CpaeAuthStateINTEGER { other(1), initialize(2), disconnected(3), connecting(4), authenticating(5), authenticated(6), aborting(7), held(8), forceAuth(9), forceUnauth(10), guestVlan(11), authFailVlan(12), criticalAuth(13), ipAwaiting(14), policyConfig(15), authFinished(16), restart(17), authFallback(18), authCResult(19), authZSuccess(20) }currentThe Authenticator PAE state machine value. other :None of the following states. initialize :The PAE state machine is being initialized. disconnected :An explicit logoff request is received from the Supplicant, or the nu…
ReAuthPeriodSourceINTEGER { local(1), server(2), auto(3) }currentSource of the reAuthPeriod constant, used by the 802.1x Reauthentication Timer state machine. local : local configured reauthentication period specified by the object dot1xAuthReAuthPeriod will be used. server: the reau…