MIB Viewer

CM-SECURITY-MIB

85 objects
This module defines the Security MIB definitions used by the F3 (FSP150CM/CC) product lines. These are used to manage the user/authentication for CLI/GUI sessions. Copyright (C) ADVA Optical Networking.
OIDNameAccessStatusDescription
1.3.6.1.4.1.2544.1.12.10IdentitycmSecurityMIBThis module defines the Security MIB definitions used by the F3 (FSP150CM/CC) product lines. These are used to manage the user/authentication for CLI/GUI sessi…
1.3.6.1.4.1.2544.1.12.10.1NodecmSecurityObjects
1.3.6.1.4.1.2544.1.12.10.1.1ScalarcmAuthProtocolread-writecurrentRemote user authentication protocol.
1.3.6.1.4.1.2544.1.12.10.1.2ScalarcmAccessOrderread-writecurrentOrder of access for security, i.e. try 'local' first or 'remote' first.
1.3.6.1.4.1.2544.1.12.10.1.3ScalarcmAuthTyperead-writecurrentIn case of remote authentication, the chosen protocol.
1.3.6.1.4.1.2544.1.12.10.1.4ScalarcmNASIpAddressread-writecurrentIn case of remote authentication RADIUS, the Network Access Server's IP Address.
1.3.6.1.4.1.2544.1.12.10.1.5TablecmSecurityUserTablenot-accessiblecurrentA list of entries corresponding to the security users. Entries cannot be created in this table by management application action.
1.3.6.1.4.1.2544.1.12.10.1.5.1RowcmSecurityUserEntrynot-accessiblecurrentAn entry containing information applicable to a particular security user.
1.3.6.1.4.1.2544.1.12.10.1.5.1.1ColumncmSecurityUserNameread-createcurrentSecurity User Name.
1.3.6.1.4.1.2544.1.12.10.1.5.1.2ColumncmSecurityUserCommentread-createcurrentNotes on Security User.
1.3.6.1.4.1.2544.1.12.10.1.5.1.3ColumncmSecurityUserPrivLevelread-createcurrentSecurity User Privilege Level.
1.3.6.1.4.1.2544.1.12.10.1.5.1.4ColumncmSecurityUserLoginTimeoutread-createcurrentSecurity User Login Timeout.
1.3.6.1.4.1.2544.1.12.10.1.5.1.5ColumncmSecurityUserNumFailedLoginAttemptsread-onlycurrentSecurity User Number of Failed Login Attempts.
1.3.6.1.4.1.2544.1.12.10.1.5.1.6ColumncmSecurityUserLastLoginTimeread-onlycurrentSecurity User Last Login Time.
1.3.6.1.4.1.2544.1.12.10.1.5.1.7ColumncmSecurityUserLockedoutread-onlycurrentWhether the security user has been locked out.
1.3.6.1.4.1.2544.1.12.10.1.5.1.8ColumncmSecurityUserLastLockedoutTimeread-onlycurrentSecurity User Last Locked out Time.
1.3.6.1.4.1.2544.1.12.10.1.5.1.9ColumncmSecurityUserCliPagingEnableread-createcurrentWhether the security user has CLI paging enabled.
1.3.6.1.4.1.2544.1.12.10.1.5.1.10ColumncmSecurityUserRemoteUserread-onlycurrentWhether the security user is a remote user.
1.3.6.1.4.1.2544.1.12.10.1.5.1.11ColumncmSecurityUserPasswordread-createcurrentPassword of the security user. Note that this attribute is a SET only attribute.
1.3.6.1.4.1.2544.1.12.10.1.5.1.12ColumncmSecurityUserStorageTyperead-createcurrentThe type of storage configured for this entry.
1.3.6.1.4.1.2544.1.12.10.1.5.1.13ColumncmSecurityUserRowStatusread-createcurrentThe status of this row. An entry MUST NOT exist in the active state unless all objects in the entry have an appropriate value, as described in the description …
1.3.6.1.4.1.2544.1.12.10.1.5.1.14ColumncmSecurityUserActionread-writecurrentThis object provides ability to perform specific actions on security user. remove-lockout - this removes the locked out condition on the security user .
1.3.6.1.4.1.2544.1.12.10.1.5.1.15ColumncmSecurityCryptoPasswordread-createcurrentSecond level password used in connectguard configurations. This applies only to crypto users. Note that this attribute is a SET only attribute.
1.3.6.1.4.1.2544.1.12.10.1.5.1.16ColumncmSecurityUserRemoteCryptoUserread-createcurrentIndicates if a security user is a remote crypto user.
1.3.6.1.4.1.2544.1.12.10.1.6TablecmRemoteAuthServerTablenot-accessiblecurrentA list of entries corresponding to the remote authentication servers. Entries cannot be created in this table by management application action.
1.3.6.1.4.1.2544.1.12.10.1.6.1RowcmRemoteAuthServerEntrynot-accessiblecurrentAn entry containing information applicable to a particular remote authentication server.
1.3.6.1.4.1.2544.1.12.10.1.6.1.1ColumncmRemoteAuthServerIndexread-onlycurrentUnique index to address/configure a specific Remote Authentication Server.
1.3.6.1.4.1.2544.1.12.10.1.6.1.2ColumncmRemoteAuthServerEnabledread-writecurrentThis object allows enabling/disabling a Remote Authentication Server.
1.3.6.1.4.1.2544.1.12.10.1.6.1.3ColumncmRemoteAuthServerOrderread-writecurrentThis object determines the order in which the Remote Authentication Servers are accessed for security information.
1.3.6.1.4.1.2544.1.12.10.1.6.1.4ColumncmRemoteAuthServerIpAddressread-writecurrentThis object allows to specify an IP Address for the Remote Authentication Server.
1.3.6.1.4.1.2544.1.12.10.1.6.1.5ColumncmRemoteAuthServerPortread-writecurrentThis object allows to specify a Port for Remote Authentication Server.
1.3.6.1.4.1.2544.1.12.10.1.6.1.6ColumncmRemoteAuthServerNumRetriesread-writecurrentThis object allows to specify the number of retries the Remote Authentication Server must be tried for security access before giving up.
1.3.6.1.4.1.2544.1.12.10.1.6.1.7ColumncmRemoteAuthServerTimeoutread-writecurrentThis object allows to specify the timeout period for timing out a security access request to the Remote Authentication Server.
1.3.6.1.4.1.2544.1.12.10.1.6.1.8ColumncmRemoteAuthServerSecretread-writecurrentThis allows configuration of secret password for Remote Authentication Server request.
1.3.6.1.4.1.2544.1.12.10.1.6.1.9ColumncmRemoteAuthServerAccountingPortread-writecurrentThis object allows to specify a Port for RADIUS Accounting.
1.3.6.1.4.1.2544.1.12.10.1.6.1.10ColumncmRemoteAuthServerIpVersionread-writecurrentThis object describe the Ip Version.
1.3.6.1.4.1.2544.1.12.10.1.6.1.11ColumncmRemoteAuthServerIpv6Addrread-writecurrentThis object describe the Ipv6 Address.
1.3.6.1.4.1.2544.1.12.10.1.7ScalarcmSecurityPolicyStrengthread-writecurrentThis object represents the security policy strength of the system. Based on this value, the system puts additional restrictions on the user id and password rul…
1.3.6.1.4.1.2544.1.12.10.1.8ScalarcmRemoteAuthServerAccountingEnabledread-writecurrentThis object allows to enable/disable RADIUS Accounting on all authentication servers.
1.3.6.1.4.1.2544.1.12.10.1.9Tablef3UsmUserTablenot-accessiblecurrentThis table is the extension of the F3 USM User Table.
1.3.6.1.4.1.2544.1.12.10.1.9.1Rowf3UsmUserEntrynot-accessiblecurrentAn entry in the F3 USM User Table.
1.3.6.1.4.1.2544.1.12.10.1.9.1.1Columnf3UsmUserAccessTyperead-onlycurrentThis indicates the type of USM User, read-only, read-write, trap-only.
1.3.6.1.4.1.2544.1.12.10.1.10Scalarf3TacacsPrivLevelControlEnabledread-writecurrentThis object allows to enable/disable the use of ENABLE authorization control to determine the Privilege Level configured by the remote authentication server. T…
1.3.6.1.4.1.2544.1.12.10.1.11Scalarf3TacacsDefaultPrivLevelread-writecurrentThis object allows specification of the default privilege level of the TACACS+ user, when the use of ENABLE authorization control is DISABLED, i.e. f3TacacsPri…
1.3.6.1.4.1.2544.1.12.10.1.12Scalarf3NasIpv6Addrread-writecurrentThis object describe the ipv6 address.
1.3.6.1.4.1.2544.1.12.10.1.13Scalarf3SecurityTrapTyperead-writecurrentThis object provides ability to manage whether report security trap.
1.3.6.1.4.1.2544.1.12.10.1.14Scalarf3SecurityTrapInforead-onlycurrentThis object is used to describe the security trap info. This object is used only in trap and GET operation on this object will return empty string.
1.3.6.1.4.1.2544.1.12.10.1.15Tablef3PrivilegeChangeTablenot-accessiblecurrentThis table is used for Restricted User Login via NMS. This is for users with lower privileges to elevate them to higher ones for limited amount of time.
1.3.6.1.4.1.2544.1.12.10.1.15.1Rowf3PrivilegeChangeEntrynot-accessiblecurrentColumn for privilegeChangeTable.
1.3.6.1.4.1.2544.1.12.10.1.15.1.1Columnf3PrivilegeChangeIdnot-accessiblecurrentUnique index identifying a request.
1.3.6.1.4.1.2544.1.12.10.1.15.1.2Columnf3PrivilegeChangeUserNameread-onlycurrentThe name string for user authentication purposes
1.3.6.1.4.1.2544.1.12.10.1.15.1.3Columnf3PrivilegeChangeIpv4Addressread-onlycurrentIPv4 address of interface to which user's terminal is connected.
1.3.6.1.4.1.2544.1.12.10.1.15.1.4Columnf3PrivilegeChangeIpv6Addressread-onlycurrentIPv6 address of interface to which user's terminal is connected.
1.3.6.1.4.1.2544.1.12.10.1.15.1.5Columnf3PrivilegeChangeTerminalIpv4Addressread-onlycurrentSource IPv4 address of connected terminal.
1.3.6.1.4.1.2544.1.12.10.1.15.1.6Columnf3PrivilegeChangeTerminalIpv6Addressread-onlycurrentSource IPv6 address of connected terminal.
1.3.6.1.4.1.2544.1.12.10.1.15.1.7Columnf3PrivilegeChangeInterfaceread-onlycurrentInterface used by the user
1.3.6.1.4.1.2544.1.12.10.1.15.1.8Columnf3PrivilegeChangeCurrentPrivilegeread-onlycurrentCurrent privilege level of the user, who is requesting role upgrade.
1.3.6.1.4.1.2544.1.12.10.1.15.1.9Columnf3PrivilegeChangeRequestedPrivilegeread-onlycurrentPrivilege requested by user for session.
1.3.6.1.4.1.2544.1.12.10.1.15.1.10Columnf3PrivilegeChangeDurationread-onlycurrentRequested time period by user (in minutes).
1.3.6.1.4.1.2544.1.12.10.1.15.1.11Columnf3PrivilegeChangeActionread-writecurrentPrivilege request action.
1.3.6.1.4.1.2544.1.12.10.1.15.1.12Columnf3PrivilegeChangeStateread-onlycurrentPrivilege request state.
1.3.6.1.4.1.2544.1.12.10.1.15.1.13Columnf3PrivilegeChangeRemainingTimeread-onlycurrentTime remaining in session with upgrade user privilege (in seconds).
1.3.6.1.4.1.2544.1.12.10.1.15.1.14Columnf3PrivilegeChangeRemoteNameread-onlycurrentThe name string for Radius/Tacacs authentication purposes.
1.3.6.1.4.1.2544.1.12.10.1.16Scalarf3UserPrivMgmtControlread-writecurrentThis object is used to enable/disable User Privilege Management.
1.3.6.1.4.1.2544.1.12.10.1.17Scalarf3UserPrivRspTimeoutread-writecurrentThis object is used to set response timeout for user privilege upgrade request in minutes.
1.3.6.1.4.1.2544.1.12.10.2NodecmSecurityConformance
1.3.6.1.4.1.2544.1.12.10.2.1NodecmSecurityCompliances
1.3.6.1.4.1.2544.1.12.10.2.1.1CompliancecmSecurityCompliancecurrentDescribes the requirements for conformance to the CM Security group.
1.3.6.1.4.1.2544.1.12.10.2.2NodecmSecurityGroups
1.3.6.1.4.1.2544.1.12.10.2.2.1GroupcmSecurityObjectGroupcurrentA collection of objects used to manage the CM Security group.
1.3.6.1.4.1.2544.1.12.10.2.2.2GroupcmSecurityNotifGroupcurrentA collection of notifications used in the CM Security group.
1.3.6.1.4.1.2544.1.12.10.3NodecmSecurityNotifications
1.3.6.1.4.1.2544.1.12.10.3.1Notificationf3SecurityTrapcurrentThis is security trap. Security traps are reported according to value of f3SecurityTrapType object.
1.3.6.1.4.1.2544.1.12.10.3.2Notificationf3PrivilegeChangeTrapcurrentThis trap is sent every time a privilege change request is changed (added, modified, removed).
Type Definitions
NameSyntaxStatusDescription
CmRemoteAuthOrderINTEGER { first (1), second (2), third (3) }currentEnumerations for order for remote authentication access. first - first to access the remote authentication, second - second to access the remote authentication, third - third to access the remote authentication.
CmRemoteAuthProtocolINTEGER { none (1), radius (2), tacacs (3) }currentEnumerations for remote authentication protocol. none - No remote authentication protocol, radius - RADIUS (Remote Authentication Dial-In User Service), tacacs - TACACS+(Terminal Access Controller Access Control System).
CmSecurityAccessOrderINTEGER { local (1), remote (2) }currentEnumerations for order for security access. local - Local database for user/security validation, remote - Remote protocol for user/security validation.
CmSecurityAuthTypeINTEGER { pap (1), chap (2) }currentEnumerations for remote authentication protocol types. pap - Password Authentication Protocol, chap - Challenge-Handshake Authentication Protocol.
CmSecurityPolicyStrengthINTEGER { low (1), medium (2), high (3) }currentEnumerations for security policy strength low - Low Security Policy, medium - Medium Security Policy, high - High Security Policy.
CmSecurityPrivLevelINTEGER { not-applicable(0), retrieve (1), maintenance (2), provisioning (3), superuser (4), testuser (5), cryptouser (6), netconf (7) }currentEnumerations for Security Privilege Level. retrieve - Retrieve Privilege Level (can only VIEW management information), maintenance - Maintenance Privilege Level (can VIEW management, as well as perform maintenance opera…
PrivilegeRequestActionINTEGER { undefined(0), none(1), approve(2), deny(3), cancel(4) }currentPrivilege request action.
PrivilegeRequestStateINTEGER { none(1), requestSent(2), requestCanceled(3), requestApproved(4), requestDenied(5), requestTimeout(6), accessExpired(7), accessCanceled(8) }currentPrivilege request state.
SecurityUserActionINTEGER { not-applicable(0), remove-lockout(1) }currentProvides ability to manage security users.
SnmpSecurityTrapTypeINTEGER { all(1), loginFailed(2), disabled(3) }currentProvides ability to manage security traps. all - trap is reported when user logs in, logs out or is locked out loginFailed - trap is reported only when user failed to log in disabled - security traps are disabled.
UsmUserAccessTypeINTEGER { read-only (1), read-write (2), trap-only (3) }currentEnumerations for type of USM User read-only - Read only, read-write - Read write , trap-only - Trap Only.