FEC-IPSEC-MIB
475 objects
Vendor specific Management Information for the IPSec Subsystem
Imported Objects
| BINTEC-MIB MISSING | BitValue Date HexValue ipsec |
| INET-ADDRESS-MIB | InetAddressIPv6 |
| SNMPv2-CONF | MODULE-COMPLIANCE NOTIFICATION-GROUP OBJECT-GROUP |
| SNMPv2-SMI | Counter32 Counter64 enterprises IpAddress mib-2 MODULE-IDENTITY NOTIFICATION-TYPE OBJECT-TYPE snmpModules TimeTicks Unsigned32 |
| SNMPv2-TC | DisplayString TestAndIncr TimeStamp |
| OID | Name | Access | Status | Description |
|---|---|---|---|---|
| 1.3.6.1.4.1.272.4.26.1 | NodeipsecGlobals | |||
| 1.3.6.1.4.1.272.4.26.1.1 | ScalaripsecGlobPeerIndex | read-only | current | Index of first IPsec peer in ipsecPeerTable. If this object is set to a Value <= 0, IPSec is switched explicitly off. If the peer referenced by this object doe… |
| 1.3.6.1.4.1.272.4.26.1.2 | ScalaripsecGlobDefaultAuthMethod | read-only | current | |
| 1.3.6.1.4.1.272.4.26.1.3 | ScalaripsecGlobDefaultCertificate | read-only | current | The index of the default certificate in the certTable used for local authentication for ike keyed rules with non pre-shared-key authentication. This may be ove… |
| 1.3.6.1.4.1.272.4.26.1.4 | ScalaripsecGlobDefaultLocalId | read-only | current | The default ID used for local authentication for ike keyed rules. If this is an empty or invaid id string one of the subject alternative names or the subject n… |
| 1.3.6.1.4.1.272.4.26.1.5 | ScalaripsecGlobDefaultIpsecProposal | read-only | current | Index of default ipsec proposal used for traffic entries with empty ipsec proposal, defined for peers with empty default ipsec proposal. |
| 1.3.6.1.4.1.272.4.26.1.6 | ScalaripsecGlobDefaultIkeProposal | read-only | current | Index of default ike proposal used for peers with empty default ike proposal. |
| 1.3.6.1.4.1.272.4.26.1.7 | ScalaripsecGlobDefaultIpsecLifeTime | read-only | current | Index of default lifetime for ike SA's in ipsecLifeTimeTable. This lifetime is used, when there is no valid lifetime entry specified for an IPsec peer entry. |
| 1.3.6.1.4.1.272.4.26.1.8 | ScalaripsecGlobDefaultIkeLifeTime | read-only | current | This object specifies an index in the ipsecLifeTimeTable with the default lifetime settings used for IKE SA's. This lifetime is used whenever there is no valid… |
| 1.3.6.1.4.1.272.4.26.1.9 | ScalaripsecGlobDefaultIkeGroup | read-only | current | Index of default IKE group used if no IKE group is defined for a peer. Possible values: 1 (768 bit MODP), 2 (1024 bit MODP), 5 (1536 bit MODP). |
| 1.3.6.1.4.1.272.4.26.1.10 | ScalaripsecGlobMaxSysLogLevel | read-write | current | Maximum level for syslog messages issued by IPSec. All messages with a level higher than this value are suppressed, independently from other global syslog leve… |
| 1.3.6.1.4.1.272.4.26.1.11 | ScalaripsecGlobDefaultGranularity | read-only | current | |
| 1.3.6.1.4.1.272.4.26.1.12 | ScalaripsecGlobDefaultPh1Mode | read-only | current | |
| 1.3.6.1.4.1.272.4.26.1.13 | ScalaripsecGlobDefaultPfsGroup | read-only | current | This object specifies the PFS group to use. PFS is done only for phase 2, i.e. the Phase 1 SAs are not deleted after phase 2 negotiation is completed. Note how… |
| 1.3.6.1.4.1.272.4.26.1.20 | ScalaripsecGlobIkePort | read-write | current | This object specifies the port the IKE key management service listens to. |
| 1.3.6.1.4.1.272.4.26.1.21 | ScalaripsecGlobMaxRetries | read-write | current | This object specifies the maximum number of retries sent by IKE for one message. |
| 1.3.6.1.4.1.272.4.26.1.22 | ScalaripsecGlobRetryTimeout0milli | read-write | current | This object specifies the period of time in milliseconds before an IKE message is repeated for the first time if the answer is missing. After each retry, this … |
| 1.3.6.1.4.1.272.4.26.1.23 | ScalaripsecGlobRetryTimeoutMaxsec | read-write | current | This object specifies the maximum period of time in seconds before an IKE message is repeated if the answer is missing. The retry timeout is not increased beyo… |
| 1.3.6.1.4.1.272.4.26.1.24 | ScalaripsecGlobMaxNegotiationTimeoutsec | read-write | current | This object specifies the maximum number of seconds after which a negotiation is canceled if it is not finished. |
| 1.3.6.1.4.1.272.4.26.1.25 | ScalaripsecGlobMaxIkeSas | read-write | current | This object specifies the maximum number of simultaneous ISAKMP Security associations allowed. If this limit is reached, the entries are removed from the datab… |
| 1.3.6.1.4.1.272.4.26.1.29 | ScalaripsecGlobIgnoreCrPayloads | read-write | current | |
| 1.3.6.1.4.1.272.4.26.1.30 | ScalaripsecGlobNoCrPayloads | read-write | current | |
| 1.3.6.1.4.1.272.4.26.1.31 | ScalaripsecGlobNoKeyHashPayloads | read-write | current | |
| 1.3.6.1.4.1.272.4.26.1.32 | ScalaripsecGlobNoCrls | read-write | current | |
| 1.3.6.1.4.1.272.4.26.1.33 | ScalaripsecGlobSendFullCertChains | read-write | current | |
| 1.3.6.1.4.1.272.4.26.1.34 | ScalaripsecGlobTrustIcmpMsg | read-write | current | |
| 1.3.6.1.4.1.272.4.26.1.35 | ScalaripsecGlobSpiSize | read-write | current | A compatibility flag that specifies the length of the SPI in bytes, which is used when an ISAKMP SA SPI (Cookie) is sent to the remote peer. This field takes e… |
| 1.3.6.1.4.1.272.4.26.1.36 | ScalaripsecGlobZeroIsakmpCookies | read-write | current | |
| 1.3.6.1.4.1.272.4.26.1.37 | ScalaripsecGlobMaxKeyLength | read-write | current | This object specifies the maximum length of an encryption key (in bits) that is accepted from the remote end. This limit prevents denial of service attacks whe… |
| 1.3.6.1.4.1.272.4.26.1.38 | ScalaripsecGlobNoInitialContact | read-write | current | |
| 1.3.6.1.4.1.272.4.26.1.39 | ScalaripsecGlobIkeProfile | read-write | current | This object specifies the default IKE (phase 1) profile to use. |
| 1.3.6.1.4.1.272.4.26.1.40 | ScalaripsecGlobIpsecProfile | read-write | current | This object specifies the default IPSec (phase 2) profile to use. |
| 1.3.6.1.4.1.272.4.26.1.41 | ScalaripsecGlobEnabled | read-write | current | Enables/disables IPSec globally. |
| 1.3.6.1.4.1.272.4.26.1.42 | ScalaripsecGlobBlockTimeout | read-write | current | For peers with nonzero block time, the value of this object is used instead of ipsecGlobMaxNegotiationTimeoutSec. |
| 1.3.6.1.4.1.272.4.26.1.43 | ScalaripsecGlobDPDIdleThreshold | read-write | current | The minimum idle time period after which a dpd request is sent. |
| 1.3.6.1.4.1.272.4.26.1.44 | ScalaripsecGlobDPDMaxRetries | read-write | current | The number of DPD retries sent before a peer is considered dead. |
| 1.3.6.1.4.1.272.4.26.1.45 | ScalaripsecGlobDPDRetryTimeout | read-write | current | The number of seconds between retries. |
| 1.3.6.1.4.1.272.4.26.1.46 | ScalaripsecGlobIkev2Enabled | read-write | current | Enables/disables IKEv2 globally. |
| 1.3.6.1.4.1.272.4.26.3 | TableipsecSaTable | not-accessible | current | This table contains the list of currently active IPSec security associations. |
| 1.3.6.1.4.1.272.4.26.3.1 | RowipsecSaEntry | not-accessible | current | This object contains an IPSec security association. |
| 1.3.6.1.4.1.272.4.26.3.1.1 | ColumnipsecSaIndex | read-only | current | A unique index for this entry. |
| 1.3.6.1.4.1.272.4.26.3.1.3 | ColumnipsecSaState | read-only | current | The current state of the security association Possible values: alive(1), expired(2), negotiating(4), established(5) rekeyed. |
| 1.3.6.1.4.1.272.4.26.3.1.5 | ColumnipsecSaDir | read-only | current | |
| 1.3.6.1.4.1.272.4.26.3.1.6 | ColumnipsecSaMode | read-only | current | |
| 1.3.6.1.4.1.272.4.26.3.1.7 | ColumnipsecSaSecProto | read-only | current | |
| 1.3.6.1.4.1.272.4.26.3.1.17 | ColumnipsecSaSpi | read-only | current | The Security Parameters Index of this SA. |
| 1.3.6.1.4.1.272.4.26.3.1.18 | ColumnipsecSaAuthAlg | read-only | current | |
| 1.3.6.1.4.1.272.4.26.3.1.19 | ColumnipsecSaEncAlg | read-only | current | |
| 1.3.6.1.4.1.272.4.26.3.1.20 | ColumnipsecSaCompAlg | read-only | current | |
| 1.3.6.1.4.1.272.4.26.3.1.21 | ColumnipsecSaAuthKeyLen | read-only | current | The length in bytes of the key used for authentication, if any. |
| 1.3.6.1.4.1.272.4.26.3.1.22 | ColumnipsecSaEncKeyLen | read-only | current | The length in bytes of the key used for encryption, if any. |
| 1.3.6.1.4.1.272.4.26.3.1.33 | ColumnipsecSaReplayErrors | read-only | current | The number of replayed packets detected for this SA. |
| 1.3.6.1.4.1.272.4.26.3.1.34 | ColumnipsecSaRecvErrors | read-only | current | The number of receive errors (replayed packets not counted) detected for this SA. |
| 1.3.6.1.4.1.272.4.26.3.1.35 | ColumnipsecSaDecryptErrors | read-only | current | The number of decryption errors (ESP only) detected for this SA. |
| 1.3.6.1.4.1.272.4.26.3.1.39 | ColumnipsecSaBundle | read-only | current | unique id of SA-bundle within this SA is used. |
| 1.3.6.1.4.1.272.4.26.3.1.40 | ColumnipsecSaBundleNesting | read-only | current | place of SA within SA-Bundle. |
| 1.3.6.1.4.1.272.4.26.3.1.45 | ColumnipsecSaSpiSize | read-only | current | The size of the SPI in bytes. |
| 1.3.6.1.4.1.272.4.26.3.1.64 | ColumnipsecSaEncKey | not-accessible | current | |
| 1.3.6.1.4.1.272.4.26.3.1.65 | ColumnipsecSaAuthKey | not-accessible | current | |
| 1.3.6.1.4.1.272.4.26.3.1.66 | ColumnipsecSaIkeMajVersion | read-only | current | The IKE major version number. |
| 1.3.6.1.4.1.272.4.26.3.1.67 | ColumnipsecSaIkeMinVersion | read-only | current | The IKE minor version number. |
| 1.3.6.1.4.1.272.4.26.4 | TableikeSaTable | not-accessible | current | This table contains the list of currently active IKE security associations. |
| 1.3.6.1.4.1.272.4.26.4.1 | RowikeSaEntry | not-accessible | current | This object contains an IKE security association. |
| 1.3.6.1.4.1.272.4.26.4.1.1 | ColumnikeSaIndex | read-only | current | A unique index for this entry. |
| 1.3.6.1.4.1.272.4.26.4.1.3 | ColumnikeSaState | read-write | current | |
| 1.3.6.1.4.1.272.4.26.4.1.4 | ColumnikeSaXchType | read-only | current | |
| 1.3.6.1.4.1.272.4.26.4.1.5 | ColumnikeSaAuthMethod | read-only | current | |
| 1.3.6.1.4.1.272.4.26.4.1.7 | ColumnikeSaRole | read-only | current | |
| 1.3.6.1.4.1.272.4.26.4.1.8 | ColumnikeSaLocalId | read-only | current | The local ID used for authentication. |
| 1.3.6.1.4.1.272.4.26.4.1.9 | ColumnikeSaRemoteId | read-only | current | The remote ID used for authentication. |
| 1.3.6.1.4.1.272.4.26.4.1.10 | ColumnikeSaLocalIp | read-only | current | The local IP address used in the IKE communication. |
| 1.3.6.1.4.1.272.4.26.4.1.11 | ColumnikeSaRemoteIp | read-only | current | The remote IP address used in the IKE communication. |
| 1.3.6.1.4.1.272.4.26.4.1.12 | ColumnikeSaCookieI | read-only | current | The cookie of the initiator. |
| 1.3.6.1.4.1.272.4.26.4.1.13 | ColumnikeSaCookieR | read-only | current | The cookie of the responder. |
| 1.3.6.1.4.1.272.4.26.4.1.15 | ColumnikeSaNumCerts | read-only | current | The number of certificates received from the remote side when negotiating this SA. |
| 1.3.6.1.4.1.272.4.26.4.1.16 | ColumnikeSaNumNegotiations | read-only | current | This object specifies the number of currently active negotiations for this SA. |
| 1.3.6.1.4.1.272.4.26.4.1.17 | ColumnikeSaBytes | read-only | current | Number of bytes transmitted using this SA. |
| 1.3.6.1.4.1.272.4.26.4.1.18 | ColumnikeSaMajVersion | read-only | current | The IKE major version number. |
| 1.3.6.1.4.1.272.4.26.4.1.19 | ColumnikeSaMinVersion | read-only | current | The IKE minor version number. |
| 1.3.6.1.4.1.272.4.26.4.1.20 | ColumnikeSaPeerIndex | read-only | current | The index of the peer for which this SA was created. |
| 1.3.6.1.4.1.272.4.26.4.1.21 | ColumnikeSaHeartbeatsEnabled | read-only | current | |
| 1.3.6.1.4.1.272.4.26.4.1.22 | ColumnikeSaHeartbeatsSent | read-only | current | Number of Heartbeats sent over this SA. |
| 1.3.6.1.4.1.272.4.26.4.1.23 | ColumnikeSaHeartbeatsReceived | read-only | current | Number of Heartbeats received over this SA. |
| 1.3.6.1.4.1.272.4.26.4.1.24 | ColumnikeSaCreated | read-only | current | Time the SA was created. |
| 1.3.6.1.4.1.272.4.26.4.1.25 | ColumnikeSaLastUsed | read-only | current | Time the SA was used last. |
| 1.3.6.1.4.1.272.4.26.4.1.26 | ColumnikeSaEncAlg | read-only | current | The encryption algorithm used. |
| 1.3.6.1.4.1.272.4.26.4.1.27 | ColumnikeSaHashAlg | read-only | current | The hash algorithm used. |
| 1.3.6.1.4.1.272.4.26.4.1.28 | ColumnikeSaPrfAlg | read-only | current | The hash algorithm used for the pseudo random function. |
| 1.3.6.1.4.1.272.4.26.4.1.29 | ColumnikeSaExpires | read-only | current | Time the SA will expire. |
| 1.3.6.1.4.1.272.4.26.4.1.30 | ColumnikeSaLocalPort | read-only | current | Local port currently used for the SA. |
| 1.3.6.1.4.1.272.4.26.4.1.31 | ColumnikeSaRemotePort | read-only | current | Remote port currently used for the SA. |
| 1.3.6.1.4.1.272.4.26.4.1.32 | ColumnikeSaXauthType | read-only | current | This object displayes whether XAUTH is used or not after complete establishment of the SA. If XAUTH is used then the type of the extended authentication is dis… |
| 1.3.6.1.4.1.272.4.26.4.1.33 | ColumnikeSaXauthUser | read-only | current | User name used for Extended Authentication. |
| 1.3.6.1.4.1.272.4.26.5 | TableipsecPeerTable | not-accessible | current | This table contains the list of IPSec peers. |
| 1.3.6.1.4.1.272.4.26.5.1 | RowipsecPeerEntry | not-accessible | current | This object contains the description of an IPSec peer. |
| 1.3.6.1.4.1.272.4.26.5.1.1 | ColumnipsecPeerIndex | read-only | current | A unique index identifying this entry. |
| 1.3.6.1.4.1.272.4.26.5.1.3 | ColumnipsecPeerDescription | read-write | current | An optional description for this peer. |
| 1.3.6.1.4.1.272.4.26.5.1.5 | ColumnipsecPeerPeerIds | read-write | current | The IDs of the peer which are accepted for authentication. Syntax: - X500 distinguished name: <obj-name=obj-value, obj-ID=obj-value, ...> - IPV4-Address: |123.… |
| 1.3.6.1.4.1.272.4.26.5.1.8 | ColumnipsecPeerLocalAddress | read-write | current | The local address used for IPSec encrypted packets. |
| 1.3.6.1.4.1.272.4.26.5.1.11 | ColumnipsecPeerTrafficList | read-write | current | This object specifies the first entry of possibly a chain of traffic entries from the ipsecTrafficTable which should be protected with IPSec using this peer. |
| 1.3.6.1.4.1.272.4.26.5.1.14 | ColumnipsecPeerDynamicAddress | read-write | current | The IP-address of the peer. This object may contain either an IP address or a domain name. |
| 1.3.6.1.4.1.272.4.26.5.1.15 | ColumnipsecPeerVirtualInterface | read-write | current | This object specifies if a virtual interface should be created for this peer. If set to enabled, all traffic routed towards this peer will be protected. The tr… |
| 1.3.6.1.4.1.272.4.26.5.1.16 | ColumnipsecPeerStartMode | read-write | current | |
| 1.3.6.1.4.1.272.4.26.5.1.21 | ColumnipsecPeerPreSharedKey | read-write | current | The pre-shared-key used with this peer, if pre-shared-keys are used for authentication. This field serves only as an input field and its contents are replaced … |
| 1.3.6.1.4.1.272.4.26.5.1.45 | ColumnipsecPeerIsdnCB | read-write | current | Switch for turning ISDN call back feature on and off specifically for peer. Default value is disabled. |
| 1.3.6.1.4.1.272.4.26.5.1.47 | ColumnipsecPeerPriority | read-write | current | Defines the matching priority. |
| 1.3.6.1.4.1.272.4.26.5.1.48 | ColumnipsecPeerIkeProfile | read-write | current | When ipsecPeerIkeVersion is set to ikev1 this is an index from the ikeProfileTable containing a special phase 1 profile to use for this peer. When ipsecPeerIke… |
| 1.3.6.1.4.1.272.4.26.5.1.49 | ColumnipsecPeerIpsecProfile | read-write | current | The index from the ipsecProfileTable containing a special phase 2 profile to use for this peer. |
| 1.3.6.1.4.1.272.4.26.5.1.50 | ColumnipsecPeerAdminStatus | read-write | current | Peer administrative state. |
| 1.3.6.1.4.1.272.4.26.5.1.63 | ColumnipsecPeerPreSharedKeyData | not-accessible | current | Field used for storing the pre-shared-key permanently. |
| 1.3.6.1.4.1.272.4.26.5.1.66 | ColumnipsecPeerIsdnCBMode | read-write | current | Define callback mode. The following modes are defined: compat(1) auto(2) auto-d(3) d(4) db(5) b(6) Default value for that variable is compat(1). |
| 1.3.6.1.4.1.272.4.26.5.1.67 | ColumnipsecPeerIsdnCBDChanMode | read-write | current | Define callback D channel mode. The following modes are defined: llc(1) element only subaddr(2) element only llc-and-subaddr(3) information elements llc-subadd… |
| 1.3.6.1.4.1.272.4.26.5.1.73 | ColumnipsecPeerType | read-write | current | |
| 1.3.6.1.4.1.272.4.26.5.1.78 | ColumnipsecPeerDynAddrPoolId | read-write | current | Identifier of Dynamic Address Pool if IP address is assigned via IKE Configuration Method. A value of -1 means that no Pool is assigned. |
| 1.3.6.1.4.1.272.4.26.5.1.79 | ColumnipsecPeerDynAddrLocalIp | read-write | current | The local IP address used in the IKE communication when remote IP address is taken from IP address pool. |
| 1.3.6.1.4.1.272.4.26.5.1.80 | ColumnipsecPeerXauthProfile | read-write | current | The index from the xauthProfileTable containing a special XAUTH profile to use for this peer. A value of 0 means that no XAUTH profile is assigned. |
| 1.3.6.1.4.1.272.4.26.5.1.81 | ColumnipsecPeerDynAddrRole | read-write | current | Determines if IKE Config Mode is used and which role is performed: none(1), client(2) server(3) In server role ipsecPeerDynAddrPoolId defines IP address pool t… |
| 1.3.6.1.4.1.272.4.26.5.1.82 | ColumnipsecPeerIkeVersion | read-write | current | Indicates the major version of IKE protocol to use. If set to ikev1 the value of ipsecPeerIkeProfile is used as index into ikeProfileTable. If set to ikev2 the… |
| 1.3.6.1.4.1.272.4.26.5.1.83 | ColumnipsecPeerLocalId | read-write | current | The local ID used for authentication with this profile. Syntax: - X500 distinguished name: <obj-name=obj-value, obj-ID=obj-value, ...> - IPV4-Address: |123.456… |
| 1.3.6.1.4.1.272.4.26.5.1.84 | ColumnipsecPeerAuthMethod | read-write | current | This object specifies the authentication method used by default. If the ipsecPeerAuthMethod field of an ipsecPeerEntry and the ikePropAuthMethod field of the i… |
| 1.3.6.1.4.1.272.4.26.5.1.85 | ColumnipsecPeerCert | read-write | current | The index of the certificate used for authentication in the certTable. Ignored for AuthMethod == pre_shared_key. (only for IKEv2). |
| 1.3.6.1.4.1.272.4.26.5.1.86 | ColumnipsecPeerCaCerts | read-write | current | Receives a comma separated list with indices (0..32767) of special certificate authority certificates accepted for this profile. (only for IKEv2). |
| 1.3.6.1.4.1.272.4.26.5.1.87 | ColumnipsecPeerDynAddrMode | read-write | current | When IP address assignment via IKE Config Mode is configured (ipsecPeerDynAddrRole != none) this object specifies the used mode: pull(1), will answer the reque… |
| 1.3.6.1.4.1.272.4.26.5.1.88 | ColumnipsecPeerMobike | read-write | current | This object indicates whether the peer supports MOBIKE or not. Only when both sides of a VPN connection support MOBIKE an IP address change is possible. Possib… |
| 1.3.6.1.4.1.272.4.26.5.1.90 | ColumnipsecPeerPublicIfIndex | read-write | current | The index value which uniquely identifies the physical interface that should be used for all ipsec traffic as initiator. When multiple eqivalent routes to the … |
| 1.3.6.1.4.1.272.4.26.5.1.91 | ColumnipsecPeerPublicIfIndexMode | read-write | current | This object defines the mode used in conjunction with ipsecPeerPublicIfIndex. force(1), with lower metric is available. preferred(2) with lower metric is avail… |
| 1.3.6.1.4.1.272.4.26.6 | TableikeProposalTable | not-accessible | current | This table contains the list of IKE proposals. The entries may be concatenated on a logical or basis using the NextChoice field to choices of multiple proposal… |
| 1.3.6.1.4.1.272.4.26.6.1 | RowikeProposalEntry | not-accessible | current | This object contains an IKE proposal, i.e. the encryption algorithm and the hash algorithm used to protect traffic sent over an IKE SA. |
| 1.3.6.1.4.1.272.4.26.6.1.1 | ColumnikePropIndex | read-only | current | A unique index identifying this entry. |
| 1.3.6.1.4.1.272.4.26.6.1.2 | ColumnikePropNextChoice | read-write | current | This object specifies the index of the next proposal of a choice of proposals. If this object is 0, this marks the end of a proposal chain. |
| 1.3.6.1.4.1.272.4.26.6.1.3 | ColumnikePropDescription | read-write | current | An optional textual description of the proposal chain beginning at this entry. |
| 1.3.6.1.4.1.272.4.26.6.1.4 | ColumnikePropEncAlg | read-write | current | |
| 1.3.6.1.4.1.272.4.26.6.1.5 | ColumnikePropHashAlg | read-write | current | |
| 1.3.6.1.4.1.272.4.26.6.1.7 | ColumnikePropGroup | read-write | current | Index of the IKE group used with this proposal. It may be overridden by a valid IKE group index of an IPSec peer or in ipsecGlobDefaultIkeGroup. Possible value… |
| 1.3.6.1.4.1.272.4.26.6.1.8 | ColumnikePropAuthMethod | read-write | current | |
| 1.3.6.1.4.1.272.4.26.6.1.9 | ColumnikePropEncKeySize | read-write | current | This object specifies the encryption key size used with this proposal. The limits for the individual algorithms can be seen in the ipsecAlgorithmTable. If a le… |
| 1.3.6.1.4.1.272.4.26.6.1.10 | ColumnikePropEncKeySizeMin | read-write | current | This object specifies the maximum encryption key size accepted with this proposal. The limits for the individual algorithms can be seen in the ipsecAlgorithmTa… |
| 1.3.6.1.4.1.272.4.26.6.1.11 | ColumnikePropEncKeySizeMax | read-write | current | This object specifies the maximum encryption key size accepted with this proposal. The limits for the individual algorithms can be seen in the ipsecAlgorithmTa… |
| 1.3.6.1.4.1.272.4.26.7 | TableipsecTrafficTable | not-accessible | current | This table contains lists of Traffic and the actions which should be applied to it, together with the necessary parameters. |
| 1.3.6.1.4.1.272.4.26.7.1 | RowipsecTrafficEntry | not-accessible | current | This object contains a description of a type of IP traffic and the action which should be applied to it together with the necessary parameters. |
| 1.3.6.1.4.1.272.4.26.7.1.1 | ColumnipsecTrIndex | read-only | current | A unique index identifying this entry. |
| 1.3.6.1.4.1.272.4.26.7.1.2 | ColumnipsecTrNextIndex | read-write | current | This object specifies the index of the next traffic entry in hierarchy. |
| 1.3.6.1.4.1.272.4.26.7.1.3 | ColumnipsecTrDescription | read-write | current | An optional human readable description for this traffic entry. |
| 1.3.6.1.4.1.272.4.26.7.1.4 | ColumnipsecTrLocalAddress | read-write | current | The source IP-address of this traffic entry. It maybe either a single address, a network address (in combination with ipsecTrSrcMask), or the first address of … |
| 1.3.6.1.4.1.272.4.26.7.1.5 | ColumnipsecTrLocalMaskLen | read-write | current | The length of the network mask for a source network. |
| 1.3.6.1.4.1.272.4.26.7.1.6 | ColumnipsecTrLocalRange | read-write | current | The last address of a source address range. If this field is nonzero, the ipsecTrLocalMaskLen field is ignored and the source is considered as a range of addre… |
| 1.3.6.1.4.1.272.4.26.7.1.7 | ColumnipsecTrRemoteAddress | read-write | current | The destination IP-address of this traffic entry. It maybe either a single address, a network address (in combination with ipsecTrDstMask), or the first addres… |
| 1.3.6.1.4.1.272.4.26.7.1.8 | ColumnipsecTrRemoteMaskLen | read-write | current | The length of the network mask for a destination network. |
| 1.3.6.1.4.1.272.4.26.7.1.9 | ColumnipsecTrRemoteRange | read-write | current | The last address of a destination address range. If this field is nonzero, the ipsecTrRemoteMaskLen field is ignored and the source is considered as a range of… |
| 1.3.6.1.4.1.272.4.26.7.1.10 | ColumnipsecTrProto | read-write | current | The transport protocol defined for this entry. |
| 1.3.6.1.4.1.272.4.26.7.1.11 | ColumnipsecTrLocalPort | read-write | current | The source port defined for this traffic entry. |
| 1.3.6.1.4.1.272.4.26.7.1.12 | ColumnipsecTrRemotePort | read-write | current | The destination port defined for this traffic entry. |
| 1.3.6.1.4.1.272.4.26.7.1.13 | ColumnipsecTrAction | read-write | current | |
| 1.3.6.1.4.1.272.4.26.7.1.14 | ColumnipsecTrProposal | read-only | current | This object specifies an index in the ipsecProposalTable. This may be the first proposal of possibly a choice of multiple, optionally nested proposals which is… |
| 1.3.6.1.4.1.272.4.26.7.1.15 | ColumnipsecTrForceTunnelMode | read-only | current | |
| 1.3.6.1.4.1.272.4.26.7.1.16 | ColumnipsecTrLifeTime | read-only | current | This object specifies an index in the ipsecLifeTimeTable. This lifetime overwrites the lifetimes specified for all proposals referenced by this traffic entry. … |
| 1.3.6.1.4.1.272.4.26.7.1.17 | ColumnipsecTrGranularity | read-only | current | |
| 1.3.6.1.4.1.272.4.26.7.1.18 | ColumnipsecTrKeepAlive | read-only | current | |
| 1.3.6.1.4.1.272.4.26.7.1.19 | ColumnipsecTrInterface | read-write | current | This object specifies the interface for which the traffic entry should be valid (pass, drop and protect entries). If this object is set to -1, there is no inte… |
| 1.3.6.1.4.1.272.4.26.7.1.20 | ColumnipsecTrDirection | read-write | current | |
| 1.3.6.1.4.1.272.4.26.7.1.21 | ColumnipsecTrLocalAddressType | read-write | current | The type of the local address specification. This may be either a statically configured address or a dynamic address which is taken from some state information. |
| 1.3.6.1.4.1.272.4.26.7.1.22 | ColumnipsecTrRemoteAddressType | read-write | current | The type of the remote address specification. This may be either a statically configured address or a dynamic address which is taken from some state informatio… |
| 1.3.6.1.4.1.272.4.26.7.1.23 | ColumnipsecTrProfile | read-write | current | The index from the ipsecProfileTable containing a special phase 2 profile to use for this traffic entry. |
| 1.3.6.1.4.1.272.4.26.7.1.36 | ColumnipsecTrCreator | read-only | current | This object shows the creator of the traffic entry. |
| 1.3.6.1.4.1.272.4.26.8 | TableipsecProposalTable | not-accessible | current | This table contains the list of IPSec proposals known to the system. The combinations of algorithms allowed are constructed from any combinations of algorithms… |
| 1.3.6.1.4.1.272.4.26.8.1 | RowipsecProposalEntry | not-accessible | current | This object contains an IPSec proposal, i.e. a proposed set of security parameters applied to traffic sent over an IPSec security association. |
| 1.3.6.1.4.1.272.4.26.8.1.1 | ColumnipsecPropIndex | read-only | current | A unique index for this entry. |
| 1.3.6.1.4.1.272.4.26.8.1.2 | ColumnipsecPropNext | read-write | current | The index of the next Proposal in the actual chain. |
| 1.3.6.1.4.1.272.4.26.8.1.4 | ColumnipsecPropDescription | read-write | current | An optional human readable description for this proposal. |
| 1.3.6.1.4.1.272.4.26.8.1.6 | ColumnipsecPropProto | read-write | current | |
| 1.3.6.1.4.1.272.4.26.8.1.20 | ColumnipsecPropIpcomp | read-write | current | |
| 1.3.6.1.4.1.272.4.26.8.1.40 | ColumnipsecPropEspAes | read-write | current | This object specifies the use of the AES encryption algorithm in the proposal. Possible values: 0, 1..7 the encryption algorithms. |
| 1.3.6.1.4.1.272.4.26.8.1.41 | ColumnipsecPropEspTwofish | read-write | current | This object specifies the use of the Twofish encryption algorithm in the proposal. Possible values: 0, 1..7 the encryption algorithms. |
| 1.3.6.1.4.1.272.4.26.8.1.42 | ColumnipsecPropEspBlowfish | read-write | current | This object specifies the use of the Blowfish encryption algorithm in the proposal. Possible values: 0, 1..7 the encryption algorithms. |
| 1.3.6.1.4.1.272.4.26.8.1.43 | ColumnipsecPropEspCast | read-write | current | This object specifies the use of the Cast encryption algorithm in the proposal. Possible values: 0, 1..7 the encryption algorithms. |
| 1.3.6.1.4.1.272.4.26.8.1.44 | ColumnipsecPropEspDes3 | read-write | current | This object specifies the use of the DES3 encryption algorithm in the proposal. Possible values: 0, 1..7 the encryption algorithms. |
| 1.3.6.1.4.1.272.4.26.8.1.45 | ColumnipsecPropEspDes | read-write | current | This object specifies the use of the DES encryption algorithm in the proposal. Possible values: 0, 1..7 the encryption algorithms. |
| 1.3.6.1.4.1.272.4.26.8.1.46 | ColumnipsecPropEspNull | read-write | current | This object specifies the use of the DES encryption algorithm in the proposal. Possible values: 0, 1..7 the encryption algorithms. |
| 1.3.6.1.4.1.272.4.26.8.1.49 | ColumnipsecPropEspRijndael | read-write | current | This object specifies the use of the Rijndael encryption algorithm in the proposal. The use of this object is deprecated since rijndael has been accepted as th… |
| 1.3.6.1.4.1.272.4.26.8.1.50 | ColumnipsecPropEspMd5 | read-write | current | This object specifies the use of the MD5 authentication algorithm for ESP in the proposal. Possible values: 0, 1..3 the authentication algorithms. |
| 1.3.6.1.4.1.272.4.26.8.1.51 | ColumnipsecPropEspSha1 | read-write | current | This object specifies the use of the Sha1 authentication algorithm for ESP in the proposal. Possible values: 0, 1..3 the authentication algorithms. |
| 1.3.6.1.4.1.272.4.26.8.1.52 | ColumnipsecPropEspNoMac | read-write | current | This object specifies whether ESP without authentication is allowed in the proposal. Possible values: 0, 1..3 its priority among the other authentication algor… |
| 1.3.6.1.4.1.272.4.26.8.1.60 | ColumnipsecPropAhMd5 | read-write | current | This object specifies the use of the MD5 authentication algorithm for AH in the proposal. Possible values: 0, 1..2 the authentication algorithms. |
| 1.3.6.1.4.1.272.4.26.8.1.61 | ColumnipsecPropAhSha1 | read-write | current | This object specifies the use of the Sha1 authentication algorithm for AH in the proposal. Possible values: 0, 1..2 the authentication algorithms. |
| 1.3.6.1.4.1.272.4.26.8.1.70 | ColumnipsecPropIpcompDeflate | read-write | current | This object specifies the use of the DEFLATE compression algorithm in the proposal. Possible values: 0, 1..1 the compression algorithms. |
| 1.3.6.1.4.1.272.4.26.8.1.80 | ColumnipsecPropAesKeySize | read-write | current | |
| 1.3.6.1.4.1.272.4.26.8.1.81 | ColumnipsecPropAesKeySizeMin | read-write | current | |
| 1.3.6.1.4.1.272.4.26.8.1.82 | ColumnipsecPropAesKeySizeMax | read-write | current | |
| 1.3.6.1.4.1.272.4.26.8.1.83 | ColumnipsecPropBlowfishKeySize | read-write | current | This object specifies the key size in bits for the Blowfish algorithm, if enabled. Note: the key size must be a multiple of 8 bits. If not, it will be rounded … |
| 1.3.6.1.4.1.272.4.26.8.1.84 | ColumnipsecPropBlowfishKeySizeMin | read-write | current | This object specifies the minimum accepted key size in bits for the Blowfish algorithm, if enabled. |
| 1.3.6.1.4.1.272.4.26.8.1.85 | ColumnipsecPropBlowfishKeySizeMax | read-write | current | This object specifies the maximum accepted key size in bits for the Blowfish algorithm, if enabled. |
| 1.3.6.1.4.1.272.4.26.8.1.86 | ColumnipsecPropTwofishKeySize | read-write | current | |
| 1.3.6.1.4.1.272.4.26.8.1.87 | ColumnipsecPropTwofishKeySizeMin | read-write | current | |
| 1.3.6.1.4.1.272.4.26.8.1.88 | ColumnipsecPropTwofishKeySizeMax | read-write | current | |
| 1.3.6.1.4.1.272.4.26.9 | TableipsecLifeTimeTable | not-accessible | current | This table contains the list of defined lifetimes for IPsec and IKE SAs. |
| 1.3.6.1.4.1.272.4.26.9.1 | RowipsecLifeTimeEntry | not-accessible | current | This object contains a lifetime, i.e. the soft and hard expiry limits for IPsec and IKE SA's. The usage of this table is deprecated, use the ikePrfLifeXxx and … |
| 1.3.6.1.4.1.272.4.26.9.1.1 | ColumnipsecLifeIndex | read-only | current | A unique index identifying this entry. |
| 1.3.6.1.4.1.272.4.26.9.1.2 | ColumnipsecLifeType | read-only | current | This object specifies the type of a lifetime entry. |
| 1.3.6.1.4.1.272.4.26.9.1.5 | ColumnipsecLifeHardKb | read-only | current | The maximum amount of data (in KB) which may be protected by an SA before it is deleted. |
| 1.3.6.1.4.1.272.4.26.9.1.6 | ColumnipsecLifeHardSec | read-only | current | The maximum time (in seconds) after which an SA will be refreshed,. |
| 1.3.6.1.4.1.272.4.26.9.1.7 | ColumnipsecLifePolicy | read-only | current | This object specifies the way the lifetime information is applied. Possible values: loose(1), strict(2), notify(3) than what was proposed use these and send re… |
| 1.3.6.1.4.1.272.4.26.9.1.8 | ColumnipsecLifeSoftPercent | read-only | current | The percentage of the hard lifetimes (traffic and time based) after which rekeying is started. |
| 1.3.6.1.4.1.272.4.26.10 | NodeipsecStats | |||
| 1.3.6.1.4.1.272.4.26.10.1 | ScalaripsecStatsCurrentIkeSas | read-only | current | Current number of IKE SA's (both IKEv1 and IKEv2). |
| 1.3.6.1.4.1.272.4.26.10.2 | ScalaripsecStatsCurrentIpsecSas | read-only | current | Current number of IPSec SA's. |
| 1.3.6.1.4.1.272.4.26.10.9 | ScalaripsecStatsTrig | read-only | current | Number of packets which triggered an IKE negotiation. |
| 1.3.6.1.4.1.272.4.26.10.10 | ScalaripsecStatsFragPkt | read-only | current | Number of partial packets currently being reassembled. |
| 1.3.6.1.4.1.272.4.26.10.11 | ScalaripsecStatsFragBytes | read-only | current | Total size of the partial packets currently being reassembled. |
| 1.3.6.1.4.1.272.4.26.10.12 | ScalaripsecStatsFragNonfirst | read-only | current | Number of non-first fragments currently queued. |
| 1.3.6.1.4.1.272.4.26.10.13 | ScalaripsecStatsDecryptErrors | read-only | current | Number of decryption errors. |
| 1.3.6.1.4.1.272.4.26.10.14 | ScalaripsecStatsAuthErrors | read-only | current | Number of authentication errors. |
| 1.3.6.1.4.1.272.4.26.10.15 | ScalaripsecStatsReplayErrors | read-only | current | Number of replay errors. |
| 1.3.6.1.4.1.272.4.26.10.16 | ScalaripsecStatsPolicyErrors | read-only | current | Number of policy errors. |
| 1.3.6.1.4.1.272.4.26.10.17 | ScalaripsecStatsOtherErrors | read-only | current | Number of other receive errors. |
| 1.3.6.1.4.1.272.4.26.10.18 | ScalaripsecStatsSendErrors | read-only | current | Number of send errors. |
| 1.3.6.1.4.1.272.4.26.10.19 | ScalaripsecStatsUnknownSpiErrors | read-only | current | Number of unknown SPI errors. |
| 1.3.6.1.4.1.272.4.26.10.20 | ScalaripsecStatsIkeNumP1 | read-only | current | The number of IKE phase-1 negotiations performed. |
| 1.3.6.1.4.1.272.4.26.10.21 | ScalaripsecStatsIkeNumFailedP1 | read-only | current | The number of failed IKE phase-1 negotiations. |
| 1.3.6.1.4.1.272.4.26.10.22 | ScalaripsecStatsIkeNumQm | read-only | current | The number of IKE quick-mode negotiations performed. |
| 1.3.6.1.4.1.272.4.26.10.23 | ScalaripsecStatsIkeNumFailedQm | read-only | current | The number of failed IKE quick-mode negotiations. |
| 1.3.6.1.4.1.272.4.26.10.24 | ScalaripsecStatsEspCurrentInbound | read-only | current | The number of active inbound ESP SAs. |
| 1.3.6.1.4.1.272.4.26.10.25 | ScalaripsecStatsEspTotalInbound | read-only | current | The number of inbound ESP SAs since the system was started. |
| 1.3.6.1.4.1.272.4.26.10.26 | ScalaripsecStatsEspCurrentOutbound | read-only | current | The number of active outbound ESP SAs. |
| 1.3.6.1.4.1.272.4.26.10.27 | ScalaripsecStatsEspTotalOutbound | read-only | current | The number of outbound ESP SAs since the system was started. |
| 1.3.6.1.4.1.272.4.26.10.28 | ScalaripsecStatsAhCurrentInbound | read-only | current | The number of active inbound AH SAs. |
| 1.3.6.1.4.1.272.4.26.10.29 | ScalaripsecStatsAhTotalInbound | read-only | current | The number of inbound AH SAs since the system was started. |
| 1.3.6.1.4.1.272.4.26.10.30 | ScalaripsecStatsAhCurrentOutbound | read-only | current | The number of active outbound AH SAs. |
| 1.3.6.1.4.1.272.4.26.10.31 | ScalaripsecStatsAhTotalOutbound | read-only | current | The number of outbound AH SAs since the system was started. |
| 1.3.6.1.4.1.272.4.26.10.32 | ScalaripsecStatsIpcompCurrentInbound | read-only | current | The number of active inbound IPComp SAs. |
| 1.3.6.1.4.1.272.4.26.10.33 | ScalaripsecStatsIpcompTotalInbound | read-only | current | The number of inbound IPComp SAs since the system was started. |
| 1.3.6.1.4.1.272.4.26.10.34 | ScalaripsecStatsIpcompCurrentOutbound | read-only | current | The number of active outbound IPComp SAs. |
| 1.3.6.1.4.1.272.4.26.10.35 | ScalaripsecStatsIpcompTotalOutbound | read-only | current | The number of outbound IPComp SAs since the system was started. |
| 1.3.6.1.4.1.272.4.26.10.36 | ScalaripsecStatsPeersUp | read-only | current | The number of Peers currently in state 'up'. |
| 1.3.6.1.4.1.272.4.26.10.37 | ScalaripsecStatsPeersBlocked | read-only | current | The number of Peers currently in state 'blocked'. |
| 1.3.6.1.4.1.272.4.26.10.38 | ScalaripsecStatsPeersDormant | read-only | current | The number of Peers currently in state 'dormant'. |
| 1.3.6.1.4.1.272.4.26.10.39 | ScalaripsecStatsCurrentIkeSasNegotiating | read-only | current | Current number of IKE SA's in state 'established' (both IKEv1 and IKEv2). |
| 1.3.6.1.4.1.272.4.26.10.40 | ScalaripsecStatsCurrentIkeSasEstablished | read-only | current | Current number of IKE SA's in state 'established' (both IKEv1 and IKEv2). |
| 1.3.6.1.4.1.272.4.26.10.41 | ScalaripsecStatsCurrentIkeSasDeleted | read-only | current | Current number of IKE SA's in state 'deleted' or 'waiting_for_remove' (both IKEv1 and IKEv2). |
| 1.3.6.1.4.1.272.4.26.10.42 | ScalaripsecStatsCurrentBundles | read-only | current | Current number of IPSec bundles. |
| 1.3.6.1.4.1.272.4.26.10.43 | ScalaripsecStatsCurrentBundlesEstablished | read-only | current | Current number of IPSec bundles in state 'established'. |
| 1.3.6.1.4.1.272.4.26.10.44 | ScalaripsecStatsCurrentBundlesNegotiating | read-only | current | Current number of IPSec bundles in state 'established'. |
| 1.3.6.1.4.1.272.4.26.10.45 | ScalaripsecStatsInPkt | read-only | current | Number of packets received. |
| 1.3.6.1.4.1.272.4.26.10.46 | ScalaripsecStatsInPass | read-only | current | Number of inbound packets passed. |
| 1.3.6.1.4.1.272.4.26.10.47 | ScalaripsecStatsInDrop | read-only | current | Number of inbound packets dropped (error packets excluded). |
| 1.3.6.1.4.1.272.4.26.10.48 | ScalaripsecStatsInDecaps | read-only | current | Number of inbound error packets. |
| 1.3.6.1.4.1.272.4.26.10.49 | ScalaripsecStatsInErrors | read-only | current | Number of inbound packets dropped. |
| 1.3.6.1.4.1.272.4.26.10.50 | ScalaripsecStatsOutPkt | read-only | current | Number of outbound packets. |
| 1.3.6.1.4.1.272.4.26.10.51 | ScalaripsecStatsOutPass | read-only | current | Number of outbound packets passed. |
| 1.3.6.1.4.1.272.4.26.10.52 | ScalaripsecStatsOutDrop | read-only | current | Number of outbound packets dropped (error packets excluded). |
| 1.3.6.1.4.1.272.4.26.10.53 | ScalaripsecStatsOutEncaps | read-only | current | Number of outbound packets encapsulated. |
| 1.3.6.1.4.1.272.4.26.10.55 | ScalaripsecStatsInEsp | read-only | current | Number of inbound packets decapsulated by ESP. |
| 1.3.6.1.4.1.272.4.26.10.56 | ScalaripsecStatsInAh | read-only | current | Number of inbound packets decapsulated by AH. |
| 1.3.6.1.4.1.272.4.26.10.57 | ScalaripsecStatsInIpcomp | read-only | current | Number of inbound packets decapsulated by IPComP. |
| 1.3.6.1.4.1.272.4.26.10.58 | ScalaripsecStatsOutEsp | read-only | current | Number of outbound packets encapsulated by ESP. |
| 1.3.6.1.4.1.272.4.26.10.59 | ScalaripsecStatsOutAh | read-only | current | Number of outbound packets encapsulated by AH. |
| 1.3.6.1.4.1.272.4.26.10.60 | ScalaripsecStatsOutIpcomp | read-only | current | Number of outbound packets encapsulated by IPComP. |
| 1.3.6.1.4.1.272.4.26.10.63 | ScalaripsecStatsIkev2NumIkeSas | read-only | current | The number of IKE_SA negotiations performed (only for IKEv2). |
| 1.3.6.1.4.1.272.4.26.10.64 | ScalaripsecStatsIkev2NumFailedIkeSas | read-only | current | The number of failed IKE_SA negotiations (only for IKEv2). |
| 1.3.6.1.4.1.272.4.26.10.65 | ScalaripsecStatsIkev2NumCreateChildSas | read-only | current | The number of CREATE_CHILD_SA exchanges performed (only for IKEv2). |
| 1.3.6.1.4.1.272.4.26.10.66 | ScalaripsecStatsIkev2NumFailedCreateChildSas | read-only | current | The number of failed CREATE_CHILD_SA exchanges (only for IKEv2). |
| 1.3.6.1.4.1.272.4.26.10.544 | ScalaripsecStatsOutErrors | read-only | current | Number of outbound error packets. |
| 1.3.6.1.4.1.272.4.26.11 | NodeipsecGlobalsContinued | |||
| 1.3.6.1.4.1.272.4.26.11.1 | ScalaripsecGlobContPreIpsecRules | read-write | current | This object specifies an index in the IPsec traffic table containing a list of traffic definitions which has to be considered prior to the traffic lists of the… |
| 1.3.6.1.4.1.272.4.26.11.2 | ScalaripsecGlobContDefaultRule | read-write | current | |
| 1.3.6.1.4.1.272.4.26.11.4 | ScalaripsecGlobContUse32BitCpi | read-write | current | |
| 1.3.6.1.4.1.272.4.26.11.5 | ScalaripsecGlobContNoWellKnownCpis | read-write | current | |
| 1.3.6.1.4.1.272.4.26.11.7 | ScalaripsecGlobContNoPmtuDiscovery | read-only | current | |
| 1.3.6.1.4.1.272.4.26.11.8 | ScalaripsecGlobContDefaultPmtuTtl | read-write | current | This object specifies the time-to-live (in minutes) of a PMTU value derived from an ICMP PMTU message received for an IPSec packet. After this time, the mtu is… |
| 1.3.6.1.4.1.272.4.26.11.9 | ScalaripsecGlobContPrivateInterface | read-write | current | This object specifies the index of the systems' private interface. If the private interface is set (i.e. non-negative), certain address spoofing attacks are ma… |
| 1.3.6.1.4.1.272.4.26.11.10 | ScalaripsecGlobContSaSyncInterface | read-write | current | |
| 1.3.6.1.4.1.272.4.26.11.11 | ScalaripsecGlobContPostIpsecRules | read-write | current | This object specifies an index in the IPsec traffic table containing a list of traffic definitions which has to be considered after the traffic lists of the IP… |
| 1.3.6.1.4.1.272.4.26.11.12 | ScalaripsecGlobContDefaultPfsIdentity | read-write | current | |
| 1.3.6.1.4.1.272.4.26.11.13 | ScalaripsecGlobContIkeLoggingLevel | read-write | current | This object specifies the IKE logging level. IKE log messages are output as syslog messages on level debug. Note that the global syslog table level must be set… |
| 1.3.6.1.4.1.272.4.26.11.14 | ScalaripsecGlobContDialBlockTime | read-write | current | Amount of time in minutes how long an ipsecDial entry remains in state blocked-for-outgoing after a cost producing trigger call was detected. Given value denot… |
| 1.3.6.1.4.1.272.4.26.11.15 | ScalaripsecGlobContPfsIdentityDelay | read-write | current | This object specifies the number of seconds to wait before deleting the underlying phase 1 SA after a Phase 2 SA has been established, if PFS for identity is c… |
| 1.3.6.1.4.1.272.4.26.11.16 | ScalaripsecGlobContHeartbeatDefault | read-only | current | |
| 1.3.6.1.4.1.272.4.26.11.17 | ScalaripsecGlobContHeartbeatInterval | read-write | current | This object specifies the time interval in seconds between heartbeats. At this rate heartbeats are sent and/or expected if configured (not used for IPv6). |
| 1.3.6.1.4.1.272.4.26.11.18 | ScalaripsecGlobContHeartbeatTolerance | read-write | current | This object specifies the maximum number of missing heartbeats allowed before an SA is discarded (not used for IPv6). |
| 1.3.6.1.4.1.272.4.26.11.66 | ScalaripsecGlobContObsoleteFeatureMask | read-write | current | Some obsolete features are represented by a bit in this mask and could be re-enabled for testing or compatibility purpose. A mask-bit of 1 enable the approprat… |
| 1.3.6.1.4.1.272.4.26.11.69 | ScalaripsecGlobContP1Always | read-write | current | This object specifies whether a phase 1 rekeying is always done immediately before phase 2 rekeying. Note this is different from pfs for identity because the l… |
| 1.3.6.1.4.1.272.4.26.11.70 | ScalaripsecGlobContHwAccel | read-write | current | Enables/disables usage of encryption engine. |
| 1.3.6.1.4.1.272.4.26.11.71 | ScalaripsecGlobContSupportVarKeyLength4Twofish | read-write | current | Enables/disables support of variable key sizes for the Twofish algorithm. Note that the Twofish related settings within the ipsecAlgorithmTable will be synchro… |
| 1.3.6.1.4.1.272.4.26.11.72 | ScalaripsecGlobContIkev2Profile | read-write | current | This object specifies the default IKE_SA profile to use (only for IKEv2). If set to 0 no profile is configured as default. |
| 1.3.6.1.4.1.272.4.26.11.73 | ScalaripsecGlobContMaxIkev2Sas | read-write | current | This object specifies the maximum number of simultaneous IKEv2 Security associations allowed. If this limit is reached, the entries are removed from the databa… |
| 1.3.6.1.4.1.272.4.26.11.74 | ScalaripsecGlobContPathFinder | read-write | current | Enables/disables the IPSec pathfinder mode, that means all the traffic (IKE, ESP and AH) is embedded within a pseudo HTTPS session between the peers (similar t… |
| 1.3.6.1.4.1.272.4.26.11.75 | ScalaripsecGlobContXauthTimeout | read-write | current | If an extended authentication is requested, this is the time (in seconds) the device will wait for response. A useful value is important when username and pass… |
| 1.3.6.1.4.1.272.4.26.12 | TableipsecDialTable | not-accessible | current | This table contains dial entries specifying all parameters needed for ISDN triggered call back. |
| 1.3.6.1.4.1.272.4.26.12.1 | RowipsecDialEntry | not-accessible | current | This object contains a dial entry used for mapping ISDN numbers to peers for ISDN call back feature. |
| 1.3.6.1.4.1.272.4.26.12.1.1 | ColumnipsecDialIfIndex | read-write | current | Index that maps to a peer in a unique way. |
| 1.3.6.1.4.1.272.4.26.12.1.2 | ColumnipsecDialDirection | read-write | current | Calling direction for which entry applies. |
| 1.3.6.1.4.1.272.4.26.12.1.3 | ColumnipsecDialNumber | read-write | current | Party number of remote peer. Used for matching calling party number on incoming calls and for called party number on outgoing calls. |
| 1.3.6.1.4.1.272.4.26.12.1.4 | ColumnipsecDialSubAddress | read-write | current | Subaddress of remote peer. Used for matching calling party subaddress on incoming calls and for called party subaddress on outgoing calls. |
| 1.3.6.1.4.1.272.4.26.12.1.5 | ColumnipsecDialTypeOfSubAddr | read-write | current | Type of subaddress of remote peer. Used for matching calling party subaddress on incoming calls and for called party subaddress on outgoing calls. |
| 1.3.6.1.4.1.272.4.26.12.1.6 | ColumnipsecDialLocalNumber | read-write | current | Local Party number. Used for matching called party number on incoming calls and for calling party number on outgoing calls. Special value '*' is treated as wil… |
| 1.3.6.1.4.1.272.4.26.12.1.7 | ColumnipsecDialLocalSubAddress | read-write | current | Local subaddress. Used for matching called party subaddress on incoming calls and for calling party subaddress on outgoing calls. Special value '*' is treated … |
| 1.3.6.1.4.1.272.4.26.12.1.8 | ColumnipsecDialTypeOfLocalSubAddr | read-write | current | Type of local subaddress. Used for matching called party subaddress on incoming calls and for calling party subaddress on outgoing calls. Subaddress type is on… |
| 1.3.6.1.4.1.272.4.26.12.1.9 | ColumnipsecDialAdminStatus | read-write | current | Administrative status for dial entry. This object allows for temporarily disabling ipsecDial entries without the need to actually deletion them. This is achiev… |
| 1.3.6.1.4.1.272.4.26.12.1.10 | ColumnipsecDialOperStatus | read-only | current | Operational status for dial entry. This object indicates current status ipsecDial entry is in. Beside values defined for ipsecDialAdminStatus, status blocked-f… |
| 1.3.6.1.4.1.272.4.26.13 | NodeipsecRadius | |||
| 1.3.6.1.4.1.272.4.26.13.1 | ScalaripsecRadiusPresetState | read-only | current | This object shows the status of the RADIUS preset peers load process. |
| 1.3.6.1.4.1.272.4.26.13.2 | ScalaripsecRadiusPresetPeers | read-only | current | The number of RADIUS preset peers currently loaded. |
| 1.3.6.1.4.1.272.4.26.13.3 | ScalaripsecRadiusDynamicAuthentication | read-write | current | This object enables/disables dynamic authentication via RADIUS. If no peer has been found matching an incoming IKE negotiation, the configured RADIUS servers a… |
| 1.3.6.1.4.1.272.4.26.14 | TableikeProfileTable | not-accessible | current | This table contains the list of IKE (Phase 1) profiles. |
| 1.3.6.1.4.1.272.4.26.14.1 | RowikeProfileEntry | not-accessible | current | This object contains an IPSec phase 1 profile. |
| 1.3.6.1.4.1.272.4.26.14.1.1 | ColumnikePrfIndex | read-only | current | A unique index identifying this entry. |
| 1.3.6.1.4.1.272.4.26.14.1.2 | ColumnikePrfDescription | read-write | current | An optional description for this profile. |
| 1.3.6.1.4.1.272.4.26.14.1.3 | ColumnikePrfAuthMethod | read-write | current | |
| 1.3.6.1.4.1.272.4.26.14.1.4 | ColumnikePrfMode | read-write | current | |
| 1.3.6.1.4.1.272.4.26.14.1.5 | ColumnikePrfProposal | read-write | current | The index of the first IKE proposal which may be used for IKE SA negotiation with this profile. |
| 1.3.6.1.4.1.272.4.26.14.1.6 | ColumnikePrfGroup | read-write | current | This object specifies the IKE group to use with this profile. Possible values: 1: a 768-bit MODP group 2: a 1024-bit MODP group 5: a 1536-bit MODP group |
| 1.3.6.1.4.1.272.4.26.14.1.7 | ColumnikePrfCert | read-write | current | The index of the certificate used for authentication in the certTable. Ignored for AuthMethod == pre_shared_key. |
| 1.3.6.1.4.1.272.4.26.14.1.8 | ColumnikePrfLocalId | read-write | current | The local ID used for authentication with this profile. Syntax: - X500 distinguished name: <obj-name=obj-value, obj-ID=obj-value, ...> - IPV4-Address: |123.456… |
| 1.3.6.1.4.1.272.4.26.14.1.9 | ColumnikePrfCaCerts | read-write | current | Receives a comma separated list with indices (0..32767) of special certificate authority certificates accepted for this profile. |
| 1.3.6.1.4.1.272.4.26.14.1.10 | ColumnikePrfLifeTime | read-only | current | This object specifies an index in the ipsecLifeTimeTable with the lifetime settings to be used for IKE SA negotiation with this profile. If the lifetime pointe… |
| 1.3.6.1.4.1.272.4.26.14.1.11 | ColumnikePrfPfsIdentity | read-write | current | |
| 1.3.6.1.4.1.272.4.26.14.1.12 | ColumnikePrfHeartbeats | read-write | current | |
| 1.3.6.1.4.1.272.4.26.14.1.13 | ColumnikePrfBlockTime | read-write | current | This object specifies the time in seconds for which a peer is blocked for any IPSec operations after a phase 1 initiator negotiation failed. Special values: -1… |
| 1.3.6.1.4.1.272.4.26.14.1.14 | ColumnikePrfNatT | read-write | current | |
| 1.3.6.1.4.1.272.4.26.14.1.15 | ColumnikePrfMtuMax | read-write | current | The maximum MTU value allowed for ipsecPeerStatMtu. Zero means use value from global profile, if this is the global profile, 1418 is assumed. Nonzero values sm… |
| 1.3.6.1.4.1.272.4.26.14.1.16 | ColumnikePrfLifeSeconds | read-write | current | The maximum time (in seconds) after which an SA will be deleted. |
| 1.3.6.1.4.1.272.4.26.14.1.17 | ColumnikePrfLifeKBytes | read-write | current | The maximum amount of data (in KB) which may be protected by an SA before it is deleted. |
| 1.3.6.1.4.1.272.4.26.14.1.18 | ColumnikePrfLifeRekeyPercent | read-write | obsolete | WARNING: this object is obsolete and must not be used. |
| 1.3.6.1.4.1.272.4.26.14.1.19 | ColumnikePrfLifePolicy | read-write | current | |
| 1.3.6.1.4.1.272.4.26.15 | TableipsecProfileTable | not-accessible | current | This table contains the list of IPSec (Phase 2) profiles. |
| 1.3.6.1.4.1.272.4.26.15.1 | RowipsecProfileEntry | not-accessible | current | This object contains an IPSec phase 1 profile. |
| 1.3.6.1.4.1.272.4.26.15.1.1 | ColumnipsecPrfIndex | read-only | current | A unique index identifying this entry. |
| 1.3.6.1.4.1.272.4.26.15.1.2 | ColumnipsecPrfDescription | read-write | current | An optional description for this profile. |
| 1.3.6.1.4.1.272.4.26.15.1.3 | ColumnipsecPrfProposal | read-write | current | The index of the IPSec proposal used for this profile. |
| 1.3.6.1.4.1.272.4.26.15.1.4 | ColumnipsecPrfPfsGroup | read-write | current | The Diffie Hellman group used for additional Perfect Forward Secrecy (PFS) DH exponentiations. Possible values: -1: do not use PFS 0: use value from default pr… |
| 1.3.6.1.4.1.272.4.26.15.1.5 | ColumnipsecPrfLifeTime | read-only | current | This object specifies an index in the ipsecLifeTimeTable. The usage of this object is deprecated, use the ipsecPrfLifeXxx variables directly instead. |
| 1.3.6.1.4.1.272.4.26.15.1.6 | ColumnipsecPrfHeartbeats | read-write | current | |
| 1.3.6.1.4.1.272.4.26.15.1.7 | ColumnipsecPrfPmtuDiscovery | read-write | current | |
| 1.3.6.1.4.1.272.4.26.15.1.8 | ColumnipsecPrfGranularity | read-write | current | |
| 1.3.6.1.4.1.272.4.26.15.1.9 | ColumnipsecPrfKeepAlive | read-write | current | |
| 1.3.6.1.4.1.272.4.26.15.1.10 | ColumnipsecPrfVerifyPad | read-write | current | This object is a compatibility option for older ipsec implementations. It enables or disables an old way of ESP padding (no self describing padding). Possible … |
| 1.3.6.1.4.1.272.4.26.15.1.11 | ColumnipsecPrfForceTunnelMode | read-write | current | This object specifies the strategy when transport mode is used. By default, the system always uses transport mode, if possible. If this variable is set to true… |
| 1.3.6.1.4.1.272.4.26.15.1.16 | ColumnipsecPrfLifeSeconds | read-write | current | The maximum time (in seconds) after which an SA will be deleted. |
| 1.3.6.1.4.1.272.4.26.15.1.17 | ColumnipsecPrfLifeKBytes | read-write | current | The maximum amount of data (in KB) which may be protected by an SA before it is deleted. |
| 1.3.6.1.4.1.272.4.26.15.1.18 | ColumnipsecPrfLifeRekeyPercent | read-write | current | The percentage of the lifetimes (traffic and time based) after which rekeying is started. |
| 1.3.6.1.4.1.272.4.26.15.1.19 | ColumnipsecPrfLifePolicy | read-write | current | |
| 1.3.6.1.4.1.272.4.26.16 | TableipsecBundleTable | not-accessible | current | This table contains the list of currently active IPSec security associations. |
| 1.3.6.1.4.1.272.4.26.16.1 | RowipsecBundleEntry | not-accessible | current | This object contains an IPSec security association. |
| 1.3.6.1.4.1.272.4.26.16.1.1 | ColumnipsecBundleIndex | read-only | current | A unique index for this entry. |
| 1.3.6.1.4.1.272.4.26.16.1.5 | ColumnipsecBundlePeerIndex | read-only | current | The index of the peer for which this bundle was created. |
| 1.3.6.1.4.1.272.4.26.16.1.6 | ColumnipsecBundleTrafficIndex | read-only | current | The index of the traffic entry for which this bundle was created. |
| 1.3.6.1.4.1.272.4.26.16.1.7 | ColumnipsecBundleState | read-write | current | |
| 1.3.6.1.4.1.272.4.26.16.1.8 | ColumnipsecBundleNumSas | read-only | current | The number of SAs contained in this bundle. |
| 1.3.6.1.4.1.272.4.26.16.1.9 | ColumnipsecBundleRole | read-only | current | |
| 1.3.6.1.4.1.272.4.26.16.1.10 | ColumnipsecBundleRekeyedBundle | read-only | current | This object indicates upon rekeying, which bundle (actually its BundleIndex) is going to be replaced by that one. |
| 1.3.6.1.4.1.272.4.26.16.1.11 | ColumnipsecBundleRekeyingBundle | read-only | current | This object indicates upon rekeying, which bundle (actually its BundleIndex) is going to replace that one. |
| 1.3.6.1.4.1.272.4.26.16.1.12 | ColumnipsecBundleLastStateChange | read-only | current | This object indicates the time in time ticks from system start by which the state of this bundle entry was changed last. To determine the absolute time, the cu… |
| 1.3.6.1.4.1.272.4.26.16.1.13 | ColumnipsecBundleHeartbeatsEnabled | read-only | current | |
| 1.3.6.1.4.1.272.4.26.16.1.14 | ColumnipsecBundleCreator | read-only | current | |
| 1.3.6.1.4.1.272.4.26.16.1.15 | ColumnipsecBundleTunnelLocal | read-only | current | The local IP address of the outer packet header. For transport mode bundles this address is the same as the ipsecBundleLocalAddress. |
| 1.3.6.1.4.1.272.4.26.16.1.16 | ColumnipsecBundleTunnelRemote | read-only | current | The remote IP address of the outer packet header. For transport mode bundles, this address is the same as the ipsecBundleRemoteAddress. |
| 1.3.6.1.4.1.272.4.26.16.1.17 | ColumnipsecBundlePmtuDiscovery | read-only | current | |
| 1.3.6.1.4.1.272.4.26.16.1.18 | ColumnipsecBundleKeepAlive | read-only | current | |
| 1.3.6.1.4.1.272.4.26.16.1.19 | ColumnipsecBundleVerifyPad | read-only | current | |
| 1.3.6.1.4.1.272.4.26.16.1.20 | ColumnipsecBundleLifeSeconds | read-only | current | The period in seconds after which this bundle will be destroyed. |
| 1.3.6.1.4.1.272.4.26.16.1.21 | ColumnipsecBundleLifeKBytes | read-only | current | The amount of data allowed to be protected by this bundle until it is destroyed (ipsecBundleOutBytes or ipecBundleOutBytes). |
| 1.3.6.1.4.1.272.4.26.16.1.22 | ColumnipsecBundleRekeySeconds | read-only | current | The period in seconds after which this bundle will be rekeyed. |
| 1.3.6.1.4.1.272.4.26.16.1.23 | ColumnipsecBundleRekeyKBytes | read-only | current | The amount of data allowed to be protected by this bundle until it is rekeyed (ipsecBundleOutBytes or ipecBundleOutBytes). |
| 1.3.6.1.4.1.272.4.26.16.1.24 | ColumnipsecBundleProto | read-only | current | The protocol of the traffic selectors. |
| 1.3.6.1.4.1.272.4.26.16.1.25 | ColumnipsecBundleLocalAddress | read-only | current | The local address (host or network or range start address) of the traffic selectors, source for outbound, destination for inbound. |
| 1.3.6.1.4.1.272.4.26.16.1.26 | ColumnipsecBundleLocalMaskLen | read-only | current | The local network masklen of the traffic selectors, source for outbound, destination for inbound. |
| 1.3.6.1.4.1.272.4.26.16.1.27 | ColumnipsecBundleLocalRange | read-only | current | The local address range end address of the traffic selectors, source for outbound, destination for inbound. |
| 1.3.6.1.4.1.272.4.26.16.1.28 | ColumnipsecBundleLocalPort | read-only | current | The local port of the traffic selectors, source for outbound, destination for inbound. |
| 1.3.6.1.4.1.272.4.26.16.1.29 | ColumnipsecBundleRemoteAddress | read-only | current | The remote address (host or network or range start address) of the traffic selectors source for outbound, destination for inbound. |
| 1.3.6.1.4.1.272.4.26.16.1.30 | ColumnipsecBundleRemoteMaskLen | read-only | current | The remote network masklen of the traffic selectors source for outbound, destination for inbound. |
| 1.3.6.1.4.1.272.4.26.16.1.31 | ColumnipsecBundleRemoteRange | read-only | current | The remote address range end address of the traffic selectors source for outbound, destination for inbound. |
| 1.3.6.1.4.1.272.4.26.16.1.32 | ColumnipsecBundleRemotePort | read-only | current | The remote port of the traffic selectors source for outbound, destination for inbound. |
| 1.3.6.1.4.1.272.4.26.16.1.33 | ColumnipsecBundleInPkt | read-only | current | The total number of inbound packets processed by this bundle. |
| 1.3.6.1.4.1.272.4.26.16.1.34 | ColumnipsecBundleInHb | read-only | current | The number of heartbeat packets received over this bundle. |
| 1.3.6.1.4.1.272.4.26.16.1.35 | ColumnipsecBundleInBytes | read-only | current | The number of inbound bytes (including IPSec overhead) processed by this bundle. |
| 1.3.6.1.4.1.272.4.26.16.1.37 | ColumnipsecBundleInBytesNetto | read-only | current | The number of inbound bytes (netto: IPSec headers excluded) processed by this bundle. |
| 1.3.6.1.4.1.272.4.26.16.1.39 | ColumnipsecBundleOutPkt | read-only | current | The total number of outbound packets processed by this bundle. |
| 1.3.6.1.4.1.272.4.26.16.1.40 | ColumnipsecBundleOutHb | read-only | current | The number of heartbeat packets sent for this bundle. |
| 1.3.6.1.4.1.272.4.26.16.1.41 | ColumnipsecBundleOutBytes | read-only | current | The number of outbound bytes (including IPSec overhead) processed by this bundle. |
| 1.3.6.1.4.1.272.4.26.16.1.43 | ColumnipsecBundleOutBytesNetto | read-only | current | The number of outbound bytes (netto: IPSec headers excluded) processed by this bundle. |
| 1.3.6.1.4.1.272.4.26.16.1.45 | ColumnipsecBundleNatT | read-only | current | |
| 1.3.6.1.4.1.272.4.26.16.1.46 | ColumnipsecBundleNatOaLocal | read-only | current | The local IP address as seen by the remote side. Only valid for transport mode bundles with NatT enabled. |
| 1.3.6.1.4.1.272.4.26.16.1.47 | ColumnipsecBundleNatOaRemote | read-only | current | The remote IP address as seen by the remote side. Only valid for transport mode bundles with NatT enabled. |
| 1.3.6.1.4.1.272.4.26.16.1.48 | ColumnipsecBundleIkeMajVersion | read-only | current | The IKE major version number. |
| 1.3.6.1.4.1.272.4.26.16.1.49 | ColumnipsecBundleIkeMinVersion | read-only | current | The IKE minor version number. |
| 1.3.6.1.4.1.272.4.26.17 | TableipsecAlgorithmTable | not-accessible | current | This table contains the list of supported IPSec algorithms and their key sizes. |
| 1.3.6.1.4.1.272.4.26.17.1 | RowipsecAlgorithmEntry | not-accessible | current | This object contains an IPSec algorithm. |
| 1.3.6.1.4.1.272.4.26.17.1.1 | ColumnipsecAlgId | read-only | current | |
| 1.3.6.1.4.1.272.4.26.17.1.3 | ColumnipsecAlgMinKeySize | read-only | current | The minimum key length in bits possible for this algorithm. |
| 1.3.6.1.4.1.272.4.26.17.1.4 | ColumnipsecAlgDefKeySize | read-only | current | The default key length in bits used for this algorithm. |
| 1.3.6.1.4.1.272.4.26.17.1.5 | ColumnipsecAlgMaxKeySize | read-only | current | The maximum key length in bits possible for this algorithm. |
| 1.3.6.1.4.1.272.4.26.17.1.6 | ColumnipsecAlgUseMinKeySize | read-only | obsolete | WARNING: this object is obsolete and must not be used. |
| 1.3.6.1.4.1.272.4.26.17.1.7 | ColumnipsecAlgUseDefKeySize | read-only | obsolete | WARNING: this object is obsolete and must not be used. |
| 1.3.6.1.4.1.272.4.26.17.1.8 | ColumnipsecAlgUseMaxKeySize | read-only | obsolete | WARNING: this object is obsolete and must not be used. |
| 1.3.6.1.4.1.272.4.26.18 | TablexauthProfileTable | not-accessible | current | This table contains the list of XAUTH profiles. |
| 1.3.6.1.4.1.272.4.26.18.1 | RowxauthProfileEntry | not-accessible | current | This object contains an XAUTH profile. |
| 1.3.6.1.4.1.272.4.26.18.1.1 | ColumnxauthPrfIndex | read-write | current | A unique index identifying this entry. |
| 1.3.6.1.4.1.272.4.26.18.1.2 | ColumnxauthPrfDescription | read-write | current | An optional description for this profile, only used for descriptive purposes (max. 50 characters). |
| 1.3.6.1.4.1.272.4.26.18.1.3 | ColumnxauthPrfRole | read-write | current | This object specifies which role is choosed for this profile. Possible values: server(1) i.e. this side requests extended authentication client(2) i.e. this si… |
| 1.3.6.1.4.1.272.4.26.18.1.4 | ColumnxauthPrfMode | read-write | current | This object specifies the kind how to get user data for authentication. Possible values: local(1), of xauthUserListTable that are referenced by xauthPrfUserLis… |
| 1.3.6.1.4.1.272.4.26.18.1.5 | ColumnxauthPrfAAAServerGroupId | read-write | current | This object specifies the group ID which is used for RADIUS authentication to find the associated server entry in radiusSrvTable for XAUTH. See description of … |
| 1.3.6.1.4.1.272.4.26.18.1.6 | ColumnxauthPrfUserListGroupId | read-write | current | This object refers to a group of one or more user entries in xauthUserListTable. This object is only valid for entries with xauthPrfUserMode 'local'. |
| 1.3.6.1.4.1.272.4.26.18.1.7 | ColumnxauthPrfTimeout | read-write | obsolete | WARNING: this object is obsolete and must not be used. |
| 1.3.6.1.4.1.272.4.26.18.1.8 | ColumnxauthPrfAdminStatus | read-write | current | MIB entry deletion is performed by this object: - enable : enables xauthPrfTable entry - delete : deletes xauthPrfTable entry. |
| 1.3.6.1.4.1.272.4.26.19 | TablexauthUserListTable | not-accessible | current | This table contains the list of XAUTH users. |
| 1.3.6.1.4.1.272.4.26.19.1 | RowxauthUserListEntry | not-accessible | current | This object contains an XAUTH user. |
| 1.3.6.1.4.1.272.4.26.19.1.1 | ColumnxauthUserListIndex | read-write | current | A unique index identifying this entry. |
| 1.3.6.1.4.1.272.4.26.19.1.2 | ColumnxauthUserListGroupId | read-write | current | ID for creating logical groups of XAUTH users. |
| 1.3.6.1.4.1.272.4.26.19.1.3 | ColumnxauthUserListName | read-write | current | This object specifies the user name. |
| 1.3.6.1.4.1.272.4.26.19.1.4 | ColumnxauthUserListPassword | read-write | current | This object specifies the user's password. This field serves only as an input field and its contents is replaced with a single asterisk immediately after it is… |
| 1.3.6.1.4.1.272.4.26.19.1.5 | ColumnxauthUserListPasswordData | not-accessible | current | Field used for storing the user's password permanently. |
| 1.3.6.1.4.1.272.4.26.19.1.6 | ColumnxauthUserListAdminStatus | read-write | current | MIB entry deletion is performed by this object: - enable : enables xauthUserListTable entry - delete : deletes xauthUserListTable entry. |
| 1.3.6.1.4.1.272.4.26.28 | TableipsecPeerStatTable | not-accessible | current | This table contains the list of IPSec peers status and statistic variables. |
| 1.3.6.1.4.1.272.4.26.28.1 | RowipsecPeerStatEntry | not-accessible | current | This object contains the status and statistic variables of an IPSec peer. |
| 1.3.6.1.4.1.272.4.26.28.1.1 | ColumnipsecPeerStatIndex | read-only | current | A unique index identifying this entry. |
| 1.3.6.1.4.1.272.4.26.28.1.2 | ColumnipsecPeerStatNextIndex | read-only | current | The index of the next peer in hierarchy. |
| 1.3.6.1.4.1.272.4.26.28.1.3 | ColumnipsecPeerStatCaCerts | read-only | current | Receives a comma separated list with indices of optional certificate authority certificates accepted for this peer. |
| 1.3.6.1.4.1.272.4.26.28.1.4 | ColumnipsecPeerStatPeerAddress | read-only | current | This object shows the fixed IP-address of the peer, if any. |
| 1.3.6.1.4.1.272.4.26.28.1.5 | ColumnipsecPeerStatLocalId | read-only | current | The local ID used for authentication. Syntax: - X500 distinguished name: <obj-name=obj-value, obj-ID=obj-value, ...> - IPV4-Address: |123.456.789.012| with or … |
| 1.3.6.1.4.1.272.4.26.28.1.6 | ColumnipsecPeerStatLocalCert | read-only | current | The index of the certificate used for local authentication in the certTable. Only useful for automatically keyed traffic with dsa or rsa authentication. |
| 1.3.6.1.4.1.272.4.26.28.1.7 | ColumnipsecPeerStatPublicInterface | read-only | current | This object specifies the index of the public interface for which the traffic list assigned to this peer should be valid. If set to -1, the traffic list is val… |
| 1.3.6.1.4.1.272.4.26.28.1.8 | ColumnipsecPeerStatIkeProposals | read-only | current | Index of default ike proposal used for peers with empty default ike proposal. |
| 1.3.6.1.4.1.272.4.26.28.1.9 | ColumnipsecPeerStatPfsIdentity | read-only | current | |
| 1.3.6.1.4.1.272.4.26.28.1.10 | ColumnipsecPeerStatAuthMethod | read-only | current | |
| 1.3.6.1.4.1.272.4.26.28.1.11 | ColumnipsecPeerStatIkeGroup | read-only | current | This object specifies a special IKE group which is to be used for this peer only. It overrides the setting in the ikeProposal used. Possible values: 0: use the… |
| 1.3.6.1.4.1.272.4.26.28.1.12 | ColumnipsecPeerStatPfsGroup | read-only | current | The Diffie Hellman group used for additional Perfect Forward Secrecy (PFS) DH exponentiations. Possible values: -1: explicitly do not use PFS (overrides ipsecG… |
| 1.3.6.1.4.1.272.4.26.28.1.13 | ColumnipsecPeerStatPh1Mode | read-only | current | |
| 1.3.6.1.4.1.272.4.26.28.1.14 | ColumnipsecPeerStatIkeLifeTime | read-only | current | This object specifies an index in the ipsecLifeTimeTable with the lifetime settings to be used for IKE SA negotiation with this peer. It overrides the setting … |
| 1.3.6.1.4.1.272.4.26.28.1.15 | ColumnipsecPeerStatIpsecLifeTime | read-only | current | This object specifies an index in the ipsecLifeTimeTable. This lifetime overwrites the lifetimes specified for all traffic entries and their proposals referenc… |
| 1.3.6.1.4.1.272.4.26.28.1.16 | ColumnipsecPeerStatKeepAlive | read-only | current | |
| 1.3.6.1.4.1.272.4.26.28.1.17 | ColumnipsecPeerStatGranularity | read-only | current | |
| 1.3.6.1.4.1.272.4.26.28.1.18 | ColumnipsecPeerStatDontVerifyPad | read-only | current | |
| 1.3.6.1.4.1.272.4.26.28.1.19 | ColumnipsecPeerStatNoPmtuDiscovery | read-only | current | |
| 1.3.6.1.4.1.272.4.26.28.1.20 | ColumnipsecPeerStatOperStatus | read-only | current | Peer operational state. |
| 1.3.6.1.4.1.272.4.26.28.1.21 | ColumnipsecPeerStatDefaultIpsecProposals | read-only | current | The index of the default IPSec proposal used for encrypting all the traffic bound to the (optional) logical interface created for this peer. |
| 1.3.6.1.4.1.272.4.26.28.1.22 | ColumnipsecPeerStatHeartbeat | read-only | current | |
| 1.3.6.1.4.1.272.4.26.28.1.23 | ColumnipsecPeerStatTtl | read-only | current | This object shows the maximum period of time in seconds the peer will remain in the current state. |
| 1.3.6.1.4.1.272.4.26.28.1.24 | ColumnipsecPeerStatCurrentLocalAddress | read-only | current | The currently used local IP-address for this peer. |
| 1.3.6.1.4.1.272.4.26.28.1.25 | ColumnipsecPeerStatCurrentRemoteAddress | read-only | current | The currently known remote IP-address of this peer. |
| 1.3.6.1.4.1.272.4.26.28.1.26 | ColumnipsecPeerStatNumP1 | read-only | current | The number of current IKE SAs for this peer. |
| 1.3.6.1.4.1.272.4.26.28.1.27 | ColumnipsecPeerStatNumP1Negotiating | read-only | current | The number of current IKE SAs in state 'negotiating' for this peer. |
| 1.3.6.1.4.1.272.4.26.28.1.28 | ColumnipsecPeerStatNumP1Established | read-only | current | The number of current IKE SAs in state 'established' for this peer. |
| 1.3.6.1.4.1.272.4.26.28.1.29 | ColumnipsecPeerStatNumP1Deleted | read-only | current | The number of current IKE SAs in state 'waiting_for_remove' for this peer. |
| 1.3.6.1.4.1.272.4.26.28.1.30 | ColumnipsecPeerStatNumBundles | read-only | current | The number of current IPSec SA bundles for this peer. |
| 1.3.6.1.4.1.272.4.26.28.1.31 | ColumnipsecPeerStatNumBundlesNegotiating | read-only | current | The number of current IPSec SA bundles for this peer. |
| 1.3.6.1.4.1.272.4.26.28.1.32 | ColumnipsecPeerStatNumBundlesEstablished | read-only | current | The number of current IPSec SA bundles in state 'established' for this peer. |
| 1.3.6.1.4.1.272.4.26.28.1.33 | ColumnipsecPeerStatPh1LToken | read-only | current | Locally generated token that must be used by triggered peer upon call back. |
| 1.3.6.1.4.1.272.4.26.28.1.34 | ColumnipsecPeerStatPh1RToken | read-only | current | Remotely generated token which must be used during phase one of IPsec connection establishment. |
| 1.3.6.1.4.1.272.4.26.28.1.35 | ColumnipsecPeerStatIsdnCBNextMode | read-only | current | Define callback mode that is to be tried next. The following modes are defined: unknown(1) settings d-llc(2) d-subaddr(3) d-llc-subaddr(4) SUBADDR next b(5) De… |
| 1.3.6.1.4.1.272.4.26.28.1.36 | ColumnipsecPeerStatNatDetect | read-only | current | |
| 1.3.6.1.4.1.272.4.26.28.1.37 | ColumnipsecPeerStatNatTLocalPort | read-only | current | The local port currently usd for NAT-T IKE and ESP SAs with this Peer. |
| 1.3.6.1.4.1.272.4.26.28.1.38 | ColumnipsecPeerStatNatTRemotePort | read-only | current | The remote port currently usd for NAT-T IKE and ESP SAs with this Peer. |
| 1.3.6.1.4.1.272.4.26.28.1.39 | ColumnipsecPeerStatMtu | read-only | current | The current MTU of this peer. This value is copied to ifMtu if ipsecPeerVirtualInterface is set to enabled. |
| 1.3.6.1.4.1.272.4.26.28.1.40 | ColumnipsecPeerStatRxIdle | read-only | current | The time period for which no packet has been received from this peer. |
| 1.3.6.1.4.1.272.4.26.28.1.41 | ColumnipsecPeerStatTxIdle | read-only | current | The time period for which no packet has been transmitted to this peer. |
| 1.3.6.1.4.1.272.4.26.28.1.42 | ColumnipsecPeerStatDPD | read-only | current | |
| 1.3.6.1.4.1.272.4.26.28.1.43 | ColumnipsecPeerStatDPDRetries | read-only | current | The nuber of DPD retries currently sent without reply. |
| 1.3.6.1.4.1.272.4.26.28.1.44 | ColumnipsecPeerStatNumIkeSas | read-only | current | The number of current IKE SAs for this peer (only for IKEv2). |
| 1.3.6.1.4.1.272.4.26.28.1.45 | ColumnipsecPeerStatNumIkeSasNegotiating | read-only | current | The number of current IKE SAs in state 'negotiating' for this peer (only for IKEv2). |
| 1.3.6.1.4.1.272.4.26.28.1.46 | ColumnipsecPeerStatNumIkeSasEstablished | read-only | current | The number of current IKE SAs in state 'established' for this peer (only for IKEv2). |
| 1.3.6.1.4.1.272.4.26.28.1.47 | ColumnipsecPeerStatNumIkeSasDeleted | read-only | current | The number of current IKE SAs in state 'waiting_for_remove' for this peer (only for IKEv2). |
| 1.3.6.1.4.1.272.4.26.29 | TableipsecPeerTrafficTable | not-accessible | current | This table contains peer related lists of traffic permitted for Phase 2 negotiation. Note that this table contains optional entries solely, in the default case… |
| 1.3.6.1.4.1.272.4.26.29.1 | RowipsecPeerTrafficEntry | not-accessible | current | This table contains peer related lists of traffic permitted for Phase 2 negotiation. Note that this table contains optional entries solely, in the default case… |
| 1.3.6.1.4.1.272.4.26.29.1.1 | ColumnipsecPeerTrafficIfindex | read-write | current | . |
| 1.3.6.1.4.1.272.4.26.29.1.2 | ColumnipsecPeerTrafficDescription | read-write | current | An optional human readable description for this entry. |
| 1.3.6.1.4.1.272.4.26.29.1.3 | ColumnipsecPeerTrafficLocalAddress | read-write | current | The local IP-address of this entry. It maybe either a single address or a network address (in combination with ipsecPeerTrafficLocalMask). |
| 1.3.6.1.4.1.272.4.26.29.1.4 | ColumnipsecPeerTrafficLocalMask | read-write | current | The length of the network mask for a local network. |
| 1.3.6.1.4.1.272.4.26.29.1.5 | ColumnipsecPeerTrafficLocalPort | read-write | current | The local port defined for this entry. |
| 1.3.6.1.4.1.272.4.26.29.1.6 | ColumnipsecPeerTrafficLocalPortRange | read-write | current | The local port range defined for this entry. |
| 1.3.6.1.4.1.272.4.26.29.1.7 | ColumnipsecPeerTrafficRemoteAddress | read-write | current | The remote IP-address of this entry. It maybe either a single address or a network address (in combination with ipsecPeerTrafficRemoteMask). |
| 1.3.6.1.4.1.272.4.26.29.1.8 | ColumnipsecPeerTrafficRemoteMask | read-write | current | The network mask for a remote network. |
| 1.3.6.1.4.1.272.4.26.29.1.9 | ColumnipsecPeerTrafficRemotePort | read-write | current | The remote UDP/TCP port defined for this entry. |
| 1.3.6.1.4.1.272.4.26.29.1.10 | ColumnipsecPeerTrafficRemotePortRange | read-write | current | The remote UDP/TCP port range defined for this entry. |
| 1.3.6.1.4.1.272.4.26.29.1.11 | ColumnipsecPeerTrafficProtocol | read-write | current | The transport protocol defined for this entry. |
| 1.3.6.1.4.1.272.4.26.29.1.12 | ColumnipsecPeerTrafficPolicy | read-write | current | This object specifies whether this network policy is used for inbound, outbound or both processing. Possible values: delete(1) role-initiator(2) role-responder… |
| 1.3.6.1.4.1.272.4.26.250 | IdentityipsecMIB | Vendor specific Management Information for the IPSec Subsystem |