MIB Viewer

FS-IPSEC-MIB

106 objects
The MIB is designed to get statistic information of IPSec tunnels. With this MIB, we can get information of a certain tunnel or all tunnels.
Imported Objects
FS-SMIfsMgmt
SNMPv2-CONFMODULE-COMPLIANCE NOTIFICATION-GROUP OBJECT-GROUP
SNMPv2-SMICounter32 Counter64 Gauge32 Integer32 IpAddress MODULE-IDENTITY NOTIFICATION-TYPE OBJECT-TYPE Unsigned32
SNMPv2-TCDisplayString TEXTUAL-CONVENTION TimeStamp
OIDNameAccessStatusDescription
1.3.6.1.4.1.52642.1.1.10.2.94IdentityfsIPSecMonitorThe MIB is designed to get statistic information of IPSec tunnels. With this MIB, we can get information of a certain tunnel or all tunnels.
1.3.6.1.4.1.52642.1.1.10.2.94.1NodefsIPSecObjects
1.3.6.1.4.1.52642.1.1.10.2.94.1.1TablefsIPSecTunnelTablenot-accessiblecurrentThe IPSec Phase-2 Tunnel Table. There is one entry in this table for each active IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1RowfsIPSecTunnelEntrynot-accessiblecurrentInformation about fsIPSecTunnelTable.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.1ColumnfsIPSecTunIfIndexnot-accessiblecurrentThe interface index( the ifIndex of ifTable ).
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.2ColumnfsIPSecTunIndexnot-accessiblecurrentThe index of IPSec Phase-2 Tunnel Table. The value of the index is a number which begins at one and is incremented with each tunnel that is created. The value …
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.3ColumnfsIPSecTunIKETunnelIndexread-onlycurrentThe index of the associated IPSec Phase-1 IKE Tunnel (IKETunIndex in the IKETunnelTable). 2147483647 is defined as invalid value.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.4ColumnfsIPSecTunLocalAddrread-onlycurrentThe IP address of the local peer for the IPSec Phase-2 Tunnel. 0.0.0.0 is defined as invalid value.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.5ColumnfsIPSecTunRemoteAddrread-onlycurrentThe IP address of the remote peer for the IPSec Phase-2 Tunnel. 0.0.0.0 is defined as invalid value.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.6ColumnfsIPSecTunLocalHostnameread-onlycurrentThe Hostname of the local peer for the IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.7ColumnfsIPSecTunRemoteHostnameread-onlycurrentThe Hostname of the remote peer for the IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.8ColumnfsIPSecTunKeyTyperead-onlycurrentThe key negotiate mode used by the IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.9ColumnfsIPSecTunEncapModeread-onlycurrentThe encapsulation mode used by the IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.10ColumnfsIPSecTunInitiatorread-onlycurrentThe initiator of this IPSec tunnel. Value none is used for manual IPsec tunnel, for there is no initiator or responder in this method.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.11ColumnfsIPSecTunLifeSizeread-onlycurrentThe negotiated LifeSize of the IPSec Phase-2 Tunnel in kilobytes. 2147483647 is defined as invalid value.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.12ColumnfsIPSecTunLifeTimeread-onlycurrentThe negotiated LifeTime of the IPSec Phase-2 Tunnel in seconds. 2147483647 is defined as invalid value.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.13ColumnfsIPSecTunRemainTimeread-onlycurrentThe remain time of SA in seconds. 2147483647 is defined as invalid value.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.14ColumnfsIPSecTunActiveTimeread-onlycurrentThe duration the IPSec Phase-2 Tunnel has been active in hundredths of seconds. 2147483647 is defined as invalid value.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.15ColumnfsIPSecTunCreateTimeread-onlycurrentThe Time Stamp when the IPSec Phase-2 Tunnel created.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.16ColumnfsIPSecTunRemainSizeread-onlycurrentThe remain LifeSize of SA in kilobytes. 2147483647 is defined as invalid value.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.17ColumnfsIPSecTunTotalRefreshesread-onlycurrentThe total number of security association refreshing performed.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.18ColumnfsIPSecTunCurrentSaInstancesread-onlycurrentThe number of security associations which are currently active or expiring.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.19ColumnfsIPSecTunInSaEncryptAlgoread-onlycurrentThe encryption algorithm used by the inbound security association of the IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.20ColumnfsIPSecTunInSaAhAuthAlgoread-onlycurrentThe authentication algorithm used by the inbound authentication header (AH) security association of the IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.21ColumnfsIPSecTunInSaEspAuthAlgoread-onlycurrentThe authentication algorithm used by the inbound encapsulation security protocol(ESP) security association of the IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.22ColumnfsIPSecTunDiffHellmanGrpread-onlycurrentThe Diffie Hellman Group used by the security association of the IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.23ColumnfsIPSecTunOutSaEncryptAlgoread-onlycurrentThe encryption algorithm used by the outbound security association of the IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.24ColumnfsIPSecTunOutSaAhAuthAlgoread-onlycurrentThe authentication algorithm used by the outbound authentication header (AH) security association of the IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.25ColumnfsIPSecTunOutSaEspAuthAlgoread-onlycurrentThe authentication algorithm used by the outbound encapsulation security protocol(ESP) security association of the IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.26ColumnfsIPSecTunMapNameread-onlycurrentThe Map name used by this IPSec tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.27ColumnfsIPSecTunSeqNumread-onlycurrentThe sequence number of policy used by this IPSec tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.1.1.28ColumnfsIPSecTunStatusread-writecurrentThe status of the IPSec Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.2TablefsIPSecTunnelStatTablenot-accessiblecurrentThe IPSec Phase-2 Tunnel Statistics Table.
1.3.6.1.4.1.52642.1.1.10.2.94.1.2.1RowfsIPSecTunnelStatEntrynot-accessiblecurrentInformation about fsIPSecTunnelStatTable.
1.3.6.1.4.1.52642.1.1.10.2.94.1.2.1.1ColumnfsIPSecTunInOctetsread-onlycurrentThe total number of octets received by this IPSec Phase-2 Tunnel. This value is accumulated BEFORE determining whether or not the packet should be decompressed.
1.3.6.1.4.1.52642.1.1.10.2.94.1.2.1.2ColumnfsIPSecTunInDecompOctetsread-onlycurrentThe total number of decompressed octets received by this IPSec Phase-2 Tunnel. This value is accumulated AFTER the packet is decompressed.
1.3.6.1.4.1.52642.1.1.10.2.94.1.2.1.3ColumnfsIPSecTunInPktsread-onlycurrentThe total number of packets received by this IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.2.1.4ColumnfsIPSecTunInSpeedread-onlycurrentThe Speed(bps) of packets received by this IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.2.1.5ColumnfsIPSecTunInDropPktsread-onlycurrentThe total number of packets dropped during receiving process by this IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.2.1.6ColumnfsIPSecTunOutOctetsread-onlycurrentThe total number of octets sent by this IPSec Phase-2 Tunnel. This value is accumulated AFTER determining whether or not the packet should be compressed.
1.3.6.1.4.1.52642.1.1.10.2.94.1.2.1.7ColumnfsIPSecTunOutUncompOctetsread-onlycurrentThe total number of uncompressed octets sent by this IPSec Phase-2 Tunnel.This value is accumulated BEFORE the packet is compressed.
1.3.6.1.4.1.52642.1.1.10.2.94.1.2.1.8ColumnfsIPSecTunOutPktsread-onlycurrentThe total number of packets sent by this IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.2.1.9ColumnfsIPSecTunOutSpeedread-onlycurrentThe Speed(bps) of packets sent by this IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.2.1.10ColumnfsIPSecTunOutDropPktsread-onlycurrentThe total number of packets dropped during sending process by this IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.3TablefsIPSecSaTablenot-accessiblecurrentThe IPSec Phase-2 Security Protection Index Table. This table contains an entry for each active and expiring security association.
1.3.6.1.4.1.52642.1.1.10.2.94.1.3.1RowfsIPSecSaEntrynot-accessiblecurrentInformation about fsIPSecSaTable.
1.3.6.1.4.1.52642.1.1.10.2.94.1.3.1.1ColumnfsIPSecSaIndexnot-accessiblecurrentThe number of the Sa associated with the Phase-2 Tunnel Table. The value of this index is a number which begins at one and is incremented with each Sa associat…
1.3.6.1.4.1.52642.1.1.10.2.94.1.3.1.2ColumnfsIPSecSaDirectionread-onlycurrentThe direction of the SA.
1.3.6.1.4.1.52642.1.1.10.2.94.1.3.1.3ColumnfsIPSecSaValueread-onlycurrentThe value of the SPI.
1.3.6.1.4.1.52642.1.1.10.2.94.1.3.1.4ColumnfsIPSecSaProtocolread-onlycurrentThe security protocol of the SA.
1.3.6.1.4.1.52642.1.1.10.2.94.1.3.1.5ColumnfsIPSecSaEncryptAlgoread-onlycurrentThe encryption algorithm used by the security association of the IPSec Phase-2 Tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.1.3.1.6ColumnfsIPSecSaAuthAlgoread-onlycurrentThe authentication algorithm used by the SA.
1.3.6.1.4.1.52642.1.1.10.2.94.1.3.1.7ColumnfsIPSecSaStatusread-onlycurrentThe status of the SA.
1.3.6.1.4.1.52642.1.1.10.2.94.1.4TablefsIPSecTrafficTablenot-accessiblecurrentThe IPSec Phase-2 Tunnel Traffic Table.
1.3.6.1.4.1.52642.1.1.10.2.94.1.4.1RowfsIPSecTrafficEntrynot-accessiblecurrentInformation about fsIPSecTrafficTable.
1.3.6.1.4.1.52642.1.1.10.2.94.1.4.1.1ColumnfsIPSecTrafficLocalTyperead-onlycurrentThe type of local peer. Possible values are: a single IP address, or an IP address range, or an IP subnet.
1.3.6.1.4.1.52642.1.1.10.2.94.1.4.1.2ColumnfsIPSecTrafficLocalAddr1read-onlycurrentThe first specification of local peer's IP address. If the local peer type is single IP address, then this is the value of the IP address. If the local peer ty…
1.3.6.1.4.1.52642.1.1.10.2.94.1.4.1.3ColumnfsIPSecTrafficLocalAddr2read-onlycurrentThe second specification of local peer's IP address. If the local peer type is single IP address, then this is the value of the IP address. If the local peer t…
1.3.6.1.4.1.52642.1.1.10.2.94.1.4.1.4ColumnfsIPSecTrafficLocalProtocolread-onlycurrentThe protocol number of the local peer's traffic.
1.3.6.1.4.1.52642.1.1.10.2.94.1.4.1.5ColumnfsIPSecTrafficLocalPortread-onlycurrentThe port number of the local peer's traffic.
1.3.6.1.4.1.52642.1.1.10.2.94.1.4.1.6ColumnfsIPSecTrafficLocalHostnameread-onlycurrentThe Hostname of local peer's IP address.
1.3.6.1.4.1.52642.1.1.10.2.94.1.4.1.7ColumnfsIPSecTrafficRemoteTyperead-onlycurrentThe type of remote peer. Possible values are: a single IP address, or an IP address range, or an IP subnet.
1.3.6.1.4.1.52642.1.1.10.2.94.1.4.1.8ColumnfsIPSecTrafficRemoteAddr1read-onlycurrentThe first specification of remote peer's IP address. If the remote peer type is single IP address, then this is the value of the IP address. If the remote peer…
1.3.6.1.4.1.52642.1.1.10.2.94.1.4.1.9ColumnfsIPSecTrafficRemoteAddr2read-onlycurrentSingle IP address, then this is the value of the IP address. If the remote peer type is IP subnet, then this is the value of the subnet mask. If the remote pee…
1.3.6.1.4.1.52642.1.1.10.2.94.1.4.1.10ColumnfsIPSecTrafficRemoteProtocolread-onlycurrentThe protocol number of the remote peer's traffic.
1.3.6.1.4.1.52642.1.1.10.2.94.1.4.1.11ColumnfsIPSecTrafficRemotePortread-onlycurrentThe port number of the remote peer's traffic.
1.3.6.1.4.1.52642.1.1.10.2.94.1.4.1.12ColumnfsIPSecTrafficRemoteHostnameread-onlycurrentThe Hostname of remote peer's IP address.
1.3.6.1.4.1.52642.1.1.10.2.94.1.5NodefsIPSecGlobalStats
1.3.6.1.4.1.52642.1.1.10.2.94.1.5.1ScalarfsIPSecGlobalActiveTunnelsread-onlycurrentThe total number of currently active IPSec Phase-2 Tunnels.
1.3.6.1.4.1.52642.1.1.10.2.94.1.5.2ScalarfsIPSecGlobalActiveSasread-onlycurrentThe total number of currently active or expiring IPSec Phase-2 SA.
1.3.6.1.4.1.52642.1.1.10.2.94.1.5.3ScalarfsIPSecGlobalInOctetsread-onlycurrentThe total number of octets received by all current and previous IPSec Phase-2 Tunnels. This value is accumulated BEFORE determining whether or not the packet s…
1.3.6.1.4.1.52642.1.1.10.2.94.1.5.4ScalarfsIPSecGlobalInPktsread-onlycurrentThe total number of packets received by all current and previous IPSec Phase-2 Tunnels.
1.3.6.1.4.1.52642.1.1.10.2.94.1.5.5ScalarfsIPSecGlobalInSpeedread-onlycurrentThe total speed(bps) of packets received by all current and previous IPSec Phase-2 Tunnels.
1.3.6.1.4.1.52642.1.1.10.2.94.1.5.6ScalarfsIPSecGlobalInDropsread-onlycurrentThe total number of packets dropped during receiving process by all current and previous IPSec Phase-2 Tunnels.
1.3.6.1.4.1.52642.1.1.10.2.94.1.5.7ScalarfsIPSecGlobalOutOctetsread-onlycurrentThe total number of octets sent by all current and previous IPSec Phase-2 Tunnels. This value is accumulated AFTER determining whether or not the packet should…
1.3.6.1.4.1.52642.1.1.10.2.94.1.5.8ScalarfsIPSecGlobalOutPktsread-onlycurrentThe total number of packets sent by all current and previous IPSec Phase-2 Tunnels.
1.3.6.1.4.1.52642.1.1.10.2.94.1.5.9ScalarfsIPSecGlobalOutSpeedread-onlycurrentThe total speed(bps) of packets sent by all current and previous IPSec Phase-2 Tunnels.
1.3.6.1.4.1.52642.1.1.10.2.94.1.5.10ScalarfsIPSecGlobalOutDropsread-onlycurrentThe total number of packets dropped during sending process by all current and previous IPSec Phase-2 Tunnels.
1.3.6.1.4.1.52642.1.1.10.2.94.1.6NodefsIPSecTrapObject
1.3.6.1.4.1.52642.1.1.10.2.94.1.6.1ScalarfsIPSecMapNameaccessible-for-notifycurrentThe IPSec map name with a trap.
1.3.6.1.4.1.52642.1.1.10.2.94.1.6.2ScalarfsIPSecSeqNumaccessible-for-notifycurrentThe IPSec map sequence number with a trap.
1.3.6.1.4.1.52642.1.1.10.2.94.1.6.3ScalarfsIPSecSpiValueaccessible-for-notifycurrentThe SPI value associated with a trap.
1.3.6.1.4.1.52642.1.1.10.2.94.1.7NodefsIPSecTrap
1.3.6.1.4.1.52642.1.1.10.2.94.1.7.1NodefsIPSecNotifications
1.3.6.1.4.1.52642.1.1.10.2.94.1.7.1.1NotificationfsIPSecTunnelStartcurrentThis notification is generated when an IPSec Phase-2 Tunnel is created.
1.3.6.1.4.1.52642.1.1.10.2.94.1.7.1.2NotificationfsIPSecTunnelStopcurrentThis notification is generated when an IPSec Phase-2 Tunnel is deleted.
1.3.6.1.4.1.52642.1.1.10.2.94.2NodefsIPSecConformance
1.3.6.1.4.1.52642.1.1.10.2.94.2.1NodefsIPSecCompliances
1.3.6.1.4.1.52642.1.1.10.2.94.2.1.1CompliancefsIPSecCompliancecurrent
1.3.6.1.4.1.52642.1.1.10.2.94.2.2NodefsIPSecGroups
1.3.6.1.4.1.52642.1.1.10.2.94.2.2.1GroupfsIPSecTunnelTableGroupcurrentThe group contains the IPSec tunnel's property information.
1.3.6.1.4.1.52642.1.1.10.2.94.2.2.2GroupfsIPSecTunnelStatGroupcurrentThe group contains the IPSec tunnel's statistic information.
1.3.6.1.4.1.52642.1.1.10.2.94.2.2.3GroupfsIPSecSaGroupcurrentThe group contains the SA's property information.
1.3.6.1.4.1.52642.1.1.10.2.94.2.2.4GroupfsIPSecTrafficTableGroupcurrentThe group contains the property information of the data flow protected by IPSec tunnel.
1.3.6.1.4.1.52642.1.1.10.2.94.2.2.5GroupfsIPSecGlobalStatsGroupcurrentThe group contains all of the IPSec tunnel's statistic information.
1.3.6.1.4.1.52642.1.1.10.2.94.2.2.6GroupfsIPSecTrapObjectGroupcurrentThe group contains all of trap objects of IPSec tunnels.
1.3.6.1.4.1.52642.1.1.10.2.94.2.2.7GroupfsIPSecTrapGroupcurrentThe group contains all of trap of IPSec tunnels.
Type Definitions
NameSyntaxStatusDescription
FSAuthAlgoINTEGER { none(0), md5(1), sha(2), invalidAlg(2147483647) }currentThe authentication algorithm used in the IKE negotiations. invalidAlg(2147483647) is defined as invalid value.
FSDiffHellmanGrpINTEGER { none(0), modp768(1), modp1024(2), invalidMode(2147483647) }currentThe Diffie Hellman Group used in the IKE and IPSec negotiations. invalidAlg(2147483647) is defined as invalid value.
FSEncapModeINTEGER { tunnel(1), transport(2), invalidMode(2147483647) }currentThe encapsulation mode used by an IPSec Phase-2 Tunnel.
FSEncryptAlgoINTEGER { none(0), desCbc(2), threedesCbc(3), aesCbc(12), sm1Cbc(128), invalidAlg(2147483647) }currentThe encryption algorithm used in the IKE and IPSec negotiations. invalidAlg(2147483647) is defined as invalid value.
FSIPSecNegoTypeINTEGER { ike(1), manual(2), invalidType(2147483647) }currentThe type of key used by an IPSec Phase-2 Tunnel. invalidType(2147483647) is defined as invalid value.
FSIPSecTunnelStateINTEGER { establishing(1), active(2), expiring(3) }currentThe state of IPSec tunnel.
FSSaProtocolINTEGER { reserved(0), isakmp(1), ah(2), esp(3) }currentThe protocol of security association.
FSTrafficTypeINTEGER { ipv4Addr(1), ipv4AddrSubnet(2), ipv6Addr(3), ipv6AddrSubnet(4), ipv4AddrRange(5), ipv6AddrRange(6) }currentThe type of the data flow.
FSTunnelProtocolINTEGER { none(0), icmp(1), igmp(2), ip(4), tcp(6), udp(17), esp(50), ah(51) }currentThe protocol of security association.