MIB Viewer

FS-VPNPOLICY-MIB

101 objects
The MIB module that describes managed objects of general use by the IPSEC Protocol.
OIDNameAccessStatusDescription
1.3.6.1.4.1.10876.101.1.143IdentityfsVpnPolicyThe MIB module that describes managed objects of general use by the IPSEC Protocol.
1.3.6.1.4.1.10876.101.1.143.1NodefsVpnObjects
1.3.6.1.4.1.10876.101.1.143.1.1TablefsVpnTablenot-accessiblecurrentThis table contains the VPN association between a source and destination. It is consulted for authentication and ciphering of inbound and outbound datagrams. D…
1.3.6.1.4.1.10876.101.1.143.1.1.1RowfsVpnEntrynot-accessiblecurrentEach entry is a unique parameter to identify the mapping between a particular source and destination address. The entry specifies the authentication algorithm …
1.3.6.1.4.1.10876.101.1.143.1.1.1.1ColumnfsVpnPolicyNamenot-accessiblecurrentThis is the index for accessing Ip Security table entries.
1.3.6.1.4.1.10876.101.1.143.1.1.1.2ColumnfsVpnPolicyTyperead-writecurrentAn entity to identify the type of policy
1.3.6.1.4.1.10876.101.1.143.1.1.1.3ColumnfsVpnPolicyPriorityread-writecurrentAn entity to identify the priority of the Policy
1.3.6.1.4.1.10876.101.1.143.1.1.1.4ColumnfsVpnTunTermAddrTyperead-writecurrentThe tunnel termination IP address type. This object support only ipv4(1), ipv6(2) values.
1.3.6.1.4.1.10876.101.1.143.1.1.1.5ColumnfsVpnLocalTunTermAddrread-writecurrentThis address is matched with the local address in the packet during authentication of inbound and outbound datagrams.
1.3.6.1.4.1.10876.101.1.143.1.1.1.6ColumnfsVpnRemoteTunTermAddrread-writecurrentThis address is matched with the destination address in the packet during authentication of inbound and outbound datagrams.
1.3.6.1.4.1.10876.101.1.143.1.1.1.7ColumnfsVpnProtectNetworkTyperead-writecurrentThe local protected network address type. This object support only ipv4(1), ipv6(2) values.
1.3.6.1.4.1.10876.101.1.143.1.1.1.8ColumnfsVpnLocalProtectNetworkread-writecurrentThis address is used in identifying the source network for a given VPN policy.
1.3.6.1.4.1.10876.101.1.143.1.1.1.9ColumnfsVpnLocalProtectNetworkPrefixLenread-writecurrentThe length of the local protected network prefix.
1.3.6.1.4.1.10876.101.1.143.1.1.1.10ColumnfsVpnRemoteProtectNetworkread-writecurrentThis address is used in identifying the destination network for a given VPN policy.
1.3.6.1.4.1.10876.101.1.143.1.1.1.11ColumnfsVpnRemoteProtectNetworkPrefixLenread-writecurrentThe length of the remote protected network prefix.
1.3.6.1.4.1.10876.101.1.143.1.1.1.12ColumnfsVpnIkeSrcPortRangeread-writecurrentThis object specifies the Source port range for the Traffic Selectors for IKEv2.
1.3.6.1.4.1.10876.101.1.143.1.1.1.13ColumnfsVpnIkeDstPortRangeread-writecurrentThis object specifies the Destination port range for the Traffic Selectors for IKEv2.
1.3.6.1.4.1.10876.101.1.143.1.1.1.14ColumnfsVpnSecurityProtocolread-writecurrentSecurity protocol header used for authentication (AH) or (ESP).
1.3.6.1.4.1.10876.101.1.143.1.1.1.15ColumnfsVpnInboundSpiread-writecurrentThis is an arbitrary 32-bit value identifying the security association for this datagram. This also indicates the SPI for the inbound direction. The Security P…
1.3.6.1.4.1.10876.101.1.143.1.1.1.16ColumnfsVpnOutboundSpiread-writecurrentThis is an arbitrary 32-bit value identifying the security association for this datagram. This also indicates the SPI for the outbound direction. The Security …
1.3.6.1.4.1.10876.101.1.143.1.1.1.17ColumnfsVpnModeread-writecurrentThe supporting security association mode The security association mode must be configured as tunnel for a security gateway. A Host can be configured both in tr…
1.3.6.1.4.1.10876.101.1.143.1.1.1.18ColumnfsVpnAuthAlgoread-writecurrentThe authentication algorithm configured for the particular security association entry. Setting the algorithm to hmac-md5 (3), hmac-sha1(4),xcbcmac(5),hmac-sha-…
1.3.6.1.4.1.10876.101.1.143.1.1.1.19ColumnfsVpnAhKeyread-writecurrentThis is the key used for authentication when the algorithm configured is either hmac-md5 , hmac-sha1 ,xcbcmac,hmac-sha-256(12),hmac-sha-384(13) or hmac-sha-512…
1.3.6.1.4.1.10876.101.1.143.1.1.1.20ColumnfsVpnEncrAlgoread-writecurrentThe algorithm to be used for Encapsulation Security Payload (ESP) Header. This object is to be configured only if the Security protocol to be used is ESP. This…
1.3.6.1.4.1.10876.101.1.143.1.1.1.21ColumnfsVpnEspKeyread-writecurrentThis is the key used for encryption/decryption when the algorithm configured is either descbc,3descbc or aes128,aes192 or aes256.For 3descbc this object is use…
1.3.6.1.4.1.10876.101.1.143.1.1.1.22ColumnfsVpnAntiReplayread-writecurrentThe object is used for activating the anti replay functionality of the security protocols. This entity is used only for IPSEC-Manual
1.3.6.1.4.1.10876.101.1.143.1.1.1.23ColumnfsVpnPolicyFlagread-writecurrentThe choices that can be applied on any outbound/inbound datagrams.
1.3.6.1.4.1.10876.101.1.143.1.1.1.24ColumnfsVpnProtocolread-writecurrentThe Proto index value which uniquely identifies the protocol for which this Selector Table entry exists.In case of no specific protocol any can be used whose v…
1.3.6.1.4.1.10876.101.1.143.1.1.1.25ColumnfsVpnPolicyIntfIndexread-writecurrentThis is the interface for which the VPN policy is to be applied. The value zero indicates interface is not configured yet.
1.3.6.1.4.1.10876.101.1.143.1.1.1.26ColumnfsVpnIkePhase1HashAlgoread-writecurrentSHA - Specifies to use Secure Hash Algorithm (SHA) as the hash algorithm. SHA1 produces 160-bit hash values, SHA256 produces 256-bit hash values, SHA384 produc…
1.3.6.1.4.1.10876.101.1.143.1.1.1.27ColumnfsVpnIkePhase1EncryptionAlgoread-writecurrentSpecifies which encryption algorithm should be used in Policy negotiation
1.3.6.1.4.1.10876.101.1.143.1.1.1.28ColumnfsVpnIkePhase1DHGroupread-writecurrentDiffie-Hellman (DH) is a public key cryptography protocol that enables two parties to establish a shared secret over unsecured communications channels. It will…
1.3.6.1.4.1.10876.101.1.143.1.1.1.29ColumnfsVpnIkePhase1LocalIdTyperead-writecurrentThis is Identity Type for supported Local Node.
1.3.6.1.4.1.10876.101.1.143.1.1.1.30ColumnfsVpnIkePhase1LocalIdValueread-writecurrentThis is the value for the supported Local Node type of phase 1
1.3.6.1.4.1.10876.101.1.143.1.1.1.31ColumnfsVpnIkePhase1PeerIdTyperead-writecurrentThis is Peer Identity Type supported for phase 1 of the IKE negotiation.
1.3.6.1.4.1.10876.101.1.143.1.1.1.32ColumnfsVpnIkePhase1PeerIdValueread-writecurrentThis is the Peer Identity value for the supported peer type of phase 1. eg. for ipv4 151.100.10.10, for email abc@xyz.com
1.3.6.1.4.1.10876.101.1.143.1.1.1.33ColumnfsVpnIkePhase1LifeTimeTyperead-writecurrentSpecifies the IKE life time units.
1.3.6.1.4.1.10876.101.1.143.1.1.1.34ColumnfsVpnIkePhase1LifeTimeread-writecurrentEnter the duration, in fsVpnIkePhase1LifeTimeType, of the IKE security association (SA), after which the IKE SA expires and is re-negotiated. if you wish to sa…
1.3.6.1.4.1.10876.101.1.143.1.1.1.35ColumnfsVpnIkePhase1Moderead-writecurrentSpecifies the IKE Phase 1 mode, whether main or aggressive.
1.3.6.1.4.1.10876.101.1.143.1.1.1.36ColumnfsVpnIkePhase2AuthAlgoread-writecurrentSpecifies which hash algorithm to be used
1.3.6.1.4.1.10876.101.1.143.1.1.1.37ColumnfsVpnIkePhase2EspEncryptionAlgoread-writecurrentSpecifies which encryption algorithm should be used for ESP
1.3.6.1.4.1.10876.101.1.143.1.1.1.38ColumnfsVpnIkePhase2LifeTimeTyperead-writecurrentSpecifies the IPSec SA life time type.
1.3.6.1.4.1.10876.101.1.143.1.1.1.39ColumnfsVpnIkePhase2LifeTimeread-writecurrentSpecifies the IPsec security association (SA) lifetime in fsVpnIkePhase2LifeTimeType. The SA is re-negotiated after the time limit elapses.
1.3.6.1.4.1.10876.101.1.143.1.1.1.40ColumnfsVpnIkePhase2DHGroupread-writecurrentPerfect Forward Secrecy (PFS) generates and uses a unique session key for each encrypted exchange. The unique session key protects the exchange from subsequent…
1.3.6.1.4.1.10876.101.1.143.1.1.1.41ColumnfsVpnIkeVersionread-writecurrentThis object is used for configuring the IKE version - IKev1 (1) or IKEv2 (2) protocol to be used for key negotiation
1.3.6.1.4.1.10876.101.1.143.1.1.1.42ColumnfsVpnCertAlgoTyperead-writecurrentThis object is used for configuring the Authentication Algorithm - RSA (1) or DSA (2) to be used for authentication This object needs to configure as RSA (1) o…
1.3.6.1.4.1.10876.101.1.143.1.1.1.43ColumnfsVpnPolicyRowStatusread-createcurrentThis object is used to create and delete rows from the fsVpnTable.
1.3.6.1.4.1.10876.101.1.143.1.2TablefsVpnRaUsersTablenot-accessiblecurrentThis table is used to identify the remote access users when acting as a RAVPN Server
1.3.6.1.4.1.10876.101.1.143.1.2.1RowfsVpnRaUsersEntrynot-accessiblecurrentThis table is used for configuration of usernames and passwords for remote access users
1.3.6.1.4.1.10876.101.1.143.1.2.1.1ColumnfsVpnRaUserNamenot-accessiblecurrentUser Name is the index for accessing the Remote Users table
1.3.6.1.4.1.10876.101.1.143.1.2.1.2ColumnfsVpnRaUserSecretread-writecurrentPassword for the remote user
1.3.6.1.4.1.10876.101.1.143.1.2.1.3ColumnfsVpnRaUserRowStatusread-createcurrentThis object is used to create and delete rows in the fsVpnRaUsersTable.
1.3.6.1.4.1.10876.101.1.143.1.3TablefsVpnRaAddressPoolTablenot-accessiblecurrentThis table is used to allocated IP addresses to remote users using local address pool
1.3.6.1.4.1.10876.101.1.143.1.3.1RowfsVpnRaAddressPoolEntrynot-accessiblecurrentThis table is used for configuration of local address pool for the remote users. Start and end IP address should be specified for each pool
1.3.6.1.4.1.10876.101.1.143.1.3.1.1ColumnfsVpnRaAddressPoolNamenot-accessiblecurrentPool Name is the index for accessing the Remote Access Address Pool table
1.3.6.1.4.1.10876.101.1.143.1.3.1.2ColumnfsVpnRaAddressPoolAddrTyperead-writecurrentIP address type of the pool for remote users This object support only ipv4(1), ipv6(2) values.
1.3.6.1.4.1.10876.101.1.143.1.3.1.3ColumnfsVpnRaAddressPoolStartread-writecurrentStarting IP address of the pool for remote users
1.3.6.1.4.1.10876.101.1.143.1.3.1.4ColumnfsVpnRaAddressPoolEndread-writecurrentEnd IP address of the pool for remote users
1.3.6.1.4.1.10876.101.1.143.1.3.1.5ColumnfsVpnRaAddressPoolPrefixLenread-writecurrentThe prefix length of the address pool
1.3.6.1.4.1.10876.101.1.143.1.3.1.6ColumnfsVpnRaAddressPoolRowStatusread-createcurrentThis object is used to create and delete rows in the fsVpnRaAddressPoolTable.
1.3.6.1.4.1.10876.101.1.143.1.4TablefsVpnRemoteIdTablenot-accessiblecurrentThis table provides VPN tunnels remote users identities information. The remote identity and the preshared key (PSK) bindings are globally available to all the…
1.3.6.1.4.1.10876.101.1.143.1.4.1RowfsVpnRemoteIdEntrynot-accessiblecurrentA row in this table does not support 'notInService' and 'createAndGo'.
1.3.6.1.4.1.10876.101.1.143.1.4.1.1ColumnfsVpnRemoteIdTypenot-accessiblecurrentUser identity types supported by the gateway chosen to interpret the data of fsVpnRemoteIdValue object. Ip addresses should be represented with 'ipv4' type. A …
1.3.6.1.4.1.10876.101.1.143.1.4.1.2ColumnfsVpnRemoteIdValuenot-accessiblecurrentIt represents the value corresponding to the type mentioned in fsVpnRemoteIdType object. The maximum permitted length of an FQDN is 255 bytes.
1.3.6.1.4.1.10876.101.1.143.1.4.1.3ColumnfsVpnRemoteIdKeyread-writecurrentThis is the pre-shared key with the gateway. The PSK will be used by the gateway to authenticate the phase-I IKE transactions with this user.
1.3.6.1.4.1.10876.101.1.143.1.4.1.4ColumnfsVpnRemoteIdAuthTyperead-writecurrentIt represents the value corresponding to the Authentication method configured.
1.3.6.1.4.1.10876.101.1.143.1.4.1.5ColumnfsVpnRemoteIdStatusread-createcurrentUsed to add and delete the remote user identities. A value of 'createAndGo' is not supported because PSK is mandatory to authenticate the user.
1.3.6.1.4.1.10876.101.1.143.1.5TablefsVpnCertInfoTablenot-accessiblecurrentThis table provides certificates information that are used for peer authentication. The certificates are globally available to all the VPN tunnels and can be m…
1.3.6.1.4.1.10876.101.1.143.1.5.1RowfsVpnCertInfoEntrynot-accessiblecurrent'createAndGo' is not supported by this table.
1.3.6.1.4.1.10876.101.1.143.1.5.1.1ColumnfsVpnCertKeyStringnot-accessiblecurrentKey identity string supported by the gateway choosen to uniquely identify the certificate information.
1.3.6.1.4.1.10876.101.1.143.1.5.1.2ColumnfsVpnCertKeyTyperead-writecurrentIt represents the type of algorithm used to generate the key which is used to generate the certificate. RSA - Ron Rivest, Adi Shamir and Len Adleman Algorithm,…
1.3.6.1.4.1.10876.101.1.143.1.5.1.3ColumnfsVpnCertKeyFileNameread-writecurrentThis is the file in which the key used to generate the certificate is stored.
1.3.6.1.4.1.10876.101.1.143.1.5.1.4ColumnfsVpnCertFileNameread-writecurrentThis is the file in which the certificate information is stored. This will be used by the gateway to authenticate the phase-I IKE transactions with this user.
1.3.6.1.4.1.10876.101.1.143.1.5.1.5ColumnfsVpnCertEncodeTyperead-writecurrentIt represents the encoding type by which the certificate information are encoded PEM - Privacy Enhanced Mail encoding DER - Distinguished Encoding Rules encodi…
1.3.6.1.4.1.10876.101.1.143.1.5.1.6ColumnfsVpnCertStatusread-createcurrent'createAndGo' is not supported by this table.
1.3.6.1.4.1.10876.101.1.143.1.6TablefsVpnCaCertInfoTablenot-accessiblecurrentThis table provides Certificate Authority (CA) certificates information. The certificates are globally available to authorize all the VPN certificates and can …
1.3.6.1.4.1.10876.101.1.143.1.6.1RowfsVpnCaCertInfoEntrynot-accessiblecurrent'createAndGo is not supported by this table.
1.3.6.1.4.1.10876.101.1.143.1.6.1.1ColumnfsVpnCaCertKeyStringnot-accessiblecurrentKey identity string supported by the gateway chosen to uniquely identify the CA certificate information.
1.3.6.1.4.1.10876.101.1.143.1.6.1.2ColumnfsVpnCaCertFileNameread-writecurrentThis is the file in which the CA certificate information is stored. This will be used by the gateway to authorize the peer certificates used for security negot…
1.3.6.1.4.1.10876.101.1.143.1.6.1.3ColumnfsVpnCaCertEncodeTyperead-writecurrentIt represents the encoding type by which the certificate information are encoded PEM - Privacy Enhanced Mail encoding DER - Distinguished Encoding Rules encodi…
1.3.6.1.4.1.10876.101.1.143.1.6.1.4ColumnfsVpnCaCertStatusread-createcurrent'createAndGo' is not supported by this table.
1.3.6.1.4.1.10876.101.1.143.2NodefsVpnScalars
1.3.6.1.4.1.10876.101.1.143.2.1ScalarfsVpnGlobalStatusread-writecurrentThis object enables/disables the IPSEC processing administratively. By Default it is set to disable
1.3.6.1.4.1.10876.101.1.143.2.2ScalarfsVpnMaxTunnelsread-onlycurrentNumber of Maximum Tunnels supported by the VPN Module.
1.3.6.1.4.1.10876.101.1.143.2.3ScalarfsVpnIpPktsInread-onlycurrentTotal Number of Incoming Packets through VPN Module.
1.3.6.1.4.1.10876.101.1.143.2.4ScalarfsVpnIpPktsOutread-onlycurrentTotal Number of Outgoing Packets through VPN Module.
1.3.6.1.4.1.10876.101.1.143.2.5ScalarfsVpnPktsSecuredread-onlycurrentTotal Number of Packets Secured by VPN module.
1.3.6.1.4.1.10876.101.1.143.2.6ScalarfsVpnPktsDroppedread-onlycurrentTotal Number of Packets Dropped by VPN module.
1.3.6.1.4.1.10876.101.1.143.2.7ScalarfsVpnIkeSAsActiveread-onlycurrentNumber of Active IKE Security Associations in VPN module.
1.3.6.1.4.1.10876.101.1.143.2.8ScalarfsVpnIkeNegotiationsread-onlycurrentTotal number of IKE Security associations negotiated in VPN Module.
1.3.6.1.4.1.10876.101.1.143.2.9ScalarfsVpnIkeRekeysread-onlycurrentTotal number of IKE security associations Re-Keyed.
1.3.6.1.4.1.10876.101.1.143.2.10ScalarfsVpnIkeNegoFailedread-onlycurrentTotal number of failed IKE security association negotiations.
1.3.6.1.4.1.10876.101.1.143.2.11ScalarfsVpnIPSecSAsActiveread-onlycurrentNumber of Active IPSec Security Associations in VPN Module.
1.3.6.1.4.1.10876.101.1.143.2.12ScalarfsVpnIPSecNegotiationsread-onlycurrentNumber of Negotiated IPSec Security Associations in VPN Module.
1.3.6.1.4.1.10876.101.1.143.2.13ScalarfsVpnIPSecNegoFailedread-onlycurrentNumber of failed IPSec security association negotiations.
1.3.6.1.4.1.10876.101.1.143.2.14ScalarfsVpnTotalRekeysread-onlycurrentTotal Number of security associations Re-Keyed.
1.3.6.1.4.1.10876.101.1.143.2.15ScalarfsVpnRaServerread-writecurrentThis object enables/disables the RAVPN server. By Default it is set to enable(ie. Router will act as RAVPN Server)
1.3.6.1.4.1.10876.101.1.143.2.16ScalarfsVpnDummyPktGenread-writecurrentThis object is to enable/disable the dummy packet generation. Dummy Packet generation is part of Traffic Flow confidentiality and involves generation of packet…
1.3.6.1.4.1.10876.101.1.143.2.17ScalarfsVpnDummyPktParamread-writecurrentThis object is to specify the length of the Dummy packet.
1.3.6.1.4.1.10876.101.1.143.2.18ScalarfsIkeTraceOptionread-writecurrentThis object is used to enable Trace Statements in Ike Module. A FOUR BYTE integer is used for enabling the level of tracing. Each BIT in the four byte integer,…
1.3.6.1.4.1.10876.101.1.143.2.19ScalarfsIpsecTraceOptionread-writecurrentThis object is used to enable Trace Statements in Ipsec Module. A FOUR BYTE integer is used for enabling the level of tracing. Each BIT in the four byte intege…