MIB Viewer

JNX-IPSEC-MONITOR-MIB

94 objects
No module-level DESCRIPTION found.
OIDNameAccessStatusDescription
1.3.6.1.4.1.2636.3.22IdentityjnxIpSecMonitorMIB
1.3.6.1.4.1.2636.3.22.1NodejnxIpSecMIBObjects
1.3.6.1.4.1.2636.3.22.1.1NodejnxIpSecLevels
1.3.6.1.4.1.2636.3.22.1.1.1ScalarjnxIpSecMibLevelread-onlycurrentThe version of the IPsec MIB.
1.3.6.1.4.1.2636.3.22.1.2NodejnxIpSecPhaseOne
1.3.6.1.4.1.2636.3.22.1.2.1TablejnxIkeTunnelTablenot-accessiblecurrentThe IPsec Phase-1 Internet Key Exchange Tunnel Table. There is one entry in this table for each active IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.2636.3.22.1.2.1.1RowjnxIkeTunnelEntrynot-accessiblecurrentEach entry contains the attributes associated with an active IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.2636.3.22.1.2.1.1.1ColumnjnxIkeTunIndexnot-accessiblecurrentThe index of the IPsec Phase-1 IKE Tunnel Table. The value of the index is a number which begins at one and is incremented with each tunnel that is created. Th…
1.3.6.1.4.1.2636.3.22.1.2.1.1.2ColumnjnxIkeTunLocalRoleread-onlycurrentThe role of local peer identity. The Role of the local peer can be: 1. initiator. 2. or responder.
1.3.6.1.4.1.2636.3.22.1.2.1.1.3ColumnjnxIkeTunNegStateread-onlycurrentThe state of the current negotiation , It can be 1. matured 2. not matured
1.3.6.1.4.1.2636.3.22.1.2.1.1.4ColumnjnxIkeTunInitiatorCookieread-onlycurrentCookie as generated by the peer that initiated the IKE Phase-1 negotiation. This cookie is carried in the ISAKMP header.
1.3.6.1.4.1.2636.3.22.1.2.1.1.5ColumnjnxIkeTunResponderCookieread-onlycurrentCookie as generated by the peer responding to the IKE Phase-1 negotiation initiated by the remote peer. This cookie is carried in the ISAKMP header.
1.3.6.1.4.1.2636.3.22.1.2.1.1.6ColumnjnxIkeTunLocalIdTyperead-onlycurrentThe type of local peer identity. The local peer may be identified by: 1. an IP address, or 2. or a fully qualified domain name string. 3. or a distinguished na…
1.3.6.1.4.1.2636.3.22.1.2.1.1.7ColumnjnxIkeTunLocalIdValueread-onlycurrentThe value of the local peer identity. If the local peer type is an IP Address, then this is the IP Address used to identify the local peer. If the local peer t…
1.3.6.1.4.1.2636.3.22.1.2.1.1.8ColumnjnxIkeTunLocalGwAddrTyperead-onlycurrentThe IP address type of the local endpoint (gateway) for the IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.2636.3.22.1.2.1.1.9ColumnjnxIkeTunLocalGwAddrread-onlycurrentThe IP address of the local endpoint (gateway) for the IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.2636.3.22.1.2.1.1.10ColumnjnxIkeTunLocalCertNameread-onlycurrentName of the certificate used for authentication of the local tunnel endpoint. This object will have some valid value only if negotiated IKE authentication meth…
1.3.6.1.4.1.2636.3.22.1.2.1.1.11ColumnjnxIkeTunRemoteIdTyperead-onlycurrentThe type of remote peer identity. The remote peer may be identified by: 1. an IP address, or 2. or a fully qualified domain name string. 3. or a distinguished …
1.3.6.1.4.1.2636.3.22.1.2.1.1.12ColumnjnxIkeTunRemoteIdValueread-onlycurrentThe value of the remote peer identity. If the remote peer type is an IP Address, then this is the IP Address used to identify the remote peer. If the remote pe…
1.3.6.1.4.1.2636.3.22.1.2.1.1.13ColumnjnxIkeTunRemoteGwAddrTyperead-onlycurrentThe IP address type of the remote gateway (endpoint) for the IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.2636.3.22.1.2.1.1.14ColumnjnxIkeTunRemoteGwAddrread-onlycurrentThe IP address of the remote gateway (endpoint) for the IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.2636.3.22.1.2.1.1.15ColumnjnxIkeTunNegoModeread-onlycurrentThe negotiation mode of the IPsec Phase-1 IKE Tunnel.
1.3.6.1.4.1.2636.3.22.1.2.1.1.16ColumnjnxIkeTunDiffHellmanGrpread-onlycurrentThe Diffie Hellman Group used in IPsec Phase-1 IKE negotiations.
1.3.6.1.4.1.2636.3.22.1.2.1.1.17ColumnjnxIkeTunEncryptAlgoread-onlycurrentThe encryption algorithm used in IPsec Phase-1 IKE negotiations.
1.3.6.1.4.1.2636.3.22.1.2.1.1.18ColumnjnxIkeTunHashAlgoread-onlycurrentThe hash algorithm used in IPsec Phase-1 IKE negotiations.
1.3.6.1.4.1.2636.3.22.1.2.1.1.19ColumnjnxIkeTunAuthMethodread-onlycurrentThe authentication method used in IPsec Phase-1 IKE negotiations.
1.3.6.1.4.1.2636.3.22.1.2.1.1.20ColumnjnxIkeTunLifeTimeread-onlycurrentThe negotiated LifeTime of the IPsec Phase-1 IKE Tunnel in seconds.
1.3.6.1.4.1.2636.3.22.1.2.1.1.21ColumnjnxIkeTunActiveTimeread-onlycurrentThe length of time the IPsec Phase-1 IKE tunnel has been active in hundredths of seconds.
1.3.6.1.4.1.2636.3.22.1.2.1.1.22ColumnjnxIkeTunInOctetsread-onlycurrentThe total number of octets received by this IPsec Phase-1 IKE security association.
1.3.6.1.4.1.2636.3.22.1.2.1.1.23ColumnjnxIkeTunInPktsread-onlycurrentThe total number of packets received by this IPsec Phase-1 IKE security association.
1.3.6.1.4.1.2636.3.22.1.2.1.1.24ColumnjnxIkeTunOutOctetsread-onlycurrentThe total number of octets sent by this IPsec Phase-1 IKE security association.
1.3.6.1.4.1.2636.3.22.1.2.1.1.25ColumnjnxIkeTunOutPktsread-onlycurrentThe total number of packets sent by this IPsec Phase-1 IKE security association.
1.3.6.1.4.1.2636.3.22.1.3NodejnxIpSecPhaseTwo
1.3.6.1.4.1.2636.3.22.1.3.1TablejnxIpSecTunnelTablenot-accessiblecurrentThe IPsec Phase-2 Tunnel Table. There is one entry in this table for each active IPsec Phase-2 Tunnel.
1.3.6.1.4.1.2636.3.22.1.3.1.1RowjnxIpSecTunnelEntrynot-accessiblecurrentEach entry contains the attributes associated with an active IPsec Phase-2 Tunnel.
1.3.6.1.4.1.2636.3.22.1.3.1.1.1ColumnjnxIpSecTunIndexnot-accessiblecurrentThe index of the IPsec Phase-2 Tunnel Table. The value of the index is a number which begins at one and is incremented with each tunnel that is created. The va…
1.3.6.1.4.1.2636.3.22.1.3.1.1.2ColumnjnxIpSecRuleNameread-onlycurrentName of the rule configured in IPSec configuration.
1.3.6.1.4.1.2636.3.22.1.3.1.1.3ColumnjnxIpSecTermNameread-onlycurrentName of the term configured under IPSec rule.
1.3.6.1.4.1.2636.3.22.1.3.1.1.4ColumnjnxIpSecTunLocalGwAddrTyperead-onlycurrentThe IP address type of the local gateway (endpoint) for the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.2636.3.22.1.3.1.1.5ColumnjnxIpSecTunLocalGwAddrread-onlycurrentThe IP address of the local gateway (endpoint) for the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.2636.3.22.1.3.1.1.6ColumnjnxIpSecTunRemoteGwAddrTyperead-onlycurrentThe IP address type of the remote gateway (endpoint) for the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.2636.3.22.1.3.1.1.7ColumnjnxIpSecTunRemoteGwAddrread-onlycurrentThe IP address of the remote gateway (endpoint) for the IPsec Phase-2 Tunnel.
1.3.6.1.4.1.2636.3.22.1.3.1.1.8ColumnjnxIpSecTunLocalProxyIdread-onlycurrentIdentifier for the local end.
1.3.6.1.4.1.2636.3.22.1.3.1.1.9ColumnjnxIpSecTunRemoteProxyIdread-onlycurrentIdentifier for the remote end.
1.3.6.1.4.1.2636.3.22.1.3.1.1.10ColumnjnxIpSecTunKeyTyperead-onlycurrentThe type of key used by the IPsec Phase-2 Tunnel. It can be one of the following two types: - IKE negotiated - Manually installed
1.3.6.1.4.1.2636.3.22.1.3.1.1.11ColumnjnxIpSecRemotePeerTyperead-onlycurrentThe type of the remote peer gateway (endpoint). It can be one of the following two types: - static (Remote peer whose IP address is known beforehand) - dynamic…
1.3.6.1.4.1.2636.3.22.1.3.1.1.12ColumnjnxIpSecTunMturead-onlycurrentMTU value of this Phase-2 tunnel.
1.3.6.1.4.1.2636.3.22.1.3.1.1.13ColumnjnxIpSecTunOutEncryptedBytesread-onlycurrentNumber of bytes encrypted by this Phase-2 tunnel.
1.3.6.1.4.1.2636.3.22.1.3.1.1.14ColumnjnxIpSecTunOutEncryptedPktsread-onlycurrentNumber of packets encrypted by this Phase-2 tunnel.
1.3.6.1.4.1.2636.3.22.1.3.1.1.15ColumnjnxIpSecTunInDecryptedBytesread-onlycurrentNumber of bytes decrypted by this Phase-2 tunnel.
1.3.6.1.4.1.2636.3.22.1.3.1.1.16ColumnjnxIpSecTunInDecryptedPktsread-onlycurrentNumber of packets decrypted by this Phase-2 tunnel.
1.3.6.1.4.1.2636.3.22.1.3.1.1.17ColumnjnxIpsSecTunAHInBytesread-onlycurrentNumber of incoming bytes authenticated using AH by this Phase-2 tunnel.
1.3.6.1.4.1.2636.3.22.1.3.1.1.18ColumnjnxIpsSecTunAHInPktsread-onlycurrentNumber of incoming packets authenticated using AH by this Phase-2 tunnel.
1.3.6.1.4.1.2636.3.22.1.3.1.1.19ColumnjnxIpsSecTunAHOutBytesread-onlycurrentNumber of outgoing bytes applied AH by this Phase-2 tunnel.
1.3.6.1.4.1.2636.3.22.1.3.1.1.20ColumnjnxIpsSecTunAHOutPktsread-onlycurrentNumber of outgoing packets applied AH by this Phase-2 tunnel.
1.3.6.1.4.1.2636.3.22.1.3.1.1.21ColumnjnxIpSecTunReplayDropPktsread-onlycurrentNumber of packets dropped by this Phase-2 tunnel due to anti replay check failure.
1.3.6.1.4.1.2636.3.22.1.3.1.1.22ColumnjnxIpSecTunAhAuthFailsread-onlycurrentNumber of packets received by this Phase-2 tunnel that failed AH authentication.
1.3.6.1.4.1.2636.3.22.1.3.1.1.23ColumnjnxIpSecTunEspAuthFailsread-onlycurrentNumber of packets received by this Phase-2 tunnel that failed ESP authentication.
1.3.6.1.4.1.2636.3.22.1.3.1.1.24ColumnjnxIpSecTunDecryptFailsread-onlycurrentNumber of packets received by this Phase-2 tunnel that failed decryption.
1.3.6.1.4.1.2636.3.22.1.3.1.1.25ColumnjnxIpSecTunBadHeadersread-onlycurrentNumber of packets received by this Phase-2 tunnel that failed due to bad headers.
1.3.6.1.4.1.2636.3.22.1.3.1.1.26ColumnjnxIpSecTunBadTrailersread-onlycurrentNumber of packets received by this Phase-2 tunnel that failed due to bad ESP trailers.
1.3.6.1.4.1.2636.3.22.1.3.1.1.27ColumnjnxIpSecTunDroppedPktsread-onlycurrentTotal number of dropped packets for this Phase-2 tunnel.
1.3.6.1.4.1.2636.3.22.1.3.2TablejnxIpSecSaTablenot-accessiblecurrentThe IPsec Phase-2 Security Association Table. This table identifies the structure (in terms of component SAs) of each active Phase-2 IPsec tunnel. This table c…
1.3.6.1.4.1.2636.3.22.1.3.2.1RowjnxIpSecSaEntrynot-accessiblecurrentEach entry contains the attributes associated with active and expiring IPsec Phase-2 security associations.
1.3.6.1.4.1.2636.3.22.1.3.2.1.1ColumnjnxIpSecSaProtocolnot-accessiblecurrentThe index, represents the security protocol (AH, ESP or IPComp) for which this security association was setup.
1.3.6.1.4.1.2636.3.22.1.3.2.1.2ColumnjnxIpSecSaIndexnot-accessiblecurrentThe index, in the context of the IPsec tunnel ipSecTunIndex, of the security association represented by this table entry. The value of this index is a number w…
1.3.6.1.4.1.2636.3.22.1.3.2.1.3ColumnjnxIpSecSaInSpiread-onlycurrentThe value of the incoming SPI.
1.3.6.1.4.1.2636.3.22.1.3.2.1.4ColumnjnxIpSecSaOutSpiread-onlycurrentThe value of the outgoing SPI.
1.3.6.1.4.1.2636.3.22.1.3.2.1.5ColumnjnxIpSecSaInAuxSpiread-onlycurrentThe value of the incoming auxiliary SPI. This is valid for AH and ESP bundles.
1.3.6.1.4.1.2636.3.22.1.3.2.1.6ColumnjnxIpSecSaOutAuxSpiread-onlycurrentThe value of the outgoing auxiliary SPI. This is valid for AH and ESP bundles.
1.3.6.1.4.1.2636.3.22.1.3.2.1.7ColumnjnxIpSecSaTyperead-onlycurrentThis field represents the type of security associations which can be either manual or dynamic
1.3.6.1.4.1.2636.3.22.1.3.2.1.8ColumnjnxIpSecSaEncapModeread-onlycurrentThe encapsulation mode used by an IPsec Phase-2 Tunnel.
1.3.6.1.4.1.2636.3.22.1.3.2.1.9ColumnjnxIpSecSaLifeSizeread-onlycurrentThe negotiated LifeSize of the IPsec Phase-2 Tunnel in kilobytes.
1.3.6.1.4.1.2636.3.22.1.3.2.1.10ColumnjnxIpSecSaLifeTimeread-onlycurrentThe negotiated LifeTime of the IPsec Phase-2 Tunnel in seconds.
1.3.6.1.4.1.2636.3.22.1.3.2.1.11ColumnjnxIpSecSaActiveTimeread-onlycurrentThe length of time the IPsec Phase-2 Tunnel has been active in seconds.
1.3.6.1.4.1.2636.3.22.1.3.2.1.12ColumnjnxIpSecSaLifeSizeThresholdread-onlycurrentThe security association LifeSize refresh threshold in kilobytes.
1.3.6.1.4.1.2636.3.22.1.3.2.1.13ColumnjnxIpSecSaLifeTimeThresholdread-onlycurrentThe security association LifeTime refresh threshold in seconds.
1.3.6.1.4.1.2636.3.22.1.3.2.1.14ColumnjnxIpSecSaEncryptAlgoread-onlycurrentThe Encryption algorithm used to encrypt the packets which can be either es-cbc or 3des-cbc.
1.3.6.1.4.1.2636.3.22.1.3.2.1.15ColumnjnxIpSecSaAuthAlgoread-onlycurrentThe algorithm used for authentication of packets which can be hmac-md5-96 or hmac-sha1-96
1.3.6.1.4.1.2636.3.22.1.3.2.1.16ColumnjnxIpSecSaStateread-onlycurrentThis column represents the status of the security association represented by this table entry. If the status of the SA is 'active', the SA is ready for active …
Type Definitions
NameSyntaxStatusDescription
JnxAuthAlgoINTEGER{ unknown(0), hmacMd5(2), hmacSha(3), hmacSha256(4) }currentThe authentication algorithm used by a security association of an IPsec Phase-2 Tunnel.
JnxDiffHellmanGrpINTEGER { unknown(0), modp768(1), modp1024(2), modp1536(5), modp2048(14), ecmodp256(19), ecmodp384(20) }currentThe Diffie Hellman Group used in negotiations. modp768 modp1024 modp1536 modp2048 ec-modp256 ec-modp384
JnxEncapModeINTEGER{ unknown(0), tunnel(1), transport(2) }currentThe encapsulation mode used by an IPsec Phase-2 Tunnel.
JnxEncryptAlgoINTEGER { espDes(1), esp3des(2), espNull(3), espAes128 (4), espAes192 (5), espAes256 (6) }currentThe encryption algorithm used in negotiations.
JnxIkeAuthMethodINTEGER { preSharedKey(1), dssSignature(2), rsaSignature(3), rsaEncryption(4), revRsaEncryption(5) }currentThe authentication method used in IPsec Phase-1 IKE negotiations.
JnxIkeHashAlgoINTEGER { md5(1), sha(2), sha256(3), sha384(4) }currentThe hash algorithm used in IPsec Phase-1 IKE negotiations.
JnxIkeNegoModeINTEGER { main(1), aggressive(2), ikev2(3) }currentThe IPsec Phase-1 IKE negotiation mode.
JnxIkeNegStateINTEGER { matured(1), notmatured(2) }currentState of the Phase-1 IKE negotiation.
JnxIkePeerRoleINTEGER { initiator(1), responder(2) }currentRole of the local endpoint in negotiating the IPsec Phase-1 IKE security association. It can be either Initiator or Responder.
JnxIkePeerTypeINTEGER { unknown(0), idIpv4Addr(1), idFqdn(2), idDn(3) }currentThe type of IPsec Phase-1 IKE peer identity. The IKE peer may be identified by one of the ID types defined in IPSEC DOI.
JnxKeyTypeINTEGER{ unknown(0), keyIke(1), keyManual(2) }currentThe type of key used by an IPsec Phase-2 Tunnel.
JnxRemotePeerTypeINTEGER { unknown(0), static(1), dynamic(2) }currentThe type of the remote peer gateway (endpoint). It can be one of the following two types: - static (Remote peer whose IP address is known beforehand) - dynamic (Remote peer whose IP address is not known beforehand)
JnxSATypeINTEGER { unknown(0), manual(1), dynamic(2) }currentSA Type manual or dynamic
JnxSpiUnsigned32 (256..4294967295)currentThe type of the SPI associated with IPsec Phase-2 security associations.