ONEACCESS-GDOI-MIB
34 objects
This MIB module defines objects for managing the GDOI protocol
Imported Objects
| ONEACCESS-GLOBAL-REG | oacExpIMManagement |
| SNMPv2-CONF | MODULE-COMPLIANCE NOTIFICATION-GROUP OBJECT-GROUP |
| SNMPv2-SMI | Counter32 MODULE-IDENTITY NOTIFICATION-TYPE OBJECT-TYPE Unsigned32 |
| SNMPv2-TC | DisplayString TEXTUAL-CONVENTION |
| OID | Name | Access | Status | Description |
|---|---|---|---|---|
| 1.3.6.1.4.1.13191.10.3.4.1224 | IdentityoacExpIMGdoiMIB | 92140 | This MIB module defines objects for managing the GDOI protocol | |
| 1.3.6.1.4.1.13191.10.3.4.1224.1 | NodeoacGdoiMIBObjects | |||
| 1.3.6.1.4.1.13191.10.3.4.1224.1.1 | TableoacGdoiGroupTable | not-accessible | current | A table of information regarding GDOI Groups in use on the network device being queried. |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.1.1 | RowoacGdoiGroupEntry | not-accessible | current | An entry containing GDOI Group information, uniquely identified by the GDOI Group ID. |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.1.1.1 | ColumnoacGdoiGroupName | read-only | current | The string-readable name configured for or given to a GDOI Group. |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.1.1.2 | ColumnoacGdoiGroupIdType | read-only | current | The Identification Type Value used to parse a GDOI Group ID. The GDOI RFC 3547 defines the types that can be used as a GDOI Group ID, and RFC 4306 defines all … |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.1.1.3 | ColumnoacGdoiGroupIdValue | read-only | current | The value of a Group ID with its type indicated by the oacGdoiGroupIdType. Use the oacGdoiGroupIdType to parse the Group ID correctly. This Group ID value is s… |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.2 | NodeoacGdoiGm | |||
| 1.3.6.1.4.1.13191.10.3.4.1224.1.2.2 | TableoacGdoiGmTable | not-accessible | current | A table of information regarding GDOI Group Members (GMs) locally configured on the network device being queried. Note that Local Group Members may or may not … |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.2.2.1 | RowoacGdoiGmEntry | not-accessible | current | An entry containing Local GDOI Group Member information, uniquely identified by Group & GM IDs. Because the Group Member is Local to the network device being q… |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.2.2.1.1 | ColumnoacGdoiGmIdType | read-only | current | The Identification Type Value used to parse the identity information for a Initiator or Group Member. RFC 4306 defines all valid types that can be used as an i… |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.2.2.1.2 | ColumnoacGdoiGmIdValue | read-only | current | The value of the identity information for a Group Member with its type indicated by the oacGdoiGmIdType. Use the oacGdoiGmIdType to parse the Group Member ID c… |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.2.2.1.3 | ColumnoacGdoiGmRegKeyServerIdValue | read-only | current | The value of the identity information for this Group Member's registered Key Server with its type indicated by the oacGdoiGmRegKeyServerIdType. Use the oacGdoi… |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.2.2.1.4 | ColumnoacGdoiGmActiveKEK | read-only | current | The SPI of the Key Encryption Key (KEK) that is currently being used by the Group Member to authenticate & decrypt a rekey from a GROUPKEY-PUSH message. |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.2.2.1.5 | ColumnoacGdoiGmRekeysReceived | read-only | current | The sequence number of the last rekey successfully received from this Group Member's registered Key Server. |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.3 | NodeoacGdoiPolicy | |||
| 1.3.6.1.4.1.13191.10.3.4.1224.1.3.2 | TableoacGdoiGmKekTable | not-accessible | current | A table of information regarding GDOI Key Encryption Key (KEK) Security Associations (SAs) currently installed for GDOI entities acting as Group Members on the… |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.3.2.1 | RowoacGdoiGmKekEntry | not-accessible | current | An entry containing the attributes associated with a GDOI KEK SA, uniquely identified by the Group ID, Group Member (GM) ID, & SPI value assigned by the GM's r… |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.3.2.1.1 | ColumnoacGdoiGmKekSPI | read-only | current | The value of the Security Parameter Index (SPI) of a KEK SA. The SPI must be the ISAKMP Header cookie pair where the first 8 octets become the 'Initiator Cooki… |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.3.2.1.2 | ColumnoacGdoiGmKekSrcIdValue | read-only | current | The value of the identity information for the source of a KEK SA with its type indicated by the oacGdoiGmKekSrcIdType. Use the oacGdoiGmKekSrcIdType to parse t… |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.3.2.1.3 | ColumnoacGdoiGmKekDstIdValue | read-only | current | The value of the identity information for the destination of a KEK SA (multicast rekey address) with its type indicated by oacGdoiGmKekDstIdType. Use the oacGd… |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.3.2.1.4 | ColumnoacGdoiGmKekEncryptAlg | read-only | current | The value of the KEK_ALGORITHM which specifies the encryption algorithm used with the KEK SA. A GDOI implementaiton must support KEK_ALG_3DES. Following are th… |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.3.2.1.5 | ColumnoacGdoiGmKekEncryptKeyLength | read-only | current | The value of the KEK_KEY_LENGTH which specifies the KEK Algorithm key length (in bits). |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.3.2.1.6 | ColumnoacGdoiGmKekSigHashAlg | read-only | current | The value of the SIG_HASH_ALGORITHM which specifies the SIG payload hash algorithm. This is not required (i.e. could have a value of zero) if the SIG_ALGORITHM… |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.3.2.1.7 | ColumnoacGdoiGmKekSigAlg | read-only | current | The value of the SIG_ALGORITHM which specifies the SIG payload signature algorithm. A GDOI implementation must support SIG_ALG_RSA |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.3.2.1.8 | ColumnoacGdoiGmKekSigKeyLength | read-only | current | The value of the SIG_KEY_LENGTH which specifies the length of the SIG payload key. |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.3.2.1.9 | ColumnoacGdoiGmKekOriginalLifetime | read-only | current | The value of the KEK_KEY_LIFETIME which specifies the maximum time for which a KEK is valid. The GCKS may refresh the KEK at any time before the end of the val… |
| 1.3.6.1.4.1.13191.10.3.4.1224.1.3.2.1.10 | ColumnoacGdoiGmKekRemainingLifetime | read-only | current | The value of the remaining time for which a KEK is valid. The value is a four (4) octet (32-bit) number which begins at the value of oacGdoiGmKekOriginalLifeti… |
Type Definitions
| Name | Syntax | Status | Description |
|---|---|---|---|
| OacGdoiHashAlogrithm | INTEGER { md5(1), sha1(2) } | current | A textual convention indicating the identifier of the hash algorithm being used. |
| OacGdoiIdentificationType | INTEGER { keyID(1), ipv4(2) } | current | A textual convention indicating the type of value used to identify a GDOI entity (i.e. Group, or Group Member). Following are the Identification Type Values: ID Type Value ID_KEY_ID 1 ID_IPV4_ADDR 2 Following are the ma… |
| OacGdoiIdentificationValue | OCTET STRING (SIZE (0..16)) | current | A textual convention indicating the actual value of used to identify a GDOI entity (i.e. Group or Group Member). The value of the oacGdoiIdentificationValue object can be parsed based on the value of the associated oacG… |
| OacGdoiKEKEncryptionAlgorithm | INTEGER { enc-des(1), enc-3des(2), enc-aes(3) } | current | A textual convention indicating the identifier of the KEK encryption algorithm being used |
| OacGdoiSignatureMethod | INTEGER { rsa(1), dss(2), ecdss(3) } | current | A textual convention indicating the identifier of the integirty algorithm being used |
| OacGdoiSPI | OCTET STRING (SIZE (32)) | current | A textual convention indicating a SPI (Security Parameter Index) |