MIB Viewer

RUCKUS-AUTH-MIB

205 objects
Management Information for configuration/querying of Flexible authentication which consists of 802.1X, MAC-Auth and Web-Auth. It is grouped into five MIBs - 1. Global level Auth configuration 2. Global level Dot1x configuration 3. Global level MacAuth configuration 4. Global level WebAuth configuration 5. Port level Auth configuration 6. Auth Session information 7. Auth Session Stats information 8. Dot1x Auth Session Stats information Copyright 1996-2019 Ruckus Wireless, Inc. All rights reserved. This Ruckus Wireless, Inc SNMP MIB Specification embodies Ruckus Wireless, Inc' confidential and proprietary intellectual property. Ruckus Wireless, Inc retains all title and ownership in the Specification, including any revisions. This Specification is supplied AS IS, and Ruckus Wireless, Inc makes no warranty, either express or implied, as to the use, operation, condition, or performance of the specification, and any unintended consequence it may on the user environment.
OIDNameAccessStatusDescription
1.3.6.1.4.1.1991.1.1.3.44IdentityruckusAuthMIBManagement Information for configuration/querying of Flexible authentication which consists of 802.1X, MAC-Auth and Web-Auth. It is grouped into five MIBs - 1.…
1.3.6.1.4.1.1991.1.1.3.44.0NoderuckusAuthNotification
1.3.6.1.4.1.1991.1.1.3.44.0.1NotificationruckusAuthPortAuthorizedNotifcurrentThis notification is sent if a 802.1x supplicant is detected and authenticated successfully with supplicant getting assigned a VLAN.
1.3.6.1.4.1.1991.1.1.3.44.0.2NotificationruckusAuthPortUnauthorizedNotifcurrentThis notification is sent if a 802.1x supplicant had logged off or session is cleared for other reasons.
1.3.6.1.4.1.1991.1.1.3.44.0.3NotificationruckusAuthMacAuthorizedNotifcurrentThis notification is sent if a non-802.1x client is detected and authenticated successfully with client/device getting assigned a VLAN.
1.3.6.1.4.1.1991.1.1.3.44.0.4NotificationruckusAuthMacUnauthorizedNotifcurrentThis notification is sent if a non-802.1x client had logged off or session is cleared for other reasons.
1.3.6.1.4.1.1991.1.1.3.44.0.5NotificationruckusAuthAclFailNotifcurrentThis notification is sent if a an ACL counldn't be applied for authenticated client, resulting the client in authentication failure.
1.3.6.1.4.1.1991.1.1.3.44.1NoderuckusAuthObjects
1.3.6.1.4.1.1991.1.1.3.44.1.1NoderuckusAuthConfig
1.3.6.1.4.1.1991.1.1.3.44.1.1.1ScalarruckusAuthDefaultVlanread-onlycurrentThis default VLAN is used to place all the FlexAuth enabled ports, so this VLAN acts as a VLAN for the clients to belong to, when authentication server doesn't…
1.3.6.1.4.1.1991.1.1.3.44.1.1.2ScalarruckusAuthVoiceVlanread-onlycurrentThis voice VLAN is used to advertise through LLDP/CDP on the ports, when connected devices are detected as Phones and authentication server doesn't assign any …
1.3.6.1.4.1.1991.1.1.3.44.1.1.3ScalarruckusAuthCriticalVlanread-onlycurrentThis VLAN is used to place the clients, when the authentication server times out and the timeout action is configired as 'critical', so the clients have limite…
1.3.6.1.4.1.1991.1.1.3.44.1.1.4ScalarruckusAuthRestrictVlanread-onlycurrentThis VLAN is used to place the clients, when the clients fail the authentication and the failure action is configured as 'restrict', so the clients have limite…
1.3.6.1.4.1.1991.1.1.3.44.1.1.5ScalarruckusAuthEnableread-onlycurrentSpecifies, which authentication methods are enabled globally. Unless the method is enabled globally, the same can't be enabled at port level. A bit field of '1…
1.3.6.1.4.1.1991.1.1.3.44.1.1.6ScalarruckusAuthModeread-onlycurrentSpecifies the authentication mode for all the FlexAuth enabled ports.
1.3.6.1.4.1.1991.1.1.3.44.1.1.7ScalarruckusAuthMethodsread-onlycurrentSpecifies which authentication methods to be attempted in series of methods for all FlexAuth enabled ports.
1.3.6.1.4.1.1991.1.1.3.44.1.1.8ScalarruckusAuthMaxSessionsread-onlycurrentSpecifies the maximum number of authenticated clients allowed on a port. This doesn't include the clients allowed due to authentication failure and timeout pol…
1.3.6.1.4.1.1991.1.1.3.44.1.1.9ScalarruckusAuthFailActionread-onlycurrentSpecifies the action to be taken, when the clients fail the authentication.
1.3.6.1.4.1.1991.1.1.3.44.1.1.10ScalarruckusAuthTimeoutActionread-onlycurrentSpecifies the action to be taken, when the authentication server times out.
1.3.6.1.4.1.1991.1.1.3.44.1.1.11ScalarruckusAuthReauthEnableread-onlycurrentThe reauthentication control for all the FlexAuth enabled ports. Setting this object to 'enabled' causes every FlexAuth enabled port to reauthenticate the devi…
1.3.6.1.4.1.1991.1.1.3.44.1.1.12ScalarruckusAuthReauthPeriodread-onlycurrentHow often to re-authenticates clients, when periodic re-authentication is enabled.
1.3.6.1.4.1.1991.1.1.3.44.1.1.13ScalarruckusAuthReauthTimeoutread-onlycurrentHow often to re-authenticates clients, when the clients were allowed due to authentication server timeout. Value of 0 disables the re-authentication.
1.3.6.1.4.1.1991.1.1.3.44.1.1.14ScalarruckusAuthIdleTimeoutread-onlycurrentSpecifies the time to keep the sessions in the Ruckus device, after the inactivity detection time expired in the hardware. If the clients start the traffic in …
1.3.6.1.4.1.1991.1.1.3.44.1.1.15ScalarruckusAuthDeniedTimeoutread-onlycurrentSpecifies the time to keep the denied sessions in the Ruckus device for the clients which are blocked as they failed authentication. When the clients start the…
1.3.6.1.4.1.1991.1.1.3.44.1.1.16ScalarruckusAuthAgingread-onlycurrentSpecifies, if denied and permitted sessions are enabled or disabled for aging. Aging is enabled by default.
1.3.6.1.4.1.1991.1.1.3.44.1.1.17ScalarruckusAuthDefaultV4IngressAclread-onlycurrentSpecifies the default User Access List (ACL) applied in the Ingress direction for the IPv4 traffic for sessins when ACLs are not dynamically assigned through R…
1.3.6.1.4.1.1991.1.1.3.44.1.1.18ScalarruckusAuthDefaultV4EgressAclread-onlycurrentSpecifies the default User Access List (ACL) applied in the Egress direction for the IPv4 traffic for sessins when ACLs are not dynamically assigned through RA…
1.3.6.1.4.1.1991.1.1.3.44.1.1.19ScalarruckusAuthDefaultV6IngressAclread-onlycurrentSpecifies the default User Access List (ACL) applied in the Ingress direction for the IPv6 traffic for sessins when ACLs are not dynamically assigned through R…
1.3.6.1.4.1.1991.1.1.3.44.1.1.20ScalarruckusAuthDefaultV6EgressAclread-onlycurrentSpecifies the default User Access List (ACL) applied in the Egress direction for the IPv6 traffic for sessins when ACLs are not dynamically assigned through RA…
1.3.6.1.4.1.1991.1.1.3.44.1.2NoderuckusDot1xAuthConfig
1.3.6.1.4.1.1991.1.1.3.44.1.2.1ScalarruckusDot1xQuietPeriodread-onlycurrentWhen the Ruckus device is unable to authenticate the Client, the amount of time the Ruckus device waits before trying again.
1.3.6.1.4.1.1991.1.1.3.44.1.2.2ScalarruckusDot1xTxPeriodread-onlycurrentWhen a Client does not send back an EAP(Extensible Authentication Protocol)- response/identity frame, the amount of time the Ruckus device waits before retrans…
1.3.6.1.4.1.1991.1.1.3.44.1.2.3ScalarruckusDot1xSuppTimeoutread-onlycurrentWhen a supplicant (Client) does not respond to an EAP-request frame, the amount of time before the Ruckus device retransmits the frame.
1.3.6.1.4.1.1991.1.1.3.44.1.2.4ScalarruckusDot1xMaxReqread-onlycurrentThe number of times the Ruckus device retransmits an EAP-request/identity request frame if it does not receive an EAP-response/identity response frame from the…
1.3.6.1.4.1.1991.1.1.3.44.1.2.5ScalarruckusDot1xMaxReauthReqread-onlycurrentThe number of re-authentication attempts that are permitted before the port becomes Unauthorized.
1.3.6.1.4.1.1991.1.1.3.44.1.2.6ScalarruckusDot1xGuestVlanread-onlycurrentThis VLAN is used to place the clients, when the supplicant/client times out as it's not capable of IEEE-802.1X authentication protocol. A value of zero for th…
1.3.6.1.4.1.1991.1.1.3.44.1.2.7ScalarruckusDot1xMacAuthOverrideread-onlycurrentSpecifies if the MAC-Authentication should be tried next when a client fails authentication with Dot1x authentication method. This may be required when devices…
1.3.6.1.4.1.1991.1.1.3.44.1.3NoderuckusMacAuthConfig
1.3.6.1.4.1.1991.1.1.3.44.1.3.1ScalarruckusMacAuthPasswordFormatread-onlycurrentSpecifies the format to be used for MAC address, which is used as credential in MAC-authentication. As MAC addresses are represented in different formats, all …
1.3.6.1.4.1.1991.1.1.3.44.1.3.2ScalarruckusMacAuthPasswordOverrideread-onlycurrentSpecifies the password to be used for all MAC- authentication clients. This is normally of 0 length string, which means the client MAC address is used as the p…
1.3.6.1.4.1.1991.1.1.3.44.1.3.3ScalarruckusMacAuthDot1xOverrideread-onlycurrentSpecifies if the Dot1x should be tried next when a client fails authentication with MAC-Authentication method. This may be required when devices are Dot1x capa…
1.3.6.1.4.1.1991.1.1.3.44.1.3.4ScalarruckusMacAuthDot1xEnableread-onlycurrentSpecifies if the Dot1x should be tried next when a client succeeds authentication with MAC-Authentication method. This may be required when devices are not Dot…
1.3.6.1.4.1.1991.1.1.3.44.1.4NoderuckusWebAuthConfig
1.3.6.1.4.1.1991.1.1.3.44.1.4.1TableruckusWebAuthTablenot-accessiblecurrentA table that allows configuration of WebAuth for a specified VLAN. WebAuth is configured at the VLAN level unlike MAC-Auth and Dot1x at the port level. An entr…
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1RowruckusWebAuthEntrynot-accessiblecurrentAn entry of WebAuth configuration.
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.1ColumnruckusWebAuthVlannot-accessiblecurrentSpecifies the VLAN, this configuration entry applies to.
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.2ColumnruckusWebAuthEnableread-onlycurrentSpecifies if Web-Auth is enabled or disabled.
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.3ColumnruckusWebAuthModeread-onlycurrentSpecifies the authentication mode used for authenticating the users. none - no authentication is performed passcode - passcode based authentication, where the …
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.4ColumnruckusWebAuthMethodread-onlycurrentWhen the AuthMode is configured as password, this specifies the order for performing authentication. radius - RADIUS server for authentication local - Local us…
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.5ColumnruckusWebAuthMaxHostsread-onlycurrentSpecifies the maximum number of hosts allowed to be authenticated. Value 0 means no limit.
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.6ColumnruckusWebAuthMaxAuthAttemptsread-onlycurrentSpecifies the maximum number of attempts allowed during the auth cycle, after which the user is blocked for configured amount of time, before next authenticati…
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.7ColumnruckusWebAuthReauthTimeread-onlycurrentSpecifies the re-authentication time, so the authenticated users can be periodically reauthenticated after the timeout specified through this object. Value 0 m…
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.8ColumnruckusWebAuthCycleTimeread-onlycurrentSpecifies the time of the authentication since the first attempted user authentication, after which the user is not allowed to authenticate and must reload the…
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.9ColumnruckusWebAuthBlockTimeread-onlycurrentSpecifies the time for blocking the user when successive attempts have failed resulting in blocking the user. Value of 0 means, the user is blocked permanently.
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.10ColumnruckusWebAuthMacAgeTimeread-onlycurrentSpecifies the the time which together with mac-age-time of the switch is considered an inactive time of the authenticated host, after which the device is force…
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.11ColumnruckusWebAuthPasscoderead-onlycurrentSpecifies the statically configured passcode used to authenticate when passcode is used auth-method. The passcode is digits only. This can consist of upto 4 pa…
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.12ColumnruckusWebAuthLocalUserDbread-onlycurrentSpecifies the locally configured User Database for use in authentication, when the auth-methos is password.
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.13ColumnruckusWebAuthSecureLoginread-onlycurrentSpecifies if HTTPS is used for authentication or not.
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.14ColumnruckusWebAuthAccountingread-onlycurrentSpecifies if accounting is enbled or disabled.
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.15ColumnruckusWebAuthCaptiveProfileread-onlycurrentSpecifies the name of the configured Captive Portal profile, which should be used for redirection, if the auth-method is configured as captivePortal.
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.16ColumnruckusWebAuthRedirectNameread-onlycurrentSpecifies the name to be used for URL when internal authentication is used dusring authentication for prompting username/password from the users, otherwise swi…
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.17ColumnruckusWebAuthWebpageRemoveUserIdread-writecurrentSpecifies if user-id field in custom webauth login page is disabled or not, default value is disable, i.e., user-id field is displayed
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.18ColumnruckusWebAuthWebpageUsernameLabelread-writecurrentSpecifies the name to be used for user-id label in webauth login page
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.19ColumnruckusWebAuthWebpagePasswordLabelread-writecurrentSpecifies the name to be used for password label in webauth login page
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.20ColumnruckusWebAuthUpLinkPortread-writecurrentSpecifies the port to be used as uplink port in network segmentation deployment
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.21ColumnruckusWebAuthWebpageTopread-writecurrentSpecifies the name to be used for Top of webauth login page
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.22ColumnruckusWebAuthWebpageBottomread-writecurrentSpecifies the name to be used for Bottom of webauth login page
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.23ColumnruckusWebAuthWebpageTitleread-writecurrentSpecifies the name to be used for Title in webauth login page
1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.24ColumnruckusWebAuthWebpageLoginButtonread-writecurrentSpecifies the name to be used for Login-button in webauth login page
1.3.6.1.4.1.1991.1.1.3.44.1.4.2TableruckusWebAuthTrustPortTablenot-accessiblecurrentA table that allows configuration of WebAuth Trust ports which are skipped from authentication in the given VLAN and are typically uplink ports. An entry exist…
1.3.6.1.4.1.1991.1.1.3.44.1.4.2.1RowruckusWebAuthTrustPortEntrynot-accessiblecurrentAn entry in WebAuth Trust Port table.
1.3.6.1.4.1.1991.1.1.3.44.1.4.2.1.1ColumnruckusWebAuthTrustPortread-onlycurrentSpecifies the trusted port or the up-link port, which is considered secure, so authentication is not performed on that port. This port generally provides acces…
1.3.6.1.4.1.1991.1.1.3.44.1.4.3TableruckusWebAuthDnsFilterTablenot-accessiblecurrentA table that allows configuration of WebAuth DNS filters which are qualified DNS servers and should be allowed access during authentication for DNS queries by …
1.3.6.1.4.1.1991.1.1.3.44.1.4.3.1RowruckusWebAuthDnsFilterEntrynot-accessiblecurrentAn entry in WebAuth DNS-Filter table.
1.3.6.1.4.1.1991.1.1.3.44.1.4.3.1.1ColumnruckusWebAuthDnsFilterIdnot-accessiblecurrentAn index into the DNS filter table.
1.3.6.1.4.1.1991.1.1.3.44.1.4.3.1.2ColumnruckusWebAuthDnsFilterTyperead-onlycurrentThe address type of the this filter entry, a V4 or V6 address.
1.3.6.1.4.1.1991.1.1.3.44.1.4.3.1.3ColumnruckusWebAuthDnsFilterAddrread-onlycurrentThe DNS server address, which is a V4 or V6 address.
1.3.6.1.4.1.1991.1.1.3.44.1.4.3.1.4ColumnruckusWebAuthDnsFilterPrefixread-onlycurrentThe DNS server server prefix, which applies to V4/V6 addresses.
1.3.6.1.4.1.1991.1.1.3.44.1.4.4TableruckusWebAuthWhiteListTablenot-accessiblecurrentA table that allows configuration of WebAuth Whitelist entries which are qualified external servers that should be allowed access during authentication for var…
1.3.6.1.4.1.1991.1.1.3.44.1.4.4.1RowruckusWebAuthWhiteListEntrynot-accessiblecurrentAn entry in WebAuth Whitelist table.
1.3.6.1.4.1.1991.1.1.3.44.1.4.4.1.1ColumnruckusWebAuthWhiteListIdnot-accessiblecurrentAn index into the White List Server table.
1.3.6.1.4.1.1991.1.1.3.44.1.4.4.1.2ColumnruckusWebAuthWhiteListTyperead-onlycurrentThe address type of the this whitelist entry, a V4 or V6 or DNS name.
1.3.6.1.4.1.1991.1.1.3.44.1.4.4.1.3ColumnruckusWebAuthWhiteListAddrread-onlycurrentThe whitelist server address, which is a V4 or V6 address or DNS name.
1.3.6.1.4.1.1991.1.1.3.44.1.4.4.1.4ColumnruckusWebAuthWhiteListPrefixread-onlycurrentThe whitelist server prefix, which applies to V4/V6 addresses.
1.3.6.1.4.1.1991.1.1.3.44.1.4.5TableruckusWebAuthFilterTablenot-accessiblecurrentA table that allows configuration of WebAuth auth- filters which are applied to statically authenticate the clients without the need for authentication. This c…
1.3.6.1.4.1.1991.1.1.3.44.1.4.5.1RowruckusWebAuthFilterEntrynot-accessiblecurrentAn entry in WebAuth Auth-Filter table.
1.3.6.1.4.1.1991.1.1.3.44.1.4.5.1.1ColumnruckusWebAuthFilterMacread-onlycurrentSpecifies the MAC Address of the filter for matching the authenticating clients through static authentication.
1.3.6.1.4.1.1991.1.1.3.44.1.4.5.1.2ColumnruckusWebAuthFilterPortread-onlycurrentSpecifies the port in the VLAN, where this filter should be applied. If the port not valid, the entry applies to all ports in VLAN.
1.3.6.1.4.1.1991.1.1.3.44.1.4.5.1.3ColumnruckusWebAuthFilterDurationread-onlycurrentSpecifies the time for blocking or allowing the user when the filter results in authenticating the user (matches). Value of 0 means, the user is blocked perman…
1.3.6.1.4.1.1991.1.1.3.44.1.4.5.1.4ColumnruckusWebAuthFilterActionread-onlycurrentSpecifies the action to be performed when this filter is applied on the authenticating client when matching occurs. permit(1) - allow the client in specified V…
1.3.6.1.4.1.1991.1.1.3.44.1.4.6TableruckusWebAuthCaptivePortalTablenot-accessiblecurrentA table that allows configuration of WebAuth Captive profiles for various external WebAuth servers. The rntry provides the server information such as the DNS n…
1.3.6.1.4.1.1991.1.1.3.44.1.4.6.1RowruckusWebAuthCaptivePortalEntrynot-accessiblecurrentAn entry in WebAuth Captive Poratl table.
1.3.6.1.4.1.1991.1.1.3.44.1.4.6.1.1ColumnruckusWebAuthCaptivePortalNamenot-accessiblecurrentSpecifies the name of the profile entry.
1.3.6.1.4.1.1991.1.1.3.44.1.4.6.1.2ColumnruckusWebAuthCaptivePortalTyperead-onlycurrentSpecifies the Captive server type - qualified name or IP address.
1.3.6.1.4.1.1991.1.1.3.44.1.4.6.1.3ColumnruckusWebAuthCaptivePortalAddrread-onlycurrentSpecifies the Captive server qualified name or IP address.
1.3.6.1.4.1.1991.1.1.3.44.1.4.6.1.4ColumnruckusWebAuthCaptivePortalPortread-onlycurrentSpecifies the Captive server port for HTTP/HTTPS access.
1.3.6.1.4.1.1991.1.1.3.44.1.4.6.1.5ColumnruckusWebAuthCaptivePortalLoginPageread-onlycurrentSpecifies the login page of the Captive server, where the client should be redirected to.
1.3.6.1.4.1.1991.1.1.3.44.1.5NoderuckusAuthPortConfig
1.3.6.1.4.1.1991.1.1.3.44.1.5.1TableruckusAuthPortTablenot-accessiblecurrentA table that allows configuration of FlexAuth, including Dot1x and MAC-Auth for a specified port. Most objects at the port level oerride the similar configured…
1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1RowruckusAuthPortEntrynot-accessiblecurrentAn entry of FlexAuth port configuration.
1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.1ColumnruckusAuthPortEnableread-onlycurrentSpecifies authentication methods that are enabled on this port. Unless the method is enabled globally, the same can't be enabled at port level. A bit field of …
1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.2ColumnruckusAuthPortDot1xControlread-onlycurrentSpecifies the Dot1x operating mode for this port, when Dot1x is enabled. force-unauthorized(1)- port's controlled port is placed unconditionally in the unautho…
1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.3ColumnruckusAuthPortDefaultVlanread-onlycurrentThis default VLAN is used to place this port, so this VLAN acts as a VLAN for the clients to belong to, when authentication server doesn't assign any VLANs. A …
1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.4ColumnruckusAuthPortVoiceVlanread-onlycurrentThis voice VLAN is used to advertise through LLDP/CDP on this port, when connected devices are detected as Phones and authentication server doesn't assign any …
1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.5ColumnruckusAuthPortCriticalVlanread-onlycurrentThis VLAN is used to place the clients of this port, when the authentication server times out and the port auth-timeout-action is configired as 'critical', so …
1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.6ColumnruckusAuthPortRestrictVlanread-onlycurrentThis VLAN is used to place the clients of this port, when the clients fail the authentication and the auth-failure-action is configured as 'restrict', so the c…
1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.7ColumnruckusAuthPortModeread-onlycurrentSpecifies the authentication mode for this port. This overrides the globally configured value.
1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.8ColumnruckusAuthPortMethodsread-onlycurrentSpecifies authentication methods to be attempted in series of methods for this port. This overrides the globally configured value.
1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.9ColumnruckusAuthPortMaxSessionsread-onlycurrentSpecifies the maximum number of authenticated clients allowed on this port. This doesn't include the clients allowed due to authentication failure and timeout …
1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.10ColumnruckusAuthPortFailActionread-onlycurrentSpecifies the action to be taken on this port. This overrides the globally set value.
1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.11ColumnruckusAuthPortTimeoutActionread-onlycurrentSpecifies the action to be taken on this port, when the authentication server times out for various readons like server busy, network access, etc. This overrid…
1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.12ColumnruckusAuthPortReauthTimeoutread-onlycurrentHow often to re-authenticates clients of this port, when the clients were allowed due to authentication server timeout. Value of 0 disables the re-authenticati…
1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.13ColumnruckusAuthPortAgingread-onlycurrentSpecifies, if denied and permitted sessions are enabled or disabled for aging on this port. This overrided the global value.
1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.14ColumnruckusAuthPortAllowTaggedread-onlycurrentSpecifies, if denied and permitted sessions are enabled or disabled for aging on this port. A bit field of '1' indicates enabled, otherwise disabled.
1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.15ColumnruckusAuthPortSourceGuardread-onlycurrentSource guard enabling ensures that the client IP address to be learned and allow the packets matching that IP address only. This is implied when user ACLs are …
1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.16ColumnruckusAuthPortDosAttacksread-onlycurrentSpecifies to prevent/allow Denial of Service attacks on this port. Constantly sending packets from different clients (MAC addresses) causes DOS, as the clients…
1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.17ColumnruckusAuthPortDosAttackLimitread-onlycurrentThe maximum number of clients to be allowed at any time without authentication, and if authentication pending clients exceed the configured limit (as specified…
1.3.6.1.4.1.1991.1.1.3.44.1.6NoderuckusAuthFilterConfig
1.3.6.1.4.1.1991.1.1.3.44.1.6.1TableruckusAuthFilterTablenot-accessiblecurrentA table that allows configuration of FlexAuth auth- filters which are applied to statically authenticate the clients without the need for RADIUS server authent…
1.3.6.1.4.1.1991.1.1.3.44.1.6.1.1RowruckusAuthFilterEntrynot-accessiblecurrentAn entry of FlexAuth port Auth-Filter configuration.
1.3.6.1.4.1.1991.1.1.3.44.1.6.1.1.1ColumnruckusAuthFilterIdnot-accessiblecurrentAn index into the authe filter table.
1.3.6.1.4.1.1991.1.1.3.44.1.6.1.1.2ColumnruckusAuthFilterMacread-onlycurrentSpecifies the MAC Address of the filter for matching the authenticating clients through static authentication.
1.3.6.1.4.1.1991.1.1.3.44.1.6.1.1.3ColumnruckusAuthFilterMaskread-onlycurrentSpecifies the Mask of the filter for matching the incoming clients through static authentication. The mask is applied on MAC in the filter and client MAC befor…
1.3.6.1.4.1.1991.1.1.3.44.1.6.1.1.4ColumnruckusAuthFilterVlanread-onlycurrentSpecifies the VLAN which should be used to place the authenticating client after the matching is done. This VLAN applies only when the action is permit. Denied…
1.3.6.1.4.1.1991.1.1.3.44.1.6.1.1.5ColumnruckusAuthFilterActionread-onlycurrentSpecifies the action to be performed when this filter is applied on the authenticating client and matching occurs. permit(1) - allow the client in specified VL…
1.3.6.1.4.1.1991.1.1.3.44.1.7NoderuckusAuthSessions
1.3.6.1.4.1.1991.1.1.3.44.1.7.1TableruckusAuthSessionTablenot-accessiblecurrentA table providing information about the FlexAuth sessions for each client at port level in the Ruckus device. This table contains entries for all the clients a…
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1RowruckusAuthSessionEntrynot-accessiblecurrentAn entry containing information about the FlexAuth session of a specified client on a port
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.1ColumnruckusAuthSessionMacread-onlycurrentSpecifies the MAC Address of the client (device/host) represented by this session entry
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.2ColumnruckusAuthSessionVlanread-onlycurrentSpecifies the VLAN, the client (device/host) belongs to, represented by this session entry. In case of voice-phones, this VLAN is the voice-VLAN (tagged) and i…
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.3ColumnruckusAuthSessionVlanTyperead-onlycurrentDecribes the type of the VLAN associated with the session. default(1) - Default VLANs as configured on Ruckus device restrict(2) - Restricted VLAN as authentic…
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.4ColumnruckusAuthSessionTaggedVlanread-onlycurrentTagged VLAN or Voice VLAN sent by the RADIUS server, so the port gets added to the VLAN, to prepare the device to send tagged packets in case of phones.
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.5ColumnruckusAuthSessionUserNameread-onlycurrentIndicates the User name associated with the client, represented by this session. In case of Dot1x sessions, it's the username used by the user to log into the …
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.6ColumnruckusAuthSessionDeviceTyperead-onlycurrentDecribes the type of the client connnected and authenticated on this port.
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.7ColumnruckusAuthSessionMethodread-onlycurrentSpecifies the authentication method that is used for authenticating the client on this port represented by this session. It's possible that both authentication…
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.8ColumnruckusAuthSessionModeread-onlycurrentIndicates the authentication mode applied for this client on this port.
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.9ColumnruckusAuthSessionStatusread-onlycurrentThe authentication state of the session which can take the following values. allowed - client authentication is successful, so the complete access is granted b…
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.10ColumnruckusAuthSessionDot1xStatusread-onlycurrentIndicates the state of Dot1x authentication, if the client is using Dot1x for authentication.
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.11ColumnruckusAuthSessionAgingTyperead-onlycurrentIndicates the aging status of the client session which can be of the following values. software(1): Client MAC entry is cleared as the entry timedout in hardwa…
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.12ColumnruckusAuthSessionAgeread-onlycurrentWhen the aging type is either software or hardware, this object indicates the time, the session had been in that state. When the configured maximum time is rea…
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.13ColumnruckusAuthSessionTimeoutread-onlycurrentSpecifies the maximum amount of time, the session should exit before re-authenticating or terminating the sessions depending on another RADIUS attribute 'Termi…
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.14ColumnruckusAuthSessionIdleTimeoutread-onlycurrentSpecifies the maximum amount of time after which the session is cleared when there is no traffic from the client. A value of 0 means, the sessions never gets t…
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.15ColumnruckusAuthSessionTimeread-onlycurrentIndcates the session UP time since the session had been up or created.
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.16ColumnruckusAuthSessionV4IngressAclread-onlycurrentSpecifies the User Access List (ACL) applied in the Ingress direction for the IPv4 traffic for this client on this port.
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.17ColumnruckusAuthSessionV4EgressAclread-onlycurrentSpecifies the User Access List (ACL) applied in the Egress direction for the IPv4 traffic for this client on this port.
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.18ColumnruckusAuthSessionV6IngressAclread-onlycurrentSpecifies the User Access List (ACL) applied in the Ingress direction for the IPv6 traffic for this client on this port.
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.19ColumnruckusAuthSessionV6EgressAclread-onlycurrentSpecifies the User Access List (ACL) applied in the Egress direction for the IPv6 traffic for this client on this port.
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.20ColumnruckusAuthSessionTxOctetsread-onlycurrentSpecifies the number bytes sent for this session on the port.
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.21ColumnruckusAuthSessionRxOctetsread-onlycurrentSpecifies the number bytes received for this session on the port.
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.22ColumnruckusAuthSessionTxPktsread-onlycurrentSpecifies the number bytes sent for this session on the port.
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.23ColumnruckusAuthSessionRxPktsread-onlycurrentSpecifies the number bytes received for this session on the port.
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.24ColumnruckusAuthSessionFailureReasonread-onlycurrentSpecifies the internal failure reason for this client, such as memory allocation, RADIUS attribute parsing, RADIUS REJECT, etc.
1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.25ColumnruckusAuthSessionFlagsread-onlycurrentDesacribes various other parameters of client session, by clubbing them together in one object for simplicity. staticAuthenticated(0): Client is authenticatica…
1.3.6.1.4.1.1991.1.1.3.44.1.7.2TableruckusAuthSessionAddrTablenot-accessiblecurrentAn address table providing V4/V6 information about the FlexAuth sessions for each client at port level in the Ruckus device.
1.3.6.1.4.1.1991.1.1.3.44.1.7.2.1RowruckusAuthSessionAddrEntrynot-accessiblecurrentAn entry containing information about the FlexAuth session address of a specified client on a port
1.3.6.1.4.1.1991.1.1.3.44.1.7.2.1.1ColumnruckusAuthSessionAddrIdnot-accessiblecurrentAn index into the White List Server table.
1.3.6.1.4.1.1991.1.1.3.44.1.7.2.1.2ColumnruckusAuthSessionAddrTyperead-onlycurrentThe address type of the this address entry, a V4 or V6.
1.3.6.1.4.1.1991.1.1.3.44.1.7.2.1.3ColumnruckusAuthSessionAddrread-onlycurrentThe address of this session entry, which is a V4 or V6 address.
1.3.6.1.4.1.1991.1.1.3.44.1.8NoderuckusAuthStatistics
1.3.6.1.4.1.1991.1.1.3.44.1.8.1TableruckusAuthStatsTablenot-accessiblecurrentA table that provides information about the summary of MAC-Auth and Dot1x sessions at port level. An entry exists in this table for every port enabled for Flex…
1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1RowruckusAuthStatsEntrynot-accessiblecurrentAn entry of port level FlexAuth session summary table.
1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.1ColumnruckusDot1xSessionsAttemptedread-onlycurrentThe number of Dot1x sessions attempted on this port, since the time the stats were cleared.
1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.2ColumnruckusDot1xSessionsAcceptedread-onlycurrentThe number of Dot1x sessions accepted or permited on this port, since the time the stats were cleared.
1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.3ColumnruckusDot1xSessionsRejectedread-onlycurrentThe number of Dot1x sessions failed or rejected on this port, since the time the stats were cleared.
1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.4ColumnruckusDot1xSessionsInProgressread-onlycurrentThe number of Dot1x sessions which are in progress on this port waiting for authentication to be completed, since the time the stats were cleared.
1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.5ColumnruckusDot1xSessionsErroredread-onlycurrentThe number of Dot1x sessions which are neither accepted or rejected due to conditions like timeout, resource failure, etc; on this port, since the time the sta…
1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.6ColumnruckusMacAuthSessionsAttemptedread-onlycurrentThe number of MAC-Auth sessions attempted on this port, since the time the stats were cleared.
1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.7ColumnruckusMacAuthSessionsAcceptedread-onlycurrentThe number of MAC-Auth sessions accepted or permited on this port, since the time the stats were cleared
1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.8ColumnruckusMacAuthSessionsRejectedread-onlycurrentThe number of MAC-Auth sessions failed or rejected on this port, since the time the stats were cleared
1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.9ColumnruckusMacAuthSessionsInProgressread-onlycurrentThe number of MAC-Auth sessions which are in progress on this port waiting for authentication to be completed, since the time the stats were cleared
1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.10ColumnruckusMacAuthSessionsErroredread-onlycurrentThe number of MAC-Auth sessions which are neither accepted or rejected due to conditions like timeout, resource failure, etc; on this port, since the time the …
1.3.6.1.4.1.1991.1.1.3.44.1.8.2TableruckusDot1xAuthStatsTablenot-accessiblecurrentA table that provides information about the Dot1x Statistics at port level. An entry exists in this table for every port enabled for Dot1x.
1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1RowruckusDot1xAuthStatsEntrynot-accessiblecurrentAn entry of per port Dot1x statistics table.
1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.1ColumnruckusDot1xTxEAPFramesread-onlycurrentThe total number of EAPOL frames transmitted on this port
1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.2ColumnruckusDot1xTxEAPReqIdFramesread-onlycurrentThe number of EAP-Request/Identity frames transmitted on this port
1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.3ColumnruckusDot1xTxEAPReqFramesread-onlycurrentThe number of transmitted EAP request frames that are not EAP-Request/identify on this port
1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.4ColumnruckusDot1xRxEAPFramesread-onlycurrentThe total number of EAPOL frames received on this port
1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.5ColumnruckusDot1xRxEAPStartFramesread-onlycurrentThe number of EAPOL-Start frames received on this port
1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.6ColumnruckusDot1xRxEAPLogOffFramesread-onlycurrentThe number of EAPOL-Logoff frames received on this port
1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.7ColumnruckusDot1xRxEAPRespIdFramesread-onlycurrentThe number of EAP-Response/Identify frames received on this port
1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.8ColumnruckusDot1xRxEAPRespFramesread-onlycurrentThe number of received EAP-Response frames other than EAP-Response/Identity on this port
1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.9ColumnruckusDot1xRxEAPInvalidFramesread-onlycurrentThe number of invalid EAPOL frames received on this port
1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.10ColumnruckusDot1xRxLengthErrorFramesread-onlycurrentThe number of EAPOL frames received with incorrect length on this port
1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.11ColumnruckusDot1xRxEAPLastFrameVersionread-onlycurrentThe version of last EAP frame received on this port
1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.12ColumnruckusDot1xRxEAPLastFrameSourceread-onlycurrentThe MAC address of the source from where the last EAP frame received on this port
1.3.6.1.4.1.1991.1.1.3.44.2NoderuckusAuthConformance
1.3.6.1.4.1.1991.1.1.3.44.2.1NoderuckusAuthMIBCompliances
1.3.6.1.4.1.1991.1.1.3.44.2.1.1ComplianceruckusAuthCompliancecurrentThe compliance statement for entities which implement RUCKUS-AUTH-MIB.
1.3.6.1.4.1.1991.1.1.3.44.2.2NoderuckusAuthMIBGroups
1.3.6.1.4.1.1991.1.1.3.44.2.2.1GroupruckusAuthConfigGroupcurrentA collection of objects that provide global configuration of FlexAuth feature, common to both MAC-Auth and Dot1x.
1.3.6.1.4.1.1991.1.1.3.44.2.2.2GroupruckusDot1xAuthConfigGroupcurrentA collection of objects that provide global global configuration of Dot1x sub-feature, which applies only to Dot1x.
1.3.6.1.4.1.1991.1.1.3.44.2.2.3GroupruckusMacAuthConfigGroupcurrentA collection of objects that provide global configuration of MAC-Auth sub-feature, which applies only to MAC-Auth.
1.3.6.1.4.1.1991.1.1.3.44.2.2.4GroupruckusAuthPortConfigGroupcurrentA collection of objects that provide interface configuration of FlexAuth feature,common to both MAC-Auth and Dot1x.
1.3.6.1.4.1.1991.1.1.3.44.2.2.5GroupruckusAuthFilterConfigGroupcurrentA collection of objects that provide interface auth filter configuration of FlexAuth feature, common to both MAC-Auth and Dot1x.
1.3.6.1.4.1.1991.1.1.3.44.2.2.6GroupruckusAuthSessionsGroupcurrentA collection of objects that provide session information of a FlexAuth session.
1.3.6.1.4.1.1991.1.1.3.44.2.2.7GroupruckusAuthStatsGroupcurrentA collection of objects that provide session statistics of FlexAuth sessions at port level.
1.3.6.1.4.1.1991.1.1.3.44.2.2.8GroupruckusDot1xAuthStatsGroupcurrentA collection of objects that provide Dot1x statistics of Dot1x sessions at port level.
1.3.6.1.4.1.1991.1.1.3.44.2.2.9GroupruckusWebAuthConfigGroupcurrentA collection of objects that provide WebAuth configuration.
Type Definitions
NameSyntaxStatusDescription
Dot1xAuthStateINTEGER { other(1), initialize(2), disconnected(3), connecting(4), authenticating(5), authenticated(6), aborting(7), held(8), forceAuth(9), forceUnauth(10) }currentThe authenticator(PAE) state machine values as described below. other(1): Anything other than following states initialize(2): PAE state machine is being initialized disconnected(3): Explicit logoff request is received f…
RuckusAuthAgingBITS { deniedSessions(0), permittedSessions(1) }currentDescribes, if denied and permitted sessions are enabled or disabled for aging. A bit field of '1' indicates enabled, otherwise disabled.
RuckusAuthFailActionINTEGER { blockTraffic(1), restrictVlan(2) }currentDescribes the action to be taken, when the clients fail the authentication. blockTraffic(1): Clients are blocked access to the network restrictVlan(2): Clients are placed in the configured restrict VLAN, so they have li…
RuckusAuthModeINTEGER { singleUntagged(1), multipleUntagged(2), singleHost(3), multipleHosts(4) }currentDescribes the authentication modes supported with Ruckus FlexAuth implementation. singleUntagged(1): multiple clients are allowed, but all must belong to one VLAN multipleUntagged(2): multiple clients are allowed and ea…
RuckusAuthOrderINTEGER { dot1xMauth(1), mauthDot1x(2) }currentDescribes which authentication methods to be attempted in series of methods. Subsequent methods are tried depending on the outcome of the previous method and several rules are defined which are not explined here. dot1xM…
RuckusAuthTimeoutActionINTEGER { failure(1), success(2), criticalVlan(3), other(4) }currentDescribes the action to be taken, when the authenticator times out for various readons like server busy, network access, etc. failure(1): The action taken is specified by the ruckusAuthFailAction object success(2): Clie…
VlanIdINTEGER (0 | 1..4094)currentAn ID used to represent VLAN identifier in the system for both untagged and tagged VLANs packets). When an object is not configured, this could be 0.