RUCKUS-AUTH-MIB
205 objects
Management Information for configuration/querying of Flexible authentication which consists of 802.1X, MAC-Auth and Web-Auth. It is grouped into five MIBs - 1. Global level Auth configuration 2. Global level Dot1x configuration 3. Global level MacAuth configuration 4. Global level WebAuth configuration 5. Port level Auth configuration 6. Auth Session information 7. Auth Session Stats information 8. Dot1x Auth Session Stats information Copyright 1996-2019 Ruckus Wireless, Inc. All rights reserved. This Ruckus Wireless, Inc SNMP MIB Specification embodies Ruckus Wireless, Inc' confidential and proprietary intellectual property. Ruckus Wireless, Inc retains all title and ownership in the Specification, including any revisions. This Specification is supplied AS IS, and Ruckus Wireless, Inc makes no warranty, either express or implied, as to the use, operation, condition, or performance of the specification, and any unintended consequence it may on the user environment.
Imported Objects
| FOUNDRY-SN-SWITCH-GROUP-MIB | snSwitch |
| IF-MIB | ifIndex InterfaceIndex InterfaceIndexOrZero |
| INET-ADDRESS-MIB | InetAddress InetAddressType |
| P-BRIDGE-MIB | EnabledStatus |
| SNMPv2-CONF | MODULE-COMPLIANCE NOTIFICATION-GROUP OBJECT-GROUP |
| SNMPv2-SMI | Counter32 Counter64 Integer32 MODULE-IDENTITY NOTIFICATION-TYPE OBJECT-TYPE Unsigned32 |
| SNMPv2-TC | DisplayString MacAddress RowStatus TEXTUAL-CONVENTION TruthValue |
| OID | Name | Access | Status | Description |
|---|---|---|---|---|
| 1.3.6.1.4.1.1991.1.1.3.44 | IdentityruckusAuthMIB | Management Information for configuration/querying of Flexible authentication which consists of 802.1X, MAC-Auth and Web-Auth. It is grouped into five MIBs - 1.… | ||
| 1.3.6.1.4.1.1991.1.1.3.44.0 | NoderuckusAuthNotification | |||
| 1.3.6.1.4.1.1991.1.1.3.44.0.1 | NotificationruckusAuthPortAuthorizedNotif | current | This notification is sent if a 802.1x supplicant is detected and authenticated successfully with supplicant getting assigned a VLAN. | |
| 1.3.6.1.4.1.1991.1.1.3.44.0.2 | NotificationruckusAuthPortUnauthorizedNotif | current | This notification is sent if a 802.1x supplicant had logged off or session is cleared for other reasons. | |
| 1.3.6.1.4.1.1991.1.1.3.44.0.3 | NotificationruckusAuthMacAuthorizedNotif | current | This notification is sent if a non-802.1x client is detected and authenticated successfully with client/device getting assigned a VLAN. | |
| 1.3.6.1.4.1.1991.1.1.3.44.0.4 | NotificationruckusAuthMacUnauthorizedNotif | current | This notification is sent if a non-802.1x client had logged off or session is cleared for other reasons. | |
| 1.3.6.1.4.1.1991.1.1.3.44.0.5 | NotificationruckusAuthAclFailNotif | current | This notification is sent if a an ACL counldn't be applied for authenticated client, resulting the client in authentication failure. | |
| 1.3.6.1.4.1.1991.1.1.3.44.1 | NoderuckusAuthObjects | |||
| 1.3.6.1.4.1.1991.1.1.3.44.1.1 | NoderuckusAuthConfig | |||
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.1 | ScalarruckusAuthDefaultVlan | read-only | current | This default VLAN is used to place all the FlexAuth enabled ports, so this VLAN acts as a VLAN for the clients to belong to, when authentication server doesn't… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.2 | ScalarruckusAuthVoiceVlan | read-only | current | This voice VLAN is used to advertise through LLDP/CDP on the ports, when connected devices are detected as Phones and authentication server doesn't assign any … |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.3 | ScalarruckusAuthCriticalVlan | read-only | current | This VLAN is used to place the clients, when the authentication server times out and the timeout action is configired as 'critical', so the clients have limite… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.4 | ScalarruckusAuthRestrictVlan | read-only | current | This VLAN is used to place the clients, when the clients fail the authentication and the failure action is configured as 'restrict', so the clients have limite… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.5 | ScalarruckusAuthEnable | read-only | current | Specifies, which authentication methods are enabled globally. Unless the method is enabled globally, the same can't be enabled at port level. A bit field of '1… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.6 | ScalarruckusAuthMode | read-only | current | Specifies the authentication mode for all the FlexAuth enabled ports. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.7 | ScalarruckusAuthMethods | read-only | current | Specifies which authentication methods to be attempted in series of methods for all FlexAuth enabled ports. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.8 | ScalarruckusAuthMaxSessions | read-only | current | Specifies the maximum number of authenticated clients allowed on a port. This doesn't include the clients allowed due to authentication failure and timeout pol… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.9 | ScalarruckusAuthFailAction | read-only | current | Specifies the action to be taken, when the clients fail the authentication. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.10 | ScalarruckusAuthTimeoutAction | read-only | current | Specifies the action to be taken, when the authentication server times out. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.11 | ScalarruckusAuthReauthEnable | read-only | current | The reauthentication control for all the FlexAuth enabled ports. Setting this object to 'enabled' causes every FlexAuth enabled port to reauthenticate the devi… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.12 | ScalarruckusAuthReauthPeriod | read-only | current | How often to re-authenticates clients, when periodic re-authentication is enabled. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.13 | ScalarruckusAuthReauthTimeout | read-only | current | How often to re-authenticates clients, when the clients were allowed due to authentication server timeout. Value of 0 disables the re-authentication. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.14 | ScalarruckusAuthIdleTimeout | read-only | current | Specifies the time to keep the sessions in the Ruckus device, after the inactivity detection time expired in the hardware. If the clients start the traffic in … |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.15 | ScalarruckusAuthDeniedTimeout | read-only | current | Specifies the time to keep the denied sessions in the Ruckus device for the clients which are blocked as they failed authentication. When the clients start the… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.16 | ScalarruckusAuthAging | read-only | current | Specifies, if denied and permitted sessions are enabled or disabled for aging. Aging is enabled by default. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.17 | ScalarruckusAuthDefaultV4IngressAcl | read-only | current | Specifies the default User Access List (ACL) applied in the Ingress direction for the IPv4 traffic for sessins when ACLs are not dynamically assigned through R… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.18 | ScalarruckusAuthDefaultV4EgressAcl | read-only | current | Specifies the default User Access List (ACL) applied in the Egress direction for the IPv4 traffic for sessins when ACLs are not dynamically assigned through RA… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.19 | ScalarruckusAuthDefaultV6IngressAcl | read-only | current | Specifies the default User Access List (ACL) applied in the Ingress direction for the IPv6 traffic for sessins when ACLs are not dynamically assigned through R… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.1.20 | ScalarruckusAuthDefaultV6EgressAcl | read-only | current | Specifies the default User Access List (ACL) applied in the Egress direction for the IPv6 traffic for sessins when ACLs are not dynamically assigned through RA… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.2 | NoderuckusDot1xAuthConfig | |||
| 1.3.6.1.4.1.1991.1.1.3.44.1.2.1 | ScalarruckusDot1xQuietPeriod | read-only | current | When the Ruckus device is unable to authenticate the Client, the amount of time the Ruckus device waits before trying again. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.2.2 | ScalarruckusDot1xTxPeriod | read-only | current | When a Client does not send back an EAP(Extensible Authentication Protocol)- response/identity frame, the amount of time the Ruckus device waits before retrans… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.2.3 | ScalarruckusDot1xSuppTimeout | read-only | current | When a supplicant (Client) does not respond to an EAP-request frame, the amount of time before the Ruckus device retransmits the frame. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.2.4 | ScalarruckusDot1xMaxReq | read-only | current | The number of times the Ruckus device retransmits an EAP-request/identity request frame if it does not receive an EAP-response/identity response frame from the… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.2.5 | ScalarruckusDot1xMaxReauthReq | read-only | current | The number of re-authentication attempts that are permitted before the port becomes Unauthorized. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.2.6 | ScalarruckusDot1xGuestVlan | read-only | current | This VLAN is used to place the clients, when the supplicant/client times out as it's not capable of IEEE-802.1X authentication protocol. A value of zero for th… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.2.7 | ScalarruckusDot1xMacAuthOverride | read-only | current | Specifies if the MAC-Authentication should be tried next when a client fails authentication with Dot1x authentication method. This may be required when devices… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.3 | NoderuckusMacAuthConfig | |||
| 1.3.6.1.4.1.1991.1.1.3.44.1.3.1 | ScalarruckusMacAuthPasswordFormat | read-only | current | Specifies the format to be used for MAC address, which is used as credential in MAC-authentication. As MAC addresses are represented in different formats, all … |
| 1.3.6.1.4.1.1991.1.1.3.44.1.3.2 | ScalarruckusMacAuthPasswordOverride | read-only | current | Specifies the password to be used for all MAC- authentication clients. This is normally of 0 length string, which means the client MAC address is used as the p… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.3.3 | ScalarruckusMacAuthDot1xOverride | read-only | current | Specifies if the Dot1x should be tried next when a client fails authentication with MAC-Authentication method. This may be required when devices are Dot1x capa… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.3.4 | ScalarruckusMacAuthDot1xEnable | read-only | current | Specifies if the Dot1x should be tried next when a client succeeds authentication with MAC-Authentication method. This may be required when devices are not Dot… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4 | NoderuckusWebAuthConfig | |||
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1 | TableruckusWebAuthTable | not-accessible | current | A table that allows configuration of WebAuth for a specified VLAN. WebAuth is configured at the VLAN level unlike MAC-Auth and Dot1x at the port level. An entr… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1 | RowruckusWebAuthEntry | not-accessible | current | An entry of WebAuth configuration. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.1 | ColumnruckusWebAuthVlan | not-accessible | current | Specifies the VLAN, this configuration entry applies to. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.2 | ColumnruckusWebAuthEnable | read-only | current | Specifies if Web-Auth is enabled or disabled. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.3 | ColumnruckusWebAuthMode | read-only | current | Specifies the authentication mode used for authenticating the users. none - no authentication is performed passcode - passcode based authentication, where the … |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.4 | ColumnruckusWebAuthMethod | read-only | current | When the AuthMode is configured as password, this specifies the order for performing authentication. radius - RADIUS server for authentication local - Local us… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.5 | ColumnruckusWebAuthMaxHosts | read-only | current | Specifies the maximum number of hosts allowed to be authenticated. Value 0 means no limit. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.6 | ColumnruckusWebAuthMaxAuthAttempts | read-only | current | Specifies the maximum number of attempts allowed during the auth cycle, after which the user is blocked for configured amount of time, before next authenticati… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.7 | ColumnruckusWebAuthReauthTime | read-only | current | Specifies the re-authentication time, so the authenticated users can be periodically reauthenticated after the timeout specified through this object. Value 0 m… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.8 | ColumnruckusWebAuthCycleTime | read-only | current | Specifies the time of the authentication since the first attempted user authentication, after which the user is not allowed to authenticate and must reload the… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.9 | ColumnruckusWebAuthBlockTime | read-only | current | Specifies the time for blocking the user when successive attempts have failed resulting in blocking the user. Value of 0 means, the user is blocked permanently. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.10 | ColumnruckusWebAuthMacAgeTime | read-only | current | Specifies the the time which together with mac-age-time of the switch is considered an inactive time of the authenticated host, after which the device is force… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.11 | ColumnruckusWebAuthPasscode | read-only | current | Specifies the statically configured passcode used to authenticate when passcode is used auth-method. The passcode is digits only. This can consist of upto 4 pa… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.12 | ColumnruckusWebAuthLocalUserDb | read-only | current | Specifies the locally configured User Database for use in authentication, when the auth-methos is password. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.13 | ColumnruckusWebAuthSecureLogin | read-only | current | Specifies if HTTPS is used for authentication or not. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.14 | ColumnruckusWebAuthAccounting | read-only | current | Specifies if accounting is enbled or disabled. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.15 | ColumnruckusWebAuthCaptiveProfile | read-only | current | Specifies the name of the configured Captive Portal profile, which should be used for redirection, if the auth-method is configured as captivePortal. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.16 | ColumnruckusWebAuthRedirectName | read-only | current | Specifies the name to be used for URL when internal authentication is used dusring authentication for prompting username/password from the users, otherwise swi… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.17 | ColumnruckusWebAuthWebpageRemoveUserId | read-write | current | Specifies if user-id field in custom webauth login page is disabled or not, default value is disable, i.e., user-id field is displayed |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.18 | ColumnruckusWebAuthWebpageUsernameLabel | read-write | current | Specifies the name to be used for user-id label in webauth login page |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.19 | ColumnruckusWebAuthWebpagePasswordLabel | read-write | current | Specifies the name to be used for password label in webauth login page |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.20 | ColumnruckusWebAuthUpLinkPort | read-write | current | Specifies the port to be used as uplink port in network segmentation deployment |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.21 | ColumnruckusWebAuthWebpageTop | read-write | current | Specifies the name to be used for Top of webauth login page |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.22 | ColumnruckusWebAuthWebpageBottom | read-write | current | Specifies the name to be used for Bottom of webauth login page |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.23 | ColumnruckusWebAuthWebpageTitle | read-write | current | Specifies the name to be used for Title in webauth login page |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.24 | ColumnruckusWebAuthWebpageLoginButton | read-write | current | Specifies the name to be used for Login-button in webauth login page |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.2 | TableruckusWebAuthTrustPortTable | not-accessible | current | A table that allows configuration of WebAuth Trust ports which are skipped from authentication in the given VLAN and are typically uplink ports. An entry exist… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.2.1 | RowruckusWebAuthTrustPortEntry | not-accessible | current | An entry in WebAuth Trust Port table. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.2.1.1 | ColumnruckusWebAuthTrustPort | read-only | current | Specifies the trusted port or the up-link port, which is considered secure, so authentication is not performed on that port. This port generally provides acces… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.3 | TableruckusWebAuthDnsFilterTable | not-accessible | current | A table that allows configuration of WebAuth DNS filters which are qualified DNS servers and should be allowed access during authentication for DNS queries by … |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.3.1 | RowruckusWebAuthDnsFilterEntry | not-accessible | current | An entry in WebAuth DNS-Filter table. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.3.1.1 | ColumnruckusWebAuthDnsFilterId | not-accessible | current | An index into the DNS filter table. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.3.1.2 | ColumnruckusWebAuthDnsFilterType | read-only | current | The address type of the this filter entry, a V4 or V6 address. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.3.1.3 | ColumnruckusWebAuthDnsFilterAddr | read-only | current | The DNS server address, which is a V4 or V6 address. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.3.1.4 | ColumnruckusWebAuthDnsFilterPrefix | read-only | current | The DNS server server prefix, which applies to V4/V6 addresses. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.4 | TableruckusWebAuthWhiteListTable | not-accessible | current | A table that allows configuration of WebAuth Whitelist entries which are qualified external servers that should be allowed access during authentication for var… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.4.1 | RowruckusWebAuthWhiteListEntry | not-accessible | current | An entry in WebAuth Whitelist table. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.4.1.1 | ColumnruckusWebAuthWhiteListId | not-accessible | current | An index into the White List Server table. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.4.1.2 | ColumnruckusWebAuthWhiteListType | read-only | current | The address type of the this whitelist entry, a V4 or V6 or DNS name. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.4.1.3 | ColumnruckusWebAuthWhiteListAddr | read-only | current | The whitelist server address, which is a V4 or V6 address or DNS name. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.4.1.4 | ColumnruckusWebAuthWhiteListPrefix | read-only | current | The whitelist server prefix, which applies to V4/V6 addresses. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.5 | TableruckusWebAuthFilterTable | not-accessible | current | A table that allows configuration of WebAuth auth- filters which are applied to statically authenticate the clients without the need for authentication. This c… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.5.1 | RowruckusWebAuthFilterEntry | not-accessible | current | An entry in WebAuth Auth-Filter table. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.5.1.1 | ColumnruckusWebAuthFilterMac | read-only | current | Specifies the MAC Address of the filter for matching the authenticating clients through static authentication. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.5.1.2 | ColumnruckusWebAuthFilterPort | read-only | current | Specifies the port in the VLAN, where this filter should be applied. If the port not valid, the entry applies to all ports in VLAN. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.5.1.3 | ColumnruckusWebAuthFilterDuration | read-only | current | Specifies the time for blocking or allowing the user when the filter results in authenticating the user (matches). Value of 0 means, the user is blocked perman… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.5.1.4 | ColumnruckusWebAuthFilterAction | read-only | current | Specifies the action to be performed when this filter is applied on the authenticating client when matching occurs. permit(1) - allow the client in specified V… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.6 | TableruckusWebAuthCaptivePortalTable | not-accessible | current | A table that allows configuration of WebAuth Captive profiles for various external WebAuth servers. The rntry provides the server information such as the DNS n… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.6.1 | RowruckusWebAuthCaptivePortalEntry | not-accessible | current | An entry in WebAuth Captive Poratl table. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.6.1.1 | ColumnruckusWebAuthCaptivePortalName | not-accessible | current | Specifies the name of the profile entry. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.6.1.2 | ColumnruckusWebAuthCaptivePortalType | read-only | current | Specifies the Captive server type - qualified name or IP address. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.6.1.3 | ColumnruckusWebAuthCaptivePortalAddr | read-only | current | Specifies the Captive server qualified name or IP address. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.6.1.4 | ColumnruckusWebAuthCaptivePortalPort | read-only | current | Specifies the Captive server port for HTTP/HTTPS access. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.4.6.1.5 | ColumnruckusWebAuthCaptivePortalLoginPage | read-only | current | Specifies the login page of the Captive server, where the client should be redirected to. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5 | NoderuckusAuthPortConfig | |||
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1 | TableruckusAuthPortTable | not-accessible | current | A table that allows configuration of FlexAuth, including Dot1x and MAC-Auth for a specified port. Most objects at the port level oerride the similar configured… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1 | RowruckusAuthPortEntry | not-accessible | current | An entry of FlexAuth port configuration. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.1 | ColumnruckusAuthPortEnable | read-only | current | Specifies authentication methods that are enabled on this port. Unless the method is enabled globally, the same can't be enabled at port level. A bit field of … |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.2 | ColumnruckusAuthPortDot1xControl | read-only | current | Specifies the Dot1x operating mode for this port, when Dot1x is enabled. force-unauthorized(1)- port's controlled port is placed unconditionally in the unautho… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.3 | ColumnruckusAuthPortDefaultVlan | read-only | current | This default VLAN is used to place this port, so this VLAN acts as a VLAN for the clients to belong to, when authentication server doesn't assign any VLANs. A … |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.4 | ColumnruckusAuthPortVoiceVlan | read-only | current | This voice VLAN is used to advertise through LLDP/CDP on this port, when connected devices are detected as Phones and authentication server doesn't assign any … |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.5 | ColumnruckusAuthPortCriticalVlan | read-only | current | This VLAN is used to place the clients of this port, when the authentication server times out and the port auth-timeout-action is configired as 'critical', so … |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.6 | ColumnruckusAuthPortRestrictVlan | read-only | current | This VLAN is used to place the clients of this port, when the clients fail the authentication and the auth-failure-action is configured as 'restrict', so the c… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.7 | ColumnruckusAuthPortMode | read-only | current | Specifies the authentication mode for this port. This overrides the globally configured value. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.8 | ColumnruckusAuthPortMethods | read-only | current | Specifies authentication methods to be attempted in series of methods for this port. This overrides the globally configured value. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.9 | ColumnruckusAuthPortMaxSessions | read-only | current | Specifies the maximum number of authenticated clients allowed on this port. This doesn't include the clients allowed due to authentication failure and timeout … |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.10 | ColumnruckusAuthPortFailAction | read-only | current | Specifies the action to be taken on this port. This overrides the globally set value. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.11 | ColumnruckusAuthPortTimeoutAction | read-only | current | Specifies the action to be taken on this port, when the authentication server times out for various readons like server busy, network access, etc. This overrid… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.12 | ColumnruckusAuthPortReauthTimeout | read-only | current | How often to re-authenticates clients of this port, when the clients were allowed due to authentication server timeout. Value of 0 disables the re-authenticati… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.13 | ColumnruckusAuthPortAging | read-only | current | Specifies, if denied and permitted sessions are enabled or disabled for aging on this port. This overrided the global value. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.14 | ColumnruckusAuthPortAllowTagged | read-only | current | Specifies, if denied and permitted sessions are enabled or disabled for aging on this port. A bit field of '1' indicates enabled, otherwise disabled. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.15 | ColumnruckusAuthPortSourceGuard | read-only | current | Source guard enabling ensures that the client IP address to be learned and allow the packets matching that IP address only. This is implied when user ACLs are … |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.16 | ColumnruckusAuthPortDosAttacks | read-only | current | Specifies to prevent/allow Denial of Service attacks on this port. Constantly sending packets from different clients (MAC addresses) causes DOS, as the clients… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.17 | ColumnruckusAuthPortDosAttackLimit | read-only | current | The maximum number of clients to be allowed at any time without authentication, and if authentication pending clients exceed the configured limit (as specified… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.6 | NoderuckusAuthFilterConfig | |||
| 1.3.6.1.4.1.1991.1.1.3.44.1.6.1 | TableruckusAuthFilterTable | not-accessible | current | A table that allows configuration of FlexAuth auth- filters which are applied to statically authenticate the clients without the need for RADIUS server authent… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.6.1.1 | RowruckusAuthFilterEntry | not-accessible | current | An entry of FlexAuth port Auth-Filter configuration. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.6.1.1.1 | ColumnruckusAuthFilterId | not-accessible | current | An index into the authe filter table. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.6.1.1.2 | ColumnruckusAuthFilterMac | read-only | current | Specifies the MAC Address of the filter for matching the authenticating clients through static authentication. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.6.1.1.3 | ColumnruckusAuthFilterMask | read-only | current | Specifies the Mask of the filter for matching the incoming clients through static authentication. The mask is applied on MAC in the filter and client MAC befor… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.6.1.1.4 | ColumnruckusAuthFilterVlan | read-only | current | Specifies the VLAN which should be used to place the authenticating client after the matching is done. This VLAN applies only when the action is permit. Denied… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.6.1.1.5 | ColumnruckusAuthFilterAction | read-only | current | Specifies the action to be performed when this filter is applied on the authenticating client and matching occurs. permit(1) - allow the client in specified VL… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7 | NoderuckusAuthSessions | |||
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1 | TableruckusAuthSessionTable | not-accessible | current | A table providing information about the FlexAuth sessions for each client at port level in the Ruckus device. This table contains entries for all the clients a… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1 | RowruckusAuthSessionEntry | not-accessible | current | An entry containing information about the FlexAuth session of a specified client on a port |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.1 | ColumnruckusAuthSessionMac | read-only | current | Specifies the MAC Address of the client (device/host) represented by this session entry |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.2 | ColumnruckusAuthSessionVlan | read-only | current | Specifies the VLAN, the client (device/host) belongs to, represented by this session entry. In case of voice-phones, this VLAN is the voice-VLAN (tagged) and i… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.3 | ColumnruckusAuthSessionVlanType | read-only | current | Decribes the type of the VLAN associated with the session. default(1) - Default VLANs as configured on Ruckus device restrict(2) - Restricted VLAN as authentic… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.4 | ColumnruckusAuthSessionTaggedVlan | read-only | current | Tagged VLAN or Voice VLAN sent by the RADIUS server, so the port gets added to the VLAN, to prepare the device to send tagged packets in case of phones. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.5 | ColumnruckusAuthSessionUserName | read-only | current | Indicates the User name associated with the client, represented by this session. In case of Dot1x sessions, it's the username used by the user to log into the … |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.6 | ColumnruckusAuthSessionDeviceType | read-only | current | Decribes the type of the client connnected and authenticated on this port. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.7 | ColumnruckusAuthSessionMethod | read-only | current | Specifies the authentication method that is used for authenticating the client on this port represented by this session. It's possible that both authentication… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.8 | ColumnruckusAuthSessionMode | read-only | current | Indicates the authentication mode applied for this client on this port. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.9 | ColumnruckusAuthSessionStatus | read-only | current | The authentication state of the session which can take the following values. allowed - client authentication is successful, so the complete access is granted b… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.10 | ColumnruckusAuthSessionDot1xStatus | read-only | current | Indicates the state of Dot1x authentication, if the client is using Dot1x for authentication. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.11 | ColumnruckusAuthSessionAgingType | read-only | current | Indicates the aging status of the client session which can be of the following values. software(1): Client MAC entry is cleared as the entry timedout in hardwa… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.12 | ColumnruckusAuthSessionAge | read-only | current | When the aging type is either software or hardware, this object indicates the time, the session had been in that state. When the configured maximum time is rea… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.13 | ColumnruckusAuthSessionTimeout | read-only | current | Specifies the maximum amount of time, the session should exit before re-authenticating or terminating the sessions depending on another RADIUS attribute 'Termi… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.14 | ColumnruckusAuthSessionIdleTimeout | read-only | current | Specifies the maximum amount of time after which the session is cleared when there is no traffic from the client. A value of 0 means, the sessions never gets t… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.15 | ColumnruckusAuthSessionTime | read-only | current | Indcates the session UP time since the session had been up or created. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.16 | ColumnruckusAuthSessionV4IngressAcl | read-only | current | Specifies the User Access List (ACL) applied in the Ingress direction for the IPv4 traffic for this client on this port. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.17 | ColumnruckusAuthSessionV4EgressAcl | read-only | current | Specifies the User Access List (ACL) applied in the Egress direction for the IPv4 traffic for this client on this port. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.18 | ColumnruckusAuthSessionV6IngressAcl | read-only | current | Specifies the User Access List (ACL) applied in the Ingress direction for the IPv6 traffic for this client on this port. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.19 | ColumnruckusAuthSessionV6EgressAcl | read-only | current | Specifies the User Access List (ACL) applied in the Egress direction for the IPv6 traffic for this client on this port. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.20 | ColumnruckusAuthSessionTxOctets | read-only | current | Specifies the number bytes sent for this session on the port. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.21 | ColumnruckusAuthSessionRxOctets | read-only | current | Specifies the number bytes received for this session on the port. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.22 | ColumnruckusAuthSessionTxPkts | read-only | current | Specifies the number bytes sent for this session on the port. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.23 | ColumnruckusAuthSessionRxPkts | read-only | current | Specifies the number bytes received for this session on the port. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.24 | ColumnruckusAuthSessionFailureReason | read-only | current | Specifies the internal failure reason for this client, such as memory allocation, RADIUS attribute parsing, RADIUS REJECT, etc. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.25 | ColumnruckusAuthSessionFlags | read-only | current | Desacribes various other parameters of client session, by clubbing them together in one object for simplicity. staticAuthenticated(0): Client is authenticatica… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.2 | TableruckusAuthSessionAddrTable | not-accessible | current | An address table providing V4/V6 information about the FlexAuth sessions for each client at port level in the Ruckus device. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.2.1 | RowruckusAuthSessionAddrEntry | not-accessible | current | An entry containing information about the FlexAuth session address of a specified client on a port |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.2.1.1 | ColumnruckusAuthSessionAddrId | not-accessible | current | An index into the White List Server table. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.2.1.2 | ColumnruckusAuthSessionAddrType | read-only | current | The address type of the this address entry, a V4 or V6. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.7.2.1.3 | ColumnruckusAuthSessionAddr | read-only | current | The address of this session entry, which is a V4 or V6 address. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8 | NoderuckusAuthStatistics | |||
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.1 | TableruckusAuthStatsTable | not-accessible | current | A table that provides information about the summary of MAC-Auth and Dot1x sessions at port level. An entry exists in this table for every port enabled for Flex… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1 | RowruckusAuthStatsEntry | not-accessible | current | An entry of port level FlexAuth session summary table. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.1 | ColumnruckusDot1xSessionsAttempted | read-only | current | The number of Dot1x sessions attempted on this port, since the time the stats were cleared. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.2 | ColumnruckusDot1xSessionsAccepted | read-only | current | The number of Dot1x sessions accepted or permited on this port, since the time the stats were cleared. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.3 | ColumnruckusDot1xSessionsRejected | read-only | current | The number of Dot1x sessions failed or rejected on this port, since the time the stats were cleared. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.4 | ColumnruckusDot1xSessionsInProgress | read-only | current | The number of Dot1x sessions which are in progress on this port waiting for authentication to be completed, since the time the stats were cleared. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.5 | ColumnruckusDot1xSessionsErrored | read-only | current | The number of Dot1x sessions which are neither accepted or rejected due to conditions like timeout, resource failure, etc; on this port, since the time the sta… |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.6 | ColumnruckusMacAuthSessionsAttempted | read-only | current | The number of MAC-Auth sessions attempted on this port, since the time the stats were cleared. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.7 | ColumnruckusMacAuthSessionsAccepted | read-only | current | The number of MAC-Auth sessions accepted or permited on this port, since the time the stats were cleared |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.8 | ColumnruckusMacAuthSessionsRejected | read-only | current | The number of MAC-Auth sessions failed or rejected on this port, since the time the stats were cleared |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.9 | ColumnruckusMacAuthSessionsInProgress | read-only | current | The number of MAC-Auth sessions which are in progress on this port waiting for authentication to be completed, since the time the stats were cleared |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.10 | ColumnruckusMacAuthSessionsErrored | read-only | current | The number of MAC-Auth sessions which are neither accepted or rejected due to conditions like timeout, resource failure, etc; on this port, since the time the … |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.2 | TableruckusDot1xAuthStatsTable | not-accessible | current | A table that provides information about the Dot1x Statistics at port level. An entry exists in this table for every port enabled for Dot1x. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1 | RowruckusDot1xAuthStatsEntry | not-accessible | current | An entry of per port Dot1x statistics table. |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.1 | ColumnruckusDot1xTxEAPFrames | read-only | current | The total number of EAPOL frames transmitted on this port |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.2 | ColumnruckusDot1xTxEAPReqIdFrames | read-only | current | The number of EAP-Request/Identity frames transmitted on this port |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.3 | ColumnruckusDot1xTxEAPReqFrames | read-only | current | The number of transmitted EAP request frames that are not EAP-Request/identify on this port |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.4 | ColumnruckusDot1xRxEAPFrames | read-only | current | The total number of EAPOL frames received on this port |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.5 | ColumnruckusDot1xRxEAPStartFrames | read-only | current | The number of EAPOL-Start frames received on this port |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.6 | ColumnruckusDot1xRxEAPLogOffFrames | read-only | current | The number of EAPOL-Logoff frames received on this port |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.7 | ColumnruckusDot1xRxEAPRespIdFrames | read-only | current | The number of EAP-Response/Identify frames received on this port |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.8 | ColumnruckusDot1xRxEAPRespFrames | read-only | current | The number of received EAP-Response frames other than EAP-Response/Identity on this port |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.9 | ColumnruckusDot1xRxEAPInvalidFrames | read-only | current | The number of invalid EAPOL frames received on this port |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.10 | ColumnruckusDot1xRxLengthErrorFrames | read-only | current | The number of EAPOL frames received with incorrect length on this port |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.11 | ColumnruckusDot1xRxEAPLastFrameVersion | read-only | current | The version of last EAP frame received on this port |
| 1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.12 | ColumnruckusDot1xRxEAPLastFrameSource | read-only | current | The MAC address of the source from where the last EAP frame received on this port |
| 1.3.6.1.4.1.1991.1.1.3.44.2 | NoderuckusAuthConformance | |||
| 1.3.6.1.4.1.1991.1.1.3.44.2.1 | NoderuckusAuthMIBCompliances | |||
| 1.3.6.1.4.1.1991.1.1.3.44.2.1.1 | ComplianceruckusAuthCompliance | current | The compliance statement for entities which implement RUCKUS-AUTH-MIB. | |
| 1.3.6.1.4.1.1991.1.1.3.44.2.2 | NoderuckusAuthMIBGroups | |||
| 1.3.6.1.4.1.1991.1.1.3.44.2.2.1 | GroupruckusAuthConfigGroup | current | A collection of objects that provide global configuration of FlexAuth feature, common to both MAC-Auth and Dot1x. | |
| 1.3.6.1.4.1.1991.1.1.3.44.2.2.2 | GroupruckusDot1xAuthConfigGroup | current | A collection of objects that provide global global configuration of Dot1x sub-feature, which applies only to Dot1x. | |
| 1.3.6.1.4.1.1991.1.1.3.44.2.2.3 | GroupruckusMacAuthConfigGroup | current | A collection of objects that provide global configuration of MAC-Auth sub-feature, which applies only to MAC-Auth. | |
| 1.3.6.1.4.1.1991.1.1.3.44.2.2.4 | GroupruckusAuthPortConfigGroup | current | A collection of objects that provide interface configuration of FlexAuth feature,common to both MAC-Auth and Dot1x. | |
| 1.3.6.1.4.1.1991.1.1.3.44.2.2.5 | GroupruckusAuthFilterConfigGroup | current | A collection of objects that provide interface auth filter configuration of FlexAuth feature, common to both MAC-Auth and Dot1x. | |
| 1.3.6.1.4.1.1991.1.1.3.44.2.2.6 | GroupruckusAuthSessionsGroup | current | A collection of objects that provide session information of a FlexAuth session. | |
| 1.3.6.1.4.1.1991.1.1.3.44.2.2.7 | GroupruckusAuthStatsGroup | current | A collection of objects that provide session statistics of FlexAuth sessions at port level. | |
| 1.3.6.1.4.1.1991.1.1.3.44.2.2.8 | GroupruckusDot1xAuthStatsGroup | current | A collection of objects that provide Dot1x statistics of Dot1x sessions at port level. | |
| 1.3.6.1.4.1.1991.1.1.3.44.2.2.9 | GroupruckusWebAuthConfigGroup | current | A collection of objects that provide WebAuth configuration. |
Type Definitions
| Name | Syntax | Status | Description |
|---|---|---|---|
| Dot1xAuthState | INTEGER { other(1), initialize(2), disconnected(3), connecting(4), authenticating(5), authenticated(6), aborting(7), held(8), forceAuth(9), forceUnauth(10) } | current | The authenticator(PAE) state machine values as described below. other(1): Anything other than following states initialize(2): PAE state machine is being initialized disconnected(3): Explicit logoff request is received f… |
| RuckusAuthAging | BITS { deniedSessions(0), permittedSessions(1) } | current | Describes, if denied and permitted sessions are enabled or disabled for aging. A bit field of '1' indicates enabled, otherwise disabled. |
| RuckusAuthFailAction | INTEGER { blockTraffic(1), restrictVlan(2) } | current | Describes the action to be taken, when the clients fail the authentication. blockTraffic(1): Clients are blocked access to the network restrictVlan(2): Clients are placed in the configured restrict VLAN, so they have li… |
| RuckusAuthMode | INTEGER { singleUntagged(1), multipleUntagged(2), singleHost(3), multipleHosts(4) } | current | Describes the authentication modes supported with Ruckus FlexAuth implementation. singleUntagged(1): multiple clients are allowed, but all must belong to one VLAN multipleUntagged(2): multiple clients are allowed and ea… |
| RuckusAuthOrder | INTEGER { dot1xMauth(1), mauthDot1x(2) } | current | Describes which authentication methods to be attempted in series of methods. Subsequent methods are tried depending on the outcome of the previous method and several rules are defined which are not explined here. dot1xM… |
| RuckusAuthTimeoutAction | INTEGER { failure(1), success(2), criticalVlan(3), other(4) } | current | Describes the action to be taken, when the authenticator times out for various readons like server busy, network access, etc. failure(1): The action taken is specified by the ruckusAuthFailAction object success(2): Clie… |
| VlanId | INTEGER (0 | 1..4094) | current | An ID used to represent VLAN identifier in the system for both untagged and tagged VLANs packets). When an object is not configured, this could be 0. |