MIB Viewer

TPT-NGFW-POLICY-MIB

50 objects
Policy information and notifications for TippingPoint Next-Generation Firewall products. This includes Firewall rules, IPS, Reputation profiles, Quarantine. Copyright (C) 2016 Trend Micro Incorporated. All Rights Reserved. Trend Micro makes no warranty of any kind with regard to this material, including, but not limited to, the implied warranties of merchantability and fitness for a particular purpose. Trend Micro shall not be liable for errors contained herein or for incidental or consequential damages in connection with the furnishing, performance, or use of this material. This document contains proprietary information, which is protected by copyright. No part of this document may be photocopied, reproduced, or translated into another language without the prior written consent of Trend Micro. The information is provided 'as is' without warranty of any kind and is subject to change without notice. The only warranties for Trend Micro products and services are set forth in the express warranty statements accompanying such products and services. Nothing herein should be construed as constituting an additional warranty. Trend Micro shall not be liable for technical or editorial errors or omissions contained herein. TippingPoint(R), the TippingPoint logo, and Digital Vaccine(R) are registered trademarks of Trend Micro. All other company and product names may be trademarks of their respective holders. All rights reserved. This document contains confidential information, trade secrets or both, which are the property of Trend Micro. No part of this documentation may be reproduced in any form or by any means or used to make any derivative work (such as translation, transformation, or adaptation) without written permission from Trend Micro or one of its subsidiaries. All other company and product names may be trademarks of their respective holders.
OIDNameAccessStatusDescription
1.3.6.1.4.1.10734.3.9.1.1.7GrouptptNgfwPolicyGroupcurrentPolicy group consisting of firewall, IPS, Reputation, and Quarantine information.
1.3.6.1.4.1.10734.3.9.1.1.8GrouptptNgfwPolicyNotificationGroupcurrentNotification sent from TippingPoint Next-generation Firewall rules and inspection profiles.
1.3.6.1.4.1.10734.3.9.1.2.4CompliancetptNgfwPolicyComplcurrentCompliance for TippingPoint Next-generation Firewall policies.
1.3.6.1.4.1.10734.3.9.2.4IdentitytptNgfwPolicyPolicy information and notifications for TippingPoint Next-Generation Firewall products. This includes Firewall rules, IPS, Reputation profiles, Quarantine. Co…
1.3.6.1.4.1.10734.3.9.3.0.10NotificationtptNgfwPolicyNotifycurrentA notification sent when a firewall rule, IPS, Reputation, or Quarantine profile detects a network event of interest.
1.3.6.1.4.1.10734.3.9.3.1.20ScalartptNgfwPolicyNotifyTimeaccessible-for-notifycurrentThe time when the firewall detected a network event and generated this policy notification.
1.3.6.1.4.1.10734.3.9.3.1.21ScalartptNgfwPolicyNotifyEventSourceaccessible-for-notifycurrentThe policy component (Firewall, IPS, Reputation, Quarantine) that detected a network event and generated this notification.
1.3.6.1.4.1.10734.3.9.3.1.22ScalartptNgfwPolicyNotifyEventTypeaccessible-for-notifycurrentIf the notify event was generated by the firewall, this object indicates what type of event was detected.
1.3.6.1.4.1.10734.3.9.3.1.23ScalartptNgfwPolicyNotifyEventSeverityaccessible-for-notifycurrentThe severity of the detected network event.
1.3.6.1.4.1.10734.3.9.3.1.24ScalartptNgfwPolicyNotifyCorrelationIdaccessible-for-notifycurrentA 128-bit identifier in decimal format. This ID is used to correlate firewall events. For example, a firewall session started and ended notification will have …
1.3.6.1.4.1.10734.3.9.3.1.25ScalartptNgfwPolicyNotifyActionTypeaccessible-for-notifycurrentThe type of action taken on network traffic matching a firewall rule or inspection profile.
1.3.6.1.4.1.10734.3.9.3.1.26ScalartptNgfwPolicyNotifyActionaccessible-for-notifycurrentThis object provides additional description of a firewall action. For example, when a quarantine action occurs, this object details if the action was to place …
1.3.6.1.4.1.10734.3.9.3.1.27ScalartptNgfwPolicyNotifyActionSetNameaccessible-for-notifycurrentThe action set name associated with the firewall rule that detected an event.
1.3.6.1.4.1.10734.3.9.3.1.28ScalartptNgfwPolicyNotifyRuleNameaccessible-for-notifycurrentThe firewall rule name that has generated the notification.
1.3.6.1.4.1.10734.3.9.3.1.29ScalartptNgfwPolicyNotifyInInterfaceaccessible-for-notifycurrentThe interface name that is receiving the traffic that triggered a firewall action.
1.3.6.1.4.1.10734.3.9.3.1.30ScalartptNgfwPolicyNotifyOutInterfaceaccessible-for-notifycurrentThe interface name sending the suspect traffic.
1.3.6.1.4.1.10734.3.9.3.1.31ScalartptNgfwPolicyNotifySrcIpAddrTypeaccessible-for-notifycurrentThe IP address type of the network traffic source.
1.3.6.1.4.1.10734.3.9.3.1.32ScalartptNgfwPolicyNotifySrcIpAddraccessible-for-notifycurrentThe source IP address generating the network traffic that has triggered a firewall action.
1.3.6.1.4.1.10734.3.9.3.1.33ScalartptNgfwPolicyNotifySrcPortaccessible-for-notifycurrentThe source port generating the network traffic.
1.3.6.1.4.1.10734.3.9.3.1.34ScalartptNgfwPolicyNotifySrcTransIpAddraccessible-for-notifycurrentThe translated (NAT) source IP address.
1.3.6.1.4.1.10734.3.9.3.1.35ScalartptNgfwPolicyNotifySrcTransPortaccessible-for-notifycurrentThe translated (NAT) source port.
1.3.6.1.4.1.10734.3.9.3.1.36ScalartptNgfwPolicyNotifyDestIpAddrTypeaccessible-for-notifycurrentThe destination IP address type.
1.3.6.1.4.1.10734.3.9.3.1.37ScalartptNgfwPolicyNotifyDestIpAddraccessible-for-notifycurrentThe source IP address receiving network traffic that triggered a firewall action.
1.3.6.1.4.1.10734.3.9.3.1.38ScalartptNgfwPolicyNotifyDestPortaccessible-for-notifycurrentThe source port receiving the network traffic.
1.3.6.1.4.1.10734.3.9.3.1.39ScalartptNgfwPolicyNotifyDestTransIpAddraccessible-for-notifycurrentThe translated (NAT) destination IP address.
1.3.6.1.4.1.10734.3.9.3.1.40ScalartptNgfwPolicyNotifyDestTransPortaccessible-for-notifycurrentThe translated (NAT) destination port.
1.3.6.1.4.1.10734.3.9.3.1.41ScalartptNgfwPolicyNotifyProtocolaccessible-for-notifycurrentThe transport protocol of the suspect traffic.
1.3.6.1.4.1.10734.3.9.3.1.42ScalartptNgfwPolicyNotifyApplicationNameaccessible-for-notifycurrentThe application name generating network traffic that has triggered a firewall rule.
1.3.6.1.4.1.10734.3.9.3.1.43ScalartptNgfwPolicyNotifyUserNameaccessible-for-notifycurrentThe user name, if available, that is responsible for generating network traffic triggering a firewall action.
1.3.6.1.4.1.10734.3.9.3.1.44ScalartptNgfwPolicyNotifyBytesInaccessible-for-notifycurrentSource to destination bytes.
1.3.6.1.4.1.10734.3.9.3.1.45ScalartptNgfwPolicyNotifyBytesOutaccessible-for-notifycurrentDestination to source bytes.
1.3.6.1.4.1.10734.3.9.3.1.46ScalartptNgfwPolicyNotifyStartTimeSecaccessible-for-notifycurrentThe time, in seconds, from EPOC (January 1, 1970 00:00:00) when the event was detected.
1.3.6.1.4.1.10734.3.9.3.1.47ScalartptNgfwPolicyNotifyStartTimeNanoaccessible-for-notifycurrentThe fractional time, in nanoseconds, when the event was detected.
1.3.6.1.4.1.10734.3.9.3.1.48ScalartptNgfwPolicyNotifyRateLimitaccessible-for-notifycurrentThe rate-limit, in kbps, of the action set associated with this notification.
1.3.6.1.4.1.10734.3.9.3.1.49ScalartptNgfwPolicyNotifyPktTraceVeraccessible-for-notifycurrentThe packet trace version.
1.3.6.1.4.1.10734.3.9.3.1.50ScalartptNgfwPolicyNotifyPktTraceIdaccessible-for-notifycurrentThe bucket identifier for a packet trace.
1.3.6.1.4.1.10734.3.9.3.1.51ScalartptNgfwPolicyNotifyPktTraceBeginaccessible-for-notifycurrentThe starting sequence number for a packet trace.
1.3.6.1.4.1.10734.3.9.3.1.52ScalartptNgfwPolicyNotifyPktTraceEndaccessible-for-notifycurrentThe ending sequence number for a packet trace.
1.3.6.1.4.1.10734.3.9.3.1.53ScalartptNgfwPolicyNotifyFilterNameaccessible-for-notifycurrentThe descriptive name of the filter maching the data stream.
1.3.6.1.4.1.10734.3.9.3.1.54ScalartptNgfwPolicyNotifyProfileNameaccessible-for-notifycurrentProfile name.
1.3.6.1.4.1.10734.3.9.3.1.55ScalartptNgfwPolicyNotifyPolicyNameaccessible-for-notifycurrentThe firewall policy name that matched network traffic and caused the firewall to take an action.
1.3.6.1.4.1.10734.3.9.3.1.56ScalartptNgfwPolicyNotifyVlanIdaccessible-for-notifycurrentThe VLAN tag that the network traffic occured on.
1.3.6.1.4.1.10734.3.9.3.1.57ScalartptNgfwPolicyNotifyHitCountaccessible-for-notifycurrentHit count. The number of times, the firewall detected a particulare event as defined by a rule or inspection profile.
1.3.6.1.4.1.10734.3.9.3.1.58ScalartptNgfwPolicyNotifyMsgParamsaccessible-for-notifycurrentA string containing parameters (separated by vertical bars) matching the Message in the Digital Vaccine (the XML tag is Message).
1.3.6.1.4.1.10734.3.9.3.1.59ScalartptNgfwPolicyNotifyPeriodaccessible-for-notifycurrentThe aggregation period, in minutes, when the condition is frist detected and this notification sent.
Type Definitions
NameSyntaxStatusDescription
ActionTypeINTEGER { permit(1), rateLimit(2), trust(3), block(4), quarantine(5) }currentThe action taken by a policy to either block, permit, trust, rate-limit, or quarantine network traffic.
EventSeverityINTEGER { info(1), low(2), minor(3), major(4), critical(5) }currentThe severity of a network event.
EventSourceINTEGER { firewall(1), ips(2), reputation(3), quarantine(4) }currentThe firewall rule or inspection profile that triggered a policy notification.
FirewallEventTypeINTEGER { sessionStart(1), applicationDetect(2), sessionEnd(3), blockedByFirewall(4) }currentThe type of firewall event detected: a session start or end, an application detection, or network traffic was blocked.
PacketTraceVersionINTEGER { packetTraceV1(1), packetTraceV2(2), none(3) }currentThe version of a packet trace collected and saved or none.