This is a MIB Module for configuring and viewing IKE
parameters and policies.
Acronyms
The following acronyms are used in this document:
IPsec: Secure IP Protocol
VPN: Virtual Private Network
ISAKMP: Internet Security Association and Key Exchange
Protocol
IKE: Internet Key Exchange Protocol
DOI: Domain of Interpretation (of the attributes
of IKE protocol in the context of a specific
Phase-2 protocol).
SA: Security Association
(ref: rfc2408).
SPI: Security Parameter Index is the pointer or
identifier used in accessing SA attributes
(ref: rfc2408).
MM: Main Mode - the process of setting up
a Phase 1 SA to secure the exchanges
required to setup Phase 2 SAs
Phase 1 Tunnel:
An ISAKMP SA can be regarded as representing
a flow of ISAKMP/IKE traffic. Hence an ISAKMP
is referred to as a 'Phase 1 Tunnel' in this
document.
Phase 2 Tunnel:
A Phase 2 Tunnel is an instance of a
non-ISAKMP SA bundle in which all the SA
share the same proxy identifiers (IDii,IDir)
and protect the same stream of application
traffic.
Note that a Phase 2 tunnel may comprise one
SA bundle at any given point of time, but
the SA bundle changes with time due to
key refresh.
History of the MIB
This MIB was originally written as CISCO-IPSEC-MIB
which combined the configuration of IKE and IPsec
protocols into a single MIB.
|
ciscoIkeConfigMIB1.3.6.1.4.1.9.9.423 |
| CIKELifesize, CIPsecControlProtocol, CIKELifetime, CIKEIsakmpDoi, CIPsecIkePRFAlgorithm, CIPsecEncryptAlgorithm, CIPsecIkeHashAlgorithm, CIPsecDiffHellmanGrp, CIPsecIkeAuthMethod, CIPsecPhase1PeerIdentityType | CISCO-IPSEC-TC |
| ciscoMgmt | CISCO-SMI |
| InetAddressPrefixLength, InetAddressType, InetAddress | INET-ADDRESS-MIB |
| NOTIFICATION-GROUP, OBJECT-GROUP, MODULE-COMPLIANCE | SNMPv2-CONF |
| MODULE-IDENTITY, Unsigned32, NOTIFICATION-TYPE, OBJECT-TYPE | SNMPv2-SMI |
| TEXTUAL-CONVENTION, TruthValue, RowStatus | SNMPv2-TC |
| Name | Base Type | Values/Constraints |
|---|---|---|
| range: 1..65535 | ||
| range: 1..65535 |
![]() | .1.3.6.1.4.1.9.9.423 | |
![]() | .1.3.6.1.4.1.9.9.423.0 | |
![]() | .1.3.6.1.4.1.9.9.423.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.1.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.1.2 | |
![]() | .1.3.6.1.4.1.9.9.423.1.2 | |
![]() | .1.3.6.1.4.1.9.9.423.1.2.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.2.1.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.2.1.1.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.2.1.1.2 | |
![]() | .1.3.6.1.4.1.9.9.423.1.2.2 | |
![]() | .1.3.6.1.4.1.9.9.423.1.2.2.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.2.2.1.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.2.3 | |
![]() | .1.3.6.1.4.1.9.9.423.1.2.3.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.2.3.1.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.2.3.1.2 | |
![]() | .1.3.6.1.4.1.9.9.423.1.2.3.1.3 | |
![]() | .1.3.6.1.4.1.9.9.423.1.2.3.1.4 | |
![]() | .1.3.6.1.4.1.9.9.423.1.2.3.1.5 | |
![]() | .1.3.6.1.4.1.9.9.423.1.3 | |
![]() | .1.3.6.1.4.1.9.9.423.1.3.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.3.1.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.3.1.1.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.3.1.1.2 | |
![]() | .1.3.6.1.4.1.9.9.423.1.3.1.1.3 | |
![]() | .1.3.6.1.4.1.9.9.423.1.3.1.1.4 | |
![]() | .1.3.6.1.4.1.9.9.423.1.3.1.1.5 | |
![]() | .1.3.6.1.4.1.9.9.423.1.4 | |
![]() | .1.3.6.1.4.1.9.9.423.1.4.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.4.1.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.4.1.1.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.4.1.1.1.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.4.1.2 | |
![]() | .1.3.6.1.4.1.9.9.423.1.4.1.2.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.4.1.2.1.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.4.1.2.1.2 | |
![]() | .1.3.6.1.4.1.9.9.423.1.4.1.2.1.3 | |
![]() | .1.3.6.1.4.1.9.9.423.1.4.1.2.1.4 | |
![]() | .1.3.6.1.4.1.9.9.423.1.4.1.2.1.5 | |
![]() | .1.3.6.1.4.1.9.9.423.1.4.1.2.1.6 | |
![]() | .1.3.6.1.4.1.9.9.423.1.4.1.2.1.7 | |
![]() | .1.3.6.1.4.1.9.9.423.1.4.1.2.1.8 | |
![]() | .1.3.6.1.4.1.9.9.423.1.4.1.2.1.9 | |
![]() | .1.3.6.1.4.1.9.9.423.1.4.2 | |
![]() | .1.3.6.1.4.1.9.9.423.1.4.3 | |
![]() | .1.3.6.1.4.1.9.9.423.1.5 | |
![]() | .1.3.6.1.4.1.9.9.423.1.5.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.5.1.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.5.1.1.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.5.1.1.2 | |
![]() | .1.3.6.1.4.1.9.9.423.1.5.1.1.3 | |
![]() | .1.3.6.1.4.1.9.9.423.1.5.1.1.4 | |
![]() | .1.3.6.1.4.1.9.9.423.1.5.1.1.5 | |
![]() | .1.3.6.1.4.1.9.9.423.1.5.1.1.6 | |
![]() | .1.3.6.1.4.1.9.9.423.1.5.1.1.7 | |
![]() | .1.3.6.1.4.1.9.9.423.1.5.1.1.8 | |
![]() | .1.3.6.1.4.1.9.9.423.1.5.1.1.9 | |
![]() | .1.3.6.1.4.1.9.9.423.1.6 | |
![]() | .1.3.6.1.4.1.9.9.423.1.6.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.6.2 | |
![]() | .1.3.6.1.4.1.9.9.423.1.7 | |
![]() | .1.3.6.1.4.1.9.9.423.1.7.1 | |
![]() | .1.3.6.1.4.1.9.9.423.1.7.2 | |
![]() | .1.3.6.1.4.1.9.9.423.1.7.3 | |
![]() | .1.3.6.1.4.1.9.9.423.1.7.4 | |
![]() | .1.3.6.1.4.1.9.9.423.1.7.5 | |
![]() | .1.3.6.1.4.1.9.9.423.1.7.6 | |
![]() | .1.3.6.1.4.1.9.9.423.2 | |
![]() | .1.3.6.1.4.1.9.9.423.2.1 | |
![]() | .1.3.6.1.4.1.9.9.423.2.2 |
| Name | OID | Description |
|---|---|---|
| .1.3.6.1.4.1.9.9.423.0.1 | The notification is generated when the operational state of IKE entity on the managed device has been changed. | |
| .1.3.6.1.4.1.9.9.423.0.2 | This notification is generated when a new preshared key is configured on the managed device. | |
| .1.3.6.1.4.1.9.9.423.0.3 | This notification is generated when an existing preshared key is configured on the managed device is about to be deleted. | |
| .1.3.6.1.4.1.9.9.423.0.4 | This notification is generated when a new ISAKMP policy is configured on the managed device. | |
| .1.3.6.1.4.1.9.9.423.0.5 | This notification is issued when an existing ISAKMP policy configured on the managed device is about to be deleted. |