CISCO-IPSEC-MIB Table View
Table-centric layout grouping table, row, and column objects.
Tables
5
Rows
5
Columns
28
cipsIsakmpPolicyTable
table.1.3.6.1.4.1.9.10.62.1.1.5
·
1 row entry
·
6 columns
Uses the cisco variant from
Command help
/opt/observium/mibs/cisco.
Walk cipsIsakmpPolicyTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-IPSEC-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-IPSEC-MIB::cipsIsakmpPolicyTable'
The table containing the list of all ISAKMP policy entries configured by the operator.
Each entry contains the attributes
associated with a single ISAKMP
Policy entry.
associated with a single ISAKMP
Policy entry.
Indexes
| Column | Syntax | OID | ||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
The priotity of this ISAKMP Policy entry.
This is also the index of this table. |
Integer32 Constraints: range: 0-65535 |
.1.3.6.1.4.1.9.10.62.1.1.5.1.1 |
||||||||||
|
The encryption transform specified by this
ISAKMP policy specification. The Internet Key Exchange (IKE) tunnels setup using this policy item would use the specified encryption transform to protect the ISAKMP PDUs. |
EncryptAlgo Type Values:
|
.1.3.6.1.4.1.9.10.62.1.1.5.1.2 |
||||||||||
|
The hash transform specified by this
ISAKMP policy specification. The IKE tunnels setup using this policy item would use the specified hash transform to protect the ISAKMP PDUs. |
IkeHashAlgo Type Values:
|
.1.3.6.1.4.1.9.10.62.1.1.5.1.3 |
||||||||||
|
The peer authentication mthod specified by
this ISAKMP policy specification. If this policy entity is selected for negotiation with a peer, the local entity would authenticate the peer using the method specified by thi… |
IkeAuthMethod Type Values:
|
.1.3.6.1.4.1.9.10.62.1.1.5.1.4 |
||||||||||
|
This object specifies the Oakley group used
for Diffie Hellman exchange in the Main Mode. If this policy item is selected to negotiate Main Mode with an IKE peer, the local entity chooses the group specified by this … |
DiffHellmanGrp Type Values:
|
.1.3.6.1.4.1.9.10.62.1.1.5.1.5 |
||||||||||
|
This object specifies the lifetime in seconds
of the IKE tunnels generated using this policy specification. |
secondsInteger32 Constraints: range: 60-86400 |
.1.3.6.1.4.1.9.10.62.1.1.5.1.6 |
.1.3.6.1.4.1.9.10.62.1.2.3.1
·
1 row entry
·
8 columns
Uses the cisco variant from
Command help
/opt/observium/mibs/cisco.
Walk cipsStaticCryptomapSetTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-IPSEC-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-IPSEC-MIB::cipsStaticCryptomapSetTable'
The table containing the list of all
cryptomap sets that are fully specified
and are not wild-carded.
The operator may include different types of
cryptomaps in such a set - manual, CET,
ISAKMP or dynamic.
Each entry contains the attributes
associated with a single static
cryptomap set.
associated with a single static
cryptomap set.
Indexes
| Column | Syntax | OID |
|---|---|---|
|
The index of the static cryptomap table. The value
of the string is the name string assigned by the operator in defining the cryptomap set. |
SNMPv2-TCDisplayString Type Constraints: range: 0..255Description: Represents textual information taken from the NVT ASCII character set, as defined in pages 4, 10-11 of RFC 854. To summarize RFC 854, the NVT ASCII repertoire specifies: - the use of c… |
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.1 |
|
The total number of cryptomap entries contained in
this cryptomap set. |
SNMPv2-SMIGauge32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.2 |
|
The number of cryptomaps associated with this
cryptomap set that use ISAKMP protocol to do key exchange. |
SNMPv2-SMIGauge32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.3 |
|
The number of cryptomaps associated with this
cryptomap set that require the operator to manually setup the keys and SPIs. |
SNMPv2-SMIGauge32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.4 |
|
The number of cryptomaps of type 'ipsec-cisco'
associated with this cryptomap set. Such cryptomap elements implement Cisco Encryption Technology based Virtual Private Networks. |
SNMPv2-SMIGauge32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.5 |
|
The number of dynamic cryptomap templates
linked to this cryptomap set. |
SNMPv2-SMIGauge32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.6 |
|
The number of dynamic cryptomap templates
linked to this cryptomap set that have Tunnel Endpoint Discovery (TED) enabled. |
SNMPv2-SMIGauge32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.7 |
|
The number of and IPsec Security Associations
that are active and were setup using this cryptomap. |
SNMPv2-SMIGauge32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.8 |
.1.3.6.1.4.1.9.10.62.1.2.3.2
·
1 row entry
·
3 columns
Uses the cisco variant from
Command help
/opt/observium/mibs/cisco.
Walk cipsDynamicCryptomapSetTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-IPSEC-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-IPSEC-MIB::cipsDynamicCryptomapSetTable'
The table containing the list of all dynamic cryptomaps that use IKE, defined on the managed entity.
Each entry contains the attributes associated
with a single dynamic cryptomap template.
with a single dynamic cryptomap template.
Indexes
| Column | Syntax | OID |
|---|---|---|
|
The index of the dynamic cryptomap table.
The value of the string is the one assigned by the operator in defining the cryptomap set. |
SNMPv2-TCDisplayString Type Constraints: range: 0..255Description: Represents textual information taken from the NVT ASCII character set, as defined in pages 4, 10-11 of RFC 854. To summarize RFC 854, the NVT ASCII repertoire specifies: - the use of c… |
.1.3.6.1.4.1.9.10.62.1.2.3.2.1.1 |
|
The number of cryptomap entries in this cryptomap.
|
SNMPv2-SMIGauge32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.9.10.62.1.2.3.2.1.2 |
|
The number of static cryptomap sets with which
this dynamic cryptomap is associated. |
SNMPv2-SMIGauge32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.9.10.62.1.2.3.2.1.3 |
cipsStaticCryptomapTable
table.1.3.6.1.4.1.9.10.62.1.2.3.3
·
1 row entry
·
9 columns
Uses the cisco variant from
Command help
/opt/observium/mibs/cisco.
Walk cipsStaticCryptomapTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-IPSEC-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-IPSEC-MIB::cipsStaticCryptomapTable'
The table ilisting the member cryptomaps of the cryptomap sets that are configured on the managed entity.
Each entry contains the attributes
associated with a single static
(fully specified) cryptomap entry.
This table does not include the members
of dynamic cryptomap sets that may be
linked with the parent static crypto…
associated with a single static
(fully specified) cryptomap entry.
This table does not include the members
of dynamic cryptomap sets that may be
linked with the parent static crypto…
| Column | Syntax | OID | ||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
The priority of the cryptomap entry in the
cryptomap set. This is the second index component of this table. |
Integer32 Constraints: range: 0-65535 |
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.1 |
||||||||||||
|
The type of the cryptomap entry. This can be an ISAKMP
cryptomap, CET or manual. Dynamic cryptomaps are not counted in this table. |
CryptomapType Type Values:
|
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.2 |
||||||||||||
|
The description string entered by the operatoir
while creating this cryptomap. The string generally identifies a description and the purpose of this policy. |
SNMPv2-TCDisplayString Type Constraints: range: 0..255Description: Represents textual information taken from the NVT ASCII character set, as defined in pages 4, 10-11 of RFC 854. To summarize RFC 854, the NVT ASCII repertoire specifies: - the use of c… |
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.3 |
||||||||||||
|
The IP address of the current peer associated with
this IPSec policy item. Traffic that is protected by this cryptomap is protected by a tunnel that terminates at the device whose IP address is specified by this object. |
IPSIpAddress Type Constraints: range: 4range: 16 |
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.4 |
||||||||||||
|
The number of peers associated with this cryptomap
entry. The peers other than the one identified by 'cipsStaticCryptomapPeer' are backup peers. Manual cryptomaps may have only one peer. |
Integer32 Constraints: range: 0-40 |
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.5 |
||||||||||||
|
This object identifies if the tunnels instantiated
due to this policy item should use Perfect Forward Secrecy (PFS) and if so, what group of Oakley they should use. |
DiffHellmanGrp Type Values:
|
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.6 |
||||||||||||
|
This object identifies the lifetime of the IPSec
Security Associations (SA) created using this IPSec policy entry. If this value is zero, the lifetime assumes the value specified by the global lifetime parameter. |
Integer32 Constraints: range: 0-0range: 120-86400 |
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.7 |
||||||||||||
|
This object identifies the lifesize (maximum traffic
in bytes that may be carried) of the IPSec SAs created using this IPSec policy entry. If this value is zero, the lifetime assumes the value specified by the global … |
Integer32 Constraints: range: 0-0range: 2560-536870912 |
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.8 |
||||||||||||
|
This object identifies the granularity of the
IPSec SAs created using this IPSec policy entry. If this value is TRUE, distinct SA bundles are created for distinct hosts at the end of the application traffic. |
SNMPv2-TCTruthValue Type Values:
Description: Represents a boolean value. |
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.9 |
cipsCryptomapSetIfTable
table.1.3.6.1.4.1.9.10.62.1.2.3.4
·
1 row entry
·
2 columns
Uses the cisco variant from
Command help
/opt/observium/mibs/cisco.
Walk cipsCryptomapSetIfTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-IPSEC-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-IPSEC-MIB::cipsCryptomapSetIfTable'
The table lists the binding of cryptomap sets to the interfaces of the managed entity.
Each entry contains the record of
the association between an interface
and a cryptomap set (static) that is defined
on the managed entity.
Note that the cryptomap set identified in
this binding must static…
the association between an interface
and a cryptomap set (static) that is defined
on the managed entity.
Note that the cryptomap set identified in
this binding must static…
| Column | Syntax | OID | ||||||
|---|---|---|---|---|---|---|---|---|
|
The value of this object identifies if the
interface to which the cryptomap set is attached is a tunnel (such as a GRE or PPTP tunnel). |
SNMPv2-TCTruthValue Type Values:
Description: Represents a boolean value. |
.1.3.6.1.4.1.9.10.62.1.2.3.4.1.1 |
||||||
|
This object identifies the status of the binding
of the specified cryptomap set with the specified interface. The value when queried is always 'attached'. When set to 'detached', the cryptomap set if detached from th… |
CryptomapSetBindStatusr/w Type Values:
|
.1.3.6.1.4.1.9.10.62.1.2.3.4.1.2 |