CISCO-IPSEC-MIB Table View

Table-centric layout grouping table, row, and column objects.

Tables
5
Rows
5
Columns
28
.1.3.6.1.4.1.9.10.62.1.1.5 · 1 row entry · 6 columns
Uses the cisco variant from /opt/observium/mibs/cisco.
Command help
Walk cipsIsakmpPolicyTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-IPSEC-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-IPSEC-MIB::cipsIsakmpPolicyTable'
The table containing the list of all
ISAKMP policy entries configured by the operator.
cipsIsakmpPolicyEntry row .1.3.6.1.4.1.9.10.62.1.1.5.1
Each entry contains the attributes
associated with a single ISAKMP
Policy entry.
Column Syntax OID
The priotity of this ISAKMP Policy entry.
This is also the index of this table.
Integer32
Constraints:
range: 0-65535
.1.3.6.1.4.1.9.10.62.1.1.5.1.1
The encryption transform specified by this
ISAKMP policy specification. The Internet Key Exchange
(IKE) tunnels setup using this policy item would
use the specified encryption transform to protect the
ISAKMP PDUs.
EncryptAlgo
Type Values:
1none
2des
3des3
.1.3.6.1.4.1.9.10.62.1.1.5.1.2
The hash transform specified by this
ISAKMP policy specification. The IKE tunnels
setup using this policy item would use the
specified hash transform to protect the
ISAKMP PDUs.
IkeHashAlgo
Type Values:
1none
2md5
3sha
.1.3.6.1.4.1.9.10.62.1.1.5.1.3
The peer authentication mthod specified by
this ISAKMP policy specification. If this policy
entity is selected for negotiation with a peer,
the local entity would authenticate the peer using
the method specified by thi…
IkeAuthMethod
Type Values:
1none
2preSharedKey
3rsaSig
4rsaEncrypt
5revPublicKey
.1.3.6.1.4.1.9.10.62.1.1.5.1.4
This object specifies the Oakley group used
for Diffie Hellman exchange in the Main Mode.
If this policy item is selected to negotiate
Main Mode with an IKE peer, the local entity
chooses the group specified by this …
DiffHellmanGrp
Type Values:
1none
2dhGroup1
3dhGroup2
.1.3.6.1.4.1.9.10.62.1.1.5.1.5
This object specifies the lifetime in seconds
of the IKE tunnels generated using this
policy specification.
secondsInteger32
Constraints:
range: 60-86400
.1.3.6.1.4.1.9.10.62.1.1.5.1.6
.1.3.6.1.4.1.9.10.62.1.2.3.1 · 1 row entry · 8 columns
Uses the cisco variant from /opt/observium/mibs/cisco.
Command help
Walk cipsStaticCryptomapSetTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-IPSEC-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-IPSEC-MIB::cipsStaticCryptomapSetTable'
The table containing the list of all
cryptomap sets that are fully specified
and are not wild-carded.
          
The operator may include different types of
cryptomaps in such a set - manual, CET,
ISAKMP or dynamic.
cipsStaticCryptomapSetEntry row .1.3.6.1.4.1.9.10.62.1.2.3.1.1
Each entry contains the attributes
associated with a single static
cryptomap set.
Column Syntax OID
The index of the static cryptomap table. The value
of the string is the name string assigned by the
operator in defining the cryptomap set.
SNMPv2-TCDisplayString
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.1
The total number of cryptomap entries contained in
this cryptomap set.
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.2
The number of cryptomaps associated with this
cryptomap set that use ISAKMP protocol to do key
exchange.
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.3
The number of cryptomaps associated with this
cryptomap set that require the operator to manually
setup the keys and SPIs.
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.4
The number of cryptomaps of type 'ipsec-cisco'
associated with this cryptomap set. Such
cryptomap elements implement Cisco Encryption Technology
based Virtual Private Networks.
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.5
The number of dynamic cryptomap templates
linked to this cryptomap set.
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.6
The number of dynamic cryptomap templates
linked to this cryptomap set that have Tunnel Endpoint
Discovery (TED) enabled.
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.7
The number of and IPsec Security Associations
that are active and were setup using this cryptomap.
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.8
.1.3.6.1.4.1.9.10.62.1.2.3.2 · 1 row entry · 3 columns
Uses the cisco variant from /opt/observium/mibs/cisco.
Command help
Walk cipsDynamicCryptomapSetTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-IPSEC-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-IPSEC-MIB::cipsDynamicCryptomapSetTable'
The table containing the list of all dynamic
cryptomaps that use IKE, defined on 
 the managed entity.
cipsDynamicCryptomapSetEntry row .1.3.6.1.4.1.9.10.62.1.2.3.2.1
Each entry contains the attributes associated
with a single dynamic cryptomap template.
Column Syntax OID
The index of the dynamic cryptomap table.
The value of the string is the one assigned
by the operator in defining the cryptomap set.
SNMPv2-TCDisplayString
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.9.10.62.1.2.3.2.1.1
The number of cryptomap entries in this cryptomap.
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.9.10.62.1.2.3.2.1.2
The number of static cryptomap sets with which
this dynamic cryptomap is associated.
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.9.10.62.1.2.3.2.1.3
.1.3.6.1.4.1.9.10.62.1.2.3.3 · 1 row entry · 9 columns
Uses the cisco variant from /opt/observium/mibs/cisco.
Command help
Walk cipsStaticCryptomapTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-IPSEC-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-IPSEC-MIB::cipsStaticCryptomapTable'
The table ilisting the member cryptomaps
of the cryptomap sets that are configured
on the managed entity.
cipsStaticCryptomapEntry row .1.3.6.1.4.1.9.10.62.1.2.3.3.1
Each entry contains the attributes
associated with a single static
(fully specified) cryptomap entry.
This table does not include the members
of dynamic cryptomap sets that may be
linked with the parent static crypto…
Column Syntax OID
The priority of the cryptomap entry in the
cryptomap set. This is the second index component
of this table.
Integer32
Constraints:
range: 0-65535
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.1
The type of the cryptomap entry. This can be an ISAKMP
cryptomap, CET or manual. Dynamic cryptomaps are not
counted in this table.
CryptomapType
Type Values:
0cryptomapTypeNONE
1cryptomapTypeMANUAL
2cryptomapTypeISAKMP
3cryptomapTypeCET
4cryptomapTypeDYNAMIC
5cryptomapTypeDYNAMICDISCOVERY
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.2
The description string entered by the operatoir
while creating this cryptomap. The string generally
identifies a description and the purpose of this
policy.
SNMPv2-TCDisplayString
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.3
The IP address of the current peer associated with
this IPSec policy item. Traffic that is protected by
this cryptomap is protected by a tunnel that terminates
at the device whose IP address is specified by this
object.
IPSIpAddress
Type Constraints:
range: 4
range: 16
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.4
The number of peers associated with this cryptomap
entry. The peers other than the one identified by
'cipsStaticCryptomapPeer' are backup peers.

Manual cryptomaps may have only one peer.
Integer32
Constraints:
range: 0-40
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.5
This object identifies if the tunnels instantiated
due to this policy item should use Perfect Forward Secrecy
(PFS) and if so, what group of Oakley they should use.
DiffHellmanGrp
Type Values:
1none
2dhGroup1
3dhGroup2
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.6
This object identifies the lifetime of the IPSec
Security Associations (SA) created using this IPSec policy
entry. If this value is zero, the lifetime assumes the
value specified by the global lifetime parameter.
Integer32
Constraints:
range: 0-0
range: 120-86400
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.7
This object identifies the lifesize (maximum traffic
in bytes that may be carried) of the IPSec SAs
created using this IPSec policy entry.
If this value is zero, the lifetime assumes the
value specified by the global …
Integer32
Constraints:
range: 0-0
range: 2560-536870912
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.8
This object identifies the granularity of the
IPSec SAs created using this IPSec policy entry.
If this value is TRUE, distinct SA bundles are created
for distinct hosts at the end of the application traffic.
SNMPv2-TCTruthValue
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.9
.1.3.6.1.4.1.9.10.62.1.2.3.4 · 1 row entry · 2 columns
Uses the cisco variant from /opt/observium/mibs/cisco.
Command help
Walk cipsCryptomapSetIfTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-IPSEC-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-IPSEC-MIB::cipsCryptomapSetIfTable'
The table lists the binding of cryptomap sets
to the interfaces of the managed entity.
cipsCryptomapSetIfEntry row .1.3.6.1.4.1.9.10.62.1.2.3.4.1
Each entry contains the record of
the association between an interface
and a cryptomap set (static) that is defined
on the managed entity.

Note that the cryptomap set identified in
this binding must static…
Column Syntax OID
The value of this object identifies if the
interface to which the cryptomap set is attached
is a tunnel (such as a GRE or PPTP tunnel).
SNMPv2-TCTruthValue
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.9.10.62.1.2.3.4.1.1
This object identifies the status of the binding
of the specified cryptomap set with the specified
interface. The value when queried is always 'attached'.
When set to 'detached', the cryptomap set if detached
from th…
CryptomapSetBindStatusr/w
Type Values:
0unknown
1attached
2detached
.1.3.6.1.4.1.9.10.62.1.2.3.4.1.2