CISCO-THREAT-MITIGATION-SERVICE-MIB Table View
Table-centric layout grouping table, row, and column objects.
Tables
4
Rows
4
Columns
23
ciTmsGroupTable
table.1.3.6.1.4.1.9.9.603.1.2.1
·
1 row entry
·
7 columns
Uses the cisco variant from
Command help
/opt/observium/mibs/cisco.
Walk ciTmsGroupTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-THREAT-MITIGATION-SERVICE-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-THREAT-MITIGATION-SERVICE-MIB::ciTmsGroupTable'
Consumer can participate in one of more TIDP groups, each
group having one or more controllers. The table represents
the list of controllers in a particular group.
A row is added to the table when a controller's IP address
is added to the list of known controllers.
A row is deleted from the table when a controller's
IP address is removed from the list of known controllers.
Each entry represents a conceptual row in ciTmsGroupTable
and corresponds to the information about the controller
and TIDP group a consumer is registered with.
and corresponds to the information about the controller
and TIDP group a consumer is registered with.
| Column | Syntax | OID | ||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
This object represents the TIDP group Id.
|
Unsigned32 Constraints: range: 1-4294967295 |
.1.3.6.1.4.1.9.9.603.1.2.1.1.1 |
||||||||||||||
|
This object represents the type of the network address
available through ciTmsControllerIp. |
INET-ADDRESS-MIBInetAddressType Type Values:
|
.1.3.6.1.4.1.9.9.603.1.2.1.1.2 |
||||||||||||||
|
This object represents the network address of the controller.
The type of the address is represented by ciTmsControllerIpType. |
INET-ADDRESS-MIBInetAddress Type Constraints: range: 0..255 |
.1.3.6.1.4.1.9.9.603.1.2.1.1.3 |
||||||||||||||
|
This object represents the status of consumer's registration
with the controller in a TIDP group. |
CTmsConsumerRegistrationStatus Type Values:
|
.1.3.6.1.4.1.9.9.603.1.2.1.1.4 |
||||||||||||||
|
This object indicates whether following notifications should
be generated for a group : 1. ciscoTmsControllerUnreachable 2. ciscoTmsThreatStatusChange 3. ciscoTmsMitigationActionFailed Setting… |
SNMPv2-TCTruthValuer/w Type Values:
Description: Represents a boolean value. |
.1.3.6.1.4.1.9.9.603.1.2.1.1.5 |
||||||||||||||
|
The storage type for this conceptual row.
|
SNMPv2-TCStorageTyper/w Type Values:
Description: Describes the memory realization of a conceptual row. A row which is volatile(2) is lost upon reboot. A row which is either nonVolatile(3), permanent(4) or readOnly(5), is backed up by stable storage. A row which is … |
.1.3.6.1.4.1.9.9.603.1.2.1.1.6 |
||||||||||||||
|
The status of this conceptual row.
An entry can be created/deleted using this object. A row may be deleted by setting the RowStatus to 'destroy'. |
SNMPv2-TCRowStatusr/w Type Values:
Description: The RowStatus textual convention is used to manage the creation and deletion of conceptual rows, and is used as the value of the SYNTAX clause for the status column of a conceptual row (as described in Section 7.7.1 of … |
.1.3.6.1.4.1.9.9.603.1.2.1.1.7 |
ciTmsThreatTable
table.1.3.6.1.4.1.9.9.603.1.3.1
·
1 row entry
·
9 columns
Uses the cisco variant from
Command help
/opt/observium/mibs/cisco.
Walk ciTmsThreatTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-THREAT-MITIGATION-SERVICE-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-THREAT-MITIGATION-SERVICE-MIB::ciTmsThreatTable'
This table represents the information about the
threats the consumer has received from various
controllers belonging to different TIDP groups it is
registered with. A threat received from one controller
in a TIDP group is uniquely identified by the threat id
and owner id.
A row is added to the table when a threat notification
message is received by the consumer from the controller in
a TIDP group.
A row is deleted from the table when the consumer deletes
the information about a threat received from a controller
in a TIDP group.
Each entry represents a conceptual row in ciTmsThreatTable
and corresponds to the information about a threat and it's
various attributes, received from a controller in a given
TIDP group.
and corresponds to the information about a threat and it's
various attributes, received from a controller in a given
TIDP group.
| Column | Syntax | OID | ||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
This object identifies the controller that has notified the
consumer about the threat. |
Unsigned32 Constraints: range: 1-4294967295 |
.1.3.6.1.4.1.9.9.603.1.3.1.1.1 |
||||||||||||||||
|
This object represents the identifier for the particular
threat. |
Unsigned32 Constraints: range: 1-65535 |
.1.3.6.1.4.1.9.9.603.1.3.1.1.2 |
||||||||||||||||
|
This object represents the version of the
threat. |
Unsigned32 Constraints: range: 0-255 |
.1.3.6.1.4.1.9.9.603.1.3.1.1.3 |
||||||||||||||||
|
This object represents the current status of the threat on
the consumer. This is evaluated locally on consumer. |
CTmsThreatStatus Type Values:
|
.1.3.6.1.4.1.9.9.603.1.3.1.1.4 |
||||||||||||||||
|
This object represents the class of threat. An example of
class is 'Worm'. |
SNMP-FRAMEWORK-MIBSnmpAdminString Type Constraints: range: 0..255 |
.1.3.6.1.4.1.9.9.603.1.3.1.1.5 |
||||||||||||||||
|
This object represents name of the threat. An example of
threat name is 'WittyWorm'. |
SNMP-FRAMEWORK-MIBSnmpAdminString Type Constraints: range: 0..255 |
.1.3.6.1.4.1.9.9.603.1.3.1.1.6 |
||||||||||||||||
|
This object represents the duration the threat has been
active for. |
SNMPv2-TCDateAndTime Type Constraints: range: 8range: 11Description: A date-time specification. field octets contents range ----- ------ -------- ----- 1 1-2 year* 0..65536 2 3 month … |
.1.3.6.1.4.1.9.9.603.1.3.1.1.7 |
||||||||||||||||
|
This object represents the priority at which the consumer
responds to this threat. A higher value indicates a lower priority for the threat and vice versa. |
Unsigned32 Constraints: range: 1-32 |
.1.3.6.1.4.1.9.9.603.1.3.1.1.8 |
||||||||||||||||
|
This object represents the TCDF related information received
in the threat. For example, <tcdf> <match> <eq field='ip.dst_addr' value='10.10.10.1'> </eq> </match> </tcdf>. |
SNMP-FRAMEWORK-MIBSnmpAdminString Type Constraints: range: 0..255 |
.1.3.6.1.4.1.9.9.603.1.3.1.1.9 |
ciTmsThreatActionTable
table.1.3.6.1.4.1.9.9.603.1.3.2
·
1 row entry
·
6 columns
Uses the cisco variant from
Command help
/opt/observium/mibs/cisco.
Walk ciTmsThreatActionTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-THREAT-MITIGATION-SERVICE-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-THREAT-MITIGATION-SERVICE-MIB::ciTmsThreatActionTable'
This table represents mitigation action for the respective threat. A threat is uniquely represented by the threat id, owner id, controller IP and TIDP group ID and hence corresponding objects are used as indices. A row is added to the table when the consumer enforces a mitigation action as a result of receiving a threat message from a controller in a TIDP group. A row is deleted from the table when the consumer removes the mitigation action taken for the threat received from a controller in a TIDP group.
Each entry represents a conceptual row in
ciTmsThreatActionTable and corresponds to the
information about the mitigation action
applied for a particular threat.
ciTmsThreatActionTable and corresponds to the
information about the mitigation action
applied for a particular threat.
| Column | Syntax | OID | ||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
This object represents the mitigation action taken by
the consumer for a threat. |
CTmsActionType Type Values:
|
.1.3.6.1.4.1.9.9.603.1.3.2.1.1 |
||||||||||||||||
|
This object identifies an action parameter.
|
CTmsActionParamIdType Type Values:
|
.1.3.6.1.4.1.9.9.603.1.3.2.1.2 |
||||||||||||||||
|
This object represents the type of an action parameter.
|
CTmsActionParamType Type Values:
|
.1.3.6.1.4.1.9.9.603.1.3.2.1.3 |
||||||||||||||||
|
This object represents the length of the action parameter
identified by ciTmsThreatActionParamId. |
Unsigned32 Constraints: range: 1-65535 |
.1.3.6.1.4.1.9.9.603.1.3.2.1.4 |
||||||||||||||||
|
This object represents the value of the parameter identified
by ciTmsThreatActionParamId. This value should be interpreted using type and length of the parameter value represented by ciTmsThreatActionParamType and ciT… |
SNMP-FRAMEWORK-MIBSnmpAdminString Type Constraints: range: 0..255 |
.1.3.6.1.4.1.9.9.603.1.3.2.1.5 |
||||||||||||||||
|
This object specifies the reason for the failure of
a particular threat mitigation action. 'OER mitigation not supported' is an example of the value populated for this object. For successfully mitigated threats, this w… |
SNMP-FRAMEWORK-MIBSnmpAdminString Type Constraints: range: 0..255 |
.1.3.6.1.4.1.9.9.603.1.3.2.1.6 |
.1.3.6.1.4.1.9.9.603.1.3.3
·
1 row entry
·
1 columns
Uses the cisco variant from
Command help
/opt/observium/mibs/cisco.
Walk ciTmsThreatInterfaceTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-THREAT-MITIGATION-SERVICE-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-THREAT-MITIGATION-SERVICE-MIB::ciTmsThreatInterfaceTable'
The application of threat mitigation is typically done on one
or more interfaces. This table represents the status of
mitigation action applied on the respective interfaces.
A row is added to the table when the consumer enforces a
mitigation action on a interface as a result of receiving
a threat message from a controller in a TIDP group.
A row is deleted from the table when the consumer removes a
mitigation action taken on a interface as a result of threat
received from a controller in a TIDP group.
Each entry represents a row in ciTmsThreatInterfaceTable
and corresponds to the information about the interface on
which the threat mitigation action is applied.
and corresponds to the information about the interface on
which the threat mitigation action is applied.
| Column | Syntax | OID | ||||
|---|---|---|---|---|---|---|
|
This object indicates whether the mitigation action
for a particular threat has been successfully applied on an interface or not. A value of 'true' indicates the successful application of mitigation action, while … |
SNMPv2-TCTruthValue Type Values:
Description: Represents a boolean value. |
.1.3.6.1.4.1.9.9.603.1.3.3.1.1 |