CISCO-TRUSTSEC-INTERFACE-MIB

Monitored by Observium
        This MIB module defines management objects for
configuration and monitoring of the interfaces in Cisco
Trusted Security environment.
        
Glossary: 
        
ACS      - Cisco Secure Access Control Server
        
IFC      - TrustSec Interface Controller
        
MACSec   - Media Access Control (MAC) Security
        
PMK      - Pairwise Master Key
        
SAP      - Security Association Protocol
        
SGT      - Security Group Tag. A tag identifying its source,
           assigned to a packet on ingress to a TrustSec cloud,
           and used to determine security and other policy
           to be applied to it along its path through the
           cloud.
        
TrustSec - Cisco Trusted Security
    
Observium actively monitors this MIB
Observium uses this MIB in discovery or polling workflows on applicable devices.
Ports
Explore Observium network monitoring
Source file
CISCO-TRUSTSEC-INTERFACE-MIB
Last revised
Identity
ciscoTrustSecIfMIB
Base OID
1.3.6.1.4.1.9.9.740
Imported Objects
CISCO-SMI ciscoMgmt
CISCO-TRUSTSEC-TC-MIB CtsSecurityGroupTag
IF-MIB ifIndex ifName
SNMP-FRAMEWORK-MIB SnmpAdminString
SNMPv2-CONF MODULE-COMPLIANCE (no object page) NOTIFICATION-GROUP (no object page) OBJECT-GROUP (no object page)
SNMPv2-SMI Counter32 Integer32 MODULE-IDENTITY (no object page) NOTIFICATION-TYPE (no object page) OBJECT-TYPE (no object page) Unsigned32
SNMPv2-TC DateAndTime RowStatus StorageType TEXTUAL-CONVENTION (no object page) TruthValue
Net-SNMP examples using the cisco MIB directory Show commands

These commands use the standard Observium installation path and load the selected MIB variant before the RFC and Net-SNMP directories.

Translate the module identity
/usr/bin/snmptranslate -Pud -Ir -On -m 'CISCO-TRUSTSEC-INTERFACE-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'CISCO-TRUSTSEC-INTERFACE-MIB::ciscoTrustSecIfMIB'
Walk the MIB subtree
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-TRUSTSEC-INTERFACE-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-TRUSTSEC-INTERFACE-MIB::ciscoTrustSecIfMIB'
How SNMP, Net-SNMP, MIB paths, and variants work
Objects (109)
1 directly used by Observium
.1.3.6.1.4.1.9.9.740
.1.3.6.1.4.1.9.9.740.0
.1.3.6.1.4.1.9.9.740.1
.1.3.6.1.4.1.9.9.740.1.1
.1.3.6.1.4.1.9.9.740.1.1.1
.1.3.6.1.4.1.9.9.740.1.1.1.1
Bits
.1.3.6.1.4.1.9.9.740.1.1.1.1.1
Enumeration
.1.3.6.1.4.1.9.9.740.1.1.1.1.2
.1.3.6.1.4.1.9.9.740.1.1.1.1.3
.1.3.6.1.4.1.9.9.740.1.1.1.1.4
.1.3.6.1.4.1.9.9.740.1.10
.1.3.6.1.4.1.9.9.740.1.10.1
.1.3.6.1.4.1.9.9.740.1.10.2
.1.3.6.1.4.1.9.9.740.1.10.3
.1.3.6.1.4.1.9.9.740.1.11
.1.3.6.1.4.1.9.9.740.1.11.1
.1.3.6.1.4.1.9.9.740.1.11.2
.1.3.6.1.4.1.9.9.740.1.11.3
.1.3.6.1.4.1.9.9.740.1.11.4
.1.3.6.1.4.1.9.9.740.1.11.5
.1.3.6.1.4.1.9.9.740.1.12
.1.3.6.1.4.1.9.9.740.1.12.1
Enumeration
.1.3.6.1.4.1.9.9.740.1.12.2
.1.3.6.1.4.1.9.9.740.1.2
.1.3.6.1.4.1.9.9.740.1.2.1
.1.3.6.1.4.1.9.9.740.1.2.1.1
.1.3.6.1.4.1.9.9.740.1.2.1.1.1
.1.3.6.1.4.1.9.9.740.1.2.1.1.2
.1.3.6.1.4.1.9.9.740.1.2.1.1.3
secondsInteger32
.1.3.6.1.4.1.9.9.740.1.2.1.1.4
secondsInteger32
.1.3.6.1.4.1.9.9.740.1.2.1.1.5
secondsInteger32
.1.3.6.1.4.1.9.9.740.1.2.1.1.6
.1.3.6.1.4.1.9.9.740.1.2.1.1.7
.1.3.6.1.4.1.9.9.740.1.2.1.1.8
.1.3.6.1.4.1.9.9.740.1.3
.1.3.6.1.4.1.9.9.740.1.3.1
.1.3.6.1.4.1.9.9.740.1.3.1.1
.1.3.6.1.4.1.9.9.740.1.3.1.1.1
.1.3.6.1.4.1.9.9.740.1.3.1.1.2
.1.3.6.1.4.1.9.9.740.1.3.1.1.3
.1.3.6.1.4.1.9.9.740.1.3.1.1.4
OctetString
.1.3.6.1.4.1.9.9.740.1.3.1.1.5
.1.3.6.1.4.1.9.9.740.1.3.1.1.6
.1.3.6.1.4.1.9.9.740.1.3.1.1.7
.1.3.6.1.4.1.9.9.740.1.3.1.1.8
.1.3.6.1.4.1.9.9.740.1.4
.1.3.6.1.4.1.9.9.740.1.4.1
.1.3.6.1.4.1.9.9.740.1.4.1.1
Enumeration
.1.3.6.1.4.1.9.9.740.1.4.1.1.1
.1.3.6.1.4.1.9.9.740.1.4.1.1.2
.1.3.6.1.4.1.9.9.740.1.4.1.1.3
.1.3.6.1.4.1.9.9.740.1.5
.1.3.6.1.4.1.9.9.740.1.5.1
.1.3.6.1.4.1.9.9.740.1.5.1.1
.1.3.6.1.4.1.9.9.740.1.5.1.1.1
.1.3.6.1.4.1.9.9.740.1.5.1.1.10
.1.3.6.1.4.1.9.9.740.1.5.1.1.11
Enumeration
.1.3.6.1.4.1.9.9.740.1.5.1.1.12
Enumeration
.1.3.6.1.4.1.9.9.740.1.5.1.1.2
.1.3.6.1.4.1.9.9.740.1.5.1.1.3
Bits
.1.3.6.1.4.1.9.9.740.1.5.1.1.4
Enumeration
.1.3.6.1.4.1.9.9.740.1.5.1.1.5
.1.3.6.1.4.1.9.9.740.1.5.1.1.6
.1.3.6.1.4.1.9.9.740.1.5.1.1.7
Enumeration
.1.3.6.1.4.1.9.9.740.1.5.1.1.8
.1.3.6.1.4.1.9.9.740.1.5.1.1.9
.1.3.6.1.4.1.9.9.740.1.6
.1.3.6.1.4.1.9.9.740.1.6.1
.1.3.6.1.4.1.9.9.740.1.6.1.1
.1.3.6.1.4.1.9.9.740.1.6.1.1.1
.1.3.6.1.4.1.9.9.740.1.6.1.1.10
.1.3.6.1.4.1.9.9.740.1.6.1.1.2
.1.3.6.1.4.1.9.9.740.1.6.1.1.3
.1.3.6.1.4.1.9.9.740.1.6.1.1.4
.1.3.6.1.4.1.9.9.740.1.6.1.1.5
.1.3.6.1.4.1.9.9.740.1.6.1.1.6
.1.3.6.1.4.1.9.9.740.1.6.1.1.7
.1.3.6.1.4.1.9.9.740.1.6.1.1.8
.1.3.6.1.4.1.9.9.740.1.6.1.1.9
.1.3.6.1.4.1.9.9.740.1.7
.1.3.6.1.4.1.9.9.740.1.7.1
.1.3.6.1.4.1.9.9.740.1.7.1.1
OctetString
.1.3.6.1.4.1.9.9.740.1.7.1.1.1
.1.3.6.1.4.1.9.9.740.1.7.1.1.2
Enumeration
.1.3.6.1.4.1.9.9.740.1.7.1.1.3
.1.3.6.1.4.1.9.9.740.1.7.1.1.4
secondsInteger32
.1.3.6.1.4.1.9.9.740.1.7.1.1.5
secondsInteger32
.1.3.6.1.4.1.9.9.740.1.7.1.1.6
.1.3.6.1.4.1.9.9.740.1.7.1.1.7
Enumeration
.1.3.6.1.4.1.9.9.740.1.7.1.1.8
.1.3.6.1.4.1.9.9.740.1.8
.1.3.6.1.4.1.9.9.740.1.8.1
.1.3.6.1.4.1.9.9.740.1.8.1.1
.1.3.6.1.4.1.9.9.740.1.8.1.1.1
.1.3.6.1.4.1.9.9.740.1.8.1.1.2
.1.3.6.1.4.1.9.9.740.1.9
.1.3.6.1.4.1.9.9.740.1.9.1
.1.3.6.1.4.1.9.9.740.1.9.10
.1.3.6.1.4.1.9.9.740.1.9.2
.1.3.6.1.4.1.9.9.740.1.9.3
.1.3.6.1.4.1.9.9.740.1.9.4
.1.3.6.1.4.1.9.9.740.1.9.5
.1.3.6.1.4.1.9.9.740.1.9.6
.1.3.6.1.4.1.9.9.740.1.9.7
.1.3.6.1.4.1.9.9.740.1.9.8
.1.3.6.1.4.1.9.9.740.1.9.9
.1.3.6.1.4.1.9.9.740.2
.1.3.6.1.4.1.9.9.740.2.1
.1.3.6.1.4.1.9.9.740.2.2
Dependencies (9) 7 direct · 2 transitive Show tree and compile order Hide dependency details

Each imported module is resolved in the importing module's source directory first, then through the normal default-variant rules.

Dependency tree
Type Definitions (4)
Enumeration
encapNoAuthenNoEncrypt(1)
gcmAuthenNoEncrypt(2)
gcmAuthenGcmEncrypt(3)
noEncap(4)
OctetString
Enumeration
unknown(1)
acs(2)
dram(3)
nvram(4)
all(5)
Enumeration
unknown(1)
initialize(2)
authenticating(3)
authorizing(4)
sapNegotiating(5)
open(6)
held(7)
disconnecting(8)
invalid(9)
licenseError(10)
Conformance Groups (14)
A collection of objects that provides the interface
configuration for Cisco Trusted Security capable
interface in the system.
.1.3.6.1.4.1.9.9.740.2.2.1
A collection of objects that provides the dot1x mode
configuration for the Cisco Trusted Security capable
interface in the system.
.1.3.6.1.4.1.9.9.740.2.2.2
A collection of objects that provides the manual mode
configuration for the Cisco Trusted Security capable
interface in the system.
.1.3.6.1.4.1.9.9.740.2.2.3
A collection of objects that provides the L3 forwarding
mode configuration for the Cisco Trusted Security capable
interface in the system.
.1.3.6.1.4.1.9.9.740.2.2.4
A collection of objects that provides the status
information for the Cisco Trusted Security capable
interface in the system.
.1.3.6.1.4.1.9.9.740.2.2.5
A collection of objects that provides the statistic
information for the Cisco Trusted Security capable
interface in the system.
.1.3.6.1.4.1.9.9.740.2.2.6
A collection of objects that provides the status
information for the authorization link in the system.
.1.3.6.1.4.1.9.9.740.2.2.7
A collection of objects that provides the global
IFC state statistic information in the system.
.1.3.6.1.4.1.9.9.740.2.2.8
A collection of objects that provides the global
statistic information for the TrustSec events.
.1.3.6.1.4.1.9.9.740.2.2.9
A collection of objects that provides the global TrustSec
mode statistic information.
.1.3.6.1.4.1.9.9.740.2.2.10
A collection of objects that provides notification control
for TrustSec interfaces.
.1.3.6.1.4.1.9.9.740.2.2.11
A collection of objects that provides the notification
information for TrustSec interfaces.
.1.3.6.1.4.1.9.9.740.2.2.12
A collection of notifications for TrustSec interfaces.
.1.3.6.1.4.1.9.9.740.2.2.13
A collection of objects that provides the Critical-Auth
status information for the Cisco Trusted Security capable
interface in the system.
.1.3.6.1.4.1.9.9.740.2.2.14
Compliance Statements (3)

OID .1.3.6.1.4.1.9.9.740.2.1.1
The compliance statement for the CISCO-TRUSTSEC-MIB.
Required groups
Object refinements
ObjectAccessSyntaxDescription
ctsiIfDot1xSgtPropagateEnabled readonly
Write access is not required.
ctsiIfDot1xReauthInterval readonly
Write access is not required.
ctsiIfDot1xSapModeList readonly
Write access is not required.
ctsiIfDot1xStorageType readonly
Write access is not required.
ctsiIfDot1xRowStatus readonly
active(1)
Write access is not required.
Support for createAndWait and notInService
is not required.
ctsiIfManualDynamicPeerId readonly
Write access is not required.
ctsiIfManualStaticSgt readonly
Write access is not required.
ctsiIfManualStaticSgtTrusted readonly
Write access is not required.
ctsiIfManualSgtPropagateEnabled readonly
Write access is not required.
ctsiIfManualSapPmk readonly
Write access is not required.
ctsiIfManualSapModeList readonly
Write access is not required.
ctsiIfManualStorageType readonly
Write access is not required.
ctsiIfManualRowStatus readonly
active(1)
Write access is not required.
Support for createAndWait and notInService
is not required.
ctsiIfL3ForwardStorageType readonly
Write access is not required.
ctsiIfL3ForwardRowStatus readonly
active(1)
Write access is not required.
Support for createAndWait and notInService
is not required.

OID .1.3.6.1.4.1.9.9.740.2.1.2
The compliance statement for the CISCO-TRUSTSEC-MIB.
Required groups
mandatory ciscoTrustSecIfMIBIfConfigGroup
mandatory ciscoTrustSecIfMIBDot1xGroup
mandatory ciscoTrustSecIfMIBManualGroup
mandatory ciscoTrustSecIfMIBL3ForwardGroup
mandatory ciscoTrustSecIfMIBStatusGroup
mandatory ciscoTrustSecIfMIBStatisticGroup
mandatory ciscoTrustSecIfMIBAuthorizationGroup
mandatory ciscoTrustSecIfMIBIfcStatisticGroup
mandatory ciscoTrustSecIfMIBEventStatisticGroup
mandatory ciscoTrustSecIfMIBIfModeStatisticGroup
optional ciscoTrustSecIfMIBNotifsCtrlGrp This group is mandatory for platforms which support
TrustSec interface notifications.
optional ciscoTrustSecIfMIBNotifsOnlyInfoGrp This group is mandatory for platforms which support
TrustSec interface notifications.
optional ciscoTrustSecIfMIBNotifsGrp This group is mandatory for platforms which support
TrustSec interface notifications.
Object refinements
ObjectAccessSyntaxDescription
ctsiIfDot1xSgtPropagateEnabled readonly
Write access is not required.
ctsiIfDot1xReauthInterval readonly
Write access is not required.
ctsiIfDot1xSapModeList readonly
Write access is not required.
ctsiIfDot1xStorageType readonly
Write access is not required.
ctsiIfDot1xRowStatus readonly
active(1)
Write access is not required.
Support for createAndWait and notInService
is not required.
ctsiIfManualDynamicPeerId readonly
Write access is not required.
ctsiIfManualStaticSgt readonly
Write access is not required.
ctsiIfManualStaticSgtTrusted readonly
Write access is not required.
ctsiIfManualSgtPropagateEnabled readonly
Write access is not required.
ctsiIfManualSapPmk readonly
Write access is not required.
ctsiIfManualSapModeList readonly
Write access is not required.
ctsiIfManualStorageType readonly
Write access is not required.
ctsiIfManualRowStatus readonly
active(1)
Write access is not required.
Support for createAndWait and notInService
is not required.
ctsiIfL3ForwardStorageType readonly
Write access is not required.
ctsiIfL3ForwardRowStatus readonly
active(1)
Write access is not required.
Support for createAndWait and notInService
is not required.
ctsiIfUnauthorizedNotifEnable readonly
Write access is not required.
ctsiAuthorizationFailNotifEnable readonly
Write access is not required.
ctsiIfAddSupplicantFailNotifEnable readonly
Write access is not required.
ctsiIfAuthenticationFailNotifEnable readonly
Write access is not required.
ctsiIfSapNegotiationFailNotifEnable readonly
Write access is not required.

OID .1.3.6.1.4.1.9.9.740.2.1.3
The compliance statement for the CISCO-TRUSTSEC-MIB.
Required groups
mandatory ciscoTrustSecIfMIBIfConfigGroup
mandatory ciscoTrustSecIfMIBDot1xGroup
mandatory ciscoTrustSecIfMIBManualGroup
mandatory ciscoTrustSecIfMIBL3ForwardGroup
mandatory ciscoTrustSecIfMIBStatusGroup
mandatory ciscoTrustSecIfMIBStatisticGroup
mandatory ciscoTrustSecIfMIBAuthorizationGroup
mandatory ciscoTrustSecIfMIBIfcStatisticGroup
mandatory ciscoTrustSecIfMIBEventStatisticGroup
mandatory ciscoTrustSecIfMIBIfModeStatisticGroup
optional ciscoTrustSecIfMIBNotifsCtrlGrp This group is mandatory for platforms which support
TrustSec interface notifications.
optional ciscoTrustSecIfMIBNotifsOnlyInfoGrp This group is mandatory for platforms which support
TrustSec interface notifications.
optional ciscoTrustSecIfMIBNotifsGrp This group is mandatory for platforms which support
TrustSec interface notifications.
optional ciscoTrustSecIfMIBCriticalAuthStatusGrp This group is mandatory for platforms which support
TrustSec Critical-Auth.
Object refinements
ObjectAccessSyntaxDescription
ctsiIfDot1xSgtPropagateEnabled readonly
Write access is not required.
ctsiIfDot1xReauthInterval readonly
Write access is not required.
ctsiIfDot1xSapModeList readonly
Write access is not required.
ctsiIfDot1xStorageType readonly
Write access is not required.
ctsiIfDot1xRowStatus readonly
active(1)
Write access is not required.
Support for createAndWait and notInService
is not required.
ctsiIfManualDynamicPeerId readonly
Write access is not required.
ctsiIfManualStaticSgt readonly
Write access is not required.
ctsiIfManualStaticSgtTrusted readonly
Write access is not required.
ctsiIfManualSgtPropagateEnabled readonly
Write access is not required.
ctsiIfManualSapPmk readonly
Write access is not required.
ctsiIfManualSapModeList readonly
Write access is not required.
ctsiIfManualStorageType readonly
Write access is not required.
ctsiIfManualRowStatus readonly
active(1)
Write access is not required.
Support for createAndWait and notInService
is not required.
ctsiIfL3ForwardStorageType readonly
Write access is not required.
ctsiIfL3ForwardRowStatus readonly
active(1)
Write access is not required.
Support for createAndWait and notInService
is not required.
ctsiIfUnauthorizedNotifEnable readonly
Write access is not required.
ctsiAuthorizationFailNotifEnable readonly
Write access is not required.
ctsiIfAddSupplicantFailNotifEnable readonly
Write access is not required.
ctsiIfAuthenticationFailNotifEnable readonly
Write access is not required.
ctsiIfSapNegotiationFailNotifEnable readonly
Write access is not required.
Notifications / Traps (5)
NameOIDDescription
.1.3.6.1.4.1.9.9.740.0.1
A ctsiAuthorizationFailNotif is generated when the policy
acquisition failed for the peer.
.1.3.6.1.4.1.9.9.740.0.2
A ctsiIfAddSupplicantFailNotif is generated when the system
fails to add dot1x supplicant for an interface.
.1.3.6.1.4.1.9.9.740.0.3
A ctsiIfAuthenticationFailNotif is generated when an
authentication error for the peer is detected for an interface.
.1.3.6.1.4.1.9.9.740.0.4
A ctsiIfSapNegotiationFailNotif is generated when a SAP
negotiation error with the peer is detected for an interface.
.1.3.6.1.4.1.9.9.740.0.5
A ctsiIfUnauthorizedNotif is generated when a interface
becomes unauthorized on the Cisco TrustSec link.