CISCO-TRUSTSEC-MIB

        This MIB module is for the configuration of a network
device on the Cisco Trusted Security (TrustSec) system.
        
TrustSec secures a network fabric by authenticating and
authorizing each device connecting to the network, allowing for
the encryption, authentication and replay protection of data
traffic on a hop by hop basis.
        
Glossary :
        
TrustSec - Cisco Trusted Security
        
EAP-FAST - Extensible Authentication Protocol-Flexible
           Authentication via Secure Tunneling (RFC 4851)
        
PAC - Protected Access Credential
      A credential dynamically downloaded from the
      Access Control Server.
        
ACS - Access Control Server
        
SGT - Security Group Tag
      A tag identifying its source, assigned to a packet on
      ingress to a TrustSec cloud, and used to determine
      security and other policy to be applied to it along
      its path through the cloud.
    

Imported Objects

ciscoMgmtCISCO-SMI
CtsCredentialRecordType, CtsAcsAuthorityIdentity, CtsPasswordEncryptionType, CtsGenerationId, CtsSecurityGroupTagCISCO-TRUSTSEC-TC-MIB
SnmpAdminStringSNMP-FRAMEWORK-MIB
MODULE-COMPLIANCE, OBJECT-GROUP, NOTIFICATION-GROUPSNMPv2-CONF
OBJECT-TYPE, NOTIFICATION-TYPE, Counter32, Unsigned32, MODULE-IDENTITYSNMPv2-SMI
RowStatus, DateAndTime, TruthValueSNMPv2-TC

Objects

ciscoTrustSecMIB .1.3.6.1.4.1.9.9.730
ciscoTrustSecMIBNotifs .1.3.6.1.4.1.9.9.730.0
ciscoTrustSecMIBObjects .1.3.6.1.4.1.9.9.730.1
ctsCacheObjects .1.3.6.1.4.1.9.9.730.1.1
ctsCacheEnabled
.1.3.6.1.4.1.9.9.730.1.1.1
ctsCacheNvStorage
.1.3.6.1.4.1.9.9.730.1.1.2
ctsCacheClear .1.3.6.1.4.1.9.9.730.1.1.3
ctsSgtObjects .1.3.6.1.4.1.9.9.730.1.2
ctsSecurityGroupTagId
.1.3.6.1.4.1.9.9.730.1.2.1
ctsSgtAssignmentMethod .1.3.6.1.4.1.9.9.730.1.2.2
ctsCredentialObjects .1.3.6.1.4.1.9.9.730.1.3
ctsDeviceId
.1.3.6.1.4.1.9.9.730.1.3.1
ctsKeystoreRxBadFragmentLengths
.1.3.6.1.4.1.9.9.730.1.3.10
ctsKeystoreCorruptions
.1.3.6.1.4.1.9.9.730.1.3.11
ctsKeystorePasswordRecordTable .1.3.6.1.4.1.9.9.730.1.3.13
ctsKeystorePasswordRecordEntry .1.3.6.1.4.1.9.9.730.1.3.13.1
ctsKeystorePasswordRecordName .1.3.6.1.4.1.9.9.730.1.3.13.1.1
ctsKeystorePasswordRecordType
.1.3.6.1.4.1.9.9.730.1.3.13.1.2
ctsKeystorePacRecordTable .1.3.6.1.4.1.9.9.730.1.3.14
ctsKeystorePacRecordEntry .1.3.6.1.4.1.9.9.730.1.3.14.1
ctsKeystorePacRecordName .1.3.6.1.4.1.9.9.730.1.3.14.1.1
ctsKeystorePacRecordType
.1.3.6.1.4.1.9.9.730.1.3.14.1.2
ctsPacInfoTable .1.3.6.1.4.1.9.9.730.1.3.15
ctsPacInfoEntry .1.3.6.1.4.1.9.9.730.1.3.15.1
ctsPacAcsAuthId .1.3.6.1.4.1.9.9.730.1.3.15.1.1
ctsPacAcsDescription
.1.3.6.1.4.1.9.9.730.1.3.15.1.2
ctsPacType .1.3.6.1.4.1.9.9.730.1.3.15.1.3
ctsPacExpirationTime
.1.3.6.1.4.1.9.9.730.1.3.15.1.4
ctsPacTimeToRefresh .1.3.6.1.4.1.9.9.730.1.3.15.1.5
ctsPacStatus
.1.3.6.1.4.1.9.9.730.1.3.15.1.6
ctsCredentialsClearAll
.1.3.6.1.4.1.9.9.730.1.3.16
ctsDevicePasswordType
.1.3.6.1.4.1.9.9.730.1.3.2
ctsDevicePassword
.1.3.6.1.4.1.9.9.730.1.3.3
ctsKeystoreType .1.3.6.1.4.1.9.9.730.1.3.4
ctsKeystoreFwVersion
.1.3.6.1.4.1.9.9.730.1.3.5
ctsKeystoreFwAlerts
.1.3.6.1.4.1.9.9.730.1.3.6
ctsKeystoreFwResets
.1.3.6.1.4.1.9.9.730.1.3.7
ctsKeystoreRxTimeouts
.1.3.6.1.4.1.9.9.730.1.3.8
ctsKeystoreRxBadChecksums
.1.3.6.1.4.1.9.9.730.1.3.9
ctsEnvironmentDataObjects .1.3.6.1.4.1.9.9.730.1.4
ctsEnvDataLastDownloadStatus .1.3.6.1.4.1.9.9.730.1.4.1
ctsEnvSecurityGroupNameTable .1.3.6.1.4.1.9.9.730.1.4.16
ctsEnvSecurityGroupNameEntry .1.3.6.1.4.1.9.9.730.1.4.16.1
ctsEnvSecurityGroupNameSgt .1.3.6.1.4.1.9.9.730.1.4.16.1.1
ctsEnvSecurityGroupNameSgtGenId
.1.3.6.1.4.1.9.9.730.1.4.16.1.2
ctsEnvSecurityGroupNameSgtFlag .1.3.6.1.4.1.9.9.730.1.4.16.1.3
ctsEnvSecurityGroupName
.1.3.6.1.4.1.9.9.730.1.4.16.1.4
ctsEnvSecurityGroupTagId
.1.3.6.1.4.1.9.9.730.1.4.2
ctsEnvSecurityGroupTagGenId
.1.3.6.1.4.1.9.9.730.1.4.3
ctsEnvDataLastUpdate
.1.3.6.1.4.1.9.9.730.1.4.4
ctsEnvDataRefreshInterval .1.3.6.1.4.1.9.9.730.1.4.5
ctsEnvDataTimeLeft .1.3.6.1.4.1.9.9.730.1.4.6
ctsEnvDataTimeToRefresh .1.3.6.1.4.1.9.9.730.1.4.7
ctsEnvDataSource .1.3.6.1.4.1.9.9.730.1.4.8
ctsEnvDataAction .1.3.6.1.4.1.9.9.730.1.4.9
ctsNotifsControlObjects .1.3.6.1.4.1.9.9.730.1.5
ctsSwKeystoreFileErrNotifEnable
.1.3.6.1.4.1.9.9.730.1.5.1
ctsSwKeystoreSyncFailNotifEnable
.1.3.6.1.4.1.9.9.730.1.5.2
ctsAuthzCacheFileErrNotifEnable
.1.3.6.1.4.1.9.9.730.1.5.3
ctsCacheFileAccessErrNotifEnable
.1.3.6.1.4.1.9.9.730.1.5.4
ctsSrcEntropyFailNotifEnable
.1.3.6.1.4.1.9.9.730.1.5.5
ctsSapRandomNumberFailNotifEnable
.1.3.6.1.4.1.9.9.730.1.5.6
ctsNotifsInfoObjects .1.3.6.1.4.1.9.9.730.1.6
ctsFileErrNotifReason .1.3.6.1.4.1.9.9.730.1.6.1
ctsSwKeystoreSyncFailNotifReason .1.3.6.1.4.1.9.9.730.1.6.2
ctsNotifMessageString
.1.3.6.1.4.1.9.9.730.1.6.3
ctsCriticalAuthObjects .1.3.6.1.4.1.9.9.730.1.7
ctsCriticalAuthEnabled
.1.3.6.1.4.1.9.9.730.1.7.1
ctsCriticalAuthFallback .1.3.6.1.4.1.9.9.730.1.7.2
ctsCriticalAuthPeerSgt
.1.3.6.1.4.1.9.9.730.1.7.3
ctsCriticalAuthPeerSgtTrust
.1.3.6.1.4.1.9.9.730.1.7.4
ctsCriticalAuthDefaultPmk .1.3.6.1.4.1.9.9.730.1.7.5
ctsCriticalAuthViewDefaultPmk .1.3.6.1.4.1.9.9.730.1.7.6
ciscoTrustSecMIBConform .1.3.6.1.4.1.9.9.730.2
ciscoTrustSecMIBCompliances .1.3.6.1.4.1.9.9.730.2.1
ciscoTrustSecMIBGroups .1.3.6.1.4.1.9.9.730.2.2

Notifications/Traps

NameOIDDescription
ctsSwKeystoreFileErrNotif

.1.3.6.1.4.1.9.9.730.0.1
A ctsSwKeystoreFileErrNotif is generated when system
encounters an error while performing operation on the
software keystore file.
ctsSwKeystoreSyncFailNotif

.1.3.6.1.4.1.9.9.730.0.2
A ctsSwKeystoreSyncFailNotifReason is generated when system
fails to sync software keystore information from the active
supervisor to the standby supervisor.
ctsAuthzCacheFileErrNotif


.1.3.6.1.4.1.9.9.730.0.3
A ctsAuthzCacheFileErrNotif is generated when the system
encounters error downloading TrustSec authorization
related environment data to a cache file.
ctsCacheFileAccessErrNotif


.1.3.6.1.4.1.9.9.730.0.4
A ctsCacheFileAccessErrNotif is generated when the
system fails to perform open/read/write operation
for a TrustSec cache file.
ctsSrcEntropyFailNotif.1.3.6.1.4.1.9.9.730.0.5
A ctsSrcEntropyFailNotif is generated when
the periodic health tests for the CTR-DRBG (Counter-
Deterministic Random Bit Generator) implementation
fails due to issues with the source entropy.
ctsSapRandomNumberFailNotif

.1.3.6.1.4.1.9.9.730.0.6
A ctsSapRandomNumberFailNotif is generated when the
the system fails to obtain a random number from
CTR-DRBG block for SAP (Security Association Protocol)
key-counter.