EQLIPSEC-MIB Table View

Table-centric layout grouping table, row, and column objects.

Tables
7
Rows
7
Columns
69
.1.3.6.1.4.1.12740.22.1.1 · 1 row entry · 3 columns
EqualLogic-Persistent Storage IPSec global settings
          
This table contains global IPSec settings.
eqlIpsecEntry entry .1.3.6.1.4.1.12740.22.1.1.1
An entry (row) containing global IPSec settings.
Indexes
eqlIpsecInstanceId
Column Syntax OID
eqlIpsecInstanceId
This index identifies the IPSec instance. This index should always be 1.
SNMPv2-SMIInteger32
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.12740.22.1.1.1.1
eqlIpsecEnable
This specifies if IPSec is enabled or disbaled.

True for enabled and False for disabled.
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.12740.22.1.1.1.2
eqlIpsecRowStatus
This object indicates the conceptual status of this row.

This object may not be set to active if the requirements
of the spdIpHeadFiltType object are not met. In other
words, if the associated value colu…
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.12740.22.1.1.1.3
.1.3.6.1.4.1.12740.22.1.2 · 1 row entry · 12 columns
EqualLogic-Persistent Storage IPSec Policy Table.
This table contains a list of filter definitions.
eqlIpsecPolicyEntry entry .1.3.6.1.4.1.12740.22.1.2.1
A definition of a particular filter.
Indexes
eqlIpsecPolicyInstanceId
Column Syntax OID
eqlIpsecPolicyInstanceId
This index identifies the IPSec policy instance.
SNMPv2-SMIInteger32
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.12740.22.1.2.1.1
eqlIpsecPolicyFilterName
The administrative name for this filter.
OctetStringr/w
Constraints:
range: 1-32
.1.3.6.1.4.1.12740.22.1.2.1.2
eqlIpsecPolicyFilterIPVersion
The Internet Protocol version the addresses are to match
against. The value of this property determines the size
and format of the eqlIpsecPolicyFilterAddress and
eqlIpsecPolicyFilterLocalAddress.
INET-ADDRESS-MIBInetAddressTyper/w
Textual Convention: INET-ADDRESS-MIBInetAddressType Enumeration
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.12740.22.1.2.1.3
eqlIpsecPolicyFilterAddress
The starting address of a source address range that the
packet must match against for this filter to be
considered TRUE.

This object is only used if sourceAddress is set in
spdIpHeadFiltType.
INET-ADDRESS-MIBInetAddressr/w
Textual Convention: INET-ADDRESS-MIBInetAddress OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.12740.22.1.2.1.4
eqlIpsecPolicyFilterNetmaskLen
The ending address of a source address range to check a
packet against, where the starting is specified by the
spdIpHeadFiltSrcAddressBegin object. Set this column to
the same value as the spdIpHeadFiltSrcAddressBegin
Integer32r/w
Constraints:
range: 0-128
.1.3.6.1.4.1.12740.22.1.2.1.5
eqlIpsecPolicyFilterLocalAddress
The Local IP Address on the array to bind a policy to.
This option is only used when the Peer is of type manual.
Can be either a IPv4 or IPV6 address.
INET-ADDRESS-MIBInetAddressr/w
Textual Convention: INET-ADDRESS-MIBInetAddress OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.12740.22.1.2.1.6
eqlIpsecPolicyFilterPort
The low port of the port range a packet's source must
match against. To match, the port number must be
greater than or equal to this value.

This object is only used if sourcePort is set in
spdIpHeadFiltT…
Integer32r/w
Constraints:
range: 0-65535
.1.3.6.1.4.1.12740.22.1.2.1.7
eqlIpsecPolicyFilterLocalPort
The low port of the port range a packet's source must
match against. To match, the port number must be
greater than or equal to this value.

This object is only used if sourcePort is set in
spdIpHeadFiltT…
Integer32r/w
Constraints:
range: 0-65535
.1.3.6.1.4.1.12740.22.1.2.1.8
eqlIpsecPolicyFilterProtocol
The protocol number the incoming packet must match
against for this filter to be evaluated as true.

This object is only used if protocol is set in
spdIpHeadFiltType.
Integer32r/w
Constraints:
range: 0-255
.1.3.6.1.4.1.12740.22.1.2.1.9
eqlIpsecPolicyFilterPeerName
This specifies the name of the peer this policy must be associated with.
OctetStringr/w
Constraints:
range: 1-64
.1.3.6.1.4.1.12740.22.1.2.1.10
eqlIpsecPolicyFilterAction
The action to be taken on packets matching this rule.
Enumerationr/w
Enumerated Values:
1ipsec
2pass
3drop
.1.3.6.1.4.1.12740.22.1.2.1.11
eqlIpsecPolicyFilterRowStatus
This object indicates the conceptual status of this row.

This object may not be set to active if the requirements
of the spdIpHeadFiltType object are not met. In other
words, if the associated value colu…
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.12740.22.1.2.1.12
.1.3.6.1.4.1.12740.22.1.3 · 1 row entry · 7 columns
EqualLogic-Dynamic IPSec certificate configuration Table.
This table contains the list of certificates configured.
eqlIpsecCertConfigEntry entry .1.3.6.1.4.1.12740.22.1.3.1
A definition of a particular certificate.
Indexes
eqlIpsecCertInstanceId
Column Syntax OID
eqlIpsecCertInstanceId
This index identifies the IPSec certificate instance.
SNMPv2-SMIInteger32
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.12740.22.1.3.1.1
eqlIpsecCertName
The administrative name for this certificate.
OctetStringr/w
Constraints:
range: 1-32
.1.3.6.1.4.1.12740.22.1.3.1.2
eqlIpsecCertFileName
The certificate file name.
OctetStringr/w
Constraints:
range: 1-128
.1.3.6.1.4.1.12740.22.1.3.1.3
eqlIpsecCertType
The certificate type. Local cert, Root CA cert or intermediate cert.
Enumerationr/w
Enumerated Values:
1local-cert
2root-cert
3intermediate
.1.3.6.1.4.1.12740.22.1.3.1.4
eqlIpsecPrivKeyFileName
The private key file name.
OctetStringr/w
Constraints:
range: 1-128
.1.3.6.1.4.1.12740.22.1.3.1.5
eqlIpsecCertPassword
The password to use for decrypting certificate.
OctetStringr/w
Constraints:
range: 1-64
.1.3.6.1.4.1.12740.22.1.3.1.6
eqlIpsecCertRowStatus
This object indicates the conceptual status of this row.

This object may not be set to active if the requirements
of the spdIpHeadFiltType object are not met. In other
words, if the associated value colu…
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.12740.22.1.3.1.7
.1.3.6.1.4.1.12740.22.1.4 · 1 row entry · 20 columns
EqualLogic-Persistent Storage IPSec peer Table.
This table contains the list of peers configured.
eqlIpsecPeerEntry entry .1.3.6.1.4.1.12740.22.1.4.1
A definition of a particular certificate.
Indexes
eqlIpsecPeerInstanceId
Column Syntax OID
eqlIpsecPeerInstanceId
This index identifies the IPSec policy instance.
SNMPv2-SMIInteger32
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.12740.22.1.4.1.1
eqlIpsecPeerName
The administrative name for this peer.
OctetStringr/w
Constraints:
range: 1-64
.1.3.6.1.4.1.12740.22.1.4.1.2
eqlIpsecPeerAuthType
The authentication method used with this peer.

Pre-shared keys, certificates and manual keys are the options.
Enumerationr/w
Enumerated Values:
1presharedkey
2certificates
3manualkey
.1.3.6.1.4.1.12740.22.1.4.1.3
eqlIpsecPeerPreSharedKey
The pre-shared key to be used during authentication.
It is mandatory that this only contain printable ASCII
ASCII characters, meaning each byte must be in the range
of 33 to 126.
OctetStringr/w
Constraints:
range: 6-130
.1.3.6.1.4.1.12740.22.1.4.1.4
eqlIpsecPeerCertIdType
The identifier type to be used in ID payload.

Only applicable if the auth type is certificates.
Enumerationr/w
Enumerated Values:
1none
2ipaddress
3userfqdn
4fqdn
5asn1dn
.1.3.6.1.4.1.12740.22.1.4.1.5
eqlIpsecPeerCertIdValue
The pre-shared key to be used during authentication.

Only applicable if the auth type is certificates.
OctetStringr/w
Constraints:
range: 1-256
.1.3.6.1.4.1.12740.22.1.4.1.6
eqlIpsecPeerNullEnc
This specifies if null encryption is to be used.

Only applicable if the auth type is certificates or pre-shared keys.
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.12740.22.1.4.1.7
eqlIpsecPeerTunnelMode
This specifies if tunnel mode is to be used with this peer.
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.12740.22.1.4.1.8
eqlIpsecPeerTunnelAddressIPVersion
The Internet Protocol version the addresses are to match
against. The value of this property determines the size
and format of the spdIpHeadFiltSrcAddressBegin,
spdIpHeadFiltSrcAddressEnd,
spdIpHeadFiltDstAddressBegin,…
INET-ADDRESS-MIBInetAddressTyper/w
Textual Convention: INET-ADDRESS-MIBInetAddressType Enumeration
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.12740.22.1.4.1.9
eqlIpsecPeerTunnelAddress
The address of the tunnel remote end

This object is only used if tunnelMode is set to True.
INET-ADDRESS-MIBInetAddressr/w
Textual Convention: INET-ADDRESS-MIBInetAddress OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.12740.22.1.4.1.10
eqlIpsecPeerIkeV2
This specifies the IKE version to be used with this peer. If the peer talks
the other version, the IPSec session will not be established.
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.12740.22.1.4.1.11
eqlIpsecPeerManualKeyEncAlg
The encryption algorithm to be used.

Only applicable if the auth type is manual keys.
Enumerationr/w
Enumerated Values:
0none
2des-cbc
3triple-des-cbc
6cast128-cbc
7blowfish-cbc
11null-enc
12aes
13aes-ctr
250skipjack
.1.3.6.1.4.1.12740.22.1.4.1.12
eqlIpsecPeerManualKeyEncKeyOut
The encryption key to be used in the outbound direction.

Specified as a hex string.

Only applicable if the auth type is manual keys.
OctetStringr/w
Constraints:
range: 1-128
.1.3.6.1.4.1.12740.22.1.4.1.13
eqlIpsecPeerManualKeyEncKeyIn
The encryption key to be used in the inbound direction.

Specified as a hex string.

Only applicable if the auth type is manual keys.
OctetStringr/w
Constraints:
range: 1-128
.1.3.6.1.4.1.12740.22.1.4.1.14
eqlIpsecPeerManualKeyAuthAlg
The authentication algorithm to be used.

Only applicable if the auth type is manual keys.
Enumerationr/w
Enumerated Values:
0none
1sha1
2sha256
.1.3.6.1.4.1.12740.22.1.4.1.15
eqlIpsecPeerManualKeyAuthKeyOut
The authentication key to be used in the outbound direction.

Specified as a string.

Only applicable if the auth type is manual keys.
OctetStringr/w
Constraints:
range: 1-128
.1.3.6.1.4.1.12740.22.1.4.1.16
eqlIpsecPeerManualKeyAuthKeyIn
The authentication key to be used in the inbound direction.

Specified as a string.

Only applicable if the auth type is manual keys.
OctetStringr/w
Constraints:
range: 1-128
.1.3.6.1.4.1.12740.22.1.4.1.17
eqlIpsecPeerManualKeySpiOut
The SPI to be used in the outbound direction.

Only applicable if the auth type is manual keys.
SNMPv2-SMIInteger32r/w
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.12740.22.1.4.1.18
eqlIpsecPeerManualKeySpiIn
The SPI to be used in the inbound direction.

Only applicable if the auth type is manual keys.
SNMPv2-SMIInteger32r/w
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.12740.22.1.4.1.19
eqlIpsecPeerRowStatus
This object indicates the conceptual status of this row.

This object may not be set to active if the requirements
of the spdIpHeadFiltType object are not met. In other
words, if the associated value colu…
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.12740.22.1.4.1.20
.1.3.6.1.4.1.12740.22.1.5 · 1 row entry · 11 columns
EqualLogic-Dynamic IPSec certificate display Table.
This table is used to display certificate details.
eqlIpsecCertDisplayEntry entry .1.3.6.1.4.1.12740.22.1.5.1
Contents of a particular certificate instance for display.
Indexes
eqlIpsecCertInstanceId
Column Syntax OID
eqlIpsecCertDisplayName
The administrative name for this certificate.
OctetStringr/w
Constraints:
range: 1-32
.1.3.6.1.4.1.12740.22.1.5.1.1
eqlIpsecCertDisplayIssuedToDName
Display string for the field issued to distinguished name.
OctetStringr/w
Constraints:
range: 1-256
.1.3.6.1.4.1.12740.22.1.5.1.2
eqlIpsecCertDisplaySerialNumber
Display string for the field serial number.
OctetStringr/w
Constraints:
range: 1-128
.1.3.6.1.4.1.12740.22.1.5.1.3
eqlIpsecCertDisplayIssuedByDName
Display string for the field issued by distinguished name.
OctetStringr/w
Constraints:
range: 1-256
.1.3.6.1.4.1.12740.22.1.5.1.4
eqlIpsecCertDisplayIssuedOn
Display string for the field issued on.
OctetStringr/w
Constraints:
range: 1-128
.1.3.6.1.4.1.12740.22.1.5.1.5
eqlIpsecCertDisplayExpiresOn
Display string for the field expires on.
OctetStringr/w
Constraints:
range: 1-128
.1.3.6.1.4.1.12740.22.1.5.1.6
eqlIpsecCertDisplaySha1Fingerprint
Display string for the field SHA1 finger print.
OctetStringr/w
Constraints:
range: 1-128
.1.3.6.1.4.1.12740.22.1.5.1.7
eqlIpsecCertDisplayMd5Fingerprint
Display string for the field MD5 finger print.
OctetStringr/w
Constraints:
range: 1-128
.1.3.6.1.4.1.12740.22.1.5.1.8
eqlIpsecCertDisplayLocal
Boolean that indicates if this is a localm certificate or not.
Enumerationr/w
Enumerated Values:
1local-cert
2root-cert
3intermediate
.1.3.6.1.4.1.12740.22.1.5.1.9
eqlIpsecCertDisplayFormat
The certificate format. x.509 or pkcs12.
Enumerationr/w
Enumerated Values:
1x509
2pkcs12
.1.3.6.1.4.1.12740.22.1.5.1.10
eqlIpsecCertDisplaySubAltName
Display string for the field MD5 finger print.
OctetStringr/w
Constraints:
range: 1-256
.1.3.6.1.4.1.12740.22.1.5.1.11
.1.3.6.1.4.1.12740.22.1.6 · 1 row entry · 12 columns
EqualLogic-Dynamic IPSec security association Table.
This table is used to display the security association details.
eqlIpsecSecAssocEntry entry .1.3.6.1.4.1.12740.22.1.6.1
Contents of a particular SA instance for display.
Indexes
EQLGROUP-MIBeqlGroupId EQLMEMBER-MIBeqlMemberIndex eqlIpsecSecAssocInstanceIdHigh eqlIpsecSecAssocInstanceIdLow
Column Syntax OID
eqlIpsecSecAssocInstanceIdHigh
This index carries the high-order 32-bit of the instance ID that identifies the IPSec security association.
SNMPv2-SMIUnsigned32
Textual Convention: SNMPv2-SMIUnsigned32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.12740.22.1.6.1.1
eqlIpsecSecAssocInstanceIdLow
This index carries the low-order 32-bit of the instance ID that identifies the IPSec security association.
SNMPv2-SMIUnsigned32
Textual Convention: SNMPv2-SMIUnsigned32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.12740.22.1.6.1.2
eqlIpsecSecAssocSrcAddressIPVersion
The IP version of the source endpoint.
INET-ADDRESS-MIBInetAddressTyper/w
Textual Convention: INET-ADDRESS-MIBInetAddressType Enumeration
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.12740.22.1.6.1.3
eqlIpsecSecAssocSrcAddress
The IP address of the source endpoint.
INET-ADDRESS-MIBInetAddressr/w
Textual Convention: INET-ADDRESS-MIBInetAddress OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.12740.22.1.6.1.4
eqlIpsecSecAssocDstAddressIPVersion
The IP version of the destination endpoint.
INET-ADDRESS-MIBInetAddressTyper/w
Textual Convention: INET-ADDRESS-MIBInetAddressType Enumeration
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.12740.22.1.6.1.5
eqlIpsecSecAssocDstAddress
The IP address of the destination endpoint.
INET-ADDRESS-MIBInetAddressr/w
Textual Convention: INET-ADDRESS-MIBInetAddress OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.12740.22.1.6.1.6
eqlIpsecSecAssocEncAlg
The encryption algorithm used.
Enumerationr/w
Enumerated Values:
0none
2des-cbc
3triple-des-cbc
6cast128-cbc
7blowfish-cbc
11null-enc
12aes
13aes-ctr
250skipjack
.1.3.6.1.4.1.12740.22.1.6.1.7
eqlIpsecSecAssocAuthAlg
The authentication algorithm used.
Enumerationr/w
Enumerated Values:
0none
2md5-hmac
3sha1-hmac
5sha2-256
6sha2-384
7sha2-512
8ripemd160-hmac
9aes-xcbc-mac
249md5
250sha
251null
252tcp-md5
.1.3.6.1.4.1.12740.22.1.6.1.8
eqlIpsecSecAssocSpi
SPI used in the security association.
SNMPv2-SMIInteger32r/w
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.12740.22.1.6.1.9
eqlIpsecSecAssocEncKey
Display string for the encryption key used in the SA.
OctetStringr/w
Constraints:
range: 1-128
.1.3.6.1.4.1.12740.22.1.6.1.10
eqlIpsecSecAssocAuthKey
Display string for the authentication key used in the SA.
OctetStringr/w
Constraints:
range: 1-128
.1.3.6.1.4.1.12740.22.1.6.1.11
eqlIpsecSecAssocManual
True means SA is from a manual key configured.
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.12740.22.1.6.1.12
.1.3.6.1.4.1.12740.22.1.7 · 1 row entry · 4 columns
EqualLogic-Dynamic IPSec stale security association 
delete Table. This table is used to indicate the 
destination address and type of all security associations
to delete.
eqlIpsecStaleSecAssocDeleteEntry entry .1.3.6.1.4.1.12740.22.1.7.1
Contents of a particular SA instance for delete.
Indexes
EQLGROUP-MIBeqlGroupId EQLMEMBER-MIBeqlMemberIndex eqlIpsecStaleSecAssocDeleteInstanceId
Column Syntax OID
eqlIpsecStaleSecAssocDeleteInstanceId
This index identifies the IPSec stale SA delete instance.
SNMPv2-SMIInteger32
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.12740.22.1.7.1.1
eqlIpsecStaleSecAssocDeleteDestAddressIPVersion
The IP version of the destination address of the security
associations to delete.
INET-ADDRESS-MIBInetAddressTyper/w
Textual Convention: INET-ADDRESS-MIBInetAddressType Enumeration
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.12740.22.1.7.1.2
eqlIpsecStaleSecAssocDeleteDestAddress
The destination address of the security associations to delete.
INET-ADDRESS-MIBInetAddressr/w
Textual Convention: INET-ADDRESS-MIBInetAddress OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.12740.22.1.7.1.3
eqlIpsecStaleSecAssocDeleteRowStatus
This object indicates the conceptual status of this row.
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.12740.22.1.7.1.4