RUCKUS-AUTH-MIB Table View

Table-centric layout grouping table, row, and column objects.

Tables
12
Rows
12
Columns
114
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1 · 1 row entry · 24 columns
Uses the brocade variant from /opt/observium/mibs/brocade.
Command help
Walk ruckusWebAuthTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'RUCKUS-AUTH-MIB' -M '/opt/observium/mibs/brocade:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'RUCKUS-AUTH-MIB::ruckusWebAuthTable'
A table that allows configuration of WebAuth for a
specified VLAN. WebAuth is configured at the VLAN
level unlike MAC-Auth and Dot1x at the port level.
          
An entry exists in this table for each configured
VLAN with WebAuth.
ruckusWebAuthEntry row .1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1
An entry of WebAuth configuration.
Column Syntax OID
Specifies the VLAN, this configuration entry applies to.
VlanId
Type Constraints:
range: 0..4094
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.1
Specifies if Web-Auth is enabled or disabled.
P-BRIDGE-MIBEnabledStatus
Type Values:
1enabled
2disabled
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.2
Specifies the authentication mode used for authenticating
the users.

none - no authentication is performed
passcode - passcode based authentication, where the
passcode can be statitically configured o…
Enumeration
Enumerated Values:
1none
2passcode
3password
4captivePortal
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.3
When the AuthMode is configured as password, this specifies
the order for performing authentication.

radius - RADIUS server for authentication
local - Local user DB for authentication
radiusLocal - RAD…
Enumeration
Enumerated Values:
1radius
2local
3radiusLocal
4localRadius
5none
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.4
Specifies the maximum number of hosts allowed to be
authenticated. Value 0 means no limit.
Unsigned32
Constraints:
range: 0-8192
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.5
Specifies the maximum number of attempts allowed during the
auth cycle, after which the user is blocked for configured
amount of time, before next authentication. The value of 0
means no limit.
Unsigned32
Constraints:
range: 0-64
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.6
Specifies the re-authentication time, so the authenticated
users can be periodically reauthenticated after the timeout
specified through this object. Value 0 means no limit
secondsUnsigned32
Constraints:
range: 0-128000
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.7
Specifies the time of the authentication since the first
attempted user authentication, after which the user is not
allowed to authenticate and must reload the login-page to
start authentication. Value of 0 means no lim…
secondsUnsigned32
Constraints:
range: 0-3600
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.8
Specifies the time for blocking the user when successive
attempts have failed resulting in blocking the user. Value of
0 means, the user is blocked permanently.
secondsUnsigned32
Constraints:
range: 0-12800
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.9
Specifies the the time which together with mac-age-time of the
switch is considered an inactive time of the authenticated
host, after which the device is forced to reauthenticate.

The value can be 0 mean…
Unsigned32
Constraints:
range: 0-3600
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.10
Specifies the statically configured passcode used to
authenticate when passcode is used auth-method. The passcode
is digits only.

This can consist of upto 4 passcodes where each entry is seperated
by spa…
SNMPv2-TCDisplayString
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.11
Specifies the locally configured User Database for use
in authentication, when the auth-methos is password.
SNMPv2-TCDisplayString
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.12
Specifies if HTTPS is used for authentication or not.
P-BRIDGE-MIBEnabledStatus
Type Values:
1enabled
2disabled
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.13
Specifies if accounting is enbled or disabled.
P-BRIDGE-MIBEnabledStatus
Type Values:
1enabled
2disabled
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.14
Specifies the name of the configured Captive Portal profile,
which should be used for redirection, if the auth-method is
configured as captivePortal.
SNMPv2-TCDisplayString
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.15
Specifies the name to be used for URL when internal authentication
is used dusring authentication for prompting username/password
from the users, otherwise switch IP address is used. This must be
valid domain name for t…
SNMPv2-TCDisplayString
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.16
Specifies if user-id field in custom webauth login page is disabled or not,
default value is disable, i.e., user-id field is displayed
P-BRIDGE-MIBEnabledStatusr/w
Type Values:
1enabled
2disabled
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.17
Specifies the name to be used for user-id label in webauth login page
SNMPv2-TCDisplayStringr/w
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.18
Specifies the name to be used for password label in webauth login page
SNMPv2-TCDisplayStringr/w
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.19
Specifies the port to be used as uplink port in network segmentation deployment
IF-MIBInterfaceIndexOrZeror/w
Type Constraints:
range: 0..2147483647
Description:
This textual convention is an extension of the
InterfaceIndex convention. The latter defines a greater
than zero value used to identify an interface or interface
sub-layer in the managed system. This extension permits…
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.20
Specifies the name to be used for Top of webauth login page
SNMPv2-TCDisplayStringr/w
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.21
Specifies the name to be used for Bottom of webauth login page
SNMPv2-TCDisplayStringr/w
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.22
Specifies the name to be used for Title in webauth login page
SNMPv2-TCDisplayStringr/w
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.23
Specifies the name to be used for Login-button in webauth login page
SNMPv2-TCDisplayStringr/w
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.1991.1.1.3.44.1.4.1.1.24
.1.3.6.1.4.1.1991.1.1.3.44.1.4.2 · 1 row entry · 1 columns
Uses the brocade variant from /opt/observium/mibs/brocade.
Command help
Walk ruckusWebAuthTrustPortTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'RUCKUS-AUTH-MIB' -M '/opt/observium/mibs/brocade:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'RUCKUS-AUTH-MIB::ruckusWebAuthTrustPortTable'
A table that allows configuration of WebAuth Trust
ports which are skipped from authentication in the
given VLAN and are typically uplink ports.
          
An entry exists in this table for every Trust Port
defined on this VLAN.
ruckusWebAuthTrustPortEntry row .1.3.6.1.4.1.1991.1.1.3.44.1.4.2.1
An entry in WebAuth Trust Port table.
Column Syntax OID
Specifies the trusted port or the up-link port, which is
considered secure, so authentication is not performed
on that port.

This port generally provides access to the corporate or
Internet or other netw…
IF-MIBInterfaceIndex
Type Constraints:
range: 1..2147483647
Description:
A unique value, greater than zero, for each interface or
interface sub-layer in the managed system. It is
recommended that values are assigned contiguously starting
from 1. The value for each interface sub-layer must …
.1.3.6.1.4.1.1991.1.1.3.44.1.4.2.1.1
.1.3.6.1.4.1.1991.1.1.3.44.1.4.3 · 1 row entry · 4 columns
Uses the brocade variant from /opt/observium/mibs/brocade.
Command help
Walk ruckusWebAuthDnsFilterTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'RUCKUS-AUTH-MIB' -M '/opt/observium/mibs/brocade:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'RUCKUS-AUTH-MIB::ruckusWebAuthDnsFilterTable'
A table that allows configuration of WebAuth DNS
filters which are qualified DNS servers and should
be allowed access during authentication for DNS
queries by clients.
          
An entry exists in this table for every DNS filter
defined on this VLAN.
ruckusWebAuthDnsFilterEntry row .1.3.6.1.4.1.1991.1.1.3.44.1.4.3.1
An entry in WebAuth DNS-Filter table.
Column Syntax OID
An index into the DNS filter table.
SNMPv2-SMIInteger32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.1991.1.1.3.44.1.4.3.1.1
The address type of the this filter entry, a V4 or V6 address.
INET-ADDRESS-MIBInetAddressType
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.1991.1.1.3.44.1.4.3.1.2
The DNS server address, which is a V4 or V6 address.
INET-ADDRESS-MIBInetAddress
Type Constraints:
range: 0..255
.1.3.6.1.4.1.1991.1.1.3.44.1.4.3.1.3
The DNS server server prefix, which applies to V4/V6 addresses.
SNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.4.3.1.4
.1.3.6.1.4.1.1991.1.1.3.44.1.4.4 · 1 row entry · 4 columns
Uses the brocade variant from /opt/observium/mibs/brocade.
Command help
Walk ruckusWebAuthWhiteListTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'RUCKUS-AUTH-MIB' -M '/opt/observium/mibs/brocade:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'RUCKUS-AUTH-MIB::ruckusWebAuthWhiteListTable'
A table that allows configuration of WebAuth Whitelist
entries which are qualified external servers that should
be allowed access during authentication for various needs
by clients.
          
An entry exists in this table for every Whitelist server
defined on this VLAN.
ruckusWebAuthWhiteListEntry row .1.3.6.1.4.1.1991.1.1.3.44.1.4.4.1
An entry in WebAuth Whitelist table.
Column Syntax OID
An index into the White List Server table.
SNMPv2-SMIInteger32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.1991.1.1.3.44.1.4.4.1.1
The address type of the this whitelist entry, a V4 or V6 or DNS name.
INET-ADDRESS-MIBInetAddressType
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.1991.1.1.3.44.1.4.4.1.2
The whitelist server address, which is a V4 or V6 address or DNS name.
INET-ADDRESS-MIBInetAddress
Type Constraints:
range: 0..255
.1.3.6.1.4.1.1991.1.1.3.44.1.4.4.1.3
The whitelist server prefix, which applies to V4/V6 addresses.
SNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.4.4.1.4
.1.3.6.1.4.1.1991.1.1.3.44.1.4.5 · 1 row entry · 4 columns
Uses the brocade variant from /opt/observium/mibs/brocade.
Command help
Walk ruckusWebAuthFilterTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'RUCKUS-AUTH-MIB' -M '/opt/observium/mibs/brocade:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'RUCKUS-AUTH-MIB::ruckusWebAuthFilterTable'
A table that allows configuration of WebAuth auth-
filters which are applied to statically authenticate 
the clients without the need for authentication.
          
This comes in for help to permit/deny pre-defined
clients and save time in authentication. An entry
exists in this table for every auth-filter defined 
on this VLAN.
ruckusWebAuthFilterEntry row .1.3.6.1.4.1.1991.1.1.3.44.1.4.5.1
An entry in WebAuth Auth-Filter table.
Column Syntax OID
Specifies the MAC Address of the filter for matching
the authenticating clients through static authentication.
SNMPv2-TCMacAddress
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.1991.1.1.3.44.1.4.5.1.1
Specifies the port in the VLAN, where this filter should
be applied. If the port not valid, the entry applies to
all ports in VLAN.
IF-MIBInterfaceIndexOrZero
Type Constraints:
range: 0..2147483647
Description:
This textual convention is an extension of the
InterfaceIndex convention. The latter defines a greater
than zero value used to identify an interface or interface
sub-layer in the managed system. This extension permits…
.1.3.6.1.4.1.1991.1.1.3.44.1.4.5.1.2
Specifies the time for blocking or allowing the user when
the filter results in authenticating the user (matches).
Value of 0 means, the user is blocked permanently or
allowed permanently.
secondsUnsigned32
Constraints:
range: 0-12800
.1.3.6.1.4.1.1991.1.1.3.44.1.4.5.1.3
Specifies the action to be performed when this filter
is applied on the authenticating client when matching
occurs.

permit(1) - allow the client in specified VLAN
deny(2) - block the client
Enumeration
Enumerated Values:
1permit
2deny
.1.3.6.1.4.1.1991.1.1.3.44.1.4.5.1.4
.1.3.6.1.4.1.1991.1.1.3.44.1.4.6 · 1 row entry · 5 columns
Uses the brocade variant from /opt/observium/mibs/brocade.
Command help
Walk ruckusWebAuthCaptivePortalTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'RUCKUS-AUTH-MIB' -M '/opt/observium/mibs/brocade:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'RUCKUS-AUTH-MIB::ruckusWebAuthCaptivePortalTable'
A table that allows configuration of WebAuth Captive
profiles for various external WebAuth servers. 
          
The rntry provides the server information such as
the DNS name or address, port and login page where
the authenticating client should be redirected to.
ruckusWebAuthCaptivePortalEntry row .1.3.6.1.4.1.1991.1.1.3.44.1.4.6.1
An entry in WebAuth Captive Poratl table.
Column Syntax OID
Specifies the name of the profile entry.
OctetString
Constraints:
range: 1-32
.1.3.6.1.4.1.1991.1.1.3.44.1.4.6.1.1
Specifies the Captive server type - qualified name or IP address.
INET-ADDRESS-MIBInetAddressType
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.1991.1.1.3.44.1.4.6.1.2
Specifies the Captive server qualified name or IP address.
INET-ADDRESS-MIBInetAddress
Type Constraints:
range: 0..255
.1.3.6.1.4.1.1991.1.1.3.44.1.4.6.1.3
Specifies the Captive server port for HTTP/HTTPS access.
SNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.4.6.1.4
Specifies the login page of the Captive server, where the client
should be redirected to.
SNMPv2-TCDisplayString
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.1991.1.1.3.44.1.4.6.1.5
.1.3.6.1.4.1.1991.1.1.3.44.1.5.1 · 1 row entry · 17 columns
Uses the brocade variant from /opt/observium/mibs/brocade.
Command help
Walk ruckusAuthPortTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'RUCKUS-AUTH-MIB' -M '/opt/observium/mibs/brocade:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'RUCKUS-AUTH-MIB::ruckusAuthPortTable'
A table that allows configuration of FlexAuth, 
including Dot1x and MAC-Auth for a specified port. 
Most objects at the port level oerride the similar 
configured objects at the global level.
          
An entry exists in this table for each configured
with FlexAuth.
ruckusAuthPortEntry row .1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1
An entry of FlexAuth port configuration.
Indexes
Column Syntax OID
Specifies authentication methods that are enabled on
this port. Unless the method is enabled globally,
the same can't be enabled at port level. A bit field
of '1' indicates enabled, otherwise disabled.
Bits
Enumerated Values:
0dot1x
1macAuth
.1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.1
Specifies the Dot1x operating mode for this port,
when Dot1x is enabled.

force-unauthorized(1)- port's controlled port is
placed unconditionally in
the unauthorized state
control-auto(2) - t…
Enumeration
Enumerated Values:
1forceUnauthorized
2controlauto
3forceAuthorized
4other
.1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.2
This default VLAN is used to place this port, so
this VLAN acts as a VLAN for the clients to belong
to, when authentication server doesn't assign any
VLANs.

A value of zero for this object indicates no …
VlanId
Type Constraints:
range: 0..4094
.1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.3
This voice VLAN is used to advertise through
LLDP/CDP on this port, when connected devices are
detected as Phones and authentication server doesn't
assign any Voice VLAN.

A value of zero for this object i…
VlanId
Type Constraints:
range: 0..4094
.1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.4
This VLAN is used to place the clients of this port,
when the authentication server times out and the
port auth-timeout-action is configired as
'critical', so the clients have limited access.

Refer to …
VlanId
Type Constraints:
range: 0..4094
.1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.5
This VLAN is used to place the clients of this port,
when the clients fail the authentication and the
auth-failure-action is configured as 'restrict', so
the clients have limited access.

Refer to ruckusAu…
VlanId
Type Constraints:
range: 0..4094
.1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.6
Specifies the authentication mode for this port.
This overrides the globally configured value.
RuckusAuthMode
Type Values:
1singleUntagged
2multipleUntagged
3singleHost
4multipleHosts
.1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.7
Specifies authentication methods to be attempted in
series of methods for this port. This overrides the
globally configured value.
RuckusAuthOrder
Type Values:
1dot1xMauth
2mauthDot1x
.1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.8
Specifies the maximum number of authenticated
clients allowed on this port. This doesn't include
the clients allowed due to authentication failure
and timeout policies.
Unsigned32
Constraints:
range: 1-1024
.1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.9
Specifies the action to be taken on this port. This
overrides the globally set value.
RuckusAuthFailAction
Type Values:
1blockTraffic
2restrictVlan
.1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.10
Specifies the action to be taken on this port, when
the authentication server times out for various
readons like server busy, network access, etc. This
overrides the globally set value.
RuckusAuthTimeoutAction
Type Values:
1failure
2success
3criticalVlan
4other
.1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.11
How often to re-authenticates clients of this port,
when the clients were allowed due to authentication
server timeout. Value of 0 disables the
re-authentication.
secondsUnsigned32
Constraints:
range: 1-4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.12
Specifies, if denied and permitted sessions are
enabled or disabled for aging on this port. This
overrided the global value.
RuckusAuthAging
Type Values:
0deniedSessions
1permittedSessions
.1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.13
Specifies, if denied and permitted sessions are
enabled or disabled for aging on this port. A bit
field of '1' indicates enabled, otherwise disabled.
P-BRIDGE-MIBEnabledStatus
Type Values:
1enabled
2disabled
.1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.14
Source guard enabling ensures that the client IP
address to be learned and allow the packets matching
that IP address only. This is implied when user ACLs
are applied on the port, so has impact only
otherwise.
P-BRIDGE-MIBEnabledStatus
Type Values:
1enabled
2disabled
.1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.15
Specifies to prevent/allow Denial of Service attacks
on this port. Constantly sending packets from
different clients (MAC addresses) causes DOS, as the
clients are not allowed without authentication,
which may cause exh…
P-BRIDGE-MIBEnabledStatus
Type Values:
1enabled
2disabled
.1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.16
The maximum number of clients to be allowed at any
time without authentication, and if authentication
pending clients exceed the configured limit (as
specified by this object), the port gets shutdown to
prevent DOS atta…
Unsigned32
Constraints:
range: 1-65535
.1.3.6.1.4.1.1991.1.1.3.44.1.5.1.1.17
.1.3.6.1.4.1.1991.1.1.3.44.1.6.1 · 1 row entry · 5 columns
Uses the brocade variant from /opt/observium/mibs/brocade.
Command help
Walk ruckusAuthFilterTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'RUCKUS-AUTH-MIB' -M '/opt/observium/mibs/brocade:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'RUCKUS-AUTH-MIB::ruckusAuthFilterTable'
A table that allows configuration of FlexAuth auth-
filters which are applied to statically authenticate 
the clients without the need for RADIUS server
authenticator.
          
This comes in for help to permit/deny pre-defined
clients and save time in authentication. An entry
exists in this table for every auth-filter bound 
on the port.
ruckusAuthFilterEntry row .1.3.6.1.4.1.1991.1.1.3.44.1.6.1.1
An entry of FlexAuth port Auth-Filter configuration.
Column Syntax OID
An index into the authe filter table.
SNMPv2-SMIInteger32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.1991.1.1.3.44.1.6.1.1.1
Specifies the MAC Address of the filter for matching
the authenticating clients through static authentication.
SNMPv2-TCMacAddress
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.1991.1.1.3.44.1.6.1.1.2
Specifies the Mask of the filter for matching the
incoming clients through static authentication. The mask
is applied on MAC in the filter and client MAC before the
matching decision is made.
SNMPv2-TCMacAddress
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.1991.1.1.3.44.1.6.1.1.3
Specifies the VLAN which should be used to place the
authenticating client after the matching is done. This
VLAN applies only when the action is permit. Denied
clients are always blocked.
VlanId
Type Constraints:
range: 0..4094
.1.3.6.1.4.1.1991.1.1.3.44.1.6.1.1.4
Specifies the action to be performed when this filter
is applied on the authenticating client and matching
occurs.

permit(1) - allow the client in specified VLAN
deny(2) - block the client
Enumeration
Enumerated Values:
1permit
2deny
.1.3.6.1.4.1.1991.1.1.3.44.1.6.1.1.5
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1 · 1 row entry · 25 columns
Uses the brocade variant from /opt/observium/mibs/brocade.
Command help
Walk ruckusAuthSessionTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'RUCKUS-AUTH-MIB' -M '/opt/observium/mibs/brocade:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'RUCKUS-AUTH-MIB::ruckusAuthSessionTable'
A table providing information about the FlexAuth
sessions for each client at port level in the
Ruckus device.
          
This table contains entries for all the clients
authenticated or failed on a given port.
          
Entries get created when clients are authenticated
amd cleared when they logoff or timeout.
ruckusAuthSessionEntry row .1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1
An entry containing information about the FlexAuth
session of a specified client on a port
Column Syntax OID
Specifies the MAC Address of the client
(device/host) represented by this session entry
SNMPv2-TCMacAddress
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.1
Specifies the VLAN, the client (device/host) belongs
to, represented by this session entry.

In case of voice-phones, this VLAN is the voice-VLAN
(tagged) and in all other cases, most likely an
untagged VL…
VlanId
Type Constraints:
range: 0..4094
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.2
Decribes the type of the VLAN associated with the session.

default(1) - Default VLANs as configured on Ruckus device
restrict(2) - Restricted VLAN as authentication failed
critical(3) - Critical VLAN as …
Enumeration
Enumerated Values:
1default
2retrict
3critical
4guest
5radius
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.3
Tagged VLAN or Voice VLAN sent by the RADIUS server, so
the port gets added to the VLAN, to prepare the device
to send tagged packets in case of phones.
VlanId
Type Constraints:
range: 0..4094
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.4
Indicates the User name associated with the client,
represented by this session.

In case of Dot1x sessions, it's the username used by
the user to log into the network; whereas in case of
MAC-Auth, it cou…
SNMPv2-TCDisplayString
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.5
Decribes the type of the client connnected and
authenticated on this port.
Enumeration
Enumerated Values:
1phone
2wlanAP
3router
4bridge
8other
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.6
Specifies the authentication method that is used for
authenticating the client on this port represented
by this session.

It's possible that both authentication methods are
tried, both either succeeded or …
Enumeration
Enumerated Values:
1dot1x
2macAuth
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.7
Indicates the authentication mode applied for this
client on this port.
RuckusAuthMode
Type Values:
1singleUntagged
2multipleUntagged
3singleHost
4multipleHosts
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.8
The authentication state of the session which can
take the following values.

allowed - client authentication is successful, so
the complete access is granted
blocked - client failed authentication, so…
Enumeration
Enumerated Values:
1allowed
2blocked
3restrict
4critical
5guest
6other
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.9
Indicates the state of Dot1x authentication, if the
client is using Dot1x for authentication.
Dot1xAuthState
Type Values:
1other
2initialize
3disconnected
4connecting
5authenticating
6authenticated
7aborting
8held
9forceAuth
10forceUnauth
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.10
Indicates the aging status of the client session
which can be of the following values.

software(1):
Client MAC entry is cleared as the entry
timedout in hardware for configured inactivity
period, so it…
Enumeration
Enumerated Values:
1software
2hardware
3enabled
4disabled
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.11
When the aging type is either software or hardware,
this object indicates the time, the session had been
in that state. When the configured maximum time is
reached, the aging state moves from hardware to
software or s…
secondsSNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.12
Specifies the maximum amount of time, the session
should exit before re-authenticating or terminating
the sessions depending on another RADIUS attribute
'Termination-Action'.
secondsSNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.13
Specifies the maximum amount of time after which the
session is cleared when there is no traffic from the
client. A value of 0 means, the sessions never gets
terminated due to inactivity.
secondsSNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.14
Indcates the session UP time since the session had
been up or created.
secondsSNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.15
Specifies the User Access List (ACL) applied in the
Ingress direction for the IPv4 traffic for this
client on this port.
SNMPv2-TCDisplayString
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.16
Specifies the User Access List (ACL) applied in the
Egress direction for the IPv4 traffic for this
client on this port.
SNMPv2-TCDisplayString
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.17
Specifies the User Access List (ACL) applied in the
Ingress direction for the IPv6 traffic for this
client on this port.
SNMPv2-TCDisplayString
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.18
Specifies the User Access List (ACL) applied in the
Egress direction for the IPv6 traffic for this
client on this port.
SNMPv2-TCDisplayString
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.19
Specifies the number bytes sent for this session on the port.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.20
Specifies the number bytes received for this session on the port.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.21
Specifies the number bytes sent for this session on the port.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.22
Specifies the number bytes received for this session on the port.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.23
Specifies the internal failure reason for this
client, such as memory allocation, RADIUS attribute
parsing, RADIUS REJECT, etc.
SNMPv2-TCDisplayString
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.24
Desacribes various other parameters of client
session, by clubbing them together in one object for
simplicity.

staticAuthenticated(0):
Client is authenticaticated using configured
auth-fileters on the p…
Bits
Enumerated Values:
0staticAuthenticated
1taggedSession
2dot1xNonCapable
3dot1xEnabled
4masterMacAuth
5v4AclApplied
6v6AclApplied
.1.3.6.1.4.1.1991.1.1.3.44.1.7.1.1.25
.1.3.6.1.4.1.1991.1.1.3.44.1.7.2 · 1 row entry · 3 columns
Uses the brocade variant from /opt/observium/mibs/brocade.
Command help
Walk ruckusAuthSessionAddrTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'RUCKUS-AUTH-MIB' -M '/opt/observium/mibs/brocade:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'RUCKUS-AUTH-MIB::ruckusAuthSessionAddrTable'
An address table providing V4/V6 information about
the FlexAuth sessions for each client at port level
in the Ruckus device.
ruckusAuthSessionAddrEntry row .1.3.6.1.4.1.1991.1.1.3.44.1.7.2.1
An entry containing information about the FlexAuth
session address of a specified client on a port
Column Syntax OID
An index into the White List Server table.
SNMPv2-SMIInteger32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.1991.1.1.3.44.1.7.2.1.1
The address type of the this address entry, a V4 or V6.
INET-ADDRESS-MIBInetAddressType
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.1991.1.1.3.44.1.7.2.1.2
The address of this session entry, which is a V4 or V6 address.
INET-ADDRESS-MIBInetAddress
Type Constraints:
range: 0..255
.1.3.6.1.4.1.1991.1.1.3.44.1.7.2.1.3
.1.3.6.1.4.1.1991.1.1.3.44.1.8.1 · 1 row entry · 10 columns
Uses the brocade variant from /opt/observium/mibs/brocade.
Command help
Walk ruckusAuthStatsTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'RUCKUS-AUTH-MIB' -M '/opt/observium/mibs/brocade:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'RUCKUS-AUTH-MIB::ruckusAuthStatsTable'
A table that provides information about the summary
of MAC-Auth and Dot1x sessions at port level.
          
An entry exists in this table for every port enabled
for FlexAuth.
ruckusAuthStatsEntry row .1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1
An entry of port level FlexAuth session summary
table.
Indexes
Column Syntax OID
The number of Dot1x sessions attempted on this port,
since the time the stats were cleared.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.1
The number of Dot1x sessions accepted or permited on
this port, since the time the stats were cleared.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.2
The number of Dot1x sessions failed or rejected on
this port, since the time the stats were cleared.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.3
The number of Dot1x sessions which are in progress
on this port waiting for authentication to be
completed, since the time the stats were cleared.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.4
The number of Dot1x sessions which are neither
accepted or rejected due to conditions like timeout,
resource failure, etc; on this port, since the time
the stats were cleared.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.5
The number of MAC-Auth sessions attempted on this
port, since the time the stats were cleared.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.6
The number of MAC-Auth sessions accepted or permited
on this port, since the time the stats were cleared
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.7
The number of MAC-Auth sessions failed or rejected
on this port, since the time the stats were cleared
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.8
The number of MAC-Auth sessions which are in
progress on this port waiting for authentication to
be completed, since the time the stats were cleared
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.9
The number of MAC-Auth sessions which are neither
accepted or rejected due to conditions like timeout,
resource failure, etc; on this port, since the time
the stats were cleared.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.1.1.10
.1.3.6.1.4.1.1991.1.1.3.44.1.8.2 · 1 row entry · 12 columns
Uses the brocade variant from /opt/observium/mibs/brocade.
Command help
Walk ruckusDot1xAuthStatsTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'RUCKUS-AUTH-MIB' -M '/opt/observium/mibs/brocade:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'RUCKUS-AUTH-MIB::ruckusDot1xAuthStatsTable'
A table that provides information about the Dot1x
Statistics at port level.
          
An entry exists in this table for every port enabled
for Dot1x.
ruckusDot1xAuthStatsEntry row .1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1
An entry of per port Dot1x statistics table.
Indexes
Column Syntax OID
The total number of EAPOL frames transmitted on this
port
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.1
The number of EAP-Request/Identity frames
transmitted on this port
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.2
The number of transmitted EAP request frames that
are not EAP-Request/identify on this port
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.3
The total number of EAPOL frames received on this
port
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.4
The number of EAPOL-Start frames received on this
port
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.5
The number of EAPOL-Logoff frames received on this
port
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.6
The number of EAP-Response/Identify frames received
on this port
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.7
The number of received EAP-Response frames other
than EAP-Response/Identity on this port
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.8
The number of invalid EAPOL frames received on this
port
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.9
The number of EAPOL frames received with incorrect
length on this port
SNMPv2-SMIInteger32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.10
The version of last EAP frame received on this port
SNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.11
The MAC address of the source from where the last
EAP frame received on this port
SNMPv2-TCMacAddress
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.1991.1.1.3.44.1.8.2.1.12