avUnAuthAccessEvent
SECURITY-MANAGEMENT-MIB ·
.1.3.6.1.4.1.6889.2.1.14.1.10.0.200
Object
notification
Notification on unauthorized login attempts.
o For CLI and SNMP login failures:
Both SNMP SSH and WEB management interfaces shall identify
situation and alert.
The reported information should include wrong user name,
host name and IP address of remote host. Passwords is not
reported because of the possibility to reveal password.
o For pre-shared-key (PSK) authentication failure in IKE:
* lntUnauthUserName -
- In IKE AM: the ID sent by the remote peer in the ID
payload.
- In IKE MM: the ID associated with the remote peer IP
in the running configuration.
* avUnauthInetAddressType and avUnauthInetAddress - represents
the source IP of the packet sent by the remote peer.
* avUnauthProtocol - lntIKEAccess(500)
Context
- MIB
- SECURITY-MANAGEMENT-MIB
- OID
.1.3.6.1.4.1.6889.2.1.14.1.10.0.200- Type
- notification
- Status
- current
- Parent
- secMngNotificationsPrefix
Net-SNMP examples
How SNMP and these commands workNotifications are emitted by an agent; they cannot be read with snmpget or walked.
Inspect the notification definition
/usr/bin/snmptranslate -Pud -Ir -Td -m 'SECURITY-MANAGEMENT-MIB' -M '/opt/observium/mibs/avaya:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'SECURITY-MANAGEMENT-MIB::avUnAuthAccessEvent'
More examples
Translate to a numeric OID
/usr/bin/snmptranslate -Pud -Ir -On -m 'SECURITY-MANAGEMENT-MIB' -M '/opt/observium/mibs/avaya:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'SECURITY-MANAGEMENT-MIB::avUnAuthAccessEvent'
Syntax
No syntax metadata recorded.
Values & Constraints
No enumerated values or constraints recorded.