CISCO-IPSEC-MIB Table View

Table-centric layout grouping table, row, and column objects.

Tables
5
Rows
5
Columns
28
.1.3.6.1.4.1.9.10.62.1.1.5 · 1 row entry · 6 columns
The table containing the list of all
ISAKMP policy entries configured by the operator.
cipsIsakmpPolicyEntry entry .1.3.6.1.4.1.9.10.62.1.1.5.1
Each entry contains the attributes
associated with a single ISAKMP
Policy entry.
Indexes
cipsIsakmpPolPriority
Column Syntax OID
cipsIsakmpPolPriority
The priotity of this ISAKMP Policy entry.
This is also the index of this table.
Integer32
Constraints:
range: 0-65535
.1.3.6.1.4.1.9.10.62.1.1.5.1.1
cipsIsakmpPolEncr
The encryption transform specified by this
ISAKMP policy specification. The Internet Key Exchange
(IKE) tunnels setup using this policy item would
use the specified encryption transform to protect the
ISAKMP PDUs.
EncryptAlgo
Textual Convention: EncryptAlgo Enumeration
Type Values:
1none
2des
3des3
.1.3.6.1.4.1.9.10.62.1.1.5.1.2
cipsIsakmpPolHash
The hash transform specified by this
ISAKMP policy specification. The IKE tunnels
setup using this policy item would use the
specified hash transform to protect the
ISAKMP PDUs.
IkeHashAlgo
Textual Convention: IkeHashAlgo Enumeration
Type Values:
1none
2md5
3sha
.1.3.6.1.4.1.9.10.62.1.1.5.1.3
cipsIsakmpPolAuth
The peer authentication mthod specified by
this ISAKMP policy specification. If this policy
entity is selected for negotiation with a peer,
the local entity would authenticate the peer using
the method specified by thi…
IkeAuthMethod
Textual Convention: IkeAuthMethod Enumeration
Type Values:
1none
2preSharedKey
3rsaSig
4rsaEncrypt
5revPublicKey
.1.3.6.1.4.1.9.10.62.1.1.5.1.4
cipsIsakmpPolGroup
This object specifies the Oakley group used
for Diffie Hellman exchange in the Main Mode.
If this policy item is selected to negotiate
Main Mode with an IKE peer, the local entity
chooses the group specified by this …
DiffHellmanGrp
Textual Convention: DiffHellmanGrp Enumeration
Type Values:
1none
2dhGroup1
3dhGroup2
.1.3.6.1.4.1.9.10.62.1.1.5.1.5
cipsIsakmpPolLifetime
This object specifies the lifetime in seconds
of the IKE tunnels generated using this
policy specification.
secondsInteger32
Constraints:
range: 60-86400
.1.3.6.1.4.1.9.10.62.1.1.5.1.6
.1.3.6.1.4.1.9.10.62.1.2.3.1 · 1 row entry · 8 columns
The table containing the list of all
cryptomap sets that are fully specified
and are not wild-carded.
          
The operator may include different types of
cryptomaps in such a set - manual, CET,
ISAKMP or dynamic.
cipsStaticCryptomapSetEntry entry .1.3.6.1.4.1.9.10.62.1.2.3.1.1
Each entry contains the attributes
associated with a single static
cryptomap set.
Indexes
cipsStaticCryptomapSetName
Column Syntax OID
cipsStaticCryptomapSetName
The index of the static cryptomap table. The value
of the string is the name string assigned by the
operator in defining the cryptomap set.
SNMPv2-TCDisplayString
Textual Convention: SNMPv2-TCDisplayString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.1
cipsStaticCryptomapSetSize
The total number of cryptomap entries contained in
this cryptomap set.
SNMPv2-SMIGauge32
Textual Convention: SNMPv2-SMIGauge32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.2
cipsStaticCryptomapSetNumIsakmp
The number of cryptomaps associated with this
cryptomap set that use ISAKMP protocol to do key
exchange.
SNMPv2-SMIGauge32
Textual Convention: SNMPv2-SMIGauge32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.3
cipsStaticCryptomapSetNumManual
The number of cryptomaps associated with this
cryptomap set that require the operator to manually
setup the keys and SPIs.
SNMPv2-SMIGauge32
Textual Convention: SNMPv2-SMIGauge32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.4
cipsStaticCryptomapSetNumCET
The number of cryptomaps of type 'ipsec-cisco'
associated with this cryptomap set. Such
cryptomap elements implement Cisco Encryption Technology
based Virtual Private Networks.
SNMPv2-SMIGauge32
Textual Convention: SNMPv2-SMIGauge32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.5
cipsStaticCryptomapSetNumDynamic
The number of dynamic cryptomap templates
linked to this cryptomap set.
SNMPv2-SMIGauge32
Textual Convention: SNMPv2-SMIGauge32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.6
cipsStaticCryptomapSetNumDisc
The number of dynamic cryptomap templates
linked to this cryptomap set that have Tunnel Endpoint
Discovery (TED) enabled.
SNMPv2-SMIGauge32
Textual Convention: SNMPv2-SMIGauge32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.7
cipsStaticCryptomapSetNumSAs
The number of and IPsec Security Associations
that are active and were setup using this cryptomap.
SNMPv2-SMIGauge32
Textual Convention: SNMPv2-SMIGauge32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.9.10.62.1.2.3.1.1.8
.1.3.6.1.4.1.9.10.62.1.2.3.2 · 1 row entry · 3 columns
The table containing the list of all dynamic
cryptomaps that use IKE, defined on 
 the managed entity.
cipsDynamicCryptomapSetEntry entry .1.3.6.1.4.1.9.10.62.1.2.3.2.1
Each entry contains the attributes associated
with a single dynamic cryptomap template.
Indexes
cipsDynamicCryptomapSetName
Column Syntax OID
cipsDynamicCryptomapSetName
The index of the dynamic cryptomap table.
The value of the string is the one assigned
by the operator in defining the cryptomap set.
SNMPv2-TCDisplayString
Textual Convention: SNMPv2-TCDisplayString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.9.10.62.1.2.3.2.1.1
cipsDynamicCryptomapSetSize
The number of cryptomap entries in this cryptomap.
SNMPv2-SMIGauge32
Textual Convention: SNMPv2-SMIGauge32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.9.10.62.1.2.3.2.1.2
cipsDynamicCryptomapSetNumAssoc
The number of static cryptomap sets with which
this dynamic cryptomap is associated.
SNMPv2-SMIGauge32
Textual Convention: SNMPv2-SMIGauge32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.9.10.62.1.2.3.2.1.3
.1.3.6.1.4.1.9.10.62.1.2.3.3 · 1 row entry · 9 columns
The table ilisting the member cryptomaps
of the cryptomap sets that are configured
on the managed entity.
cipsStaticCryptomapEntry entry .1.3.6.1.4.1.9.10.62.1.2.3.3.1
Each entry contains the attributes
associated with a single static
(fully specified) cryptomap entry.
This table does not include the members
of dynamic cryptomap sets that may be
linked with the parent static crypto…
Indexes
cipsStaticCryptomapSetName cipsStaticCryptomapPriority
Column Syntax OID
cipsStaticCryptomapPriority
The priority of the cryptomap entry in the
cryptomap set. This is the second index component
of this table.
Integer32
Constraints:
range: 0-65535
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.1
cipsStaticCryptomapType
The type of the cryptomap entry. This can be an ISAKMP
cryptomap, CET or manual. Dynamic cryptomaps are not
counted in this table.
CryptomapType
Textual Convention: CryptomapType Enumeration
Type Values:
0cryptomapTypeNONE
1cryptomapTypeMANUAL
2cryptomapTypeISAKMP
3cryptomapTypeCET
4cryptomapTypeDYNAMIC
5cryptomapTypeDYNAMICDISCOVERY
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.2
cipsStaticCryptomapDescr
The description string entered by the operatoir
while creating this cryptomap. The string generally
identifies a description and the purpose of this
policy.
SNMPv2-TCDisplayString
Textual Convention: SNMPv2-TCDisplayString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.3
cipsStaticCryptomapPeer
The IP address of the current peer associated with
this IPSec policy item. Traffic that is protected by
this cryptomap is protected by a tunnel that terminates
at the device whose IP address is specified by this
object.
IPSIpAddress
Textual Convention: IPSIpAddress OctetString
Type Constraints:
range: 4
range: 16
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.4
cipsStaticCryptomapNumPeers
The number of peers associated with this cryptomap
entry. The peers other than the one identified by
'cipsStaticCryptomapPeer' are backup peers.

Manual cryptomaps may have only one peer.
Integer32
Constraints:
range: 0-40
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.5
cipsStaticCryptomapPfs
This object identifies if the tunnels instantiated
due to this policy item should use Perfect Forward Secrecy
(PFS) and if so, what group of Oakley they should use.
DiffHellmanGrp
Textual Convention: DiffHellmanGrp Enumeration
Type Values:
1none
2dhGroup1
3dhGroup2
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.6
cipsStaticCryptomapLifetime
This object identifies the lifetime of the IPSec
Security Associations (SA) created using this IPSec policy
entry. If this value is zero, the lifetime assumes the
value specified by the global lifetime parameter.
Integer32
Constraints:
range: 0-0
range: 120-86400
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.7
cipsStaticCryptomapLifesize
This object identifies the lifesize (maximum traffic
in bytes that may be carried) of the IPSec SAs
created using this IPSec policy entry.
If this value is zero, the lifetime assumes the
value specified by the global …
Integer32
Constraints:
range: 0-0
range: 2560-536870912
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.8
cipsStaticCryptomapLevelHost
This object identifies the granularity of the
IPSec SAs created using this IPSec policy entry.
If this value is TRUE, distinct SA bundles are created
for distinct hosts at the end of the application traffic.
SNMPv2-TCTruthValue
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.9.10.62.1.2.3.3.1.9
.1.3.6.1.4.1.9.10.62.1.2.3.4 · 1 row entry · 2 columns
The table lists the binding of cryptomap sets
to the interfaces of the managed entity.
cipsCryptomapSetIfEntry entry .1.3.6.1.4.1.9.10.62.1.2.3.4.1
Each entry contains the record of
the association between an interface
and a cryptomap set (static) that is defined
on the managed entity.

Note that the cryptomap set identified in
this binding must static…
Indexes
IF-MIBifIndex cipsStaticCryptomapSetName
Column Syntax OID
cipsCryptomapSetIfVirtual
The value of this object identifies if the
interface to which the cryptomap set is attached
is a tunnel (such as a GRE or PPTP tunnel).
SNMPv2-TCTruthValue
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.9.10.62.1.2.3.4.1.1
cipsCryptomapSetIfStatus
This object identifies the status of the binding
of the specified cryptomap set with the specified
interface. The value when queried is always 'attached'.
When set to 'detached', the cryptomap set if detached
from th…
CryptomapSetBindStatusr/w
Textual Convention: CryptomapSetBindStatus Enumeration
Type Values:
0unknown
1attached
2detached
.1.3.6.1.4.1.9.10.62.1.2.3.4.1.2