CM-SECURITY-MIB Table View

Table-centric layout grouping table, row, and column objects.

Tables
4
Rows
4
Columns
42
.1.3.6.1.4.1.2544.1.12.10.1.5 · 1 row entry · 16 columns
A list of entries corresponding to the security users. 
Entries cannot be created in this table by management
application action.
cmSecurityUserEntry entry .1.3.6.1.4.1.2544.1.12.10.1.5.1
An entry containing information applicable to a particular
security user.
Indexes
cmSecurityUserName cmSecurityUserRemoteUser
Column Syntax OID
cmSecurityUserName
Security User Name.
OctetStringr/w
Constraints:
range: 1-32
.1.3.6.1.4.1.2544.1.12.10.1.5.1.1
cmSecurityUserComment
Notes on Security User.
OctetStringr/w
Constraints:
range: 0-128
.1.3.6.1.4.1.2544.1.12.10.1.5.1.2
cmSecurityUserPrivLevel
Security User Privilege Level.
CmSecurityPrivLevelr/w
Textual Convention: CmSecurityPrivLevel Enumeration
Type Values:
0not-applicable
1retrieve
2maintenance
3provisioning
4superuser
5testuser
6cryptouser
7netconf
.1.3.6.1.4.1.2544.1.12.10.1.5.1.3
cmSecurityUserLoginTimeout
Security User Login Timeout.
SNMPv2-SMIInteger32r/w
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.2544.1.12.10.1.5.1.4
cmSecurityUserNumFailedLoginAttempts
Security User Number of Failed Login Attempts.
SNMPv2-SMIInteger32
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.2544.1.12.10.1.5.1.5
cmSecurityUserLastLoginTime
Security User Last Login Time.
SNMPv2-TCDateAndTime
Textual Convention: SNMPv2-TCDateAndTime OctetString
Type Constraints:
range: 8
range: 11
.1.3.6.1.4.1.2544.1.12.10.1.5.1.6
cmSecurityUserLockedout
Whether the security user has been locked out.
SNMPv2-TCTruthValue
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.2544.1.12.10.1.5.1.7
cmSecurityUserLastLockedoutTime
Security User Last Locked out Time.
SNMPv2-TCDateAndTime
Textual Convention: SNMPv2-TCDateAndTime OctetString
Type Constraints:
range: 8
range: 11
.1.3.6.1.4.1.2544.1.12.10.1.5.1.8
cmSecurityUserCliPagingEnable
Whether the security user has CLI paging enabled.
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.2544.1.12.10.1.5.1.9
cmSecurityUserRemoteUser
Whether the security user is a remote user.
SNMPv2-TCTruthValue
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.2544.1.12.10.1.5.1.10
cmSecurityUserPassword
Password of the security user.
Note that this attribute is a SET only attribute.
OctetStringr/w
Constraints:
range: 0-32
.1.3.6.1.4.1.2544.1.12.10.1.5.1.11
cmSecurityUserStorageType
The type of storage configured for this entry.
SNMPv2-TCStorageTyper/w
Textual Convention: SNMPv2-TCStorageType Enumeration
Type Values:
1other
2volatile
3nonVolatile
4permanent
5readOnly
.1.3.6.1.4.1.2544.1.12.10.1.5.1.12
cmSecurityUserRowStatus
The status of this row.
An entry MUST NOT exist in the active state unless all
objects in the entry have an appropriate value, as described
in the description clause for each writable object.

The values o…
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.2544.1.12.10.1.5.1.13
cmSecurityUserAction
This object provides ability to perform specific actions on security user.
remove-lockout - this removes the locked out condition on the security user
.
SecurityUserActionr/w
Textual Convention: SecurityUserAction Enumeration
Type Values:
0not-applicable
1remove-lockout
.1.3.6.1.4.1.2544.1.12.10.1.5.1.14
cmSecurityCryptoPassword
Second level password used in connectguard configurations.
This applies only to crypto users.
Note that this attribute is a SET only attribute.
OctetStringr/w
Constraints:
range: 0-32
.1.3.6.1.4.1.2544.1.12.10.1.5.1.15
cmSecurityUserRemoteCryptoUser
Indicates if a security user is a remote crypto user.
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.2544.1.12.10.1.5.1.16
.1.3.6.1.4.1.2544.1.12.10.1.6 · 1 row entry · 11 columns
A list of entries corresponding to the remote authentication 
servers.
Entries cannot be created in this table by management
application action.
cmRemoteAuthServerEntry entry .1.3.6.1.4.1.2544.1.12.10.1.6.1
An entry containing information applicable to a particular
remote authentication server.
Indexes
cmRemoteAuthServerIndex
Column Syntax OID
cmRemoteAuthServerIndex
Unique index to address/configure a specific Remote
Authentication Server.
SNMPv2-SMIInteger32
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.2544.1.12.10.1.6.1.1
cmRemoteAuthServerEnabled
This object allows enabling/disabling a Remote Authentication Server.
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.2544.1.12.10.1.6.1.2
cmRemoteAuthServerOrder
This object determines the order in which the Remote
Authentication Servers are accessed for security information.
CmRemoteAuthOrderr/w
Textual Convention: CmRemoteAuthOrder Enumeration
Type Values:
1first
2second
3third
.1.3.6.1.4.1.2544.1.12.10.1.6.1.3
cmRemoteAuthServerIpAddress
This object allows to specify an IP Address for the Remote
Authentication Server.
SNMPv2-SMIIpAddressr/w
Textual Convention: SNMPv2-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.2544.1.12.10.1.6.1.4
cmRemoteAuthServerPort
This object allows to specify a Port for Remote Authentication
Server.
SNMPv2-SMIInteger32r/w
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.2544.1.12.10.1.6.1.5
cmRemoteAuthServerNumRetries
This object allows to specify the number of retries the Remote
Authentication Server must be tried for security access before
giving up.
SNMPv2-SMIInteger32r/w
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.2544.1.12.10.1.6.1.6
cmRemoteAuthServerTimeout
This object allows to specify the timeout period for timing
out a security access request to the Remote Authentication Server.
SNMPv2-SMIInteger32r/w
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.2544.1.12.10.1.6.1.7
cmRemoteAuthServerSecret
This allows configuration of secret password for Remote
Authentication Server request.
OctetStringr/w
Constraints:
range: 0-128
.1.3.6.1.4.1.2544.1.12.10.1.6.1.8
cmRemoteAuthServerAccountingPort
This object allows to specify a Port for RADIUS Accounting.
SNMPv2-SMIInteger32r/w
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.2544.1.12.10.1.6.1.9
cmRemoteAuthServerIpVersion
This object describe the Ip Version.
CM-COMMON-MIBIpVersionr/w
Textual Convention: CM-COMMON-MIBIpVersion Enumeration
Type Values:
1ipv4
2ipv6
.1.3.6.1.4.1.2544.1.12.10.1.6.1.10
cmRemoteAuthServerIpv6Addr
This object describe the Ipv6 Address.
IPV6-TCIpv6Addressr/w
Textual Convention: IPV6-TCIpv6Address OctetString
Type Constraints:
range: 16
.1.3.6.1.4.1.2544.1.12.10.1.6.1.11
.1.3.6.1.4.1.2544.1.12.10.1.9 · 1 row entry · 1 columns
This table is the extension of the F3 USM User Table.
f3UsmUserEntry entry .1.3.6.1.4.1.2544.1.12.10.1.9.1
An entry in the F3 USM User Table.
Indexes
No indexes recorded
Column Syntax OID
f3UsmUserAccessType
This indicates the type of USM User, read-only, read-write, trap-only.
UsmUserAccessType
Textual Convention: UsmUserAccessType Enumeration
Type Values:
1read-only
2read-write
3trap-only
.1.3.6.1.4.1.2544.1.12.10.1.9.1.1
.1.3.6.1.4.1.2544.1.12.10.1.15 · 1 row entry · 14 columns
This table is used for Restricted User Login via NMS.
This is for users with lower privileges to elevate them to higher ones for limited amount of time.
f3PrivilegeChangeEntry entry .1.3.6.1.4.1.2544.1.12.10.1.15.1
Column for privilegeChangeTable.
Indexes
f3PrivilegeChangeId
Column Syntax OID
f3PrivilegeChangeId
Unique index identifying a request.
Unsigned32
Constraints:
range: 1-4294967295
.1.3.6.1.4.1.2544.1.12.10.1.15.1.1
f3PrivilegeChangeUserName
The name string for user authentication purposes
SNMP-FRAMEWORK-MIBSnmpAdminString
Textual Convention: SNMP-FRAMEWORK-MIBSnmpAdminString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.2544.1.12.10.1.15.1.2
f3PrivilegeChangeIpv4Address
IPv4 address of interface to which user's terminal is connected.
SNMPv2-SMIIpAddress
Textual Convention: SNMPv2-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.2544.1.12.10.1.15.1.3
f3PrivilegeChangeIpv6Address
IPv6 address of interface to which user's terminal is connected.
IPV6-TCIpv6Address
Textual Convention: IPV6-TCIpv6Address OctetString
Type Constraints:
range: 16
.1.3.6.1.4.1.2544.1.12.10.1.15.1.4
f3PrivilegeChangeTerminalIpv4Address
Source IPv4 address of connected terminal.
SNMPv2-SMIIpAddress
Textual Convention: SNMPv2-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.2544.1.12.10.1.15.1.5
f3PrivilegeChangeTerminalIpv6Address
Source IPv6 address of connected terminal.
IPV6-TCIpv6Address
Textual Convention: IPV6-TCIpv6Address OctetString
Type Constraints:
range: 16
.1.3.6.1.4.1.2544.1.12.10.1.15.1.6
f3PrivilegeChangeInterface
Interface used by the user
CM-COMMON-MIBUserInterfaceType
Textual Convention: CM-COMMON-MIBUserInterfaceType Enumeration
Type Values:
1cli
2gui
3netconf
4snmp
.1.3.6.1.4.1.2544.1.12.10.1.15.1.7
f3PrivilegeChangeCurrentPrivilege
Current privilege level of the user, who is requesting role upgrade.
CmSecurityPrivLevel
Textual Convention: CmSecurityPrivLevel Enumeration
Type Values:
0not-applicable
1retrieve
2maintenance
3provisioning
4superuser
5testuser
6cryptouser
7netconf
.1.3.6.1.4.1.2544.1.12.10.1.15.1.8
f3PrivilegeChangeRequestedPrivilege
Privilege requested by user for session.
CmSecurityPrivLevel
Textual Convention: CmSecurityPrivLevel Enumeration
Type Values:
0not-applicable
1retrieve
2maintenance
3provisioning
4superuser
5testuser
6cryptouser
7netconf
.1.3.6.1.4.1.2544.1.12.10.1.15.1.9
f3PrivilegeChangeDuration
Requested time period by user (in minutes).
minutesUnsigned32
Constraints:
range: 1-480
.1.3.6.1.4.1.2544.1.12.10.1.15.1.10
f3PrivilegeChangeAction
Privilege request action.
PrivilegeRequestActionr/w
Textual Convention: PrivilegeRequestAction Enumeration
Type Values:
0undefined
1none
2approve
3deny
4cancel
.1.3.6.1.4.1.2544.1.12.10.1.15.1.11
f3PrivilegeChangeState
Privilege request state.
PrivilegeRequestState
Textual Convention: PrivilegeRequestState Enumeration
Type Values:
1none
2requestSent
3requestCanceled
4requestApproved
5requestDenied
6requestTimeout
7accessExpired
8accessCanceled
.1.3.6.1.4.1.2544.1.12.10.1.15.1.12
f3PrivilegeChangeRemainingTime
Time remaining in session with upgrade user privilege (in seconds).
secondsSNMPv2-SMIUnsigned32
Textual Convention: SNMPv2-SMIUnsigned32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.2544.1.12.10.1.15.1.13
f3PrivilegeChangeRemoteName
The name string for Radius/Tacacs authentication purposes.
SNMP-FRAMEWORK-MIBSnmpAdminString
Textual Convention: SNMP-FRAMEWORK-MIBSnmpAdminString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.2544.1.12.10.1.15.1.14