H3C-IPSEC-MONITOR-MIB Table View

Table-centric layout grouping table, row, and column objects.

Tables
4
Rows
4
Columns
60
.1.3.6.1.4.1.2011.10.2.7.1.1 · 1 row entry · 26 columns
The IPSec Phase-2 Tunnel Table. There is one
entry in this table for each active IPSec Phase-2 Tunnel.
h3cIPSecTunnelEntry entry .1.3.6.1.4.1.2011.10.2.7.1.1.1
Information about h3cIPSecTunnelTable.
Indexes
h3cIPSecTunIfIndex h3cIPSecTunEntryIndex h3cIPSecTunIndex
Column Syntax OID
h3cIPSecTunIfIndex
The interface index( the ifIndex of ifTable ).
Integer32
Constraints:
range: 1-2147483647
.1.3.6.1.4.1.2011.10.2.7.1.1.1.1
h3cIPSecTunEntryIndex
The index of IPSec policy applied in the interface.
Integer32
Constraints:
range: 1-2147483647
.1.3.6.1.4.1.2011.10.2.7.1.1.1.2
h3cIPSecTunIndex
The index of IPSec Phase-2 Tunnel Table. The value of
the index is a number which begins at one and is
incremented with each tunnel that is created. The
value of this object will wrap at 2,147,483,647.
Integer32
Constraints:
range: 1-2147483647
.1.3.6.1.4.1.2011.10.2.7.1.1.1.3
h3cIPSecTunIKETunnelIndex
The index of the associated IPSec Phase-1 IKE Tunnel
(IKETunIndex in the IKETunnelTable). 2147483647 is defined as
invalid value.
Integer32
Constraints:
range: 1-2147483647
.1.3.6.1.4.1.2011.10.2.7.1.1.1.4
h3cIPSecTunLocalAddr
The IP address of the local peer for the IPSec Phase-2
Tunnel. 0.0.0.0 is defined as invalid value.
RFC1155-SMIIpAddress
Textual Convention: RFC1155-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.2011.10.2.7.1.1.1.5
h3cIPSecTunRemoteAddr
The IP address of the remote peer for the IPSec Phase-2
Tunnel. 0.0.0.0 is defined as invalid value.
RFC1155-SMIIpAddress
Textual Convention: RFC1155-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.2011.10.2.7.1.1.1.6
h3cIPSecTunKeyType
The key negotiate mode used by the IPSec Phase-2 Tunnel.
H3cIPSecNegoType
Textual Convention: H3cIPSecNegoType Enumeration
Type Values:
1ike
2manual
2147483647invalidType
.1.3.6.1.4.1.2011.10.2.7.1.1.1.7
h3cIPSecTunEncapMode
The encapsulation mode used by the IPSec Phase-2 Tunnel.
H3cEncapMode
Textual Convention: H3cEncapMode Enumeration
Type Values:
1tunnel
2transport
2147483647invalidMode
.1.3.6.1.4.1.2011.10.2.7.1.1.1.8
h3cIPSecTunInitiator
The initiator of this IPSec tunnel. Value none is used for manual
IPsec tunnel, for there is no initiator or responder in this method.
Enumeration
Enumerated Values:
1local
2remote
2147483647none
.1.3.6.1.4.1.2011.10.2.7.1.1.1.9
h3cIPSecTunLifeSize
The negotiated LifeSize of the IPSec Phase-2 Tunnel in kilobytes.
0 is defined as invalid value.
SNMPv2-SMIGauge32
Textual Convention: SNMPv2-SMIGauge32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.2011.10.2.7.1.1.1.10
h3cIPSecTunLifeTime
The negotiated LifeTime of the IPSec Phase-2 Tunnel in seconds.
2147483647 is defined as invalid value.
Integer32
Constraints:
range: 1-2147483647
.1.3.6.1.4.1.2011.10.2.7.1.1.1.11
h3cIPSecTunRemainTime
The remain time of SA in seconds. 2147483647 is defined as invalid
value.
Integer32
Constraints:
range: 0-2147483647
.1.3.6.1.4.1.2011.10.2.7.1.1.1.12
h3cIPSecTunActiveTime
The duration the IPSec Phase-2 Tunnel has been active in
hundredths of seconds. 2147483647 is defined as invalid value.
Integer32
Constraints:
range: 0-2147483647
.1.3.6.1.4.1.2011.10.2.7.1.1.1.13
h3cIPSecTunRemainSize
The remain LifeSize of SA in kilobytes. 0 is defined as
invalid value.
SNMPv2-SMIGauge32
Textual Convention: SNMPv2-SMIGauge32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.2011.10.2.7.1.1.1.14
h3cIPSecTunTotalRefreshes
The total number of security association refreshing performed.
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.2011.10.2.7.1.1.1.15
h3cIPSecTunCurrentSaInstances
The number of security associations which are currently active
or expiring.
SNMPv2-SMIGauge32
Textual Convention: SNMPv2-SMIGauge32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.2011.10.2.7.1.1.1.16
h3cIPSecTunInSaEncryptAlgo
The encryption algorithm used by the inbound security association
of the IPSec Phase-2 Tunnel.
H3cEncryptAlgo
Textual Convention: H3cEncryptAlgo Enumeration
Type Values:
0none
1desCbc
2ideaCbc
3blowfishCbc
4rc5R16B64Cbc
5tripledesCbc
6castCbc
7aesCbc
8nsaCbc
9aesCbc128
10aesCbc192
11aesCbc256
2147483647invalidAlg
.1.3.6.1.4.1.2011.10.2.7.1.1.1.17
h3cIPSecTunInSaAhAuthAlgo
The authentication algorithm used by the inbound authentication
header (AH) security association of the IPSec Phase-2 Tunnel.
H3cAuthAlgo
Textual Convention: H3cAuthAlgo Enumeration
Type Values:
0none
1md5
2sha
2147483647invalidAlg
.1.3.6.1.4.1.2011.10.2.7.1.1.1.18
h3cIPSecTunInSaEspAuthAlgo
The authentication algorithm used by the inbound encapsulation
security protocol(ESP) security association of the IPSec
Phase-2 Tunnel.
H3cAuthAlgo
Textual Convention: H3cAuthAlgo Enumeration
Type Values:
0none
1md5
2sha
2147483647invalidAlg
.1.3.6.1.4.1.2011.10.2.7.1.1.1.19
h3cIPSecTunDiffHellmanGrp
The Diffie Hellman Group used by the security association of the
IPSec Phase-2 Tunnel.
H3cDiffHellmanGrp
Textual Convention: H3cDiffHellmanGrp Enumeration
Type Values:
0none
1modp768
2modp1024
5modp1536
14modp2048
2147483647invalidGroup
.1.3.6.1.4.1.2011.10.2.7.1.1.1.20
h3cIPSecTunOutSaEncryptAlgo
The encryption algorithm used by the outbound security
association of the IPSec Phase-2 Tunnel.
H3cEncryptAlgo
Textual Convention: H3cEncryptAlgo Enumeration
Type Values:
0none
1desCbc
2ideaCbc
3blowfishCbc
4rc5R16B64Cbc
5tripledesCbc
6castCbc
7aesCbc
8nsaCbc
9aesCbc128
10aesCbc192
11aesCbc256
2147483647invalidAlg
.1.3.6.1.4.1.2011.10.2.7.1.1.1.21
h3cIPSecTunOutSaAhAuthAlgo
The authentication algorithm used by the outbound
authentication header (AH) security association of
the IPSec Phase-2 Tunnel.
H3cAuthAlgo
Textual Convention: H3cAuthAlgo Enumeration
Type Values:
0none
1md5
2sha
2147483647invalidAlg
.1.3.6.1.4.1.2011.10.2.7.1.1.1.22
h3cIPSecTunOutSaEspAuthAlgo
The authentication algorithm used by the outbound encapsulation
security protocol(ESP) security association of the IPSec
Phase-2 Tunnel.
H3cAuthAlgo
Textual Convention: H3cAuthAlgo Enumeration
Type Values:
0none
1md5
2sha
2147483647invalidAlg
.1.3.6.1.4.1.2011.10.2.7.1.1.1.23
h3cIPSecTunPolicyName
The policy name used by this IPSec tunnel.
SNMPv2-TCDisplayString
Textual Convention: SNMPv2-TCDisplayString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.2011.10.2.7.1.1.1.24
h3cIPSecTunPolicyNum
The sequence number of policy used by this IPSec tunnel.
Integer32
Constraints:
range: 1-2147483647
.1.3.6.1.4.1.2011.10.2.7.1.1.1.25
h3cIPSecTunStatus
The status of the IPSec Tunnel.
Enumeration
Enumerated Values:
1initial
2ready
3rekeyed
4closed
.1.3.6.1.4.1.2011.10.2.7.1.1.1.26
.1.3.6.1.4.1.2011.10.2.7.1.2 · 1 row entry · 17 columns
The IPSec Phase-2 Tunnel Statistics Table.
h3cIPSecTunnelStatEntry entry .1.3.6.1.4.1.2011.10.2.7.1.2.1
Information about h3cIPSecTunnelStatTable.
Indexes
h3cIPSecTunIfIndex h3cIPSecTunEntryIndex h3cIPSecTunIndex
Column Syntax OID
h3cIPSecTunInOctets
The total number of octets received by this IPSec Phase-2 Tunnel.
This value is accumulated BEFORE determining whether or not the
packet should be decompressed.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.2011.10.2.7.1.2.1.1
h3cIPSecTunInDecompOctets
The total number of decompressed octets received by this IPSec
Phase-2 Tunnel. This value is accumulated AFTER the packet
is decompressed.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.2011.10.2.7.1.2.1.2
h3cIPSecTunInPkts
The total number of packets received by this IPSec Phase-2 Tunnel.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.2011.10.2.7.1.2.1.3
h3cIPSecTunInDropPkts
The total number of packets dropped during receiving process
by this IPSec Phase-2 Tunnel.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.2011.10.2.7.1.2.1.4
h3cIPSecTunInReplayDropPkts
The total number of packets dropped during
receiving process due to Anti-Replay process
by this IPSec Phase-2 Tunnel.
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.2011.10.2.7.1.2.1.5
h3cIPSecTunInAuthFails
The total number of inbound authentication's
which ended in failure by this IPSec Phase-2 Tunnel.
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.2011.10.2.7.1.2.1.6
h3cIPSecTunInDecryptFails
The total number of inbound decryption's
which ended in failure by this IPSec Phase-2 Tunnel.
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.2011.10.2.7.1.2.1.7
h3cIPSecTunOutOctets
The total number of octets sent by this IPSec Phase-2 Tunnel.
This value is accumulated AFTER determining whether or not
the packet should be compressed.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.2011.10.2.7.1.2.1.8
h3cIPSecTunOutUncompOctets
The total number of uncompressed octets sent by this IPSec Phase-2
Tunnel.This value is accumulated BEFORE the packet is compressed.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.2011.10.2.7.1.2.1.9
h3cIPSecTunOutPkts
The total number of packets sent by this IPSec Phase-2 Tunnel.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.2011.10.2.7.1.2.1.10
h3cIPSecTunOutDropPkts
The total number of packets dropped during sending process
by this IPSec Phase-2 Tunnel.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.2011.10.2.7.1.2.1.11
h3cIPSecTunOutEncryptFails
The total number of outbound encryption's which ended in failure
by this IPSec Phase-2 Tunnel.
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.2011.10.2.7.1.2.1.12
h3cIPSecTunNoMemoryDropPkts
The total number of packets dropped due to no enough memory by this
IPSec Phase-2 Tunnel.
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.2011.10.2.7.1.2.1.13
h3cIPSecTunQueueFullDropPkts
The total number of packets dropped due to queue full by this
IPSec Phase-2 Tunnel.
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.2011.10.2.7.1.2.1.14
h3cIPSecTunInvalidLenDropPkts
The total number of packets dropped due to invalid length packet
by this IPSec Phase-2 Tunnel.
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.2011.10.2.7.1.2.1.15
h3cIPSecTunTooLongDropPkts
The total number of packets dropped due to too long packet by this
IPSec Phase-2 Tunnel.
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.2011.10.2.7.1.2.1.16
h3cIPSecTunInvalidSaDropPkts
The total number of packets dropped due to invalid SA by this
IPSec Phase-2 Tunnel.
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.2011.10.2.7.1.2.1.17
.1.3.6.1.4.1.2011.10.2.7.1.3 · 1 row entry · 7 columns
The IPSec Phase-2 Security Protection Index Table.  This table
contains an entry for each active and expiring security association.
h3cIPSecSaEntry entry .1.3.6.1.4.1.2011.10.2.7.1.3.1
Information about h3cIPSecSaTable.
Indexes
h3cIPSecTunIfIndex h3cIPSecTunEntryIndex h3cIPSecTunIndex h3cIPSecSaIndex
Column Syntax OID
h3cIPSecSaIndex
The number of the Sa associated with the Phase-2 Tunnel
Table. The value of this index is a number which begins
at one and is incremented with each Sa associated with
an IPSec Phase-2 Tunnel. The value of this object …
Integer32
Constraints:
range: 1-2147483647
.1.3.6.1.4.1.2011.10.2.7.1.3.1.1
h3cIPSecSaDirection
The direction of the SA.
Enumeration
Enumerated Values:
1in
2out
.1.3.6.1.4.1.2011.10.2.7.1.3.1.2
h3cIPSecSaValue
The value of the SPI.
Unsigned32
Constraints:
range: 1-4294967295
.1.3.6.1.4.1.2011.10.2.7.1.3.1.3
h3cIPSecSaProtocol
The security protocol of the SA.
H3cSaProtocol
Textual Convention: H3cSaProtocol Enumeration
Type Values:
0reserved
1isakmp
2ah
3esp
4ipcomp
.1.3.6.1.4.1.2011.10.2.7.1.3.1.4
h3cIPSecSaEncryptAlgo
The encryption algorithm used by the security association
of the IPSec Phase-2 Tunnel.
H3cEncryptAlgo
Textual Convention: H3cEncryptAlgo Enumeration
Type Values:
0none
1desCbc
2ideaCbc
3blowfishCbc
4rc5R16B64Cbc
5tripledesCbc
6castCbc
7aesCbc
8nsaCbc
9aesCbc128
10aesCbc192
11aesCbc256
2147483647invalidAlg
.1.3.6.1.4.1.2011.10.2.7.1.3.1.5
h3cIPSecSaAuthAlgo
The authentication algorithm used by the SA.
H3cAuthAlgo
Textual Convention: H3cAuthAlgo Enumeration
Type Values:
0none
1md5
2sha
2147483647invalidAlg
.1.3.6.1.4.1.2011.10.2.7.1.3.1.6
h3cIPSecSaStatus
The status of the SA.
Enumeration
Enumerated Values:
1active
2expiring
.1.3.6.1.4.1.2011.10.2.7.1.3.1.7
.1.3.6.1.4.1.2011.10.2.7.1.4 · 1 row entry · 10 columns
The IPSec Phase-2 Tunnel Traffic Table.
h3cIPSecTrafficEntry entry .1.3.6.1.4.1.2011.10.2.7.1.4.1
Information about h3cIPSecTrafficTable.
Indexes
h3cIPSecTunIfIndex h3cIPSecTunEntryIndex h3cIPSecTunIndex
Column Syntax OID
h3cIPSecTrafficLocalType
The type of local peer. Possible values are: a single
IP address, or an IP address range, or an IP subnet.
H3cTrafficType
Textual Convention: H3cTrafficType Enumeration
Type Values:
1ipv4Addr
4ipv4AddrSubnet
5ipv6Addr
6ipv6AddrSubnet
7ipv4AddrRange
8ipv6AddrRange
.1.3.6.1.4.1.2011.10.2.7.1.4.1.1
h3cIPSecTrafficLocalAddr1
The first specification of local peer's IP address. If
the local peer type is single IP address, then this is the
value of the IP address. If the local peer type is IP subnet,
then this is the value of the subnet. If th…
RFC1155-SMIIpAddress
Textual Convention: RFC1155-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.2011.10.2.7.1.4.1.2
h3cIPSecTrafficLocalAddr2
The second specification of local peer's IP address. If the local
peer type is single IP address, then this is the value of the
IP address. If the local peer type is IP subnet, then this is
the value of the subnet mask.…
RFC1155-SMIIpAddress
Textual Convention: RFC1155-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.2011.10.2.7.1.4.1.3
h3cIPSecTrafficLocalProtocol
The protocol number of the local peer's traffic.
Integer32
Constraints:
range: 0-255
.1.3.6.1.4.1.2011.10.2.7.1.4.1.4
h3cIPSecTrafficLocalPort
The port number of the local peer's traffic.
Integer32
Constraints:
range: 0-65535
.1.3.6.1.4.1.2011.10.2.7.1.4.1.5
h3cIPSecTrafficRemoteType
The type of remote peer. Possible values are: a single
IP address, or an IP address range, or an IP subnet.
H3cTrafficType
Textual Convention: H3cTrafficType Enumeration
Type Values:
1ipv4Addr
4ipv4AddrSubnet
5ipv6Addr
6ipv6AddrSubnet
7ipv4AddrRange
8ipv6AddrRange
.1.3.6.1.4.1.2011.10.2.7.1.4.1.6
h3cIPSecTrafficRemoteAddr1
The first specification of remote peer's IP address.
If the remote peer type is single IP address, then
this is the value of the IP address. If the remote
peer type is IP subnet, then this is the value
of the subnet. If…
RFC1155-SMIIpAddress
Textual Convention: RFC1155-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.2011.10.2.7.1.4.1.7
h3cIPSecTrafficRemoteAddr2
Single IP address, then this is the value of the IP
address. If the remote peer type is IP subnet,
then this is the value of the subnet mask. If the
remote peer type is IP address range, then this
is the value of ending…
RFC1155-SMIIpAddress
Textual Convention: RFC1155-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.2011.10.2.7.1.4.1.8
h3cIPSecTrafficRemoteProtocol
The protocol number of the remote peer's traffic.
Integer32
Constraints:
range: 0-255
.1.3.6.1.4.1.2011.10.2.7.1.4.1.9
h3cIPSecTrafficRemotePort
The port number of the remote peer's traffic.
Integer32
Constraints:
range: 0-65535
.1.3.6.1.4.1.2011.10.2.7.1.4.1.10