fsVpnInboundSpi
FS-VPNPOLICY-MIB ·
.1.3.6.1.4.1.2076.143.1.1.1.15
Object
column
r/w
Integer32
This is an arbitrary 32-bit value identifying the security association for this datagram. This also indicates the SPI for the inbound direction. The Security Parameter Index value 0 is reserved to Indicate that 'no security association exists'. The set of Security Parameters Index values In the range 1 through 255 are reserved to the IANA for future use. Any SPI value greater than 255 can be configured. This entity is used only for IPSEC-Manual
Context
- MIB
- FS-VPNPOLICY-MIB
- OID
.1.3.6.1.4.1.2076.143.1.1.1.15- Type
- column
- Access
- readwrite
- Status
- current
- Parent
- fsVpnEntry
- Table
- fsVpnTable
- Siblings
- 42
Syntax
Integer32
Values & Constraints
Object Constraints
range: 256-2147483647
Related Objects
Sibling Objects
| Object | Type | Syntax | OID |
|---|---|---|---|
| fsVpnPolicyName This is the index for accessing Ip Security table entries. | column | OctetString | .1.3.6.1.4.1.10876.101.1.143.1.1.1.1 |
| fsVpnRemoteProtectNetwork This address is used in identifying the
destination network for a given VPN policy. | column | INET-ADDRESS-MIBInetAddress | .1.3.6.1.4.1.10876.101.1.143.1.1.1.10 |
| fsVpnRemoteProtectNetworkPrefixLen The length of the remote protected network prefix. | column | INET-ADDRESS-MIBInetAddressPrefixLength | .1.3.6.1.4.1.10876.101.1.143.1.1.1.11 |
| fsVpnIkeSrcPortRange This object specifies the Source port range for the
Traffic Selectors for IKEv2. | column | OctetString | .1.3.6.1.4.1.10876.101.1.143.1.1.1.12 |
| fsVpnIkeDstPortRange This object specifies the Destination port range for the
Traffic Selectors for IKEv2. | column | OctetString | .1.3.6.1.4.1.10876.101.1.143.1.1.1.13 |
| fsVpnSecurityProtocol Security protocol header used for authentication
(AH) or (ESP). | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.14 |
| fsVpnOutboundSpi This is an arbitrary 32-bit value identifying
the security association for this datagram. This
also indicates the SPI for the outbound direction. The
Security Parameter Index valu… | column | Integer32 | .1.3.6.1.4.1.10876.101.1.143.1.1.1.16 |
| fsVpnMode The supporting security association mode
The security association mode must be configured as
tunnel for a security gateway.
A Host can be configured both
in transport and tunnel … | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.17 |
| fsVpnAuthAlgo The authentication algorithm configured for
the particular security association entry.
Setting the algorithm to hmac-md5 (3),
hmac-sha1(4),xcbcmac(5),hmac-sha-256(12),hmac-sha-384… | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.18 |
| fsVpnAhKey This is the key used for authentication
when the algorithm configured is either
hmac-md5 , hmac-sha1 ,xcbcmac,hmac-sha-256(12),hmac-sha-384(13)
or hmac-sha-512(14).For HmacMd5and … | column | OctetString | .1.3.6.1.4.1.10876.101.1.143.1.1.1.19 |
| fsVpnPolicyType An entity to identify the type of policy | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.2 |
| fsVpnEncrAlgo The algorithm to be used for Encapsulation
Security Payload (ESP) Header. This object is to
be configured only if the Security protocol to be
used is ESP. This entity is used only… | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.20 |
| fsVpnEspKey This is the key used for encryption/decryption
when the algorithm configured is either
descbc,3descbc or aes128,aes192 or aes256.For
3descbc this object is used for configuring th… | column | OctetString | .1.3.6.1.4.1.10876.101.1.143.1.1.1.21 |
| fsVpnAntiReplay The object is used for activating the anti
replay functionality of the security protocols.
This entity is used only for IPSEC-Manual | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.22 |
| fsVpnPolicyFlag The choices that can be applied on
any outbound/inbound datagrams. | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.23 |
| fsVpnProtocol The Proto index value which uniquely identifies
the protocol for which this Selector Table entry
exists.In case of no specific protocol any can be
used whose value is assigned as … | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.24 |
| fsVpnPolicyIntfIndex This is the interface for which the VPN policy is to be applied.
The value zero indicates interface is not configured yet. | column | IF-MIBInterfaceIndexOrZero | .1.3.6.1.4.1.10876.101.1.143.1.1.1.25 |
| fsVpnIkePhase1HashAlgo SHA - Specifies to use Secure Hash Algorithm (SHA) as the hash
algorithm. SHA1 produces 160-bit hash values, SHA256 produces 256-bit
hash values, SHA384 produces 384-bit hash valu… | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.26 |
| fsVpnIkePhase1EncryptionAlgo Specifies which encryption algorithm should be used in Policy
negotiation | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.27 |
| fsVpnIkePhase1DHGroup Diffie-Hellman (DH) is a public key cryptography protocol that enables
two parties to establish a shared secret over unsecured communications
channels. It will be used in Internet… | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.28 |
| fsVpnIkePhase1LocalIdType This is Identity Type for supported Local Node. | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.29 |
| fsVpnPolicyPriority An entity to identify the priority of the Policy | column | Integer32 | .1.3.6.1.4.1.10876.101.1.143.1.1.1.3 |
| fsVpnIkePhase1LocalIdValue This is the value for the supported Local Node type of phase 1 | column | SNMPv2-TCDisplayString | .1.3.6.1.4.1.10876.101.1.143.1.1.1.30 |
| fsVpnIkePhase1PeerIdType This is Peer Identity Type supported for phase 1 of the IKE
negotiation. | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.31 |
| fsVpnIkePhase1PeerIdValue This is the Peer Identity value for the supported peer type of phase 1.
eg. for ipv4 151.100.10.10, for email abc@xyz.com | column | SNMPv2-TCDisplayString | .1.3.6.1.4.1.10876.101.1.143.1.1.1.32 |
| fsVpnIkePhase1LifeTimeType Specifies the IKE life time units. | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.33 |
| fsVpnIkePhase1LifeTime Enter the duration, in fsVpnIkePhase1LifeTimeType, of the IKE security
association (SA), after which the IKE SA expires and is re-negotiated.
if you wish to save se… | column | SNMPv2-SMIInteger32 | .1.3.6.1.4.1.10876.101.1.143.1.1.1.34 |
| fsVpnIkePhase1Mode Specifies the IKE Phase 1 mode, whether main or aggressive. | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.35 |
| fsVpnIkePhase2AuthAlgo Specifies which hash algorithm to be used | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.36 |
| fsVpnIkePhase2EspEncryptionAlgo Specifies which encryption algorithm should be used for ESP | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.37 |
| fsVpnIkePhase2LifeTimeType Specifies the IPSec SA life time type. | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.38 |
| fsVpnIkePhase2LifeTime Specifies the IPsec security association (SA) lifetime in
fsVpnIkePhase2LifeTimeType. The SA is re-negotiated after the time limit
elapses. | column | SNMPv2-SMIInteger32 | .1.3.6.1.4.1.10876.101.1.143.1.1.1.39 |
| fsVpnTunTermAddrType The tunnel termination IP address type. This object support only
ipv4(1), ipv6(2) values. | column | INET-ADDRESS-MIBInetAddressType | .1.3.6.1.4.1.10876.101.1.143.1.1.1.4 |
| fsVpnIkePhase2DHGroup Perfect Forward Secrecy (PFS) generates and uses a unique session key
for each encrypted exchange. The unique session key protects the
exchange from subsequent decryption, even if… | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.40 |
| fsVpnIkeVersion This object is used for configuring the IKE version - IKev1 (1)
or IKEv2 (2) protocol to be used for key negotiation | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.41 |
| fsVpnCertAlgoType This object is used for configuring the Authentication Algorithm -
RSA (1) or DSA (2) to be used for authentication
This object needs to configure as RSA (1) or DSA (1) to configu… | column | Enumeration | .1.3.6.1.4.1.10876.101.1.143.1.1.1.42 |
| fsVpnPolicyRowStatus This object is used to create and delete rows from the fsVpnTable. | column | SNMPv2-TCRowStatus | .1.3.6.1.4.1.10876.101.1.143.1.1.1.43 |
| fsVpnLocalTunTermAddr This address is matched with the
local address in the packet during
authentication of inbound and outbound datagrams. | column | INET-ADDRESS-MIBInetAddress | .1.3.6.1.4.1.10876.101.1.143.1.1.1.5 |
| fsVpnRemoteTunTermAddr This address is matched with the
destination address in the packet during
authentication of inbound and outbound datagrams. | column | INET-ADDRESS-MIBInetAddress | .1.3.6.1.4.1.10876.101.1.143.1.1.1.6 |
| fsVpnProtectNetworkType The local protected network address type. This object support
only ipv4(1), ipv6(2) values. | column | INET-ADDRESS-MIBInetAddressType | .1.3.6.1.4.1.10876.101.1.143.1.1.1.7 |
| fsVpnLocalProtectNetwork This address is used in identifying the source
network for a given VPN policy. | column | INET-ADDRESS-MIBInetAddress | .1.3.6.1.4.1.10876.101.1.143.1.1.1.8 |
| fsVpnLocalProtectNetworkPrefixLen The length of the local protected network prefix. | column | INET-ADDRESS-MIBInetAddressPrefixLength | .1.3.6.1.4.1.10876.101.1.143.1.1.1.9 |