CISCO-IPSEC-MIB

CISCO-IPSEC-MIB Download

MIBs list

The MIB module for modeling Cisco-specific IPsec attributes

IPHost Network Monitor offer an easy way of SNMP monitoring your Cisco Servers, Routers, Switches, Bridges, Firewalls, Repeaters.

OID list for CISCO-IPSEC-MIB

cipsIsakmpEnabled
The value of this object is TRUE if ISAKMP has been enabled on the managed entity. Otherise the value of this object is FALSE.
cipsIsakmpIdentity
The value of this object is shows the type of identity used by the managed entity in ISAKMP negotiations with another peer.
cipsIsakmpKeepaliveInterval
The value of this object is time interval in seconds between successive ISAKMP keepalive heartbeats issued to the peers to which IKE tunnels have been setup.
cipsNumIsakmpPolicies
The value of this object is the number of ISAKMP policies that have been configured on the managed entity.
cipsIsakmpPolicyTable
The table containing the list of all ISAKMP policy entries configured by the operator.
cipsIsakmpPolicyEntry
Each entry contains the attributes associated with a single ISAKMP Policy entry.
cipsIsakmpPolPriority
The priotity of this ISAKMP Policy entry. This is also the index of this table.
cipsIsakmpPolEncr
The encryption transform specified by this ISAKMP policy specification. The Internet Key Exchange (IKE) tunnels setup using this policy item would use the specified encryption transform to protect the ISAKMP PDUs.
cipsIsakmpPolHash
The hash transform specified by this ISAKMP policy specification. The IKE tunnels setup using this policy item would use the specified hash transform to protect the ISAKMP PDUs.
cipsIsakmpPolAuth
The peer authentication mthod specified by this ISAKMP policy specification. If this policy entity is selected for negotiation with a peer, the local entity would authenticate the peer using the method specified by this object.
cipsIsakmpPolGroup
This object specifies the Oakley group used for Diffie Hellman exchange in the Main Mode. If this policy item is selected to negotiate Main Mode with an IKE peer, the local entity chooses the group specified by this object to perform Diffie Hellman exchan ...
cipsIsakmpPolLifetime
This object specifies the lifetime in seconds of the IKE tunnels generated using this policy specification.
cipsSALifetime
The default lifetime (in seconds) assigned to an SA as a global policy (maybe overridden in specific cryptomap definitions).
cipsSALifesize
The default lifesize in KBytes assigned to an SA as a global policy (unless overridden in cryptomap definition)
cipsNumStaticCryptomapSets
The number of Cryptomap Sets that are are fully configured. Statically defined cryptomap sets are ones where the operator has fully specified all the parameters required set up IPSec Virtual Private Networks (VPNs).
cipsNumCETCryptomapSets
The number of static Cryptomap Sets that have at least one CET cryptomap element as a member of the set.
cipsNumDynamicCryptomapSets
The number of dynamic IPSec Policy templates (called 'dynamic cryptomap templates') configured on the managed entity.
cipsNumTEDCryptomapSets
The number of static Cryptomap Sets that have at least one dynamic cryptomap template bound to them which has the Tunnel Endpoint Discovery (TED) enabled.
cipsNumTEDProbesReceived
The number of TED probes that were received by this managed entity since bootup. Not affected by any CLI operation.
cipsNumTEDProbesSent
The number of TED probes that were dispatched by all the dynamic cryptomaps in this managed entity since bootup. Not affected by any CLI operation.
cipsNumTEDFailures
The number of TED probes that were dispatched by the local entity and that failed to locate crypto endpoint. Not affected by any CLI operation.
cipsMaxSAs
The maximum number of IPsec Security Associations that can be established on this managed entity. If no theoretical limit exists, this returns value 0. Not affected by any CLI operation.
cips3DesCapable
The value of this object is TRUE if the managed entity has the hardware nad software features to support 3DES encryption algorithm. Not affected by any CLI operation.
cipsStaticCryptomapSetTable
The table containing the list of all cryptomap sets that are fully specified and are not wild-carded. The operator may include different types of cryptomaps in such a set - manual, CET, ISAKMP or dynamic.
cipsStaticCryptomapSetEntry
Each entry contains the attributes associated with a single static cryptomap set.
cipsStaticCryptomapSetName
The index of the static cryptomap table. The value of the string is the name string assigned by the operator in defining the cryptomap set.
cipsStaticCryptomapSetSize
The total number of cryptomap entries contained in this cryptomap set. ::= { cipsStaticCryptomapSetEntry 2 } SYNTAX Gauge32 MAX-ACCESS read-only STATUS current DESCRIPTION The number of cryptomaps associated with this cryptomap set that use ISAKMP protoco ...
cipsStaticCryptomapSetNumManual
The number of cryptomaps associated with this cryptomap set that require the operator to manually setup the keys and SPIs.
cipsStaticCryptomapSetNumCET
The number of cryptomaps of type 'ipsec-cisco' associated with this cryptomap set. Such cryptomap elements implement Cisco Encryption Technology based Virtual Private Networks.
cipsStaticCryptomapSetNumDynamic
The number of dynamic cryptomap templates linked to this cryptomap set.
cipsStaticCryptomapSetNumDisc
The number of dynamic cryptomap templates linked to this cryptomap set that have Tunnel Endpoint Discovery (TED) enabled.
cipsStaticCryptomapSetNumSAs
The number of and IPsec Security Associations that are active and were setup using this cryptomap.
cipsDynamicCryptomapSetTable
The table containing the list of all dynamic cryptomaps that use IKE, defined on the managed entity.
cipsDynamicCryptomapSetEntry
Each entry contains the attributes associated with a single dynamic cryptomap template.
cipsDynamicCryptomapSetName
The index of the dynamic cryptomap table. The value of the string is the one assigned by the operator in defining the cryptomap set.
cipsDynamicCryptomapSetSize
The number of cryptomap entries in this cryptomap.
cipsDynamicCryptomapSetNumAssoc
The number of static cryptomap sets with which this dynamic cryptomap is associated.
cipsStaticCryptomapTable
The table ilisting the member cryptomaps of the cryptomap sets that are configured on the managed entity.
cipsStaticCryptomapEntry
Each entry contains the attributes associated with a single static (fully specified) cryptomap entry. This table does not include the members of dynamic cryptomap sets that may be linked with the parent static cryptomap set.
cipsStaticCryptomapPriority
The priority of the cryptomap entry in the cryptomap set. This is the second index component of this table.
cipsStaticCryptomapType
The type of the cryptomap entry. This can be an ISAKMP cryptomap, CET or manual. Dynamic cryptomaps are not counted in this table.
cipsStaticCryptomapDescr
The description string entered by the operatoir while creating this cryptomap. The string generally identifies a description and the purpose of this policy.
cipsStaticCryptomapPeer
The IP address of the current peer associated with this IPSec policy item. Traffic that is protected by this cryptomap is protected by a tunnel that terminates at the device whose IP address is specified by this object.
cipsStaticCryptomapNumPeers
The number of peers associated with this cryptomap entry. The peers other than the one identified by 'cipsStaticCryptomapPeer' are backup peers. Manual cryptomaps may have only one peer.
cipsStaticCryptomapPfs
This object identifies if the tunnels instantiated due to this policy item should use Perfect Forward Secrecy (PFS) and if so, what group of Oakley they should use.
cipsStaticCryptomapLifetime
This object identifies the lifetime of the IPSec Security Associations (SA) created using this IPSec policy entry. If this value is zero, the lifetime assumes the value specified by the global lifetime parameter.
cipsStaticCryptomapLifesize
This object identifies the lifesize (maximum traffic in bytes that may be carried) of the IPSec SAs created using this IPSec policy entry. If this value is zero, the lifetime assumes the value specified by the global lifesize parameter.
cipsStaticCryptomapLevelHost
This object identifies the granularity of the IPSec SAs created using this IPSec policy entry. If this value is TRUE, distinct SA bundles are created for distinct hosts at the end of the application traffic.
cipsCryptomapSetIfTable
The table lists the binding of cryptomap sets to the interfaces of the managed entity.
cipsCryptomapSetIfEntry
Each entry contains the record of the association between an interface and a cryptomap set (static) that is defined on the managed entity. Note that the cryptomap set identified in this binding must static. Dynamic cryptomaps cannot be bound to interfaces ...
cipsCryptomapSetIfVirtual
The value of this object identifies if the interface to which the cryptomap set is attached is a tunnel (such as a GRE or PPTP tunnel).
cipsCryptomapSetIfStatus
This object identifies the status of the binding of the specified cryptomap set with the specified interface. The value when queried is always 'attached'. When set to 'detached', the cryptomap set if detached from the specified interface. The effect of th ...
cipsCntlIsakmpPolicyAdded
This object defines the administrative state of sending the IOS IPsec ISAKMP Policy Add trap.
cipsCntlIsakmpPolicyDeleted
This object defines the administrative state of sending the IOS IPsec ISAKMP Policy Delete trap.
cipsCntlCryptomapAdded
This object defines the administrative state of sending the IOS IPsec Cryptomap Add trap.
cipsCntlCryptomapDeleted
This object defines the administrative state of sending the IOS IPsec Cryptomap Delete trap.
cipsCntlCryptomapSetAttached
This object defines the administrative state of sending the IOS IPsec trap that is issued when a cryptomap set is attached to an interface.
cipsCntlCryptomapSetDetached
This object defines the administrative state of sending the IOS IPsec trap that is issued when a cryptomap set is detached from an interface. to which it was earlier bound.
cipsCntlTooManySAs
This object defines the administrative state of sending the IOS IPsec trap that is issued when the number of SAs crosses the maximum number of SAs that may be supported on the managed entity.
cipsMIBConfIsakmpGroup
A collection of objects providing Global ISAKMP policy monitoring capability to a Cisco IPsec capable VPN router.
cipsMIBConfIPSecGlobalsGroup
A collection of objects providing Global IPSec policy monitoring capability to a Cisco IPsec capable VPN router.
cipsMIBConfCapacityGroup
A collection of objects providing IPsec System Capacity monitoring capability to a Cisco IPsec capable VPN router.
cipsMIBStaticCryptomapGroup
A collection of objects instrumenting the properties of the Static (fully specified) Cryptomap Sets on an IPsec-capable IOS router.
cipsMIBManualCryptomapGroup
A collection of objects instrumenting the properties of the Manual Cryptomap entries on a Cisco IPsec capable IOS router.
cipsMIBDynamicCryptomapGroup
A collection of objects instrumenting the properties of the Dynamic Cryptomap group on a Cisco IPsec capable IOS router.
cipsMIBMandatoryNotifCntlGroup
A collection of objects providing IPsec Notification capability to a IPsec-capable IOS router. It is mandatory to implement this set of objects pertaining to IOS notifications about IPSec activity.

Download IPHost Network Monitor (500 monitors for 30 days, 50 monitors free forever) to start monitoring network devices right now.

MIBs list