BEGEMOT-PF-MIB
AI MIB Summary
The BEGEMOT-PF-MIB module provides SNMP access to monitor and manage packet filter (pf) firewall statistics and state data within the Begemot monitoring framework. It exposes critical metrics including packet and byte counters, rule match rates, session table utilization, and interface traffic flows for real-time network security analysis.
The Begemot MIB for the pf packet filter.
Main OID:
begemotPf.1.3.6.1.4.1.12325.1.200
137
Objects
Active
Status
3
Dependencies
Imported Objects
Objects
137 total| Object Name |
|---|
begemotPfThe Begemot MIB for the pf packet filter. MODULE-IDENTITY .1.3.6.1.4.1.12325.1.200 |
begemotPfObjects OBJECT IDENTIFIER .1.3.6.1.4.1.12325.1.200.1 |
pfStatus OBJECT IDENTIFIER .1.3.6.1.4.1.12325.1.200.1.1 |
pfStatusRunningTrue if pf is currently enabled.ro TruthValue (SNMPv2-TC) .1.3.6.1.4.1.12325.1.200.1.1.1 |
pfStatusRuntimeIndicates how long pf has been enabled. If pf is not currently enabled, indicates how long it has been disabled. If pf has not been enabled or disabled since the system was started, the value will be 0.ro TimeTicks UNITS "1/100th of a Second" .1.3.6.1.4.1.12325.1.200.1.1.2 |
pfStatusDebugIndicates the debug level at which pf is running.ro Enumeration .1.3.6.1.4.1.12325.1.200.1.1.3 |
pfStatusHostIdThe (unique) host identifier of the machine running pf.ro OCTET STRING .1.3.6.1.4.1.12325.1.200.1.1.4 |
pfCounter OBJECT IDENTIFIER .1.3.6.1.4.1.12325.1.200.1.2 |
pfCounterMatchNumber of packets that matched a filter rule.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.2.1 |
pfCounterBadOffsetNumber of packets with bad offset.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.2.2 |
pfCounterFragmentNumber of fragmented packets.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.2.3 |
pfCounterShortNumber of short packets.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.2.4 |
pfCounterNormalizeNumber of normalized packets.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.2.5 |
pfCounterMemDropNumber of packets dropped due to memory limitations.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.2.6 |
pfStateTable OBJECT IDENTIFIER .1.3.6.1.4.1.12325.1.200.1.3 |
pfStateTableCountNumber of entries in the state table.ro Unsigned32 .1.3.6.1.4.1.12325.1.200.1.3.1 |
pfStateTableSearchesNumber of searches against the state table.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.3.2 |
pfStateTableInsertsNumber of entries inserted into the state table.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.3.3 |
pfStateTableRemovalsNumber of entries removed from the state table.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.3.4 |
pfSrcNodes OBJECT IDENTIFIER .1.3.6.1.4.1.12325.1.200.1.4 |
pfSrcNodesCountNumber of entries in the source tracking table.ro Unsigned32 .1.3.6.1.4.1.12325.1.200.1.4.1 |
pfSrcNodesSearchesNumber of searches against the source tracking table.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.4.2 |
pfSrcNodesInsertsNumber of entries inserted into the source tracking table.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.4.3 |
pfSrcNodesRemovalsNumber of entries removed from the source tracking table.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.4.4 |
pfLimits OBJECT IDENTIFIER .1.3.6.1.4.1.12325.1.200.1.5 |
pfLimitsStatesMaximum number of 'keep state' rules in the ruleset.ro Unsigned32 .1.3.6.1.4.1.12325.1.200.1.5.1 |
pfLimitsSrcNodesMaximum number of 'sticky-address' or 'source-track' rules in the ruleset.ro Unsigned32 .1.3.6.1.4.1.12325.1.200.1.5.2 |
pfLimitsFragsMaximum number of 'scrub' rules in the ruleset.ro Unsigned32 .1.3.6.1.4.1.12325.1.200.1.5.3 |
pfTimeouts OBJECT IDENTIFIER .1.3.6.1.4.1.12325.1.200.1.6 |
pfTimeoutsTcpFirstState after the first packet in a connection.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.1 |
pfTimeoutsTcpOpeningState before the destination host ever sends a packet.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.2 |
pfTimeoutsTcpEstablishedThe fully established state.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.3 |
pfTimeoutsTcpClosingState after the first FIN has been sent.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.4 |
pfTimeoutsTcpFinWaitState after both FINs have been exchanged and the connection is closed.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.5 |
pfTimeoutsTcpClosedState after one endpoint sends an RST.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.6 |
pfTimeoutsUdpFirstState after the first packet.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.7 |
pfTimeoutsUdpSingleState if the source host sends more than one packet but the destination host has never sent one back.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.8 |
pfTimeoutsUdpMultipleState if both hosts have sent packets.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.9 |
pfTimeoutsIcmpFirstState after the first packet.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.10 |
pfTimeoutsIcmpErrorState after an ICMP error came back in response to an ICMP packet.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.11 |
pfTimeoutsOtherFirstState after the first packet.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.12 |
pfTimeoutsOtherSingleState if the source host sends more than one packet but the destination host has never sent one back.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.13 |
pfTimeoutsOtherMultipleState if both hosts have sent packets.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.14 |
pfTimeoutsFragmentSeconds before an unassembled fragment is expired.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.15 |
pfTimeoutsIntervalInterval between purging expired states and fragments.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.16 |
pfTimeoutsAdaptiveStartWhen the number of state entries exceeds this value, adaptive scaling begins.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.17 |
pfTimeoutsAdaptiveEndWhen reaching this number of state entries, all timeout values become zero, effectively purging all state entries immediately.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.18 |
pfTimeoutsSrcNodeLength of time to retain a source tracking entry after the last state expires.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.6.19 |
pfLogInterface OBJECT IDENTIFIER .1.3.6.1.4.1.12325.1.200.1.7 |
pfLogInterfaceNameThe name of the interface configured with 'set loginterface'. If no interface has been configured, the object will be empty.ro OCTET STRING .1.3.6.1.4.1.12325.1.200.1.7.1 |
pfLogInterfaceIp4BytesInNumber of IPv4 bytes passed in on the loginterface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.7.2 |
pfLogInterfaceIp4BytesOutNumber of IPv4 bytes passed out on the loginterface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.7.3 |
pfLogInterfaceIp4PktsInPassNumber of IPv4 packets passed in on the loginterface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.7.4 |
pfLogInterfaceIp4PktsInDropNumber of IPv4 packets dropped coming in on the loginterface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.7.5 |
pfLogInterfaceIp4PktsOutPassNumber of IPv4 packets passed out on the loginterface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.7.6 |
pfLogInterfaceIp4PktsOutDropNumber of IPv4 packets dropped going out on the loginterface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.7.7 |
pfLogInterfaceIp6BytesInNumber of IPv6 bytes passed in on the loginterface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.7.8 |
pfLogInterfaceIp6BytesOutNumber of IPv6 bytes passed out on the loginterface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.7.9 |
pfLogInterfaceIp6PktsInPassNumber of IPv6 packets passed in on the loginterface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.7.10 |
pfLogInterfaceIp6PktsInDropNumber of IPv6 packets dropped coming in on the loginterface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.7.11 |
pfLogInterfaceIp6PktsOutPassNumber of IPv6 packets passed out on the loginterface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.7.12 |
pfLogInterfaceIp6PktsOutDropNumber of IPv6 packets dropped going out on the loginterface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.7.13 |
pfInterfaces OBJECT IDENTIFIER .1.3.6.1.4.1.12325.1.200.1.8 |
pfInterfacesIfNumberThe number of network interfaces on this system.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.8.1 |
pfInterfacesIfTableTable of network interfaces, indexed on pfInterfacesIfNumber. SEQUENCE OF PfInterfacesIfEntry .1.3.6.1.4.1.12325.1.200.1.8.2 |
pfInterfacesIfEntryAn entry in the pfInterfacesIfTable containing information about a particular network interface in the machine. PfInterfacesIfEntry .1.3.6.1.4.1.12325.1.200.1.8.2.1 |
pfInterfacesIfIndexA unique value, greater than zero, for each interface. Integer32 .1.3.6.1.4.1.12325.1.200.1.8.2.1.1 |
pfInterfacesIfDescrThe name of the interface.ro OCTET STRING .1.3.6.1.4.1.12325.1.200.1.8.2.1.2 |
pfInterfacesIfTypeIndicates whether the interface is a group inteface, an interface instance, or whether it has been removed or destroyed.ro Enumeration .1.3.6.1.4.1.12325.1.200.1.8.2.1.3 |
pfInterfacesIfTZeroTime since statistics were last reset or since the interface was loaded.ro TimeTicks UNITS "1/100th of a Second" .1.3.6.1.4.1.12325.1.200.1.8.2.1.4 |
pfInterfacesIfRefsStateThe number of state and/or source track entries referencing this interface.ro Unsigned32 .1.3.6.1.4.1.12325.1.200.1.8.2.1.5 |
pfInterfacesIfRefsRuleThe number of rules referencing this interface.ro Unsigned32 .1.3.6.1.4.1.12325.1.200.1.8.2.1.6 |
pfInterfacesIf4BytesInPassThe number of IPv4 bytes passed coming in on this interface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.8.2.1.7 |
pfInterfacesIf4BytesInBlockThe number of IPv4 bytes blocked coming in on this interface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.8.2.1.8 |
pfInterfacesIf4BytesOutPassThe number of IPv4 bytes passed going out on this interface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.8.2.1.9 |
pfInterfacesIf4BytesOutBlockThe number of IPv4 bytes blocked going out on this interface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.8.2.1.10 |
pfInterfacesIf4PktsInPassThe number of IPv4 packets passed coming in on this interface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.8.2.1.11 |
pfInterfacesIf4PktsInBlockThe number of IPv4 packets blocked coming in on this interface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.8.2.1.12 |
pfInterfacesIf4PktsOutPassThe number of IPv4 packets passed going out on this interface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.8.2.1.13 |
pfInterfacesIf4PktsOutBlockThe number of IPv4 packets blocked going out on this interface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.8.2.1.14 |
pfInterfacesIf6BytesInPassThe number of IPv6 bytes passed coming in on this interface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.8.2.1.15 |
pfInterfacesIf6BytesInBlockThe number of IPv6 bytes blocked coming in on this interface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.8.2.1.16 |
pfInterfacesIf6BytesOutPassThe number of IPv6 bytes passed going out on this interface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.8.2.1.17 |
pfInterfacesIf6BytesOutBlockThe number of IPv6 bytes blocked going out on this interface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.8.2.1.18 |
pfInterfacesIf6PktsInPassThe number of IPv6 packets passed coming in on this interface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.8.2.1.19 |
pfInterfacesIf6PktsInBlockThe number of IPv6 packets blocked coming in on this interface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.8.2.1.20 |
pfInterfacesIf6PktsOutPassThe number of IPv6 packets passed going out on this interface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.8.2.1.21 |
pfInterfacesIf6PktsOutBlockThe number of IPv6 packets blocked going out on this interface.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.8.2.1.22 |
pfTables OBJECT IDENTIFIER .1.3.6.1.4.1.12325.1.200.1.9 |
pfTablesTblNumberThe number of tables on this system.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.9.1 |
pfTablesTblTableTable of tables, index on pfTablesTblIndex. SEQUENCE OF PfTablesTblEntry .1.3.6.1.4.1.12325.1.200.1.9.2 |
pfTablesTblEntryAny entry in the pfTablesTblTable containing information about a particular table on the system. PfTablesTblEntry .1.3.6.1.4.1.12325.1.200.1.9.2.1 |
pfTablesTblIndexA unique value, greater than zero, for each table. Integer32 .1.3.6.1.4.1.12325.1.200.1.9.2.1.1 |
pfTablesTblDescrThe name of the table.ro OCTET STRING .1.3.6.1.4.1.12325.1.200.1.9.2.1.2 |
pfTablesTblCountThe number of addresses in the table.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.9.2.1.3 |
pfTablesTblTZeroThe time passed since the statistics of this table were last cleared or the time since this table was loaded, whichever is sooner.ro TimeTicks UNITS "1/100th of a Second" .1.3.6.1.4.1.12325.1.200.1.9.2.1.4 |
pfTablesTblRefsAnchorThe number of anchors referencing this table.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.9.2.1.5 |
pfTablesTblRefsRuleThe number of rules referencing this table.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.9.2.1.6 |
pfTablesTblEvalMatchThe number of evaluations returning a match.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.2.1.7 |
pfTablesTblEvalNoMatchThe number of evaluations not returning a match.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.2.1.8 |
pfTablesTblBytesInPassThe number of bytes passed in matching the table.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.2.1.9 |
pfTablesTblBytesInBlockThe number of bytes blocked coming in matching the table.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.2.1.10 |
pfTablesTblBytesInXPassThe number of bytes statefully passed in where the state entry refers to the table, but the table no longer contains the address in question.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.2.1.11 |
pfTablesTblBytesOutPassThe number of bytes passed out matching the table.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.2.1.12 |
pfTablesTblBytesOutBlockThe number of bytes blocked going out matching the table.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.2.1.13 |
pfTablesTblBytesOutXPassThe number of bytes statefully passed out where the state entry refers to the table, but the table no longer contains the address in question.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.2.1.14 |
pfTablesTblPktsInPassThe number of packets passed in matching the table.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.2.1.15 |
pfTablesTblPktsInBlockThe number of packets blocked coming in matching the table.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.2.1.16 |
pfTablesTblPktsInXPassThe number of packets statefully passed in where the state entry refers to the table, but the table no longer contains the address in question.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.2.1.17 |
pfTablesTblPktsOutPassThe number of packets passed out matching the table.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.2.1.18 |
pfTablesTblPktsOutBlockThe number of packets blocked going out matching the table.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.2.1.19 |
pfTablesTblPktsOutXPassThe number of packets statefully passed out where the state entry refers to the table, but the table no longer contains the address in question.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.2.1.20 |
pfTablesAddrTableTable of addresses from every table on the system. SEQUENCE OF PfTablesAddrEntry .1.3.6.1.4.1.12325.1.200.1.9.3 |
pfTablesAddrEntryAn entry in the pfTablesAddrTable containing information about a particular entry in a table. PfTablesAddrEntry .1.3.6.1.4.1.12325.1.200.1.9.3.1 |
pfTablesAddrIndexA unique value, greater than zero, for each address. Integer32 .1.3.6.1.4.1.12325.1.200.1.9.3.1.1 |
pfTablesAddrNetThe IP address of this particular table entry.ro IpAddress .1.3.6.1.4.1.12325.1.200.1.9.3.1.2 |
pfTablesAddrMaskThe CIDR netmask of this particular table entry.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.9.3.1.3 |
pfTablesAddrTZeroThe time passed since this entry's statistics were last cleared, or the time passed since this entry was loaded into the table, whichever is sooner.ro TimeTicks UNITS "1/100th of a Second" .1.3.6.1.4.1.12325.1.200.1.9.3.1.4 |
pfTablesAddrBytesInPassThe number of inbound bytes passed as a result of this entry.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.3.1.5 |
pfTablesAddrBytesInBlockThe number of inbound bytes blocked as a result of this entry.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.3.1.6 |
pfTablesAddrBytesOutPassThe number of outbound bytes passed as a result of this entry.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.3.1.7 |
pfTablesAddrBytesOutBlockThe number of outbound bytes blocked as a result of this entry.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.3.1.8 |
pfTablesAddrPktsInPassThe number of inbound packets passed as a result of this entry.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.3.1.9 |
pfTablesAddrPktsInBlockThe number of inbound packets blocked as a result of this entry.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.3.1.10 |
pfTablesAddrPktsOutPassThe number of outbound packets passed as a result of this entry.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.3.1.11 |
pfTablesAddrPktsOutBlockThe number of outbound packets blocked as a result of this entry.ro Counter64 .1.3.6.1.4.1.12325.1.200.1.9.3.1.12 |
pfAltq OBJECT IDENTIFIER .1.3.6.1.4.1.12325.1.200.1.10 |
pfAltqQueueNumberThe number of queues in the active set.ro Unsigned32 .1.3.6.1.4.1.12325.1.200.1.10.1 |
pfAltqQueueTableTable containing the rules that are active on this system. SEQUENCE OF PfAltqQueueEntry .1.3.6.1.4.1.12325.1.200.1.10.2 |
pfAltqQueueEntryAn entry in the pfAltqQueueTable table. PfAltqQueueEntry .1.3.6.1.4.1.12325.1.200.1.10.2.1 |
pfAltqQueueIndexA unique value, greater than zero, for each queue. Integer32 .1.3.6.1.4.1.12325.1.200.1.10.2.1.1 |
pfAltqQueueDescrThe name of the queue.ro OCTET STRING .1.3.6.1.4.1.12325.1.200.1.10.2.1.2 |
pfAltqQueueParentName of the queue's parent if it has one.ro OCTET STRING .1.3.6.1.4.1.12325.1.200.1.10.2.1.3 |
pfAltqQueueSchedulerScheduler algorithm implemented by this queue.ro Enumeration .1.3.6.1.4.1.12325.1.200.1.10.2.1.4 |
pfAltqQueueBandwidthBandwitch assigned to this queue.ro Unsigned32 .1.3.6.1.4.1.12325.1.200.1.10.2.1.5 |
pfAltqQueuePriorityPriority level of the queue.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.10.2.1.6 |
pfAltqQueueLimitMaximum number of packets in the queue.ro Integer32 .1.3.6.1.4.1.12325.1.200.1.10.2.1.7 |