CISCO-CRYPTO-ACCELERATOR-MIB
AI MIB Summary
The CISCO-CRYPTO-ACCELERATOR-MIB enables monitoring of Cisco hardware crypto accelerator modules by tracking their operational status, fault conditions, and performance metrics to correlate hardware throughput with security services such as IPsec, SSL, and SSH. This module facilitates the discovery of installed accelerator hardware and provides granular visibility into activity counters and error states for capacity planning and troubleshooting.
The MIB module for monitoring the identity, status, activity and faults of crypto accelerator (CA) modules used in devices implementing security services.
The purpose of this MIB is to facilitate the following: 1) facilitate the discovery of hardware crypto accelerator modules installed in a security device 2) monitor the activity, faults and performance of hardware crypto accelerators and help the Network Management Station (NMS) correlate the performance of the CA modules with that of the security services (IPsec, SSL, SSH, PKI etc) using the modules.
Main OID:
ciscoCryptoAcceleratorMIB.1.3.6.1.4.1.9.9.467
84
Objects
Active
Status
7
Dependencies
Imported Objects
Objects
84 total| Object Name |
|---|
ciscoCryptoAcceleratorMIBThe MIB module for monitoring the identity, status,
activity and faults of crypto accelerator (CA) modules
used in devices implementing security services.
The purpose of this MIB is to facilitate the following:
1) facilitate the discovery of hardware crypto
accelerator modules installed in a security device
2) monitor the activity, faults and performance of
hardware crypto accelerators and help the Network
Management Station (NMS) correlate the performance
of the CA modules with that of the security services
(IPsec, SSL, SSH, PKI etc) using the modules. MODULE-IDENTITY .1.3.6.1.4.1.9.9.467 |
ciscoCryAcceleratorMIBNotifs OBJECT IDENTIFIER .1.3.6.1.4.1.9.9.467.0 |
ciscoCryAccelInsertedA crypto accelerator module has been inserted into the
managed device. NOTIFICATION-TYPE .1.3.6.1.4.1.9.9.467.0.1 |
ciscoCryAccelRemovedA crypto accelerator module has been removed from the
managed device. NOTIFICATION-TYPE .1.3.6.1.4.1.9.9.467.0.2 |
ciscoCryAccelOperationalA crypto accelerator module has become operational. NOTIFICATION-TYPE .1.3.6.1.4.1.9.9.467.0.3 |
ciscoCryAccelDisabledA crypto accelerator module has become non-operational. NOTIFICATION-TYPE .1.3.6.1.4.1.9.9.467.0.4 |
ciscoCryAccleratorMIBConform OBJECT IDENTIFIER .1.3.6.1.4.1.9.9.467.2 |
ciscoCryAccelMIBCompliances OBJECT IDENTIFIER .1.3.6.1.4.1.9.9.467.2.1 |
ciscoCryAccelMIBGroups OBJECT IDENTIFIER .1.3.6.1.4.1.9.9.467.2.2 |
ccaCapability OBJECT IDENTIFIER .ciscoCryAcceleratorMIBObjects.1 |
ccaSupportsHwCryptoThis MIB object assumes the value of True if the
managed device is capable of including hardware crypto
accelerator.ro TruthValue (SNMPv2-TC) .ciscoCryAcceleratorMIBObjects.1.1 |
ccaSupportsModularHwCryptoThis MIB object assumes the value of True if the
managed device supports field removable hardware
crypto accelerators.ro TruthValue (SNMPv2-TC) .ciscoCryAcceleratorMIBObjects.1.2 |
ccaMaxAcceleratorsThe maximum number of hardware crypto accelerators
which may be simultaneously operational in this device.
If the managed device can support only software
encryption, the value of this MIB object should be set
to zero.
If there is not set limit on the maximum number of
crypto accelerator modules which the managed device
can support, the agent should return a value of '-1'
for this MIB variable.ro Integer32 (-1..50) .ciscoCryAcceleratorMIBObjects.1.3 |
ccaMaxCryptoThroughputThe maximum crypto throughput that may be supported
by the managed device with the current number of active
crypto accelerators.
If this value cannot be determined, the agent should
return a value of 0.ro Unsigned32 UNITS "megabits per second" .ciscoCryAcceleratorMIBObjects.1.4 |
ccaMaxCryptoConnectionsThe maximum number of VPN flows (connections) the managed
device can support with the current number of active
crypto accelerators.
If this value cannot be determined, the agent should
return a value of 0.ro Unsigned32 .ciscoCryAcceleratorMIBObjects.1.5 |
ccaActivity OBJECT IDENTIFIER .ciscoCryAcceleratorMIBObjects.2 |
ccaGlobalStats OBJECT IDENTIFIER .ciscoCryAcceleratorMIBObjects.2.1 |
ccaGlobalNumActiveAcceleratorsThe number of crypto accelerators which are in state
'active'.ro CAModuleCount .ciscoCryAcceleratorMIBObjects.2.1.1 |
ccaGlobalNumNonOperAcceleratorsThe number of crypto accelerators which are in a state
other than 'active'.ro CAModuleCount .ciscoCryAcceleratorMIBObjects.2.1.2 |
ccaGlobalInOctetsThe total number of octets input to all the crypto
accelerators installed in the device.
The value is cumulative from last reboot of the
managed entity.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.1.3 |
ccaGlobalOutOctetsThe total number of octets output by all the crypto
accelerators installed in the device.
The value is cumulative from last reboot of the
managed entity.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.1.4 |
ccaGlobalInPktsThe total number of packets input to all the crypto
accelerators installed in the device.
The value is cumulative from last reboot of the
managed entity.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.1.5 |
ccaGlobalOutPktsThe total number of packets output by all the crypto
accelerators installed in the device.
The value is cumulative from last reboot of the
managed entity.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.1.6 |
ccaGlobalOutErrPktsThe total number of packets output by all the crypto
accelerators installed in the device which were found
to be generated with errors (checksum errors, other
errors).
The value is cumulative from last reboot of the
managed entity.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.1.7 |
ccaAcceleratorTableThe crypto accelerator table. There is one entry
in this table for each crypto accelerator installed
in the managed device. SEQUENCE OF CcaAcceleratorEntry .ciscoCryAcceleratorMIBObjects.2.2 |
ccaAcceleratorEntryEach entry contains the attributes and statistics
of a crypto accelerator module installed on the managed
device. CcaAcceleratorEntry .ciscoCryAcceleratorMIBObjects.2.2.1 |
ccaAcclIndexThe index uniquely identifying a specific crypto
accelerator. Unsigned32 .ciscoCryAcceleratorMIBObjects.2.2.1.1 |
ccaAcclEntPhysicalIndexThe value of entPhysicalIndex of the module
corresponding to this conceptual row or zero,
if the module is not an entity listed in
'entPhysicalTable' of rfc2737.ro EntPhysicalIndexOrZero (CISCO-TC) .ciscoCryAcceleratorMIBObjects.2.2.1.2 |
ccaAcclStatusThe state of the crypto accelerator corresponding
to this row.ro ModuleOperType .ciscoCryAcceleratorMIBObjects.2.2.1.3 |
ccaAcclTypeThe type of the crypto accelerator corresponding to
this row.ro CAModuleType .ciscoCryAcceleratorMIBObjects.2.2.1.4 |
ccaAcclVersionThe version string of the firmware of the crypto
accelerator corresponding to this row.ro SnmpAdminString (SNMP-FRAMEWORK-MIB) .ciscoCryAcceleratorMIBObjects.2.2.1.5 |
ccaAcclSlotThe slot number of the crypto accelerator
corresponding to this row.ro Unsigned32 .ciscoCryAcceleratorMIBObjects.2.2.1.6 |
ccaAcclActiveTimeThe number of seconds elapsed since the crypto
accelerator corresponding to this row transitioned
into the 'active' state.ro TimeTicks UNITS "seconds" .ciscoCryAcceleratorMIBObjects.2.2.1.7 |
ccaAcclInPktsThe number of packets input to this module for
processing since the last reboot of the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.8 |
ccaAcclOutPktsThe number of packets output by this module after
processing, since last reboot of the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.9 |
ccaAcclOutBadPktsThe number of packets output by this module after
processing which had crypto errors, since last reboot
of the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.10 |
ccaAcclInOctetsThe number of octets input to this module for
processing since last reboot of the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.11 |
ccaAcclOutOctetsThe number of octets output by this module after
processing since last reboot of the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.12 |
ccaAcclHashOutboundPktsThe number of packets output by this module which
were prepared for hash validation since the last
reboot of the device.
Hash validation is a cryptographic operation used
to verify the integrity of a block of data received
from a trusted source.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.13 |
ccaAcclHashOutboundOctetsThe number of octets output by this module which were
prepared for hash validation since the last reboot of
the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.14 |
ccaAcclHashInboundPktsThe number of packets input to this module which
required hash validation since the last reboot of
the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.15 |
ccaAcclHashInboundOctetsThe number of octets input to this module which were
authenticated using hash validation since the last
reboot of the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.16 |
ccaAcclEncryptPktsThe number of packets input to this module which
required encryption since the last reboot of the
device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.17 |
ccaAcclEncryptOctetsThe number of octets input to this module which
required encryption since the last reboot of the
device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.18 |
ccaAcclDecryptPktsThe number of packets input to this module which
required decryption since the last reboot of the
device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.19 |
ccaAcclDecryptOctetsThe number of octets input to this module which
required decryption since the last reboot of the
device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.20 |
ccaAcclTransformsTotalThe number of cryptographic transformations performed
by this crypto accelerator since the last reboot of the
device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.21 |
ccaAcclDropsPktsThe number of packets input to this module which were
dropped prior to processing since the last reboot of
the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.22 |
ccaAcclRandRequestsThe number of requests received by this crypto
accelerator to generate random numbers since the last
reboot of the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.23 |
ccaAcclRandReqFailsThe number of random number requests received by this
module which were not fulfilled, counted since the last
reboot of the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.24 |
ccaAcclDHKeysGeneratedThe number of Diffie Hellman key pairs generated by
this module since the last reboot.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.25 |
ccaAcclDHDerivedSecretKeysThe number of times this module has derived Diffie Hellman
secret keys since the last reboot of the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.26 |
ccaAcclRSAKeysGeneratedThe number of times a new RSA key pair was generated
by this module, counted since the last time this module
assumed 'active' status.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.27 |
ccaAcclRSASigningsThe number of times an RSA Digital Signature has been
generated by this module, counted since the last time
this module assumed 'active' status.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.28 |
ccaAcclRSAVerificationsThe number of times an RSA Digital Signature has
been verified by this module, counted since the last
time this module assumed 'active' status.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.29 |
ccaAcclRSAEncryptPktsThe number of packets input to this module which
required RSA encryption, counted since the last time
this module assumed 'active' status.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.30 |
ccaAcclRSAEncryptOctetsThe number of octets input to this module which
required RSA encryption, counted since the last time
this module assumed 'active' status.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.31 |
ccaAcclRSADecryptPktsThe number of packets input to this module which
required RSA decryption, counted since the last time
this module assumed 'active' status.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.32 |
ccaAcclRSADecryptOctetsThe number of octets input to this module which
required RSA decryption, counted since the last time
this module assumed 'active' status.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.33 |
ccaAcclDSAKeysGeneratedThe number of times DSA key pair has been generated by
this module, counted since the last time this module
assumed 'active' status.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.34 |
ccaAcclDSASigningsThe number of times DSA signature has been generated
by this module, counted since the last time this module
assumed 'active' status.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.35 |
ccaAcclDSAVerificationsThe number of times DSA signature has been verified
by this module, counted since the last time this module
assumed 'active' status.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.36 |
ccaAcclOutboundSSLRecordsThe number of combined outbound hash/encrypt SSL
records processed by this module, counted since the
last time this module assumed 'active' status.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.37 |
ccaAcclInboundSSLRecordsThe number of combined inbound hash/encrypt SSL
records processed by this module, counted since the
last time this module assumed 'active' status.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.2.1.38 |
ccaProtocolActivity OBJECT IDENTIFIER .ciscoCryAcceleratorMIBObjects.2.3 |
ccaProtocolStatsTableThe crypto accelerator statistics catalogued by
security protocol causing the activity. There is only
entry in this table for each security protocol listed
in the textual convention 'CAProtocolType'. SEQUENCE OF CcaProtocolStatsEntry .ciscoCryAcceleratorMIBObjects.2.3.1 |
ccaProtocolStatsEntryEach entry contains the statistics corresponding to
a specific security protocol. CcaProtocolStatsEntry .ciscoCryAcceleratorMIBObjects.2.3.1.1 |
ccaProtIdThe index uniquely identifies the security protocol
for which this row summarizes the statistics. CAProtocolType .ciscoCryAcceleratorMIBObjects.2.3.1.1.1 |
ccaProtPktEncryptsReqsThe number of payload encrypt requests received by
the crypto accelerators from this security protocol,
counted since the last reboot of the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.3.1.1.2 |
ccaProtPktDecryptsReqsThe number of payload decrypt requests received by
the crypto accelerators from this security protocol,
counted since the last reboot of the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.3.1.1.3 |
ccaProtHmacCalcReqsThe number of times keyed HMAC calculation requests
were received by the crypto accelerators due to the
operation of this security protocol, counted since
the last reboot of the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.3.1.1.4 |
ccaProtSaCreateReqsThe number of times requests for creation of
security associations were received by the crypto
accelerators from this security protocol, counted
since the last reboot of the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.3.1.1.5 |
ccaProtSaRekeyReqsThe number of times requests for rekeying of
existing security associations were received by
the crypto accelerators from this security protocol,
counted since the last reboot of the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.3.1.1.6 |
ccaProtSaDeleteReqsThe number of times requests for deletion of
security associations were received by the crypto
accelerators from this security protocol, counted
since the last reboot of the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.3.1.1.7 |
ccaProtPktEncapReqsThe number of times requests for payload
encapsulation were received by the crypto accelerators
from this security protocol, counted since the last
reboot of the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.3.1.1.8 |
ccaProtPktDecapReqsThe number of times requests for payload decapsulation
were received by the crypto accelerators from this
security protocol, counted since the last reboot of
the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.3.1.1.9 |
ccaProtNextPhaseKeyAllocReqsThe number of times requests for allocation of
keys for the next phase of the protocol operation
which were received by the crypto accelerators from
this security protocol, counted since the last reboot
of the device.
As an example, for IKE, this would identify the number
of times key allocation requests for Quick Mode were
received by the crypto accelerator from the IKE protocol
engine.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.3.1.1.10 |
ccaProtRndGenReqsThe number of times requests for generation of
random number(s) were received by the crypto
accelerators from this security protocol, counted
since the last reboot of the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.3.1.1.11 |
ccaProtFailedReqsThe number of times requests received from this
security protocol could not be fulfilled, counted
since the last reboot of the device.ro Counter64 .ciscoCryAcceleratorMIBObjects.2.3.1.1.12 |
ccaAcNotifCntl OBJECT IDENTIFIER .ciscoCryAcceleratorMIBObjects.3 |
ccaNotifCntlAcclInsertedThis variable controls the generation of
'ciscoCryAccelInserted' notification.
When this variable is set to 'true', generation
of the notification is enabled. When this variable
is set to 'false', generation of the notification
is disabled.rw TruthValue (SNMPv2-TC) .ciscoCryAcceleratorMIBObjects.3.1 |
ccaNotifCntlAcclRemovedThis variable controls the generation of
'ciscoCryAccelRemoved' notification.
When this variable is set to 'true', generation of
the notification is enabled. When this variable is
set to 'false', generation of the notification is
disabled.rw TruthValue (SNMPv2-TC) .ciscoCryAcceleratorMIBObjects.3.2 |
ccaNotifCntlAcclOperationalThis variable controls the generation of
'ciscoCryAccelOperational' notification.
When this variable is set to 'true', generation
of the notification is enabled. When this variable
is set to 'false', generation of the notification
is disabled.rw TruthValue (SNMPv2-TC) .ciscoCryAcceleratorMIBObjects.3.3 |
ccaNotifCntlAcclDisabledThis variable controls the generation of
'ciscoCryAccelDisabled' notification.
When this variable is set to 'true', generation of
the notification is enabled. When this variable is
set to 'false', generation of the notification is
disabled.rw TruthValue (SNMPv2-TC) .ciscoCryAcceleratorMIBObjects.3.4 |