Home/Catalog/CISCO-WIRELESS-P2P-BPI-MIB

CISCO-WIRELESS-P2P-BPI-MIB

AI MIB Summary

The CISCO-WIRELESS-P2P-BPI-MIB monitors and manages Baseline Privacy Interface (BPI) security parameters, including encryption keys and session states, specifically for Cisco wireless point-to-point radio cards. It provides visibility into the cryptographic handshake and privacy status of MCNS-compliant links to ensure secure data transmission between paired radio units.

This is the MIB Module for the Baseline Privacy Interface (BPI) at Point to Point Wireless Radio Card. This is a specialization on the MCNS docsBpiMib for Cisco Wireless point to point communication links.
Main OID:
ciscoWirelessP2pBpiMIB.1.3.6.1.4.1.9.9.135
64
Objects
Active
Status
5
Dependencies

Imported Objects

Objects

64 total
Object Name
ciscoWirelessP2pBpiMIBThis is the MIB Module for the Baseline Privacy Interface (BPI) at Point to Point Wireless Radio Card. This is a specialization on the MCNS docsBpiMib for Cisco Wireless point to point communication links.
MODULE-IDENTITY
.1.3.6.1.4.1.9.9.135
cwrBpiMIBObjects
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.135.1
cwrBpiRsObjects
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.135.1.1
cwrBpiRsBaseTableDescribes the basic and authorization-related Baseline Privacy attributes of each Slave Radio interface.
SEQUENCE OF CwrBpiRsBaseEntry
.1.3.6.1.4.1.9.9.135.1.1.1
cwrBpiRsBaseEntryAn entry containing objects describing attributes of one Slave Radio interface. An entry in this table exists for each ifEntry with an ifType of ciscoWirelessP2P.
CwrBpiRsBaseEntry
.1.3.6.1.4.1.9.9.135.1.1.1.1
cwrBpiRsPrivacyEnableThis object identifies whether the Slave Radio is provisioned to use Encryption or not.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.9.9.135.1.1.1.1.1
cwrBpiRsPublicKeyPublic key of the Radio Slave encoded as an ASN.1 SubjectPublicKeyInfo object as defined in the RSA Encryption Standard (PKCS #1) [RSA1].ro
OCTET STRING
.1.3.6.1.4.1.9.9.135.1.1.1.1.2
cwrBpiRsAuthStateThe state of the Radio Slave authorization FSM. The start state indicates that FSM is in its initial state.ro
Enumeration
.1.3.6.1.4.1.9.9.135.1.1.1.1.3
cwrBpiRsAuthKeySequenceNumberThe authorization key sequence number for this FSM.ro
INTEGER
.1.3.6.1.4.1.9.9.135.1.1.1.1.4
cwrBpiRsAuthExpiresThe number of seconds left before the current authorization for this FSM expires. If the Radio Slave does not have an active authorization, then this value is 0.ro
TimeInterval (SNMPv2-TC)
.1.3.6.1.4.1.9.9.135.1.1.1.1.5
cwrBpiRsAuthResetSetting this object to TRUE generates a Reauthorize event in the authorization FSM, as described in section 4.1.2.3.4 of the Baseline Privacy Interface Specification. Reading this object always returns FALSE.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.9.9.135.1.1.1.1.6
cwrBpiRsAuthGraceTimeGrace time for an authorization key. A Radio Slave is expected to start trying to get a new authorization key beginning AuthGraceTime seconds before the authorization key actually expires. The value of this object cannot be changed while the authorization state machine is running. NOTE: When installed in the field, this variable should NEVER be set below 300 which is the lower limit by standard. This variable accepts a wider range to facilitate testing.rw
INTEGER
.1.3.6.1.4.1.9.9.135.1.1.1.1.7
cwrBpiRsTEKGraceTimeGrace time for a TEK. A Radio Slave is expected to start trying to get a new TEK beginning TEKGraceTime seconds before the TEK actually expires. The value of this object cannot be changed while the authorization state machine is running. NOTE: When installed in the field, this variable should NEVER be set below 300 which is the lower limit by standard. This variable accepts a wider range to facilitate testing.rw
INTEGER
.1.3.6.1.4.1.9.9.135.1.1.1.1.8
cwrBpiRsAuthWaitTimeoutAuthorize Wait Timeout. The value of this object cannot be changed while the authorization state machine is running.rw
INTEGER
.1.3.6.1.4.1.9.9.135.1.1.1.1.9
cwrBpiRsReauthWaitTimeoutReauthorize Wait Timeout in seconds. The value of this object cannot be changed while the authorization state machine is running.rw
INTEGER
.1.3.6.1.4.1.9.9.135.1.1.1.1.10
cwrBpiRsOpWaitTimeoutOperational Wait Timeout in seconds. The value of this object cannot be changed while the authorization state machine is running.rw
INTEGER
.1.3.6.1.4.1.9.9.135.1.1.1.1.11
cwrBpiRsRekeyWaitTimeoutRekey Wait Timeout in seconds. The value of this object cannot be changed while the authorization state machine is running.rw
INTEGER
.1.3.6.1.4.1.9.9.135.1.1.1.1.12
cwrBpiRsAuthRequestsCount of times the Radio Slave has transmitted an Authorization Request message.ro
Counter32
.1.3.6.1.4.1.9.9.135.1.1.1.1.13
cwrBpiRsAuthRepliesCount of times the Radio Slave has received an Authorization Reply message.ro
Counter32
.1.3.6.1.4.1.9.9.135.1.1.1.1.14
cwrBpiRsAuthInvalidsCount of times the Radio Slave has received an Authorization Invalid message.ro
Counter32
.1.3.6.1.4.1.9.9.135.1.1.1.1.15
cwrBpiRsAuthInvalidErrorCodeError-Code in most recent Authorization Invalid message received by the Radio Slave. On bootup, this has value no-information(0). At all other times, this object reflects the error code receivedro
Enumeration
.1.3.6.1.4.1.9.9.135.1.1.1.1.16
cwrBpiRsAuthInvalidErrorStringDisplay-String in most recent Authorization Invalid message received by the Radio Slave. This is a zero length string if no Authorization Invalid message has been received since reboot.ro
DisplayString (SNMPv2-TC)
.1.3.6.1.4.1.9.9.135.1.1.1.1.17
cwrBpiRsTEKTableDescribes the attributes of each Radio Slave Traffic Encryption Key (TEK) Service.
SEQUENCE OF CwrBpiRsTEKEntry
.1.3.6.1.4.1.9.9.135.1.1.2
cwrBpiRsTEKEntryAn entry containing objects describing the TEK attributes of one instantiated TEK service. There will be one such entry for every Radio Slave of a P2P link.
CwrBpiRsTEKEntry
.1.3.6.1.4.1.9.9.135.1.1.2.1
cwrBpiRsTEKEncryptionNegotiatedThis identifies whether this TEK service is using encryption or not. Encryption may not be in use even though cwrBpiRsPrivacyEnable is provisioned. This is possible if the remote is not configured for privacy or it's not running an encryption capable image.ro
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.9.9.135.1.1.2.1.1
cwrBpiRsTEKStateThe state of the indicated TEK FSM. The start(1) state indicates that FSM is in its initial state.ro
Enumeration
.1.3.6.1.4.1.9.9.135.1.1.2.1.2
cwrBpiRsTEKExpiresOldThe number of seconds left to expire for the oldest active key for this FSM. If this FSM has no active keys then this value will be zero.ro
TimeInterval (SNMPv2-TC)
.1.3.6.1.4.1.9.9.135.1.1.2.1.3
cwrBpiRsTEKExpiresNewThe number of seconds left to expire for the newest active key for this FSM. If this FSM has no active keys then this value will be zero.ro
TimeInterval (SNMPv2-TC)
.1.3.6.1.4.1.9.9.135.1.1.2.1.4
cwrBpiRsTEKKeyRequestsCount of times the this TEK Service has transmitted a Key Request message.ro
Counter32
.1.3.6.1.4.1.9.9.135.1.1.2.1.5
cwrBpiRsTEKKeyRepliesCount of times this TEK Service has received a Key Reply message.ro
Counter32
.1.3.6.1.4.1.9.9.135.1.1.2.1.6
cwrBpiRsTEKInvalidsCount of times this TEK Service has received a TEK Invalid message.ro
Counter32
.1.3.6.1.4.1.9.9.135.1.1.2.1.7
cwrBpiRsTEKAuthPendsCount of times an Authorization Pending (Auth Pend) event occurred in this TEK Serivce FSM.ro
Counter32
.1.3.6.1.4.1.9.9.135.1.1.2.1.8
cwrBpiRsTEKInvalidErrorCodeError-Code in most recent TEK Invalid message received by this TEK service. On bootup, this has value no-information(0). At all other times, this object reflects the error code receivedro
Enumeration
.1.3.6.1.4.1.9.9.135.1.1.2.1.9
cwrBpiRsTEKInvalidErrorStringDisplay-String in most recent TEK Invalid message received by this TEK Service. This is a zero length string if no TEK Invalid message has been received since this TEK Service was started.ro
DisplayString (SNMPv2-TC)
.1.3.6.1.4.1.9.9.135.1.1.2.1.10
cwrBpiRmObjects
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.135.1.2
cwrBpiRmAuthTableDescribes the attributes of each Radio Master authorization association. The Radio master maintains one authorization association with each Baseline Privacy-enabled Radio Slave on each Radio Master MAC interface.
SEQUENCE OF CwrBpiRmAuthEntry
.1.3.6.1.4.1.9.9.135.1.2.1
cwrBpiRmAuthEntryAn entry containing objects describing attributes of one authorization association. The Radio master MUST create one entry per Radio Slave per MAC interface, based on the receipt of an Authorization Request message, and MUST not delete the entry before the Radio Slave authorization permanently expires.
CwrBpiRmAuthEntry
.1.3.6.1.4.1.9.9.135.1.2.1.1
cwrBpiRmAuthPrivacyEnableThis object identifies whether the Master Radio is provisioned to use Encryption or not.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.9.9.135.1.2.1.1.1
cwrBpiRmAuthRsPublicKeyPublic key of the Radio Slave encoded as an ASN.1 SubjectPublicKeyInfo object as defined in the RSA Encryption Standard (PKCS #1) [RSA1]. This is a zero-length string if the Radio Master does not retain the public key.ro
OCTET STRING
.1.3.6.1.4.1.9.9.135.1.2.1.1.2
cwrBpiRmAuthRsKeySequenceNumberThe authorization key sequence number for this Radio Slave.ro
INTEGER
.1.3.6.1.4.1.9.9.135.1.2.1.1.3
cwrBpiRmAuthRsExpiresThe number of seconds left before the current authorization for this Radio Slave expires. If this Radio Slave does not have an active authorization, then the value is zero.ro
TimeInterval (SNMPv2-TC)
.1.3.6.1.4.1.9.9.135.1.2.1.1.4
cwrBpiRmAuthRsLifetimeLifetime, in seconds, the Radio Master assigns to an authorization key for this Radio Slave. NOTE: When installed in the field, this variable should NEVER be set below 86400 which is the lower limit by standard. This variable accepts a wider range to facilitate testing.rw
INTEGER
.1.3.6.1.4.1.9.9.135.1.2.1.1.5
cwrBpiRmAuthRsResetSetting this object to True(1) causes the Radio Master to invalidate the current Radio Slave authorization key, to transmit an Authorization Invalid message to the Radio Slave, and to invalidate the unicast TEK associated with this Radio Slave authorization. Reading this object always returns Falserw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.9.9.135.1.2.1.1.6
cwrBpiRmAuthRsRequestsCount of times the Radio Master has received an Authorization Request message from this Radio Slave.ro
Counter32
.1.3.6.1.4.1.9.9.135.1.2.1.1.7
cwrBpiRmAuthRsRepliesCount of times the Radio master has transmitted an Authorization Reply message to this Radio Slave.ro
Counter32
.1.3.6.1.4.1.9.9.135.1.2.1.1.8
cwrBpiRmAuthRsInvalidsCount of times the Radio Master has transmitted an Authorization Invalid message to this Radio Slave.ro
Counter32
.1.3.6.1.4.1.9.9.135.1.2.1.1.9
cwrBpiRmAuthInvalidErrorCodeError-Code in most recent Authorization Invalid message transmitted to the Radio Slave. On bootup, this has value no-information(0). At all other times, this object reflects the error code transmittedro
Enumeration
.1.3.6.1.4.1.9.9.135.1.2.1.1.10
cwrBpiRmAuthInvalidErrorStringDisplay-String in most recent Authorization Invalid message transmitted to the Radio Slave. This is a zero length string if no Authorization Invalid message has been transmitted to the Radio Slave.ro
DisplayString (SNMPv2-TC)
.1.3.6.1.4.1.9.9.135.1.2.1.1.11
cwrBpiRmTEKTableDescribes the attributes of each Radio Slave Traffic Encryption Key (TEK) association. The Radio master maintains one TEK association for the Radio Slave.
SEQUENCE OF CwrBpiRmTEKEntry
.1.3.6.1.4.1.9.9.135.1.2.2
cwrBpiRmTEKEntryAn entry containing objects describing attributes of one TEK service on a particular Radio Master MAC interface. The Radio Master MUST create one entry per TEK Service per MAC interface, based on the receipt of an Key Request message, and MUST not delete the entry before the Radio Slave authorization for that TEK Service permanently expires.
CwrBpiRmTEKEntry
.1.3.6.1.4.1.9.9.135.1.2.2.1
cwrBpiRmTEKEncryptionNegotiatedThis identifies whether this TEK service is using encryption or not. Encryption may not be in use even though cwrBpiRmAuthPrivacyEnable is provisioned. This is possible if the master is not configured for privacy or it's not running an encryption capable image.ro
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.9.9.135.1.2.2.1.1
cwrBpiRmTEKLifetimeLifetime, in seconds, the Radio Master assigns to keys for this TEK association. NOTE: When installed in the field, this variable should NEVER be set below 1800 which is the lower limit by standard. This variable accepts a wider range to facilitate testing.rw
INTEGER
.1.3.6.1.4.1.9.9.135.1.2.2.1.2
cwrBpiRmTEKExpiresOldThe number of seconds left to expire for the oldest active key for this TEK association. If this TEK associateion has no active key then the value will be zero.ro
TimeInterval (SNMPv2-TC)
.1.3.6.1.4.1.9.9.135.1.2.2.1.3
cwrBpiRmTEKExpiresNewThe number of seconds left to expire for the newest active key for this TEK association. If this TEK association has no active keys then this value will be zero.ro
TimeInterval (SNMPv2-TC)
.1.3.6.1.4.1.9.9.135.1.2.2.1.4
cwrBpiRmTEKResetSetting this object to TRUE causes the Radio Master to invalidate the current active TEK(s) (plural due to key transition periods), and to generate a new TEK. Reading this object always returns FALSE.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.9.9.135.1.2.2.1.5
cwrBpiRmKeyRequestsCount of times the Radio Master has received a Key Request message.ro
Counter32
.1.3.6.1.4.1.9.9.135.1.2.2.1.6
cwrBpiRmKeyRepliesCount of times the Radio master has transmitted a Key Reply message.ro
Counter32
.1.3.6.1.4.1.9.9.135.1.2.2.1.7
cwrBpiRmTEKInvalidsCount of times the Radio Master has transmitted a TEK Invalid message.ro
Counter32
.1.3.6.1.4.1.9.9.135.1.2.2.1.8
cwrBpiRmTEKInvalidErrorCodeError-Code in most recent TEK Invalid message sent in association with this TEK service. On bootup, this has value no-information(0). At all other times, this object reflects the error code receivedro
Enumeration
.1.3.6.1.4.1.9.9.135.1.2.2.1.9
cwrBpiRmTEKInvalidErrorStringDisplay-String in the most recent TEK Invalid message sent in ssociation with this BPI TEK service. This is a zero length string if no TEK Invalid message has been received since reboot.ro
DisplayString (SNMPv2-TC)
.1.3.6.1.4.1.9.9.135.1.2.2.1.10
cwrBpiNotification
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.135.2
cwrBpiConformance
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.135.3
cwrBpiCompliances
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.135.3.1
cwrBpiGroups
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.135.3.2
CISCO-WIRELESS-P2P-BPI-MIB - SNMP MIB Reference | MIBs Explorer