CISCO-WIRELESS-P2P-BPI-MIB
AI MIB Summary
The CISCO-WIRELESS-P2P-BPI-MIB monitors and manages Baseline Privacy Interface (BPI) security parameters, including encryption keys and session states, specifically for Cisco wireless point-to-point radio cards. It provides visibility into the cryptographic handshake and privacy status of MCNS-compliant links to ensure secure data transmission between paired radio units.
This is the MIB Module for the Baseline Privacy Interface (BPI) at Point to Point Wireless Radio Card.
This is a specialization on the MCNS docsBpiMib for Cisco Wireless point to point communication links.
Main OID:
ciscoWirelessP2pBpiMIB.1.3.6.1.4.1.9.9.135
64
Objects
Active
Status
5
Dependencies
Imported Objects
Objects
64 total| Object Name |
|---|
ciscoWirelessP2pBpiMIBThis is the MIB Module for the Baseline Privacy Interface (BPI)
at Point to Point Wireless Radio Card.
This is a specialization on the MCNS docsBpiMib for Cisco Wireless
point to point communication links. MODULE-IDENTITY .1.3.6.1.4.1.9.9.135 |
cwrBpiMIBObjects OBJECT IDENTIFIER .1.3.6.1.4.1.9.9.135.1 |
cwrBpiRsObjects OBJECT IDENTIFIER .1.3.6.1.4.1.9.9.135.1.1 |
cwrBpiRsBaseTableDescribes the basic and authorization-related Baseline Privacy
attributes of each Slave Radio interface. SEQUENCE OF CwrBpiRsBaseEntry .1.3.6.1.4.1.9.9.135.1.1.1 |
cwrBpiRsBaseEntryAn entry containing objects describing attributes of one Slave
Radio interface. An entry in this table exists for each
ifEntry with an ifType of ciscoWirelessP2P. CwrBpiRsBaseEntry .1.3.6.1.4.1.9.9.135.1.1.1.1 |
cwrBpiRsPrivacyEnableThis object identifies whether the Slave Radio is provisioned
to use Encryption or not.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.9.9.135.1.1.1.1.1 |
cwrBpiRsPublicKeyPublic key of the Radio Slave encoded as an ASN.1
SubjectPublicKeyInfo object as defined in the RSA Encryption
Standard (PKCS #1) [RSA1].ro OCTET STRING .1.3.6.1.4.1.9.9.135.1.1.1.1.2 |
cwrBpiRsAuthStateThe state of the Radio Slave authorization FSM.
The start state indicates that FSM is in its initial state.ro Enumeration .1.3.6.1.4.1.9.9.135.1.1.1.1.3 |
cwrBpiRsAuthKeySequenceNumberThe authorization key sequence number for this FSM.ro INTEGER .1.3.6.1.4.1.9.9.135.1.1.1.1.4 |
cwrBpiRsAuthExpiresThe number of seconds left before the current authorization for this
FSM expires. If the Radio Slave does not have an active authorization,
then this value is 0.ro TimeInterval (SNMPv2-TC) .1.3.6.1.4.1.9.9.135.1.1.1.1.5 |
cwrBpiRsAuthResetSetting this object to TRUE generates a Reauthorize event in the
authorization FSM, as described in section 4.1.2.3.4 of the Baseline
Privacy Interface Specification. Reading this object always returns
FALSE.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.9.9.135.1.1.1.1.6 |
cwrBpiRsAuthGraceTimeGrace time for an authorization key. A Radio Slave is expected to
start trying to get a new authorization key beginning AuthGraceTime
seconds before the authorization key actually expires. The value
of this object cannot be changed while the authorization state machine
is running.
NOTE: When installed in the field, this variable should NEVER be set
below 300 which is the lower limit by standard.
This variable accepts a wider range to facilitate testing.rw INTEGER .1.3.6.1.4.1.9.9.135.1.1.1.1.7 |
cwrBpiRsTEKGraceTimeGrace time for a TEK. A Radio Slave is expected to start trying
to get a new TEK beginning TEKGraceTime seconds before the
TEK actually expires. The value of this object cannot be changed
while the authorization state machine is running.
NOTE: When installed in the field, this variable should NEVER be set
below 300 which is the lower limit by standard.
This variable accepts a wider range to facilitate testing.rw INTEGER .1.3.6.1.4.1.9.9.135.1.1.1.1.8 |
cwrBpiRsAuthWaitTimeoutAuthorize Wait Timeout. The value of this object cannot be changed
while the authorization state machine is running.rw INTEGER .1.3.6.1.4.1.9.9.135.1.1.1.1.9 |
cwrBpiRsReauthWaitTimeoutReauthorize Wait Timeout in seconds. The value of this object cannot
be changed while the authorization state machine is running.rw INTEGER .1.3.6.1.4.1.9.9.135.1.1.1.1.10 |
cwrBpiRsOpWaitTimeoutOperational Wait Timeout in seconds. The value of this object cannot
be changed while the authorization state machine is running.rw INTEGER .1.3.6.1.4.1.9.9.135.1.1.1.1.11 |
cwrBpiRsRekeyWaitTimeoutRekey Wait Timeout in seconds. The value of this object cannot be
changed while the authorization state machine is running.rw INTEGER .1.3.6.1.4.1.9.9.135.1.1.1.1.12 |
cwrBpiRsAuthRequestsCount of times the Radio Slave has transmitted an Authorization
Request message.ro Counter32 .1.3.6.1.4.1.9.9.135.1.1.1.1.13 |
cwrBpiRsAuthRepliesCount of times the Radio Slave has received an Authorization
Reply message.ro Counter32 .1.3.6.1.4.1.9.9.135.1.1.1.1.14 |
cwrBpiRsAuthInvalidsCount of times the Radio Slave has received an Authorization
Invalid message.ro Counter32 .1.3.6.1.4.1.9.9.135.1.1.1.1.15 |
cwrBpiRsAuthInvalidErrorCodeError-Code in most recent Authorization Invalid message received by
the Radio Slave. On bootup, this has value no-information(0). At all
other times, this object reflects the error code receivedro Enumeration .1.3.6.1.4.1.9.9.135.1.1.1.1.16 |
cwrBpiRsAuthInvalidErrorStringDisplay-String in most recent Authorization Invalid message received
by the Radio Slave. This is a zero length string if no Authorization
Invalid message has been received since reboot.ro DisplayString (SNMPv2-TC) .1.3.6.1.4.1.9.9.135.1.1.1.1.17 |
cwrBpiRsTEKTableDescribes the attributes of each Radio Slave Traffic Encryption
Key (TEK) Service. SEQUENCE OF CwrBpiRsTEKEntry .1.3.6.1.4.1.9.9.135.1.1.2 |
cwrBpiRsTEKEntryAn entry containing objects describing the TEK attributes of
one instantiated TEK service. There will be one such entry for every
Radio Slave of a P2P link. CwrBpiRsTEKEntry .1.3.6.1.4.1.9.9.135.1.1.2.1 |
cwrBpiRsTEKEncryptionNegotiatedThis identifies whether this TEK service is using encryption or
not. Encryption may not be in use even though cwrBpiRsPrivacyEnable
is provisioned. This is possible if the remote is not configured
for privacy or it's not running an encryption capable image.ro TruthValue (SNMPv2-TC) .1.3.6.1.4.1.9.9.135.1.1.2.1.1 |
cwrBpiRsTEKStateThe state of the indicated TEK FSM. The start(1) state indicates
that FSM is in its initial state.ro Enumeration .1.3.6.1.4.1.9.9.135.1.1.2.1.2 |
cwrBpiRsTEKExpiresOldThe number of seconds left to expire for the oldest active key
for this FSM. If this FSM has no active keys then this value will
be zero.ro TimeInterval (SNMPv2-TC) .1.3.6.1.4.1.9.9.135.1.1.2.1.3 |
cwrBpiRsTEKExpiresNewThe number of seconds left to expire for the newest active key for
this FSM. If this FSM has no active keys then this value will
be zero.ro TimeInterval (SNMPv2-TC) .1.3.6.1.4.1.9.9.135.1.1.2.1.4 |
cwrBpiRsTEKKeyRequestsCount of times the this TEK Service has transmitted a Key Request
message.ro Counter32 .1.3.6.1.4.1.9.9.135.1.1.2.1.5 |
cwrBpiRsTEKKeyRepliesCount of times this TEK Service has received a Key Reply message.ro Counter32 .1.3.6.1.4.1.9.9.135.1.1.2.1.6 |
cwrBpiRsTEKInvalidsCount of times this TEK Service has received a TEK Invalid message.ro Counter32 .1.3.6.1.4.1.9.9.135.1.1.2.1.7 |
cwrBpiRsTEKAuthPendsCount of times an Authorization Pending (Auth Pend) event
occurred in this TEK Serivce FSM.ro Counter32 .1.3.6.1.4.1.9.9.135.1.1.2.1.8 |
cwrBpiRsTEKInvalidErrorCodeError-Code in most recent TEK Invalid message received by this TEK
service. On bootup, this has value no-information(0). At all
other times, this object reflects the error code receivedro Enumeration .1.3.6.1.4.1.9.9.135.1.1.2.1.9 |
cwrBpiRsTEKInvalidErrorStringDisplay-String in most recent TEK Invalid message received by
this TEK Service. This is a zero length string if no TEK Invalid
message has been received since this TEK Service was started.ro DisplayString (SNMPv2-TC) .1.3.6.1.4.1.9.9.135.1.1.2.1.10 |
cwrBpiRmObjects OBJECT IDENTIFIER .1.3.6.1.4.1.9.9.135.1.2 |
cwrBpiRmAuthTableDescribes the attributes of each Radio Master authorization
association. The Radio master maintains one authorization association
with each Baseline Privacy-enabled Radio Slave on each Radio Master
MAC interface. SEQUENCE OF CwrBpiRmAuthEntry .1.3.6.1.4.1.9.9.135.1.2.1 |
cwrBpiRmAuthEntryAn entry containing objects describing attributes of one authorization
association. The Radio master MUST create one entry per Radio Slave per
MAC interface, based on the receipt of an Authorization Request
message, and MUST not delete the entry before the Radio Slave
authorization permanently expires. CwrBpiRmAuthEntry .1.3.6.1.4.1.9.9.135.1.2.1.1 |
cwrBpiRmAuthPrivacyEnableThis object identifies whether the Master Radio is provisioned
to use Encryption or not.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.9.9.135.1.2.1.1.1 |
cwrBpiRmAuthRsPublicKeyPublic key of the Radio Slave encoded as an ASN.1 SubjectPublicKeyInfo
object as defined in the RSA Encryption Standard (PKCS #1) [RSA1].
This is a zero-length string if the Radio Master does not retain the
public key.ro OCTET STRING .1.3.6.1.4.1.9.9.135.1.2.1.1.2 |
cwrBpiRmAuthRsKeySequenceNumberThe authorization key sequence number for this Radio Slave.ro INTEGER .1.3.6.1.4.1.9.9.135.1.2.1.1.3 |
cwrBpiRmAuthRsExpiresThe number of seconds left before the current authorization for
this Radio Slave expires. If this Radio Slave does not have an active
authorization, then the value is zero.ro TimeInterval (SNMPv2-TC) .1.3.6.1.4.1.9.9.135.1.2.1.1.4 |
cwrBpiRmAuthRsLifetimeLifetime, in seconds, the Radio Master assigns to an authorization key
for this Radio Slave.
NOTE: When installed in the field, this variable should NEVER be set
below 86400 which is the lower limit by standard.
This variable accepts a wider range to facilitate testing.rw INTEGER .1.3.6.1.4.1.9.9.135.1.2.1.1.5 |
cwrBpiRmAuthRsResetSetting this object to True(1) causes the Radio Master
to invalidate the current Radio Slave authorization key, to transmit
an Authorization Invalid message to the Radio Slave, and to invalidate
the unicast TEK associated with this Radio Slave authorization.
Reading this object always returns Falserw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.9.9.135.1.2.1.1.6 |
cwrBpiRmAuthRsRequestsCount of times the Radio Master has received an Authorization Request
message from this Radio Slave.ro Counter32 .1.3.6.1.4.1.9.9.135.1.2.1.1.7 |
cwrBpiRmAuthRsRepliesCount of times the Radio master has transmitted an Authorization Reply
message to this Radio Slave.ro Counter32 .1.3.6.1.4.1.9.9.135.1.2.1.1.8 |
cwrBpiRmAuthRsInvalidsCount of times the Radio Master has transmitted an Authorization
Invalid message to this Radio Slave.ro Counter32 .1.3.6.1.4.1.9.9.135.1.2.1.1.9 |
cwrBpiRmAuthInvalidErrorCodeError-Code in most recent Authorization Invalid message transmitted to
the Radio Slave. On bootup, this has value no-information(0). At all
other times, this object reflects the error code transmittedro Enumeration .1.3.6.1.4.1.9.9.135.1.2.1.1.10 |
cwrBpiRmAuthInvalidErrorStringDisplay-String in most recent Authorization Invalid message
transmitted to the Radio Slave. This is a zero length string if no
Authorization Invalid message has been transmitted to the Radio Slave.ro DisplayString (SNMPv2-TC) .1.3.6.1.4.1.9.9.135.1.2.1.1.11 |
cwrBpiRmTEKTableDescribes the attributes of each Radio Slave Traffic Encryption Key
(TEK) association. The Radio master maintains one TEK association
for the Radio Slave. SEQUENCE OF CwrBpiRmTEKEntry .1.3.6.1.4.1.9.9.135.1.2.2 |
cwrBpiRmTEKEntryAn entry containing objects describing attributes of one
TEK service on a particular Radio Master MAC interface. The Radio
Master MUST create one entry per TEK Service per MAC interface,
based on the receipt of an Key Request message, and MUST not
delete the entry before the Radio Slave authorization for that
TEK Service permanently expires. CwrBpiRmTEKEntry .1.3.6.1.4.1.9.9.135.1.2.2.1 |
cwrBpiRmTEKEncryptionNegotiatedThis identifies whether this TEK service is using encryption or
not. Encryption may not be in use even though
cwrBpiRmAuthPrivacyEnable is provisioned.
This is possible if the master is not configured
for privacy or it's not running an encryption capable image.ro TruthValue (SNMPv2-TC) .1.3.6.1.4.1.9.9.135.1.2.2.1.1 |
cwrBpiRmTEKLifetimeLifetime, in seconds, the Radio Master assigns to keys for this TEK
association.
NOTE: When installed in the field, this variable should NEVER be set
below 1800 which is the lower limit by standard.
This variable accepts a wider range to facilitate testing.rw INTEGER .1.3.6.1.4.1.9.9.135.1.2.2.1.2 |
cwrBpiRmTEKExpiresOldThe number of seconds left to expire for the oldest active key for
this TEK association. If this TEK associateion has no active key then
the value will be zero.ro TimeInterval (SNMPv2-TC) .1.3.6.1.4.1.9.9.135.1.2.2.1.3 |
cwrBpiRmTEKExpiresNewThe number of seconds left to expire for the newest active key for
this TEK association. If this TEK association has no active keys
then this value will be zero.ro TimeInterval (SNMPv2-TC) .1.3.6.1.4.1.9.9.135.1.2.2.1.4 |
cwrBpiRmTEKResetSetting this object to TRUE causes the Radio Master to invalidate the
current active TEK(s) (plural due to key transition periods), and
to generate a new TEK. Reading this object always returns FALSE.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.9.9.135.1.2.2.1.5 |
cwrBpiRmKeyRequestsCount of times the Radio Master has received a Key Request message.ro Counter32 .1.3.6.1.4.1.9.9.135.1.2.2.1.6 |
cwrBpiRmKeyRepliesCount of times the Radio master has transmitted a Key Reply message.ro Counter32 .1.3.6.1.4.1.9.9.135.1.2.2.1.7 |
cwrBpiRmTEKInvalidsCount of times the Radio Master has transmitted a TEK Invalid
message.ro Counter32 .1.3.6.1.4.1.9.9.135.1.2.2.1.8 |
cwrBpiRmTEKInvalidErrorCodeError-Code in most recent TEK Invalid message sent in association
with this TEK service. On bootup, this has value no-information(0).
At all other times, this object reflects the error code receivedro Enumeration .1.3.6.1.4.1.9.9.135.1.2.2.1.9 |
cwrBpiRmTEKInvalidErrorStringDisplay-String in the most recent TEK Invalid message sent in
ssociation with this BPI TEK service. This is a zero length
string if no TEK Invalid message has been received since reboot.ro DisplayString (SNMPv2-TC) .1.3.6.1.4.1.9.9.135.1.2.2.1.10 |
cwrBpiNotification OBJECT IDENTIFIER .1.3.6.1.4.1.9.9.135.2 |
cwrBpiConformance OBJECT IDENTIFIER .1.3.6.1.4.1.9.9.135.3 |
cwrBpiCompliances OBJECT IDENTIFIER .1.3.6.1.4.1.9.9.135.3.1 |
cwrBpiGroups OBJECT IDENTIFIER .1.3.6.1.4.1.9.9.135.3.2 |