Home/Catalog/ENTERASYS-RADIUS-DYNAMIC-AUTHOR-SERVER-EXT-MIB

ENTERASYS-RADIUS-DYNAMIC-AUTHOR-SERVER-EXT-MIB

AI MIB Summary

The ENTERASYS-RADIUS-DYNAMIC-AUTHOR-SERVER-EXT-MIB extends the standard RADIUS Dynamic Authorization (RFC 5176) capabilities on Enterasys network devices to expose vendor-specific, read-write configuration objects for managing server-side session termination and re-authentication parameters. This module enables secure, SNMPv3-only modification of RADIUS Change-of-Authorization (CoA) and Disconnect-Request (DR) server settings that are absent from the standard RFC 4673 MIB.

This MIB module defines a portion of the SNMP enterprise MIBs under Enterasys Networks' enterprise OID pertaining to the server side of the Remote Access Dialin User Service (RADIUS) Dynamic Authorization protocol (RFC5176). This MIB provides read-write access to configuration objects not provided in the standard RADIUS Dynamic Authorization MIB (RFC4673). However, the write capability must only be supported for SNMPv3, or other SNMP versions with adequately strong security. Security concerns include Object ID verification, source address verification and timeliness verification.
Main OID:
etsysRadiusDynAuthorServerMIB.1.3.6.1.4.1.5624.1.2.80
21
Objects
Active
Status
5
Dependencies

Imported Objects

Objects

21 total
Object Name
etsysRadiusDynAuthorServerMIBThis MIB module defines a portion of the SNMP enterprise MIBs under Enterasys Networks' enterprise OID pertaining to the server side of the Remote Access Dialin User Service (RADIUS) Dynamic Authorization protocol (RFC5176). This MIB provides read-write access to configuration objects not provided in the standard RADIUS Dynamic Authorization MIB (RFC4673). However, the write capability must only be supported for SNMPv3, or other SNMP versions with adequately strong security. Security concerns include Object ID verification, source address verification and timeliness verification.
MODULE-IDENTITY
.1.3.6.1.4.1.5624.1.2.80
etsysRadiusDynAuthorServerMIBObjects
OBJECT IDENTIFIER
.1.3.6.1.4.1.5624.1.2.80.1
etsysRadiusDynAuthorServerEnableThis object indicates whether or not RADIUS Dynamic Authorization is enabled or disabled. This parameter value MUST be maintained across system reboots.rw
Enumeration
.1.3.6.1.4.1.5624.1.2.80.1.1
etsysRadiusDynAuthorServerClientTableThe (conceptual) table listing the RADIUS Accounting servers.
SEQUENCE OF EtsysRadiusDynAuthorServerClientEntry
.1.3.6.1.4.1.5624.1.2.80.1.2
etsysRadiusDynAuthorServerClientEntryAn entry (conceptual row) representing a RADIUS dynamic authorization server with which the server shares a secret. If RADIUS dynamic authorization is not enabled, this table is ignored. All created conceptual rows are non-volatile and as such MUST be maintained upon restart of the agent.
EtsysRadiusDynAuthorServerClientEntry
.1.3.6.1.4.1.5624.1.2.80.1.2.1
etsysRadiusDynAuthorServerClientIndexA number uniquely identifying each conceptual row in the etsysRadiusDynAuthorServerClientTable. In the event of an agent restart, the same value of etsysRadiusDynAuthorServerClientIndex MUST be used to identify each conceptual row in etsysRadiusDynAuthorServerClientTable as was used prior to the restart.
Integer32
.1.3.6.1.4.1.5624.1.2.80.1.2.1.1
etsysRadiusDynAuthorServerClientAddressTypeThe type of Internet address by which the RADIUS Dynamic Authorization Client is reachable.rw
InetAddressType (INET-ADDRESS-MIB)
.1.3.6.1.4.1.5624.1.2.80.1.2.1.2
etsysRadiusDynAuthorServerClientAddressThe Internet address for the RADIUS Dynamic Authorization Client. Note that implementations MUST limit themselves to a single entry in this table per reachable server. The etsysRadiusDynAuthorServerClientAddress may not be empty due to the SIZE restriction. Also the size of a DNS name is limited to 64 characters. This parameter value is maintained across system reboots.rw
InetAddress
.1.3.6.1.4.1.5624.1.2.80.1.2.1.3
etsysRadiusDynAuthorServerClientSecretThis object is the secret shared between the RADIUS Dynamic Authorization client and RADIUS server. This parameter value is maintained across system reboots. While the 'official' MAX-ACCESS for this object is read-create, all implementations MUST return an empty string on a read.rw
OCTET STRING
.1.3.6.1.4.1.5624.1.2.80.1.2.1.4
etsysRadiusDynAuthorServerClientSecretEnteredtrue(1) - Indicates that etsysRadiusDynAuthorServerClientSecret was last set with some value other than the empty string. false(2) - Indicates that etsysRadiusDynAuthorServerClientSecret has never been set, or was last set to the empty string.ro
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.5624.1.2.80.1.2.1.5
etsysRadiusDynAuthorServerClientStatusLets users create and delete RADIUS Dynamic Authorization client entries on systems that support this capability. Rules 1. When creating a RADIUS Dynamic Authorization Client, it is up to the management station to determine a suitable etsysRadiusDynAuthorServerClientIndex. To facilitate interoperability, agents SHOULD not put any restrictions on the etsysRadiusDynAuthorServerClientIndex beyond the obvious ones that it be valid and unused. 2. Before a new row can become 'active', values must be supplied for the columnar objects etsysRadiusDynAuthorServerClientAddress, etsysRadiusDynAuthorServerClientSecret, etsysRadiusDynAuthorServerClientAddress, and etsysRadiusDynAuthorClientServerClientVirtualRouterName. 3. The value of etsysRadiusDynAuthorServerClientStatus must be set to 'notInService' in order to modify a writable object in the same conceptual row. 4. etsysRadiusDynAuthorServerClient entries whose status is 'notReady' or 'notInService' will not be used for Dynamic Authorization.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.5624.1.2.80.1.2.1.6
etsysRadiusDynAuthorClientServerClientAddressTypeThis object specifies how etsysRadiusDynAuthorServerClientAddressType is encoded. Support for all possible enumerations defined by InetAddressType is NOT REQUIRED.rw
InetAddressType (INET-ADDRESS-MIB)
.1.3.6.1.4.1.5624.1.2.80.1.2.1.7
etsysRadiusDynAuthorClientServerClientAddressThe encoded unicast IP address of a local system interface. RADIUS Dynamic Authorization responses will be sent from this address.rw
InetAddress
.1.3.6.1.4.1.5624.1.2.80.1.2.1.8
etsysRadiusDynAuthorClientServerClientVirtualRouterNameThe name of the local system virtual router that traffic sent to this RADIUS Dynamic Authorization server should be associated with. Writing this object with a zero length string clears the virtual router name for this server.rw
OCTET STRING
.1.3.6.1.4.1.5624.1.2.80.1.2.1.9
etsysRadiusDynAuthorServerMIBConformance
OBJECT IDENTIFIER
.1.3.6.1.4.1.5624.1.2.80.2
etsysRadiusDynAuthorServerMIBCompliances
OBJECT IDENTIFIER
.1.3.6.1.4.1.5624.1.2.80.2.1
etsysRadiusDynAuthorServerMIBComplianceThe compliance statement for Dynamic Authorization servers implementing the RADIUS Dynamic Authorization ServerMIB.deprecated
Unknown
.1.3.6.1.4.1.5624.1.2.80.2.1.1
etsysRadiusDynAuthorServerMIBCompliance2The compliance statement for Dynamic Authorization servers implementing the RADIUS Dynamic Authorization ServerMIB.
Unknown
.1.3.6.1.4.1.5624.1.2.80.2.1.2
etsysRadiusDynAuthorServerMIBGroups
OBJECT IDENTIFIER
.1.3.6.1.4.1.5624.1.2.80.2.2
etsysRadiusDynAuthorServerMIBGroupThe basic collection of objects providing a proprietary extension to the standard RADIUS Dynamic Authorization MIB. This MIB provides read-write access to configuration objects not provided in the standard RADIUS Dynamic Authorization MIB (RFC4763). However, the write capability must only be supported for SNMPv3, or other SNMP versions with adequately strong security.deprecated
Unknown
.1.3.6.1.4.1.5624.1.2.80.2.2.1
etsysRadiusDynAuthorServerMIBGroup2The basic collection of objects providing a proprietary extension to the standard RADIUS Dynamic Authorization MIB. This MIB provides read-write access to configuration objects not provided in the standard RADIUS Dynamic Authorization MIB (RFC4763). However, the write capability must only be supported for SNMPv3, or other SNMP versions with adequately strong security.
Unknown
.1.3.6.1.4.1.5624.1.2.80.2.2.2