Home/Catalog/INTRUSION-DETECTION-SENSOR-ALERT-MIB

INTRUSION-DETECTION-SENSOR-ALERT-MIB

AI MIB Summary

The INTRUSION-DETECTION-SENSOR-ALERT-MIB facilitates the retrieval of real-time intrusion detection system (IDS) alert data, including event timestamps, severity levels, source/destination IP addresses, and protocol signatures, from network sensors via SNMP. This module enables centralized monitoring platforms to correlate security events with network traffic flows for immediate threat analysis and incident response.

The MIB for Intrusion Detection Messages.
Main OID:
idsaMIB.1.3.6.1.2.1.1
33
Objects
Active
Status
6
Dependencies

Imported Objects

Objects

33 total
Object Name
idsaMIBThe MIB for Intrusion Detection Messages.
MODULE-IDENTITY
.1.3.6.1.2.1.1
idsaSensorObjectsThis is the base object for the objects used in the notifications.
OBJECT IDENTIFIER
.1.3.6.1.2.1.1.1
idsaSensorIDAn identifier to uniquely identify the Analyzer in the domain.ro
SnmpAdminString (SNMP-FRAMEWORK-MIB)
.1.3.6.1.2.1.1.1.1
idsaSensorDescriptionA short description of the Sensor.ro
SnmpAdminString (SNMP-FRAMEWORK-MIB)
.1.3.6.1.2.1.1.1.2
idsaSensorProductIDA reference to MIB definitions specific to the analyzer generating the message. If this information is not present, its value should be set to the OBJECT IDENTIFIER { 0 0 }, which is a syntatically valid object identifier.ro
SnmpAdminString (SNMP-FRAMEWORK-MIB)
.1.3.6.1.2.1.1.1.3
idsaSensorAddressTypeThe type of the address which follows.ro
InetAddressType (INET-ADDRESS-MIB)
.1.3.6.1.2.1.1.1.4
idsaSensorAddressThe Internet address of the sensor.ro
InetAddress (INET-ADDRESS-MIB)
.1.3.6.1.2.1.1.1.5
idsaSensorManufacturerthe Manufacturer of the sensor that detected the event.ro
SnmpAdminString (SNMP-FRAMEWORK-MIB)
.1.3.6.1.2.1.1.1.6
idsaSensorProductNamethe name of the product that detected the event.ro
SnmpAdminString (SNMP-FRAMEWORK-MIB)
.1.3.6.1.2.1.1.1.7
idsaSensorVersionthe version number of the sensor that detected the event.ro
SnmpAdminString (SNMP-FRAMEWORK-MIB)
.1.3.6.1.2.1.1.1.8
idsaSensorLocationthe location of the tool that detected the event.ro
SnmpAdminString (SNMP-FRAMEWORK-MIB)
.1.3.6.1.2.1.1.1.9
idsaAlertsThis is the base object for the subtree of objects defining the alerts.
OBJECT IDENTIFIER
.1.3.6.1.2.1.1.2
idsaAlertTableEach row of this table contains information about an alert indexed by idsaAlertID.
SEQUENCE OF IdsaAlertEntry
.1.3.6.1.2.1.1.2.1
idsaAlertEntryEntry containing information pertaining to an alert.
IdsaAlertEntry
.1.3.6.1.2.1.1.2.1.1
idsaAlertIDThe AlertID uniquely identifies each alert generated by the sensor.ro
INTEGER
.1.3.6.1.2.1.1.2.1.1.1
idsaAlertLocalAddressTypeThe type of the address which follows.ro
InetAddressType (INET-ADDRESS-MIB)
.1.3.6.1.2.1.1.2.1.1.2
idsaAlertLocalAddressThe Internet address associated with the alert .ro
InetAddress (INET-ADDRESS-MIB)
.1.3.6.1.2.1.1.2.1.1.3
idsaAlertInterfaceIndexThe ifIndex of the interface on which the event was detected by the sensor.ro
INTEGER
.1.3.6.1.2.1.1.2.1.1.4
idsaAlertTimeStampThe local date and time when this alert was generated.ro
DateAndTime (SNMPv2-TC)
.1.3.6.1.2.1.1.2.1.1.5
idsaAlertActionsTakenThe list of automatic actions taken by the sensorro
SnmpAdminString (SNMP-FRAMEWORK-MIB)
.1.3.6.1.2.1.1.2.1.1.6
idsaAlertAttackNamethe name of the atack, if known. If not known this field will be inaccessile.ro
SnmpAdminString (SNMP-FRAMEWORK-MIB)
.1.3.6.1.2.1.1.2.1.1.7
idsaAlertMoreInfoA reference to MIB definitions specific to this message. If this information is not present, its value should be set to the OBJECT IDENTIFIER { 0 0 }, which is a syntatically valid object identifier.ro
OBJECT IDENTIFIER
.1.3.6.1.2.1.1.2.1.1.8
idsaAlertSrcAddressTypeThe type of the Internet address that was the attack source.ro
InetAddressType (INET-ADDRESS-MIB)
.1.3.6.1.2.1.1.2.1.1.9
idsaAlertSrcAddressThe Internet addresses of the entity from which the attack originated, if known.ro
InetAddress (INET-ADDRESS-MIB)
.1.3.6.1.2.1.1.2.1.1.10
idsaAlertDstAddressTypeThe type of the Internet address that was the attack target.ro
InetAddressType (INET-ADDRESS-MIB)
.1.3.6.1.2.1.1.2.1.1.11
idsaAlertDstAddressThe Internet address of the entity to which the attack was destined, if known.ro
InetAddress (INET-ADDRESS-MIB)
.1.3.6.1.2.1.1.2.1.1.12
idsaAlertSrcPortThe port number from where the attack has originatedro
INTEGER
.1.3.6.1.2.1.1.2.1.1.13
idsaAlertDstPortThe port number to which the attack is destinedro
INTEGER
.1.3.6.1.2.1.1.2.1.1.14
idsaConformance
OBJECT IDENTIFIER
.1.3.6.1.2.1.1.3
idsaGroups
OBJECT IDENTIFIER
.1.3.6.1.2.1.1.3.1
idsaAlertGroupA collection of objects for generation and despatch of alerts pertaining to intrusions detected.
Unknown
.1.3.6.1.2.1.1.3.1.1
idsaCompliances
OBJECT IDENTIFIER
.1.3.6.1.2.1.1.3.2
idsaAlertComplianceThe compliance statement for SNMP entities which implement the INTRUSION-DETECTION-SENSOR-ALERT-MIB.
Unknown
.1.3.6.1.2.1.1.3.2.1
INTRUSION-DETECTION-SENSOR-ALERT-MIB - SNMP MIB Reference | MIBs Explorer