Home/Catalog/MCAFEE-ATD-MIB

MCAFEE-ATD-MIB

AI MIB Summary

The MCAFEE-ATD-MIB module enables SNMP-based monitoring and management of McAfee Advanced Threat Defense (ATD) appliances, specifically tracking sandboxing engine status, file analysis queue depths, and threat detection event counters within the enterprise.mcafee-intruder MIB tree.

Top-level infrastructure of the MATD product under enterprise.mcafee-intruvert MIB tree.
Main OID:
mcAfeeATDMIB.1.3.6.1.4.1.8962.4.1
26
Objects
Active
Status
2
Dependencies

Imported Objects

Objects

26 total
Object Name
mcAfeeATDMIBTop-level infrastructure of the MATD product under enterprise.mcafee-intruvert MIB tree.
MODULE-IDENTITY
.1.3.6.1.4.1.8962.4.1
mcAfeeATDMIBObjects
OBJECT IDENTIFIER
.1.3.6.1.4.1.8962.4.1.1
atdCPUUtilizationAvgThis object provides CPU utilization of the system.ro
Integer32
.1.3.6.1.4.1.8962.4.1.1.1
atdMemoryUtilizationThis object provides Memory utilization of the system.ro
Integer32
.1.3.6.1.4.1.8962.4.1.1.2
atdHDDSystemSpaceUtilizationThis object provides HDD system space utilization of the system.ro
Integer32
.1.3.6.1.4.1.8962.4.1.1.3
atdHDDDataSpaceUtilizationThis object provides HDD data space utilization of the system.ro
Integer32
.1.3.6.1.4.1.8962.4.1.1.4
atdInterfaceCountTableThe table to list the received and sent packets over physical interfaces present in the system.
SEQUENCE OF AtdInterfaceCountEntry
.1.3.6.1.4.1.8962.4.1.1.5
atdInterfaceCountEntryAn entry (conceptual row) in the atdInterfaceCountTable.
AtdInterfaceCountEntry
.1.3.6.1.4.1.8962.4.1.1.5.1
atdInterfaceCountIndexThe auxiliary variable used for identifying instances of the columnar objects in the atdInterfaceCountTable.
Integer32
.1.3.6.1.4.1.8962.4.1.1.5.1.1
atdInterfaceCountRxReceived packets on given interface.ro
Integer32
.1.3.6.1.4.1.8962.4.1.1.5.1.2
atdInterfaceCountTxTransmitted packets on given interface.ro
Integer32
.1.3.6.1.4.1.8962.4.1.1.5.1.3
atdFileWaitingThis object provides number of sample in waiting in the system.ro
Integer32
.1.3.6.1.4.1.8962.4.1.1.6
atdFileAnalyzingThis object provides number of sample in analyzing in the system.ro
Integer32
.1.3.6.1.4.1.8962.4.1.1.7
atdSystemTemperatureThis object provides system temperature.ro
Integer32
.1.3.6.1.4.1.8962.4.1.1.8
atdSystemHealthThis object provides system health.Value is 1 if SYSTEM health is GOOD 0 if SYETM health is BADro
Integer32
.1.3.6.1.4.1.8962.4.1.1.9
atdBackupSchedulerStatusThis object provides configured backup scheduler status. Value is 1 if Backup Scheduler Status is OK 0 if Backup Scheduler status is Failedro
Integer32
.1.3.6.1.4.1.8962.4.1.1.10
atdLoadBalancerStatusThis object provides ATD Load Balancer Status. Value is 0 if device is in standalone mode 1 if LB status is DOWN 2 if LB status is UP and RUNNING 3 if Node status is SW VERSION MISMATCH 4 if Primary Node LB services are not UP 5 if SCP failed 6 if VM creation failed 7 if Invalid Statusro
Integer32
.1.3.6.1.4.1.8962.4.1.1.11
atdEmailConnectorStatusThis object provides ATD Email Connector Status.Value is 0 if Email Connector status is DISABLED 1 if EmailConnector status is Enabled and EmailConnector health is GOOD 2 if EmailConnector health is DEGRADED 3 if EmailConnector health is OVERLOADEDro
Integer32
.1.3.6.1.4.1.8962.4.1.1.12
atdEmailGatewayWaitTimeThis object indicates whether system waittime is more than Email Gateway Wait Time threshold waittime. Value is 1 if threshold is reached 0 otherwisero
Integer32
.1.3.6.1.4.1.8962.4.1.1.13
atdMalwareInterfaceStatusThis object provides ATD Malware Interface status. Value is 1 if interface status is UP 0 if interface status is DOWNro
Integer32
.1.3.6.1.4.1.8962.4.1.1.14
atdLicenseStatusThis object provides ATD License Status. Value is 1 if License is VALID 2 if License is INVALID 3 if License is EXPIREDro
Integer32
.1.3.6.1.4.1.8962.4.1.1.15
atdDXLChannelStatusThis object provides DXL status. Value is 1 if DXL is UP 0 if DXL is DOWNro
Integer32
.1.3.6.1.4.1.8962.4.1.1.16
atdSensorStatusThis object provides Sensor status. Value is 0 if Sensor status is INACTIVE 1 if Sensor status is ACTIVE 2 if Sensor status is NOT CONNECTEDro
Integer32
.1.3.6.1.4.1.8962.4.1.1.17
atdTAXIIStatusThis object provides TAXII Status. Value is 0 if TAXII channel health is DOWN 1 if TAXII channel health is UP 2 if TAXII channel health is UNKNOWNro
Integer32
.1.3.6.1.4.1.8962.4.1.1.18
atdHDDVarSpaceUtilizationThis object provides Var disk utilization in %ro
Integer32
.1.3.6.1.4.1.8962.4.1.1.19
atdMalwareDNSStatusThis object provides Malware DNS status. Value is 1 if MALWARE DNS status is good 0 if MALWARE DNS status is badro
Integer32
.1.3.6.1.4.1.8962.4.1.1.20

More MIBs from MUSARUBRA US

Browse all MUSARUBRA USMIBs →
TRELLIX-SENSOR-CONF-MIB

The TRELLIX-SENSOR-CONF-MIB provides read-write management of Trellix IntruShield sensor node configurations, specifically defining parameters for node identification, EMS connectivity, chassis and card topology, network interface assignments, and packet logging or SSL security settings. This module enables administrators to programmatically configure the operational identity, hardware slot mapping, and service parameters of the IntruShield intrusion detection system.

938 objects→
TRELLIX-SENSOR-PERF-MIB

The TRELLIX-SENSOR-PERF-MIB enables SNMP-based monitoring of performance metrics for Trellix Endpoint Security (formerly McAfee) sensors, specifically tracking resource utilization, process health, and system load statistics to facilitate capacity planning and anomaly detection.

309 objects→
TRELLIX-SENSOR-SMI

The TRELLIX-SENSOR-SMI module defines the Structure of Management Information for Trellix endpoint security sensors, enabling SNMP-based monitoring of host security status, agent health, and threat detection events. It facilitates the collection of critical telemetry metrics such as sensor uptime, policy compliance states, and active intrusion prevention alerts for centralized security information and event management (SIEM) integration.

24 objects→
TRELLIX-INTRUVERT-TC

TRELLIX-INTRUVERT-TC defines the standardized textual conventions and data types required for parsing and interpreting management information across Trellix Intruvert security appliances and enterprise software. These conventions ensure consistent representation of security events, system states, and policy metrics within the broader Trellix MIB ecosystem.

22 objects→
MCAFEE-INTRUVERT-SMI

The MCAFEE-INTRUVERT-SMI module defines the Structure of Management Information for monitoring McAfee Intruvert intrusion prevention and detection systems, specifically enabling the retrieval of security event logs, threat signatures, and intrusion alert counters via SNMP. This module facilitates the centralized collection of real-time intrusion detection metrics and system status data for enterprise security operations.

5 objects→
TRELLIX-INTRUVERT-SMI

The TRELLIX-INTRUVERT-SMI module defines the Structure of Management Information for monitoring and managing Trellix Intruvert intrusion prevention and detection systems, enabling the retrieval of security event logs, alert states, and system health metrics via SNMP.

5 objects→