Home/Catalog/ONEACCESS-IPSEC-MIB

ONEACCESS-IPSEC-MIB

AI MIB Summary

The ONEACCESS-IPSEC-MIB module enables monitoring and management of IPsec tunnel states, security associations, and cryptographic statistics on OneAccess network security appliances. It provides granular visibility into tunnel establishment failures, packet throughput, and encryption algorithm performance for troubleshooting and capacity planning.

Contact updated
Main OID:
oacNatMIBModule.1.3.6.1.4.1.13191.1.100.675
20
Objects
Active
Status
5
Dependencies

Imported Objects

Objects

20 total
Object Name
oacNatMIBModuleContact updated
MODULE-IDENTITY
.1.3.6.1.4.1.13191.1.100.675
oacIPSecNotifications
OBJECT IDENTIFIER
.1.3.6.1.4.1.13191.10.3.1.4.1
oacIPSecSAcreatedAn IPSec SA created notification signifies that the device created an IPSec security association.
NOTIFICATION-TYPE
.1.3.6.1.4.1.13191.10.3.1.4.1.1
oacIPSecSAremovedAn IPSec SA removed notification signifies that the device removed an IPSec security association.
NOTIFICATION-TYPE
.1.3.6.1.4.1.13191.10.3.1.4.1.2
oacIPSecCmapEnabledAn IPSec crypto map enabled notification signifies that the device validated the crypto map attached to an interface and the crypto map becomes valid on this interface.
NOTIFICATION-TYPE
.1.3.6.1.4.1.13191.10.3.1.4.1.3
oacIPSecCmapDisabledAn IPSec crypto map disabled notification signifies that the device did not validate the crypto map attached to an interface and the crypto map becomes invalid on this interface.
NOTIFICATION-TYPE
.1.3.6.1.4.1.13191.10.3.1.4.1.4
oacIPSecCpolEnabledAn IPSec crypto map policy enabled notification signifies that the device validated the crypto map policy. configuration is considered as active and can be used by Isakmp daemon, or IPSec manual keying.
NOTIFICATION-TYPE
.1.3.6.1.4.1.13191.10.3.1.4.1.5
oacIPSecCpolDisabledAn IPSec crypto map policy disabled notification signifies that the device did not validate the crypto map policy. Configuration is considered as inactive and can not be used by Isakmp or manual IPSec manual keying.
NOTIFICATION-TYPE
.1.3.6.1.4.1.13191.10.3.1.4.1.6
oacIPSecHwModuleDownAn IPSec hardware module down notification signifies that the device can not use any hardware encryption module, because it is not activated, or it is not present on the device.
NOTIFICATION-TYPE
.1.3.6.1.4.1.13191.10.3.1.4.1.7
oacIsakmpNotifications
OBJECT IDENTIFIER
.1.3.6.1.4.1.13191.10.3.1.4.2
oacISAKMPBadProposalAn ISAKMP bad proposal notification signifies that the device did not validate proposal for IPSec phase 1 with a remote peer.
NOTIFICATION-TYPE
.1.3.6.1.4.1.13191.10.3.1.4.2.1
oacISAKMPNoResponseAn ISAKMP No Response notification signifies that the device was exchanging ISAKMP information with a remote ISAKMP peer, and the peer did not give any answer to the device.
NOTIFICATION-TYPE
.1.3.6.1.4.1.13191.10.3.1.4.2.2
oacISAKMPConnectionEstablishedAn ISAKMP Connection established notification signifies that the device established an ISAKMP connection with a remote ISAKMP device.
NOTIFICATION-TYPE
.1.3.6.1.4.1.13191.10.3.1.4.2.3
oacISAKMPConnectionRemovedAn ISAKMP Connection removed notification signifies that the device removed an ISAKMP connection with a remote ISAKMP device, because the lifetime of the connection reached the limit, or a reset has been carried out on the device, either by using clear crypto isakmp sa, or by shutting down the IPSec working interface.
NOTIFICATION-TYPE
.1.3.6.1.4.1.13191.10.3.1.4.2.4
oacISAMPIPSecConnectionEstablishedAn ISAKMP IPSec Connection established notification signifies that the ISAKMP daemon of the device successfully created an IPSec tunnel between two ISAKMP peers.
NOTIFICATION-TYPE
.1.3.6.1.4.1.13191.10.3.1.4.2.5
oacISAKMPIPSecConnectionRemovedAn ISAKMP IPSec Connection removed notification signifies that the ISAKMP daemon of the device removed an IPSec connection, either because the lifetime of the IPSec session reached the limit, or because a reset has been carried out on the IPSec working interface of the device.
NOTIFICATION-TYPE
.1.3.6.1.4.1.13191.10.3.1.4.2.6
oacISAKMPUnknownPeerAn ISAKMP unknown peer notification signifies that the device received an unknown isakmp request and did not process it.
NOTIFICATION-TYPE
.1.3.6.1.4.1.13191.10.3.1.4.2.7
oacISAKMPNotificationMsgReceivedAn ISAKMP notification message received notification signifies that the device received a notification from a known ISAKMP peer.
NOTIFICATION-TYPE
.1.3.6.1.4.1.13191.10.3.1.4.2.8
oacISAKMPNotificationMsgSentAn ISAKMP notification message sent notification signifies that the device sent a notification to a known ISAKMP peer. Generally, a sent notification is due to a problem on the ISAKMP connection between two ISAKMP peers. For example, if received packet is malformed, a notification message is sent.
NOTIFICATION-TYPE
.1.3.6.1.4.1.13191.10.3.1.4.2.9
oacISAKMPDeadPeerDetectedAn ISAKMP Dead Peer detection signifies that the device detected a DPD when using ISAKMP keepalive.
NOTIFICATION-TYPE
.1.3.6.1.4.1.13191.10.3.1.4.2.10
ONEACCESS-IPSEC-MIB - SNMP MIB Reference | MIBs Explorer