Home/Catalog/TPT-NGFW-POLICY-MIB

TPT-NGFW-POLICY-MIB

AI MIB Summary

The TPT-NGFW-POLICY-MIB module enables SNMP-based monitoring and management of TippingPoint Next-Generation Firewall policy configurations, specifically tracking Firewall rules, IPS signatures, Reputation profiles, and Quarantine status. This MIB facilitates the retrieval of security policy states and the generation of notifications for policy changes or enforcement events on Trend Micro TippingPoint appliances.

Policy information and notifications for TippingPoint Next-Generation Firewall products. This includes Firewall rules, IPS, Reputation profiles, Quarantine. Copyright (C) 2016 Trend Micro Incorporated. All Rights Reserved. Trend Micro makes no warranty of any kind with regard to this material, including, but not limited to, the implied warranties of merchantability and fitness for a particular purpose. Trend Micro shall not be liable for errors contained herein or for incidental or consequential damages in connection with the furnishing, performance, or use of this material. This document contains proprietary information, which is protected by copyright. No part of this document may be photocopied, reproduced, or translated into another language without the prior written consent of Trend Micro. The information is provided 'as is' without warranty of any kind and is subject to change without notice. The only warranties for Trend Micro products and services are set forth in the express warranty statements accompanying such products and services. Nothing herein should be construed as constituting an additional warranty. Trend Micro shall not be liable for technical or editorial errors or omissions contained herein. TippingPoint(R), the TippingPoint logo, and Digital Vaccine(R) are registered trademarks of Trend Micro. All other company and product names may be trademarks of their respective holders. All rights reserved. This document contains confidential information, trade secrets or both, which are the property of Trend Micro. No part of this documentation may be reproduced in any form or by any means or used to make any derivative work (such as translation, transformation, or adaptation) without written permission from Trend Micro or one of its subsidiaries. All other company and product names may be trademarks of their respective holders.
Main OID:
tptNgfwPolicy.1.3.6.1.4.1.10734.3.9.2.4
45
Objects
Active
Status
7
Dependencies

Imported Objects

Objects

45 total
Object Name
tptNgfwPolicyGroupPolicy group consisting of firewall, IPS, Reputation, and Quarantine information.
Unknown
.1.3.6.1.4.1.10734.3.9.1.1.7
tptNgfwPolicyNotificationGroupNotification sent from TippingPoint Next-generation Firewall rules and inspection profiles.
Unknown
.1.3.6.1.4.1.10734.3.9.1.1.8
tptNgfwPolicyComplCompliance for TippingPoint Next-generation Firewall policies.
Unknown
.1.3.6.1.4.1.10734.3.9.1.2.4
tptNgfwPolicyPolicy information and notifications for TippingPoint Next-Generation Firewall products. This includes Firewall rules, IPS, Reputation profiles, Quarantine. Copyright (C) 2016 Trend Micro Incorporated. All Rights Reserved. Trend Micro makes no warranty of any kind with regard to this material, including, but not limited to, the implied warranties of merchantability and fitness for a particular purpose. Trend Micro shall not be liable for errors contained herein or for incidental or consequential damages in connection with the furnishing, performance, or use of this material. This document contains proprietary information, which is protected by copyright. No part of this document may be photocopied, reproduced, or translated into another language without the prior written consent of Trend Micro. The information is provided 'as is' without warranty of any kind and is subject to change without notice. The only warranties for Trend Micro products and services are set forth in the express warranty statements accompanying such products and services. Nothing herein should be construed as constituting an additional warranty. Trend Micro shall not be liable for technical or editorial errors or omissions contained herein. TippingPoint(R), the TippingPoint logo, and Digital Vaccine(R) are registered trademarks of Trend Micro. All other company and product names may be trademarks of their respective holders. All rights reserved. This document contains confidential information, trade secrets or both, which are the property of Trend Micro. No part of this documentation may be reproduced in any form or by any means or used to make any derivative work (such as translation, transformation, or adaptation) without written permission from Trend Micro or one of its subsidiaries. All other company and product names may be trademarks of their respective holders.
MODULE-IDENTITY
.1.3.6.1.4.1.10734.3.9.2.4
tptNgfwPolicyNotifyA notification sent when a firewall rule, IPS, Reputation, or Quarantine profile detects a network event of interest.
NOTIFICATION-TYPE
.1.3.6.1.4.1.10734.3.9.3.0.10
tptNgfwPolicyNotifyTimeThe time when the firewall detected a network event and generated this policy notification.ro
DateAndTime (SNMPv2-TC)
.1.3.6.1.4.1.10734.3.9.3.1.20
tptNgfwPolicyNotifyEventSourceThe policy component (Firewall, IPS, Reputation, Quarantine) that detected a network event and generated this notification.ro
EventSource
.1.3.6.1.4.1.10734.3.9.3.1.21
tptNgfwPolicyNotifyEventTypeIf the notify event was generated by the firewall, this object indicates what type of event was detected.ro
FirewallEventType
.1.3.6.1.4.1.10734.3.9.3.1.22
tptNgfwPolicyNotifyEventSeverityThe severity of the detected network event.ro
EventSeverity
.1.3.6.1.4.1.10734.3.9.3.1.23
tptNgfwPolicyNotifyCorrelationIdA 128-bit identifier in decimal format. This ID is used to correlate firewall events. For example, a firewall session started and ended notification will have the same correlation ID.ro
SnmpAdminString
.1.3.6.1.4.1.10734.3.9.3.1.24
tptNgfwPolicyNotifyActionTypeThe type of action taken on network traffic matching a firewall rule or inspection profile.ro
ActionType
.1.3.6.1.4.1.10734.3.9.3.1.25
tptNgfwPolicyNotifyActionThis object provides additional description of a firewall action. For example, when a quarantine action occurs, this object details if the action was to place traffic in or out of quarantine.ro
SnmpAdminString
.1.3.6.1.4.1.10734.3.9.3.1.26
tptNgfwPolicyNotifyActionSetNameThe action set name associated with the firewall rule that detected an event.ro
SnmpAdminString
.1.3.6.1.4.1.10734.3.9.3.1.27
tptNgfwPolicyNotifyRuleNameThe firewall rule name that has generated the notification.ro
SnmpAdminString
.1.3.6.1.4.1.10734.3.9.3.1.28
tptNgfwPolicyNotifyInInterfaceThe interface name that is receiving the traffic that triggered a firewall action.ro
SnmpAdminString
.1.3.6.1.4.1.10734.3.9.3.1.29
tptNgfwPolicyNotifyOutInterfaceThe interface name sending the suspect traffic.ro
SnmpAdminString
.1.3.6.1.4.1.10734.3.9.3.1.30
tptNgfwPolicyNotifySrcIpAddrTypeThe IP address type of the network traffic source.ro
InetAddressType (INET-ADDRESS-MIB)
.1.3.6.1.4.1.10734.3.9.3.1.31
tptNgfwPolicyNotifySrcIpAddrThe source IP address generating the network traffic that has triggered a firewall action.ro
InetAddress (INET-ADDRESS-MIB)
.1.3.6.1.4.1.10734.3.9.3.1.32
tptNgfwPolicyNotifySrcPortThe source port generating the network traffic.ro
Unsigned32
.1.3.6.1.4.1.10734.3.9.3.1.33
tptNgfwPolicyNotifySrcTransIpAddrThe translated (NAT) source IP address.ro
InetAddress (INET-ADDRESS-MIB)
.1.3.6.1.4.1.10734.3.9.3.1.34
tptNgfwPolicyNotifySrcTransPortThe translated (NAT) source port.ro
Unsigned32
.1.3.6.1.4.1.10734.3.9.3.1.35
tptNgfwPolicyNotifyDestIpAddrTypeThe destination IP address type.ro
InetAddressType (INET-ADDRESS-MIB)
.1.3.6.1.4.1.10734.3.9.3.1.36
tptNgfwPolicyNotifyDestIpAddrThe source IP address receiving network traffic that triggered a firewall action.ro
InetAddress (INET-ADDRESS-MIB)
.1.3.6.1.4.1.10734.3.9.3.1.37
tptNgfwPolicyNotifyDestPortThe source port receiving the network traffic.ro
Unsigned32
.1.3.6.1.4.1.10734.3.9.3.1.38
tptNgfwPolicyNotifyDestTransIpAddrThe translated (NAT) destination IP address.ro
InetAddress (INET-ADDRESS-MIB)
.1.3.6.1.4.1.10734.3.9.3.1.39
tptNgfwPolicyNotifyDestTransPortThe translated (NAT) destination port.ro
Unsigned32
.1.3.6.1.4.1.10734.3.9.3.1.40
tptNgfwPolicyNotifyProtocolThe transport protocol of the suspect traffic.ro
SnmpAdminString
.1.3.6.1.4.1.10734.3.9.3.1.41
tptNgfwPolicyNotifyApplicationNameThe application name generating network traffic that has triggered a firewall rule.ro
SnmpAdminString
.1.3.6.1.4.1.10734.3.9.3.1.42
tptNgfwPolicyNotifyUserNameThe user name, if available, that is responsible for generating network traffic triggering a firewall action.ro
SnmpAdminString
.1.3.6.1.4.1.10734.3.9.3.1.43
tptNgfwPolicyNotifyBytesInSource to destination bytes.ro
Counter64
.1.3.6.1.4.1.10734.3.9.3.1.44
tptNgfwPolicyNotifyBytesOutDestination to source bytes.ro
Counter64
.1.3.6.1.4.1.10734.3.9.3.1.45
tptNgfwPolicyNotifyStartTimeSecThe time, in seconds, from EPOC (January 1, 1970 00:00:00) when the event was detected.ro
Counter64
.1.3.6.1.4.1.10734.3.9.3.1.46
tptNgfwPolicyNotifyStartTimeNanoThe fractional time, in nanoseconds, when the event was detected.ro
Counter64
.1.3.6.1.4.1.10734.3.9.3.1.47
tptNgfwPolicyNotifyRateLimitThe rate-limit, in kbps, of the action set associated with this notification.ro
Counter64
.1.3.6.1.4.1.10734.3.9.3.1.48
tptNgfwPolicyNotifyPktTraceVerThe packet trace version.ro
PacketTraceVersion
.1.3.6.1.4.1.10734.3.9.3.1.49
tptNgfwPolicyNotifyPktTraceIdThe bucket identifier for a packet trace.ro
Unsigned32
.1.3.6.1.4.1.10734.3.9.3.1.50
tptNgfwPolicyNotifyPktTraceBeginThe starting sequence number for a packet trace.ro
Unsigned32
.1.3.6.1.4.1.10734.3.9.3.1.51
tptNgfwPolicyNotifyPktTraceEndThe ending sequence number for a packet trace.ro
Unsigned32
.1.3.6.1.4.1.10734.3.9.3.1.52
tptNgfwPolicyNotifyFilterNameThe descriptive name of the filter maching the data stream.ro
SnmpAdminString
.1.3.6.1.4.1.10734.3.9.3.1.53
tptNgfwPolicyNotifyProfileNameProfile name.ro
SnmpAdminString
.1.3.6.1.4.1.10734.3.9.3.1.54
tptNgfwPolicyNotifyPolicyNameThe firewall policy name that matched network traffic and caused the firewall to take an action.ro
SnmpAdminString
.1.3.6.1.4.1.10734.3.9.3.1.55
tptNgfwPolicyNotifyVlanIdThe VLAN tag that the network traffic occured on.ro
SnmpAdminString
.1.3.6.1.4.1.10734.3.9.3.1.56
tptNgfwPolicyNotifyHitCountHit count. The number of times, the firewall detected a particulare event as defined by a rule or inspection profile.ro
Counter64
.1.3.6.1.4.1.10734.3.9.3.1.57
tptNgfwPolicyNotifyMsgParamsA string containing parameters (separated by vertical bars) matching the Message in the Digital Vaccine (the XML tag is Message).ro
SnmpAdminString
.1.3.6.1.4.1.10734.3.9.3.1.58
tptNgfwPolicyNotifyPeriodThe aggregation period, in minutes, when the condition is frist detected and this notification sent.ro
Unsigned32
.1.3.6.1.4.1.10734.3.9.3.1.59
TPT-NGFW-POLICY-MIB - SNMP MIB Reference | MIBs Explorer