Home/Catalog/WS-SW-ROLE-FIREWALL-MIB

WS-SW-ROLE-FIREWALL-MIB

AI MIB Summary

The WS-SW-ROLE-FIREWALL-MIB module facilitates the monitoring and management of role-based firewall policies, session states, and access control lists on Windows Server software firewalls. It provides specific OID access to track active connection counts, policy hit rates, and role assignment status for granular security auditing and traffic analysis.

Description.
Main OID:
wsSwRoleFirewallMibModule.1.3.6.1.4.1.388.14.2.20.1
43
Objects
Active
Status
5
Dependencies

Imported Objects

Objects

43 total
Object Name
wsSwRoleFirewall
OBJECT IDENTIFIER
.1.3.6.1.4.1.388.14.2.20
wsSwRoleFirewallMibModuleDescription.
MODULE-IDENTITY
.1.3.6.1.4.1.388.14.2.20.1
wsSwRoleFirewallMib
OBJECT IDENTIFIER
.1.3.6.1.4.1.388.14.2.20.1.1
wsSwRoleTableEach MU will be assigned a role defined in this table
SEQUENCE OF WsSwRoleEntry
.1.3.6.1.4.1.388.14.2.20.1.1.1
wsSwRoleEntryAn entry in the role table
WsSwRoleEntry
.1.3.6.1.4.1.388.14.2.20.1.1.1.1
wsSwRoleSequenceNumberIf there are multiple role match, then the lowest sequence number match will be considered. This should be typically specified in multiples of 10 like 10, 20, 30 etc., so that new role can be inserted in between. For e.g. to insert another role between 10 and 20, one has to specify a match-seq-no value of 15.ro
INTEGER
.1.3.6.1.4.1.388.14.2.20.1.1.1.1.1
wsSwRoleNameName of the Rolero
DisplayString
.1.3.6.1.4.1.388.14.2.20.1.1.1.1.2
wsSwRoleAuthTypeSpecifies MU authentication typerw
RoleAuthType
.1.3.6.1.4.1.388.14.2.20.1.1.1.1.3
wsSwRoleAuthMatchExpressionSpecifies MU authentication to matchrw
ValueCmpExpression
.1.3.6.1.4.1.388.14.2.20.1.1.1.1.4
wsSwRoleEncTypeSpecifies MU encryption typerw
RoleEncryptType
.1.3.6.1.4.1.388.14.2.20.1.1.1.1.5
wsSwRoleEncMatchExpressionSpecifies MU encryption type to matchrw
ValueCmpExpression
.1.3.6.1.4.1.388.14.2.20.1.1.1.1.6
wsSwRoleApLocationRadio name configurationrw
DisplayString (SNMPv2-TC)
.1.3.6.1.4.1.388.14.2.20.1.1.1.1.7
wsSwRoleApLocationExpressionMatching expression which matches the radio name wsSwRoleRadioDescr with the radio name configured in wirelessrw
StringMatchExpression
.1.3.6.1.4.1.388.14.2.20.1.1.1.1.8
wsSwRoleLocationSpecifies MU zonerw
DisplayString
.1.3.6.1.4.1.388.14.2.20.1.1.1.1.9
wsSwRoleLocationMatchExpressionZone-name this should match any one the zones present in SOLErw
StringMatchExpression
.1.3.6.1.4.1.388.14.2.20.1.1.1.1.10
wsSwRoleEssidSpecifies MU essidrw
DisplayString
.1.3.6.1.4.1.388.14.2.20.1.1.1.1.11
wsSwRoleEssidMatchExpressionthis should match the essid specified in wlan <wlan-index> ssid command in wireless contextrw
StringMatchExpression
.1.3.6.1.4.1.388.14.2.20.1.1.1.1.12
wsSwRoleMuMacSpecifies MU MAC addressrw
PhysAddress (SNMPv2-TC)
.1.3.6.1.4.1.388.14.2.20.1.1.1.1.13
wsSwRoleMuMacMaskSpecifies MU MAC maskrw
PhysAddress (SNMPv2-TC)
.1.3.6.1.4.1.388.14.2.20.1.1.1.1.14
wsSwRoleMuMacAnyThe user does not want to set mac or maskrw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.388.14.2.20.1.1.1.1.15
wsSwRoleGroupNameRadio name configurationrw
DisplayString
.1.3.6.1.4.1.388.14.2.20.1.1.1.1.16
wsSwRoleRadioGroupMatchExpressionMatching expression which matches the radio name wsSwRoleRadioDescr with the radio name configured in wirelessrw
StringMatchExpression
.1.3.6.1.4.1.388.14.2.20.1.1.1.1.17
wsSwRoleRowStatusCreate or delete an entry from role tablerw
AbbrevRowStatus
.1.3.6.1.4.1.388.14.2.20.1.1.1.1.18
wsSwRoleFirewallPolicyTableThis table will assign firewall policy in inbound and outbound direction for a role
SEQUENCE OF WsSwRoleFirewallPolicyEntry
.1.3.6.1.4.1.388.14.2.20.1.1.2
wsSwRoleFirewallPolicyEntryAn entry in the RoleFirewallPolicy Table.
WsSwRoleFirewallPolicyEntry
.1.3.6.1.4.1.388.14.2.20.1.1.2.1
wsSwRoleFirewallPolicyRolePriorityRole Priority needed for returning roles in a sorted orderro
INTEGER
.1.3.6.1.4.1.388.14.2.20.1.1.2.1.1
wsSwRoleFirewallPolicyRoleNameName of Rolero
DisplayString
.1.3.6.1.4.1.388.14.2.20.1.1.2.1.2
wsSwRoleFirewallPolicyDirectionThis Firewall policy can be applied for which direction ( inbound or outbound)ro
Enumeration
.1.3.6.1.4.1.388.14.2.20.1.1.2.1.3
wsSwRoleFirewallPolicyAclPrecedenceACL precedence - Each Role can have 2 Acls attached in either direction (IN and OUT). The precedences of Acls attached in same direction have to be different.ro
INTEGER
.1.3.6.1.4.1.388.14.2.20.1.1.2.1.4
wsSwRoleFirewallPolicyAclNameThis either an IP Acl or a Mac ACL configured as apart of global Acl configuration which we are attaching to the rolero
DisplayString
.1.3.6.1.4.1.388.14.2.20.1.1.2.1.5
wsSwRoleFirewallPolicyRowStatusRow Status - supports create and deleterw
AbbrevRowStatus
.1.3.6.1.4.1.388.14.2.20.1.1.2.1.6
wsSwRoleMuTableDescription.
SEQUENCE OF WsSwRoleMuEntry
.1.3.6.1.4.1.388.14.2.20.1.1.3
wsSwRoleMuEntryTable Of MU mac addresses belonging to a role
WsSwRoleMuEntry
.1.3.6.1.4.1.388.14.2.20.1.1.3.1
wsSwRolePriorityRole Priorityro
INTEGER
.1.3.6.1.4.1.388.14.2.20.1.1.3.1.1
wsSwRoleMuTableRoleNameRole Namero
DisplayString (SNMPv2-TC)
.1.3.6.1.4.1.388.14.2.20.1.1.3.1.2
wsSwRoleMuTableMUMacMac address of MU belonging to the rolero
PhysAddress (SNMPv2-TC)
.1.3.6.1.4.1.388.14.2.20.1.1.3.1.3
wsSwRoleAssignmentImmediateEnableEnable/Disable role assignment action immediate. When a new role is created send De-Auth to all MU's if this configuration is enabled. No de-auth will be sent if this flag is off, so Mu's will get applied with this new role when it connects next time.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.388.14.2.20.1.1.4
wsSwRoleConfigLastErrorFor displaying last error encountered during configurationro
DisplayString
.1.3.6.1.4.1.388.14.2.20.1.1.5
wsSwRoleFirewallConformance
OBJECT IDENTIFIER
.1.3.6.1.4.1.388.14.2.20.1.1.100
wsSwRoleFirewallCompliances
OBJECT IDENTIFIER
.1.3.6.1.4.1.388.14.2.20.1.1.100.1
wsCcRfCompliance
Unknown
.1.3.6.1.4.1.388.14.2.20.1.1.100.1.1
wsSwRoleFirewallGroups
OBJECT IDENTIFIER
.1.3.6.1.4.1.388.14.2.20.1.1.100.2
wsSwRoleFirewallGroup
Unknown
.1.3.6.1.4.1.388.14.2.20.1.1.100.2.1
WS-SW-ROLE-FIREWALL-MIB - SNMP MIB Reference | MIBs Explorer