WS-SW-ROLE-FIREWALL-MIB
AI MIB Summary
The WS-SW-ROLE-FIREWALL-MIB module facilitates the monitoring and management of role-based firewall policies, session states, and access control lists on Windows Server software firewalls. It provides specific OID access to track active connection counts, policy hit rates, and role assignment status for granular security auditing and traffic analysis.
Description.
Main OID:
wsSwRoleFirewallMibModule.1.3.6.1.4.1.388.14.2.20.1
43
Objects
Active
Status
5
Dependencies
Imported Objects
Objects
43 total| Object Name |
|---|
wsSwRoleFirewall OBJECT IDENTIFIER .1.3.6.1.4.1.388.14.2.20 |
wsSwRoleFirewallMibModuleDescription. MODULE-IDENTITY .1.3.6.1.4.1.388.14.2.20.1 |
wsSwRoleFirewallMib OBJECT IDENTIFIER .1.3.6.1.4.1.388.14.2.20.1.1 |
wsSwRoleTableEach MU will be assigned a role defined in this table SEQUENCE OF WsSwRoleEntry .1.3.6.1.4.1.388.14.2.20.1.1.1 |
wsSwRoleEntryAn entry in the role table WsSwRoleEntry .1.3.6.1.4.1.388.14.2.20.1.1.1.1 |
wsSwRoleSequenceNumberIf there are multiple role match, then the lowest sequence number match will be considered. This should be typically specified in multiples of 10 like 10, 20, 30 etc., so that new role can be inserted in between. For e.g. to insert another role between 10 and 20, one has to specify a match-seq-no value of 15.ro INTEGER .1.3.6.1.4.1.388.14.2.20.1.1.1.1.1 |
wsSwRoleNameName of the Rolero DisplayString .1.3.6.1.4.1.388.14.2.20.1.1.1.1.2 |
wsSwRoleAuthTypeSpecifies MU authentication typerw RoleAuthType .1.3.6.1.4.1.388.14.2.20.1.1.1.1.3 |
wsSwRoleAuthMatchExpressionSpecifies MU authentication to matchrw ValueCmpExpression .1.3.6.1.4.1.388.14.2.20.1.1.1.1.4 |
wsSwRoleEncTypeSpecifies MU encryption typerw RoleEncryptType .1.3.6.1.4.1.388.14.2.20.1.1.1.1.5 |
wsSwRoleEncMatchExpressionSpecifies MU encryption type to matchrw ValueCmpExpression .1.3.6.1.4.1.388.14.2.20.1.1.1.1.6 |
wsSwRoleApLocationRadio name configurationrw DisplayString (SNMPv2-TC) .1.3.6.1.4.1.388.14.2.20.1.1.1.1.7 |
wsSwRoleApLocationExpressionMatching expression which matches the radio name wsSwRoleRadioDescr with the radio name configured in wirelessrw StringMatchExpression .1.3.6.1.4.1.388.14.2.20.1.1.1.1.8 |
wsSwRoleLocationSpecifies MU zonerw DisplayString .1.3.6.1.4.1.388.14.2.20.1.1.1.1.9 |
wsSwRoleLocationMatchExpressionZone-name this should match any one the zones present in SOLErw StringMatchExpression .1.3.6.1.4.1.388.14.2.20.1.1.1.1.10 |
wsSwRoleEssidSpecifies MU essidrw DisplayString .1.3.6.1.4.1.388.14.2.20.1.1.1.1.11 |
wsSwRoleEssidMatchExpressionthis should match the essid specified in wlan <wlan-index> ssid command in wireless contextrw StringMatchExpression .1.3.6.1.4.1.388.14.2.20.1.1.1.1.12 |
wsSwRoleMuMacSpecifies MU MAC addressrw PhysAddress (SNMPv2-TC) .1.3.6.1.4.1.388.14.2.20.1.1.1.1.13 |
wsSwRoleMuMacMaskSpecifies MU MAC maskrw PhysAddress (SNMPv2-TC) .1.3.6.1.4.1.388.14.2.20.1.1.1.1.14 |
wsSwRoleMuMacAnyThe user does not want to set mac or maskrw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.388.14.2.20.1.1.1.1.15 |
wsSwRoleGroupNameRadio name configurationrw DisplayString .1.3.6.1.4.1.388.14.2.20.1.1.1.1.16 |
wsSwRoleRadioGroupMatchExpressionMatching expression which matches the radio name wsSwRoleRadioDescr with the radio name configured in wirelessrw StringMatchExpression .1.3.6.1.4.1.388.14.2.20.1.1.1.1.17 |
wsSwRoleRowStatusCreate or delete an entry from role tablerw AbbrevRowStatus .1.3.6.1.4.1.388.14.2.20.1.1.1.1.18 |
wsSwRoleFirewallPolicyTableThis table will assign firewall policy in inbound and outbound direction for a role SEQUENCE OF WsSwRoleFirewallPolicyEntry .1.3.6.1.4.1.388.14.2.20.1.1.2 |
wsSwRoleFirewallPolicyEntryAn entry in the RoleFirewallPolicy Table. WsSwRoleFirewallPolicyEntry .1.3.6.1.4.1.388.14.2.20.1.1.2.1 |
wsSwRoleFirewallPolicyRolePriorityRole Priority needed for returning roles in a sorted orderro INTEGER .1.3.6.1.4.1.388.14.2.20.1.1.2.1.1 |
wsSwRoleFirewallPolicyRoleNameName of Rolero DisplayString .1.3.6.1.4.1.388.14.2.20.1.1.2.1.2 |
wsSwRoleFirewallPolicyDirectionThis Firewall policy can be applied for which direction ( inbound or outbound)ro Enumeration .1.3.6.1.4.1.388.14.2.20.1.1.2.1.3 |
wsSwRoleFirewallPolicyAclPrecedenceACL precedence - Each Role can have 2 Acls attached in either direction (IN and OUT). The precedences of Acls attached in same direction have to be different.ro INTEGER .1.3.6.1.4.1.388.14.2.20.1.1.2.1.4 |
wsSwRoleFirewallPolicyAclNameThis either an IP Acl or a Mac ACL configured as apart of global Acl configuration which we are attaching to the rolero DisplayString .1.3.6.1.4.1.388.14.2.20.1.1.2.1.5 |
wsSwRoleFirewallPolicyRowStatusRow Status - supports create and deleterw AbbrevRowStatus .1.3.6.1.4.1.388.14.2.20.1.1.2.1.6 |
wsSwRoleMuTableDescription. SEQUENCE OF WsSwRoleMuEntry .1.3.6.1.4.1.388.14.2.20.1.1.3 |
wsSwRoleMuEntryTable Of MU mac addresses belonging to a role WsSwRoleMuEntry .1.3.6.1.4.1.388.14.2.20.1.1.3.1 |
wsSwRolePriorityRole Priorityro INTEGER .1.3.6.1.4.1.388.14.2.20.1.1.3.1.1 |
wsSwRoleMuTableRoleNameRole Namero DisplayString (SNMPv2-TC) .1.3.6.1.4.1.388.14.2.20.1.1.3.1.2 |
wsSwRoleMuTableMUMacMac address of MU belonging to the rolero PhysAddress (SNMPv2-TC) .1.3.6.1.4.1.388.14.2.20.1.1.3.1.3 |
wsSwRoleAssignmentImmediateEnableEnable/Disable role assignment action immediate. When a new role is created send De-Auth to all MU's if this configuration is enabled. No de-auth will be sent if this flag is off, so Mu's will get applied with this new role when it connects next time.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.388.14.2.20.1.1.4 |
wsSwRoleConfigLastErrorFor displaying last error encountered during configurationro DisplayString .1.3.6.1.4.1.388.14.2.20.1.1.5 |
wsSwRoleFirewallConformance OBJECT IDENTIFIER .1.3.6.1.4.1.388.14.2.20.1.1.100 |
wsSwRoleFirewallCompliances OBJECT IDENTIFIER .1.3.6.1.4.1.388.14.2.20.1.1.100.1 |
wsCcRfCompliance Unknown .1.3.6.1.4.1.388.14.2.20.1.1.100.1.1 |
wsSwRoleFirewallGroups OBJECT IDENTIFIER .1.3.6.1.4.1.388.14.2.20.1.1.100.2 |
wsSwRoleFirewallGroup Unknown .1.3.6.1.4.1.388.14.2.20.1.1.100.2.1 |