Wellfleet-IPSEC-MIB
Detailed view of the defined objects, syntax rules, and hierarchical paths.
166
Objects
Active
Status
4
Dependencies
Imported Objects
Objects
166 total| Object Name |
|---|
wfIpsecBase OBJECT IDENTIFIER .1.3.6.1.4.1.18.3.5.3.26.1 |
RFC1155-SMI Unknown .1.3.6.1.4.1.18.3.5.3.26.1 |
wfIpsecBaseCreateCreate/Delete parameter. Default is created.
Users perform a set operation on this
object in order to create/delete IPSec.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.1.1 |
wfIpsecBaseEnableEnable/Disable parameter. Default is enabled.
Users perform a set operation on this
object in order to enable/disable IPSec.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.1.2 |
wfIpsecBaseStateThe current state of IPsec.ro Enumeration .1.3.6.1.4.1.18.3.5.3.26.1.3 |
wfIpsecBaseEspEncipherEnableUsed to control the whether ESP enciphers packets or not. Set
this attribute to disable for debugging purposes only. When
set to disabled, packets that match a policy that uses ESP
to encipher the payload will not be enciphered. This allows
one to view the plaintext inner headers for debugging
purposes.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.1.4 |
wfIpsecBaseMaxManualSpiThe maximum SPI value that will be accepted for manually
configured SAs. The SA values 0 - 255 is reserved. To enter
this value add the number of SAs belonging to a particular
IPSec protocol ex ESP to 255. The default value is maximum
of 32 unique ESP SAs. The value 255 will cause no manual
SAs supportedrw INTEGER .1.3.6.1.4.1.18.3.5.3.26.1.5 |
wfIpsecSelectorInTableA table of selectors used to identify which IP security
policy should be applied to a packet. SEQUENCE OF WfIpsecSelectorInEntry .1.3.6.1.4.1.18.3.5.3.26.2 |
wfIpsecSelectorInEntryIP Security Selectors for a policy WfIpsecSelectorInEntry .1.3.6.1.4.1.18.3.5.3.26.2.1 |
wfIpsecSelectorInCreateDefines the existence of the policy's selectors:
created - instance exists
delete - instance should be deleted.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.2.1.1 |
wfIpsecSelectorInEnableDefines whether or not the policy should be used:
enabled - activate the policy's selectors.
disabled - deactivate the policy's selectors.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.2.1.2 |
wfIpsecSelectorInStatusDefines the current status of the this instance:
up: this instance is in use
down: this instance is misconfigured
inactive: this instance is disabled
notpresent: the IPsec code isn't loadedro Enumeration .1.3.6.1.4.1.18.3.5.3.26.2.1.3 |
wfIpsecSelectorInCounterThe number of received packets that have
matched the selectors.ro Counter .1.3.6.1.4.1.18.3.5.3.26.2.1.4 |
wfIpsecSelectorInDefinitionThe policy's selector definition.rw Opaque .1.3.6.1.4.1.18.3.5.3.26.2.1.5 |
wfIpsecSelectorInReservedReserved field.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.2.1.6 |
wfIpsecSelectorInInterfaceThe network address of the IP
interface to which the corresponding policy is applied.ro IpAddress .1.3.6.1.4.1.18.3.5.3.26.2.1.7 |
wfIpsecSelectorInCircuitThe ID of the Circuit to which the
corresponding policy is applied.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.2.1.8 |
wfIpsecSelectorInPolicyNumberID policy's selectors.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.2.1.9 |
wfIpsecSelectorInFragmentFragment number - for large sets of selectors.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.2.1.10 |
wfIpsecSelectorInNamename of this instance of selectors.rw DisplayString (SNMPv2-TC) .1.3.6.1.4.1.18.3.5.3.26.2.1.11 |
wfIpsecSelectorOutTableA table of selectors used to identify which IP security
policy should be applied to a packet. SEQUENCE OF WfIpsecSelectorOutEntry .1.3.6.1.4.1.18.3.5.3.26.3 |
wfIpsecSelectorOutEntryIP Security Selectors for a policy WfIpsecSelectorOutEntry .1.3.6.1.4.1.18.3.5.3.26.3.1 |
wfIpsecSelectorOutCreateDefines the existence of the policy's selectors:
created - instance exists
delete - instance should be deleted.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.3.1.1 |
wfIpsecSelectorOutEnableDefines whether or not the policy should be used:
enabled - activate the policy's selectors.
disabled - deactivate the policy's selectors.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.3.1.2 |
wfIpsecSelectorOutStatusDefines the current status of the this instance:
up: this instance is in use
down: this instance is misconfigured
inactive: this instance is disabled
notpresent: the IPsec code isn't loadedro Enumeration .1.3.6.1.4.1.18.3.5.3.26.3.1.3 |
wfIpsecSelectorOutCounterThe number of received packets that have
matched the selectors.ro Counter .1.3.6.1.4.1.18.3.5.3.26.3.1.4 |
wfIpsecSelectorOutDefinitionThe policy's selector definition.rw Opaque .1.3.6.1.4.1.18.3.5.3.26.3.1.5 |
wfIpsecSelectorOutReservedReserved field.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.3.1.6 |
wfIpsecSelectorOutInterfaceThe network address of the IP
interface to which the corresponding policy is applied.ro IpAddress .1.3.6.1.4.1.18.3.5.3.26.3.1.7 |
wfIpsecSelectorOutCircuitThe ID of the Circuit to which the
corresponding policy is applied.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.3.1.8 |
wfIpsecSelectorOutPolicyNumberID policy's selectors.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.3.1.9 |
wfIpsecSelectorOutFragmentFragment number - for large sets of selectors.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.3.1.10 |
wfIpsecSelectorOutNamename of this instance of selectors.rw DisplayString (SNMPv2-TC) .1.3.6.1.4.1.18.3.5.3.26.3.1.11 |
wfIpsecDescriptorTableTable of IP security descriptors SEQUENCE OF WfIpsecDescriptorEntry .1.3.6.1.4.1.18.3.5.3.26.4 |
wfIpsecDescriptorEntryAn IP security Descriptor WfIpsecDescriptorEntry .1.3.6.1.4.1.18.3.5.3.26.4.1 |
wfIpsecDescriptorCreateCreate/Delete parameter. Default is created.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.4.1.1 |
wfIpsecDescriptorStatusThe status of this instance:
up: this instance is in use
down: this instance is misconfigured
inactive: this instance is disabled
notpresent: the IPsec code isn't loadedro Enumeration .1.3.6.1.4.1.18.3.5.3.26.4.1.2 |
wfIpsecDescriptorPolicyNumberAllows instance of wfIpsecSelectorOutEntry to be matched with
this instance.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.4.1.3 |
wfIpsecDescriptorInterfaceThe IP address of the security gateway which this descriptor
belongs to.ro IpAddress .1.3.6.1.4.1.18.3.5.3.26.4.1.4 |
wfIpsecDescriptorCircuitThe ID of the Circuit to which this
instance applies.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.4.1.5 |
wfIpsecDescriptorManualSaListthe octet string represents an ordered list of Security
Associations (SAs). the format of each 9 byte sequence is:
+-++
| protocol | Peer IP Address |
+-++
| SPI |
+-++rw Opaque .1.3.6.1.4.1.18.3.5.3.26.4.1.6 |
wfIpsecDescriptorSaModeIdentifies mode of the SA for this policy.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.4.1.7 |
wfIpsecDescriptorPfsIdentifies whether perfect forward secrecy is required
or not.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.4.1.8 |
wfIpsecDescriptorProposalsthe octet string represents an ordered list of proposals.
Every 2 octets in the string contains a number which
corresponds to an instance I.D. of wfIpsecProposalEntry.
The list of proposals is a logically ORed list.rw Opaque .1.3.6.1.4.1.18.3.5.3.26.4.1.9 |
wfIpsecDescriptorSourceForDestAddrThe source for the destination IP address value to be used
in the SA. 'packet' limits use of the SA to those packets
which have a matching IP addr even if the policy permits a
range. 'policy' allows more than one traffic flow to use
the SA if the policy permits a range of IP addresses.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.4.1.10 |
wfIpsecDescriptorSourceForSrcAddrThe source for the destination IP address value to be used
in the SA. 'packet' limits use of the SA to those packets
which have a matching IP addr even if the policy permits a
range. 'policy' allows more than one traffic flow to use
the SA if the policy permits a range of IP addresses.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.4.1.11 |
wfIpsecDescriptorSourceForProtocolThe source for the destination IP address value to be used
in the SA. 'packet' limits use of the SA to those packets
which have a matching IP addr even if the policy permits a
range. 'policy' allows more than one traffic flow to use
the SA if the policy permits a range of IP addresses.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.4.1.12 |
wfIpsecDescriptorStartSourceAddrThe start Source IP address for the dynamic SA.rw IpAddress .1.3.6.1.4.1.18.3.5.3.26.4.1.13 |
wfIpsecDescriptorEndSourceAddrThe end Source IP address for the dynamic SA.rw IpAddress .1.3.6.1.4.1.18.3.5.3.26.4.1.14 |
wfIpsecDescriptorStartDestAddrThe start Destination IP address for the dynamic SA.rw IpAddress .1.3.6.1.4.1.18.3.5.3.26.4.1.15 |
wfIpsecDescriptorEndDestAddrThe end Source IP address for the dynamic SA.rw IpAddress .1.3.6.1.4.1.18.3.5.3.26.4.1.16 |
wfIpsecDescriptorSourcePortThe source port number for the dynamic SA.rw INTEGER .1.3.6.1.4.1.18.3.5.3.26.4.1.17 |
wfIpsecDescriptorProtocolThe IP protocol for the dynamic SA.rw INTEGER .1.3.6.1.4.1.18.3.5.3.26.4.1.18 |
wfIpsecDescriptorPrimarySGThe address of the remote gateway.rw IpAddress .1.3.6.1.4.1.18.3.5.3.26.4.1.19 |
wfIpsecDescriptorInboundIdleTimerInbound (Unprotect) SA inactivity timer, in minutes.
If no traffic is received on an automated inbound SA
for the indicated time, both SAs for this policy will
be deleted. A value of zero disables the timer.rw INTEGER .1.3.6.1.4.1.18.3.5.3.26.4.1.20 |
wfIpsecDescriptorAntiReplayWindowAnti-replay checking implies checking the sequence
number of each encrypted packet received and determining
if we have received this packet before. Anti-replay
checking by receivers of encrypted traffic is optional. It
must only happen if authentication is select one of the
security services for this flow. Anti-replay even if enabled
will not happen for packets which are only encrypted.
This MIB attribute controls the number of packets which
are kept track of for replay checking. Anything sequence
number less than the window size is thrown away.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.4.1.21 |
wfIpsecDescriptorDestPortThe destination port number for the dynamic SA.rw INTEGER .1.3.6.1.4.1.18.3.5.3.26.4.1.22 |
wfIpsecEspSaTableThe ESP security association table SEQUENCE OF WfIpsecEspSaEntry .1.3.6.1.4.1.18.3.5.3.26.5 |
wfIpsecEspSaEntryEntry in ESP security association table WfIpsecEspSaEntry .1.3.6.1.4.1.18.3.5.3.26.5.1 |
wfIpsecEspSaCreateCreate/Delete parameter.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.5.1.1 |
wfIpsecEspSaStatusThe current status of this Security Association:
up: this SA is in use
down: this SA is misconfigured
inactive: this SA is disabled
notpresent: the IPsec code isn't loadedro Enumeration .1.3.6.1.4.1.18.3.5.3.26.5.1.2 |
wfIpsecEspSaSrcThe IP address of the SA's source.ro IpAddress .1.3.6.1.4.1.18.3.5.3.26.5.1.3 |
wfIpsecEspSaDestThe IP address of the SA's destination.ro IpAddress .1.3.6.1.4.1.18.3.5.3.26.5.1.4 |
wfIpsecEspSaSpiThe security parameters indexro INTEGER .1.3.6.1.4.1.18.3.5.3.26.5.1.5 |
wfIpsecEspSaCipherAlgIdentifies cipher algorithm for this SA.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.5.1.6 |
wfIpsecEspSaManualCipherKeyThe key for a manually-keyed SA's cipher algorithmrw OCTET STRING .1.3.6.1.4.1.18.3.5.3.26.5.1.7 |
wfIpsecEspSaDesKeyStrengthThe strength of the cipher key.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.5.1.8 |
wfIpsecEspSaIntegrityAlgThe algorithm for ESP Auth.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.5.1.9 |
wfIpsecEspSaManualIntegrityKeyThe key for a manually-keyed SA's integrity algorithmrw OCTET STRING .1.3.6.1.4.1.18.3.5.3.26.5.1.10 |
wfIpsecEspSaVerifyPadThis attribute enables checking of the pad field of ESP
packets making sure it is in expected numeric ascending
order. Packets with bad padding are discarded.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.5.1.11 |
wfIpsecEspSaResetReset IPSec SA statistics indicator.rw INTEGER .1.3.6.1.4.1.18.3.5.3.26.5.1.12 |
wfIpsecEspSaBadAuthenThe number of received encrypted packets that could
not be properly authenticated.ro Counter .1.3.6.1.4.1.18.3.5.3.26.5.1.13 |
wfIpsecEspSaBadDecryptThe number of received packets that could
not be properly decrypted.ro Counter .1.3.6.1.4.1.18.3.5.3.26.5.1.14 |
wfIpsecEspSaBadPadThe number of received packets that contained
bad padding information.ro Counter .1.3.6.1.4.1.18.3.5.3.26.5.1.15 |
wfIpsecEspSaProtectPktThe number of successfully encrypted packets.ro Counter .1.3.6.1.4.1.18.3.5.3.26.5.1.16 |
wfIpsecEspSaUnprotectPktThe number of successfully decrypted packets.ro Counter .1.3.6.1.4.1.18.3.5.3.26.5.1.17 |
wfIpsecEspSaEncryptByteThe number of successfully encrypted bytes.ro Counter .1.3.6.1.4.1.18.3.5.3.26.5.1.18 |
wfIpsecEspSaDecryptByteThe number of successfully encrypted bytes.ro Counter .1.3.6.1.4.1.18.3.5.3.26.5.1.19 |
wfIpsecEspSaModeIdentifies mode of the SA.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.5.1.20 |
wfIpsecEspSaPfsIdentifies whether this SA has perfect forward secrecy or
not.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.5.1.21 |
wfIpsecEspSaExpiryTypeThe units used to interpret the expiry value. The SA's
keys don't expire when this is set to none.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.5.1.22 |
wfIpsecEspSaExpiryValueThe value used to determine when the keys for this SA
expire.rw INTEGER .1.3.6.1.4.1.18.3.5.3.26.5.1.23 |
wfIpsecStatsTableThe interface statistics table SEQUENCE OF WfIpsecStatsEntry .1.3.6.1.4.1.18.3.5.3.26.6 |
wfIpsecStatsEntryEntry in Interface Statistics Table WfIpsecStatsEntry .1.3.6.1.4.1.18.3.5.3.26.6.1 |
wfIpsecStatsCreateCreate/Delete parameter.ro Enumeration .1.3.6.1.4.1.18.3.5.3.26.6.1.1 |
wfIpsecStatsInterfaceThe IP address of the security gateway which these statistics
belong to.ro IpAddress .1.3.6.1.4.1.18.3.5.3.26.6.1.2 |
wfIpsecStatsCircuitThe ID of the Circuit to which this
instance applies.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.6.1.3 |
wfIpsecStatsResetReset IPSec statistics indicator.rw INTEGER .1.3.6.1.4.1.18.3.5.3.26.6.1.4 |
wfIpsecStatsUnprotectPktThe number of received packets successfully
decrypted.ro Counter .1.3.6.1.4.1.18.3.5.3.26.6.1.5 |
wfIpsecStatsProtectPktThe number of received packets successfully
encrypted.ro Counter .1.3.6.1.4.1.18.3.5.3.26.6.1.6 |
wfIpsecStatsBypassPktThe number of received packets that have
bypassed.ro Counter .1.3.6.1.4.1.18.3.5.3.26.6.1.7 |
wfIpsecStatsDropPktThe number of received packets that have
been dropped.ro Counter .1.3.6.1.4.1.18.3.5.3.26.6.1.8 |
wfIpsecStatsNoSaThe number of received packets for which
no SA was found.ro Counter .1.3.6.1.4.1.18.3.5.3.26.6.1.9 |
wfIpsecStatsLastBadSpiThe last security parameters index for which
no SA could be found.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.6.1.10 |
wfIpsecStatsNoPolicyMatchThe number of received packets for which
no policy match could be found.ro Counter .1.3.6.1.4.1.18.3.5.3.26.6.1.11 |
wfIpsecStatsSaExpDropBytesThe number of bytes discarded owing to SA Expiryro Counter .1.3.6.1.4.1.18.3.5.3.26.6.1.12 |
wfIpsecStatsOutClipsThe number of outbound packets clipped due to
buffer congestion.ro Counter .1.3.6.1.4.1.18.3.5.3.26.6.1.13 |
wfIpsecStatsInClipsThe number of inbound packets clipped due to
buffer congestion.ro Counter .1.3.6.1.4.1.18.3.5.3.26.6.1.14 |
wfIpsecRemoteGatewayTableA table of known remote Security Gateways. SEQUENCE OF WfIpsecRemoteGatewayEntry .1.3.6.1.4.1.18.3.5.3.26.7 |
wfIpsecRemoteGatewayEntryA remote Security Gateway WfIpsecRemoteGatewayEntry .1.3.6.1.4.1.18.3.5.3.26.7.1 |
wfIpsecRemoteGatewayCreatecreates or deletes an instance.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.7.1.1 |
wfIpsecRemoteGatewayEnableenables and disables this instance.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.7.1.2 |
wfIpsecRemoteGatewayStatusDefines the current status of the instance:
inactive - ?
active - ?
error - ?ro Enumeration .1.3.6.1.4.1.18.3.5.3.26.7.1.3 |
wfIpsecRemoteGatewayInterfaceThe address of the IP interface to which this
instance applies.ro IpAddress .1.3.6.1.4.1.18.3.5.3.26.7.1.4 |
wfIpsecRemoteGatewayCircuitThe ID of the Circuit to which the instance applies.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.7.1.5 |
wfIpsecRemoteGatewayIndexAn index used to differentiate remote gateway instances.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.7.1.6 |
wfIpsecRemoteGatewayIpAddrThe address of the remote gateway.rw IpAddress .1.3.6.1.4.1.18.3.5.3.26.7.1.7 |
wfIpsecRemoteGatewayRangeThe range of destination IP addresses that the remote
security gateway represents.rw OCTET STRING .1.3.6.1.4.1.18.3.5.3.26.7.1.8 |
wfIpsecRemoteGatewayNamename of the remote security gateway.rw DisplayString (SNMPv2-TC) .1.3.6.1.4.1.18.3.5.3.26.7.1.9 |
wfIpsecProposalTableTable of IP security proposals SEQUENCE OF WfIpsecProposalEntry .1.3.6.1.4.1.18.3.5.3.26.8 |
wfIpsecProposalEntryAn IP security Proposal. This is essentially a sequence
of protection suites represented by wfIpsecSuiteEntry
instances WfIpsecProposalEntry .1.3.6.1.4.1.18.3.5.3.26.8.1 |
wfIpsecProposalCreateCreate/Delete parameter. Default is created.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.8.1.1 |
wfIpsecProposalStatusThe status of this Proposal.ro Enumeration .1.3.6.1.4.1.18.3.5.3.26.8.1.2 |
wfIpsecProposalNameProposal name.rw DisplayString (SNMPv2-TC) .1.3.6.1.4.1.18.3.5.3.26.8.1.3 |
wfIpsecProposalNumberA number that identifies this proposal.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.8.1.4 |
wfIpsecProposalSuitesthe octet string contains a list of ordered, 2 byte numbers
that correspond to wfIpsecSuiteEntry instance ID's.
The list of protection suites is a logically ANDed list.
This allows multiple protocols to be used for a policy.rw Opaque .1.3.6.1.4.1.18.3.5.3.26.8.1.5 |
wfIpsecSuiteTableTable of IP security protection suites SEQUENCE OF WfIpsecSuiteEntry .1.3.6.1.4.1.18.3.5.3.26.9 |
wfIpsecSuiteEntryAn IP security protection suite WfIpsecSuiteEntry .1.3.6.1.4.1.18.3.5.3.26.9.1 |
wfIpsecSuiteCreateCreate/Delete parameter. Default is created.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.9.1.1 |
wfIpsecSuiteStatusThe status of this Suite.ro Enumeration .1.3.6.1.4.1.18.3.5.3.26.9.1.2 |
wfIpsecSuiteNameSuite name.rw DisplayString (SNMPv2-TC) .1.3.6.1.4.1.18.3.5.3.26.9.1.3 |
wfIpsecSuiteNumberA number that identifies this protection suite.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.9.1.4 |
wfIpsecSuiteEspProtocolThe ordered sequence of wfIpsecEspTransformEntry instances that
comprise this protection suite.rw Opaque .1.3.6.1.4.1.18.3.5.3.26.9.1.5 |
wfIpsecSuiteAhProtocolThe ordered sequence of wfIpsecAhProposalEntry instances that
comprise this protection suite.rw Opaque .1.3.6.1.4.1.18.3.5.3.26.9.1.6 |
wfIpsecEspTransformTableTable of IP security policies SEQUENCE OF WfIpsecEspTransformEntry .1.3.6.1.4.1.18.3.5.3.26.10 |
wfIpsecEspTransformEntryAn IP security ESP Transform WfIpsecEspTransformEntry .1.3.6.1.4.1.18.3.5.3.26.10.1 |
wfIpsecEspTransformCreateCreate/Delete parameter. Default is created.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.10.1.1 |
wfIpsecEspTransformStatusThe status of this ESP Transform.ro Enumeration .1.3.6.1.4.1.18.3.5.3.26.10.1.2 |
wfIpsecEspTransformNameESP Transform name.rw DisplayString (SNMPv2-TC) .1.3.6.1.4.1.18.3.5.3.26.10.1.3 |
wfIpsecEspTransformNumberA number that identifies this ESP proposal.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.10.1.4 |
wfIpsecEspTransformCipherAlgThe cipher algorithm for ESP.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.10.1.5 |
wfIpsecEspTransformKeyLengthThe key length for the ESP cipher algorithm.rw INTEGER .1.3.6.1.4.1.18.3.5.3.26.10.1.6 |
wfIpsecEspTransformIntegrityAlgThe algorithm for ESP Auth.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.10.1.7 |
wfIpsecEspTransformExpiryTimeThe value used to determine when the keys for this SA
expire due to the passage of time. The units are minutes.
The minium recommended value is 10 min.rw INTEGER .1.3.6.1.4.1.18.3.5.3.26.10.1.8 |
wfIpsecEspTransformExpiryMBytesThe value used to determine when the keys for this SA
expire due to the number of bytes processed. The units are
mega-bytes. The minium recommended value is 10 Mbytes. A
value of 0 indicates that MByte expiry is not desired.rw INTEGER .1.3.6.1.4.1.18.3.5.3.26.10.1.9 |
wfIpsecEspTransformExpiryPrefThe value used to determine precedence between time/kbyte
expiryrw Enumeration .1.3.6.1.4.1.18.3.5.3.26.10.1.10 |
wfIpsecAhTransformTableTable of IP security policies SEQUENCE OF WfIpsecAhTransformEntry .1.3.6.1.4.1.18.3.5.3.26.11 |
wfIpsecAhTransformEntryAn IP security AhTransform WfIpsecAhTransformEntry .1.3.6.1.4.1.18.3.5.3.26.11.1 |
wfIpsecAhTransformCreateCreate/Delete parameter. Default is created.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.11.1.1 |
wfIpsecAhTransformStatusThe status of this AhTransform.ro Enumeration .1.3.6.1.4.1.18.3.5.3.26.11.1.2 |
wfIpsecAhTransformNameAhTransform name.rw DisplayString (SNMPv2-TC) .1.3.6.1.4.1.18.3.5.3.26.11.1.3 |
wfIpsecAhTransformNumberA number that identifies this AH proposal.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.11.1.4 |
wfIpsecAhTransformIntegrityAlgThe algorithm for AH.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.11.1.5 |
wfIpsecAhTransformGroupThe DH grouprw Enumeration .1.3.6.1.4.1.18.3.5.3.26.11.1.6 |
wfIpsecAhTransformExpiryTypeThe units used to interpret the expiry value. The SA's
keys don't expire when this is set to none.rw Enumeration .1.3.6.1.4.1.18.3.5.3.26.11.1.7 |
wfIpsecAhTransformExpiryValueThe value used to determine when the keys for this SA
expire.rw INTEGER .1.3.6.1.4.1.18.3.5.3.26.11.1.8 |
wfIpsecSaStatsTableThe Ipsec automated SA table SEQUENCE OF WfIpsecSaStatsEntry .1.3.6.1.4.1.18.3.5.3.26.12 |
wfIpsecSaStatsEntryEntry in Automated ESP SA table WfIpsecSaStatsEntry .1.3.6.1.4.1.18.3.5.3.26.12.1 |
wfIpsecSaStatsStatusThe current status of this Security Association:
up: this SA is in use
down: this SA is misconfigured ???
inactive: this SA is disabled ???
notpresent: the IPsec code isn't loaded ???ro Enumeration .1.3.6.1.4.1.18.3.5.3.26.12.1.1 |
wfIpsecSaStatsSrcThe IP address of the SA's source.ro IpAddress .1.3.6.1.4.1.18.3.5.3.26.12.1.2 |
wfIpsecSaStatsDestThe IP address of the SA's destination.ro IpAddress .1.3.6.1.4.1.18.3.5.3.26.12.1.3 |
wfIpsecSaStatsSpiThe security parameters indexro Gauge .1.3.6.1.4.1.18.3.5.3.26.12.1.4 |
wfIpsecSaStatsProtoThe protocol used by this SA.ro Enumeration .1.3.6.1.4.1.18.3.5.3.26.12.1.5 |
wfIpsecSaStatsCipherAlgIdentifies cipher algorithm for this SA.ro Enumeration .1.3.6.1.4.1.18.3.5.3.26.12.1.6 |
wfIpsecSaStatsIntegrityAlgThe algorithm for ESP Auth.ro Enumeration .1.3.6.1.4.1.18.3.5.3.26.12.1.7 |
wfIpsecSaStatsBadAuthenThe number of received encrypted packets that could
not be properly authenticated.ro Counter .1.3.6.1.4.1.18.3.5.3.26.12.1.8 |
wfIpsecSaStatsBadDecryptThe number of received packets that could
not be properly decrypted.ro Counter .1.3.6.1.4.1.18.3.5.3.26.12.1.9 |
wfIpsecSaStatsBadPadThe number of received packets that contained
bad padding information.ro Counter .1.3.6.1.4.1.18.3.5.3.26.12.1.10 |
wfIpsecSaStatsProtectPktThe number of successfully encrypted packets.ro Counter .1.3.6.1.4.1.18.3.5.3.26.12.1.11 |
wfIpsecSaStatsUnprotectPktThe number of successfully decrypted packets.ro Counter .1.3.6.1.4.1.18.3.5.3.26.12.1.12 |
wfIpsecSaStatsEncryptByteThe number of successfully encrypted bytes.ro Counter .1.3.6.1.4.1.18.3.5.3.26.12.1.13 |
wfIpsecSaStatsDecryptByteThe number of successfully encrypted bytes.ro Counter .1.3.6.1.4.1.18.3.5.3.26.12.1.14 |
wfIpsecSaStatsModeIdentifies mode of the SA.ro Enumeration .1.3.6.1.4.1.18.3.5.3.26.12.1.15 |
wfIpsecSaStatsPfsIdentifies whether this SA has perfect forward secrecy or
not.ro Enumeration .1.3.6.1.4.1.18.3.5.3.26.12.1.16 |
wfIpsecSaStatsExpiryTypeThe units used to interpret the expiry value. The SA's
keys don't expire when this is set to none.ro Enumeration .1.3.6.1.4.1.18.3.5.3.26.12.1.17 |
wfIpsecSaStatsExpiryValueThe value used to determine when the keys for this SA
expire.ro INTEGER .1.3.6.1.4.1.18.3.5.3.26.12.1.18 |