XEDIA-AUTHENTICATION-MIB
AI MIB Summary
The XEDIA-AUTHENTICATION-MIB provides SNMP objects to monitor and manage user authentication states, session validity, and access control events on Xedia network appliances. It enables administrators to track authentication failures, active session counts, and policy enforcement metrics for device security auditing.
This module defines objects for the management of the User Authentication mechanism in Xedia devices.
Main OID:
xediaAuthenticationMIB.1.3.6.1.4.1.838.3.17
71
Objects
Active
Status
4
Dependencies
Imported Objects
Objects
71 total| Object Name |
|---|
xediaAuthenticationMIBThis module defines objects for the management of the
User Authentication mechanism in Xedia devices. MODULE-IDENTITY .1.3.6.1.4.1.838.3.17 |
xAuthenticationObjects OBJECT IDENTIFIER .1.3.6.1.4.1.838.3.17.1 |
xAuthConfigObjects OBJECT IDENTIFIER .1.3.6.1.4.1.838.3.17.1.1 |
xauthCfgUserActgSizeThe configured size of the user accounting list. Changes to this
parameter require a node boot to take affect.rw Integer32 .1.3.6.1.4.1.838.3.17.1.1.1 |
xauthCfgUserActgLogControlThe preference determining which types of accounting messages will
be recorded. The 'logStart' will record all user session 'start'
messages. The 'logStop' will record all user session 'stop' messages.
And 'logUpdate' will record any update messages that may be sent
during a session.rw BIT STRING { logStart(0), logStop(1), logUpdate(2) } .1.3.6.1.4.1.838.3.17.1.1.2 |
xauthCfgEnableUserPasswordAuthThe subsystems expected to perform username-password authentiation
for dial-in users.rw BIT STRING { ipsec(0), ppp(1) } .1.3.6.1.4.1.838.3.17.1.1.3 |
xAuthOperObjects OBJECT IDENTIFIER .1.3.6.1.4.1.838.3.17.1.2 |
xauthOperUserActgSizeThe operational size of the user accounting list.ro Integer32 .1.3.6.1.4.1.838.3.17.1.2.1 |
xauthOperUserActgIndexCurrThe current index of the accounting list. A zero is used to
represent an empty list.ro Gauge32 .1.3.6.1.4.1.838.3.17.1.2.2 |
xauthOperAuthQCurrThe current number of elements in the Authentication queue.ro Integer32 .1.3.6.1.4.1.838.3.17.1.2.3 |
xauthOperAuthQMaxThe maximum number of elements in the Authentication queue
at one time.ro Gauge32 .1.3.6.1.4.1.838.3.17.1.2.4 |
xauthOperAuthExpectedThe expected number of elements in the Authentication queue by
monitoring the enqueue/dequeue operations.ro Integer32 .1.3.6.1.4.1.838.3.17.1.2.5 |
xauthOperAuthEnqueuedThe number of requested posted to the Authentication queue.ro Counter32 .1.3.6.1.4.1.838.3.17.1.2.6 |
xauthOperAuthDequeuedThe number of requested removed from the Authentication queue.ro Counter32 .1.3.6.1.4.1.838.3.17.1.2.7 |
xauthOperActgQCurrThe current number of elements in the Accounting queue.ro Integer32 .1.3.6.1.4.1.838.3.17.1.2.8 |
xauthOperActgQMaxThe maximum number of elements in the Accounting queue
at one time.ro Gauge32 .1.3.6.1.4.1.838.3.17.1.2.9 |
xauthOperActgExpectedThe expected number of elements in the Accounting queue by
monitoring the enqueue/dequeue operations.ro Integer32 .1.3.6.1.4.1.838.3.17.1.2.10 |
xauthOperActgEnqueuedThe number of requested posted to the Accounting queue.ro Counter32 .1.3.6.1.4.1.838.3.17.1.2.11 |
xauthOperActgDequeuedThe number of requested removed from the Accounting queue.ro Counter32 .1.3.6.1.4.1.838.3.17.1.2.12 |
xauthOperRespQCurrThe current number of elements in the Response queue.ro Integer32 .1.3.6.1.4.1.838.3.17.1.2.13 |
xauthOperRespQMaxThe maximum number of elements in the Response queue
at one time.ro Gauge32 .1.3.6.1.4.1.838.3.17.1.2.14 |
xauthOperRespExpectedThe expected number of elements in the Response queue by
monitoring the enqueue/dequeue operations.ro Integer32 .1.3.6.1.4.1.838.3.17.1.2.15 |
xauthOperRespEnqueuedThe number of requested posted to the Response queue.ro Counter32 .1.3.6.1.4.1.838.3.17.1.2.16 |
xauthOperRespDequeuedThe number of requested removed from the Response queue.ro Counter32 .1.3.6.1.4.1.838.3.17.1.2.17 |
xauthOperDeleteListCurrThe current number of elements in the Delete List.ro Integer32 .1.3.6.1.4.1.838.3.17.1.2.18 |
xauthOperDeleteListMaxThe maximum number of elements in the Delete List
at one time.ro Gauge32 .1.3.6.1.4.1.838.3.17.1.2.19 |
xauthOperDeleteExpectedThe expected number of elements in the Delete list by
monitoring the enqueue/dequeue operations.ro Integer32 .1.3.6.1.4.1.838.3.17.1.2.20 |
xauthOperDeleteEnqueuedThe number of requested posted to the Delete list.ro Counter32 .1.3.6.1.4.1.838.3.17.1.2.21 |
xauthOperDeleteDequeuedThe number of requested removed from the Delete list.ro Counter32 .1.3.6.1.4.1.838.3.17.1.2.22 |
xauthOperAuthReqTotalThe count of total authentication requests.ro Counter32 .1.3.6.1.4.1.838.3.17.1.2.23 |
xauthOperAuthReqPassThe count of authentication requests that were authenticated.ro Counter32 .1.3.6.1.4.1.838.3.17.1.2.24 |
xauthOperAuthReqFailThe count of total authentication requests that were
not authenticated due to timeouts, or rejects.ro Counter32 .1.3.6.1.4.1.838.3.17.1.2.25 |
xauthOperActgReqTotalThe count of total authentication requests.ro Counter32 .1.3.6.1.4.1.838.3.17.1.2.26 |
xauthOperActgResponseThe count of successful accounting responses.ro Counter32 .1.3.6.1.4.1.838.3.17.1.2.27 |
xauthOperActgFailThe count of accounting responses that were not successful.ro Counter32 .1.3.6.1.4.1.838.3.17.1.2.28 |
xauthOperBadRequestsThe count of invalid requests from calling applications.ro Counter32 .1.3.6.1.4.1.838.3.17.1.2.29 |
xAuthUsers OBJECT IDENTIFIER .1.3.6.1.4.1.838.3.17.1.3 |
xAuthUserStats OBJECT IDENTIFIER .1.3.6.1.4.1.838.3.17.1.3.1 |
xauthUserUserCountThe current number of user entries defined.ro Integer32 .1.3.6.1.4.1.838.3.17.1.3.1.1 |
xAuthUserTableThe Authentication User table. Remote dial-in clients can be
authenticated: locally using an internal database, or externally
using a Radius server server. Clients are defined internally
in this table. This table can have a special '<default>' entry
that defines the default user authentication method and
default client group name. The table lookup is always done first.
If the client's name is not found a 'default' entry defines
an alternative authentication methanism. If the 'default' entry
is not defined, and the client is not found in the table, the
client is denied access to the network, i.e. IPsec security
associations will not be created. If the client's name is
found in the table, the xauthUserAuthenProtocol
defines which authenication mechanism is to be used.
Specific users CAN be excluded by specifying 'always reject'
in the authentication protocol. The 'default' user can be
set to 'always accept' to allow ALL undefined users to
be automatically authenticated.
For 'internal authentication', whether through a specific
entry, or the default entry, the requested password must
match the configured password. '
Remote client example:
xauthUserName = xyz@company.com,
xauthUserPassword = abc,
xauthUserClientGroup = Engineering,
xauthUserAuthenProtocol = internalAuthentication. SEQUENCE OF XAuthUserEntry .1.3.6.1.4.1.838.3.17.1.3.2 |
xAuthUserEntryAn entry containing information applicable to a
particular User. XAuthUserEntry .1.3.6.1.4.1.838.3.17.1.3.2.1 |
xauthUserNameThe name of the remote client (like a user name). The name
may be of the form User-Name or User-Name@company.com. DisplayString .1.3.6.1.4.1.838.3.17.1.3.2.1.1 |
xauthUserPasswordThe client's password, an ASCII string. The password is used
during 'internal authentication' by comparing it to the
password specified by the user.rw DisplayString .1.3.6.1.4.1.838.3.17.1.3.2.1.2 |
xauthUserClientGroupThe client group name in clientGroupTable.
For IPSec client connections, this object identifies the
IPSec client group tunnel or transport with which the
client will be associated.rw DisplayString .1.3.6.1.4.1.838.3.17.1.3.2.1.3 |
xauthUserAuthenProtocolDefines the method of authentication. Either individual
users, or the <default> entry can accomodate various methods
of authentication. The 'always reject' will prohibit the
corresponding user (specific or default) from ever being
authenticated. The use of 'always accept' will always
authenticate the corresponding user, regardless of which
password was used. 'Internal Authentication' performs
password validation for a specific user. 'Radius Authentication'
attempts to use a configured Radius server to determine whether
or not a user is authenticated.rw Enumeration .1.3.6.1.4.1.838.3.17.1.3.2.1.4 |
xauthUserRowStatusThis object allows entries to be created and deleted in this
table.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.838.3.17.1.3.2.1.5 |
xAuthUserActgTable SEQUENCE OF XAuthUserActgEntry .1.3.6.1.4.1.838.3.17.1.3.3 |
xAuthUserActgEntryAn entry containing additional management information XAuthUserActgEntry .1.3.6.1.4.1.838.3.17.1.3.3.1 |
xauthUserActgIndexThe numeric index into the circular list which represents
the tunnel entries in the order inwhich they were created.
The list is of a limited length, as configured by the
object 'xauthCfgUserActgSize', and the list wraps with the
oldest entries being replaced with the newest entries. Integer32 .1.3.6.1.4.1.838.3.17.1.3.3.1.1 |
xauthUserActgNameThe username associated with the particular accounting record.ro DisplayString (SNMPv2-TC) .1.3.6.1.4.1.838.3.17.1.3.3.1.2 |
xauthUserActgRecordTypeThe record type of the recorded accounting entry. The start/stop
messages mark the beginning and ending of a user session. The update
messages are periodic statistics update messages that MAY be used by
some of the internal application. These update messages are optional.ro Enumeration .1.3.6.1.4.1.838.3.17.1.3.3.1.3 |
xauthUserActgTunnelInfoThe additional tunnel and interface information associated with the
particular accounting record.ro DisplayString (SNMPv2-TC) .1.3.6.1.4.1.838.3.17.1.3.3.1.4 |
xauthUserActgSessionIDThe unique identification string of the session.ro DisplayString (SNMPv2-TC) .1.3.6.1.4.1.838.3.17.1.3.3.1.5 |
xauthUserActgStartTimeThe value of sysUpTime (rounded to the full second value) at the
creation of the session.ro TimeTicks (SNMPv2-SMI) .1.3.6.1.4.1.838.3.17.1.3.3.1.6 |
xauthUserActgEndTimeThe value of sysUpTime (rounded to the full second value) at the
termination of the session.ro TimeTicks (SNMPv2-SMI) .1.3.6.1.4.1.838.3.17.1.3.3.1.7 |
xauthUserActgSessionTimeThe number of seconds representing the duration of the session.ro Counter32 .1.3.6.1.4.1.838.3.17.1.3.3.1.8 |
xauthUserActgRxBytesThe number of bytes received during the particular session.ro Counter32 .1.3.6.1.4.1.838.3.17.1.3.3.1.9 |
xauthUserActgTxBytesThe number of bytes transmitted during the particular session.ro Counter32 .1.3.6.1.4.1.838.3.17.1.3.3.1.10 |
xauthUserActgRxPktsThe number of packets received during the particular session.ro Counter32 .1.3.6.1.4.1.838.3.17.1.3.3.1.11 |
xauthUserActgTxPktsThe number of packets transmitted during the particular session.ro Counter32 .1.3.6.1.4.1.838.3.17.1.3.3.1.12 |
xAuthDebugUserObjects OBJECT IDENTIFIER .1.3.6.1.4.1.838.3.17.1.4 |
xauthDebugUserNameThe user name identifying which user is being debugged.rw DisplayString (SNMPv2-TC) .1.3.6.1.4.1.838.3.17.1.4.1 |
xAuthDebugUserTableThe Authentication Debug User table. SEQUENCE OF XAuthDebugUserEntry .1.3.6.1.4.1.838.3.17.1.4.2 |
xAuthDebugUserEntryAn entry containing debug information applicable to a
particular User. XAuthDebugUserEntry .1.3.6.1.4.1.838.3.17.1.4.2.1 |
xauthDebugUserIndexThe index into the display table of debug information. Integer32 .1.3.6.1.4.1.838.3.17.1.4.2.1.1 |
xauthDebugUserRequestDebug information related to the last request of the user
currently being debugged.ro DisplayString (SNMPv2-TC) .1.3.6.1.4.1.838.3.17.1.4.2.1.2 |
xauthDebugUserResponseDebug information related to the last response of the user
currently being debugged.ro DisplayString (SNMPv2-TC) .1.3.6.1.4.1.838.3.17.1.4.2.1.3 |
xauthDebugUserAppRequestDebug information related to the application's view of the
request (prior to it being issued) of the user currently
being debugged.ro DisplayString (SNMPv2-TC) .1.3.6.1.4.1.838.3.17.1.4.2.1.4 |
xAuthenticationConformance OBJECT IDENTIFIER .1.3.6.1.4.1.838.3.17.2 |
xauthCompliances OBJECT IDENTIFIER .1.3.6.1.4.1.838.3.17.2.1 |
xauthGroups OBJECT IDENTIFIER .1.3.6.1.4.1.838.3.17.2.2 |