MIBs Depot

CISCO-USER-CONNECTION-TAP-MIB

Registered at
1.3.6.1.4.1.9.9.400
Last updated
2007-08-09 00:00
Organization
Cisco Systems, Inc.
Revisions
2007-08-09 00:00, 2004-03-11 00:00
Namespace
cisco
Source file
CISCO-USER-CONNECTION-TAP-MIB
Digest
sha256:89e0a6cb5fc110213d2f8a5098f9b1c2d6477542b5bbee8e550cddf3f4f6a7a3

Description

This module manages Cisco's intercept feature for user connections. This MIB is used along with CISCO-TAP2-MIB to intercept user traffic. CISCO-TAP2-MIB along with specific filter MIBs like this MIB replace CISCO-TAP-MIB. To create an user connection intercept, an entry cuctTapStreamEntry is created which contains the filter details. An entry cTap2StreamEntry of CISCO-TAP2-MIB is created, which is the common stream information for all kinds of intercepts and type of the specific stream is set to userconnection in this entry.

Contact

Cisco Systems Customer Service Postal:170 W. Tasman Drive San Jose, CA 95134 USA Tel:+1 800 553-NETS E-mail:cs-li@cisco.com

Imports

FromSymbols
CISCO-SMIciscoMgmt
CISCO-TAP2-MIBcTap2MediationContentId, cTap2StreamIndex
SNMPv2-CONFMODULE-COMPLIANCE, NOTIFICATION-GROUP, OBJECT-GROUP
SNMPv2-SMIMODULE-IDENTITY, NOTIFICATION-TYPE, OBJECT-IDENTITY, OBJECT-TYPE, Unsigned32, iso
SNMPv2-TCDisplayString, RowStatus, TEXTUAL-CONVENTION

Imported by

Nothing in this corpus imports this module.

Load order

Every file a consumer needs in order to load this module, dependencies first.

CISCO-SMI
CISCO-TAP2-MIB
CISCO-USER-CONNECTION-TAP-MIB
IANAifType-MIB
IF-MIB
INET-ADDRESS-MIB
SNMP-FRAMEWORK-MIB
SNMPv2-CONF
SNMPv2-MIB
SNMPv2-SMI
SNMPv2-TC

Objects

NameOIDSyntaxAccessStatus
cUserConnectionTapMIBObjects
OBJECT-IDENTITY
1.3.6.1.4.1.9.9.400.1
cuctTapStreamEncodePacket
OBJECT-IDENTITY
1.3.6.1.4.1.9.9.400.1.1
cuctTapStreamCapabilities
OBJECT-TYPE
This object displays the types of intercepts supported on this device. This may be dependent on hardware capabilities or software capabilities. The value of this object is non zero, if the device supports interception of user connection traffic. A device may support both types of intercepts at the same time. The following fields may be supported: acctSessonId: packets belonging to a user connection identified by RADIUS attribute account-session-ID may be intercepted. tapEnable: set if table entries with cTap2StreamInterceptEnable set to 'false' are used to pre-screen packets for intercept; otherwise these entries are ignored.
1.3.6.1.4.1.9.9.400.1.1.1Bits {tapEnable(0), acctSessionId(1)}read-onlycurrent
cuctTapStreamTable
OBJECT-TYPE
The Intercept Stream Connection Table lists the user connections (sessions) to be intercepted. The same data stream may be required by multiple taps, and one might assume that often the intercepted stream is a small subset of the traffic that could be intercepted. This essentially provides options for packet selection. The only option available is RADIUS attribute 44, account session ID. When a user tries to use a service provided by a Network Access Server(NAS) such as PPP, NAS authenticates the user with RADIUS server. Upon successful authentication of the user, the user is provided with the requested service and NAS creates an accounting record with RADIUS accounting server for the user. The NAS assigns a unique account session id for the user session in the accounting record created with the RADIUS server. The account session ID may be used to intercept traffic belonging to the user session. The value of first index is that of an entry in the cTap2MediationTable, which identifies the application to which intercepted traffic will be sent to. The second index permits connection classifiers to be used to identify traffic to be intercepted. The value of the second index is that of the stream's counter entry in the cTap2StreamTable.
1.3.6.1.4.1.9.9.400.1.1.2not-accessiblecurrent
cuctTapStreamEntry
OBJECT-TYPE
A stream entry indicates a single data stream to be intercepted to a Mediation Device. Many selected data streams may go to the same application interface, and many application interfaces are supported.
1.3.6.1.4.1.9.9.400.1.1.2.1not-accessiblecurrent
cuctTapStreamAcctSessID
OBJECT-TYPE
This is the RADIUS attribute 44 acct-session-ID. It identifies a user connection. It is used to specify a user connection to intercept.
1.3.6.1.4.1.9.9.400.1.1.2.1.1Unsigned32 (0..4294967295)read-createcurrent
cuctTapStreamStatus
OBJECT-TYPE
The status of this conceptual row. This object manages creation, modification, and deletion of rows in this table. When any rows must be changed, cuctTapStreamStatus must be first set to 'notInService'.
1.3.6.1.4.1.9.9.400.1.1.2.1.2RowStatusread-createcurrent
cUserConnectionTapMIBConform
OBJECT-IDENTITY
1.3.6.1.4.1.9.9.400.2
cUserConnectionTapMIBCompliances
OBJECT-IDENTITY
1.3.6.1.4.1.9.9.400.2.1
cUserConnectionTapMIBGroups
OBJECT-IDENTITY
1.3.6.1.4.1.9.9.400.2.2

Conformance

NameOIDStatus
cUserConnectionTapMIBCompliance
MODULE-COMPLIANCE
The compliance statement for entities which implement the Cisco Intercept MIB for user connections.
1.3.6.1.4.1.9.9.400.2.1.1current
cuctTapStreamComplianceGroup
OBJECT-GROUP
These objects are necessary for a description of user traffic packets to select for interception.
1.3.6.1.4.1.9.9.400.2.2.1current