CM-SECURITY-MIB
- Registered at
- 1.3.6.1.4.1.2544.1.12.10
- Last updated
- 2021-01-28 00:00
- Organization
- ADVA Optical Networking SE
- Revisions
- 2021-01-28 00:00
- Namespace
- adva
- Source file
CM-SECURITY-MIB- Digest
sha256:9ad170daa57bd2e0033e069d3aca0b55af4672ec6d8b7d2de27c72bbcf5fc12e
Description
This module defines the Security MIB definitions used by the F3 (FSP150CM/CC) product lines. These are used to manage the user/authentication for CLI/GUI sessions. Copyright (C) ADVA.
Contact
Web URL: http://adva.com/ E-mail: support@adva.com Postal: ADVA Optical Networking SE Campus Martinsried Fraunhoferstrasse 9a 82152 Martinsried/Munich Germany Phone: +49 089 89 06 65 0 Fax: +49 089 89 06 65 199
Imports
| From | Symbols |
|---|---|
| ADVA-MIB | fsp150cm |
| CM-COMMON-MIB | IpVersion, UserInterfaceType |
| IPV6-TC | Ipv6Address |
| SNMP-FRAMEWORK-MIB | SnmpAdminString |
| SNMP-USER-BASED-SM-MIB | usmUserEntry |
| SNMPv2-CONF | MODULE-COMPLIANCE, NOTIFICATION-GROUP, OBJECT-GROUP |
| SNMPv2-SMI | Integer32, IpAddress, MODULE-IDENTITY, NOTIFICATION-TYPE, OBJECT-IDENTITY, OBJECT-TYPE, Unsigned32, iso |
| SNMPv2-TC | DateAndTime, DisplayString, RowStatus, StorageType, TEXTUAL-CONVENTION, TruthValue, VariablePointer |
Imported by
Nothing in this corpus imports this module.
Load order
Every file a consumer needs in order to load this module, dependencies first.
ADVA-MIB CM-COMMON-MIB CM-SECURITY-MIB ENTITY-MIB IANA-ENTITY-MIB IANAifType-MIB IF-MIB IPV6-TC SNMP-FRAMEWORK-MIB SNMP-USER-BASED-SM-MIB SNMPv2-CONF SNMPv2-MIB SNMPv2-SMI SNMPv2-TC UUID-TC-MIB
Textual conventions
| Name | OID | Syntax | Access | Status |
|---|---|---|---|---|
| AutoEnrollmentStatus TEXTUAL-CONVENTION Auto enrollment status. | current | |||
| CaAction TEXTUAL-CONVENTION Certificate authority action. | current | |||
| CaRootCertStatus TEXTUAL-CONVENTION Certificate authority root certificate status. | current | |||
| CertificateEnrollmentProtocol TEXTUAL-CONVENTION Protocol type used for automatic certificate enrollment. | current | |||
| CertificateStatus TEXTUAL-CONVENTION Certificate status. | current | |||
| CertificateType TEXTUAL-CONVENTION Certificate type. | current | |||
| CmRemoteAuthOrder TEXTUAL-CONVENTION Enumerations for order for remote authentication access. first - first to access the remote authentication, second - second to access the remote authentication, third - third to access the remote authentication. | current | |||
| CmRemoteAuthProtocol TEXTUAL-CONVENTION Enumerations for remote authentication protocol. none - No remote authentication protocol, radius - RADIUS (Remote Authentication Dial-In User Service), tacacs - TACACS+(Terminal Access Controller Access Control System). | current | |||
| CmSecurityAccessOrder TEXTUAL-CONVENTION Enumerations for order for security access. local - Local database for user/security validation, remote - Remote protocol for user/security validation. | current | |||
| CmSecurityAuthType TEXTUAL-CONVENTION Enumerations for remote authentication protocol types. pap - Password Authentication Protocol, chap - Challenge-Handshake Authentication Protocol. | current | |||
| CmSecurityPolicyStrength TEXTUAL-CONVENTION Enumerations for security policy strength low - Low Security Policy, medium - Medium Security Policy, high - High Security Policy. | current | |||
| CmSecurityPrivLevel TEXTUAL-CONVENTION Enumerations for Security Privilege Level. retrieve - Retrieve Privilege Level (can only VIEW management information), maintenance - Maintenance Privilege Level (can VIEW management, as well as perform maintenance operations such as loopbacks, etherjack diagnosis etc.) provisioning - Provisioning Privilege Level (can perform Provisioning operations) superuser - Super User Privilege Level (can perform all operations) testuser - Retrieve Privilege Level and some maintenance, provisioning operations. cryptouser - Crypto User Privilege Level (can perform security operations) netconf - NETCONF Privilege Level | current | |||
| CsrAction TEXTUAL-CONVENTION generate or delete CSR. | current | |||
| NasIpAddressType TEXTUAL-CONVENTION Nas Ip Address Type. | current | |||
| PrivilegeRequestAction TEXTUAL-CONVENTION Privilege request action. | current | |||
| PrivilegeRequestState TEXTUAL-CONVENTION Privilege request state. | current | |||
| RsaKeyLengthType TEXTUAL-CONVENTION RSA key length. | current | |||
| RsaKeyPairAction TEXTUAL-CONVENTION generate or delete RSA key pair. | current | |||
| RunSelfTestAction TEXTUAL-CONVENTION Run Self-Test. | current | |||
| SecuritySelfTestResult TEXTUAL-CONVENTION Enumerations for Security Self Test Result fail - fail to pass the test, success - success to pass the test. | current | |||
| SecuritySelfTestStatus TEXTUAL-CONVENTION Enumerations for Security Self Test Status notStarted - test not started. inprogress - test is in progress. complete - test has completed. | current | |||
| SecurityUserAction TEXTUAL-CONVENTION Provides ability to manage security users. | current | |||
| SnmpSecurityTrapType TEXTUAL-CONVENTION Provides ability to manage security traps. all - trap is reported when user logs in, logs out or is locked out loginFailed - trap is reported only when user failed to log in disabled - security traps are disabled. | current | |||
| SslCertificateAction TEXTUAL-CONVENTION Provides ability to manage SSL Certificate/Private Key pair. deleteSslKeyPair - delete SSL Certificate/Private Key pair setHttpsSslKeyPair - set SSL Certificate/Private Key pair used for HTTPS addRsaPrivateKey - add RSA Private Key to SSL Certificate/Private Key pair | current | |||
| SslCertificatePrivateKeyPairAction TEXTUAL-CONVENTION SSL certificate/private key pair action. | current | |||
| UsmUserAccessType TEXTUAL-CONVENTION Enumerations for type of USM User read-only - Read only, read-write - Read write , trap-only - Trap Only. | current | |||
| ZeroizeKeysAction TEXTUAL-CONVENTION Zeroize Keys. | current |
Objects
| Name | OID | Syntax | Access | Status |
|---|---|---|---|---|
| cmSecurityObjects OBJECT-IDENTITY | 1.3.6.1.4.1.2544.1.12.10.1 | |||
| cmAuthProtocol OBJECT-TYPE Remote user authentication protocol. | 1.3.6.1.4.1.2544.1.12.10.1.1 | CmRemoteAuthProtocol | read-write | current |
| cmAccessOrder OBJECT-TYPE Order of access for security, i.e. try 'local' first or 'remote' first. | 1.3.6.1.4.1.2544.1.12.10.1.2 | CmSecurityAccessOrder | read-write | current |
| cmAuthType OBJECT-TYPE In case of remote authentication, the chosen protocol. | 1.3.6.1.4.1.2544.1.12.10.1.3 | CmSecurityAuthType | read-write | current |
| cmNASIpAddress OBJECT-TYPE In case of remote authentication RADIUS, the Network Access Server's IP Address. | 1.3.6.1.4.1.2544.1.12.10.1.4 | IpAddress | read-write | current |
| cmSecurityUserTable OBJECT-TYPE A list of entries corresponding to the security users. Entries cannot be created in this table by management application action. | 1.3.6.1.4.1.2544.1.12.10.1.5 | not-accessible | current | |
| cmSecurityUserEntry OBJECT-TYPE An entry containing information applicable to a particular security user. | 1.3.6.1.4.1.2544.1.12.10.1.5.1 | not-accessible | current | |
| cmSecurityUserName OBJECT-TYPE Security User Name. | 1.3.6.1.4.1.2544.1.12.10.1.5.1.1 | DisplayString (SIZE(1..32)) | read-create | current |
| cmSecurityUserComment OBJECT-TYPE Notes on Security User. | 1.3.6.1.4.1.2544.1.12.10.1.5.1.2 | DisplayString (SIZE(0..128)) | read-create | current |
| cmSecurityUserPrivLevel OBJECT-TYPE Security User Privilege Level. | 1.3.6.1.4.1.2544.1.12.10.1.5.1.3 | CmSecurityPrivLevel | read-create | current |
| cmSecurityUserLoginTimeout OBJECT-TYPE Security User Login Timeout. | 1.3.6.1.4.1.2544.1.12.10.1.5.1.4 | Integer32 | read-create | current |
| cmSecurityUserNumFailedLoginAttempts OBJECT-TYPE Security User Number of Failed Login Attempts. | 1.3.6.1.4.1.2544.1.12.10.1.5.1.5 | Integer32 | read-only | current |
| cmSecurityUserLastLoginTime OBJECT-TYPE Security User Last Login Time. | 1.3.6.1.4.1.2544.1.12.10.1.5.1.6 | DateAndTime | read-only | current |
| cmSecurityUserLockedout OBJECT-TYPE Whether the security user has been locked out. | 1.3.6.1.4.1.2544.1.12.10.1.5.1.7 | TruthValue | read-only | current |
| cmSecurityUserLastLockedoutTime OBJECT-TYPE Security User Last Locked out Time. | 1.3.6.1.4.1.2544.1.12.10.1.5.1.8 | DateAndTime | read-only | current |
| cmSecurityUserCliPagingEnable OBJECT-TYPE Whether the security user has CLI paging enabled. | 1.3.6.1.4.1.2544.1.12.10.1.5.1.9 | TruthValue | read-create | current |
| cmSecurityUserRemoteUser OBJECT-TYPE Whether the security user is a remote user. | 1.3.6.1.4.1.2544.1.12.10.1.5.1.10 | TruthValue | read-only | current |
| cmSecurityUserPassword OBJECT-TYPE Password of the security user. Note that this attribute is a SET only attribute. | 1.3.6.1.4.1.2544.1.12.10.1.5.1.11 | DisplayString (SIZE(0..32)) | read-create | current |
| cmSecurityUserStorageType OBJECT-TYPE The type of storage configured for this entry. | 1.3.6.1.4.1.2544.1.12.10.1.5.1.12 | StorageType | read-create | current |
| cmSecurityUserRowStatus OBJECT-TYPE The status of this row. An entry MUST NOT exist in the active state unless all objects in the entry have an appropriate value, as described in the description clause for each writable object. The values of cmSecurityUserRowStatus supported are createAndGo(4) and destroy(6). All mandatory attributes must be specified in a single SNMP SET request with cmSecurityUserRowStatus value as createAndGo(4). Upon successful row creation, this object has a value of active(1). The cmSecurityUserRowStatus object may be modified if the associated instance of this object is equal to active(1). | 1.3.6.1.4.1.2544.1.12.10.1.5.1.13 | RowStatus | read-create | current |
| cmSecurityUserAction OBJECT-TYPE This object provides ability to perform specific actions on security user. remove-lockout - this removes the locked out condition on the security user . | 1.3.6.1.4.1.2544.1.12.10.1.5.1.14 | SecurityUserAction | read-write | current |
| cmSecurityCryptoPassword OBJECT-TYPE Second level password used in connectguard configurations. This applies only to crypto users. Note that this attribute is a SET only attribute. | 1.3.6.1.4.1.2544.1.12.10.1.5.1.15 | DisplayString (SIZE(0..32)) | read-create | current |
| cmSecurityUserRemoteCryptoUser OBJECT-TYPE Indicates if a security user is a remote crypto user. | 1.3.6.1.4.1.2544.1.12.10.1.5.1.16 | TruthValue | read-create | current |
| cmSecurityUserSso2fa OBJECT-TYPE If enabled, user can be used to bypass remote authentication if cmSso2faControl is enabled. This parameter can only be set on user creation | 1.3.6.1.4.1.2544.1.12.10.1.5.1.17 | TruthValue | read-create | current |
| cmRemoteAuthServerTable OBJECT-TYPE A list of entries corresponding to the remote authentication servers. Entries cannot be created in this table by management application action. | 1.3.6.1.4.1.2544.1.12.10.1.6 | not-accessible | current | |
| cmRemoteAuthServerEntry OBJECT-TYPE An entry containing information applicable to a particular remote authentication server. | 1.3.6.1.4.1.2544.1.12.10.1.6.1 | not-accessible | current | |
| cmRemoteAuthServerIndex OBJECT-TYPE Unique index to address/configure a specific Remote Authentication Server. | 1.3.6.1.4.1.2544.1.12.10.1.6.1.1 | Integer32 | read-only | current |
| cmRemoteAuthServerEnabled OBJECT-TYPE This object allows enabling/disabling a Remote Authentication Server. | 1.3.6.1.4.1.2544.1.12.10.1.6.1.2 | TruthValue | read-write | current |
| cmRemoteAuthServerOrder OBJECT-TYPE This object determines the order in which the Remote Authentication Servers are accessed for security information. | 1.3.6.1.4.1.2544.1.12.10.1.6.1.3 | CmRemoteAuthOrder | read-write | current |
| cmRemoteAuthServerIpAddress OBJECT-TYPE This object allows to specify an IP Address for the Remote Authentication Server. | 1.3.6.1.4.1.2544.1.12.10.1.6.1.4 | IpAddress | read-write | current |
| cmRemoteAuthServerPort OBJECT-TYPE This object allows to specify a Port for Remote Authentication Server. | 1.3.6.1.4.1.2544.1.12.10.1.6.1.5 | Integer32 | read-write | current |
| cmRemoteAuthServerNumRetries OBJECT-TYPE This object allows to specify the number of retries the Remote Authentication Server must be tried for security access before giving up. | 1.3.6.1.4.1.2544.1.12.10.1.6.1.6 | Integer32 | read-write | current |
| cmRemoteAuthServerTimeout OBJECT-TYPE This object allows to specify the timeout period for timing out a security access request to the Remote Authentication Server. | 1.3.6.1.4.1.2544.1.12.10.1.6.1.7 | Integer32 | read-write | current |
| cmRemoteAuthServerSecret OBJECT-TYPE This allows configuration of secret password for Remote Authentication Server request. | 1.3.6.1.4.1.2544.1.12.10.1.6.1.8 | DisplayString (SIZE(0..128)) | read-write | current |
| cmRemoteAuthServerAccountingPort OBJECT-TYPE This object allows to specify a Port for RADIUS Accounting. | 1.3.6.1.4.1.2544.1.12.10.1.6.1.9 | Integer32 | read-write | current |
| cmRemoteAuthServerIpVersion OBJECT-TYPE This object describe the Ip Version. | 1.3.6.1.4.1.2544.1.12.10.1.6.1.10 | IpVersion | read-write | current |
| cmRemoteAuthServerIpv6Addr OBJECT-TYPE This object describe the Ipv6 Address. | 1.3.6.1.4.1.2544.1.12.10.1.6.1.11 | Ipv6Address | read-write | current |
| cmSecurityPolicyStrength OBJECT-TYPE This object represents the security policy strength of the system. Based on this value, the system puts additional restrictions on the user id and password rules. | 1.3.6.1.4.1.2544.1.12.10.1.7 | CmSecurityPolicyStrength | read-write | current |
| cmRemoteAuthServerAccountingEnabled OBJECT-TYPE This object allows to enable/disable RADIUS/TACACS+ Accounting on all authentication servers. | 1.3.6.1.4.1.2544.1.12.10.1.8 | TruthValue | read-write | current |
| f3UsmUserTable OBJECT-TYPE This table is the extension of the F3 USM User Table. | 1.3.6.1.4.1.2544.1.12.10.1.9 | not-accessible | current | |
| f3UsmUserEntry OBJECT-TYPE An entry in the F3 USM User Table. | 1.3.6.1.4.1.2544.1.12.10.1.9.1 | not-accessible | current | |
| f3UsmUserAccessType OBJECT-TYPE This indicates the type of USM User, read-only, read-write, trap-only. | 1.3.6.1.4.1.2544.1.12.10.1.9.1.1 | UsmUserAccessType | read-only | current |
| f3TacacsPrivLevelControlEnabled OBJECT-TYPE This object allows to enable/disable the use of ENABLE authorization control to determine the Privilege Level configured by the remote authentication server. This object is only valid for TACACS+. Default value of this object is TRUE. | 1.3.6.1.4.1.2544.1.12.10.1.10 | TruthValue | read-write | current |
| f3TacacsDefaultPrivLevel OBJECT-TYPE This object allows specification of the default privilege level of the TACACS+ user, when the use of ENABLE authorization control is DISABLED, i.e. f3TacacsPrivLevelControlEnabled is set to FALSE. | 1.3.6.1.4.1.2544.1.12.10.1.11 | CmSecurityPrivLevel | read-write | current |
| f3NasIpv6Addr OBJECT-TYPE This object describe the ipv6 address. | 1.3.6.1.4.1.2544.1.12.10.1.12 | Ipv6Address | read-write | current |
| f3SecurityTrapType OBJECT-TYPE This object provides ability to manage whether report security trap. | 1.3.6.1.4.1.2544.1.12.10.1.13 | SnmpSecurityTrapType | read-write | current |
| f3SecurityTrapInfo OBJECT-TYPE This object is used to describe the security trap info. This object is used only in trap and GET operation on this object will return empty string. | 1.3.6.1.4.1.2544.1.12.10.1.14 | DisplayString | read-only | current |
| f3PrivilegeChangeTable OBJECT-TYPE This table is used for Restricted User Login via NMS. This is for users with lower privileges to elevate them to higher ones for limited amount of time. | 1.3.6.1.4.1.2544.1.12.10.1.15 | not-accessible | current | |
| f3PrivilegeChangeEntry OBJECT-TYPE Column for privilegeChangeTable. | 1.3.6.1.4.1.2544.1.12.10.1.15.1 | not-accessible | current | |
| f3PrivilegeChangeId OBJECT-TYPE Unique index identifying a request. | 1.3.6.1.4.1.2544.1.12.10.1.15.1.1 | Unsigned32 (1..4294967295) | not-accessible | current |
| f3PrivilegeChangeUserName OBJECT-TYPE The name string for user authentication purposes | 1.3.6.1.4.1.2544.1.12.10.1.15.1.2 | SnmpAdminString | read-only | current |
| f3PrivilegeChangeIpv4Address OBJECT-TYPE IPv4 address of interface to which user's terminal is connected. | 1.3.6.1.4.1.2544.1.12.10.1.15.1.3 | IpAddress | read-only | current |
| f3PrivilegeChangeIpv6Address OBJECT-TYPE IPv6 address of interface to which user's terminal is connected. | 1.3.6.1.4.1.2544.1.12.10.1.15.1.4 | Ipv6Address | read-only | current |
| f3PrivilegeChangeTerminalIpv4Address OBJECT-TYPE Source IPv4 address of connected terminal. | 1.3.6.1.4.1.2544.1.12.10.1.15.1.5 | IpAddress | read-only | current |
| f3PrivilegeChangeTerminalIpv6Address OBJECT-TYPE Source IPv6 address of connected terminal. | 1.3.6.1.4.1.2544.1.12.10.1.15.1.6 | Ipv6Address | read-only | current |
| f3PrivilegeChangeInterface OBJECT-TYPE Interface used by the user | 1.3.6.1.4.1.2544.1.12.10.1.15.1.7 | UserInterfaceType | read-only | current |
| f3PrivilegeChangeCurrentPrivilege OBJECT-TYPE Current privilege level of the user, who is requesting role upgrade. | 1.3.6.1.4.1.2544.1.12.10.1.15.1.8 | CmSecurityPrivLevel | read-only | current |
| f3PrivilegeChangeRequestedPrivilege OBJECT-TYPE Privilege requested by user for session. | 1.3.6.1.4.1.2544.1.12.10.1.15.1.9 | CmSecurityPrivLevel | read-only | current |
| f3PrivilegeChangeDuration OBJECT-TYPE Requested time period by user (in minutes). | 1.3.6.1.4.1.2544.1.12.10.1.15.1.10 | Unsigned32 (1..480) | read-only | current |
| f3PrivilegeChangeAction OBJECT-TYPE Privilege request action. | 1.3.6.1.4.1.2544.1.12.10.1.15.1.11 | PrivilegeRequestAction | read-write | current |
| f3PrivilegeChangeState OBJECT-TYPE Privilege request state. | 1.3.6.1.4.1.2544.1.12.10.1.15.1.12 | PrivilegeRequestState | read-only | current |
| f3PrivilegeChangeRemainingTime OBJECT-TYPE Time remaining in session with upgrade user privilege (in seconds). | 1.3.6.1.4.1.2544.1.12.10.1.15.1.13 | Unsigned32 | read-only | current |
| f3PrivilegeChangeRemoteName OBJECT-TYPE The name string for Radius/Tacacs authentication purposes. | 1.3.6.1.4.1.2544.1.12.10.1.15.1.14 | SnmpAdminString | read-only | current |
| f3UserPrivMgmtControl OBJECT-TYPE This object is used to enable/disable User Privilege Management. | 1.3.6.1.4.1.2544.1.12.10.1.16 | TruthValue | read-write | current |
| f3UserPrivRspTimeout OBJECT-TYPE This object is used to set response timeout for user privilege upgrade request in minutes. | 1.3.6.1.4.1.2544.1.12.10.1.17 | Integer32 (1..60) | read-write | current |
| f3RadiusSendVendorAvpEnabled OBJECT-TYPE If enabled, Vendor-ID AVP is sent in Access-Request Messages. | 1.3.6.1.4.1.2544.1.12.10.1.18 | TruthValue | read-write | current |
| f3RadiusRealm OBJECT-TYPE When the value of radiusRealm is not a null string, the system shall append an '@' character and the radiusRealm string to the User-Name attribute included in Access-Request Messages. | 1.3.6.1.4.1.2544.1.12.10.1.19 | DisplayString | read-write | current |
| cmIcmpV4Objects OBJECT-IDENTITY | 1.3.6.1.4.1.2544.1.12.10.1.20 | |||
| icmpV4Filter OBJECT-TYPE This object is used to enable/disable ICMP Filter. When disabled is set, all IcmpV4 dropping filters are not applied. Only when enabled is set, IcmpV4 dropping filter can be set. | 1.3.6.1.4.1.2544.1.12.10.1.20.1 | INTEGER {enabled(1), disabled(2)} | read-write | current |
| icmpV4DropEchoRequests OBJECT-TYPE This object is used to enable/disable Dropping Echo Requests. | 1.3.6.1.4.1.2544.1.12.10.1.20.2 | INTEGER {enabled(1), disabled(2)} | read-write | current |
| cmIcmpV6Objects OBJECT-IDENTITY | 1.3.6.1.4.1.2544.1.12.10.1.21 | |||
| icmpV6Filter OBJECT-TYPE This object is used to enable/disable ICMP Filter. When disabled is set, all IcmpV6 dropping filters are not applied. Only when enabled is set, IcmpV6 dropping filters can be set individually. | 1.3.6.1.4.1.2544.1.12.10.1.21.1 | INTEGER {enabled(1), disabled(2)} | read-write | current |
| icmpV6DropEchoRequests OBJECT-TYPE This object is used to enable/disable Dropping Echo Requests. | 1.3.6.1.4.1.2544.1.12.10.1.21.2 | INTEGER {enabled(1), disabled(2)} | read-write | current |
| icmpV6DropNeighborSolicitation OBJECT-TYPE This object is used to enable/disable Dropping Neighbor Solicitation. | 1.3.6.1.4.1.2544.1.12.10.1.21.3 | INTEGER {enabled(1), disabled(2)} | read-write | current |
| icmpV6DropRouterAdvertisement OBJECT-TYPE This object is used to enable/disable Dropping Router Advertisement. | 1.3.6.1.4.1.2544.1.12.10.1.21.4 | INTEGER {enabled(1), disabled(2)} | read-write | current |
| icmpV6DropNeighborAdvertisement OBJECT-TYPE This object is used to enable/disable Dropping Neighbor Advertisement. | 1.3.6.1.4.1.2544.1.12.10.1.21.5 | INTEGER {enabled(1), disabled(2)} | read-write | current |
| icmpV6DropRouterSolicitation OBJECT-TYPE This object is used to enable/disable Dropping Router Solicitation. | 1.3.6.1.4.1.2544.1.12.10.1.21.6 | INTEGER {enabled(1), disabled(2)} | read-write | current |
| cmAnonymizeLogTimeInDays OBJECT-TYPE This object represents the logging anonymization interval in days. After the configured number of days have passed, the system anonymizes the user names. At midnight of that day, the system anonymizes all the log entries that precede the configured value. 0 means NEVER anonymize. | 1.3.6.1.4.1.2544.1.12.10.1.22 | Integer32 (0..1096) | read-write | current |
| f3FipsObjects OBJECT-IDENTITY | 1.3.6.1.4.1.2544.1.12.10.1.23 | |||
| f3FipsOperationMode OBJECT-TYPE Fips Operation Mode. | 1.3.6.1.4.1.2544.1.12.10.1.23.1 | TruthValue | read-write | current |
| f3FipsSecuritySelfTestFailureCount OBJECT-TYPE Fips Security Self Test Failure Count. | 1.3.6.1.4.1.2544.1.12.10.1.23.2 | Unsigned32 | read-only | current |
| f3FipsSecuritySelfTestResult OBJECT-TYPE Fips Security Self Test Result. | 1.3.6.1.4.1.2544.1.12.10.1.23.3 | SecuritySelfTestResult | read-only | current |
| f3FipsSecuritySelfTestStatus OBJECT-TYPE Fips Security Self Test Status. | 1.3.6.1.4.1.2544.1.12.10.1.23.4 | SecuritySelfTestStatus | read-only | current |
| f3FipsAction OBJECT-TYPE Fips Security Self Test Action. | 1.3.6.1.4.1.2544.1.12.10.1.23.5 | INTEGER {notApplicable(0), zeroize(1), startSecSelfTest(2)} | read-write | current |
| f3Sso2faControl OBJECT-TYPE When enabled, the f3 device will allow the creation of a cmSecurityUserEntry with the cmSecurityUserSso2fa set to enabled. | 1.3.6.1.4.1.2544.1.12.10.1.24 | TruthValue | read-write | current |
| f3SslCertificateObjects OBJECT-IDENTITY | 1.3.6.1.4.1.2544.1.12.10.1.25 | |||
| f3HttpsSslCertExpNotifPeriod OBJECT-TYPE Number of days prior to expiration of the HTTPS SSL Certificate that the Expiry Notification Alarm will be raised. | 1.3.6.1.4.1.2544.1.12.10.1.25.1 | Unsigned32 (1..180) | read-write | current |
| f3HttpsSslKeyPair OBJECT-TYPE This is the SSL certificate/private key pair used for HTTPS. | 1.3.6.1.4.1.2544.1.12.10.1.25.2 | DisplayString (SIZE(1..64)) | read-write | current |
| f3SslCertificateAction OBJECT-TYPE This is the action to take on SSL certificate objects. | 1.3.6.1.4.1.2544.1.12.10.1.25.3 | SslCertificateAction | read-write | current |
| f3SslCertificateActionPairName OBJECT-TYPE This is the name of the SSL Certificate/Private Key pair to delete or set for HTTPS. | 1.3.6.1.4.1.2544.1.12.10.1.25.4 | DisplayString (SIZE(0..64)) | read-write | current |
| f3SslCertificatePrivateKeyPairTable OBJECT-TYPE A list of entries for the SSL Certificate/Private Key Pairs. | 1.3.6.1.4.1.2544.1.12.10.1.25.5 | not-accessible | current | |
| f3SslCertificatePrivateKeyPairEntry OBJECT-TYPE A conceptual row in the f3SslCertificatePrivateKeyPairTable. | 1.3.6.1.4.1.2544.1.12.10.1.25.5.1 | not-accessible | current | |
| f3SslCertificatePrivateKeyPairName OBJECT-TYPE This is a unique name for the key pair. | 1.3.6.1.4.1.2544.1.12.10.1.25.5.1.1 | DisplayString (SIZE(1..64)) | not-accessible | current |
| f3SslCertificatePrivateKeyPairSslCertificate OBJECT-TYPE This is the contents of the SSL certificate. | 1.3.6.1.4.1.2544.1.12.10.1.25.5.1.2 | DisplayString (SIZE(0..4096)) | read-only | current |
| f3SslCertificatePrivateKeyPairPrivateKeyPresent OBJECT-TYPE This indicates that a private key is present in the key pair. | 1.3.6.1.4.1.2544.1.12.10.1.25.5.1.3 | TruthValue | read-only | current |
| f3SslCertificatePrivateKeyPairRsaKeyPairName OBJECT-TYPE This is the Rsa key of the SSL certificate. | 1.3.6.1.4.1.2544.1.12.10.1.25.5.1.4 | DisplayString (SIZE(0..64)) | read-only | current |
| f3SslCertificatePrivateKeyPairCertificateType OBJECT-TYPE This is the SSL certificate type. | 1.3.6.1.4.1.2544.1.12.10.1.25.5.1.5 | CertificateType | read-only | current |
| f3SslCertificatePrivateKeyPairCertificateStatus OBJECT-TYPE This is the SSL certificate status. | 1.3.6.1.4.1.2544.1.12.10.1.25.5.1.6 | CertificateStatus | read-only | current |
| f3SslCertificatePrivateKeyPairAction OBJECT-TYPE This is the SSL Certificate/Private Key Pair Action. | 1.3.6.1.4.1.2544.1.12.10.1.25.5.1.7 | SslCertificatePrivateKeyPairAction | read-write | current |
| f3SslCertificateActionKeyName OBJECT-TYPE This is the name of the Certificate/Private Key pair to add. | 1.3.6.1.4.1.2544.1.12.10.1.25.6 | DisplayString (SIZE(0..64)) | read-write | current |
| f3RsaKeyPairObjects OBJECT-IDENTITY | 1.3.6.1.4.1.2544.1.12.10.1.26 | |||
| f3RsaKeyPairAction OBJECT-TYPE This is the action to RSA key pair. | 1.3.6.1.4.1.2544.1.12.10.1.26.1 | RsaKeyPairAction | read-write | current |
| f3RsaKeyPairActionName OBJECT-TYPE This is the name of RSA key pair action. | 1.3.6.1.4.1.2544.1.12.10.1.26.2 | DisplayString (SIZE(0..64)) | read-write | current |
| f3RsaKeyPairActionLength OBJECT-TYPE This is the length of RSA key pair action. | 1.3.6.1.4.1.2544.1.12.10.1.26.3 | RsaKeyLengthType | read-write | current |
| f3RsaKeyPairTable OBJECT-TYPE A list of RSA key pairs. | 1.3.6.1.4.1.2544.1.12.10.1.26.4 | not-accessible | current | |
| f3RsaKeyPairEntry OBJECT-TYPE A conceptual row in the f3RsaKeyPairTable. | 1.3.6.1.4.1.2544.1.12.10.1.26.4.1 | not-accessible | current | |
| f3RsaKeyPairName OBJECT-TYPE This is a unique name for the key pair. | 1.3.6.1.4.1.2544.1.12.10.1.26.4.1.1 | DisplayString (SIZE(1..64)) | not-accessible | current |
| f3RsaKeyPairPublicKey OBJECT-TYPE This is a public key. | 1.3.6.1.4.1.2544.1.12.10.1.26.4.1.2 | DisplayString (SIZE(1..4096)) | read-only | current |
| f3CertSigningRequestObjects OBJECT-IDENTITY | 1.3.6.1.4.1.2544.1.12.10.1.27 | |||
| f3CsrAction OBJECT-TYPE This is the action to CSR. | 1.3.6.1.4.1.2544.1.12.10.1.27.1 | CsrAction | read-write | current |
| f3CsrActionCsrName OBJECT-TYPE This is the name of CSR action. | 1.3.6.1.4.1.2544.1.12.10.1.27.2 | DisplayString (SIZE(0..64)) | read-write | current |
| f3CsrActionRsaKeyName OBJECT-TYPE This is the RSA key name of CSR action. | 1.3.6.1.4.1.2544.1.12.10.1.27.3 | DisplayString (SIZE(0..64)) | read-write | current |
| f3CsrActionCountry OBJECT-TYPE This is the country of CSR action. | 1.3.6.1.4.1.2544.1.12.10.1.27.4 | DisplayString (SIZE(0..64)) | read-write | current |
| f3CsrActionState OBJECT-TYPE This is the state of CSR action. | 1.3.6.1.4.1.2544.1.12.10.1.27.5 | DisplayString (SIZE(0..64)) | read-write | current |
| f3CsrActionLocality OBJECT-TYPE This is the locality of CSR action. | 1.3.6.1.4.1.2544.1.12.10.1.27.6 | DisplayString (SIZE(0..64)) | read-write | current |
| f3CsrActionOrganization OBJECT-TYPE This is the organization of CSR action. | 1.3.6.1.4.1.2544.1.12.10.1.27.7 | DisplayString (SIZE(0..64)) | read-write | current |
| f3CsrActionOrganizationUnit OBJECT-TYPE This is the organization unit of CSR action. | 1.3.6.1.4.1.2544.1.12.10.1.27.8 | DisplayString (SIZE(0..64)) | read-write | current |
| f3CsrActionCommonName OBJECT-TYPE This is the common name of CSR action. | 1.3.6.1.4.1.2544.1.12.10.1.27.9 | DisplayString (SIZE(0..64)) | read-write | current |
| f3CsrActionEmail OBJECT-TYPE This is the email of CSR action. | 1.3.6.1.4.1.2544.1.12.10.1.27.10 | DisplayString (SIZE(0..64)) | read-write | current |
| f3CsrActionSerialNumber OBJECT-TYPE This is the serial number of CSR action. | 1.3.6.1.4.1.2544.1.12.10.1.27.11 | DisplayString (SIZE(0..64)) | read-write | current |
| f3CsrActionAlternativeName OBJECT-TYPE This is the alternative name of CSR action. | 1.3.6.1.4.1.2544.1.12.10.1.27.12 | DisplayString (SIZE(0..256)) | read-write | current |
| f3CertSigningRequestTable OBJECT-TYPE A list of CSR. | 1.3.6.1.4.1.2544.1.12.10.1.27.13 | not-accessible | current | |
| f3CertSigningRequestEntry OBJECT-TYPE A conceptual row in the f3CertSigningRequestTable. | 1.3.6.1.4.1.2544.1.12.10.1.27.13.1 | not-accessible | current | |
| f3CertSigningRequestName OBJECT-TYPE This is a unique name for CSR. | 1.3.6.1.4.1.2544.1.12.10.1.27.13.1.1 | DisplayString (SIZE(1..64)) | not-accessible | current |
| f3CertSigningRequestRsaKeyPairName OBJECT-TYPE This is the Key pair name. | 1.3.6.1.4.1.2544.1.12.10.1.27.13.1.2 | DisplayString (SIZE(1..64)) | read-only | current |
| f3CertSigningRequestCsrData OBJECT-TYPE This is the CSR data. | 1.3.6.1.4.1.2544.1.12.10.1.27.13.1.3 | DisplayString (SIZE(1..4096)) | read-only | current |
| f3CertSigningRequestAutoEnrollmentStatus OBJECT-TYPE This is the auto enrollment status. | 1.3.6.1.4.1.2544.1.12.10.1.27.13.1.4 | AutoEnrollmentStatus | read-only | current |
| f3NasIpAddressType OBJECT-TYPE TThis object describe the ip address type. | 1.3.6.1.4.1.2544.1.12.10.1.28 | NasIpAddressType | read-write | current |
| f3CaProfileTable OBJECT-TYPE A list of Certificate Authority Profiles. | 1.3.6.1.4.1.2544.1.12.10.1.29 | not-accessible | current | |
| f3CaProfileEntry OBJECT-TYPE A conceptual row in the f3CaProfileTable. | 1.3.6.1.4.1.2544.1.12.10.1.29.1 | not-accessible | current | |
| f3CaProfileIndex OBJECT-TYPE An integer index used to identify this CA Profile. | 1.3.6.1.4.1.2544.1.12.10.1.29.1.1 | Unsigned32 (1..4) | not-accessible | current |
| f3CaProfileName OBJECT-TYPE This object provides name for this CA Profile. | 1.3.6.1.4.1.2544.1.12.10.1.29.1.2 | DisplayString (SIZE(0..64)) | read-create | current |
| f3CaProfileEnrollmentProtocol OBJECT-TYPE This object allows to specify type of protocol used for automatic certificate enrollment. | 1.3.6.1.4.1.2544.1.12.10.1.29.1.3 | CertificateEnrollmentProtocol | read-create | current |
| f3CaProfileHttpPort OBJECT-TYPE This obect allows to specify TCP port number used by enrollment protocol. | 1.3.6.1.4.1.2544.1.12.10.1.29.1.4 | Unsigned32 (1..65535) | read-create | current |
| f3CaProfileAutoRenewalControl OBJECT-TYPE This obect allows to specify whether the client certificate is automatically renewed or re-enrolled. | 1.3.6.1.4.1.2544.1.12.10.1.29.1.5 | TruthValue | read-create | current |
| f3CaProfileRenewalPercentLifetime OBJECT-TYPE This obect allows to specify percentage of certificate lifetime at which point the automatic certificate renewal process begins. | 1.3.6.1.4.1.2544.1.12.10.1.29.1.6 | Unsigned32 (1..100) | read-create | current |
| f3CaProfileRenewalNewKeyPairGenControl OBJECT-TYPE This obect allows to specify if the RSA key pair is regenerated prior to each certificate renewal. | 1.3.6.1.4.1.2544.1.12.10.1.29.1.7 | TruthValue | read-create | current |
| f3CaProfileStorageType OBJECT-TYPE The type of storage configured for this entry. | 1.3.6.1.4.1.2544.1.12.10.1.29.1.8 | StorageType | read-create | current |
| f3CaProfileRowStatus OBJECT-TYPE The status of this row. An entry MUST NOT exist in the active state unless all objects in the entry have an appropriate value, as described in the description clause for each writable object. The values of f3CaProfileRowStatus supported are createAndGo(4) and destroy(6). All mandatory attributes must be specified in a single SNMP SET request with f3CaProfileRowStatus value as createAndGo(4). Upon successful row creation, this object has a value of active(1). The f3CaProfileRowStatus object may be modified if the associated instance of this object is equal to active(1). | 1.3.6.1.4.1.2544.1.12.10.1.29.1.9 | RowStatus | read-create | current |
| f3CaTable OBJECT-TYPE A list of Certificate Authority object used for certificate enrollment with CA. | 1.3.6.1.4.1.2544.1.12.10.1.30 | not-accessible | current | |
| f3CaEntry OBJECT-TYPE The conceptual row in f3CaTable. | 1.3.6.1.4.1.2544.1.12.10.1.30.1 | not-accessible | current | |
| f3CaName OBJECT-TYPE Unique name used to identify this CA. | 1.3.6.1.4.1.2544.1.12.10.1.30.1.1 | DisplayString (SIZE(1..64)) | not-accessible | current |
| f3CaProfile OBJECT-TYPE This object provides a pointer to CA Profile used for this CA. | 1.3.6.1.4.1.2544.1.12.10.1.30.1.2 | VariablePointer | read-create | current |
| f3CaUrl OBJECT-TYPE This object provides the URL for certificate enrollment with CA. | 1.3.6.1.4.1.2544.1.12.10.1.30.1.3 | DisplayString (SIZE(1..256)) | read-create | current |
| f3CaScepQueryMessage OBJECT-TYPE This object provides the SCEP Query Message for certificate enrollment with CA. | 1.3.6.1.4.1.2544.1.12.10.1.30.1.4 | DisplayString (SIZE(0..512)) | read-create | current |
| f3CaCertList OBJECT-TYPE This object provides list of CA certificates sent by the CA as the chain of trust. | 1.3.6.1.4.1.2544.1.12.10.1.30.1.5 | DisplayString (SIZE(0..256)) | read-only | current |
| f3CaRootCertStatus OBJECT-TYPE This object provides CA root certificate status. | 1.3.6.1.4.1.2544.1.12.10.1.30.1.6 | CaRootCertStatus | read-only | current |
| f3CaLastCsr OBJECT-TYPE This object provides last CSR name in an enrollment process. | 1.3.6.1.4.1.2544.1.12.10.1.30.1.7 | DisplayString (SIZE(0..64)) | read-only | current |
| f3CaAction OBJECT-TYPE This object specifies a CA Action. | 1.3.6.1.4.1.2544.1.12.10.1.30.1.8 | CaAction | read-write | current |
| f3CaActionCsrName OBJECT-TYPE This object specifies a CSR Name. Applicable to startAutoEnrollment action. | 1.3.6.1.4.1.2544.1.12.10.1.30.1.9 | DisplayString (SIZE(1..64)) | read-write | current |
| f3CaActionChallengePassword OBJECT-TYPE This object specifies a challenge password. Applicable to startAutoEnrollment action. | 1.3.6.1.4.1.2544.1.12.10.1.30.1.10 | DisplayString (SIZE(0..64)) | read-write | current |
| f3CaStorageType OBJECT-TYPE The type of storage configured for this entry. | 1.3.6.1.4.1.2544.1.12.10.1.30.1.11 | StorageType | read-create | current |
| f3CaRowStatus OBJECT-TYPE The status of this row. An entry MUST NOT exist in the active state unless all objects in the entry have an appropriate value, as described in the description clause for each writable object. The values of f3CaRowStatus supported are createAndGo(4) and destroy(6). All mandatory attributes must be specified in a single SNMP SET request with f3CaRowStatus value as createAndGo(4). Upon successful row creation, this variable has a value of active(1). The f3CaRowStatus object may be modified if the associated instance of this object is equal to active(1). | 1.3.6.1.4.1.2544.1.12.10.1.30.1.12 | RowStatus | read-create | current |
| f3SshCipherStrengthHighControl OBJECT-TYPE When enabled, high cipher strength is enforced. | 1.3.6.1.4.1.2544.1.12.10.1.31 | TruthValue | read-write | current |
| cmSecurityConformance OBJECT-IDENTITY | 1.3.6.1.4.1.2544.1.12.10.2 | |||
| cmSecurityCompliances OBJECT-IDENTITY | 1.3.6.1.4.1.2544.1.12.10.2.1 | |||
| cmSecurityGroups OBJECT-IDENTITY | 1.3.6.1.4.1.2544.1.12.10.2.2 | |||
| cmSecurityNotifications OBJECT-IDENTITY | 1.3.6.1.4.1.2544.1.12.10.3 |
Notifications
| Name | OID | Status |
|---|---|---|
| f3SecurityTrap NOTIFICATION-TYPE This is security trap. Security traps are reported according to value of f3SecurityTrapType object. | 1.3.6.1.4.1.2544.1.12.10.3.1 | current |
| f3PrivilegeChangeTrap NOTIFICATION-TYPE This trap is sent every time a privilege change request is changed (added, modified, removed). | 1.3.6.1.4.1.2544.1.12.10.3.2 | current |
Conformance
| Name | OID | Status |
|---|---|---|
| cmSecurityCompliance MODULE-COMPLIANCE Describes the requirements for conformance to the CM Security group. | 1.3.6.1.4.1.2544.1.12.10.2.1.1 | current |
| cmSecurityObjectGroup OBJECT-GROUP A collection of objects used to manage the CM Security group. | 1.3.6.1.4.1.2544.1.12.10.2.2.1 | current |
| cmSecurityNotifGroup NOTIFICATION-GROUP A collection of notifications used in the CM Security group. | 1.3.6.1.4.1.2544.1.12.10.2.2.2 | current |