MIBs Depot

CM-SECURITY-MIB

Registered at
1.3.6.1.4.1.2544.1.12.10
Last updated
2021-01-28 00:00
Organization
ADVA Optical Networking SE
Revisions
2021-01-28 00:00
Namespace
adva
Source file
CM-SECURITY-MIB
Digest
sha256:9ad170daa57bd2e0033e069d3aca0b55af4672ec6d8b7d2de27c72bbcf5fc12e

Description

This module defines the Security MIB definitions used by the F3 (FSP150CM/CC) product lines. These are used to manage the user/authentication for CLI/GUI sessions. Copyright (C) ADVA.

Contact

Web URL: http://adva.com/ E-mail: support@adva.com Postal: ADVA Optical Networking SE Campus Martinsried Fraunhoferstrasse 9a 82152 Martinsried/Munich Germany Phone: +49 089 89 06 65 0 Fax: +49 089 89 06 65 199

Imports

FromSymbols
ADVA-MIBfsp150cm
CM-COMMON-MIBIpVersion, UserInterfaceType
IPV6-TCIpv6Address
SNMP-FRAMEWORK-MIBSnmpAdminString
SNMP-USER-BASED-SM-MIBusmUserEntry
SNMPv2-CONFMODULE-COMPLIANCE, NOTIFICATION-GROUP, OBJECT-GROUP
SNMPv2-SMIInteger32, IpAddress, MODULE-IDENTITY, NOTIFICATION-TYPE, OBJECT-IDENTITY, OBJECT-TYPE, Unsigned32, iso
SNMPv2-TCDateAndTime, DisplayString, RowStatus, StorageType, TEXTUAL-CONVENTION, TruthValue, VariablePointer

Imported by

Nothing in this corpus imports this module.

Load order

Every file a consumer needs in order to load this module, dependencies first.

ADVA-MIB
CM-COMMON-MIB
CM-SECURITY-MIB
ENTITY-MIB
IANA-ENTITY-MIB
IANAifType-MIB
IF-MIB
IPV6-TC
SNMP-FRAMEWORK-MIB
SNMP-USER-BASED-SM-MIB
SNMPv2-CONF
SNMPv2-MIB
SNMPv2-SMI
SNMPv2-TC
UUID-TC-MIB

Textual conventions

NameOIDSyntaxAccessStatus
AutoEnrollmentStatus
TEXTUAL-CONVENTION
Auto enrollment status.
current
CaAction
TEXTUAL-CONVENTION
Certificate authority action.
current
CaRootCertStatus
TEXTUAL-CONVENTION
Certificate authority root certificate status.
current
CertificateEnrollmentProtocol
TEXTUAL-CONVENTION
Protocol type used for automatic certificate enrollment.
current
CertificateStatus
TEXTUAL-CONVENTION
Certificate status.
current
CertificateType
TEXTUAL-CONVENTION
Certificate type.
current
CmRemoteAuthOrder
TEXTUAL-CONVENTION
Enumerations for order for remote authentication access. first - first to access the remote authentication, second - second to access the remote authentication, third - third to access the remote authentication.
current
CmRemoteAuthProtocol
TEXTUAL-CONVENTION
Enumerations for remote authentication protocol. none - No remote authentication protocol, radius - RADIUS (Remote Authentication Dial-In User Service), tacacs - TACACS+(Terminal Access Controller Access Control System).
current
CmSecurityAccessOrder
TEXTUAL-CONVENTION
Enumerations for order for security access. local - Local database for user/security validation, remote - Remote protocol for user/security validation.
current
CmSecurityAuthType
TEXTUAL-CONVENTION
Enumerations for remote authentication protocol types. pap - Password Authentication Protocol, chap - Challenge-Handshake Authentication Protocol.
current
CmSecurityPolicyStrength
TEXTUAL-CONVENTION
Enumerations for security policy strength low - Low Security Policy, medium - Medium Security Policy, high - High Security Policy.
current
CmSecurityPrivLevel
TEXTUAL-CONVENTION
Enumerations for Security Privilege Level. retrieve - Retrieve Privilege Level (can only VIEW management information), maintenance - Maintenance Privilege Level (can VIEW management, as well as perform maintenance operations such as loopbacks, etherjack diagnosis etc.) provisioning - Provisioning Privilege Level (can perform Provisioning operations) superuser - Super User Privilege Level (can perform all operations) testuser - Retrieve Privilege Level and some maintenance, provisioning operations. cryptouser - Crypto User Privilege Level (can perform security operations) netconf - NETCONF Privilege Level
current
CsrAction
TEXTUAL-CONVENTION
generate or delete CSR.
current
NasIpAddressType
TEXTUAL-CONVENTION
Nas Ip Address Type.
current
PrivilegeRequestAction
TEXTUAL-CONVENTION
Privilege request action.
current
PrivilegeRequestState
TEXTUAL-CONVENTION
Privilege request state.
current
RsaKeyLengthType
TEXTUAL-CONVENTION
RSA key length.
current
RsaKeyPairAction
TEXTUAL-CONVENTION
generate or delete RSA key pair.
current
RunSelfTestAction
TEXTUAL-CONVENTION
Run Self-Test.
current
SecuritySelfTestResult
TEXTUAL-CONVENTION
Enumerations for Security Self Test Result fail - fail to pass the test, success - success to pass the test.
current
SecuritySelfTestStatus
TEXTUAL-CONVENTION
Enumerations for Security Self Test Status notStarted - test not started. inprogress - test is in progress. complete - test has completed.
current
SecurityUserAction
TEXTUAL-CONVENTION
Provides ability to manage security users.
current
SnmpSecurityTrapType
TEXTUAL-CONVENTION
Provides ability to manage security traps. all - trap is reported when user logs in, logs out or is locked out loginFailed - trap is reported only when user failed to log in disabled - security traps are disabled.
current
SslCertificateAction
TEXTUAL-CONVENTION
Provides ability to manage SSL Certificate/Private Key pair. deleteSslKeyPair - delete SSL Certificate/Private Key pair setHttpsSslKeyPair - set SSL Certificate/Private Key pair used for HTTPS addRsaPrivateKey - add RSA Private Key to SSL Certificate/Private Key pair
current
SslCertificatePrivateKeyPairAction
TEXTUAL-CONVENTION
SSL certificate/private key pair action.
current
UsmUserAccessType
TEXTUAL-CONVENTION
Enumerations for type of USM User read-only - Read only, read-write - Read write , trap-only - Trap Only.
current
ZeroizeKeysAction
TEXTUAL-CONVENTION
Zeroize Keys.
current

Objects

NameOIDSyntaxAccessStatus
cmSecurityObjects
OBJECT-IDENTITY
1.3.6.1.4.1.2544.1.12.10.1
cmAuthProtocol
OBJECT-TYPE
Remote user authentication protocol.
1.3.6.1.4.1.2544.1.12.10.1.1CmRemoteAuthProtocolread-writecurrent
cmAccessOrder
OBJECT-TYPE
Order of access for security, i.e. try 'local' first or 'remote' first.
1.3.6.1.4.1.2544.1.12.10.1.2CmSecurityAccessOrderread-writecurrent
cmAuthType
OBJECT-TYPE
In case of remote authentication, the chosen protocol.
1.3.6.1.4.1.2544.1.12.10.1.3CmSecurityAuthTyperead-writecurrent
cmNASIpAddress
OBJECT-TYPE
In case of remote authentication RADIUS, the Network Access Server's IP Address.
1.3.6.1.4.1.2544.1.12.10.1.4IpAddressread-writecurrent
cmSecurityUserTable
OBJECT-TYPE
A list of entries corresponding to the security users. Entries cannot be created in this table by management application action.
1.3.6.1.4.1.2544.1.12.10.1.5not-accessiblecurrent
cmSecurityUserEntry
OBJECT-TYPE
An entry containing information applicable to a particular security user.
1.3.6.1.4.1.2544.1.12.10.1.5.1not-accessiblecurrent
cmSecurityUserName
OBJECT-TYPE
Security User Name.
1.3.6.1.4.1.2544.1.12.10.1.5.1.1DisplayString (SIZE(1..32))read-createcurrent
cmSecurityUserComment
OBJECT-TYPE
Notes on Security User.
1.3.6.1.4.1.2544.1.12.10.1.5.1.2DisplayString (SIZE(0..128))read-createcurrent
cmSecurityUserPrivLevel
OBJECT-TYPE
Security User Privilege Level.
1.3.6.1.4.1.2544.1.12.10.1.5.1.3CmSecurityPrivLevelread-createcurrent
cmSecurityUserLoginTimeout
OBJECT-TYPE
Security User Login Timeout.
1.3.6.1.4.1.2544.1.12.10.1.5.1.4Integer32read-createcurrent
cmSecurityUserNumFailedLoginAttempts
OBJECT-TYPE
Security User Number of Failed Login Attempts.
1.3.6.1.4.1.2544.1.12.10.1.5.1.5Integer32read-onlycurrent
cmSecurityUserLastLoginTime
OBJECT-TYPE
Security User Last Login Time.
1.3.6.1.4.1.2544.1.12.10.1.5.1.6DateAndTimeread-onlycurrent
cmSecurityUserLockedout
OBJECT-TYPE
Whether the security user has been locked out.
1.3.6.1.4.1.2544.1.12.10.1.5.1.7TruthValueread-onlycurrent
cmSecurityUserLastLockedoutTime
OBJECT-TYPE
Security User Last Locked out Time.
1.3.6.1.4.1.2544.1.12.10.1.5.1.8DateAndTimeread-onlycurrent
cmSecurityUserCliPagingEnable
OBJECT-TYPE
Whether the security user has CLI paging enabled.
1.3.6.1.4.1.2544.1.12.10.1.5.1.9TruthValueread-createcurrent
cmSecurityUserRemoteUser
OBJECT-TYPE
Whether the security user is a remote user.
1.3.6.1.4.1.2544.1.12.10.1.5.1.10TruthValueread-onlycurrent
cmSecurityUserPassword
OBJECT-TYPE
Password of the security user. Note that this attribute is a SET only attribute.
1.3.6.1.4.1.2544.1.12.10.1.5.1.11DisplayString (SIZE(0..32))read-createcurrent
cmSecurityUserStorageType
OBJECT-TYPE
The type of storage configured for this entry.
1.3.6.1.4.1.2544.1.12.10.1.5.1.12StorageTyperead-createcurrent
cmSecurityUserRowStatus
OBJECT-TYPE
The status of this row. An entry MUST NOT exist in the active state unless all objects in the entry have an appropriate value, as described in the description clause for each writable object. The values of cmSecurityUserRowStatus supported are createAndGo(4) and destroy(6). All mandatory attributes must be specified in a single SNMP SET request with cmSecurityUserRowStatus value as createAndGo(4). Upon successful row creation, this object has a value of active(1). The cmSecurityUserRowStatus object may be modified if the associated instance of this object is equal to active(1).
1.3.6.1.4.1.2544.1.12.10.1.5.1.13RowStatusread-createcurrent
cmSecurityUserAction
OBJECT-TYPE
This object provides ability to perform specific actions on security user. remove-lockout - this removes the locked out condition on the security user .
1.3.6.1.4.1.2544.1.12.10.1.5.1.14SecurityUserActionread-writecurrent
cmSecurityCryptoPassword
OBJECT-TYPE
Second level password used in connectguard configurations. This applies only to crypto users. Note that this attribute is a SET only attribute.
1.3.6.1.4.1.2544.1.12.10.1.5.1.15DisplayString (SIZE(0..32))read-createcurrent
cmSecurityUserRemoteCryptoUser
OBJECT-TYPE
Indicates if a security user is a remote crypto user.
1.3.6.1.4.1.2544.1.12.10.1.5.1.16TruthValueread-createcurrent
cmSecurityUserSso2fa
OBJECT-TYPE
If enabled, user can be used to bypass remote authentication if cmSso2faControl is enabled. This parameter can only be set on user creation
1.3.6.1.4.1.2544.1.12.10.1.5.1.17TruthValueread-createcurrent
cmRemoteAuthServerTable
OBJECT-TYPE
A list of entries corresponding to the remote authentication servers. Entries cannot be created in this table by management application action.
1.3.6.1.4.1.2544.1.12.10.1.6not-accessiblecurrent
cmRemoteAuthServerEntry
OBJECT-TYPE
An entry containing information applicable to a particular remote authentication server.
1.3.6.1.4.1.2544.1.12.10.1.6.1not-accessiblecurrent
cmRemoteAuthServerIndex
OBJECT-TYPE
Unique index to address/configure a specific Remote Authentication Server.
1.3.6.1.4.1.2544.1.12.10.1.6.1.1Integer32read-onlycurrent
cmRemoteAuthServerEnabled
OBJECT-TYPE
This object allows enabling/disabling a Remote Authentication Server.
1.3.6.1.4.1.2544.1.12.10.1.6.1.2TruthValueread-writecurrent
cmRemoteAuthServerOrder
OBJECT-TYPE
This object determines the order in which the Remote Authentication Servers are accessed for security information.
1.3.6.1.4.1.2544.1.12.10.1.6.1.3CmRemoteAuthOrderread-writecurrent
cmRemoteAuthServerIpAddress
OBJECT-TYPE
This object allows to specify an IP Address for the Remote Authentication Server.
1.3.6.1.4.1.2544.1.12.10.1.6.1.4IpAddressread-writecurrent
cmRemoteAuthServerPort
OBJECT-TYPE
This object allows to specify a Port for Remote Authentication Server.
1.3.6.1.4.1.2544.1.12.10.1.6.1.5Integer32read-writecurrent
cmRemoteAuthServerNumRetries
OBJECT-TYPE
This object allows to specify the number of retries the Remote Authentication Server must be tried for security access before giving up.
1.3.6.1.4.1.2544.1.12.10.1.6.1.6Integer32read-writecurrent
cmRemoteAuthServerTimeout
OBJECT-TYPE
This object allows to specify the timeout period for timing out a security access request to the Remote Authentication Server.
1.3.6.1.4.1.2544.1.12.10.1.6.1.7Integer32read-writecurrent
cmRemoteAuthServerSecret
OBJECT-TYPE
This allows configuration of secret password for Remote Authentication Server request.
1.3.6.1.4.1.2544.1.12.10.1.6.1.8DisplayString (SIZE(0..128))read-writecurrent
cmRemoteAuthServerAccountingPort
OBJECT-TYPE
This object allows to specify a Port for RADIUS Accounting.
1.3.6.1.4.1.2544.1.12.10.1.6.1.9Integer32read-writecurrent
cmRemoteAuthServerIpVersion
OBJECT-TYPE
This object describe the Ip Version.
1.3.6.1.4.1.2544.1.12.10.1.6.1.10IpVersionread-writecurrent
cmRemoteAuthServerIpv6Addr
OBJECT-TYPE
This object describe the Ipv6 Address.
1.3.6.1.4.1.2544.1.12.10.1.6.1.11Ipv6Addressread-writecurrent
cmSecurityPolicyStrength
OBJECT-TYPE
This object represents the security policy strength of the system. Based on this value, the system puts additional restrictions on the user id and password rules.
1.3.6.1.4.1.2544.1.12.10.1.7CmSecurityPolicyStrengthread-writecurrent
cmRemoteAuthServerAccountingEnabled
OBJECT-TYPE
This object allows to enable/disable RADIUS/TACACS+ Accounting on all authentication servers.
1.3.6.1.4.1.2544.1.12.10.1.8TruthValueread-writecurrent
f3UsmUserTable
OBJECT-TYPE
This table is the extension of the F3 USM User Table.
1.3.6.1.4.1.2544.1.12.10.1.9not-accessiblecurrent
f3UsmUserEntry
OBJECT-TYPE
An entry in the F3 USM User Table.
1.3.6.1.4.1.2544.1.12.10.1.9.1not-accessiblecurrent
f3UsmUserAccessType
OBJECT-TYPE
This indicates the type of USM User, read-only, read-write, trap-only.
1.3.6.1.4.1.2544.1.12.10.1.9.1.1UsmUserAccessTyperead-onlycurrent
f3TacacsPrivLevelControlEnabled
OBJECT-TYPE
This object allows to enable/disable the use of ENABLE authorization control to determine the Privilege Level configured by the remote authentication server. This object is only valid for TACACS+. Default value of this object is TRUE.
1.3.6.1.4.1.2544.1.12.10.1.10TruthValueread-writecurrent
f3TacacsDefaultPrivLevel
OBJECT-TYPE
This object allows specification of the default privilege level of the TACACS+ user, when the use of ENABLE authorization control is DISABLED, i.e. f3TacacsPrivLevelControlEnabled is set to FALSE.
1.3.6.1.4.1.2544.1.12.10.1.11CmSecurityPrivLevelread-writecurrent
f3NasIpv6Addr
OBJECT-TYPE
This object describe the ipv6 address.
1.3.6.1.4.1.2544.1.12.10.1.12Ipv6Addressread-writecurrent
f3SecurityTrapType
OBJECT-TYPE
This object provides ability to manage whether report security trap.
1.3.6.1.4.1.2544.1.12.10.1.13SnmpSecurityTrapTyperead-writecurrent
f3SecurityTrapInfo
OBJECT-TYPE
This object is used to describe the security trap info. This object is used only in trap and GET operation on this object will return empty string.
1.3.6.1.4.1.2544.1.12.10.1.14DisplayStringread-onlycurrent
f3PrivilegeChangeTable
OBJECT-TYPE
This table is used for Restricted User Login via NMS. This is for users with lower privileges to elevate them to higher ones for limited amount of time.
1.3.6.1.4.1.2544.1.12.10.1.15not-accessiblecurrent
f3PrivilegeChangeEntry
OBJECT-TYPE
Column for privilegeChangeTable.
1.3.6.1.4.1.2544.1.12.10.1.15.1not-accessiblecurrent
f3PrivilegeChangeId
OBJECT-TYPE
Unique index identifying a request.
1.3.6.1.4.1.2544.1.12.10.1.15.1.1Unsigned32 (1..4294967295)not-accessiblecurrent
f3PrivilegeChangeUserName
OBJECT-TYPE
The name string for user authentication purposes
1.3.6.1.4.1.2544.1.12.10.1.15.1.2SnmpAdminStringread-onlycurrent
f3PrivilegeChangeIpv4Address
OBJECT-TYPE
IPv4 address of interface to which user's terminal is connected.
1.3.6.1.4.1.2544.1.12.10.1.15.1.3IpAddressread-onlycurrent
f3PrivilegeChangeIpv6Address
OBJECT-TYPE
IPv6 address of interface to which user's terminal is connected.
1.3.6.1.4.1.2544.1.12.10.1.15.1.4Ipv6Addressread-onlycurrent
f3PrivilegeChangeTerminalIpv4Address
OBJECT-TYPE
Source IPv4 address of connected terminal.
1.3.6.1.4.1.2544.1.12.10.1.15.1.5IpAddressread-onlycurrent
f3PrivilegeChangeTerminalIpv6Address
OBJECT-TYPE
Source IPv6 address of connected terminal.
1.3.6.1.4.1.2544.1.12.10.1.15.1.6Ipv6Addressread-onlycurrent
f3PrivilegeChangeInterface
OBJECT-TYPE
Interface used by the user
1.3.6.1.4.1.2544.1.12.10.1.15.1.7UserInterfaceTyperead-onlycurrent
f3PrivilegeChangeCurrentPrivilege
OBJECT-TYPE
Current privilege level of the user, who is requesting role upgrade.
1.3.6.1.4.1.2544.1.12.10.1.15.1.8CmSecurityPrivLevelread-onlycurrent
f3PrivilegeChangeRequestedPrivilege
OBJECT-TYPE
Privilege requested by user for session.
1.3.6.1.4.1.2544.1.12.10.1.15.1.9CmSecurityPrivLevelread-onlycurrent
f3PrivilegeChangeDuration
OBJECT-TYPE
Requested time period by user (in minutes).
1.3.6.1.4.1.2544.1.12.10.1.15.1.10Unsigned32 (1..480)read-onlycurrent
f3PrivilegeChangeAction
OBJECT-TYPE
Privilege request action.
1.3.6.1.4.1.2544.1.12.10.1.15.1.11PrivilegeRequestActionread-writecurrent
f3PrivilegeChangeState
OBJECT-TYPE
Privilege request state.
1.3.6.1.4.1.2544.1.12.10.1.15.1.12PrivilegeRequestStateread-onlycurrent
f3PrivilegeChangeRemainingTime
OBJECT-TYPE
Time remaining in session with upgrade user privilege (in seconds).
1.3.6.1.4.1.2544.1.12.10.1.15.1.13Unsigned32read-onlycurrent
f3PrivilegeChangeRemoteName
OBJECT-TYPE
The name string for Radius/Tacacs authentication purposes.
1.3.6.1.4.1.2544.1.12.10.1.15.1.14SnmpAdminStringread-onlycurrent
f3UserPrivMgmtControl
OBJECT-TYPE
This object is used to enable/disable User Privilege Management.
1.3.6.1.4.1.2544.1.12.10.1.16TruthValueread-writecurrent
f3UserPrivRspTimeout
OBJECT-TYPE
This object is used to set response timeout for user privilege upgrade request in minutes.
1.3.6.1.4.1.2544.1.12.10.1.17Integer32 (1..60)read-writecurrent
f3RadiusSendVendorAvpEnabled
OBJECT-TYPE
If enabled, Vendor-ID AVP is sent in Access-Request Messages.
1.3.6.1.4.1.2544.1.12.10.1.18TruthValueread-writecurrent
f3RadiusRealm
OBJECT-TYPE
When the value of radiusRealm is not a null string, the system shall append an '@' character and the radiusRealm string to the User-Name attribute included in Access-Request Messages.
1.3.6.1.4.1.2544.1.12.10.1.19DisplayStringread-writecurrent
cmIcmpV4Objects
OBJECT-IDENTITY
1.3.6.1.4.1.2544.1.12.10.1.20
icmpV4Filter
OBJECT-TYPE
This object is used to enable/disable ICMP Filter. When disabled is set, all IcmpV4 dropping filters are not applied. Only when enabled is set, IcmpV4 dropping filter can be set.
1.3.6.1.4.1.2544.1.12.10.1.20.1INTEGER {enabled(1), disabled(2)}read-writecurrent
icmpV4DropEchoRequests
OBJECT-TYPE
This object is used to enable/disable Dropping Echo Requests.
1.3.6.1.4.1.2544.1.12.10.1.20.2INTEGER {enabled(1), disabled(2)}read-writecurrent
cmIcmpV6Objects
OBJECT-IDENTITY
1.3.6.1.4.1.2544.1.12.10.1.21
icmpV6Filter
OBJECT-TYPE
This object is used to enable/disable ICMP Filter. When disabled is set, all IcmpV6 dropping filters are not applied. Only when enabled is set, IcmpV6 dropping filters can be set individually.
1.3.6.1.4.1.2544.1.12.10.1.21.1INTEGER {enabled(1), disabled(2)}read-writecurrent
icmpV6DropEchoRequests
OBJECT-TYPE
This object is used to enable/disable Dropping Echo Requests.
1.3.6.1.4.1.2544.1.12.10.1.21.2INTEGER {enabled(1), disabled(2)}read-writecurrent
icmpV6DropNeighborSolicitation
OBJECT-TYPE
This object is used to enable/disable Dropping Neighbor Solicitation.
1.3.6.1.4.1.2544.1.12.10.1.21.3INTEGER {enabled(1), disabled(2)}read-writecurrent
icmpV6DropRouterAdvertisement
OBJECT-TYPE
This object is used to enable/disable Dropping Router Advertisement.
1.3.6.1.4.1.2544.1.12.10.1.21.4INTEGER {enabled(1), disabled(2)}read-writecurrent
icmpV6DropNeighborAdvertisement
OBJECT-TYPE
This object is used to enable/disable Dropping Neighbor Advertisement.
1.3.6.1.4.1.2544.1.12.10.1.21.5INTEGER {enabled(1), disabled(2)}read-writecurrent
icmpV6DropRouterSolicitation
OBJECT-TYPE
This object is used to enable/disable Dropping Router Solicitation.
1.3.6.1.4.1.2544.1.12.10.1.21.6INTEGER {enabled(1), disabled(2)}read-writecurrent
cmAnonymizeLogTimeInDays
OBJECT-TYPE
This object represents the logging anonymization interval in days. After the configured number of days have passed, the system anonymizes the user names. At midnight of that day, the system anonymizes all the log entries that precede the configured value. 0 means NEVER anonymize.
1.3.6.1.4.1.2544.1.12.10.1.22Integer32 (0..1096)read-writecurrent
f3FipsObjects
OBJECT-IDENTITY
1.3.6.1.4.1.2544.1.12.10.1.23
f3FipsOperationMode
OBJECT-TYPE
Fips Operation Mode.
1.3.6.1.4.1.2544.1.12.10.1.23.1TruthValueread-writecurrent
f3FipsSecuritySelfTestFailureCount
OBJECT-TYPE
Fips Security Self Test Failure Count.
1.3.6.1.4.1.2544.1.12.10.1.23.2Unsigned32read-onlycurrent
f3FipsSecuritySelfTestResult
OBJECT-TYPE
Fips Security Self Test Result.
1.3.6.1.4.1.2544.1.12.10.1.23.3SecuritySelfTestResultread-onlycurrent
f3FipsSecuritySelfTestStatus
OBJECT-TYPE
Fips Security Self Test Status.
1.3.6.1.4.1.2544.1.12.10.1.23.4SecuritySelfTestStatusread-onlycurrent
f3FipsAction
OBJECT-TYPE
Fips Security Self Test Action.
1.3.6.1.4.1.2544.1.12.10.1.23.5INTEGER {notApplicable(0), zeroize(1), startSecSelfTest(2)}read-writecurrent
f3Sso2faControl
OBJECT-TYPE
When enabled, the f3 device will allow the creation of a cmSecurityUserEntry with the cmSecurityUserSso2fa set to enabled.
1.3.6.1.4.1.2544.1.12.10.1.24TruthValueread-writecurrent
f3SslCertificateObjects
OBJECT-IDENTITY
1.3.6.1.4.1.2544.1.12.10.1.25
f3HttpsSslCertExpNotifPeriod
OBJECT-TYPE
Number of days prior to expiration of the HTTPS SSL Certificate that the Expiry Notification Alarm will be raised.
1.3.6.1.4.1.2544.1.12.10.1.25.1Unsigned32 (1..180)read-writecurrent
f3HttpsSslKeyPair
OBJECT-TYPE
This is the SSL certificate/private key pair used for HTTPS.
1.3.6.1.4.1.2544.1.12.10.1.25.2DisplayString (SIZE(1..64))read-writecurrent
f3SslCertificateAction
OBJECT-TYPE
This is the action to take on SSL certificate objects.
1.3.6.1.4.1.2544.1.12.10.1.25.3SslCertificateActionread-writecurrent
f3SslCertificateActionPairName
OBJECT-TYPE
This is the name of the SSL Certificate/Private Key pair to delete or set for HTTPS.
1.3.6.1.4.1.2544.1.12.10.1.25.4DisplayString (SIZE(0..64))read-writecurrent
f3SslCertificatePrivateKeyPairTable
OBJECT-TYPE
A list of entries for the SSL Certificate/Private Key Pairs.
1.3.6.1.4.1.2544.1.12.10.1.25.5not-accessiblecurrent
f3SslCertificatePrivateKeyPairEntry
OBJECT-TYPE
A conceptual row in the f3SslCertificatePrivateKeyPairTable.
1.3.6.1.4.1.2544.1.12.10.1.25.5.1not-accessiblecurrent
f3SslCertificatePrivateKeyPairName
OBJECT-TYPE
This is a unique name for the key pair.
1.3.6.1.4.1.2544.1.12.10.1.25.5.1.1DisplayString (SIZE(1..64))not-accessiblecurrent
f3SslCertificatePrivateKeyPairSslCertificate
OBJECT-TYPE
This is the contents of the SSL certificate.
1.3.6.1.4.1.2544.1.12.10.1.25.5.1.2DisplayString (SIZE(0..4096))read-onlycurrent
f3SslCertificatePrivateKeyPairPrivateKeyPresent
OBJECT-TYPE
This indicates that a private key is present in the key pair.
1.3.6.1.4.1.2544.1.12.10.1.25.5.1.3TruthValueread-onlycurrent
f3SslCertificatePrivateKeyPairRsaKeyPairName
OBJECT-TYPE
This is the Rsa key of the SSL certificate.
1.3.6.1.4.1.2544.1.12.10.1.25.5.1.4DisplayString (SIZE(0..64))read-onlycurrent
f3SslCertificatePrivateKeyPairCertificateType
OBJECT-TYPE
This is the SSL certificate type.
1.3.6.1.4.1.2544.1.12.10.1.25.5.1.5CertificateTyperead-onlycurrent
f3SslCertificatePrivateKeyPairCertificateStatus
OBJECT-TYPE
This is the SSL certificate status.
1.3.6.1.4.1.2544.1.12.10.1.25.5.1.6CertificateStatusread-onlycurrent
f3SslCertificatePrivateKeyPairAction
OBJECT-TYPE
This is the SSL Certificate/Private Key Pair Action.
1.3.6.1.4.1.2544.1.12.10.1.25.5.1.7SslCertificatePrivateKeyPairActionread-writecurrent
f3SslCertificateActionKeyName
OBJECT-TYPE
This is the name of the Certificate/Private Key pair to add.
1.3.6.1.4.1.2544.1.12.10.1.25.6DisplayString (SIZE(0..64))read-writecurrent
f3RsaKeyPairObjects
OBJECT-IDENTITY
1.3.6.1.4.1.2544.1.12.10.1.26
f3RsaKeyPairAction
OBJECT-TYPE
This is the action to RSA key pair.
1.3.6.1.4.1.2544.1.12.10.1.26.1RsaKeyPairActionread-writecurrent
f3RsaKeyPairActionName
OBJECT-TYPE
This is the name of RSA key pair action.
1.3.6.1.4.1.2544.1.12.10.1.26.2DisplayString (SIZE(0..64))read-writecurrent
f3RsaKeyPairActionLength
OBJECT-TYPE
This is the length of RSA key pair action.
1.3.6.1.4.1.2544.1.12.10.1.26.3RsaKeyLengthTyperead-writecurrent
f3RsaKeyPairTable
OBJECT-TYPE
A list of RSA key pairs.
1.3.6.1.4.1.2544.1.12.10.1.26.4not-accessiblecurrent
f3RsaKeyPairEntry
OBJECT-TYPE
A conceptual row in the f3RsaKeyPairTable.
1.3.6.1.4.1.2544.1.12.10.1.26.4.1not-accessiblecurrent
f3RsaKeyPairName
OBJECT-TYPE
This is a unique name for the key pair.
1.3.6.1.4.1.2544.1.12.10.1.26.4.1.1DisplayString (SIZE(1..64))not-accessiblecurrent
f3RsaKeyPairPublicKey
OBJECT-TYPE
This is a public key.
1.3.6.1.4.1.2544.1.12.10.1.26.4.1.2DisplayString (SIZE(1..4096))read-onlycurrent
f3CertSigningRequestObjects
OBJECT-IDENTITY
1.3.6.1.4.1.2544.1.12.10.1.27
f3CsrAction
OBJECT-TYPE
This is the action to CSR.
1.3.6.1.4.1.2544.1.12.10.1.27.1CsrActionread-writecurrent
f3CsrActionCsrName
OBJECT-TYPE
This is the name of CSR action.
1.3.6.1.4.1.2544.1.12.10.1.27.2DisplayString (SIZE(0..64))read-writecurrent
f3CsrActionRsaKeyName
OBJECT-TYPE
This is the RSA key name of CSR action.
1.3.6.1.4.1.2544.1.12.10.1.27.3DisplayString (SIZE(0..64))read-writecurrent
f3CsrActionCountry
OBJECT-TYPE
This is the country of CSR action.
1.3.6.1.4.1.2544.1.12.10.1.27.4DisplayString (SIZE(0..64))read-writecurrent
f3CsrActionState
OBJECT-TYPE
This is the state of CSR action.
1.3.6.1.4.1.2544.1.12.10.1.27.5DisplayString (SIZE(0..64))read-writecurrent
f3CsrActionLocality
OBJECT-TYPE
This is the locality of CSR action.
1.3.6.1.4.1.2544.1.12.10.1.27.6DisplayString (SIZE(0..64))read-writecurrent
f3CsrActionOrganization
OBJECT-TYPE
This is the organization of CSR action.
1.3.6.1.4.1.2544.1.12.10.1.27.7DisplayString (SIZE(0..64))read-writecurrent
f3CsrActionOrganizationUnit
OBJECT-TYPE
This is the organization unit of CSR action.
1.3.6.1.4.1.2544.1.12.10.1.27.8DisplayString (SIZE(0..64))read-writecurrent
f3CsrActionCommonName
OBJECT-TYPE
This is the common name of CSR action.
1.3.6.1.4.1.2544.1.12.10.1.27.9DisplayString (SIZE(0..64))read-writecurrent
f3CsrActionEmail
OBJECT-TYPE
This is the email of CSR action.
1.3.6.1.4.1.2544.1.12.10.1.27.10DisplayString (SIZE(0..64))read-writecurrent
f3CsrActionSerialNumber
OBJECT-TYPE
This is the serial number of CSR action.
1.3.6.1.4.1.2544.1.12.10.1.27.11DisplayString (SIZE(0..64))read-writecurrent
f3CsrActionAlternativeName
OBJECT-TYPE
This is the alternative name of CSR action.
1.3.6.1.4.1.2544.1.12.10.1.27.12DisplayString (SIZE(0..256))read-writecurrent
f3CertSigningRequestTable
OBJECT-TYPE
A list of CSR.
1.3.6.1.4.1.2544.1.12.10.1.27.13not-accessiblecurrent
f3CertSigningRequestEntry
OBJECT-TYPE
A conceptual row in the f3CertSigningRequestTable.
1.3.6.1.4.1.2544.1.12.10.1.27.13.1not-accessiblecurrent
f3CertSigningRequestName
OBJECT-TYPE
This is a unique name for CSR.
1.3.6.1.4.1.2544.1.12.10.1.27.13.1.1DisplayString (SIZE(1..64))not-accessiblecurrent
f3CertSigningRequestRsaKeyPairName
OBJECT-TYPE
This is the Key pair name.
1.3.6.1.4.1.2544.1.12.10.1.27.13.1.2DisplayString (SIZE(1..64))read-onlycurrent
f3CertSigningRequestCsrData
OBJECT-TYPE
This is the CSR data.
1.3.6.1.4.1.2544.1.12.10.1.27.13.1.3DisplayString (SIZE(1..4096))read-onlycurrent
f3CertSigningRequestAutoEnrollmentStatus
OBJECT-TYPE
This is the auto enrollment status.
1.3.6.1.4.1.2544.1.12.10.1.27.13.1.4AutoEnrollmentStatusread-onlycurrent
f3NasIpAddressType
OBJECT-TYPE
TThis object describe the ip address type.
1.3.6.1.4.1.2544.1.12.10.1.28NasIpAddressTyperead-writecurrent
f3CaProfileTable
OBJECT-TYPE
A list of Certificate Authority Profiles.
1.3.6.1.4.1.2544.1.12.10.1.29not-accessiblecurrent
f3CaProfileEntry
OBJECT-TYPE
A conceptual row in the f3CaProfileTable.
1.3.6.1.4.1.2544.1.12.10.1.29.1not-accessiblecurrent
f3CaProfileIndex
OBJECT-TYPE
An integer index used to identify this CA Profile.
1.3.6.1.4.1.2544.1.12.10.1.29.1.1Unsigned32 (1..4)not-accessiblecurrent
f3CaProfileName
OBJECT-TYPE
This object provides name for this CA Profile.
1.3.6.1.4.1.2544.1.12.10.1.29.1.2DisplayString (SIZE(0..64))read-createcurrent
f3CaProfileEnrollmentProtocol
OBJECT-TYPE
This object allows to specify type of protocol used for automatic certificate enrollment.
1.3.6.1.4.1.2544.1.12.10.1.29.1.3CertificateEnrollmentProtocolread-createcurrent
f3CaProfileHttpPort
OBJECT-TYPE
This obect allows to specify TCP port number used by enrollment protocol.
1.3.6.1.4.1.2544.1.12.10.1.29.1.4Unsigned32 (1..65535)read-createcurrent
f3CaProfileAutoRenewalControl
OBJECT-TYPE
This obect allows to specify whether the client certificate is automatically renewed or re-enrolled.
1.3.6.1.4.1.2544.1.12.10.1.29.1.5TruthValueread-createcurrent
f3CaProfileRenewalPercentLifetime
OBJECT-TYPE
This obect allows to specify percentage of certificate lifetime at which point the automatic certificate renewal process begins.
1.3.6.1.4.1.2544.1.12.10.1.29.1.6Unsigned32 (1..100)read-createcurrent
f3CaProfileRenewalNewKeyPairGenControl
OBJECT-TYPE
This obect allows to specify if the RSA key pair is regenerated prior to each certificate renewal.
1.3.6.1.4.1.2544.1.12.10.1.29.1.7TruthValueread-createcurrent
f3CaProfileStorageType
OBJECT-TYPE
The type of storage configured for this entry.
1.3.6.1.4.1.2544.1.12.10.1.29.1.8StorageTyperead-createcurrent
f3CaProfileRowStatus
OBJECT-TYPE
The status of this row. An entry MUST NOT exist in the active state unless all objects in the entry have an appropriate value, as described in the description clause for each writable object. The values of f3CaProfileRowStatus supported are createAndGo(4) and destroy(6). All mandatory attributes must be specified in a single SNMP SET request with f3CaProfileRowStatus value as createAndGo(4). Upon successful row creation, this object has a value of active(1). The f3CaProfileRowStatus object may be modified if the associated instance of this object is equal to active(1).
1.3.6.1.4.1.2544.1.12.10.1.29.1.9RowStatusread-createcurrent
f3CaTable
OBJECT-TYPE
A list of Certificate Authority object used for certificate enrollment with CA.
1.3.6.1.4.1.2544.1.12.10.1.30not-accessiblecurrent
f3CaEntry
OBJECT-TYPE
The conceptual row in f3CaTable.
1.3.6.1.4.1.2544.1.12.10.1.30.1not-accessiblecurrent
f3CaName
OBJECT-TYPE
Unique name used to identify this CA.
1.3.6.1.4.1.2544.1.12.10.1.30.1.1DisplayString (SIZE(1..64))not-accessiblecurrent
f3CaProfile
OBJECT-TYPE
This object provides a pointer to CA Profile used for this CA.
1.3.6.1.4.1.2544.1.12.10.1.30.1.2VariablePointerread-createcurrent
f3CaUrl
OBJECT-TYPE
This object provides the URL for certificate enrollment with CA.
1.3.6.1.4.1.2544.1.12.10.1.30.1.3DisplayString (SIZE(1..256))read-createcurrent
f3CaScepQueryMessage
OBJECT-TYPE
This object provides the SCEP Query Message for certificate enrollment with CA.
1.3.6.1.4.1.2544.1.12.10.1.30.1.4DisplayString (SIZE(0..512))read-createcurrent
f3CaCertList
OBJECT-TYPE
This object provides list of CA certificates sent by the CA as the chain of trust.
1.3.6.1.4.1.2544.1.12.10.1.30.1.5DisplayString (SIZE(0..256))read-onlycurrent
f3CaRootCertStatus
OBJECT-TYPE
This object provides CA root certificate status.
1.3.6.1.4.1.2544.1.12.10.1.30.1.6CaRootCertStatusread-onlycurrent
f3CaLastCsr
OBJECT-TYPE
This object provides last CSR name in an enrollment process.
1.3.6.1.4.1.2544.1.12.10.1.30.1.7DisplayString (SIZE(0..64))read-onlycurrent
f3CaAction
OBJECT-TYPE
This object specifies a CA Action.
1.3.6.1.4.1.2544.1.12.10.1.30.1.8CaActionread-writecurrent
f3CaActionCsrName
OBJECT-TYPE
This object specifies a CSR Name. Applicable to startAutoEnrollment action.
1.3.6.1.4.1.2544.1.12.10.1.30.1.9DisplayString (SIZE(1..64))read-writecurrent
f3CaActionChallengePassword
OBJECT-TYPE
This object specifies a challenge password. Applicable to startAutoEnrollment action.
1.3.6.1.4.1.2544.1.12.10.1.30.1.10DisplayString (SIZE(0..64))read-writecurrent
f3CaStorageType
OBJECT-TYPE
The type of storage configured for this entry.
1.3.6.1.4.1.2544.1.12.10.1.30.1.11StorageTyperead-createcurrent
f3CaRowStatus
OBJECT-TYPE
The status of this row. An entry MUST NOT exist in the active state unless all objects in the entry have an appropriate value, as described in the description clause for each writable object. The values of f3CaRowStatus supported are createAndGo(4) and destroy(6). All mandatory attributes must be specified in a single SNMP SET request with f3CaRowStatus value as createAndGo(4). Upon successful row creation, this variable has a value of active(1). The f3CaRowStatus object may be modified if the associated instance of this object is equal to active(1).
1.3.6.1.4.1.2544.1.12.10.1.30.1.12RowStatusread-createcurrent
f3SshCipherStrengthHighControl
OBJECT-TYPE
When enabled, high cipher strength is enforced.
1.3.6.1.4.1.2544.1.12.10.1.31TruthValueread-writecurrent
cmSecurityConformance
OBJECT-IDENTITY
1.3.6.1.4.1.2544.1.12.10.2
cmSecurityCompliances
OBJECT-IDENTITY
1.3.6.1.4.1.2544.1.12.10.2.1
cmSecurityGroups
OBJECT-IDENTITY
1.3.6.1.4.1.2544.1.12.10.2.2
cmSecurityNotifications
OBJECT-IDENTITY
1.3.6.1.4.1.2544.1.12.10.3

Notifications

NameOIDStatus
f3SecurityTrap
NOTIFICATION-TYPE
This is security trap. Security traps are reported according to value of f3SecurityTrapType object.
1.3.6.1.4.1.2544.1.12.10.3.1current
f3PrivilegeChangeTrap
NOTIFICATION-TYPE
This trap is sent every time a privilege change request is changed (added, modified, removed).
1.3.6.1.4.1.2544.1.12.10.3.2current

Conformance

NameOIDStatus
cmSecurityCompliance
MODULE-COMPLIANCE
Describes the requirements for conformance to the CM Security group.
1.3.6.1.4.1.2544.1.12.10.2.1.1current
cmSecurityObjectGroup
OBJECT-GROUP
A collection of objects used to manage the CM Security group.
1.3.6.1.4.1.2544.1.12.10.2.2.1current
cmSecurityNotifGroup
NOTIFICATION-GROUP
A collection of notifications used in the CM Security group.
1.3.6.1.4.1.2544.1.12.10.2.2.2current