MIBs Depot

WATCHGUARD-IPSEC-SA-MON-MIB-EXT

Registered at
1.3.6.1.4.1.3097.3
Last updated
2007-01-25 12:00
Organization
WatchGuard Technologies, Inc.
Revisions
2007-01-25 12:00
Namespace
watchguard
Source file
WATCHGUARD-IPSEC-SA-MON-MIB-EXT
Digest
sha256:88b9254139080af3e3ae23dabedb8a9e183a7e76cf3322cb99e1539e1eb61d3a

Description

The MIB module describes generic IPSec objects defined in IETF working draft 'draft-ieft-ipsec-monitor-mib-01' and WatchGuard's extension.

Contact

WatchGuard Technologies, Inc. 505 Fifth Avenue South Suite 500 Seattle, WA 98104 United States +1.206.613.6600

Imports

FromSymbols
IF-MIBifIndex
IPSEC-ISAKMP-IKE-DOI-TCIpsecDoiAhTransform, IpsecDoiAuthAlgorithm, IpsecDoiEncapsulationMode, IpsecDoiEspTransform, IpsecDoiIdentType, IpsecDoiIpcompTransform, IpsecDoiSecProtocolId
SNMPv2-CONFMODULE-COMPLIANCE, NOTIFICATION-GROUP
SNMPv2-SMICounter32, Gauge32, Integer32, MODULE-IDENTITY, NOTIFICATION-TYPE, OBJECT-IDENTITY, OBJECT-TYPE, enterprises, iso
SNMPv2-TCDisplayString, TEXTUAL-CONVENTION, TruthValue
WATCHGUARD-SMIwatchguard

Imported by

Nothing in this corpus imports this module.

Load order

Every file a consumer needs in order to load this module, dependencies first.

IANAifType-MIB
IF-MIB
IPSEC-ISAKMP-IKE-DOI-TC
SNMPv2-CONF
SNMPv2-MIB
SNMPv2-SMI
SNMPv2-TC
WATCHGUARD-IPSEC-SA-MON-MIB-EXT
WATCHGUARD-SMI

Textual conventions

NameOIDSyntaxAccessStatus
IpsecIpv6Address
TEXTUAL-CONVENTION
This data type is used to model IPv6 address prefixes. This is a binary string of 16 octets in network byte-order.
current
IpsecSaCreatorIdent
TEXTUAL-CONVENTION
A value indicating how an SA was created.
current

Objects

NameOIDSyntaxAccessStatus
wgIpsecSaMonitorMIB
OBJECT-IDENTITY
This is the base object identifier for all IPSec branches.
1.3.6.1.4.1.3097.3.1current
wgSaTables
OBJECT-IDENTITY
This is the base object identifier for all SA tables.
1.3.6.1.4.1.3097.3.1.1current
wgIpsecSaEspInTable
OBJECT-TYPE
The (conceptual) table containing information on IPSec inbound ESP SAs. There should be one row for every inbound ESP security association that exists in the entity. The maximum number of rows is implementation dependent.
1.3.6.1.4.1.3097.3.1.1.1not-accessiblecurrent
wgIpsecSaEspInEntry
OBJECT-TYPE
An entry (conceptual row) containing the information on a particular IPSec inbound ESP SA. A row in this table cannot be created or deleted by SNMP operations on columns of the table.
1.3.6.1.4.1.3097.3.1.1.1.1not-accessiblecurrent
wgIpsecSaEspInAddress
OBJECT-TYPE
The destination address of the SA. For implementations that do not support IPv6, this address should appear as one of the IPv4-mapped IPv6 addresses as defined in Section 2.5.4 of [IPV6AA]. Specifically, the prefix '0000:0000:0000:0000:0000:FFFF:' is used for IPv4 only nodes, while the prefix '0000:0000:0000:0000:0000:0000:' is used for bi-lingual nodes.
1.3.6.1.4.1.3097.3.1.1.1.1.1IpAddressread-onlycurrent
wgIpsecSaEspInSpi
OBJECT-TYPE
The security parameters index of the SA.
1.3.6.1.4.1.3097.3.1.1.1.1.2Unsigned32read-onlycurrent
wgIpsecSaEspInDestId
OBJECT-TYPE
The destination identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation. This value is taken directly from the optional ID payloads that are exchanged during SA creation negotiation.
1.3.6.1.4.1.3097.3.1.1.1.1.3OCTET STRING (SIZE(1..255))read-onlycurrent
wgIpsecSaEspInDestIdType
OBJECT-TYPE
The type of identifier presented by 'wgIpsecSaEspInDestId', or 0 if unknown or if the SA uses transport mode encapsulation.
1.3.6.1.4.1.3097.3.1.1.1.1.4IpsecDoiIdentTyperead-onlycurrent
wgIpsecSaEspInSourceId
OBJECT-TYPE
The source identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation. This value is taken directly from the optional ID payloads that are exchange during SA creation negotiation.
1.3.6.1.4.1.3097.3.1.1.1.1.5OCTET STRING (SIZE(1..255))read-onlycurrent
wgIpsecSaEspInSourceIdType
OBJECT-TYPE
The type of identifier presented by 'wgIpsecSaEspInSourceId', or 0 if unknown or if the SA uses transport mode encapsulation.
1.3.6.1.4.1.3097.3.1.1.1.1.6IpsecDoiIdentTyperead-onlycurrent
wgIpsecSaEspInProtocol
OBJECT-TYPE
The transport-layer protocol number that this SA carries, or 0 if it carries any protocol.
1.3.6.1.4.1.3097.3.1.1.1.1.7Integer32 (0..255)read-onlycurrent
wgIpsecSaEspInDestPort
OBJECT-TYPE
The destination port number of the protocol that this SA carries, or 0 if it carries any port number.
1.3.6.1.4.1.3097.3.1.1.1.1.8Integer32 (0..65535)read-onlycurrent
wgIpsecSaEspInSourcePort
OBJECT-TYPE
The source port number of the protocol that this SA carries, or 0 if it carries any port number.
1.3.6.1.4.1.3097.3.1.1.1.1.9Integer32 (0..65535)read-onlycurrent
wgIpsecSaEspInCreator
OBJECT-TYPE
The creator of this SA. This MIB makes no assumptions about how the SAs are created. They may be created statically, or by a key exchange protocol such as IKE, or by some other method.
1.3.6.1.4.1.3097.3.1.1.1.1.10IpsecSaCreatorIdentread-onlycurrent
wgIpsecSaEspInEncapsulation
OBJECT-TYPE
The type of encapsulation used by this SA.
1.3.6.1.4.1.3097.3.1.1.1.1.11IpsecDoiEncapsulationModeread-onlycurrent
wgIpsecSaEspInEncAlg
OBJECT-TYPE
A unique value representing the encryption algorithm applied to traffic or 0 if there is no encryption used.
1.3.6.1.4.1.3097.3.1.1.1.1.12IpsecDoiEspTransformread-onlycurrent
wgIpsecSaEspInEncKeyLength
OBJECT-TYPE
The length of the encryption key in bits used for the algorithm specified in the 'wgIpsecSaEspInEncAlg' object, or 0 if the key length is implicit in the specified algorithm or there is no encryption specified.
1.3.6.1.4.1.3097.3.1.1.1.1.13Integer32 (0..65531)read-onlycurrent
wgIpsecSaEspInAuthAlg
OBJECT-TYPE
A unique value representing the hash algorithm applied to traffic or 0 if there is no authentication used.
1.3.6.1.4.1.3097.3.1.1.1.1.14IpsecDoiAuthAlgorithmread-onlycurrent
wgIpsecSaEspInLimitSeconds
OBJECT-TYPE
The maximum lifetime in seconds of the SA, or 0 if there is no time constraint on its expiration. The display value is limited to 4294967295 seconds (more than 136 years); values greater than that value will be truncated.
1.3.6.1.4.1.3097.3.1.1.1.1.15Integer32read-onlycurrent
wgIpsecSaEspInLimitKbytes
OBJECT-TYPE
The maximum traffic in kilobytes that the SA is allowed to support, or 0 if there is no traffic constraint on its expiration. The display value is limited to 4294967295 kilobytes; values greater than that value will be truncated.
1.3.6.1.4.1.3097.3.1.1.1.1.16Integer32read-onlycurrent
wgIpsecSaEspInAccSeconds
OBJECT-TYPE
The number of seconds accumulated against the SA's expiration by time. This is also the number of seconds that the SA has existed.
1.3.6.1.4.1.3097.3.1.1.1.1.17Counter32read-onlycurrent
wgIpsecSaEspInAccKbytes
OBJECT-TYPE
The amount of traffic accumulated that counts against the SA's expiration by traffic limitation, measured in Kbytes. This value may be 0 if the SA does not expire based on traffic.
1.3.6.1.4.1.3097.3.1.1.1.1.18Counter32read-onlycurrent
wgIpsecSaEspInUserOctets
OBJECT-TYPE
The amount of user level traffic measured in bytes handled by the SA. This is not necessarily the same as the amount of traffic applied against the traffic expiration limit.
1.3.6.1.4.1.3097.3.1.1.1.1.19Counter32read-onlycurrent
wgIpsecSaEspInPackets
OBJECT-TYPE
The number of packets handled by the SA.
1.3.6.1.4.1.3097.3.1.1.1.1.20Counter32read-onlycurrent
wgIpsecSaEspInDecryptErrors
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.1.1.21Counter32read-onlycurrent
wgIpsecSaEspInAuthErrors
OBJECT-TYPE
The number of packets discarded by the SA due to authentication errors.
1.3.6.1.4.1.3097.3.1.1.1.1.22Counter32read-onlycurrent
wgIpsecSaEspInReplayErrors
OBJECT-TYPE
The number of packets discarded by the SA due to replay errors.
1.3.6.1.4.1.3097.3.1.1.1.1.23Counter32read-onlycurrent
wgIpsecSaEspInPolicyErrors
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.1.1.24Counter32read-onlycurrent
wgIpsecSaEspInPadErrors
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.1.1.25Counter32read-onlycurrent
wgIpsecSaEspInOtherReceiveErrors
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.1.1.26Counter32read-onlycurrent
wgIpsecSaAhInTable
OBJECT-TYPE
The (conceptual) table containing information on IPSec inbound AH SAs. There should be one row for every inbound AH security association that exists in the entity. The maximum number of rows is implementation dependent.
1.3.6.1.4.1.3097.3.1.1.2not-accessiblecurrent
wgIpsecSaAhInEntry
OBJECT-TYPE
An entry (conceptual row) containing the information on a particular IPSec inbound AH SA. A row in this table cannot be created or deleted by SNMP operations on columns of the table.
1.3.6.1.4.1.3097.3.1.1.2.1not-accessiblecurrent
wgIpsecSaAhInAddress
OBJECT-TYPE
The destination address of the SA. For implementations that do not support IPv6, this address should appear as one of the IPv4-mapped IPv6 addresses as defined in Section 2.5.4 of [IPV6AA]. Specifically, the prefix '0000:0000:0000:0000:0000:FFFF:' is used for IPv4 only nodes, while the prefix '0000:0000:0000:0000:0000:0000:' is used for bi-lingual nodes.
1.3.6.1.4.1.3097.3.1.1.2.1.1IpAddressread-onlycurrent
wgIpsecSaAhInSpi
OBJECT-TYPE
The security parameters index of the SA.
1.3.6.1.4.1.3097.3.1.1.2.1.2Integer32read-onlycurrent
wgIpsecSaAhInDestId
OBJECT-TYPE
The destination identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation. This value is taken directly from the optional ID payloads that are exchange during SA creation negotiation.
1.3.6.1.4.1.3097.3.1.1.2.1.3OCTET STRING (SIZE(1..255))read-onlycurrent
wgIpsecSaAhInDestIdType
OBJECT-TYPE
The type of identifier presented by 'wgIpsecSaAhInDestId', or 0 if unknown or if the SA uses transport mode encapsulation.
1.3.6.1.4.1.3097.3.1.1.2.1.4IpsecDoiIdentTyperead-onlycurrent
wgIpsecSaAhInSourceId
OBJECT-TYPE
The source identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation. This value is taken directly from the optional ID payloads that are exchange during SA creation negotiation.
1.3.6.1.4.1.3097.3.1.1.2.1.5OCTET STRING (SIZE(1..255))read-onlycurrent
wgIpsecSaAhInSourceIdType
OBJECT-TYPE
The type of identifier presented by 'wgIpsecSaAhInSourceId', or 0 if unknown or if the SA uses transport mode encapsulation.
1.3.6.1.4.1.3097.3.1.1.2.1.6IpsecDoiIdentTyperead-onlycurrent
wgIpsecSaAhInProtocol
OBJECT-TYPE
The transport-layer protocol number that this SA carries, or 0 if it carries any protocol.
1.3.6.1.4.1.3097.3.1.1.2.1.7Integer32 (0..255)read-onlycurrent
wgIpsecSaAhInDestPort
OBJECT-TYPE
The destination port number of the protocol that this SA carries, or 0 if it carries any port number.
1.3.6.1.4.1.3097.3.1.1.2.1.8Integer32 (0..65535)read-onlycurrent
wgIpsecSaAhInSourcePort
OBJECT-TYPE
The source port number of the protocol that this SA carries, or 0 if it carries any port number.
1.3.6.1.4.1.3097.3.1.1.2.1.9Integer32 (0..65535)read-onlycurrent
wgIpsecSaAhInCreator
OBJECT-TYPE
The creator of this SA. This MIB makes no assumptions about how the SAs are created. They may be created statically, or by a key exchange protocol such as IKE, or by some other method.
1.3.6.1.4.1.3097.3.1.1.2.1.10IpsecSaCreatorIdentread-onlycurrent
wgIpsecSaAhInEncapsulation
OBJECT-TYPE
The type of encapsulation used by this SA.
1.3.6.1.4.1.3097.3.1.1.2.1.11IpsecDoiEncapsulationModeread-onlycurrent
wgIpsecSaAhInAuthAlg
OBJECT-TYPE
A unique value representing the hash algorithm applied to traffic carried by this SA if it uses ESP or 0 if there is no authentication applied by ESP.
1.3.6.1.4.1.3097.3.1.1.2.1.12IpsecDoiAhTransformread-onlycurrent
wgIpsecSaAhInLimitSeconds
OBJECT-TYPE
The maximum lifetime in seconds of the SA, or 0 if there is no time constraint on its expiration. The display value is limited to 4294967295 seconds (more than 136 years); values greater than that value will be truncated.
1.3.6.1.4.1.3097.3.1.1.2.1.13Integer32read-onlycurrent
wgIpsecSaAhInLimitKbytes
OBJECT-TYPE
The maximum traffic in Kbytes that the SA is allowed to support, or 0 if there is no traffic constraint on its expiration. The display value is limited to 4294967295 kilobytes; values greater than that value will be truncated.
1.3.6.1.4.1.3097.3.1.1.2.1.14Integer32read-onlycurrent
wgIpsecSaAhInAccSeconds
OBJECT-TYPE
The number of seconds accumulated against the SA's expiration by time. This is also the number of seconds that the SA has existed.
1.3.6.1.4.1.3097.3.1.1.2.1.15Counter32read-onlycurrent
wgIpsecSaAhInAccKbytes
OBJECT-TYPE
The amount of traffic accumulated that counts against the SA's expiration by traffic limitation, measured in Kbytes. This value may be 0 if the SA does not expire based on traffic.
1.3.6.1.4.1.3097.3.1.1.2.1.16Counter32read-onlycurrent
wgIpsecSaAhInUserOctets
OBJECT-TYPE
The amount of user level traffic measured in bytes handled by the SA. This is not necessarily the same as the amount of traffic applied against the traffic expiration limit.
1.3.6.1.4.1.3097.3.1.1.2.1.17Counter32read-onlycurrent
wgIpsecSaAhInPackets
OBJECT-TYPE
The number of packets handled by the SA.
1.3.6.1.4.1.3097.3.1.1.2.1.18Counter32read-onlycurrent
wgIpsecSaAhInAuthErrors
OBJECT-TYPE
The number of packets discarded by the SA due to authentication errors.
1.3.6.1.4.1.3097.3.1.1.2.1.19Counter32read-onlycurrent
wgIpsecSaAhInReplayErrors
OBJECT-TYPE
The number of packets discarded by the SA due to replay errors.
1.3.6.1.4.1.3097.3.1.1.2.1.20Counter32read-onlycurrent
wgIpsecSaAhInPolicyErrors
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.2.1.21Counter32read-onlycurrent
wgIpsecSaAhInOtherReceiveErrors
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.2.1.22Counter32read-onlycurrent
wgIpsecSaIpcompInTable
OBJECT-TYPE
The (conceptual) table containing information on IPSec inbound IPCOMP SAs. There should be one row for every inbound IPCOMP (security) association that exists in the entity. The maximum number of rows is implementation dependent.
1.3.6.1.4.1.3097.3.1.1.3not-accessiblecurrent
wgIpsecSaIpcompInEntry
OBJECT-TYPE
An entry (conceptual row) containing the information on a particular IPSec inbound IPCOMP SA. A row in this table cannot be created or deleted by SNMP operations on columns of the table.
1.3.6.1.4.1.3097.3.1.1.3.1not-accessiblecurrent
wgIpsecSaIpcompInAddress
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.3.1.1IpAddressread-onlycurrent
wgIpsecSaIpcompInCpi
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.3.1.2IpsecDoiIpcompTransformread-onlycurrent
wgIpsecSaIpcompInDestId
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.3.1.3OCTET STRING (SIZE(1..255))read-onlycurrent
wgIpsecSaIpcompInDestIdType
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.3.1.4IpsecDoiIdentTyperead-onlycurrent
wgIpsecSaIpcompInSourceId
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.3.1.5OCTET STRING (SIZE(1..255))read-onlycurrent
wgIpsecSaIpcompInSourceIdType
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.3.1.6IpsecDoiIdentTyperead-onlycurrent
wgIpsecSaIpcompInProtocol
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.3.1.7Integer32 (0..255)read-onlycurrent
wgIpsecSaIpcompInDestPort
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.3.1.8Integer32 (0..65535)read-onlycurrent
wgIpsecSaIpcompInSourcePort
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.3.1.9Integer32 (0..65535)read-onlycurrent
wgIpsecSaIpcompInCreator
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.3.1.10IpsecSaCreatorIdentread-onlycurrent
wgIpsecSaIpcompInEncapsulation
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.3.1.11IpsecDoiEncapsulationModeread-onlycurrent
wgIpsecSaIpcompInDecompAlg
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.3.1.12IpsecDoiIpcompTransformread-onlycurrent
wgIpsecSaIpcompInSeconds
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.3.1.13Counter32read-onlycurrent
wgIpsecSaIpcompInUserOctets
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.3.1.14Counter32read-onlycurrent
wgIpsecSaIpcompInPackets
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.3.1.15Counter32read-onlycurrent
wgIpsecSaIpcompInDecompErrors
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.3.1.16Counter32read-onlycurrent
wgIpsecSaIpcompInOtherReceiveErrors
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.3.1.17Counter32read-onlycurrent
wgIpsecSaEspOutTable
OBJECT-TYPE
The (conceptual) table containing information on IPSec Outbound ESP SAs. There should be one row for every outbound ESP security association that exists in the entity. The maximum number of rows is implementation dependent.
1.3.6.1.4.1.3097.3.1.1.4not-accessiblecurrent
wgIpsecSaEspOutEntry
OBJECT-TYPE
An entry (conceptual row) containing the information on a particular IPSec Outbound ESP SA. A row in this table cannot be created or deleted by SNMP operations on columns of the table.
1.3.6.1.4.1.3097.3.1.1.4.1not-accessiblecurrent
wgIpsecSaEspOutAddress
OBJECT-TYPE
The destination address of the SA. For implementations that do not support IPv6, this address should appear as one of the IPv4-mapped IPv6 addresses as defined in Section 2.5.4 of [IPV6AA]. Specifically, the prefix '0000:0000:0000:0000:0000:FFFF:' is used for IPv4 only nodes, while the prefix '0000:0000:0000:0000:0000:0000:' is used for bi-lingual nodes.
1.3.6.1.4.1.3097.3.1.1.4.1.1IpAddressread-onlycurrent
wgIpsecSaEspOutSpi
OBJECT-TYPE
The security parameters index of the SA.
1.3.6.1.4.1.3097.3.1.1.4.1.2Unsigned32read-onlycurrent
wgIpsecSaEspOutSourceId
OBJECT-TYPE
The source identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation. This value is taken directly from the optional ID payloads that are exchange during phase 2 negotiations.
1.3.6.1.4.1.3097.3.1.1.4.1.3OCTET STRING (SIZE(4..255))read-onlycurrent
wgIpsecSaEspOutSourceIdType
OBJECT-TYPE
The type of identifier presented by 'wgIpsecSaEspOutSourceId', or 0 if unknown or if the SA uses transport mode encapsulation.
1.3.6.1.4.1.3097.3.1.1.4.1.4IpsecDoiIdentTyperead-onlycurrent
wgIpsecSaEspOutDestId
OBJECT-TYPE
The destination identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation. This value is taken directly from the optional ID payloads that are exchange during phase 2 negotiations.
1.3.6.1.4.1.3097.3.1.1.4.1.5OCTET STRING (SIZE(4..255))read-onlycurrent
wgIpsecSaEspOutDestIdType
OBJECT-TYPE
The type of identifier presented by 'wgIpsecSaEspOutDestId', or 0 if unknown or if the SA uses transport mode encapsulation.
1.3.6.1.4.1.3097.3.1.1.4.1.6IpsecDoiIdentTyperead-onlycurrent
wgIpsecSaEspOutProtocol
OBJECT-TYPE
The transport-layer protocol number that this SA carries, or 0 if it carries any protocol.
1.3.6.1.4.1.3097.3.1.1.4.1.7Integer32 (0..255)read-onlycurrent
wgIpsecSaEspOutSourcePort
OBJECT-TYPE
The source port number of the protocol that this SA carries, or 0 if it carries any port number.
1.3.6.1.4.1.3097.3.1.1.4.1.8Integer32 (0..65535)read-onlycurrent
wgIpsecSaEspOutDestPort
OBJECT-TYPE
The destination port number of the protocol that this SA carries, or 0 if it carries any port number.
1.3.6.1.4.1.3097.3.1.1.4.1.9Integer32 (0..65535)read-onlycurrent
wgIpsecSaEspOutCreator
OBJECT-TYPE
The creator of this SA. This MIB makes no assumptions about how the SAs are created. They may be created statically, or by a key exchange protocol such as IKE, or by some other method.
1.3.6.1.4.1.3097.3.1.1.4.1.10IpsecSaCreatorIdentread-onlycurrent
wgIpsecSaEspOutEncapsulation
OBJECT-TYPE
The type of encapsulation used by this SA.
1.3.6.1.4.1.3097.3.1.1.4.1.11IpsecDoiEncapsulationModeread-onlycurrent
wgIpsecSaEspOutEncAlg
OBJECT-TYPE
A unique value representing the encryption algorithm applied to traffic or 0 if there is no encryption used.
1.3.6.1.4.1.3097.3.1.1.4.1.12IpsecDoiEspTransformread-onlycurrent
wgIpsecSaEspOutEncKeyLength
OBJECT-TYPE
The length of the encryption key in bits used for the algorithm specified in the 'wgIpsecSaEspOutEncAlg' object, or 0 if the key length is implicit in the specified algorithm or there is no encryption specified.
1.3.6.1.4.1.3097.3.1.1.4.1.13Integer32 (0..65531)read-onlycurrent
wgIpsecSaEspOutAuthAlg
OBJECT-TYPE
A unique value representing the hash algorithm applied to traffic or 0 if there is no authentication used.
1.3.6.1.4.1.3097.3.1.1.4.1.14IpsecDoiAuthAlgorithmread-onlycurrent
wgIpsecSaEspOutLimitSeconds
OBJECT-TYPE
The maximum lifetime in seconds of the SA, or 0 if there is no time constraint on its expiration. The display value is limited to 4294967295 seconds (more than 136 years); values greater than that value will be truncated.
1.3.6.1.4.1.3097.3.1.1.4.1.15Integer32read-onlycurrent
wgIpsecSaEspOutLimitKbytes
OBJECT-TYPE
The maximum traffic in kbytes that the SA is allowed to support, or 0 if there is no traffic constraint on its expiration. The display value is limited to 4294967295 kilobytes; values greater than that value will be truncated.
1.3.6.1.4.1.3097.3.1.1.4.1.16Integer32read-onlycurrent
wgIpsecSaEspOutAccSeconds
OBJECT-TYPE
The number of seconds accumulated against the SA's expiration by time. This is also the number of seconds that the SA has existed.
1.3.6.1.4.1.3097.3.1.1.4.1.17Counter32read-onlycurrent
wgIpsecSaEspOutAccKbytes
OBJECT-TYPE
The amount of traffic accumulated that counts against the SA's expiration by traffic limitation, measured in Kbytes. This value may be 0 if the SA does not expire based on traffic.
1.3.6.1.4.1.3097.3.1.1.4.1.18Counter32read-onlycurrent
wgIpsecSaEspOutUserOctets
OBJECT-TYPE
The amount of user level traffic measured in bytes handled by the SA. This is not necessarily the same as the amount of traffic applied against the traffic expiration limit.
1.3.6.1.4.1.3097.3.1.1.4.1.19Counter32read-onlycurrent
wgIpsecSaEspOutPackets
OBJECT-TYPE
The number of packets handled by the SA.
1.3.6.1.4.1.3097.3.1.1.4.1.20Counter32read-onlycurrent
wgIpsecSaEspOutSendErrors
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.4.1.21Counter32read-onlycurrent
wgIpsecSaAhOutTable
OBJECT-TYPE
The (conceptual) table containing information on IPSec Outbound AH SAs. There should be one row for every outbound AH security association that exists in the entity. The maximum number of rows is implementation dependent.
1.3.6.1.4.1.3097.3.1.1.5not-accessiblecurrent
wgIpsecSaAhOutEntry
OBJECT-TYPE
An entry (conceptual row) containing the information on a particular IPSec Outbound AH SA. A row in this table cannot be created or deleted by SNMP operations on columns of the table.
1.3.6.1.4.1.3097.3.1.1.5.1not-accessiblecurrent
wgIpsecSaAhOutAddress
OBJECT-TYPE
The destination address of the SA. For implementations that do not support IPv6, this address should appear as one of the IPv4-mapped IPv6 addresses as defined in Section 2.5.4 of [IPV6AA]. Specifically, the prefix '0000:0000:0000:0000:0000:FFFF:' is used for IPv4 only nodes, while the prefix '0000:0000:0000:0000:0000:0000:' is used for bi-lingual nodes.
1.3.6.1.4.1.3097.3.1.1.5.1.1IpAddressread-onlycurrent
wgIpsecSaAhOutSpi
OBJECT-TYPE
The security parameters index of the SA.
1.3.6.1.4.1.3097.3.1.1.5.1.2Integer32read-onlycurrent
wgIpsecSaAhOutSourceId
OBJECT-TYPE
The source identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation. This value is taken directly from the optional ID payloads that are exchange during phase 2 negotiations.
1.3.6.1.4.1.3097.3.1.1.5.1.3OCTET STRING (SIZE(4..255))read-onlycurrent
wgIpsecSaAhOutSourceIdType
OBJECT-TYPE
The type of identifier presented by 'wgIpsecSaAhOutSourceId', or 0 if unknown or if the SA uses transport mode encapsulation.
1.3.6.1.4.1.3097.3.1.1.5.1.4IpsecDoiIdentTyperead-onlycurrent
wgIpsecSaAhOutDestId
OBJECT-TYPE
The destination identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation. This value is taken directly from the optional ID payloads that are exchange during phase 2 negotiations.
1.3.6.1.4.1.3097.3.1.1.5.1.5OCTET STRING (SIZE(4..255))read-onlycurrent
wgIpsecSaAhOutDestIdType
OBJECT-TYPE
The type of identifier presented by 'wgIpsecSaAhOutDestId', or 0 if unknown or if the SA uses transport mode encapsulation.
1.3.6.1.4.1.3097.3.1.1.5.1.6IpsecDoiIdentTyperead-onlycurrent
wgIpsecSaAhOutProtocol
OBJECT-TYPE
The transport-layer protocol number that this SA carries, or 0 if it carries any protocol.
1.3.6.1.4.1.3097.3.1.1.5.1.7Integer32 (0..255)read-onlycurrent
wgIpsecSaAhOutSourcePort
OBJECT-TYPE
The source port number of the protocol that this SA carries, or 0 if it carries any port number.
1.3.6.1.4.1.3097.3.1.1.5.1.8Integer32 (0..65535)read-onlycurrent
wgIpsecSaAhOutDestPort
OBJECT-TYPE
The destination port number of the protocol that this SA carries, or 0 if it carries any port number.
1.3.6.1.4.1.3097.3.1.1.5.1.9Integer32 (0..65535)read-onlycurrent
wgIpsecSaAhOutCreator
OBJECT-TYPE
The creator of this SA. This MIB makes no assumptions about how the SAs are created. They may be created statically, or by a key exchange protocol such as IKE, or by some other method.
1.3.6.1.4.1.3097.3.1.1.5.1.10IpsecSaCreatorIdentread-onlycurrent
wgIpsecSaAhOutEncapsulation
OBJECT-TYPE
The type of encapsulation used by this SA.
1.3.6.1.4.1.3097.3.1.1.5.1.11IpsecDoiEncapsulationModeread-onlycurrent
wgIpsecSaAhOutAuthAlg
OBJECT-TYPE
A unique value representing the hash algorithm applied to traffic or 0 if there is no authentication used.
1.3.6.1.4.1.3097.3.1.1.5.1.12IpsecDoiAhTransformread-onlycurrent
wgIpsecSaAhOutLimitSeconds
OBJECT-TYPE
The maximum lifetime in seconds of the SA, or 0 if there is no time constraint on its expiration. The display value is limited to 4294967295 seconds (more than 136 years); values greater than that value will be truncated.
1.3.6.1.4.1.3097.3.1.1.5.1.13Integer32read-onlycurrent
wgIpsecSaAhOutLimitKbytes
OBJECT-TYPE
The maximum traffic in Kbytes that the SA is allowed to support, or 0 if there is no traffic constraint on its expiration. The display value is limited to 4294967295 kilobytes; values greater than that value will be truncated.
1.3.6.1.4.1.3097.3.1.1.5.1.14Integer32read-onlycurrent
wgIpsecSaAhOutAccSeconds
OBJECT-TYPE
The number of seconds accumulated against the SA's expiration by time. This is also the number of seconds that the SA has existed.
1.3.6.1.4.1.3097.3.1.1.5.1.15Counter32read-onlycurrent
wgIpsecSaAhOutAccKbytes
OBJECT-TYPE
The amount of traffic accumulated that counts against the SA's expiration by traffic limitation, measured in Kbytes. This value may be 0 if the SA does not expire based on traffic.
1.3.6.1.4.1.3097.3.1.1.5.1.16Counter32read-onlycurrent
wgIpsecSaAhOutUserOctets
OBJECT-TYPE
The amount of user level traffic measured in bytes handled by the SA. This is not necessarily the same as the amount of traffic applied against the traffic expiration limit.
1.3.6.1.4.1.3097.3.1.1.5.1.17Counter32read-onlycurrent
wgIpsecSaAhOutPackets
OBJECT-TYPE
The number of packets handled by the SA.
1.3.6.1.4.1.3097.3.1.1.5.1.18Counter32read-onlycurrent
wgIpsecSaAhOutSendErrors
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.5.1.19Counter32read-onlycurrent
wgIpsecSaIpcompOutTable
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.6not-accessiblecurrent
wgIpsecSaIpcompOutEntry
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.6.1not-accessiblecurrent
wgIpsecSaIpcompOutAddress
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.6.1.1IpAddressread-onlycurrent
wgIpsecSaIpcompOutCpi
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.6.1.2IpsecDoiIpcompTransformread-onlycurrent
wgIpsecSaIpcompOutSourceId
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.6.1.3OCTET STRING (SIZE(4..255))read-onlycurrent
wgIpsecSaIpcompOutSourceIdType
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.6.1.4IpsecDoiIdentTyperead-onlycurrent
wgIpsecSaIpcompOutDestId
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.6.1.5OCTET STRING (SIZE(4..255))read-onlycurrent
wgIpsecSaIpcompOutDestIdType
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.6.1.6IpsecDoiIdentTyperead-onlycurrent
wgIpsecSaIpcompOutProtocol
OBJECT-TYPE
The transport-layer protocol number that this SA carries, or 0 if it carries any protocol.
1.3.6.1.4.1.3097.3.1.1.6.1.7Integer32 (0..255)read-onlycurrent
wgIpsecSaIpcompOutSourcePort
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.6.1.8Integer32 (0..65535)read-onlycurrent
wgIpsecSaIpcompOutDestPort
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.6.1.9Integer32 (0..65535)read-onlycurrent
wgIpsecSaIpcompOutCreator
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.6.1.10IpsecSaCreatorIdentread-onlycurrent
wgIpsecSaIpcompOutEncapsulation
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.6.1.11IpsecDoiEncapsulationModeread-onlycurrent
wgIpsecSaIpcompOutCompAlg
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.6.1.12IpsecDoiIpcompTransformread-onlycurrent
wgIpsecSaIpcompOutSeconds
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.6.1.13Counter32read-onlycurrent
wgIpsecSaIpcompOutUserOctets
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.1.6.1.14Counter32read-onlycurrent
wgIpsecSaIpcompOutPackets
OBJECT-TYPE
The number of packets handled by the SA.
1.3.6.1.4.1.3097.3.1.1.6.1.15Counter32read-onlycurrent
wgSaStatistics
OBJECT-IDENTITY
This is the base object identifier for all objects which are global counters for IPSec security associations.
1.3.6.1.4.1.3097.3.1.2current
wgIpsecEspCurrentInboundSAs
OBJECT-TYPE
The current number of inbound ESP SAs in the entity.
1.3.6.1.4.1.3097.3.1.2.1Gauge32read-onlycurrent
wgIpsecEspTotalInboundSAs
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.2.2Counter32read-onlycurrent
wgIpsecEspCurrentOutboundSAs
OBJECT-TYPE
The current number of outbound ESP SAs in the entity.
1.3.6.1.4.1.3097.3.1.2.3Gauge32read-onlycurrent
wgIpsecEspTotalOutboundSAs
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.2.4Counter32read-onlycurrent
wgIpsecAhCurrentInboundSAs
OBJECT-TYPE
The current number of inbound AH SAs in the entity.
1.3.6.1.4.1.3097.3.1.2.5Gauge32read-onlycurrent
wgIpsecAhTotalInboundSAs
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.2.6Counter32read-onlycurrent
wgIpsecAhCurrentOutboundSAs
OBJECT-TYPE
The current number of outbound AH SAs in the entity.
1.3.6.1.4.1.3097.3.1.2.7Gauge32read-onlycurrent
wgIpsecAhTotalOutboundSAs
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.2.8Counter32read-onlycurrent
wgIpsecIpcompCurrentInboundSAs
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.2.9Gauge32read-onlycurrent
wgIpsecIpcompTotalInboundSAs
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.2.10Counter32read-onlycurrent
wgIpsecIpcompCurrentOutboundSAs
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.2.11Gauge32read-onlycurrent
wgIpsecIpcompTotalOutboundSAs
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.2.12Counter32read-onlycurrent
wgSaErrors
OBJECT-IDENTITY
This is the base object identifier for all objects which are global error counters for IPSec security associations.
1.3.6.1.4.1.3097.3.1.3current
wgIpsecDecryptionErrors
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.3.1Counter32read-onlycurrent
wgIpsecAuthenticationErrors
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.3.2Counter32read-onlycurrent
wgIpsecReplayErrors
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.3.3Counter32read-onlycurrent
wgIpsecPolicyErrors
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.3.4Counter32read-onlycurrent
wgIpsecOtherReceiveErrors
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.3.5Counter32read-onlycurrent
wgIpsecSendErrors
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.3.6Counter32read-onlycurrent
wgIpsecUnknownSpiErrors
OBJECT-TYPE
Deprecated, currently unused.
1.3.6.1.4.1.3097.3.1.3.7Counter32read-onlycurrent