HP-ICF-SECURITY
File:
HP-ICF-SECURITY.mib (35143 bytes)
Imported modules
Imported symbols
Defined Types
IcfSecurAuthMgrEntry |
|
SEQUENCE |
|
|
|
|
icfAuthMgrIndex |
Integer32 |
|
|
icfAuthMgrIpAddress |
IpAddress |
|
|
icfAuthMgrIpxAddress |
OCTET STRING |
|
|
icfAuthMgrRcvTraps |
INTEGER |
|
IcfAuthMgrEntry |
|
SEQUENCE |
|
|
|
|
icfAuthMgrSubIndex |
Integer32 |
|
|
icfAuthMgrAddrType |
INTEGER |
|
|
icfAuthMgrAddress |
OCTET STRING |
|
|
icfAuthMgrMask |
OCTET STRING |
|
|
icfAuthMgrStatus |
RowStatus |
|
IcfAuthIPMgrEntry |
|
SEQUENCE |
|
|
|
|
icfAuthIPMgrIndex |
Integer32 |
|
|
icfAuthIPMgrAddress |
IpAddress |
|
|
icfAuthIPMgrMask |
IpAddress |
|
|
icfAuthIPMgrAccess |
INTEGER |
|
|
icfAuthIPMgrStatus |
RowStatus |
|
|
icfAuthIPMgrInetAddrType |
InetAddressType |
|
|
icfAuthIPMgrInetAddress |
InetAddress |
|
|
icfAuthIPMgrInetAddrMaskType |
InetAddressType |
|
|
icfAuthIPMgrInetAddrMask |
InetAddress |
|
|
icfAuthIPMgrAccessMethod |
INTEGER |
|
Defined Values
icfSecurityMib |
1.3.6.1.4.1.11.2.14.10.2.1 |
This MIB module describes objects for managing
the SNMPv1 authorization configuration for
devices in the HP Integrated Communication
Facility product line. |
MODULE-IDENTITY |
|
|
|
icfSecurPassword |
1.3.6.1.4.1.11.2.14.4.1 |
********* THIS OBJECT IS DEPRECATED *********
This variable contains a string which is used
both as the community name for the password
community, and as the login password for the
console port. This community name is needed for
most SET operations. In addition, the variables
in the ICF security group are only visible within
the password community, and must use the value of
this variable as the community name for GET
operations. If the value of this variable is
equal to the null string, the community name
'public' or the null string will be treated the
same as the password community.
This object has been deprecated. Its functionality
has been replaced by the icfCommunityTable. |
Status: deprecated |
Access: read-write |
OBJECT-TYPE |
|
|
|
|
DisplayString |
Size(0..63) |
|
icfSecurAuthAnyMgr |
1.3.6.1.4.1.11.2.14.4.2 |
********* THIS OBJECT IS DEPRECATED *********
When this variable is set to enabled, any manager
with a valid community name may perform SET
operations on this device. In this configuration,
entries in the icfSecurAuthMgrTable are used only
for trap destinations. If this variable is set to
disabled, a manager must be in the
icfSecurAuthMgrTable and have a valid community
name in order to perform SET operations.
This object has been deprecated. Its functionality
has been replaced by the icfAuthMgrTable. |
Status: deprecated |
Access: read-write |
OBJECT-TYPE |
|
|
|
|
INTEGER |
enabled(1), disabled(2) |
|
icfSecurAuthMgrTable |
1.3.6.1.4.1.11.2.14.4.3 |
********* THIS OBJECT IS DEPRECATED *********
This table contains a list of addresses of
managers that are allowed to perform SET
operations on this device, and controls the
destination addresses for traps. If
icfSecurAuthAnyMgr is set to disabled, a manager
must be in this table and use the correct
community name for the password community in order
to perform a GET operation on this table.
This table has been deprecated. It is replaced by
the icfAuthMgrTable. The trap destination
functionality has been replaced by the
hpicfTrapDestTable. |
Status: deprecated |
Access: not-accessible |
OBJECT-TYPE |
|
|
|
|
SEQUENCE OF |
|
|
|
|
IcfSecurAuthMgrEntry |
|
icfSecurAuthMgrEntry |
1.3.6.1.4.1.11.2.14.4.3.1 |
********* THIS OBJECT IS DEPRECATED *********
An entry in the icfSecurAuthMgrTable containing
information about a single manager.
This table has been deprecated. It is replaced by
the icfAuthMgrTable. The trap destination
functionality has been replaced by the
hpicfTrapDestTable. |
Status: deprecated |
Access: not-accessible |
OBJECT-TYPE |
|
|
|
|
IcfSecurAuthMgrEntry |
|
|
icfAuthMgrIndex |
1.3.6.1.4.1.11.2.14.4.3.1.1 |
********* THIS OBJECT IS DEPRECATED *********
This object contains the index which uniquely
identifies this entry in the
icfSecurAuthMgrTable.
This table has been deprecated. It is replaced by
the icfAuthMgrTable. The trap destination
functionality has been replaced by the
hpicfTrapDestTable. |
Status: deprecated |
Access: read-only |
OBJECT-TYPE |
|
|
|
|
Integer32 |
1..10 |
|
icfAuthMgrIpAddress |
1.3.6.1.4.1.11.2.14.4.3.1.2 |
********* THIS OBJECT IS DEPRECATED *********
The IP address of a manager that is allowed to
manage this device. Setting this variable to a
nonzero value will clear the corresponding
instance of the icfAuthMgrIpxAddress variable.
This table has been deprecated. It is replaced by
the icfAuthMgrTable. The trap destination
functionality has been replaced by the
hpicfTrapDestTable. |
Status: deprecated |
Access: read-write |
OBJECT-TYPE |
|
|
|
|
IpAddress |
|
|
icfAuthMgrIpxAddress |
1.3.6.1.4.1.11.2.14.4.3.1.3 |
********* THIS OBJECT IS DEPRECATED *********
The IPX address of a manager that is allowed to
manage this device. Setting this variable to a
valid IPX address will clear the corresponding
instance of the icfAuthMgrIpAddress variable.
This table has been deprecated. It is replaced by
the icfAuthMgrTable. The trap destination
functionality has been replaced by the
hpicfTrapDestTable. |
Status: deprecated |
Access: read-write |
OBJECT-TYPE |
|
|
|
|
OCTET STRING |
Size(10) |
|
icfAuthMgrRcvTraps |
1.3.6.1.4.1.11.2.14.4.3.1.4 |
********* THIS OBJECT IS DEPRECATED *********
If this variable is set to enabled, any traps
generated by this device will be sent to the
manager indicated by the corresponding instance of
either icfAuthMgrIpAddress or
icfAuthMgrIpxAddress, whichever is valid.
This table has been deprecated. It is replaced by
the icfAuthMgrTable. The trap destination
functionality has been replaced by the
hpicfTrapDestTable. |
Status: deprecated |
Access: read-write |
OBJECT-TYPE |
|
|
|
|
INTEGER |
enabled(1), disabled(2) |
|
icfSecurIntruderFlag |
1.3.6.1.4.1.11.2.14.4.4.1 |
If this object is set to 'valid', the remainder
of the intruder objects contain information about
an authentication failure. The Security LED on
the device will blink if this flag is set to
'valid'. The intruder objects will not be
overwritten as long as this flag is set to
'valid'. Setting this flag to 'invalid' will turn
off the Security LED if there are no other
current violations, and will allow the intruder
objects to be overwritten by subsequent
authentication failures. |
Status: current |
Access: read-write |
OBJECT-TYPE |
|
|
|
|
INTEGER |
valid(1), invalid(2) |
|
icfSecurIntruderIpAddress |
1.3.6.1.4.1.11.2.14.4.4.2 |
The IP address of the manager that caused the
authentication failure. Only one of
icfSecurIntruderIpAddress and
icfSecurIntruderIPXAddress will be valid. |
Status: current |
Access: read-only |
OBJECT-TYPE |
|
|
|
|
IpAddress |
|
|
icfSecurIntruderIpxAddress |
1.3.6.1.4.1.11.2.14.4.4.3 |
The IPX address of the manager that caused the
authentication failure. Only one of
icfSecurIntruderIpAddress and
icfSecurIntruderIPXAddress will be valid. |
Status: current |
Access: read-only |
OBJECT-TYPE |
|
|
|
|
OCTET STRING |
Size(10) |
|
icfSecurIntruderTime |
1.3.6.1.4.1.11.2.14.4.4.4 |
The value of sysUpTime when the authentication
failure occurred. A value of 0 indicates that the
agent has been reset since this authentication
failure occurred. |
Status: current |
Access: read-only |
OBJECT-TYPE |
|
|
|
|
TimeTicks |
|
|
icfAuthMgrTable |
1.3.6.1.4.1.11.2.14.4.6 |
******************DEPRECATED*******************
This table contains a list of manager addresses.
Entries in this table are grouped by using a common
value for icfCommunityIndex, that identifies the
community name that the group of manager addresses
has access to. A community name entry which has
a set of entries in this table can only be used by
requests originating from one of the addresses in
the set. A community name entry which has no
entries in this table can be used by requests
originating from any address. |
Status: deprecated |
Access: not-accessible |
OBJECT-TYPE |
|
|
|
|
SEQUENCE OF |
|
|
|
|
IcfAuthMgrEntry |
|
icfAuthMgrEntry |
1.3.6.1.4.1.11.2.14.4.6.1 |
******************DEPRECATED*******************
An entry in the table, containing a single
authorized manager address. |
Status: deprecated |
Access: not-accessible |
OBJECT-TYPE |
|
|
|
|
IcfAuthMgrEntry |
|
|
icfAuthMgrSubIndex |
1.3.6.1.4.1.11.2.14.4.6.1.1 |
******************DEPRECATED*******************
An index which uniquely identifies an address within
a group. |
Status: deprecated |
Access: not-accessible |
OBJECT-TYPE |
|
|
|
|
Integer32 |
1..65535 |
|
icfAuthMgrAddrType |
1.3.6.1.4.1.11.2.14.4.6.1.2 |
******************DEPRECATED*******************
The network type for this entry. |
Status: deprecated |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
INTEGER |
ip(1), ipx(2) |
|
icfAuthMgrAddress |
1.3.6.1.4.1.11.2.14.4.6.1.3 |
******************DEPRECATED*******************
The manager address for this entry, formatted
according to the value of icfAuthMgrAddrType. When
icfAuthMgrAddrType is 'ip', this value will consist
of four octets, containing the IP address of the
manager in network byte order. When
icfAuthMgrAddrType is 'ipx', this value will consist
of ten octets. The first four octets will contain
the IPX network number in network byte order, and the
remaining six octets will contain the IPX node number
in network byte order. |
Status: deprecated |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
OCTET STRING |
Size(4|10) |
|
icfAuthMgrMask |
1.3.6.1.4.1.11.2.14.4.6.1.4 |
******************DEPRECATED*******************
This object is used to qualify the value of the
corresponding instance of icfAuthMgrAddress. The
semantics of this object depend on the corresponding
value of icfAuthMgrAddrType. When icfAuthMgrType
is 'ip', this object can be used to allow access
by all managers on a particular IP subnet. When
icfAuthMgrType is 'ipx', this object can be used to
allow access by all managers with a particular IPX
network number. |
Status: deprecated |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
OCTET STRING |
Size(4|10) |
|
icfAuthMgrStatus |
1.3.6.1.4.1.11.2.14.4.6.1.5 |
******************DEPRECATED*******************
Status of this entry. |
Status: deprecated |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
RowStatus |
|
|
icfAuthIPMgrTable |
1.3.6.1.4.1.11.2.14.4.7 |
This table contains a list of IP manager
addresses. This list is used grant or deny
access to HTTP, telnet, and TFTP. |
Status: current |
Access: not-accessible |
OBJECT-TYPE |
|
|
|
|
SEQUENCE OF |
|
|
|
|
IcfAuthIPMgrEntry |
|
icfAuthIPMgrEntry |
1.3.6.1.4.1.11.2.14.4.7.1 |
An entry in the table containing a single
IP authorized manager address. |
Status: current |
Access: not-accessible |
OBJECT-TYPE |
|
|
|
|
IcfAuthIPMgrEntry |
|
|
icfAuthIPMgrIndex |
1.3.6.1.4.1.11.2.14.4.7.1.1 |
An index which uniquely identifies an address
within the group. |
Status: current |
Access: not-accessible |
OBJECT-TYPE |
|
|
|
|
Integer32 |
1..65535 |
|
icfAuthIPMgrAddress |
1.3.6.1.4.1.11.2.14.4.7.1.2 |
**************deprecated*********************
The IP address of the authorized manager for
this entry.
This object is deprecated new object icfAuthIPMgr
InetAddress has been defined to hold version neutral
address type. |
Status: deprecated |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
IpAddress |
|
|
icfAuthIPMgrMask |
1.3.6.1.4.1.11.2.14.4.7.1.3 |
**************deprecated**********************
This object qualifies the value of the
corresponding instance of icfAuthIPMgrAddress.
This object can be used to allow access by all
managers on a particular IP subnet.
This object is deprecated the new objects which are
defined to hold this is value are
icfAuthIPMgrInetAddrMaskType and icfAuthIPMgrInetAddrMask. |
Status: deprecated |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
IpAddress |
|
|
icfAuthIPMgrAccess |
1.3.6.1.4.1.11.2.14.4.7.1.4 |
This object defines the access level for a
given manager. Operator allows for read only
access, and Manager allows for read/write
access. |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
INTEGER |
operator(1), manager(2) |
|
icfAuthIPMgrInetAddress |
1.3.6.1.4.1.11.2.14.4.7.1.7 |
The IP address of the authorized manager for
this entry.This object can hold the version
neutral IP address. |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
InetAddress |
|
|
icfAuthIPMgrInetAddrMask |
1.3.6.1.4.1.11.2.14.4.7.1.9 |
This object qualifies the value of the
corresponding instance of icfAuthIPMgrInetAddress.
This object can be used to allow access by all
managers on a particular IP subnet.This object can
hold the version neutral IP address Mask. |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
InetAddress |
|
|
icfAuthIPMgrAccessMethod |
1.3.6.1.4.1.11.2.14.4.7.1.10 |
This object defines the access method for a
given manager. The different access methods are
all, ssh, telnet, web, snmp, tftp |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
INTEGER |
all(1), ssh(2), telnet(3), web(4), snmp(5), tftp(6) |
|
icfSecurCompliance |
1.3.6.1.4.1.11.2.14.10.2.1.1.1.1 |
********* THIS COMPLIANCE IS DEPRECATED *********/
A compliance statement for agents implementing
the original version of this module. |
Status: obsolete |
Access: read-create |
MODULE-COMPLIANCE |
|
|
|
icfAuthIPMgrCompliance |
1.3.6.1.4.1.11.2.14.10.2.1.1.1.3 |
A compliance statement for granting or denying
access to specific IP addresses for HTTP, telnet,
and TFTP. |
Status: deprecated |
Access: read-create |
MODULE-COMPLIANCE |
|
|
|
icfAuthIPMgrCompliance1 |
1.3.6.1.4.1.11.2.14.10.2.1.1.1.4 |
A compliance statement for granting or denying
access to specific IP addresses for HTTP, telnet,
and TFTP. |
Status: current |
Access: read-create |
MODULE-COMPLIANCE |
|
|
|
icfSnmpSecurityGroup |
1.3.6.1.4.1.11.2.14.10.2.1.1.2.1 |
********* THIS GROUP IS DEPRECATED *********
A collection of objects for managing the SNMPv1
(non-)security configuration on HP networking
devices. |
Status: obsolete |
Access: read-create |
OBJECT-GROUP |
|
|
|
icfSecIntruderGroup |
1.3.6.1.4.1.11.2.14.10.2.1.1.2.2 |
A collection of objects for tracking
authentication failures. |
Status: current |
Access: read-create |
OBJECT-GROUP |
|
|
|
icfAuthIPMgrGroup |
1.3.6.1.4.1.11.2.14.10.2.1.1.2.14 |
***************** deprecated ******************
A collection of objects for granting or denying
access to specific IP addresses for HTTP, telnet,
and TFTP.
This Group object has been deprecated and a new
group object has been defined with name
icfAuthIPMgrInetGroup. |
Status: deprecated |
Access: read-create |
OBJECT-GROUP |
|
|
|
icfAuthIPMgrInetGroup |
1.3.6.1.4.1.11.2.14.10.2.1.1.2.15 |
A collection of objects for granting or denying
access to specific IP addresses for HTTP, telnet,
and TFTP. |
Status: current |
Access: read-create |
OBJECT-GROUP |
|
|
|