RAPID-IPSEC-SA-MON-MIB-EXT

File: RAPID-IPSEC-SA-MON-MIB-EXT.mib (82072 bytes)

Imported modules

SNMPv2-SMI SNMPv2-TC RFC1213-MIB
IPSEC-ISAKMP-IKE-DOI-TC RAPID-MIB

Imported symbols

IpAddress MODULE-IDENTITY OBJECT-TYPE
Counter32 Gauge32 Integer32
NOTIFICATION-TYPE OBJECT-IDENTITY enterprises
TEXTUAL-CONVENTION TruthValue ifIndex
IpsecDoiIdentType IpsecDoiEncapsulationMode IpsecDoiEspTransform
IpsecDoiAhTransform IpsecDoiAuthAlgorithm IpsecDoiIpcompTransform
IpsecDoiSecProtocolId rapidstream

Defined Types

IpsecSaCreatorIdent  
A value indicating how an SA was created.
TEXTUAL-CONVENTION    
  INTEGER unknown(0), static(1), ike(2), other(3)  

IpsecIpv6Address  
This data type is used to model IPv6 address prefixes. This is a binary string of 16 octets in network byte-order.
TEXTUAL-CONVENTION    
  OCTET STRING Size(16)  

RSIpsecSaEspInEntry  
SEQUENCE    
  rsIpsecSaEspInAddress IpAddress
  rsIpsecSaEspInSpi Integer32
  rsIpsecSaEspInDestId OCTET STRING
  rsIpsecSaEspInDestIdType IpsecDoiIdentType
  rsIpsecSaEspInSourceId OCTET STRING
  rsIpsecSaEspInSourceIdType IpsecDoiIdentType
  rsIpsecSaEspInProtocol Integer32
  rsIpsecSaEspInDestPort Integer32
  rsIpsecSaEspInSourcePort Integer32
  rsIpsecSaEspInCreator IpsecSaCreatorIdent
  rsIpsecSaEspInEncapsulation IpsecDoiEncapsulationMode
  rsIpsecSaEspInEncAlg IpsecDoiEspTransform
  rsIpsecSaEspInEncKeyLength Integer32
  rsIpsecSaEspInAuthAlg IpsecDoiAuthAlgorithm
  rsIpsecSaEspInLimitSeconds Integer32
  rsIpsecSaEspInLimitKbytes Integer32
  rsIpsecSaEspInAccSeconds Counter32
  rsIpsecSaEspInAccKbytes Counter32
  rsIpsecSaEspInUserOctets Counter32
  rsIpsecSaEspInPackets Counter32
  rsIpsecSaEspInDecryptErrors Counter32
  rsIpsecSaEspInAuthErrors Counter32
  rsIpsecSaEspInReplayErrors Counter32
  rsIpsecSaEspInPolicyErrors Counter32
  rsIpsecSaEspInPadErrors Counter32
  rsIpsecSaEspInOtherReceiveErrors Counter32

RSIpsecSaAhInEntry  
SEQUENCE    
  rsIpsecSaAhInAddress IpAddress
  rsIpsecSaAhInSpi Integer32
  rsIpsecSaAhInDestId OCTET STRING
  rsIpsecSaAhInDestIdType IpsecDoiIdentType
  rsIpsecSaAhInSourceId OCTET STRING
  rsIpsecSaAhInSourceIdType IpsecDoiIdentType
  rsIpsecSaAhInProtocol Integer32
  rsIpsecSaAhInDestPort Integer32
  rsIpsecSaAhInSourcePort Integer32
  rsIpsecSaAhInCreator IpsecSaCreatorIdent
  rsIpsecSaAhInEncapsulation IpsecDoiEncapsulationMode
  rsIpsecSaAhInAuthAlg IpsecDoiAhTransform
  rsIpsecSaAhInLimitSeconds Integer32
  rsIpsecSaAhInLimitKbytes Integer32
  rsIpsecSaAhInAccSeconds Counter32
  rsIpsecSaAhInAccKbytes Counter32
  rsIpsecSaAhInUserOctets Counter32
  rsIpsecSaAhInPackets Counter32
  rsIpsecSaAhInAuthErrors Counter32
  rsIpsecSaAhInReplayErrors Counter32
  rsIpsecSaAhInPolicyErrors Counter32
  rsIpsecSaAhInOtherReceiveErrors Counter32

RSIpsecSaIpcompInEntry  
SEQUENCE    
  rsIpsecSaIpcompInAddress IpAddress
  rsIpsecSaIpcompInCpi IpsecDoiIpcompTransform
  rsIpsecSaIpcompInDestId OCTET STRING
  rsIpsecSaIpcompInDestIdType IpsecDoiIdentType
  rsIpsecSaIpcompInSourceId OCTET STRING
  rsIpsecSaIpcompInSourceIdType IpsecDoiIdentType
  rsIpsecSaIpcompInProtocol Integer32
  rsIpsecSaIpcompInDestPort Integer32
  rsIpsecSaIpcompInSourcePort Integer32
  rsIpsecSaIpcompInCreator IpsecSaCreatorIdent
  rsIpsecSaIpcompInEncapsulation IpsecDoiEncapsulationMode
  rsIpsecSaIpcompInDecompAlg IpsecDoiIpcompTransform
  rsIpsecSaIpcompInSeconds Counter32
  rsIpsecSaIpcompInUserOctets Counter32
  rsIpsecSaIpcompInPackets Counter32
  rsIpsecSaIpcompInDecompErrors Counter32
  rsIpsecSaIpcompInOtherReceiveErrors Counter32

RSIpsecSaEspOutEntry  
SEQUENCE    
  rsIpsecSaEspOutAddress IpAddress
  rsIpsecSaEspOutSpi Integer32
  rsIpsecSaEspOutSourceId OCTET STRING
  rsIpsecSaEspOutSourceIdType IpsecDoiIdentType
  rsIpsecSaEspOutDestId OCTET STRING
  rsIpsecSaEspOutDestIdType IpsecDoiIdentType
  rsIpsecSaEspOutProtocol Integer32
  rsIpsecSaEspOutSourcePort Integer32
  rsIpsecSaEspOutDestPort Integer32
  rsIpsecSaEspOutCreator IpsecSaCreatorIdent
  rsIpsecSaEspOutEncapsulation IpsecDoiEncapsulationMode
  rsIpsecSaEspOutEncAlg IpsecDoiEspTransform
  rsIpsecSaEspOutEncKeyLength Integer32
  rsIpsecSaEspOutAuthAlg IpsecDoiAuthAlgorithm
  rsIpsecSaEspOutLimitSeconds Integer32
  rsIpsecSaEspOutLimitKbytes Integer32
  rsIpsecSaEspOutAccSeconds Counter32
  rsIpsecSaEspOutAccKbytes Counter32
  rsIpsecSaEspOutUserOctets Counter32
  rsIpsecSaEspOutPackets Counter32
  rsIpsecSaEspOutSendErrors Counter32

RSIpsecSaAhOutEntry  
SEQUENCE    
  rsIpsecSaAhOutAddress IpAddress
  rsIpsecSaAhOutSpi Integer32
  rsIpsecSaAhOutSourceId OCTET STRING
  rsIpsecSaAhOutSourceIdType IpsecDoiIdentType
  rsIpsecSaAhOutDestId OCTET STRING
  rsIpsecSaAhOutDestIdType IpsecDoiIdentType
  rsIpsecSaAhOutProtocol Integer32
  rsIpsecSaAhOutSourcePort Integer32
  rsIpsecSaAhOutDestPort Integer32
  rsIpsecSaAhOutCreator IpsecSaCreatorIdent
  rsIpsecSaAhOutEncapsulation IpsecDoiEncapsulationMode
  rsIpsecSaAhOutAuthAlg IpsecDoiAhTransform
  rsIpsecSaAhOutLimitSeconds Integer32
  rsIpsecSaAhOutLimitKbytes Integer32
  rsIpsecSaAhOutAccSeconds Counter32
  rsIpsecSaAhOutAccKbytes Counter32
  rsIpsecSaAhOutUserOctets Counter32
  rsIpsecSaAhOutPackets Counter32
  rsIpsecSaAhOutSendErrors Counter32

RSIpsecSaIpcompOutEntry  
SEQUENCE    
  rsIpsecSaIpcompOutAddress IpAddress
  rsIpsecSaIpcompOutCpi IpsecDoiIpcompTransform
  rsIpsecSaIpcompOutSourceId OCTET STRING
  rsIpsecSaIpcompOutSourceIdType IpsecDoiIdentType
  rsIpsecSaIpcompOutDestId OCTET STRING
  rsIpsecSaIpcompOutDestIdType IpsecDoiIdentType
  rsIpsecSaIpcompOutProtocol Integer32
  rsIpsecSaIpcompOutSourcePort Integer32
  rsIpsecSaIpcompOutDestPort Integer32
  rsIpsecSaIpcompOutCreator IpsecSaCreatorIdent
  rsIpsecSaIpcompOutEncapsulation IpsecDoiEncapsulationMode
  rsIpsecSaIpcompOutCompAlg IpsecDoiIpcompTransform
  rsIpsecSaIpcompOutSeconds Counter32
  rsIpsecSaIpcompOutUserOctets Counter32
  rsIpsecSaIpcompOutPackets Counter32

Defined Values

rsIpsecSaMonModule 1.3.6.1.4.1.4355.3
The MIB module describes generic IPSec objects defined in IETF working draft 'draft-ieft-ipsec-monitor-mib-01' and RapidStream's extension.
MODULE-IDENTITY    

rsIpsecSaMonitorMIB 1.3.6.1.4.1.4355.3.1
This is the base object identifier for all IPSec branches.
Status: current Access: read-only
OBJECT-IDENTITY    

rsSaTables 1.3.6.1.4.1.4355.3.1.1
This is the base object identifier for all SA tables.
Status: current Access: read-only
OBJECT-IDENTITY    

rsSaStatistics 1.3.6.1.4.1.4355.3.1.2
This is the base object identifier for all objects which are global counters for IPSec security associations.
Status: current Access: read-only
OBJECT-IDENTITY    

rsSaErrors 1.3.6.1.4.1.4355.3.1.3
This is the base object identifier for all objects which are global error counters for IPSec security associations.
Status: current Access: read-only
OBJECT-IDENTITY    

rsSaTraps 1.3.6.1.4.1.4355.3.1.4
This is the base object identifier for all objects which are traps for IPSec security associations.
Status: current Access: read-only
OBJECT-IDENTITY    

rsSaTrapObjects 1.3.6.1.4.1.4355.3.1.5
This is the base object identifier for objects which are used as part of traps.
Status: current Access: read-only
OBJECT-IDENTITY    

rsSaTrapControl 1.3.6.1.4.1.4355.3.1.6
This is the base object identifier for all objects which are trap controls for IPSec security associations.
Status: current Access: read-only
OBJECT-IDENTITY    

rsSaGroups 1.3.6.1.4.1.4355.3.1.7
This is the base object identifier for all objects which describe the groups in this MIB.
Status: current Access: read-only
OBJECT-IDENTITY    

rsSaConformance 1.3.6.1.4.1.4355.3.1.8
This is the base object identifier for all objects which describe the conformance for this MIB.
Status: current Access: read-only
OBJECT-IDENTITY    

rsIpsecSaEspInTable 1.3.6.1.4.1.4355.3.1.1.1
The (conceptual) table containing information on IPSec inbound ESP SAs. There should be one row for every inbound ESP security association that exists in the entity. The maximum number of rows is implementation dependent.
Status: current Access: not-accessible
OBJECT-TYPE    
  SEQUENCE OF  
    RSIpsecSaEspInEntry

rsIpsecSaEspInEntry 1.3.6.1.4.1.4355.3.1.1.1.1
An entry (conceptual row) containing the information on a particular IPSec inbound ESP SA. A row in this table cannot be created or deleted by SNMP operations on columns of the table.
Status: current Access: not-accessible
OBJECT-TYPE    
  RSIpsecSaEspInEntry  

rsIpsecSaEspInAddress 1.3.6.1.4.1.4355.3.1.1.1.1.1
The destination address of the SA. For implementations that do not support IPv6, this address should appear as one of the IPv4-mapped IPv6 addresses as defined in Section 2.5.4 of [IPV6AA]. Specifically, the prefix '0000:0000:0000:0000:0000:FFFF:' is used for IPv4 only nodes, while the prefix '0000:0000:0000:0000:0000:0000:' is used for bi-lingual nodes.
Status: current Access: read-only
OBJECT-TYPE    
  IpAddress  

rsIpsecSaEspInSpi 1.3.6.1.4.1.4355.3.1.1.1.1.2
The security parameters index of the SA.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32  

rsIpsecSaEspInDestId 1.3.6.1.4.1.4355.3.1.1.1.1.3
The destination identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation. This value is taken directly from the optional ID payloads that are exchanged during SA creation negotiation.
Status: current Access: read-only
OBJECT-TYPE    
  OCTET STRING Size(1..255)  

rsIpsecSaEspInDestIdType 1.3.6.1.4.1.4355.3.1.1.1.1.4
The type of identifier presented by 'rsIpsecSaEspInDestId', or 0 if unknown or if the SA uses transport mode encapsulation.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiIdentType  

rsIpsecSaEspInSourceId 1.3.6.1.4.1.4355.3.1.1.1.1.5
The source identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation. This value is taken directly from the optional ID payloads that are exchange during SA creation negotiation.
Status: current Access: read-only
OBJECT-TYPE    
  OCTET STRING Size(1..255)  

rsIpsecSaEspInSourceIdType 1.3.6.1.4.1.4355.3.1.1.1.1.6
The type of identifier presented by 'rsIpsecSaEspInSourceId', or 0 if unknown or if the SA uses transport mode encapsulation.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiIdentType  

rsIpsecSaEspInProtocol 1.3.6.1.4.1.4355.3.1.1.1.1.7
The transport-layer protocol number that this SA carries, or 0 if it carries any protocol.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..255  

rsIpsecSaEspInDestPort 1.3.6.1.4.1.4355.3.1.1.1.1.8
The destination port number of the protocol that this SA carries, or 0 if it carries any port number.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..65535  

rsIpsecSaEspInSourcePort 1.3.6.1.4.1.4355.3.1.1.1.1.9
The source port number of the protocol that this SA carries, or 0 if it carries any port number.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..65535  

rsIpsecSaEspInCreator 1.3.6.1.4.1.4355.3.1.1.1.1.10
The creator of this SA. This MIB makes no assumptions about how the SAs are created. They may be created statically, or by a key exchange protocol such as IKE, or by some other method.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecSaCreatorIdent  

rsIpsecSaEspInEncapsulation 1.3.6.1.4.1.4355.3.1.1.1.1.11
The type of encapsulation used by this SA.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiEncapsulationMode  

rsIpsecSaEspInEncAlg 1.3.6.1.4.1.4355.3.1.1.1.1.12
A unique value representing the encryption algorithm applied to traffic or 0 if there is no encryption used.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiEspTransform  

rsIpsecSaEspInEncKeyLength 1.3.6.1.4.1.4355.3.1.1.1.1.13
The length of the encryption key in bits used for the algorithm specified in the 'rsIpsecSaEspInEncAlg' object, or 0 if the key length is implicit in the specified algorithm or there is no encryption specified.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..65531  

rsIpsecSaEspInAuthAlg 1.3.6.1.4.1.4355.3.1.1.1.1.14
A unique value representing the hash algorithm applied to traffic or 0 if there is no authentication used.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiAuthAlgorithm  

rsIpsecSaEspInLimitSeconds 1.3.6.1.4.1.4355.3.1.1.1.1.15
The maximum lifetime in seconds of the SA, or 0 if there is no time constraint on its expiration. The display value is limited to 4294967295 seconds (more than 136 years); values greater than that value will be truncated.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32  

rsIpsecSaEspInLimitKbytes 1.3.6.1.4.1.4355.3.1.1.1.1.16
The maximum traffic in kilobytes that the SA is allowed to support, or 0 if there is no traffic constraint on its expiration. The display value is limited to 4294967295 kilobytes; values greater than that value will be truncated.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32  

rsIpsecSaEspInAccSeconds 1.3.6.1.4.1.4355.3.1.1.1.1.17
The number of seconds accumulated against the SA's expiration by time. This is also the number of seconds that the SA has existed.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaEspInAccKbytes 1.3.6.1.4.1.4355.3.1.1.1.1.18
The amount of traffic accumulated that counts against the SA's expiration by traffic limitation, measured in Kbytes. This value may be 0 if the SA does not expire based on traffic.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaEspInUserOctets 1.3.6.1.4.1.4355.3.1.1.1.1.19
The amount of user level traffic measured in bytes handled by the SA. This is not necessarily the same as the amount of traffic applied against the traffic expiration limit.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaEspInPackets 1.3.6.1.4.1.4355.3.1.1.1.1.20
The number of packets handled by the SA.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaEspInDecryptErrors 1.3.6.1.4.1.4355.3.1.1.1.1.21
The number of packets discarded by the SA due to decryption errors.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaEspInAuthErrors 1.3.6.1.4.1.4355.3.1.1.1.1.22
The number of packets discarded by the SA due to authentication errors.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaEspInReplayErrors 1.3.6.1.4.1.4355.3.1.1.1.1.23
The number of packets discarded by the SA due to replay errors.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaEspInPolicyErrors 1.3.6.1.4.1.4355.3.1.1.1.1.24
The number of packets discarded by the SA due to policy errors. This includes packets where the next protocol is invalid.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaEspInPadErrors 1.3.6.1.4.1.4355.3.1.1.1.1.25
The number of packets discarded by the SA due to pad value errors. Implementations that do not check this must not support this object.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaEspInOtherReceiveErrors 1.3.6.1.4.1.4355.3.1.1.1.1.26
The number of packets discarded by the SA due to errors other than decryption, authentication or replay errors. This may include packets dropped due to a lack of receive buffers, and may include packets dropped due to congestion at the decryption element.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaAhInTable 1.3.6.1.4.1.4355.3.1.1.2
The (conceptual) table containing information on IPSec inbound AH SAs. There should be one row for every inbound AH security association that exists in the entity. The maximum number of rows is implementation dependent.
Status: current Access: not-accessible
OBJECT-TYPE    
  SEQUENCE OF  
    RSIpsecSaAhInEntry

rsIpsecSaAhInEntry 1.3.6.1.4.1.4355.3.1.1.2.1
An entry (conceptual row) containing the information on a particular IPSec inbound AH SA. A row in this table cannot be created or deleted by SNMP operations on columns of the table.
Status: current Access: not-accessible
OBJECT-TYPE    
  RSIpsecSaAhInEntry  

rsIpsecSaAhInAddress 1.3.6.1.4.1.4355.3.1.1.2.1.1
The destination address of the SA. For implementations that do not support IPv6, this address should appear as one of the IPv4-mapped IPv6 addresses as defined in Section 2.5.4 of [IPV6AA]. Specifically, the prefix '0000:0000:0000:0000:0000:FFFF:' is used for IPv4 only nodes, while the prefix '0000:0000:0000:0000:0000:0000:' is used for bi-lingual nodes.
Status: current Access: read-only
OBJECT-TYPE    
  IpAddress  

rsIpsecSaAhInSpi 1.3.6.1.4.1.4355.3.1.1.2.1.2
The security parameters index of the SA.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32  

rsIpsecSaAhInDestId 1.3.6.1.4.1.4355.3.1.1.2.1.3
The destination identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation. This value is taken directly from the optional ID payloads that are exchange during SA creation negotiation.
Status: current Access: read-only
OBJECT-TYPE    
  OCTET STRING Size(1..255)  

rsIpsecSaAhInDestIdType 1.3.6.1.4.1.4355.3.1.1.2.1.4
The type of identifier presented by 'rsIpsecSaAhInDestId', or 0 if unknown or if the SA uses transport mode encapsulation.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiIdentType  

rsIpsecSaAhInSourceId 1.3.6.1.4.1.4355.3.1.1.2.1.5
The source identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation. This value is taken directly from the optional ID payloads that are exchange during SA creation negotiation.
Status: current Access: read-only
OBJECT-TYPE    
  OCTET STRING Size(1..255)  

rsIpsecSaAhInSourceIdType 1.3.6.1.4.1.4355.3.1.1.2.1.6
The type of identifier presented by 'rsIpsecSaAhInSourceId', or 0 if unknown or if the SA uses transport mode encapsulation.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiIdentType  

rsIpsecSaAhInProtocol 1.3.6.1.4.1.4355.3.1.1.2.1.7
The transport-layer protocol number that this SA carries, or 0 if it carries any protocol.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..255  

rsIpsecSaAhInDestPort 1.3.6.1.4.1.4355.3.1.1.2.1.8
The destination port number of the protocol that this SA carries, or 0 if it carries any port number.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..65535  

rsIpsecSaAhInSourcePort 1.3.6.1.4.1.4355.3.1.1.2.1.9
The source port number of the protocol that this SA carries, or 0 if it carries any port number.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..65535  

rsIpsecSaAhInCreator 1.3.6.1.4.1.4355.3.1.1.2.1.10
The creator of this SA. This MIB makes no assumptions about how the SAs are created. They may be created statically, or by a key exchange protocol such as IKE, or by some other method.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecSaCreatorIdent  

rsIpsecSaAhInEncapsulation 1.3.6.1.4.1.4355.3.1.1.2.1.11
The type of encapsulation used by this SA.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiEncapsulationMode  

rsIpsecSaAhInAuthAlg 1.3.6.1.4.1.4355.3.1.1.2.1.12
A unique value representing the hash algorithm applied to traffic carried by this SA if it uses ESP or 0 if there is no authentication applied by ESP.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiAhTransform  

rsIpsecSaAhInLimitSeconds 1.3.6.1.4.1.4355.3.1.1.2.1.13
The maximum lifetime in seconds of the SA, or 0 if there is no time constraint on its expiration. The display value is limited to 4294967295 seconds (more than 136 years); values greater than that value will be truncated.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32  

rsIpsecSaAhInLimitKbytes 1.3.6.1.4.1.4355.3.1.1.2.1.14
The maximum traffic in Kbytes that the SA is allowed to support, or 0 if there is no traffic constraint on its expiration. The display value is limited to 4294967295 kilobytes; values greater than that value will be truncated.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32  

rsIpsecSaAhInAccSeconds 1.3.6.1.4.1.4355.3.1.1.2.1.15
The number of seconds accumulated against the SA's expiration by time. This is also the number of seconds that the SA has existed.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaAhInAccKbytes 1.3.6.1.4.1.4355.3.1.1.2.1.16
The amount of traffic accumulated that counts against the SA's expiration by traffic limitation, measured in Kbytes. This value may be 0 if the SA does not expire based on traffic.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaAhInUserOctets 1.3.6.1.4.1.4355.3.1.1.2.1.17
The amount of user level traffic measured in bytes handled by the SA. This is not necessarily the same as the amount of traffic applied against the traffic expiration limit.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaAhInPackets 1.3.6.1.4.1.4355.3.1.1.2.1.18
The number of packets handled by the SA.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaAhInAuthErrors 1.3.6.1.4.1.4355.3.1.1.2.1.19
The number of packets discarded by the SA due to authentication errors.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaAhInReplayErrors 1.3.6.1.4.1.4355.3.1.1.2.1.20
The number of packets discarded by the SA due to replay errors.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaAhInPolicyErrors 1.3.6.1.4.1.4355.3.1.1.2.1.21
The number of packets discarded by the SA due to policy errors. This includes packets where the next protocol is invalid.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaAhInOtherReceiveErrors 1.3.6.1.4.1.4355.3.1.1.2.1.22
The number of packets discarded by the SA due to errors other than decryption, authentication or replay errors. This may include packets dropped due to a lack of receive buffers, and may include packets dropped due to congestion at the authentication element.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaIpcompInTable 1.3.6.1.4.1.4355.3.1.1.3
The (conceptual) table containing information on IPSec inbound IPCOMP SAs. There should be one row for every inbound IPCOMP (security) association that exists in the entity. The maximum number of rows is implementation dependent.
Status: current Access: not-accessible
OBJECT-TYPE    
  SEQUENCE OF  
    RSIpsecSaIpcompInEntry

rsIpsecSaIpcompInEntry 1.3.6.1.4.1.4355.3.1.1.3.1
An entry (conceptual row) containing the information on a particular IPSec inbound IPCOMP SA. A row in this table cannot be created or deleted by SNMP operations on columns of the table.
Status: current Access: not-accessible
OBJECT-TYPE    
  RSIpsecSaIpcompInEntry  

rsIpsecSaIpcompInAddress 1.3.6.1.4.1.4355.3.1.1.3.1.1
The destination address of the SA. For implementations that do not support IPv6, this address should appear as one of the IPv4-mapped IPv6 addresses as defined in Section 2.5.4 of [IPV6AA]. Specifically, the prefix '0000:0000:0000:0000:0000:FFFF:' is used for IPv4 only nodes, while the prefix '0000:0000:0000:0000:0000:0000:' is used for bi-lingual nodes.
Status: current Access: read-only
OBJECT-TYPE    
  IpAddress  

rsIpsecSaIpcompInCpi 1.3.6.1.4.1.4355.3.1.1.3.1.2
The CPI of the SA. Since the lower values of CPIs are reserved to be the same as the algorithm, the syntax for this object is the same as the transform.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiIpcompTransform  

rsIpsecSaIpcompInDestId 1.3.6.1.4.1.4355.3.1.1.3.1.3
The destination identifier of the SA, or 0 if unknown or if the SA uses transport mode, or 0 if this SA is used with multiple SAs in protection suites. This value, if non-zero, is taken directly from the optional ID payloads that are exchange during SA creation negotiation.
Status: current Access: read-only
OBJECT-TYPE    
  OCTET STRING Size(1..255)  

rsIpsecSaIpcompInDestIdType 1.3.6.1.4.1.4355.3.1.1.3.1.4
The type of identifier presented by 'rsIpsecSaIpcompInDestId', or 0 if unknown or if the SA uses transport mode, or 0 if this SA is used with multiple SAs in protection suites.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiIdentType  

rsIpsecSaIpcompInSourceId 1.3.6.1.4.1.4355.3.1.1.3.1.5
The source identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation, or 0 if this SA is used with multiple SAs in protection suites. This value, if non-zero, is taken directly from the optional ID payloads that are exchange during SA creation negotiation.
Status: current Access: read-only
OBJECT-TYPE    
  OCTET STRING Size(1..255)  

rsIpsecSaIpcompInSourceIdType 1.3.6.1.4.1.4355.3.1.1.3.1.6
The type of identifier presented by 'rsIpsecSaIpcompInSourceId', or 0 if unknown or if the SA uses transport mode encapsulation, or 0 if this SA is used with multiple SAs in protection suites.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiIdentType  

rsIpsecSaIpcompInProtocol 1.3.6.1.4.1.4355.3.1.1.3.1.7
The transport-layer protocol number that this SA carries, or 0 if it carries any protocol.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..255  

rsIpsecSaIpcompInDestPort 1.3.6.1.4.1.4355.3.1.1.3.1.8
The destination port number of the protocol that this SA carries, or 0 if it carries any port number.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..65535  

rsIpsecSaIpcompInSourcePort 1.3.6.1.4.1.4355.3.1.1.3.1.9
The source port number of the protocol that this SA carries, or 0 if it carries any port number.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..65535  

rsIpsecSaIpcompInCreator 1.3.6.1.4.1.4355.3.1.1.3.1.10
The creator of this SA. This MIB makes no assumptions about how the SAs are created. They may be created statically, or by a key exchange protocol such as IKE, or by some other method.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecSaCreatorIdent  

rsIpsecSaIpcompInEncapsulation 1.3.6.1.4.1.4355.3.1.1.3.1.11
The type of encapsulation used by this SA.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiEncapsulationMode  

rsIpsecSaIpcompInDecompAlg 1.3.6.1.4.1.4355.3.1.1.3.1.12
A unique value representing the decompression algorithm applied to traffic.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiIpcompTransform  

rsIpsecSaIpcompInSeconds 1.3.6.1.4.1.4355.3.1.1.3.1.13
The number of seconds that the SA has existed.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaIpcompInUserOctets 1.3.6.1.4.1.4355.3.1.1.3.1.14
The amount of user level traffic measured in bytes handled by the SA.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaIpcompInPackets 1.3.6.1.4.1.4355.3.1.1.3.1.15
The number of packets handled by the SA.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaIpcompInDecompErrors 1.3.6.1.4.1.4355.3.1.1.3.1.16
The number of packets discarded by the SA due to decompression errors.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaIpcompInOtherReceiveErrors 1.3.6.1.4.1.4355.3.1.1.3.1.17
The number of packets discarded by the SA due to errors other than decompression errors. This may include packets dropped due to a lack of receive buffers, and packets dropped due to congestion at the decompression element.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaEspOutTable 1.3.6.1.4.1.4355.3.1.1.4
The (conceptual) table containing information on IPSec Outbound ESP SAs. There should be one row for every outbound ESP security association that exists in the entity. The maximum number of rows is implementation dependent.
Status: current Access: not-accessible
OBJECT-TYPE    
  SEQUENCE OF  
    RSIpsecSaEspOutEntry

rsIpsecSaEspOutEntry 1.3.6.1.4.1.4355.3.1.1.4.1
An entry (conceptual row) containing the information on a particular IPSec Outbound ESP SA. A row in this table cannot be created or deleted by SNMP operations on columns of the table.
Status: current Access: not-accessible
OBJECT-TYPE    
  RSIpsecSaEspOutEntry  

rsIpsecSaEspOutAddress 1.3.6.1.4.1.4355.3.1.1.4.1.1
The destination address of the SA. For implementations that do not support IPv6, this address should appear as one of the IPv4-mapped IPv6 addresses as defined in Section 2.5.4 of [IPV6AA]. Specifically, the prefix '0000:0000:0000:0000:0000:FFFF:' is used for IPv4 only nodes, while the prefix '0000:0000:0000:0000:0000:0000:' is used for bi-lingual nodes.
Status: current Access: read-only
OBJECT-TYPE    
  IpAddress  

rsIpsecSaEspOutSpi 1.3.6.1.4.1.4355.3.1.1.4.1.2
The security parameters index of the SA.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32  

rsIpsecSaEspOutSourceId 1.3.6.1.4.1.4355.3.1.1.4.1.3
The source identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation. This value is taken directly from the optional ID payloads that are exchange during phase 2 negotiations.
Status: current Access: read-only
OBJECT-TYPE    
  OCTET STRING Size(4..255)  

rsIpsecSaEspOutSourceIdType 1.3.6.1.4.1.4355.3.1.1.4.1.4
The type of identifier presented by 'rsIpsecSaEspOutSourceId', or 0 if unknown or if the SA uses transport mode encapsulation.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiIdentType  

rsIpsecSaEspOutDestId 1.3.6.1.4.1.4355.3.1.1.4.1.5
The destination identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation. This value is taken directly from the optional ID payloads that are exchange during phase 2 negotiations.
Status: current Access: read-only
OBJECT-TYPE    
  OCTET STRING Size(4..255)  

rsIpsecSaEspOutDestIdType 1.3.6.1.4.1.4355.3.1.1.4.1.6
The type of identifier presented by 'rsIpsecSaEspOutDestId', or 0 if unknown or if the SA uses transport mode encapsulation.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiIdentType  

rsIpsecSaEspOutProtocol 1.3.6.1.4.1.4355.3.1.1.4.1.7
The transport-layer protocol number that this SA carries, or 0 if it carries any protocol.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..255  

rsIpsecSaEspOutSourcePort 1.3.6.1.4.1.4355.3.1.1.4.1.8
The source port number of the protocol that this SA carries, or 0 if it carries any port number.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..65535  

rsIpsecSaEspOutDestPort 1.3.6.1.4.1.4355.3.1.1.4.1.9
The destination port number of the protocol that this SA carries, or 0 if it carries any port number.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..65535  

rsIpsecSaEspOutCreator 1.3.6.1.4.1.4355.3.1.1.4.1.10
The creator of this SA. This MIB makes no assumptions about how the SAs are created. They may be created statically, or by a key exchange protocol such as IKE, or by some other method.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecSaCreatorIdent  

rsIpsecSaEspOutEncapsulation 1.3.6.1.4.1.4355.3.1.1.4.1.11
The type of encapsulation used by this SA.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiEncapsulationMode  

rsIpsecSaEspOutEncAlg 1.3.6.1.4.1.4355.3.1.1.4.1.12
A unique value representing the encryption algorithm applied to traffic or 0 if there is no encryption used.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiEspTransform  

rsIpsecSaEspOutEncKeyLength 1.3.6.1.4.1.4355.3.1.1.4.1.13
The length of the encryption key in bits used for the algorithm specified in the 'rsIpsecSaEspOutEncAlg' object, or 0 if the key length is implicit in the specified algorithm or there is no encryption specified.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..65531  

rsIpsecSaEspOutAuthAlg 1.3.6.1.4.1.4355.3.1.1.4.1.14
A unique value representing the hash algorithm applied to traffic or 0 if there is no authentication used.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiAuthAlgorithm  

rsIpsecSaEspOutLimitSeconds 1.3.6.1.4.1.4355.3.1.1.4.1.15
The maximum lifetime in seconds of the SA, or 0 if there is no time constraint on its expiration. The display value is limited to 4294967295 seconds (more than 136 years); values greater than that value will be truncated.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32  

rsIpsecSaEspOutLimitKbytes 1.3.6.1.4.1.4355.3.1.1.4.1.16
The maximum traffic in kbytes that the SA is allowed to support, or 0 if there is no traffic constraint on its expiration. The display value is limited to 4294967295 kilobytes; values greater than that value will be truncated.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32  

rsIpsecSaEspOutAccSeconds 1.3.6.1.4.1.4355.3.1.1.4.1.17
The number of seconds accumulated against the SA's expiration by time. This is also the number of seconds that the SA has existed.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaEspOutAccKbytes 1.3.6.1.4.1.4355.3.1.1.4.1.18
The amount of traffic accumulated that counts against the SA's expiration by traffic limitation, measured in Kbytes. This value may be 0 if the SA does not expire based on traffic.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaEspOutUserOctets 1.3.6.1.4.1.4355.3.1.1.4.1.19
The amount of user level traffic measured in bytes handled by the SA. This is not necessarily the same as the amount of traffic applied against the traffic expiration limit.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaEspOutPackets 1.3.6.1.4.1.4355.3.1.1.4.1.20
The number of packets handled by the SA.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaEspOutSendErrors 1.3.6.1.4.1.4355.3.1.1.4.1.21
The number of packets discarded by the SA due to any error. This may include errors due to a lack of transmit buffers.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaAhOutTable 1.3.6.1.4.1.4355.3.1.1.5
The (conceptual) table containing information on IPSec Outbound AH SAs. There should be one row for every outbound AH security association that exists in the entity. The maximum number of rows is implementation dependent.
Status: current Access: not-accessible
OBJECT-TYPE    
  SEQUENCE OF  
    RSIpsecSaAhOutEntry

rsIpsecSaAhOutEntry 1.3.6.1.4.1.4355.3.1.1.5.1
An entry (conceptual row) containing the information on a particular IPSec Outbound AH SA. A row in this table cannot be created or deleted by SNMP operations on columns of the table.
Status: current Access: not-accessible
OBJECT-TYPE    
  RSIpsecSaAhOutEntry  

rsIpsecSaAhOutAddress 1.3.6.1.4.1.4355.3.1.1.5.1.1
The destination address of the SA. For implementations that do not support IPv6, this address should appear as one of the IPv4-mapped IPv6 addresses as defined in Section 2.5.4 of [IPV6AA]. Specifically, the prefix '0000:0000:0000:0000:0000:FFFF:' is used for IPv4 only nodes, while the prefix '0000:0000:0000:0000:0000:0000:' is used for bi-lingual nodes.
Status: current Access: read-only
OBJECT-TYPE    
  IpAddress  

rsIpsecSaAhOutSpi 1.3.6.1.4.1.4355.3.1.1.5.1.2
The security parameters index of the SA.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32  

rsIpsecSaAhOutSourceId 1.3.6.1.4.1.4355.3.1.1.5.1.3
The source identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation. This value is taken directly from the optional ID payloads that are exchange during phase 2 negotiations.
Status: current Access: read-only
OBJECT-TYPE    
  OCTET STRING Size(4..255)  

rsIpsecSaAhOutSourceIdType 1.3.6.1.4.1.4355.3.1.1.5.1.4
The type of identifier presented by 'rsIpsecSaAhOutSourceId', or 0 if unknown or if the SA uses transport mode encapsulation.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiIdentType  

rsIpsecSaAhOutDestId 1.3.6.1.4.1.4355.3.1.1.5.1.5
The destination identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation. This value is taken directly from the optional ID payloads that are exchange during phase 2 negotiations.
Status: current Access: read-only
OBJECT-TYPE    
  OCTET STRING Size(4..255)  

rsIpsecSaAhOutDestIdType 1.3.6.1.4.1.4355.3.1.1.5.1.6
The type of identifier presented by 'rsIpsecSaAhOutDestId', or 0 if unknown or if the SA uses transport mode encapsulation.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiIdentType  

rsIpsecSaAhOutProtocol 1.3.6.1.4.1.4355.3.1.1.5.1.7
The transport-layer protocol number that this SA carries, or 0 if it carries any protocol.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..255  

rsIpsecSaAhOutSourcePort 1.3.6.1.4.1.4355.3.1.1.5.1.8
The source port number of the protocol that this SA carries, or 0 if it carries any port number.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..65535  

rsIpsecSaAhOutDestPort 1.3.6.1.4.1.4355.3.1.1.5.1.9
The destination port number of the protocol that this SA carries, or 0 if it carries any port number.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..65535  

rsIpsecSaAhOutCreator 1.3.6.1.4.1.4355.3.1.1.5.1.10
The creator of this SA. This MIB makes no assumptions about how the SAs are created. They may be created statically, or by a key exchange protocol such as IKE, or by some other method.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecSaCreatorIdent  

rsIpsecSaAhOutEncapsulation 1.3.6.1.4.1.4355.3.1.1.5.1.11
The type of encapsulation used by this SA.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiEncapsulationMode  

rsIpsecSaAhOutAuthAlg 1.3.6.1.4.1.4355.3.1.1.5.1.12
A unique value representing the hash algorithm applied to traffic or 0 if there is no authentication used.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiAhTransform  

rsIpsecSaAhOutLimitSeconds 1.3.6.1.4.1.4355.3.1.1.5.1.13
The maximum lifetime in seconds of the SA, or 0 if there is no time constraint on its expiration. The display value is limited to 4294967295 seconds (more than 136 years); values greater than that value will be truncated.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32  

rsIpsecSaAhOutLimitKbytes 1.3.6.1.4.1.4355.3.1.1.5.1.14
The maximum traffic in Kbytes that the SA is allowed to support, or 0 if there is no traffic constraint on its expiration. The display value is limited to 4294967295 kilobytes; values greater than that value will be truncated.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32  

rsIpsecSaAhOutAccSeconds 1.3.6.1.4.1.4355.3.1.1.5.1.15
The number of seconds accumulated against the SA's expiration by time. This is also the number of seconds that the SA has existed.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaAhOutAccKbytes 1.3.6.1.4.1.4355.3.1.1.5.1.16
The amount of traffic accumulated that counts against the SA's expiration by traffic limitation, measured in Kbytes. This value may be 0 if the SA does not expire based on traffic.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaAhOutUserOctets 1.3.6.1.4.1.4355.3.1.1.5.1.17
The amount of user level traffic measured in bytes handled by the SA. This is not necessarily the same as the amount of traffic applied against the traffic expiration limit.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaAhOutPackets 1.3.6.1.4.1.4355.3.1.1.5.1.18
The number of packets handled by the SA.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaAhOutSendErrors 1.3.6.1.4.1.4355.3.1.1.5.1.19
The number of packets discarded by the SA due to any error. This may include errors due to a lack of transmit buffers.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaIpcompOutTable 1.3.6.1.4.1.4355.3.1.1.6
The (conceptual) table containing information on IPSec Outbound IPCOMP SAs. There should be one row for every outbound IPCOMP (security) association that exists in the entity. The maximum number of rows is implementation dependent.
Status: current Access: not-accessible
OBJECT-TYPE    
  SEQUENCE OF  
    RSIpsecSaIpcompOutEntry

rsIpsecSaIpcompOutEntry 1.3.6.1.4.1.4355.3.1.1.6.1
An entry (conceptual row) containing the information on a particular IPSec Outbound IPCOMP SA. A row in this table cannot be created or deleted by SNMP operations on columns of the table.
Status: current Access: not-accessible
OBJECT-TYPE    
  RSIpsecSaIpcompOutEntry  

rsIpsecSaIpcompOutAddress 1.3.6.1.4.1.4355.3.1.1.6.1.1
The destination address of the SA. If the IPCOMP SA is shared across multiple SAs in protection suites, this value may be 0. For implementations that do not support IPv6, this address should appear as one of the IPv4-mapped IPv6 addresses as defined in Section 2.5.4 of [IPV6AA]. Specifically, the prefix '0000:0000:0000:0000:0000:FFFF:' is used for IPv4 only nodes, while the prefix '0000:0000:0000:0000:0000:0000:' is used for bi-lingual nodes.
Status: current Access: read-only
OBJECT-TYPE    
  IpAddress  

rsIpsecSaIpcompOutCpi 1.3.6.1.4.1.4355.3.1.1.6.1.2
The CPI of the SA. Since the lower values of CPIs are reserved to be the same as the algorithm, the syntax for this object is the same as the transform.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiIpcompTransform  

rsIpsecSaIpcompOutSourceId 1.3.6.1.4.1.4355.3.1.1.6.1.3
The source identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation, or 0 if this SA is used with multiple SAs in protection suites. This value, if non-zero, is taken directly from the optional ID payloads that are exchange during phase 2 negotiations.
Status: current Access: read-only
OBJECT-TYPE    
  OCTET STRING Size(4..255)  

rsIpsecSaIpcompOutSourceIdType 1.3.6.1.4.1.4355.3.1.1.6.1.4
The type of identifier presented by 'rsIpsecSaIpcompOutSourceId', or 0 if unknown or if the SA uses transport mode encapsulation, or 0 if this SA is used with multiple SAs in protection suites.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiIdentType  

rsIpsecSaIpcompOutDestId 1.3.6.1.4.1.4355.3.1.1.6.1.5
The destination identifier of the SA, or 0 if unknown or if the SA uses transport mode encapsulation, or 0 if this SA is used with multiple SAs in protection suites. This value, if non-zero, is taken directly from the optional ID payloads that are exchange during phase 2 negotiations.
Status: current Access: read-only
OBJECT-TYPE    
  OCTET STRING Size(4..255)  

rsIpsecSaIpcompOutDestIdType 1.3.6.1.4.1.4355.3.1.1.6.1.6
The type of identifier presented by 'rsIpsecSaIpcompOutDestId', or 0 if unknown or if the SA uses transport mode encapsulation, or 0 if this SA is used with multiple SAs in protection suites.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiIdentType  

rsIpsecSaIpcompOutProtocol 1.3.6.1.4.1.4355.3.1.1.6.1.7
The transport-layer protocol number that this SA carries, or 0 if it carries any protocol.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..255  

rsIpsecSaIpcompOutSourcePort 1.3.6.1.4.1.4355.3.1.1.6.1.8
The source port number of the protocol that this SA carries, or 0 if it carries any port number.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..65535  

rsIpsecSaIpcompOutDestPort 1.3.6.1.4.1.4355.3.1.1.6.1.9
The destination port number of the protocol that this SA carries, or 0 if it carries any port number.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32 0..65535  

rsIpsecSaIpcompOutCreator 1.3.6.1.4.1.4355.3.1.1.6.1.10
The creator of this SA. This MIB makes no assumptions about how the SAs are created. They may be created statically, or by a key exchange protocol such as IKE, or by some other method.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecSaCreatorIdent  

rsIpsecSaIpcompOutEncapsulation 1.3.6.1.4.1.4355.3.1.1.6.1.11
The type of encapsulation used by this SA.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiEncapsulationMode  

rsIpsecSaIpcompOutCompAlg 1.3.6.1.4.1.4355.3.1.1.6.1.12
A unique value representing the compression algorithm applied to traffic.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiIpcompTransform  

rsIpsecSaIpcompOutSeconds 1.3.6.1.4.1.4355.3.1.1.6.1.13
The number of seconds that the SA has existed.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaIpcompOutUserOctets 1.3.6.1.4.1.4355.3.1.1.6.1.14
The amount of user level traffic measured in bytes handled by the SA. This is not necessarily the same as the amount of traffic applied against the traffic expiration limit.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSaIpcompOutPackets 1.3.6.1.4.1.4355.3.1.1.6.1.15
The number of packets handled by the SA.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecEspCurrentInboundSAs 1.3.6.1.4.1.4355.3.1.2.1
The current number of inbound ESP SAs in the entity.
Status: current Access: read-only
OBJECT-TYPE    
  Gauge32  

rsIpsecEspTotalInboundSAs 1.3.6.1.4.1.4355.3.1.2.2
The total number of inbound ESP SAs created in the entity since boot time.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecEspCurrentOutboundSAs 1.3.6.1.4.1.4355.3.1.2.3
The current number of outbound ESP SAs in the entity.
Status: current Access: read-only
OBJECT-TYPE    
  Gauge32  

rsIpsecEspTotalOutboundSAs 1.3.6.1.4.1.4355.3.1.2.4
The total number of outbound ESP SAs created in the entity since boot time.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecAhCurrentInboundSAs 1.3.6.1.4.1.4355.3.1.2.5
The current number of inbound AH SAs in the entity.
Status: current Access: read-only
OBJECT-TYPE    
  Gauge32  

rsIpsecAhTotalInboundSAs 1.3.6.1.4.1.4355.3.1.2.6
The total number of inbound AH SAs created in the entity since boot time.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecAhCurrentOutboundSAs 1.3.6.1.4.1.4355.3.1.2.7
The current number of outbound AH SAs in the entity.
Status: current Access: read-only
OBJECT-TYPE    
  Gauge32  

rsIpsecAhTotalOutboundSAs 1.3.6.1.4.1.4355.3.1.2.8
The total number of outbound AH SAs created in the entity since boot time.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecIpcompCurrentInboundSAs 1.3.6.1.4.1.4355.3.1.2.9
The current number of inbound IPCOMP SAs in the entity.
Status: current Access: read-only
OBJECT-TYPE    
  Gauge32  

rsIpsecIpcompTotalInboundSAs 1.3.6.1.4.1.4355.3.1.2.10
The total number of inbound IPCOMP SAs created in the entity since boot time.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecIpcompCurrentOutboundSAs 1.3.6.1.4.1.4355.3.1.2.11
The current number of outbound IPCOMP SAs in the entity.
Status: current Access: read-only
OBJECT-TYPE    
  Gauge32  

rsIpsecIpcompTotalOutboundSAs 1.3.6.1.4.1.4355.3.1.2.12
The total number of outbound IPCOMP SAs created in the entity since boot time.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecDecryptionErrors 1.3.6.1.4.1.4355.3.1.3.1
The total number of packets received by the entity in SAs since boot time with decryption errors.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecAuthenticationErrors 1.3.6.1.4.1.4355.3.1.3.2
The total number of packets received by the entity in SAs since boot time with authentication errors. This includes all packets in which the hash value is determined to be invalid, for both ESP and AH SAs.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecReplayErrors 1.3.6.1.4.1.4355.3.1.3.3
The total number of packets received by the entity in SAs since boot time with replay errors.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecPolicyErrors 1.3.6.1.4.1.4355.3.1.3.4
The total number of packets received by the entity in SAs since boot time and discarded due to policy errors. This includes packets that had selectors that were invalid for the SA that carried them.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecOtherReceiveErrors 1.3.6.1.4.1.4355.3.1.3.5
The total number of packets received by the entity in SAs since boot time and discarded due to errors not due to decryption, authentication, replay or policy.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSendErrors 1.3.6.1.4.1.4355.3.1.3.6
The total number of packets to be sent by the entity in SAs since boot time and discarded due to errors.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecUnknownSpiErrors 1.3.6.1.4.1.4355.3.1.3.7
The total number of packets received by the entity since boot time with SPIs or CPIs that were not valid.
Status: current Access: read-only
OBJECT-TYPE    
  Counter32  

rsIpsecSecurityProtocol 1.3.6.1.4.1.4355.3.1.5.1
A security protocol associated with the trap.
Status: current Access: read-only
OBJECT-TYPE    
  IpsecDoiSecProtocolId  

rsIpsecSPI 1.3.6.1.4.1.4355.3.1.5.2
An SPI associated with a trap. Where the security protocol associated with the trap is IPCOMP, this value has a maximum of 65535.
Status: current Access: read-only
OBJECT-TYPE    
  Integer32  

rsIpsecLocalAddress 1.3.6.1.4.1.4355.3.1.5.3
A local IP address associated with the trap.
Status: current Access: read-only
OBJECT-TYPE    
  IpAddress  

rsIpsecPeerAddress 1.3.6.1.4.1.4355.3.1.5.4
A peer IP address associated with the trap.
Status: current Access: read-only
OBJECT-TYPE    
  IpAddress  

rsEspAuthFailureTrapEnable 1.3.6.1.4.1.4355.3.1.6.1
Indicates whether espAuthFailureTrap traps should be generated.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

rsAhAuthFailureTrapEnable 1.3.6.1.4.1.4355.3.1.6.2
Indicates whether ahAuthFailureTrap traps should be generated.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

rsEspReplayFailureTrapEnable 1.3.6.1.4.1.4355.3.1.6.3
Indicates whether espReplayFailureTrap traps should be generated.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

rsAhReplayFailureTrapEnable 1.3.6.1.4.1.4355.3.1.6.4
Indicates whether ahReplayFailureTrap traps should be generated.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

rsEspPolicyFailureTrapEnable 1.3.6.1.4.1.4355.3.1.6.5
Indicates whether espPolicyFailureTrap traps should be generated.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

rsAhPolicyFailureTrapEnable 1.3.6.1.4.1.4355.3.1.6.6
Indicates whether ahPolicyFailureTrap traps should be generated.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

rsInvalidSpiTrapEnable 1.3.6.1.4.1.4355.3.1.6.7
Indicates whether invalidSpiTrap traps should be generated.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

rsEspAuthFailureTrap 1.3.6.1.4.1.4355.3.1.4.0.1
IPSec packets with invalid hashes were found in an inbound ESP SA. The total number of authentication errors accumulated is sent for the specific row of the 'rsIpsecSaEspInTable' table for the SA; this provides the identity of the SA in which the error occurred. Implementations SHOULD send one trap per SA (within a reasonable time period), rather than sending one trap per packet.
Status: current Access: read-write
NOTIFICATION-TYPE    

rsAhAuthFailureTrap 1.3.6.1.4.1.4355.3.1.4.0.2
IPSec packets with invalid hashes were found in an inbound AH SA. The total number of authentication errors accumulated is sent for the specific row of the 'rsIpsecSaAhInTable' table for the SA; this provides the identity of the SA in which the error occurred. Implementations SHOULD send one trap per SA (within a reasonable time period), rather than sending one trap per packet.
Status: current Access: read-write
NOTIFICATION-TYPE    

rsEspReplayFailureTrap 1.3.6.1.4.1.4355.3.1.4.0.3
IPSec packets with invalid sequence numbers were found in an inbound ESP SA. The total number of replay errors accumulated is sent for the specific row of the 'rsIpsecSaEspInTable' table for the SA; this provides the identity of the SA in which the error occurred. Implementations SHOULD send one trap per SA (within a reasonable time period), rather than sending one trap per packet.
Status: current Access: read-write
NOTIFICATION-TYPE    

rsAhReplayFailureTrap 1.3.6.1.4.1.4355.3.1.4.0.4
IPSec packets with invalid sequence numbers were found in the specified AH SA. The total number of replay errors accumulated is sent for the specific row of the 'rsIpsecSaAhInTable' table for the SA; this provides the identity of the SA in which the error occurred. Implementations SHOULD send one trap per SA (within a reasonable time period), rather than sending one trap per packet.
Status: current Access: read-write
NOTIFICATION-TYPE    

rsEspPolicyFailureTrap 1.3.6.1.4.1.4355.3.1.4.0.5
IPSec packets carrying packets with invalid selectors for the specified ESP SA were found. The total number of policy errors accumulated is sent for the specific row of the 'rsIpsecSaEspInTable' table for the SA; this provides the identity of the SA in which the error occurred. Implementations SHOULD send one trap per SA (within a reasonable time period), rather than sending one trap per packet.
Status: current Access: read-write
NOTIFICATION-TYPE    

rsAhPolicyFailureTrap 1.3.6.1.4.1.4355.3.1.4.0.6
IPSec packets carrying packets with invalid selectors for the specified AH SA were found. The total number of policy errors accumulated is sent for the specific row of the 'rsIpsecSaAhInTable' table for the SA; this provides the identity of the SA in which the error occurred. Implementations SHOULD send one trap per SA (within a reasonable time period), rather than sending one trap per packet.
Status: current Access: read-write
NOTIFICATION-TYPE    

rsInvalidSpiTrap 1.3.6.1.4.1.4355.3.1.4.0.7
A packet with an unknown SPI was detected from the specified peer with the specified SPI using the specified protocol. The destination address of the received packet is specified by 'ipsecLocalAddress'. The value 'ifIndex' may be 0 if this optional linkage is unsupported. If the object 'ipsecSecurityProtocol' has the value for IPCOMP, then the 'ipsecSPI' object is the CPI of the packet. Implementations SHOULD send one trap per peer (within a reasonable time period), rather than sending one trap per packet.
Status: current Access: read-write
NOTIFICATION-TYPE