INTRUSION-DETECTION-SENSOR-ALERT-MIB

File: INTRUSION-DETECTION-SENSOR-ALERT-MIB.mib (14326 bytes)

Imported modules

SNMPv2-SMI SNMPv2-TC SNMPv2-CONF
SNMP-FRAMEWORK-MIB INET-ADDRESS-MIB NETWORK-SERVICES-MIB

Imported symbols

MODULE-IDENTITY Counter32 Gauge32
OBJECT-TYPE OBJECT-IDENTITY mib-2
DateAndTime TimeStamp MODULE-COMPLIANCE
OBJECT-GROUP SnmpEngineID SnmpAdminString
InetAddressType InetAddress URLString

Defined Types

IdsaAlertEntry  
SEQUENCE    
  idsaAlertID INTEGER
  idsaAlertLocalAddressType InetAddressType
  idsaAlertLocalAddress InetAddress
  idsaAlertInterfaceIndex INTEGER
  idsaAlertTimeStamp DateAndTime
  idsaAlertActionsTaken INTEGER
  idsaAlertAttackName SnmpAdminString
  idsaAlertMoreInfo URLString
  idsaAlertSrcAddressType InetAddressType
  idsaAlertSrcAddress InetAddress
  idsaAlertDstAddressType InetAddressType
  idsaAlertDstAddress InetAddress
  idsaAlertSrcPort INTEGER
  idsaAlertDstPort INTEGER

Defined Values

idsaMIB 1.3.6.1.2.1.1
The MIB for Intrusion Detection Messages.
MODULE-IDENTITY    

idsaSensorObjects 1.3.6.1.2.1.1.1
This is the base object for the objects used in the notifications.
Status: current Access: read-only
OBJECT-IDENTITY    

idsaSensorID 1.3.6.1.2.1.1.1.1
An identifier to uniquely identify the Analyzer in the domain.
Status: current Access: read-only
OBJECT-TYPE    
  SnmpAdminString  

idsaSensorDescription 1.3.6.1.2.1.1.1.2
A short description of the Sensor.
Status: current Access: read-only
OBJECT-TYPE    
  SnmpAdminString  

idsaSensorProductID 1.3.6.1.2.1.1.1.3
A reference to MIB definitions specific to the analyzer generating the message. If this information is not present, its value should be set to the OBJECT IDENTIFIER { 0 0 }, which is a syntatically valid object identifier.
Status: current Access: read-only
OBJECT-TYPE    
  SnmpAdminString  

idsaSensorAddressType 1.3.6.1.2.1.1.1.4
The type of the address which follows.
Status: current Access: read-only
OBJECT-TYPE    
  InetAddressType  

idsaSensorAddress 1.3.6.1.2.1.1.1.5
The Internet address of the sensor.
Status: current Access: read-only
OBJECT-TYPE    
  InetAddress  

idsaSensorManufacturer 1.3.6.1.2.1.1.1.6
the Manufacturer of the sensor that detected the event.
Status: current Access: read-only
OBJECT-TYPE    
  SnmpAdminString  

idsaSensorProductName 1.3.6.1.2.1.1.1.7
the name of the product that detected the event.
Status: current Access: read-only
OBJECT-TYPE    
  SnmpAdminString  

idsaSensorVersion 1.3.6.1.2.1.1.1.8
the version number of the sensor that detected the event.
Status: current Access: read-only
OBJECT-TYPE    
  SnmpAdminString  

idsaSensorLocation 1.3.6.1.2.1.1.1.9
the location of the tool that detected the event.
Status: current Access: read-only
OBJECT-TYPE    
  SnmpAdminString  

idsaAlerts 1.3.6.1.2.1.1.2
This is the base object for the subtree of objects defining the alerts.
Status: current Access: read-only
OBJECT-IDENTITY    

idsaAlertTable 1.3.6.1.2.1.1.2.1
Each row of this table contains information about an alert indexed by idsaAlertID.
Status: current Access: not-accessible
OBJECT-TYPE    
  SEQUENCE OF  
    IdsaAlertEntry

idsaAlertEntry 1.3.6.1.2.1.1.2.1.1
Entry containing information pertaining to an alert.
Status: current Access: not-accessible
OBJECT-TYPE    
  IdsaAlertEntry  

idsaAlertID 1.3.6.1.2.1.1.2.1.1.1
The AlertID uniquely identifies each alert generated by the sensor.
Status: current Access: read-only
OBJECT-TYPE    
  INTEGER 1..65535  

idsaAlertLocalAddressType 1.3.6.1.2.1.1.2.1.1.2
The type of the address which follows.
Status: current Access: read-only
OBJECT-TYPE    
  InetAddressType  

idsaAlertLocalAddress 1.3.6.1.2.1.1.2.1.1.3
The Internet address associated with the alert .
Status: current Access: read-only
OBJECT-TYPE    
  InetAddress  

idsaAlertInterfaceIndex 1.3.6.1.2.1.1.2.1.1.4
The ifIndex of the interface on which the event was detected by the sensor.
Status: current Access: read-only
OBJECT-TYPE    
  INTEGER 1..65535  

idsaAlertTimeStamp 1.3.6.1.2.1.1.2.1.1.5
The local date and time when this alert was generated.
Status: current Access: read-only
OBJECT-TYPE    
  DateAndTime  

idsaAlertActionsTaken 1.3.6.1.2.1.1.2.1.1.6
The list of automatic actions taken by the sensor
Status: current Access: read-only
OBJECT-TYPE    
  SnmpAdminString  

idsaAlertAttackName 1.3.6.1.2.1.1.2.1.1.7
the name of the atack, if known. If not known this field will be inaccessile.
Status: current Access: read-only
OBJECT-TYPE    
  SnmpAdminString  

idsaAlertMoreInfo 1.3.6.1.2.1.1.2.1.1.8
A reference to MIB definitions specific to this message. If this information is not present, its value should be set to the OBJECT IDENTIFIER { 0 0 }, which is a syntatically valid object identifier.
Status: current Access: read-only
OBJECT-TYPE    
  OBJECT IDENTIFIER  

idsaAlertSrcAddressType 1.3.6.1.2.1.1.2.1.1.9
The type of the Internet address that was the attack source.
Status: current Access: read-only
OBJECT-TYPE    
  InetAddressType  

idsaAlertSrcAddress 1.3.6.1.2.1.1.2.1.1.10
The Internet addresses of the entity from which the attack originated, if known.
Status: current Access: read-only
OBJECT-TYPE    
  InetAddress  

idsaAlertDstAddressType 1.3.6.1.2.1.1.2.1.1.11
The type of the Internet address that was the attack target.
Status: current Access: read-only
OBJECT-TYPE    
  InetAddressType  

idsaAlertDstAddress 1.3.6.1.2.1.1.2.1.1.12
The Internet address of the entity to which the attack was destined, if known.
Status: current Access: read-only
OBJECT-TYPE    
  InetAddress  

idsaAlertSrcPort 1.3.6.1.2.1.1.2.1.1.13
The port number from where the attack has originated
Status: current Access: read-only
OBJECT-TYPE    
  INTEGER  

idsaAlertDstPort 1.3.6.1.2.1.1.2.1.1.14
The port number to which the attack is destined
Status: current Access: read-only
OBJECT-TYPE    
  INTEGER  

idsaConformance 1.3.6.1.2.1.1.3
OBJECT IDENTIFIER    

idsaGroups 1.3.6.1.2.1.1.3.1
OBJECT IDENTIFIER    

idsaCompliances 1.3.6.1.2.1.1.3.2
OBJECT IDENTIFIER    

idsaAlertCompliance 1.3.6.1.2.1.1.3.2.1
The compliance statement for SNMP entities which implement the INTRUSION-DETECTION-SENSOR-ALERT-MIB.
Status: current Access: read-only
MODULE-COMPLIANCE    

idsaAlertGroup 1.3.6.1.2.1.1.3.1.1
A collection of objects for generation and despatch of alerts pertaining to intrusions detected.
Status: current Access: read-only
OBJECT-GROUP