ZYXEL-AAA-MIB

File: ZYXEL-AAA-MIB.mib (12827 bytes)

Imported modules

RFC1155-SMI SNMPv2-SMI SNMPv2-TC
RFC1213-MIB P-BRIDGE-MIB Q-BRIDGE-MIB
BRIDGE-MIB IF-MIB SNMP-FRAMEWORK-MIB
INET-ADDRESS-MIB DISMAN-PING-MIB IEEE8021-CFM-MIB
OSPF-MIB ZYXEL-ES-SMI

Imported symbols

enterprises OBJECT-TYPE Integer32
RowStatus DateAndTime TruthValue
StorageType MacAddress DisplayString
EnabledStatus PortList dot1dBasePort
InterfaceIndexOrZero SnmpAdminString InetAddressType
InetAddress OperationResponseStatus Counter
TimeTicks BridgeId Timeout
dot1agCfmMdIndex dot1agCfmMaIndex dot1agCfmMepIdentifier
IpAddress ifIndex NOTIFICATION-TYPE
sysObjectID ospfIfIpAddress ospfAddressLessIf
ospfAreaId ospfNbrIpAddr ospfNbrAddressLessIndex
ospfLsdbAreaId ospfLsdbType ospfLsdbLsid
ospfLsdbRouterId ospfVirtIfAreaId ospfVirtIfNeighbor
esMgmt

Defined Types

ZyxelAaaAuthenticationTypeEntry  
SEQUENCE    
  zyAaaAuthenticationTypeName DisplayString
  zyAaaAuthenticationTypeMethodList OCTET STRING

ZyxelAaaAuthorizationTypeEntry  
SEQUENCE    
  zyAaaAuthorizationTypeName DisplayString
  zyAaaAuthorizationTypeState EnabledStatus
  zyAaaAuthorizationTypeMethod INTEGER

ZyxelAaaAccountingTypeEntry  
SEQUENCE    
  zyAaaAccountingTypeName DisplayString
  zyAaaAccountingTypeState EnabledStatus
  zyAaaAccountingTypeBroadcastState EnabledStatus
  zyAaaAccountingTypeMode INTEGER
  zyAaaAccountingTypeMethod INTEGER
  zyAaaAccountingTypePrivilege INTEGER

Defined Values

zyxelAaa 1.3.6.1.4.1.890.1.15.3.94
The subtree for authentication, authorization and accounting (AAA)
MODULE-IDENTITY    

zyxelAaaSetup 1.3.6.1.4.1.890.1.15.3.94.1
OBJECT IDENTIFIER    

zyxelAaaTrapInfoObjects 1.3.6.1.4.1.890.1.15.3.94.2
OBJECT IDENTIFIER    

zyxelAaaNotifications 1.3.6.1.4.1.890.1.15.3.94.3
OBJECT IDENTIFIER    

zyxelAaaAuthenticationSetup 1.3.6.1.4.1.890.1.15.3.94.1.1
OBJECT IDENTIFIER    

zyxelAaaAuthenticationTypeTable 1.3.6.1.4.1.890.1.15.3.94.1.1.1
The table contains authentication type configuration.
Status: current Access: not-accessible
OBJECT-TYPE    
  SEQUENCE OF  
    ZyxelAaaAuthenticationTypeEntry

zyxelAaaAuthenticationTypeEntry 1.3.6.1.4.1.890.1.15.3.94.1.1.1.1
An entry contains authentication type configuration.
Status: current Access: not-accessible
OBJECT-TYPE    
  ZyxelAaaAuthenticationTypeEntry  

zyAaaAuthenticationTypeName 1.3.6.1.4.1.890.1.15.3.94.1.1.1.1.1
'Privilege Enable' means to authenticate access privilege level for administrator accounts (users for switch management). 'Login' means to authenticate administrator accounts (users for switch management).
Status: current Access: not-accessible
OBJECT-TYPE    
  DisplayString  

zyAaaAuthenticationTypeMethodList 1.3.6.1.4.1.890.1.15.3.94.1.1.1.1.2
There are three methods for the switch to authenticate the two types. The switch checks the methods in the order you configure them (first Method 1, then Method 2 and finally Method 3). You must configure the settings in the Method 1 field. If you want the switch to check other sources for authentication, specified them in Method 2 and Method 3 fields.
Status: current Access: read-write
OBJECT-TYPE    
  OCTET STRING  

zyxelAaaAuthorizationSetup 1.3.6.1.4.1.890.1.15.3.94.1.2
OBJECT IDENTIFIER    

zyAaaAuthorizationConsoleState 1.3.6.1.4.1.890.1.15.3.94.1.2.1
Enable/Disable authorization on console for the switch.
Status: current Access: read-write
OBJECT-TYPE    
  EnabledStatus  

zyxelAaaAuthorizationTypeTable 1.3.6.1.4.1.890.1.15.3.94.1.2.2
The table contains authorization type configuration.
Status: current Access: not-accessible
OBJECT-TYPE    
  SEQUENCE OF  
    ZyxelAaaAuthorizationTypeEntry

zyxelAaaAuthorizationTypeEntry 1.3.6.1.4.1.890.1.15.3.94.1.2.2.1
An entry contains authorization type configuration.
Status: current Access: not-accessible
OBJECT-TYPE    
  ZyxelAaaAuthorizationTypeEntry  

zyAaaAuthorizationTypeName 1.3.6.1.4.1.890.1.15.3.94.1.2.2.1.1
'Exec' allows an administrator which logs in the switch through Telnet or SSH to have different access privilege level assigned via the external server. 'Dot1x' allows an IEEE 802.1x client to have different bandwidth limit or VLAN ID assigned via the external server.
Status: current Access: not-accessible
OBJECT-TYPE    
  DisplayString  

zyAaaAuthorizationTypeState 1.3.6.1.4.1.890.1.15.3.94.1.2.2.1.2
Enable/Disable authorization for a specified event type.
Status: current Access: read-write
OBJECT-TYPE    
  EnabledStatus  

zyAaaAuthorizationTypeMethod 1.3.6.1.4.1.890.1.15.3.94.1.2.2.1.3
Enter whether you want to use RADIUS or TACACS+ for authorization of specific types of events. RADIUS is the only method for IEEE 802.1x authorization.
Status: current Access: read-write
OBJECT-TYPE    
  INTEGER radius(1), tacacs(2)  

zyxelAaaAccountingSetup 1.3.6.1.4.1.890.1.15.3.94.1.3
OBJECT IDENTIFIER    

zyAaaAccountingUpdatePeriod 1.3.6.1.4.1.890.1.15.3.94.1.3.1
The amount of time in minutes before the switch sends an update to the accounting server.
Status: current Access: read-write
OBJECT-TYPE    
  Integer32  

zyxelAaaAccountingTypeTable 1.3.6.1.4.1.890.1.15.3.94.1.3.2
The table contains accounting type configuration.
Status: current Access: not-accessible
OBJECT-TYPE    
  SEQUENCE OF  
    ZyxelAaaAccountingTypeEntry

zyxelAaaAccountingTypeEntry 1.3.6.1.4.1.890.1.15.3.94.1.3.2.1
An entry contains accounting type configuration.
Status: current Access: not-accessible
OBJECT-TYPE    
  ZyxelAaaAccountingTypeEntry  

zyAaaAccountingTypeName 1.3.6.1.4.1.890.1.15.3.94.1.3.2.1.1
'System' means the switch will send information when the following system events occur: system boots up, system shuts down, system accounting is enabled, and system accounting is disabled. 'Exec' means the switch will send information when an administrator logs in and logs out via the console port, telnet or SSH. 'Dot1x' means the switch will send information when an IEEE 802.1x client begins a session (authenticates via the switch), ends a session as well as interim updates of a session. 'Commands' means the switch to send information when commands of specified privilege level and higher are executed on the switch.
Status: current Access: not-accessible
OBJECT-TYPE    
  DisplayString  

zyAaaAccountingTypeState 1.3.6.1.4.1.890.1.15.3.94.1.3.2.1.2
Enable/Disable accounting for a specified event type.
Status: current Access: read-write
OBJECT-TYPE    
  EnabledStatus  

zyAaaAccountingTypeBroadcastState 1.3.6.1.4.1.890.1.15.3.94.1.3.2.1.3
Enable/Disable this to have the switch send accounting information to all configured accounting servers at the same time.
Status: current Access: read-write
OBJECT-TYPE    
  EnabledStatus  

zyAaaAccountingTypeMode 1.3.6.1.4.1.890.1.15.3.94.1.3.2.1.4
The switch supports two modes of recording login events. Select 'start-stop' to have the switch send information to the accounting server when a user begins a session, during a user's session (if it lasts past the Update Period), and when a user ends a session. Select 'stop-only' to have the switch send information to the accounting server only when a user ends a session.
Status: current Access: read-write
OBJECT-TYPE    
  INTEGER not-available(255), start-stop(1), stop-only(2)  

zyAaaAccountingTypeMethod 1.3.6.1.4.1.890.1.15.3.94.1.3.2.1.5
Enter whether you want to use RADIUS or TACACS+ for accounting of specified types of events.
Status: current Access: read-write
OBJECT-TYPE    
  INTEGER radius(1), tacacs(2)  

zyAaaAccountingTypePrivilege 1.3.6.1.4.1.890.1.15.3.94.1.3.2.1.6
This is only configurable for commands type of event. Enter the threshold command privilege level for which the switch should send accounting information. The switch will send accounting information when commands at the level you specify and higher are executed on the switch.
Status: current Access: read-write
OBJECT-TYPE    
  INTEGER not-available(255), privilege-0(0), privilege-1(1), privilege-2(2), privilege-3(3), privilege-4(4), privilege-5(5), privilege-6(6), privilege-7(7), privilege-8(8), privilege-9(9), privilege-10(10), privilege-11(11), privilege-12(12), privilege-13(13), privilege-14(14)  

zyAaaTrapAuthenticationMethod 1.3.6.1.4.1.890.1.15.3.94.2.1
This trap displays which authentication method is failed.
Status: current Access: not-accessible
OBJECT-TYPE    
  INTEGER snmp(0), ftp(1), console(2), ssh(3), https(4), http(5), telnet(6)  

zyAaaTrapAuthorizationMethod 1.3.6.1.4.1.890.1.15.3.94.2.2
This trap displays which authorization method is failed.
Status: current Access: not-accessible
OBJECT-TYPE    
  INTEGER dot1x(0), ssh(1), http(2), telnet(3), ftp(4), console(5)  

zyAaaAuthenticationFailure 1.3.6.1.4.1.890.1.15.3.94.3.1
Management connection authentication has failed.
Status: current Access: not-accessible
NOTIFICATION-TYPE    

zyAaaAuthorizationFailure 1.3.6.1.4.1.890.1.15.3.94.3.2
Management connection authorization has failed.
Status: current Access: not-accessible
NOTIFICATION-TYPE