capTotalSessions
1.3.6.1.4.1.9.9.653.1.1.1
Counter32
This object indicates the total numbers of sessions created in the device since the last system reset.
2008-06-11
This MIB module defines managed objects that facilitate the management of policies upon host(s) admission to a network. The information available through this MIB includes: o Statistics information such as number of total and active sessions. o Session information such as IP and MAC address of host, client type, and session state. o QoS and Security policy applied to host traffic upon host admission to a network. The following terms are used throughout this MIB: QoS (Quality of Service) is the method which attempts to ensure that the network requirements of different applications can be met by giving preferential forwarding treatment to some traffic. ACL (Access Control List) which contains filters used to identify traffic flows with certain characteristics. Downloadable ACL is a set of filters, configured on the RADIUS server which are downloaded during authorization phase of admission features like dot1x, authProxy, etc. SGT (Security Group Tag) is a unique 16 bits value assigned to every security group and used by network devices to enforce network policies. URL: Universal Resource Locator. URL-Redirect ACL is used for URL redirection feature. Any ingress HTTP from the host that matches the ACL content is subjected to redirection to the URL address specified by the URL-Redirect string. URL redirect string is the URL to which HTTP traffic to the host would be redirected.
Download CISCO-ADMISSION-POLICY-MIB.txt Open CISCO-ADMISSION-POLICY-MIB.txt in a new tab
| Name | OID |
|---|---|
| capTotalSessions | 1.3.6.1.4.1.9.9.653.1.1.1 |
| capActiveSessions | 1.3.6.1.4.1.9.9.653.1.1.2 |
| Name | OID |
|---|---|
| capSidSessionInfoTable | 1.3.6.1.4.1.9.9.653.1.1.3 |
| capSidSessionPolicyTable | 1.3.6.1.4.1.9.9.653.1.1.4 |
END OF TOC
1.3.6.1.4.1.9.9.653.1.1.1
Counter32
This object indicates the total numbers of sessions created in the device since the last system reset.
1.3.6.1.4.1.9.9.653.1.1.2
Gauge32
This object indicates the currently active sessions in the device.
1.3.6.1.4.1.9.9.653.1.1.3
Index: IMPLIED capSidSessionIndex
This table lists admission policy sessions based on unique session identifier. An entry is created by the agent when an admission policy session has successfully registered to the system. An entry is deleted by the agent upon de-registration of the admission policy session with system.
1.3.6.1.4.1.9.9.653.1.1.3.1.1
CapSessionIdAn octet string describes an unique session identification. SIZE (1..64) · OCTET STRING
This object uniquely identifies a session.
1.3.6.1.4.1.9.9.653.1.1.3.1.2
InterfaceIndexA unique value, greater than zero, for each interface or interface sub-layer in the managed system. It is recommended that values are assigned contiguously starting from 1. The value for each interface sub-layer must remain constant at least from one re-initialization of the entity's network management system to the next re-initialization. (1..2147483647) · Integer32 · hint d
This object indicates the ifIndex value of the interface on which the session is established.
1.3.6.1.4.1.9.9.653.1.1.3.1.3
MacAddressRepresents an 802 MAC address represented in the `canonical' order defined by IEEE 802.1a, i.e., as if it were transmitted least significant bit first, even though 802.5 (in contrast to other 802.x protocols) requires MAC addresses to be transmitted most significant bit first. SIZE (6) · OCTET STRING · hint 1x:
This object indicates the MAC address of the host.
1.3.6.1.4.1.9.9.653.1.1.3.1.4
InetAddressType0 = unknown1 = ipv42 = ipv63 = ipv4z4 = ipv6z16 = dnsA value that represents a type of Internet address. unknown(0) An unknown address type. This value MUST be used if the value of the corresponding InetAddress object is a zero-length string. It may also be used to indicate an IP address that is not in one of the formats defined below. ipv4(1) An IPv4 address as defined by the InetAddressIPv4 textual convention. ipv6(2) An IPv6 address as defined by the InetAddressIPv6 textual convention. ipv4z(3) A non-global IPv4 address including a zone index as defined by the InetAddressIPv4z textual convention. ipv6z(4) A non-global IPv6 address including a zone index as defined by the InetAddressIPv6z textual convention. dns(16) A DNS domain name as defined by the InetAddressDNS textual convention. Each definition of a concrete InetAddressType value must be accompanied by a definition of a textual convention for use with that InetAddressType. To support future extensions, the InetAddressType textual convention SHOULD NOT be sub-typed in object type definitions. It MAY be sub-typed in compliance statements in order to require only a subset of these address types for a compliant implementation. Implementations must ensure that InetAddressType objects and any dependent objects (e.g., InetAddress objects) are consistent. An inconsistentValue error must be generated if an attempt to change an InetAddressType object would, for example, lead to an undefined InetAddress value. In particular, InetAddressType/InetAddress pairs must be changed together if the address type changes (e.g., from ipv6(2) to ipv4(1)). · Integer32
This object indicates the type of Internet address assigned for the host.
1.3.6.1.4.1.9.9.653.1.1.3.1.5
InetAddressDenotes a generic Internet address. An InetAddress value is always interpreted within the context of an InetAddressType value. Every usage of the InetAddress textual convention is required to specify the InetAddressType object that provides the context. It is suggested that the InetAddressType object be logically registered before the object(s) that use the InetAddress textual convention, if they appear in the same logical row. The value of an InetAddress object must always be consistent with the value of the associated InetAddressType object. Attempts to set an InetAddress object to a value inconsistent with the associated InetAddressType must fail with an inconsistentValue error. When this textual convention is used as the syntax of an index object, there may be issues with the limit of 128 sub-identifiers specified in SMIv2, STD 58. In this case, the object definition MUST include a 'SIZE' clause to limit the number of potential instance sub-identifiers; otherwise the applicable constraints MUST be stated in the appropriate conceptual row DESCRIPTION clauses, or in the surrounding documentation if there is no single DESCRIPTION clause that is appropriate. SIZE (0..255) · OCTET STRING
This object indicates the Internet address assigned for the host. The type of this address is determined by the value of capSidSessionAddressType object.
1.3.6.1.4.1.9.9.653.1.1.3.1.6
BITS
This object indicates the admission features associated with the session. 'dot1x' indicates that the admission feature is 802.1x feature. 'mab' indicates that the admission feature is Mac Authentication Bypass feature. 'eou' indicates that the admission feature is Extensible Authentication Protocol over UDP feature. 'authProxy' indicates that the admission feature is Authentication Proxy feature.
1.3.6.1.4.1.9.9.653.1.1.4
Index: capSidSessionIndex · capSidSessionPolicyIndex
This table lists the policies that will be enforced per session per admission feature. The session in this table should have a corresponding entry in capSidSessionInfoTable.
1.3.6.1.4.1.9.9.653.1.1.4.1.1
INTEGER1 = dot1x2 = mab3 = eou4 = authProxy · Integer32
This object indicates the admission feature which a host is subjected to in a session. 'dot1x' indicates that the admission feature is 802.1x feature. 'mab' indicates that the admission feature is Mac Authentication Bypass feature. 'eou' indicates that the admission feature is Extensible Authentication Protocol over UDP feature. 'authProxy' indicates that the admission feature is Authentication Proxy feature.
1.3.6.1.4.1.9.9.653.1.1.4.1.2
CapQosPolicyAn octet string, preferably in human-readable form, describes a QoS policy. SIZE (0..255) · OCTET STRING · hint 255a
This object indicates the name of an existing QoS policy which will be applied to incoming traffic in this session. An empty string indicates that no such policy is applied.
1.3.6.1.4.1.9.9.653.1.1.4.1.3
CapPolicyState1 = notApplicable2 = success3 = failure4 = inProgress5 = ipWaitThis textual convention indicates the current state of a policy applied to host traffic. 'notApplicable' indicates that the policy is not applicable. 'success' indicates that the policy is applied successfully. 'failure' indicates that the policy is failed to apply. 'inProgress' indicates that the policy application is in progress. 'ipWait' indicates that the policy is waiting for IP address assignment. · Integer32
This object indicates the current state of the QoS policy which will be applied to incoming traffic in this session.
1.3.6.1.4.1.9.9.653.1.1.4.1.4
CapQosPolicyAn octet string, preferably in human-readable form, describes a QoS policy. SIZE (0..255) · OCTET STRING · hint 255a
This object indicates the name of an existing QoS policy which will be applied to outgoing traffic in this session. An empty string indicates that no such policy is applied.
1.3.6.1.4.1.9.9.653.1.1.4.1.5
CapPolicyState1 = notApplicable2 = success3 = failure4 = inProgress5 = ipWaitThis textual convention indicates the current state of a policy applied to host traffic. 'notApplicable' indicates that the policy is not applicable. 'success' indicates that the policy is applied successfully. 'failure' indicates that the policy is failed to apply. 'inProgress' indicates that the policy application is in progress. 'ipWait' indicates that the policy is waiting for IP address assignment. · Integer32
This object indicates the current state of the QoS policy which will be applied to outgoing traffic in this session.
1.3.6.1.4.1.9.9.653.1.1.4.1.6
CapAclNameAn octet string, preferably in human-readable form, describes the name of an ACL. SIZE (0..255) · OCTET STRING · hint 255a
This object indicates the name of a Downloadable ACL which will be applied to the host traffic. An empty string indicates that no such ACL is applied.
1.3.6.1.4.1.9.9.653.1.1.4.1.7
CapPolicyState1 = notApplicable2 = success3 = failure4 = inProgress5 = ipWaitThis textual convention indicates the current state of a policy applied to host traffic. 'notApplicable' indicates that the policy is not applicable. 'success' indicates that the policy is applied successfully. 'failure' indicates that the policy is failed to apply. 'inProgress' indicates that the policy application is in progress. 'ipWait' indicates that the policy is waiting for IP address assignment. · Integer32
This object indicates the state of this session downloadable ACL policy.
1.3.6.1.4.1.9.9.653.1.1.4.1.8
CapAclNameAn octet string, preferably in human-readable form, describes the name of an ACL. SIZE (0..255) · OCTET STRING · hint 255a
This object indicates the ACL name that redirected traffic from the host will be subjected to. An empty string indicates that no such ACL is applied.
1.3.6.1.4.1.9.9.653.1.1.4.1.9
CapPolicyState1 = notApplicable2 = success3 = failure4 = inProgress5 = ipWaitThis textual convention indicates the current state of a policy applied to host traffic. 'notApplicable' indicates that the policy is not applicable. 'success' indicates that the policy is applied successfully. 'failure' indicates that the policy is failed to apply. 'inProgress' indicates that the policy application is in progress. 'ipWait' indicates that the policy is waiting for IP address assignment. · Integer32
This object indicates the state of this session URL-Redirect ACL policy.
1.3.6.1.4.1.9.9.653.1.1.4.1.10
CapURLStringThis textual convention defines the URL string. The Universal Resource Locator (URL). The URL strings are compact string representation for a resource available via internet. This is the address location of the page to load. The string should represent a fully qualifying string with the format 'protocol:/server/page'. In general the string should point to any value that can be saved/loaded. Any limitation for the URL must be defined as part of the description of any object which uses this syntax. The description of any object which uses this syntax must specifically describe the meaning of zero length value.Reference: Uniform Resource Locators. RFC 1738. SIZE (0..255) · OCTET STRING
This object indicates the URL that traffic from the host will be redirected to. An empty string indicates that no such URL is applied.
1.3.6.1.4.1.9.9.653.1.1.4.1.11
CapPolicyState1 = notApplicable2 = success3 = failure4 = inProgress5 = ipWaitThis textual convention indicates the current state of a policy applied to host traffic. 'notApplicable' indicates that the policy is not applicable. 'success' indicates that the policy is applied successfully. 'failure' indicates that the policy is failed to apply. 'inProgress' indicates that the policy application is in progress. 'ipWait' indicates that the policy is waiting for IP address assignment. · Integer32
This object indicates the state of this session URL-Redirect string policy.
1.3.6.1.4.1.9.9.653.1.1.4.1.12
Integer32 (-1 | 0..65535)
This object indicates the SGT value assigned to the host that initiated this session. Value of -1 indicates that there is no SGT value assigned.