EZ5 MIB Catalog

CISCO-CRYPTO-ACCELERATOR-MIB

2005-03-08

The MIB module for monitoring the identity, status, activity and faults of crypto accelerator (CA) modules used in devices implementing security services. The purpose of this MIB is to facilitate the following: 1) facilitate the discovery of hardware crypto accelerator modules installed in a security device 2) monitor the activity, faults and performance of hardware crypto accelerators and help the Network Management Station (NMS) correlate the performance of the CA modules with that of the security services (IPsec, SSL, SSH, PKI etc) using the modules.

Download CISCO-CRYPTO-ACCELERATOR-MIB.txt Open CISCO-CRYPTO-ACCELERATOR-MIB.txt in a new tab

SCALARS (16) · TABLES (2) · TRAPS (4)

Scalars (16)

NameOID
ccaSupportsHwCrypto1.3.6.1.4.1.9.9.467.1.1.1
ccaSupportsModularHwCrypto1.3.6.1.4.1.9.9.467.1.1.2
ccaMaxAccelerators1.3.6.1.4.1.9.9.467.1.1.3
ccaMaxCryptoThroughput1.3.6.1.4.1.9.9.467.1.1.4
ccaMaxCryptoConnections1.3.6.1.4.1.9.9.467.1.1.5
ccaGlobalNumActiveAccelerators1.3.6.1.4.1.9.9.467.1.2.1.1
ccaGlobalNumNonOperAccelerators1.3.6.1.4.1.9.9.467.1.2.1.2
ccaGlobalInOctets1.3.6.1.4.1.9.9.467.1.2.1.3
ccaGlobalOutOctets1.3.6.1.4.1.9.9.467.1.2.1.4
ccaGlobalInPkts1.3.6.1.4.1.9.9.467.1.2.1.5
ccaGlobalOutPkts1.3.6.1.4.1.9.9.467.1.2.1.6
ccaGlobalOutErrPkts1.3.6.1.4.1.9.9.467.1.2.1.7
ccaNotifCntlAcclInserted1.3.6.1.4.1.9.9.467.1.3.1
ccaNotifCntlAcclRemoved1.3.6.1.4.1.9.9.467.1.3.2
ccaNotifCntlAcclOperational1.3.6.1.4.1.9.9.467.1.3.3
ccaNotifCntlAcclDisabled1.3.6.1.4.1.9.9.467.1.3.4

Tables (2)

NameOID
ccaAcceleratorTable1.3.6.1.4.1.9.9.467.1.2.2
ccaProtocolStatsTable1.3.6.1.4.1.9.9.467.1.2.3.1

Traps (4)

NameOID
ciscoCryAccelInserted1.3.6.1.4.1.9.9.467.0.1
ciscoCryAccelRemoved1.3.6.1.4.1.9.9.467.0.2
ciscoCryAccelOperational1.3.6.1.4.1.9.9.467.0.3
ciscoCryAccelDisabled1.3.6.1.4.1.9.9.467.0.4

END OF TOC

Scalar details

ccaSupportsHwCrypto

1.3.6.1.4.1.9.9.467.1.1.1

TruthValue1 = true2 = falseRepresents a boolean value. · Integer32

This MIB object assumes the value of True if the managed device is capable of including hardware crypto accelerator.

ccaSupportsModularHwCrypto

1.3.6.1.4.1.9.9.467.1.1.2

TruthValue1 = true2 = falseRepresents a boolean value. · Integer32

This MIB object assumes the value of True if the managed device supports field removable hardware crypto accelerators.

ccaMaxAccelerators

1.3.6.1.4.1.9.9.467.1.1.3

Integer32 (-1..50)

The maximum number of hardware crypto accelerators which may be simultaneously operational in this device. If the managed device can support only software encryption, the value of this MIB object should be set to zero. If there is not set limit on the maximum number of crypto accelerator modules which the managed device can support, the agent should return a value of '-1' for this MIB variable.

ccaMaxCryptoThroughput

1.3.6.1.4.1.9.9.467.1.1.4

Unsigned32 · megabits per second

The maximum crypto throughput that may be supported by the managed device with the current number of active crypto accelerators. If this value cannot be determined, the agent should return a value of 0.

ccaMaxCryptoConnections

1.3.6.1.4.1.9.9.467.1.1.5

Unsigned32

The maximum number of VPN flows (connections) the managed device can support with the current number of active crypto accelerators. If this value cannot be determined, the agent should return a value of 0.

ccaGlobalNumActiveAccelerators

1.3.6.1.4.1.9.9.467.1.2.1.1

CAModuleCountThis type denotes the count of crypto accelerators. · Unsigned32

The number of crypto accelerators which are in state 'active'.

ccaGlobalNumNonOperAccelerators

1.3.6.1.4.1.9.9.467.1.2.1.2

CAModuleCountThis type denotes the count of crypto accelerators. · Unsigned32

The number of crypto accelerators which are in a state other than 'active'.

ccaGlobalInOctets

1.3.6.1.4.1.9.9.467.1.2.1.3

Counter64 (0..18446744073709551615)

The total number of octets input to all the crypto accelerators installed in the device. The value is cumulative from last reboot of the managed entity.

ccaGlobalOutOctets

1.3.6.1.4.1.9.9.467.1.2.1.4

Counter64 (0..18446744073709551615)

The total number of octets output by all the crypto accelerators installed in the device. The value is cumulative from last reboot of the managed entity.

ccaGlobalInPkts

1.3.6.1.4.1.9.9.467.1.2.1.5

Counter64 (0..18446744073709551615)

The total number of packets input to all the crypto accelerators installed in the device. The value is cumulative from last reboot of the managed entity.

ccaGlobalOutPkts

1.3.6.1.4.1.9.9.467.1.2.1.6

Counter64 (0..18446744073709551615)

The total number of packets output by all the crypto accelerators installed in the device. The value is cumulative from last reboot of the managed entity.

ccaGlobalOutErrPkts

1.3.6.1.4.1.9.9.467.1.2.1.7

Counter64 (0..18446744073709551615)

The total number of packets output by all the crypto accelerators installed in the device which were found to be generated with errors (checksum errors, other errors). The value is cumulative from last reboot of the managed entity.

ccaNotifCntlAcclInserted

1.3.6.1.4.1.9.9.467.1.3.1

TruthValue1 = true2 = falseRepresents a boolean value. · Integer32

This variable controls the generation of 'ciscoCryAccelInserted' notification. When this variable is set to 'true', generation of the notification is enabled. When this variable is set to 'false', generation of the notification is disabled.

ccaNotifCntlAcclRemoved

1.3.6.1.4.1.9.9.467.1.3.2

TruthValue1 = true2 = falseRepresents a boolean value. · Integer32

This variable controls the generation of 'ciscoCryAccelRemoved' notification. When this variable is set to 'true', generation of the notification is enabled. When this variable is set to 'false', generation of the notification is disabled.

ccaNotifCntlAcclOperational

1.3.6.1.4.1.9.9.467.1.3.3

TruthValue1 = true2 = falseRepresents a boolean value. · Integer32

This variable controls the generation of 'ciscoCryAccelOperational' notification. When this variable is set to 'true', generation of the notification is enabled. When this variable is set to 'false', generation of the notification is disabled.

ccaNotifCntlAcclDisabled

1.3.6.1.4.1.9.9.467.1.3.4

TruthValue1 = true2 = falseRepresents a boolean value. · Integer32

This variable controls the generation of 'ciscoCryAccelDisabled' notification. When this variable is set to 'true', generation of the notification is enabled. When this variable is set to 'false', generation of the notification is disabled.

Table details

ccaAcceleratorTable

1.3.6.1.4.1.9.9.467.1.2.2

Index: ccaAcclIndex

The crypto accelerator table. There is one entry in this table for each crypto accelerator installed in the managed device.

ccaAcclIndex

1.3.6.1.4.1.9.9.467.1.2.2.1.1

Unsigned32 (1..50)

The index uniquely identifying a specific crypto accelerator.

ccaAcclEntPhysicalIndex

1.3.6.1.4.1.9.9.467.1.2.2.1.2

EntPhysicalIndexOrZeroThis textual convention is an extension of entPhysicalIndex. If non-zero, the object is an entPhysicalIndex. If zero, no appropriate entPhysicalIndex exists. Any additional semantics are object specific. (0..2147483647) · Integer32

The value of entPhysicalIndex of the module corresponding to this conceptual row or zero, if the module is not an entity listed in 'entPhysicalTable' of rfc2737.

ccaAcclStatus

1.3.6.1.4.1.9.9.467.1.2.2.1.3

ModuleOperType1 = unknown2 = ok3 = disabled4 = okButDiagFailed5 = boot6 = selfTest7 = failed8 = missing9 = mismatchWithParent10 = mismatchConfig11 = diagFailed12 = dormant13 = outOfServiceAdmin14 = outOfServiceEnvTemp15 = poweredDown16 = poweredUp17 = powerDenied18 = powerCycled19 = okButPowerOverWarning20 = okButPowerOverCritical21 = syncInProgress22 = upgrading23 = okButAuthFailed24 = mdr25 = fwMismatchFound26 = fwDownloadSuccess27 = fwDownloadFailureOperational module states. Valid values are : unknown(1) Module is not in one of other states normal operational states: ok(2) Module is operational. disabled(3) Module is administratively disabled. okButDiagFailed(4) Module is operational but there is some diagnostic information available. transitional states: boot(5) Module is currently in the process of bringing up image. After boot, it starts its operational software and transitions to the appropriate state. selfTest(6) Module is performing selfTest. failure states: failed(7) Module has failed due to some condition not stated above. missing(8) Module has been provisioned, but it is missing mismatchWithParent(9) Module is not compatible with parent entity. Module has not been provisioned and wrong type of module is plugged in. This state can be cleared by plugging in the appropriate module. mismatchConfig(10) Module is not compatible with the current configuration. Module was correctly provisioned earlier, however the module was replaced by an incompatible module. This state can be resolved by clearing the configuration, or replacing with the appropriate module. diagFailed(11) Module diagnostic test failed due to some hardware failure. dormant(12) Module is waiting for an external or internal event to become operational. outOfServiceAdmin(13) module is administratively set to be powered on but out of service. outOfServiceEnvTemp(14)Module is powered on but out of service, due to environmental temperature problem. An out-o-service module consumes less power thus will cool down the board. poweredDown(15) Module is in powered down state. poweredUp(16) Module is in powered up state. powerDenied(17) System does not have enough power in power budget to power on this module. powerCycled(18) Module is being power cycled. okButPowerOverWarning(19) Module is drawing more power than allocated to this module. The module is still operational but may go into a failure state. This state may be caused by misconfiguration of power requirements (especially for inline power). okButPowerOverCritical(20) Module is drawing more power than this module is designed to handle. The module is still operational but may go into a failure state and could potentially take the system down. This state may be caused by gross misconfi- guration of power requirements (especially for inline power). syncInProgress(21) Synchronization in progress. In a high availability system there will be 2 control modules, active and standby. This transitional state specifies the synchronization of data between the active and standby modules. upgrading(22) Module is upgrading. okButAuthFailed(23) Module is operational but did not pass hardware integrity verification. mdr(24) Module is undergoing a Minimum Disruptive Restart (MDR) upgrade. firmware download states: fwMismatchFound(25) Mistmatch found between current firmware version and the firmware version in the system image. fwDownloadSuccess(26) Module firmware download succeeded. fwDownloadFailure(27) Module firmware download failed. · Integer32

The state of the crypto accelerator corresponding to this row.

ccaAcclType

1.3.6.1.4.1.9.9.467.1.2.2.1.4

CAModuleType1 = other2 = software3 = integrated4 = sep5 = sepe6 = a1700VpnModule7 = aimVpnIBp8 = aimVpnIEp9 = aimVpnIIBp10 = aimVpnIIEp11 = aimVpnIIHp12 = isa13 = vam14 = vam215 = vam2plus16 = vpnsm17 = caviumNitrox18 = caviumNitroxII19 = caviumNitroxLiteThis type yields the marketing label of the module type and supplements the corresponding entPhysicalVendorType MIB variable, if the crypto accelerator has an entry in entPhysicalTable. The value 'other' has been provided to keep the MIB still applicable while new crypto accelerators emerge. 'software' denotes the software implementation of crypto functions. 'integrated' denotes crypto accelerator modules which are integrated into the managed entity and are hence not modular. 'sep' and 'sepe' are scalable encryption processors used in VPN3000 series concentrators. 'a1700VpnModule' identifies the crypto accelerator used in in 1700 series routers. 'aimVpn' series of crypto accelerators are designed specifically for 2600 and 3700 platforms. Further, the aimVpnII series also function on 2800 series routers. 'aimVpn' series of crypto accelerators are designed specifically for 2600 and 2700 platforms. 'isa' is designed for 7200 series routers. 'vam' series of crypto accelerators are to be used on 7200 and 7300 series routers. 'vpnsm' denotes the Catalyst 6500 VPN service module, which is deemed a sophisticated 'crypto accelerator'. The 'caviumNitrox' series of crypto accelerators represent the crypto accelerator chipsets used in ASA devices. · Integer32

The type of the crypto accelerator corresponding to this row.

ccaAcclVersion

1.3.6.1.4.1.9.9.467.1.2.2.1.5

SnmpAdminStringAn octet string containing administrative information, preferably in human-readable form. To facilitate internationalization, this information is represented using the ISO/IEC IS 10646-1 character set, encoded as an octet string using the UTF-8 transformation format described in [RFC2279]. Since additional code points are added by amendments to the 10646 standard from time to time, implementations must be prepared to encounter any code point from 0x00000000 to 0x7fffffff. Byte sequences that do not correspond to the valid UTF-8 encoding of a code point or are outside this range are prohibited. The use of control codes should be avoided. When it is necessary to represent a newline, the control code sequence CR LF should be used. The use of leading or trailing white space should be avoided. For code points not directly supported by user interface hardware or software, an alternative means of entry and display, such as hexadecimal, may be provided. For information encoded in 7-bit US-ASCII, the UTF-8 encoding is identical to the US-ASCII encoding. UTF-8 may require multiple bytes to represent a single character / code point; thus the length of this object in octets may be different from the number of characters encoded. Similarly, size constraints refer to the number of encoded octets, not the number of characters represented by an encoding. Note that when this TC is used for an object that is used or envisioned to be used as an index, then a SIZE restriction MUST be specified so that the number of sub-identifiers for any object instance does not exceed the limit of 128, as defined by [RFC3416]. Note that the size of an SnmpAdminString object is measured in octets, not characters. SIZE (0..255) · OCTET STRING · hint 255t

The version string of the firmware of the crypto accelerator corresponding to this row.

ccaAcclSlot

1.3.6.1.4.1.9.9.467.1.2.2.1.6

Unsigned32

The slot number of the crypto accelerator corresponding to this row.

ccaAcclActiveTime

1.3.6.1.4.1.9.9.467.1.2.2.1.7

TimeTicks · seconds

The number of seconds elapsed since the crypto accelerator corresponding to this row transitioned into the 'active' state.

ccaAcclInPkts

1.3.6.1.4.1.9.9.467.1.2.2.1.8

Counter64 (0..18446744073709551615)

The number of packets input to this module for processing since the last reboot of the device.

ccaAcclOutPkts

1.3.6.1.4.1.9.9.467.1.2.2.1.9

Counter64 (0..18446744073709551615)

The number of packets output by this module after processing, since last reboot of the device.

ccaAcclOutBadPkts

1.3.6.1.4.1.9.9.467.1.2.2.1.10

Counter64 (0..18446744073709551615)

The number of packets output by this module after processing which had crypto errors, since last reboot of the device.

ccaAcclInOctets

1.3.6.1.4.1.9.9.467.1.2.2.1.11

Counter64 (0..18446744073709551615)

The number of octets input to this module for processing since last reboot of the device.

ccaAcclOutOctets

1.3.6.1.4.1.9.9.467.1.2.2.1.12

Counter64 (0..18446744073709551615)

The number of octets output by this module after processing since last reboot of the device.

ccaAcclHashOutboundPkts

1.3.6.1.4.1.9.9.467.1.2.2.1.13

Counter64 (0..18446744073709551615)

The number of packets output by this module which were prepared for hash validation since the last reboot of the device. Hash validation is a cryptographic operation used to verify the integrity of a block of data received from a trusted source.

ccaAcclHashOutboundOctets

1.3.6.1.4.1.9.9.467.1.2.2.1.14

Counter64 (0..18446744073709551615)

The number of octets output by this module which were prepared for hash validation since the last reboot of the device.

ccaAcclHashInboundPkts

1.3.6.1.4.1.9.9.467.1.2.2.1.15

Counter64 (0..18446744073709551615)

The number of packets input to this module which required hash validation since the last reboot of the device.

ccaAcclHashInboundOctets

1.3.6.1.4.1.9.9.467.1.2.2.1.16

Counter64 (0..18446744073709551615)

The number of octets input to this module which were authenticated using hash validation since the last reboot of the device.

ccaAcclEncryptPkts

1.3.6.1.4.1.9.9.467.1.2.2.1.17

Counter64 (0..18446744073709551615)

The number of packets input to this module which required encryption since the last reboot of the device.

ccaAcclEncryptOctets

1.3.6.1.4.1.9.9.467.1.2.2.1.18

Counter64 (0..18446744073709551615)

The number of octets input to this module which required encryption since the last reboot of the device.

ccaAcclDecryptPkts

1.3.6.1.4.1.9.9.467.1.2.2.1.19

Counter64 (0..18446744073709551615)

The number of packets input to this module which required decryption since the last reboot of the device.

ccaAcclDecryptOctets

1.3.6.1.4.1.9.9.467.1.2.2.1.20

Counter64 (0..18446744073709551615)

The number of octets input to this module which required decryption since the last reboot of the device.

ccaAcclTransformsTotal

1.3.6.1.4.1.9.9.467.1.2.2.1.21

Counter64 (0..18446744073709551615)

The number of cryptographic transformations performed by this crypto accelerator since the last reboot of the device.

ccaAcclDropsPkts

1.3.6.1.4.1.9.9.467.1.2.2.1.22

Counter64 (0..18446744073709551615)

The number of packets input to this module which were dropped prior to processing since the last reboot of the device.

ccaAcclRandRequests

1.3.6.1.4.1.9.9.467.1.2.2.1.23

Counter64 (0..18446744073709551615)

The number of requests received by this crypto accelerator to generate random numbers since the last reboot of the device.

ccaAcclRandReqFails

1.3.6.1.4.1.9.9.467.1.2.2.1.24

Counter64 (0..18446744073709551615)

The number of random number requests received by this module which were not fulfilled, counted since the last reboot of the device.

ccaAcclDHKeysGenerated

1.3.6.1.4.1.9.9.467.1.2.2.1.25

Counter64 (0..18446744073709551615)

The number of Diffie Hellman key pairs generated by this module since the last reboot.

ccaAcclDHDerivedSecretKeys

1.3.6.1.4.1.9.9.467.1.2.2.1.26

Counter64 (0..18446744073709551615)

The number of times this module has derived Diffie Hellman secret keys since the last reboot of the device.

ccaAcclRSAKeysGenerated

1.3.6.1.4.1.9.9.467.1.2.2.1.27

Counter64 (0..18446744073709551615)

The number of times a new RSA key pair was generated by this module, counted since the last time this module assumed 'active' status.

ccaAcclRSASignings

1.3.6.1.4.1.9.9.467.1.2.2.1.28

Counter64 (0..18446744073709551615)

The number of times an RSA Digital Signature has been generated by this module, counted since the last time this module assumed 'active' status.

ccaAcclRSAVerifications

1.3.6.1.4.1.9.9.467.1.2.2.1.29

Counter64 (0..18446744073709551615)

The number of times an RSA Digital Signature has been verified by this module, counted since the last time this module assumed 'active' status.

ccaAcclRSAEncryptPkts

1.3.6.1.4.1.9.9.467.1.2.2.1.30

Counter64 (0..18446744073709551615)

The number of packets input to this module which required RSA encryption, counted since the last time this module assumed 'active' status.

ccaAcclRSAEncryptOctets

1.3.6.1.4.1.9.9.467.1.2.2.1.31

Counter64 (0..18446744073709551615)

The number of octets input to this module which required RSA encryption, counted since the last time this module assumed 'active' status.

ccaAcclRSADecryptPkts

1.3.6.1.4.1.9.9.467.1.2.2.1.32

Counter64 (0..18446744073709551615)

The number of packets input to this module which required RSA decryption, counted since the last time this module assumed 'active' status.

ccaAcclRSADecryptOctets

1.3.6.1.4.1.9.9.467.1.2.2.1.33

Counter64 (0..18446744073709551615)

The number of octets input to this module which required RSA decryption, counted since the last time this module assumed 'active' status.

ccaAcclDSAKeysGenerated

1.3.6.1.4.1.9.9.467.1.2.2.1.34

Counter64 (0..18446744073709551615)

The number of times DSA key pair has been generated by this module, counted since the last time this module assumed 'active' status.

ccaAcclDSASignings

1.3.6.1.4.1.9.9.467.1.2.2.1.35

Counter64 (0..18446744073709551615)

The number of times DSA signature has been generated by this module, counted since the last time this module assumed 'active' status.

ccaAcclDSAVerifications

1.3.6.1.4.1.9.9.467.1.2.2.1.36

Counter64 (0..18446744073709551615)

The number of times DSA signature has been verified by this module, counted since the last time this module assumed 'active' status.

ccaAcclOutboundSSLRecords

1.3.6.1.4.1.9.9.467.1.2.2.1.37

Counter64 (0..18446744073709551615)

The number of combined outbound hash/encrypt SSL records processed by this module, counted since the last time this module assumed 'active' status.

ccaAcclInboundSSLRecords

1.3.6.1.4.1.9.9.467.1.2.2.1.38

Counter64 (0..18446744073709551615)

The number of combined inbound hash/encrypt SSL records processed by this module, counted since the last time this module assumed 'active' status.

ccaProtocolStatsTable

1.3.6.1.4.1.9.9.467.1.2.3.1

Index: ccaProtId

The crypto accelerator statistics catalogued by security protocol causing the activity. There is only entry in this table for each security protocol listed in the textual convention 'CAProtocolType'.

ccaProtId

1.3.6.1.4.1.9.9.467.1.2.3.1.1.1

CAProtocolType1 = other2 = ikev13 = ikev24 = ipsec5 = ssl6 = ssh7 = srtpThe security protocol using the services of the crypto accelerator module. The list of protocols supported commonly by crypto accelerators include Internet Key Exchange (ike), IP Security Phase-2 protocols (ipsec), Secure Shell (ssh), Secure Socket Layer (ssl) and Secure Real-time Transport Protocol (srtp). The value 'other' has been provided so that the MIB may still be valid while new protocols emerge and the MIB has not been updated to enumerate them. · Integer32

The index uniquely identifies the security protocol for which this row summarizes the statistics.

ccaProtPktEncryptsReqs

1.3.6.1.4.1.9.9.467.1.2.3.1.1.2

Counter64 (0..18446744073709551615)

The number of payload encrypt requests received by the crypto accelerators from this security protocol, counted since the last reboot of the device.

ccaProtPktDecryptsReqs

1.3.6.1.4.1.9.9.467.1.2.3.1.1.3

Counter64 (0..18446744073709551615)

The number of payload decrypt requests received by the crypto accelerators from this security protocol, counted since the last reboot of the device.

ccaProtHmacCalcReqs

1.3.6.1.4.1.9.9.467.1.2.3.1.1.4

Counter64 (0..18446744073709551615)

The number of times keyed HMAC calculation requests were received by the crypto accelerators due to the operation of this security protocol, counted since the last reboot of the device.

ccaProtSaCreateReqs

1.3.6.1.4.1.9.9.467.1.2.3.1.1.5

Counter64 (0..18446744073709551615)

The number of times requests for creation of security associations were received by the crypto accelerators from this security protocol, counted since the last reboot of the device.

ccaProtSaRekeyReqs

1.3.6.1.4.1.9.9.467.1.2.3.1.1.6

Counter64 (0..18446744073709551615)

The number of times requests for rekeying of existing security associations were received by the crypto accelerators from this security protocol, counted since the last reboot of the device.

ccaProtSaDeleteReqs

1.3.6.1.4.1.9.9.467.1.2.3.1.1.7

Counter64 (0..18446744073709551615)

The number of times requests for deletion of security associations were received by the crypto accelerators from this security protocol, counted since the last reboot of the device.

ccaProtPktEncapReqs

1.3.6.1.4.1.9.9.467.1.2.3.1.1.8

Counter64 (0..18446744073709551615)

The number of times requests for payload encapsulation were received by the crypto accelerators from this security protocol, counted since the last reboot of the device.

ccaProtPktDecapReqs

1.3.6.1.4.1.9.9.467.1.2.3.1.1.9

Counter64 (0..18446744073709551615)

The number of times requests for payload decapsulation were received by the crypto accelerators from this security protocol, counted since the last reboot of the device.

ccaProtNextPhaseKeyAllocReqs

1.3.6.1.4.1.9.9.467.1.2.3.1.1.10

Counter64 (0..18446744073709551615)

The number of times requests for allocation of keys for the next phase of the protocol operation which were received by the crypto accelerators from this security protocol, counted since the last reboot of the device. As an example, for IKE, this would identify the number of times key allocation requests for Quick Mode were received by the crypto accelerator from the IKE protocol engine.

ccaProtRndGenReqs

1.3.6.1.4.1.9.9.467.1.2.3.1.1.11

Counter64 (0..18446744073709551615)

The number of times requests for generation of random number(s) were received by the crypto accelerators from this security protocol, counted since the last reboot of the device.

ccaProtFailedReqs

1.3.6.1.4.1.9.9.467.1.2.3.1.1.12

Counter64 (0..18446744073709551615)

The number of times requests received from this security protocol could not be fulfilled, counted since the last reboot of the device.

Trap details

ciscoCryAccelInserted

1.3.6.1.4.1.9.9.467.0.1

A crypto accelerator module has been inserted into the managed device.

ccaAcclSlot

1.3.6.1.4.1.9.9.467.1.2.2.1.6

Unsigned32

The slot number of the crypto accelerator corresponding to this row.

ciscoCryAccelRemoved

1.3.6.1.4.1.9.9.467.0.2

A crypto accelerator module has been removed from the managed device.

ccaAcclSlot

1.3.6.1.4.1.9.9.467.1.2.2.1.6

Unsigned32

The slot number of the crypto accelerator corresponding to this row.

ciscoCryAccelOperational

1.3.6.1.4.1.9.9.467.0.3

A crypto accelerator module has become operational.

ccaAcclSlot

1.3.6.1.4.1.9.9.467.1.2.2.1.6

Unsigned32

The slot number of the crypto accelerator corresponding to this row.

ciscoCryAccelDisabled

1.3.6.1.4.1.9.9.467.0.4

A crypto accelerator module has become non-operational.

ccaAcclSlot

1.3.6.1.4.1.9.9.467.1.2.2.1.6

Unsigned32

The slot number of the crypto accelerator corresponding to this row.

ccaAcclStatus

1.3.6.1.4.1.9.9.467.1.2.2.1.3

ModuleOperType1 = unknown2 = ok3 = disabled4 = okButDiagFailed5 = boot6 = selfTest7 = failed8 = missing9 = mismatchWithParent10 = mismatchConfig11 = diagFailed12 = dormant13 = outOfServiceAdmin14 = outOfServiceEnvTemp15 = poweredDown16 = poweredUp17 = powerDenied18 = powerCycled19 = okButPowerOverWarning20 = okButPowerOverCritical21 = syncInProgress22 = upgrading23 = okButAuthFailed24 = mdr25 = fwMismatchFound26 = fwDownloadSuccess27 = fwDownloadFailureOperational module states. Valid values are : unknown(1) Module is not in one of other states normal operational states: ok(2) Module is operational. disabled(3) Module is administratively disabled. okButDiagFailed(4) Module is operational but there is some diagnostic information available. transitional states: boot(5) Module is currently in the process of bringing up image. After boot, it starts its operational software and transitions to the appropriate state. selfTest(6) Module is performing selfTest. failure states: failed(7) Module has failed due to some condition not stated above. missing(8) Module has been provisioned, but it is missing mismatchWithParent(9) Module is not compatible with parent entity. Module has not been provisioned and wrong type of module is plugged in. This state can be cleared by plugging in the appropriate module. mismatchConfig(10) Module is not compatible with the current configuration. Module was correctly provisioned earlier, however the module was replaced by an incompatible module. This state can be resolved by clearing the configuration, or replacing with the appropriate module. diagFailed(11) Module diagnostic test failed due to some hardware failure. dormant(12) Module is waiting for an external or internal event to become operational. outOfServiceAdmin(13) module is administratively set to be powered on but out of service. outOfServiceEnvTemp(14)Module is powered on but out of service, due to environmental temperature problem. An out-o-service module consumes less power thus will cool down the board. poweredDown(15) Module is in powered down state. poweredUp(16) Module is in powered up state. powerDenied(17) System does not have enough power in power budget to power on this module. powerCycled(18) Module is being power cycled. okButPowerOverWarning(19) Module is drawing more power than allocated to this module. The module is still operational but may go into a failure state. This state may be caused by misconfiguration of power requirements (especially for inline power). okButPowerOverCritical(20) Module is drawing more power than this module is designed to handle. The module is still operational but may go into a failure state and could potentially take the system down. This state may be caused by gross misconfi- guration of power requirements (especially for inline power). syncInProgress(21) Synchronization in progress. In a high availability system there will be 2 control modules, active and standby. This transitional state specifies the synchronization of data between the active and standby modules. upgrading(22) Module is upgrading. okButAuthFailed(23) Module is operational but did not pass hardware integrity verification. mdr(24) Module is undergoing a Minimum Disruptive Restart (MDR) upgrade. firmware download states: fwMismatchFound(25) Mistmatch found between current firmware version and the firmware version in the system image. fwDownloadSuccess(26) Module firmware download succeeded. fwDownloadFailure(27) Module firmware download failed. · Integer32

The state of the crypto accelerator corresponding to this row.

ccaAcclActiveTime

1.3.6.1.4.1.9.9.467.1.2.2.1.7

TimeTicks · seconds

The number of seconds elapsed since the crypto accelerator corresponding to this row transitioned into the 'active' state.

↑ To TOC