This is the MIB Module for the Baseline Privacy Interface (BPI) at Point to Point Wireless Radio Card.
This is a specialization on the MCNS docsBpiMib for Cisco Wireless point to point communication links.
InterfaceIndexA unique value, greater than zero, for each interface or interface sub-layer in the managed system. It is recommended that values are assigned contiguously starting from 1. The value for each interface sub-layer must remain constant at least from one re-initialization of the entity's network management system to the next re-initialization. (1..2147483647) · Integer32 · hint d
A unique value, greater than zero, for each interface. It is recommended that values are assigned contiguously starting from 1. The value for each interface sub-layer must remain constant at least from one re-initialization of the entity's network management system to the next re- initialization.
cwrBpiRsPrivacyEnable
1.3.6.1.4.1.9.9.135.1.1.1.1.1
TruthValue1 = true2 = falseRepresents a boolean value. · Integer32
This object identifies whether the Slave Radio is provisioned to use Encryption or not.
cwrBpiRsPublicKey
1.3.6.1.4.1.9.9.135.1.1.1.1.2
OCTET STRING SIZE (0..126)
Public key of the Radio Slave encoded as an ASN.1 SubjectPublicKeyInfo object as defined in the RSA Encryption Standard (PKCS #1) [RSA1].
The state of the Radio Slave authorization FSM. The start state indicates that FSM is in its initial state.
cwrBpiRsAuthKeySequenceNumber
1.3.6.1.4.1.9.9.135.1.1.1.1.4
INTEGER (0..15) · Integer32
The authorization key sequence number for this FSM.
cwrBpiRsAuthExpires
1.3.6.1.4.1.9.9.135.1.1.1.1.5
TimeIntervalA period of time, measured in units of 0.01 seconds. (0..2147483647) · Integer32
The number of seconds left before the current authorization for this FSM expires. If the Radio Slave does not have an active authorization, then this value is 0.
cwrBpiRsAuthReset
1.3.6.1.4.1.9.9.135.1.1.1.1.6
TruthValue1 = true2 = falseRepresents a boolean value. · Integer32
Setting this object to TRUE generates a Reauthorize event in the authorization FSM, as described in section 4.1.2.3.4 of the Baseline Privacy Interface Specification. Reading this object always returns FALSE.
cwrBpiRsAuthGraceTime
1.3.6.1.4.1.9.9.135.1.1.1.1.7
INTEGER (1..1800) · Integer32 · seconds
Grace time for an authorization key. A Radio Slave is expected to start trying to get a new authorization key beginning AuthGraceTime seconds before the authorization key actually expires. The value of this object cannot be changed while the authorization state machine is running.
NOTE: When installed in the field, this variable should NEVER be set
below 300 which is the lower limit by standard. This variable accepts a wider range to facilitate testing.
cwrBpiRsTEKGraceTime
1.3.6.1.4.1.9.9.135.1.1.1.1.8
INTEGER (1..1800) · Integer32 · seconds
Grace time for a TEK. A Radio Slave is expected to start trying to get a new TEK beginning TEKGraceTime seconds before the TEK actually expires. The value of this object cannot be changed while the authorization state machine is running.
NOTE: When installed in the field, this variable should NEVER be set
below 300 which is the lower limit by standard. This variable accepts a wider range to facilitate testing.
cwrBpiRsAuthWaitTimeout
1.3.6.1.4.1.9.9.135.1.1.1.1.9
INTEGER (2..30) · Integer32 · seconds
Authorize Wait Timeout. The value of this object cannot be changed while the authorization state machine is running.
cwrBpiRsReauthWaitTimeout
1.3.6.1.4.1.9.9.135.1.1.1.1.10
INTEGER (2..30) · Integer32 · seconds
Reauthorize Wait Timeout in seconds. The value of this object cannot be changed while the authorization state machine is running.
cwrBpiRsOpWaitTimeout
1.3.6.1.4.1.9.9.135.1.1.1.1.11
INTEGER (1..10) · Integer32 · seconds
Operational Wait Timeout in seconds. The value of this object cannot be changed while the authorization state machine is running.
cwrBpiRsRekeyWaitTimeout
1.3.6.1.4.1.9.9.135.1.1.1.1.12
INTEGER (1..10) · Integer32 · seconds
Rekey Wait Timeout in seconds. The value of this object cannot be changed while the authorization state machine is running.
cwrBpiRsAuthRequests
1.3.6.1.4.1.9.9.135.1.1.1.1.13
Counter32
Count of times the Radio Slave has transmitted an Authorization Request message.
cwrBpiRsAuthReplies
1.3.6.1.4.1.9.9.135.1.1.1.1.14
Counter32
Count of times the Radio Slave has received an Authorization Reply message.
cwrBpiRsAuthInvalids
1.3.6.1.4.1.9.9.135.1.1.1.1.15
Counter32
Count of times the Radio Slave has received an Authorization Invalid message.
Error-Code in most recent Authorization Invalid message received by the Radio Slave. On bootup, this has value no-information(0). At all other times, this object reflects the error code received
cwrBpiRsAuthInvalidErrorString
1.3.6.1.4.1.9.9.135.1.1.1.1.17
DisplayStringRepresents textual information taken from the NVT ASCII
character set, as defined in pages 4, 10-11 of RFC 854.
To summarize RFC 854, the NVT ASCII repertoire specifies:
- the use of character codes 0-127 (decimal)
- the graphics characters (32-126) are interpreted as US ASCII
- NUL, LF, CR, BEL, BS, HT, VT and FF have the special meanings specified in RFC 854
- the other 25 codes have no standard interpretation
- the sequence 'CR LF' means newline
- the sequence 'CR NUL' means carriage-return
- an 'LF' not preceded by a 'CR' means moving to the same column on the next line.
- the sequence 'CR x' for any x other than LF or NUL is illegal. (Note that this also means that a string may end with either 'CR LF' or 'CR NUL', but not with CR.)
Any object defined using this syntax may not exceed 255 characters in length. SIZE (0..255) · OCTET STRING · hint 255a
Display-String in most recent Authorization Invalid message received by the Radio Slave. This is a zero length string if no Authorization Invalid message has been received since reboot.
cwrBpiRsTEKTable
1.3.6.1.4.1.9.9.135.1.1.2
Index: ifIndex
Describes the attributes of each Radio Slave Traffic Encryption Key (TEK) Service.
InterfaceIndexA unique value, greater than zero, for each interface or interface sub-layer in the managed system. It is recommended that values are assigned contiguously starting from 1. The value for each interface sub-layer must remain constant at least from one re-initialization of the entity's network management system to the next re-initialization. (1..2147483647) · Integer32 · hint d
A unique value, greater than zero, for each interface. It is recommended that values are assigned contiguously starting from 1. The value for each interface sub-layer must remain constant at least from one re-initialization of the entity's network management system to the next re- initialization.
cwrBpiRsTEKEncryptionNegotiated
1.3.6.1.4.1.9.9.135.1.1.2.1.1
TruthValue1 = true2 = falseRepresents a boolean value. · Integer32
This identifies whether this TEK service is using encryption or not. Encryption may not be in use even though cwrBpiRsPrivacyEnable is provisioned. This is possible if the remote is not configured for privacy or it's not running an encryption capable image.
Error-Code in most recent TEK Invalid message received by this TEK service. On bootup, this has value no-information(0). At all other times, this object reflects the error code received
cwrBpiRsTEKInvalidErrorString
1.3.6.1.4.1.9.9.135.1.1.2.1.10
DisplayStringRepresents textual information taken from the NVT ASCII
character set, as defined in pages 4, 10-11 of RFC 854.
To summarize RFC 854, the NVT ASCII repertoire specifies:
- the use of character codes 0-127 (decimal)
- the graphics characters (32-126) are interpreted as US ASCII
- NUL, LF, CR, BEL, BS, HT, VT and FF have the special meanings specified in RFC 854
- the other 25 codes have no standard interpretation
- the sequence 'CR LF' means newline
- the sequence 'CR NUL' means carriage-return
- an 'LF' not preceded by a 'CR' means moving to the same column on the next line.
- the sequence 'CR x' for any x other than LF or NUL is illegal. (Note that this also means that a string may end with either 'CR LF' or 'CR NUL', but not with CR.)
Any object defined using this syntax may not exceed 255 characters in length. SIZE (0..255) · OCTET STRING · hint 255a
Display-String in most recent TEK Invalid message received by this TEK Service. This is a zero length string if no TEK Invalid message has been received since this TEK Service was started.
cwrBpiRmAuthTable
1.3.6.1.4.1.9.9.135.1.2.1
Index: ifIndex
Describes the attributes of each Radio Master authorization association. The Radio master maintains one authorization association with each Baseline Privacy-enabled Radio Slave on each Radio Master MAC interface.
InterfaceIndexA unique value, greater than zero, for each interface or interface sub-layer in the managed system. It is recommended that values are assigned contiguously starting from 1. The value for each interface sub-layer must remain constant at least from one re-initialization of the entity's network management system to the next re-initialization. (1..2147483647) · Integer32 · hint d
A unique value, greater than zero, for each interface. It is recommended that values are assigned contiguously starting from 1. The value for each interface sub-layer must remain constant at least from one re-initialization of the entity's network management system to the next re- initialization.
cwrBpiRmAuthPrivacyEnable
1.3.6.1.4.1.9.9.135.1.2.1.1.1
TruthValue1 = true2 = falseRepresents a boolean value. · Integer32
This object identifies whether the Master Radio is provisioned to use Encryption or not.
cwrBpiRmAuthRsPublicKey
1.3.6.1.4.1.9.9.135.1.2.1.1.2
OCTET STRING SIZE (0..126)
Public key of the Radio Slave encoded as an ASN.1 SubjectPublicKeyInfo object as defined in the RSA Encryption Standard (PKCS #1) [RSA1]. This is a zero-length string if the Radio Master does not retain the public key.
cwrBpiRmAuthRsKeySequenceNumber
1.3.6.1.4.1.9.9.135.1.2.1.1.3
INTEGER (0..15) · Integer32
The authorization key sequence number for this Radio Slave.
cwrBpiRmAuthRsExpires
1.3.6.1.4.1.9.9.135.1.2.1.1.4
TimeIntervalA period of time, measured in units of 0.01 seconds. (0..2147483647) · Integer32
The number of seconds left before the current authorization for this Radio Slave expires. If this Radio Slave does not have an active authorization, then the value is zero.
cwrBpiRmAuthRsLifetime
1.3.6.1.4.1.9.9.135.1.2.1.1.5
INTEGER (1..6048000) · Integer32 · seconds
Lifetime, in seconds, the Radio Master assigns to an authorization key for this Radio Slave.
NOTE: When installed in the field, this variable should NEVER be set
below 86400 which is the lower limit by standard. This variable accepts a wider range to facilitate testing.
cwrBpiRmAuthRsReset
1.3.6.1.4.1.9.9.135.1.2.1.1.6
TruthValue1 = true2 = falseRepresents a boolean value. · Integer32
Setting this object to True(1) causes the Radio Master to invalidate the current Radio Slave authorization key, to transmit an Authorization Invalid message to the Radio Slave, and to invalidate the unicast TEK associated with this Radio Slave authorization. Reading this object always returns False
cwrBpiRmAuthRsRequests
1.3.6.1.4.1.9.9.135.1.2.1.1.7
Counter32
Count of times the Radio Master has received an Authorization Request message from this Radio Slave.
cwrBpiRmAuthRsReplies
1.3.6.1.4.1.9.9.135.1.2.1.1.8
Counter32
Count of times the Radio master has transmitted an Authorization Reply message to this Radio Slave.
cwrBpiRmAuthRsInvalids
1.3.6.1.4.1.9.9.135.1.2.1.1.9
Counter32
Count of times the Radio Master has transmitted an Authorization Invalid message to this Radio Slave.
Error-Code in most recent Authorization Invalid message transmitted to the Radio Slave. On bootup, this has value no-information(0). At all other times, this object reflects the error code transmitted
cwrBpiRmAuthInvalidErrorString
1.3.6.1.4.1.9.9.135.1.2.1.1.11
DisplayStringRepresents textual information taken from the NVT ASCII
character set, as defined in pages 4, 10-11 of RFC 854.
To summarize RFC 854, the NVT ASCII repertoire specifies:
- the use of character codes 0-127 (decimal)
- the graphics characters (32-126) are interpreted as US ASCII
- NUL, LF, CR, BEL, BS, HT, VT and FF have the special meanings specified in RFC 854
- the other 25 codes have no standard interpretation
- the sequence 'CR LF' means newline
- the sequence 'CR NUL' means carriage-return
- an 'LF' not preceded by a 'CR' means moving to the same column on the next line.
- the sequence 'CR x' for any x other than LF or NUL is illegal. (Note that this also means that a string may end with either 'CR LF' or 'CR NUL', but not with CR.)
Any object defined using this syntax may not exceed 255 characters in length. SIZE (0..255) · OCTET STRING · hint 255a
Display-String in most recent Authorization Invalid message transmitted to the Radio Slave. This is a zero length string if no Authorization Invalid message has been transmitted to the Radio Slave.
cwrBpiRmTEKTable
1.3.6.1.4.1.9.9.135.1.2.2
Index: ifIndex
Describes the attributes of each Radio Slave Traffic Encryption Key (TEK) association. The Radio master maintains one TEK association for the Radio Slave.
InterfaceIndexA unique value, greater than zero, for each interface or interface sub-layer in the managed system. It is recommended that values are assigned contiguously starting from 1. The value for each interface sub-layer must remain constant at least from one re-initialization of the entity's network management system to the next re-initialization. (1..2147483647) · Integer32 · hint d
A unique value, greater than zero, for each interface. It is recommended that values are assigned contiguously starting from 1. The value for each interface sub-layer must remain constant at least from one re-initialization of the entity's network management system to the next re- initialization.
cwrBpiRmTEKEncryptionNegotiated
1.3.6.1.4.1.9.9.135.1.2.2.1.1
TruthValue1 = true2 = falseRepresents a boolean value. · Integer32
This identifies whether this TEK service is using encryption or not. Encryption may not be in use even though cwrBpiRmAuthPrivacyEnable is provisioned. This is possible if the master is not configured for privacy or it's not running an encryption capable image.
cwrBpiRmTEKLifetime
1.3.6.1.4.1.9.9.135.1.2.2.1.2
INTEGER (1..604800) · Integer32 · seconds
Lifetime, in seconds, the Radio Master assigns to keys for this TEK association.
NOTE: When installed in the field, this variable should NEVER be set
below 1800 which is the lower limit by standard. This variable accepts a wider range to facilitate testing.
cwrBpiRmTEKExpiresOld
1.3.6.1.4.1.9.9.135.1.2.2.1.3
TimeIntervalA period of time, measured in units of 0.01 seconds. (0..2147483647) · Integer32
The number of seconds left to expire for the oldest active key for this TEK association. If this TEK associateion has no active key then the value will be zero.
cwrBpiRmTEKExpiresNew
1.3.6.1.4.1.9.9.135.1.2.2.1.4
TimeIntervalA period of time, measured in units of 0.01 seconds. (0..2147483647) · Integer32
The number of seconds left to expire for the newest active key for this TEK association. If this TEK association has no active keys then this value will be zero.
cwrBpiRmTEKReset
1.3.6.1.4.1.9.9.135.1.2.2.1.5
TruthValue1 = true2 = falseRepresents a boolean value. · Integer32
Setting this object to TRUE causes the Radio Master to invalidate the current active TEK(s) (plural due to key transition periods), and to generate a new TEK. Reading this object always returns FALSE.
cwrBpiRmKeyRequests
1.3.6.1.4.1.9.9.135.1.2.2.1.6
Counter32
Count of times the Radio Master has received a Key Request message.
cwrBpiRmKeyReplies
1.3.6.1.4.1.9.9.135.1.2.2.1.7
Counter32
Count of times the Radio master has transmitted a Key Reply message.
cwrBpiRmTEKInvalids
1.3.6.1.4.1.9.9.135.1.2.2.1.8
Counter32
Count of times the Radio Master has transmitted a TEK Invalid message.
Error-Code in most recent TEK Invalid message sent in association with this TEK service. On bootup, this has value no-information(0). At all other times, this object reflects the error code received
cwrBpiRmTEKInvalidErrorString
1.3.6.1.4.1.9.9.135.1.2.2.1.10
DisplayStringRepresents textual information taken from the NVT ASCII
character set, as defined in pages 4, 10-11 of RFC 854.
To summarize RFC 854, the NVT ASCII repertoire specifies:
- the use of character codes 0-127 (decimal)
- the graphics characters (32-126) are interpreted as US ASCII
- NUL, LF, CR, BEL, BS, HT, VT and FF have the special meanings specified in RFC 854
- the other 25 codes have no standard interpretation
- the sequence 'CR LF' means newline
- the sequence 'CR NUL' means carriage-return
- an 'LF' not preceded by a 'CR' means moving to the same column on the next line.
- the sequence 'CR x' for any x other than LF or NUL is illegal. (Note that this also means that a string may end with either 'CR LF' or 'CR NUL', but not with CR.)
Any object defined using this syntax may not exceed 255 characters in length. SIZE (0..255) · OCTET STRING · hint 255a
Display-String in the most recent TEK Invalid message sent in ssociation with this BPI TEK service. This is a zero length string if no TEK Invalid message has been received since reboot.