This MIB module specifies the management information required to manage the Authentication Protocols defined by Fibre Channel's FC-SP specification.
This MIB module defines three tables:
- t11FcSpAuEntityTable is a table of Fibre Channel entities that can be authenticated using FC-SP's Authentication Protocols.
- t11FcSpAuIfStatTable is a table with one row for each mapping of an Authentication entity onto an interface, containing statistics information.
- t11FcSpAuRejectTable is a table of volatile information about FC-SP Authentication Protocol transactions that were most recently rejected.
Copyright (C) The IETF Trust (2008). This version
of this MIB module is part of RFC 5324; see the RFC
itself for full legal notices.
A table of Fibre Channel entities that can be authenticated using FC-SP's Authentication Protocols.
The purpose of an FC-SP Authentication Protocol is to verify that a claimed name is associated with the claiming entity. The Authentication Protocols can be used to authenticate Nx_Ports, B_Ports, or Switches. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, section 3.2.25.
An arbitrary integer value that uniquely identifies this instance amongst all local Fibre Channel management instances.
It is mandatory to keep this value constant between restarts of the agent, and to make every possible effort to keep it constant across restarts (but note, it is unrealistic to expect it to remain constant across all re-configurations of the local system, e.g., across the replacement of all non- volatile storage).
t11FcSpAuEntityName
1.3.6.1.2.1.176.1.1.1.1
FcNameIdOrZeroThe World Wide Name (WWN) associated with a Fibre Channel (FC) entity. WWNs were initially defined as 64-bits in length. The latest definition (for future use) is 128-bits long. The zero-length string value is used in circumstances in which the WWN is unassigned/unknown. SIZE (8) · OCTET STRING
The name used to identify the FC-SP entity.
For entities that are Fibre Channel Switches, this value corresponds to the Switch's value of fcmSwitchWWN. For entities other than Fibre Channel Switches, this value corresponds to the value of fcmInstanceWwn for the corresponding Fibre Channel management instance. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, section 5.3.3. - fcmInstanceWwn & fcmSwitchWWN, 'Fibre Channel Management MIB', RFC 4044, May 2005.
t11FcSpAuFabricIndex
1.3.6.1.2.1.176.1.1.1.2
T11FabricIndexA Fabric Index that is used as a unique index value to identify a particular Fabric within one (or more) physical infrastructures.
In an environment that is conformant to FC-SW-3, where there is always exactly one Fabric in a single physical infrastructure, the value of this Fabric Index will always be 1.
However, the current standard, FC-SW-4, defines how multiple Fabrics, each with its own management instrumentation, could operate within one (or more) physical infrastructures. When such multiple Fabrics are in use, this index value is used to uniquely identify a particular Fabric within a physical infrastructure.
Note that the value of this textual convention has a range of (0..4095) so as to be consistent with FC-SW-4, which says that a 'VF_ID Bitmap' is 512 bytes long, with the high-order bit representing VF_ID zero, and the low-order bit representing 4095.Reference: Fibre Channel - Switch Fabric - 4 (FC-SW-4), ANSI INCITS 418-2006, section 6.1.27.2.4. (0..4095) · Unsigned32 · hint d
An index value that uniquely identifies a particular Fabric to which the entity is attached.
t11FcSpAuServerProtocol
1.3.6.1.2.1.176.1.1.1.3
AutonomousTypeRepresents an independently extensible type identification value. It may, for example, indicate a particular sub-tree with further MIB definitions, or define a particular type of protocol or hardware. · OBJECT IDENTIFIER
The protocol, if any, used by the entity to communicate with a third party (i.e., an External Server) as part of the process by which it verifies DH-CHAP responses. For example, if the entity is using an external RADIUS server to verify DH-CHAP responses, then this object will have the value t11FcSpAuServerProtocolRadius.
The value, zeroDotZero, is used to indicate that no protocol is being used to communicate with a third party to verify DH-CHAP responses.
When no protocol is being used, or if the third party is unreachable via the specified protocol, then locally configured information (if any) may be used instead.
t11FcSpAuStorageType
1.3.6.1.2.1.176.1.1.1.4
StorageType1 = other2 = volatile3 = nonVolatile4 = permanent5 = readOnlyDescribes the memory realization of a conceptual row. A row which is volatile(2) is lost upon reboot. A row which is either nonVolatile(3), permanent(4) or readOnly(5), is backed up by stable storage. A row which is permanent(4) can be changed but not deleted. A row which is readOnly(5) cannot be changed nor deleted.
If the value of an object with this syntax is either permanent(4) or readOnly(5), it cannot be written. Conversely, if the value is either other(1), volatile(2) or nonVolatile(3), it cannot be modified to be permanent(4) or readOnly(5). (All illegal modifications result in a 'wrongValue' error.)
Every usage of this textual convention is required to specify the columnar objects which a permanent(4) row must at a minimum allow to be writable. · Integer32
This object specifies the memory realization of configuration information related to an FC-SP Entity on a particular Fabric: specifically, for MIB objects in the row containing this object.
Even if an instance of this object has the value 'permanent(4)', none of the information in the corresponding row of this table needs to be writable.
t11FcSpAuSendRejNotifyEnable
1.3.6.1.2.1.176.1.1.1.5
TruthValue1 = true2 = falseRepresents a boolean value. · Integer32
An indication of whether or not the entity should issue t11FcSpAuRejectSentNotify notifications when sending AUTH_Reject/SW_RJT/LS_RJT to reject an AUTH message.
If the value of the object is 'true', then this type of notification is generated. If the value is 'false', this type of notification is not generated.
t11FcSpAuRcvRejNotifyEnable
1.3.6.1.2.1.176.1.1.1.6
TruthValue1 = true2 = falseRepresents a boolean value. · Integer32
An indication of whether or not the entity should issue t11FcSpAuRejectReceivedNotify notifications on the receipt of AUTH_Reject/SW_RJT/LS_RJT messages.
If the value of the object is 'true', then this type of notification is generated. If the value is 'false', this type of notification is not generated.
t11FcSpAuDefaultLifetime
1.3.6.1.2.1.176.1.1.1.7
T11FcSpLifetimeLeftThis TC is used for one object of an associated pair of objects. The object with this syntax specifies a remaining lifetime of something, e.g., of an SA, where the lifetime is given in the units specified by the other object of the pair which has T11FcSpLifetimeLeftUnits as its syntax. · Unsigned32
When the value of this object is non-zero, it specifies the default value of a lifetime, specified in units given by the corresponding instance of t11FcSpAuDefaultLifetimeUnits. This default lifetime is to be used for any Security Association that has no explicitly specified value for its lifetime.
An SA's lifetime is either the time interval or the number of passed bytes, after which the SA has to be terminated and (if necessary) replaced with a new SA.
If this object is zero, then there is no default value for lifetime.
t11FcSpAuDefaultLifetimeUnits
1.3.6.1.2.1.176.1.1.1.8
T11FcSpLifetimeLeftUnits1 = seconds2 = kiloBytes3 = megaBytes4 = gigaBytes5 = teraBytes6 = petaBytes7 = exaBytes8 = zettaBytes9 = yottaBytesAn object, defined using T11FcSpLifetimeLeft TC as its syntax, is required to be one of an associated pair of objects such that the other object of the pair is defined with this T11FcSpLifetimeLeftUnits TC as its syntax and with its value specifying the units of the remaining lifetime given by the value of the T11FcSpLifetimeLeft object. · Integer32
The units in which the value of the corresponding instance of t11FcSpAuDefaultLifetime specifies a default lifetime for a Security Association that has no explicitly-specified value for its lifetime.
t11FcSpAuRejectMaxRows
1.3.6.1.2.1.176.1.1.1.9
Unsigned32 (0..1000)
The maximum number of rows in the t11FcSpAuRejectTable for this entity on this Fabric. If and when an AUTH message is rejected, and the t11FcSpAuRejectTable already contains this maximum number of rows for the specific entity and Fabric, the row containing the oldest information is discarded and replaced by a row containing information about the new rejection.
There will be less than this maximum number of rows in the t11FcSpAuRejectTable in exceptional circumstances, e.g., after an agent restart.
In an implementation that does not support the t11FcSpAuRejectTable, this object will always be zero.
t11FcSpAuDhChapHashFunctions
1.3.6.1.2.1.176.1.1.1.10
T11FcSpHashFunctionsA set of zero, one, or more hash functions defined for use in FC-SP.Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Table 14. · BITS
The hash functions that the entity supports when using the DH-CHAP algorithm.
t11FcSpAuDhChapDhGroups
1.3.6.1.2.1.176.1.1.1.11
T11FcSpDhGroupsA set of zero, one, or more DH Groups defined for use in FC-SP.Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Table 15. · BITS
The DH Groups that the entity supports when using the DH-CHAP algorithm in FC-SP.
t11FcSpAuFcapHashFunctions
1.3.6.1.2.1.176.1.1.1.12
T11FcSpHashFunctionsA set of zero, one, or more hash functions defined for use in FC-SP.Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Table 14. · BITS
The hash functions that the entity supports when specified as Protocol Parameters in the AUTH_Negotiate message for FCAP in FC-SP. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, section 5.5.2.1 and table 28.
t11FcSpAuFcapCertsSignFunctions
1.3.6.1.2.1.176.1.1.1.13
T11FcSpSignFunctionsA set of zero, one, or more signature functions defined for signing certificates for use with FCAP in FC-SP.Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, tables 38 & 39. · BITS
The signature functions used within certificates that the entity supports when using FCAP in FC-SP. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, section 5.5.4.2 and tables 38 & 39.
t11FcSpAuFcapDhGroups
1.3.6.1.2.1.176.1.1.1.14
T11FcSpDhGroupsA set of zero, one, or more DH Groups defined for use in FC-SP.Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Table 15. · BITS
The DH Groups that the entity supports when using the FCAP algorithm in FC-SP.
t11FcSpAuFcpapHashFunctions
1.3.6.1.2.1.176.1.1.1.15
T11FcSpHashFunctionsA set of zero, one, or more hash functions defined for use in FC-SP.Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Table 14. · BITS
The hash functions that the entity supports when using the FCPAP algorithm in FC-SP.
t11FcSpAuFcpapDhGroups
1.3.6.1.2.1.176.1.1.1.16
T11FcSpDhGroupsA set of zero, one, or more DH Groups defined for use in FC-SP.Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Table 15. · BITS
The DH Groups that the entity supports when using the FCPAP algorithm in FC-SP.
Each FC-SP Authentication entity can operate on one or more interfaces, but at most one of them can operate on each interface. A row in this table exists for each interface to each Fabric on which each Authentication entity operates.
The objects within this table contain statistics information related to FC-SP's Authentication Protocols.
An arbitrary integer value that uniquely identifies this instance amongst all local Fibre Channel management instances.
It is mandatory to keep this value constant between restarts of the agent, and to make every possible effort to keep it constant across restarts (but note, it is unrealistic to expect it to remain constant across all re-configurations of the local system, e.g., across the replacement of all non- volatile storage).
t11FcSpAuIfStatInterfaceIndex
1.3.6.1.2.1.176.1.2.1.1
InterfaceIndexA unique value, greater than zero, for each interface or interface sub-layer in the managed system. It is recommended that values are assigned contiguously starting from 1. The value for each interface sub-layer must remain constant at least from one re-initialization of the entity's network management system to the next re-initialization. (1..2147483647) · Integer32 · hint d
The interface on which the FC-SP Authentication entity operates and for which the statistics are collected.
t11FcSpAuIfStatFabricIndex
1.3.6.1.2.1.176.1.2.1.2
T11FabricIndexA Fabric Index that is used as a unique index value to identify a particular Fabric within one (or more) physical infrastructures.
In an environment that is conformant to FC-SW-3, where there is always exactly one Fabric in a single physical infrastructure, the value of this Fabric Index will always be 1.
However, the current standard, FC-SW-4, defines how multiple Fabrics, each with its own management instrumentation, could operate within one (or more) physical infrastructures. When such multiple Fabrics are in use, this index value is used to uniquely identify a particular Fabric within a physical infrastructure.
Note that the value of this textual convention has a range of (0..4095) so as to be consistent with FC-SW-4, which says that a 'VF_ID Bitmap' is 512 bytes long, with the high-order bit representing VF_ID zero, and the low-order bit representing 4095.Reference: Fibre Channel - Switch Fabric - 4 (FC-SW-4), ANSI INCITS 418-2006, section 6.1.27.2.4. (0..4095) · Unsigned32 · hint d
An index value identifying the particular Fabric for which the statistics are collected.
t11FcSpAuIfStatTimeouts
1.3.6.1.2.1.176.1.2.1.3
Counter32
The number of FC-SP Authentication Protocol messages sent by the particular entity on the particular Fabric on the particular interface, for which no response was received within a timeout period.
This counter has no discontinuities other than those that all Counter32's have when sysUpTime=0. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, section 5.11.
t11FcSpAuIfStatInAcceptedMsgs
1.3.6.1.2.1.176.1.2.1.4
Counter32
The number of FC-SP Authentication Protocol messages received and accepted by the particular entity on the particular Fabric on the particular interface.
This counter has no discontinuities other than those that all Counter32's have when sysUpTime=0. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, section 5.1.
t11FcSpAuIfStatInLsSwRejectedMsgs
1.3.6.1.2.1.176.1.2.1.5
Counter32
The number of FC-SP Authentication Protocol messages received by the particular entity on the particular Fabric on the particular interface, and rejected by a lower-level (SW_RJT or LS_RJT) reject.
This counter has no discontinuities other than those that all Counter32's have when sysUpTime=0. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, section 5.1.
t11FcSpAuIfStatInAuthRejectedMsgs
1.3.6.1.2.1.176.1.2.1.6
Counter32
The number of FC-SP Authentication Protocol messages received by the particular entity on the particular Fabric on the particular interface, and rejected by an AUTH_Reject message.
This counter has no discontinuities other than those that all Counter32's have when sysUpTime=0. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, section 5.1.
t11FcSpAuIfStatOutAcceptedMsgs
1.3.6.1.2.1.176.1.2.1.7
Counter32
The number of FC-SP Authentication Protocol messages sent by the particular entity on the particular Fabric on the particular interface, which were accepted by the neighboring entity, i.e., not rejected by an AUTH_Reject message, nor by a lower-level (SW_RJT or LS_RJT) reject.
This counter has no discontinuities other than those that all Counter32's have when sysUpTime=0. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, section 5.1.
t11FcSpAuIfStatOutLsSwRejectedMsgs
1.3.6.1.2.1.176.1.2.1.8
Counter32
The number of FC-SP Authentication Protocol messages sent by the particular entity on the particular Fabric on the particular interface, which were rejected by a lower-level (SW_RJT or LS_RJT) reject. This counter has no discontinuities other than those that all Counter32's have when sysUpTime=0. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, section 5.1.
t11FcSpAuIfStatOutAuthRejectedMsgs
1.3.6.1.2.1.176.1.2.1.9
Counter32
The number of FC-SP Authentication Protocol messages sent by the particular entity on the particular Fabric on the particular interface, which were rejected by an AUTH_Reject message.
This counter has no discontinuities other than those that all Counter32's have when sysUpTime=0. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, section 5.1.
A table of volatile information about FC-SP Authentication Protocol transactions that were recently rejected with an AUTH_Reject message, or with an SW_RJT/LS_RJT.
The maximum number of rows in this table for a specific entity on a specific Fabric is given by the value of the corresponding instance of t11FcSpAuRejectMaxRows.
The syntax of t11FcSpAuRejTimestamp is TimeStamp, and thus its value rolls over to zero after approximately 497 days. To avoid any confusion due to such a rollover, rows should be deleted from this table before they are 497 days old. This table will be empty if no AUTH_Reject messages, nor any SW_RJT/LS_RJT's rejecting an AUTH message, have been sent or received since the last re-initialization of the agent.
An arbitrary integer value that uniquely identifies this instance amongst all local Fibre Channel management instances.
It is mandatory to keep this value constant between restarts of the agent, and to make every possible effort to keep it constant across restarts (but note, it is unrealistic to expect it to remain constant across all re-configurations of the local system, e.g., across the replacement of all non- volatile storage).
t11FcSpAuRejInterfaceIndex
1.3.6.1.2.1.176.1.3.1.1
InterfaceIndexA unique value, greater than zero, for each interface or interface sub-layer in the managed system. It is recommended that values are assigned contiguously starting from 1. The value for each interface sub-layer must remain constant at least from one re-initialization of the entity's network management system to the next re-initialization. (1..2147483647) · Integer32 · hint d
The interface on which the rejected AUTH message was sent or received.
t11FcSpAuRejFabricIndex
1.3.6.1.2.1.176.1.3.1.2
T11FabricIndexA Fabric Index that is used as a unique index value to identify a particular Fabric within one (or more) physical infrastructures.
In an environment that is conformant to FC-SW-3, where there is always exactly one Fabric in a single physical infrastructure, the value of this Fabric Index will always be 1.
However, the current standard, FC-SW-4, defines how multiple Fabrics, each with its own management instrumentation, could operate within one (or more) physical infrastructures. When such multiple Fabrics are in use, this index value is used to uniquely identify a particular Fabric within a physical infrastructure.
Note that the value of this textual convention has a range of (0..4095) so as to be consistent with FC-SW-4, which says that a 'VF_ID Bitmap' is 512 bytes long, with the high-order bit representing VF_ID zero, and the low-order bit representing 4095.Reference: Fibre Channel - Switch Fabric - 4 (FC-SW-4), ANSI INCITS 418-2006, section 6.1.27.2.4. (0..4095) · Unsigned32 · hint d
An index value identifying the particular Fabric on which the rejected AUTH message was sent or received.
t11FcSpAuRejTimestamp
1.3.6.1.2.1.176.1.3.1.3
TimeStampThe value of the sysUpTime object at which a specific occurrence happened. The specific occurrence must be
defined in the description of any object defined using this type.
If sysUpTime is reset to zero as a result of a re- initialization of the network management (sub)system, then the values of all TimeStamp objects are also reset. However, after approximately 497 days without a re- initialization, the sysUpTime object will reach 2^^32-1 and then increment around to zero; in this case, existing values of TimeStamp objects do not change. This can lead to ambiguities in the value of TimeStamp objects. · TimeTicks
The time at which the AUTH message was rejected. If two rows have the same value of this object for the same entity on the same interface and Fabric, the value of this object for the later one is incremented by one.
t11FcSpAuRejDirection
1.3.6.1.2.1.176.1.3.1.4
INTEGER1 = sent2 = received · Integer32
An indication of whether the rejection was sent or received by the identified entity.
The value 'sent(1)' corresponds to a notification of type t11FcSpAuRejectSentNotify; the value 'received(2)' corresponds to t11FcSpAuRejectReceivedNotify.
An indication of whether the rejection was an AUTH_Reject, an SW_RJT or an LS_RJT.
t11FcSpAuRejAuthMsgString
1.3.6.1.2.1.176.1.3.1.6
OCTET STRING SIZE (0..255)
The binary content of the AUTH message that was rejected, formatted as an octet string (in network byte order) containing the content of the message. If the binary content is unavailable, then the length is zero. Otherwise, the first octet of the message identifies the type of message:
'90'h - an AUTH_ELS, see Table 6 in FC-SP, '40'h - an AUTH_ILS, see Table 3 in FC-SP, or '41'h - an B_AUTH_ILS, see Table 5 in FC-SP.
and the remainder of the message may be truncated. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Tables 3, 5 and 6.
t11FcSpAuRejReasonCode
1.3.6.1.2.1.176.1.3.1.7
T11FcSpAuthRejectReasonCode1 = authFailure2 = logicalError3 = logicalBusy4 = authILSNotSupported5 = authELSNotSupported6 = notLoggedInA reason code contained in an AUTH_Reject message, or in an SW_RJT (rejecting an AUTH_ILS), or in an LS_RJT (rejecting an AUTH-ELS).Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Table 17, 48, 52. · Integer32
The reason code with which this AUTH message was rejected. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Table 17, 48, 52.
t11FcSpAuRejReasonCodeExp
1.3.6.1.2.1.176.1.3.1.8
T11FcSpAuthRejReasonCodeExp1 = authMechanismNotUsable2 = dhGroupNotUsable3 = hashFunctionNotUsable4 = authTransactionAlreadyStarted5 = authenticationFailed6 = incorrectPayload7 = incorrectAuthProtocolMessage8 = restartAuthProtocol9 = authConcatNotSupported10 = unsupportedProtocolVersion11 = logicalBusy12 = authILSNotSupported13 = authELSNotSupported14 = notLoggedInA reason code explanation contained in an AUTH_Reject message, or in an SW_RJT (rejecting an AUTH_ILS), or in an LS_RJT (rejecting an AUTH-ELS).Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Tables 18, 48, 52. · Integer32
The reason code explanation with which this AUTH message was rejected. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Table 17, 48, 52.
Trap details
t11FcSpAuRejectSentNotify
1.3.6.1.2.1.176.0.1
This notification indicates that a Switch (identified by the value of t11FamLocalSwitchWwn) has sent a reject message of the type indicated by t11FcSpAuRejType in response to an AUTH message.
The content of the rejected AUTH message is given by the value of t11FcSpAuRejAuthMsgString. The values of the Reason Code and Reason Code Explanation in the AUTH_Reject/SW_RJT/LS_RJT are indicated by the values of t11FcSpAuRejReasonCode and t11FcSpAuRejReasonCodeExp.
t11FamLocalSwitchWwn
1.3.6.1.2.1.137.1.1.1.1.8
FcNameIdOrZeroThe World Wide Name (WWN) associated with a Fibre Channel (FC) entity. WWNs were initially defined as 64-bits in length. The latest definition (for future use) is 128-bits long. The zero-length string value is used in circumstances in which the WWN is unassigned/unknown. SIZE (0 | 8 | 16) · OCTET STRING
The WWN of the particular switch on this Fabric.
t11FcSpAuRejAuthMsgString
1.3.6.1.2.1.176.1.3.1.6
OCTET STRING SIZE (0..255)
The binary content of the AUTH message that was rejected, formatted as an octet string (in network byte order) containing the content of the message. If the binary content is unavailable, then the length is zero. Otherwise, the first octet of the message identifies the type of message:
'90'h - an AUTH_ELS, see Table 6 in FC-SP, '40'h - an AUTH_ILS, see Table 3 in FC-SP, or '41'h - an B_AUTH_ILS, see Table 5 in FC-SP.
and the remainder of the message may be truncated. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Tables 3, 5 and 6.
An indication of whether the rejection was an AUTH_Reject, an SW_RJT or an LS_RJT.
t11FcSpAuRejReasonCode
1.3.6.1.2.1.176.1.3.1.7
T11FcSpAuthRejectReasonCode1 = authFailure2 = logicalError3 = logicalBusy4 = authILSNotSupported5 = authELSNotSupported6 = notLoggedInA reason code contained in an AUTH_Reject message, or in an SW_RJT (rejecting an AUTH_ILS), or in an LS_RJT (rejecting an AUTH-ELS).Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Table 17, 48, 52. · Integer32
The reason code with which this AUTH message was rejected. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Table 17, 48, 52.
t11FcSpAuRejReasonCodeExp
1.3.6.1.2.1.176.1.3.1.8
T11FcSpAuthRejReasonCodeExp1 = authMechanismNotUsable2 = dhGroupNotUsable3 = hashFunctionNotUsable4 = authTransactionAlreadyStarted5 = authenticationFailed6 = incorrectPayload7 = incorrectAuthProtocolMessage8 = restartAuthProtocol9 = authConcatNotSupported10 = unsupportedProtocolVersion11 = logicalBusy12 = authILSNotSupported13 = authELSNotSupported14 = notLoggedInA reason code explanation contained in an AUTH_Reject message, or in an SW_RJT (rejecting an AUTH_ILS), or in an LS_RJT (rejecting an AUTH-ELS).Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Tables 18, 48, 52. · Integer32
The reason code explanation with which this AUTH message was rejected. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Table 17, 48, 52.
t11FcSpAuRejectReceivedNotify
1.3.6.1.2.1.176.0.2
This notification indicates that a Switch (identified by the value of t11FamLocalSwitchWwn) has received a reject message of the type indicated by t11FcSpAuRejType in response to an AUTH message.
The content of the rejected AUTH message is given by the value of t11FcSpAuRejAuthMsgString. The values of the Reason Code and Reason Code Explanation in the AUTH_Reject/SW_RJT/LS_RJT are indicated by the values of t11FcSpAuRejReasonCode and t11FcSpAuRejReasonCodeExp.
t11FamLocalSwitchWwn
1.3.6.1.2.1.137.1.1.1.1.8
FcNameIdOrZeroThe World Wide Name (WWN) associated with a Fibre Channel (FC) entity. WWNs were initially defined as 64-bits in length. The latest definition (for future use) is 128-bits long. The zero-length string value is used in circumstances in which the WWN is unassigned/unknown. SIZE (0 | 8 | 16) · OCTET STRING
The WWN of the particular switch on this Fabric.
t11FcSpAuRejAuthMsgString
1.3.6.1.2.1.176.1.3.1.6
OCTET STRING SIZE (0..255)
The binary content of the AUTH message that was rejected, formatted as an octet string (in network byte order) containing the content of the message. If the binary content is unavailable, then the length is zero. Otherwise, the first octet of the message identifies the type of message:
'90'h - an AUTH_ELS, see Table 6 in FC-SP, '40'h - an AUTH_ILS, see Table 3 in FC-SP, or '41'h - an B_AUTH_ILS, see Table 5 in FC-SP.
and the remainder of the message may be truncated. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Tables 3, 5 and 6.
An indication of whether the rejection was an AUTH_Reject, an SW_RJT or an LS_RJT.
t11FcSpAuRejReasonCode
1.3.6.1.2.1.176.1.3.1.7
T11FcSpAuthRejectReasonCode1 = authFailure2 = logicalError3 = logicalBusy4 = authILSNotSupported5 = authELSNotSupported6 = notLoggedInA reason code contained in an AUTH_Reject message, or in an SW_RJT (rejecting an AUTH_ILS), or in an LS_RJT (rejecting an AUTH-ELS).Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Table 17, 48, 52. · Integer32
The reason code with which this AUTH message was rejected. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Table 17, 48, 52.
t11FcSpAuRejReasonCodeExp
1.3.6.1.2.1.176.1.3.1.8
T11FcSpAuthRejReasonCodeExp1 = authMechanismNotUsable2 = dhGroupNotUsable3 = hashFunctionNotUsable4 = authTransactionAlreadyStarted5 = authenticationFailed6 = incorrectPayload7 = incorrectAuthProtocolMessage8 = restartAuthProtocol9 = authConcatNotSupported10 = unsupportedProtocolVersion11 = logicalBusy12 = authILSNotSupported13 = authELSNotSupported14 = notLoggedInA reason code explanation contained in an AUTH_Reject message, or in an SW_RJT (rejecting an AUTH_ILS), or in an LS_RJT (rejecting an AUTH-ELS).Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Tables 18, 48, 52. · Integer32
The reason code explanation with which this AUTH message was rejected. Reference: - ANSI INCITS 426-2007, T11/Project 1570-D, Fibre Channel - Security Protocols (FC-SP), February 2007, Table 17, 48, 52.