All MIBs › BIANCA-BRICK-IPSEC-MIB › ipsecGlobDefaultPfsGroup
ipsecGlobDefaultPfsGroup
Module: BIANCA-BRICK-IPSEC-MIB
OID (symbolic): BIANCA-BRICK-IPSEC-MIB::ipsecGlobDefaultPfsGroup
OID (numeric): 1.3.6.1.4.1.272.4.26.1.13
Node type: OBJECT-TYPE
Type: INTEGER
Access: read-write
Description: This object specifies the PFS group to use. PFS is done only for phase 2, i.e. the Phase 1 SAs are not deleted after phase 2 negotiation is completed. Note however, that if the peer has configured PFS for identity and destroys phase 1 SAs, this side will also destroy them when notified. Possible values: 0 (no PFS) 1 (768 bit MODP), 2 (1024 bit MODP), 5 (1536 bit MODP).
What is ipsecGlobDefaultPfsGroup?
This OID sets the Diffie-Hellman group for Perfect Forward Secrecy in Phase 2: 0 (no PFS), 1 (768-bit), 2 (1024-bit), or 5 (1536-bit). PFS ensures Phase 2 session keys are unrelated to Phase 1, even if the master key is compromised. Example: setting to 2 provides PFS using 1024-bit DH; setting to 0 disables PFS for speed.
Examples
Walk all instances (SNMPv2c):
snmpwalk -v2c -c public <target> 1.3.6.1.4.1.272.4.26.1.13 snmpwalk -v2c -c public <target> BIANCA-BRICK-IPSEC-MIB::ipsecGlobDefaultPfsGroup
Get a specific instance (index 1):
snmpget -v2c -c public <target> 1.3.6.1.4.1.272.4.26.1.13.1 snmpget -v2c -c public <target> BIANCA-BRICK-IPSEC-MIB::ipsecGlobDefaultPfsGroup.1
Set instance 1 (SNMPv2c):
snmpset -v2c -c private <target> 1.3.6.1.4.1.272.4.26.1.13.1 i <value>
Start monitoring bintec BIANCA/BRICK ISDN/VPN routers (legacy) with a free 30-day trial of IPNetwork Monitor. Create custom SNMP monitor using the BIANCA-BRICK-IPSEC-MIB::ipsecGlobDefaultPfsGroup OID value, configure state conditions and alerts, and monitor any bintec BIANCA/BRICK ISDN/VPN routers (legacy) from a single console.
OID Breakdown
Upper-level ancestors (8 from the standard OID tree / other modules)
| Numeric OID | Name | Module |
|---|---|---|
| 1 | iso | LANART-AGENT |
| 1.3 | org | AirPair-MIB |
| 1.3.6 | dod | AirPair-MIB |
| 1.3.6.1 | internet | AirPair-MIB |
| 1.3.6.1.4 | private | AirPair-MIB |
| 1.3.6.1.4.1 | enterprises | AirPair-MIB |
| 1.3.6.1.4.1.272 | bintec | BIANCA-BOX-ISDN-MIB |
| 1.3.6.1.4.1.272.4 | bibo | BIANCA-BOX-ISDN-MIB |
| Numeric OID | Name | Module |
|---|---|---|
| 1.3.6.1.4.1.272.4.26 | ipsec | BIANCA-BRICK-IPSEC-MIB |
| 1.3.6.1.4.1.272.4.26.1 | ipsecGlobals | BIANCA-BRICK-IPSEC-MIB |
| 1.3.6.1.4.1.272.4.26.1.13 | ipsecGlobDefaultPfsGroup | BIANCA-BRICK-IPSEC-MIB |