All MIBs › BIANCA-BRICK-IPSEC-MIB › ipsecGlobTrustIcmpMsg
ipsecGlobTrustIcmpMsg
Module: BIANCA-BRICK-IPSEC-MIB
OID (symbolic): BIANCA-BRICK-IPSEC-MIB::ipsecGlobTrustIcmpMsg
OID (numeric): 1.3.6.1.4.1.272.4.26.1.34
Node type: OBJECT-TYPE
Type: INTEGER
Access: read-write
Description: This object specifies whether IKE should trust icmp port and host unreachable error messages. ICMP port and host unreachable messages are only trusted if there have not yet been received any datagrams from the remote host in this negotiation. This means, if the local side receives an ICMP port or host unreachable message as the first response to the initial packet of a new phase 1 negotiation, it cancels the negotiation immediately. Possible values: true(1), -- trust ICMP messages false(2) -- do not trust ICMP messages.
What is ipsecGlobTrustIcmpMsg?
This OID controls whether to process ICMP messages from unestablished IPsec peers: true(1) or false(2). Setting to true allows ICMP (e.g., unreachable, TTL exceeded) to affect IKE behavior. Example: setting to false(2) ignores ICMP from peers, preventing ICMP attacks from blocking IPsec.
Examples
Walk all instances (SNMPv2c):
snmpwalk -v2c -c public <target> 1.3.6.1.4.1.272.4.26.1.34 snmpwalk -v2c -c public <target> BIANCA-BRICK-IPSEC-MIB::ipsecGlobTrustIcmpMsg
Get a specific instance (index 1):
snmpget -v2c -c public <target> 1.3.6.1.4.1.272.4.26.1.34.1 snmpget -v2c -c public <target> BIANCA-BRICK-IPSEC-MIB::ipsecGlobTrustIcmpMsg.1
Set instance 1 (SNMPv2c):
snmpset -v2c -c private <target> 1.3.6.1.4.1.272.4.26.1.34.1 i <value>
Start monitoring bintec BIANCA/BRICK ISDN/VPN routers (legacy) with a free 30-day trial of IPNetwork Monitor. Create custom SNMP monitor using the BIANCA-BRICK-IPSEC-MIB::ipsecGlobTrustIcmpMsg OID value, configure state conditions and alerts, and monitor any bintec BIANCA/BRICK ISDN/VPN routers (legacy) from a single console.
OID Breakdown
Upper-level ancestors (8 from the standard OID tree / other modules)
| Numeric OID | Name | Module |
|---|---|---|
| 1 | iso | LANART-AGENT |
| 1.3 | org | AirPair-MIB |
| 1.3.6 | dod | AirPair-MIB |
| 1.3.6.1 | internet | AirPair-MIB |
| 1.3.6.1.4 | private | AirPair-MIB |
| 1.3.6.1.4.1 | enterprises | AirPair-MIB |
| 1.3.6.1.4.1.272 | bintec | BIANCA-BOX-ISDN-MIB |
| 1.3.6.1.4.1.272.4 | bibo | BIANCA-BOX-ISDN-MIB |
| Numeric OID | Name | Module |
|---|---|---|
| 1.3.6.1.4.1.272.4.26 | ipsec | BIANCA-BRICK-IPSEC-MIB |
| 1.3.6.1.4.1.272.4.26.1 | ipsecGlobals | BIANCA-BRICK-IPSEC-MIB |
| 1.3.6.1.4.1.272.4.26.1.34 | ipsecGlobTrustIcmpMsg | BIANCA-BRICK-IPSEC-MIB |