CHECKPOINT-MIB-1

MIB Reference — IPNetwork Monitor

All MIBsCHECKPOINT-MIB-1

Category: VPN and Security, Vendor: Check Point

Description:

Provides management objects for Check Point firewall appliance monitoring including interface status and security policy enforcement.

Imported Objects

From RFC-1212

OBJECT-TYPE

From RFC1155-SMI

Counter
Gauge
IpAddress
NetworkAddress
TimeTicks
enterprises

What Is CHECKPOINT-MIB-1?

CHECKPOINT-MIB-1 is a vendor-specific SNMP module associated with Check Point Software Technologies firewall/security-gateway appliances, exposing management objects for these devices. Based on its short description it covers appliance state such as network interface status and enforcement status of the security policy running on the gateway, rather than deep packet-level statistics. No module description text or sample object list was available for this particular entry, so its exact object hierarchy could not be independently confirmed here. Its practical monitoring role is nonetheless hardware/software status: tracking whether interfaces are up and whether the security policy is actively enforced, giving a view of the firewall's overall operational health. Check Point gateways often layer such enterprise MIBs alongside the standard IF-MIB and SNMPv2-MIB for interface and system-level data, and it would typically be deployed wherever Check Point firewall appliances rely on CHECKPOINT-MIB-1 SNMP monitoring within an enterprise security monitoring stack.

IPNetwork Monitor allows you to monitor SNMP objects defined in CHECKPOINT-MIB-1. Use the built-in SNMP Monitoring Browser to explore available variables, view their current values and descriptions, and select the objects you want to monitor. You can then create SNMP monitors, configure thresholds, and receive alerts when monitored values change.

What Can Be Monitored

  • interface status
  • security policy enforcement status

Supported Devices

  • Check Point firewall/security gateway appliance

Monitoring Examples

No concrete object or table names were provided for this MIB, so a specific OID-level polling example cannot be given without risking invented names. In general use, an admin would poll interface-status objects and a policy-enforcement-status object to confirm a Check Point gateway's interfaces are up and that the currently loaded security policy matches the intended one. An interface reporting down, or a policy-status flag indicating "not installed," would signal a fault requiring investigation.

OIDs
OID symbolicOID numericTypeAccessDescription
checkpoint1.3.6.1.4.1.1919
products1.3.6.1.4.1.1919.1
fw1.3.6.1.4.1.1919.1.1
STR fwModuleState1.3.6.1.4.1.1919.1.1.1DisplayStringread-onlyThe state of the fw module.
STR fwFilterName1.3.6.1.4.1.1919.1.1.2DisplayStringread-onlyThe name of the loaded filter.
STR fwFilterDate1.3.6.1.4.1.1919.1.1.3DisplayStringread-onlyWhen was the filter installed (STRING!)
INT fwAccepted1.3.6.1.4.1.1919.1.1.4INTEGERread-onlyThe number of accepted packets.
INT fwRejected1.3.6.1.4.1.1919.1.1.5INTEGERread-onlyThe number of rejected packets.
INT fwDropped1.3.6.1.4.1.1919.1.1.6INTEGERread-onlyThe number of dropped packets.
INT fwLogged1.3.6.1.4.1.1919.1.1.7INTEGERread-onlyThe number of logged packets.
INT fwMajor1.3.6.1.4.1.1919.1.1.8INTEGERread-onlyFireWall-1 Major Version.
INT fwMinor1.3.6.1.4.1.1919.1.1.9INTEGERread-onlyFireWall-1 Minor Version.
INT fwProduct1.3.6.1.4.1.1919.1.1.10INTEGERread-onlyFireWall-1 Product.
STR fwEvent1.3.6.1.4.1.1919.1.1.11DisplayStringread-onlyA string containing the last snmp trap sent via fw

RFC description

Check Point firewall MIB for monitoring firewall module state, filter status, and packet acceptance/rejection statistics.

Start monitoring Check Point security gateway/firewall appliances with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

Download CHECKPOINT-MIB-1