All MIBs › CHECKPOINT-MIB-2 › icmpInTimeExcds
icmpInTimeExcds
Module: CHECKPOINT-MIB-2
OID (symbolic): CHECKPOINT-MIB-2::icmpInTimeExcds
OID (numeric): 1.3.6.1.2.1.5.4
Node type: OBJECT-TYPE
Type: Counter
Access: read-only
Description: The number of ICMP Time Exceeded messages received.
What is icmpInTimeExcds?
Counts ICMP Time Exceeded messages received by the device, typically generated by a router along a path when a packet's TTL hit zero. A rise here specifically on a firewall usually comes from traceroute-style diagnostic traffic or, less innocently, TTL-based network reconnaissance probing the path, either way evidence someone is mapping the hop count to or from this gateway. Example: a burst of icmpInTimeExcds right before a fwRejected spike from the same external range suggests the source was traceroute-mapping the path before launching whatever probe got rejected.
Examples
Walk all instances (SNMPv2c):
snmpwalk -v2c -c public <target> 1.3.6.1.2.1.5.4 snmpwalk -v2c -c public <target> CHECKPOINT-MIB-2::icmpInTimeExcds
Get a specific instance (index 1):
snmpget -v2c -c public <target> 1.3.6.1.2.1.5.4.1 snmpget -v2c -c public <target> CHECKPOINT-MIB-2::icmpInTimeExcds.1
Start monitoring Check Point security gateway/firewall appliances with a free 30-day trial of IPNetwork Monitor. Create custom SNMP monitor using the CHECKPOINT-MIB-2::icmpInTimeExcds OID value, configure state conditions and alerts, and monitor any Check Point security gateway/firewall appliances from a single console.
OID Breakdown
Upper-level ancestors (6 from the standard OID tree / other modules)
| Numeric OID | Name | Module |
|---|---|---|
| 1 | iso | LANART-AGENT |
| 1.3 | org | AirPair-MIB |
| 1.3.6 | dod | AirPair-MIB |
| 1.3.6.1 | internet | AirPair-MIB |
| 1.3.6.1.2 | mgmt | AXON-MIB |
| 1.3.6.1.2.1 | mib_2 | AXON-MIB |
| Numeric OID | Name | Module |
|---|---|---|
| 1.3.6.1.2.1.5 | icmp | CHECKPOINT-MIB-2 |
| 1.3.6.1.2.1.5.4 | icmpInTimeExcds | CHECKPOINT-MIB-2 |