All MIBs › CISCO-CRYPTO-ACCELERATOR-MIB › ccaProtNextPhaseKeyAllocReqs
ccaProtNextPhaseKeyAllocReqs
Module: CISCO-CRYPTO-ACCELERATOR-MIB
OID (symbolic): CISCO-CRYPTO-ACCELERATOR-MIB::ccaProtNextPhaseKeyAllocReqs
OID (numeric): 1.3.6.1.4.1.9.9.467.1.2.3.1.1.10
Node type: OBJECT-TYPE
Type: Counter64
Access: read-only
Description: The number of times requests for allocation of keys for the next phase of the protocol operation which were received by the crypto accelerators from this security protocol, counted since the last reboot of the device.
As an example, for IKE, this would identify the number of times key allocation requests for Quick Mode were received by the crypto accelerator from the IKE protocol engine.
What is ccaProtNextPhaseKeyAllocReqs?
This counter tracks requests for allocating keys for the next phase of a protocol's operation, with the description's own example being IKE Phase 2, Quick Mode, key allocation requests coming from the IKE engine. Because this specifically tracks the transition from one negotiation phase to the next, its rate reflects how often new Quick Mode SAs, the actual data-protecting tunnels, are being established, distinct from the Phase 1 ISAKMP session setup counted elsewhere. If a site has many IPsec tunnels each negotiating multiple Quick Mode SAs, this counter for the IKE row would climb noticeably higher than the count of Phase 1 negotiations alone.
Examples
Walk all instances (SNMPv2c):
snmpwalk -v2c -c public <target> 1.3.6.1.4.1.9.9.467.1.2.3.1.1.10 snmpwalk -v2c -c public <target> CISCO-CRYPTO-ACCELERATOR-MIB::ccaProtNextPhaseKeyAllocReqs
Get a specific instance (index 1):
snmpget -v2c -c public <target> 1.3.6.1.4.1.9.9.467.1.2.3.1.1.10.1 snmpget -v2c -c public <target> CISCO-CRYPTO-ACCELERATOR-MIB::ccaProtNextPhaseKeyAllocReqs.1
Start monitoring Cisco security appliances/routers with crypto accelerator modules with a free 30-day trial of IPNetwork Monitor. Create custom SNMP monitor using the CISCO-CRYPTO-ACCELERATOR-MIB::ccaProtNextPhaseKeyAllocReqs OID value, configure state conditions and alerts, and monitor any Cisco security appliances/routers with crypto accelerator modules from a single console.
OID Breakdown
Upper-level ancestors (8 from the standard OID tree / other modules)
| Numeric OID | Name | Module |
|---|---|---|
| 1 | iso | LANART-AGENT |
| 1.3 | org | AirPair-MIB |
| 1.3.6 | dod | AirPair-MIB |
| 1.3.6.1 | internet | AirPair-MIB |
| 1.3.6.1.4 | private | AirPair-MIB |
| 1.3.6.1.4.1 | enterprises | AirPair-MIB |
| 1.3.6.1.4.1.9 | cisco | CAT2600-MIB |
| 1.3.6.1.4.1.9.9 | ciscoMgmt | CISCO-SMI |
| Numeric OID | Name | Module |
|---|---|---|
| 1.3.6.1.4.1.9.9.467 | ciscoCryptoAcceleratorMIB | CISCO-CRYPTO-ACCELERATOR-MIB |
| 1.3.6.1.4.1.9.9.467.1 | ciscoCryAcceleratorMIBObjects | CISCO-CRYPTO-ACCELERATOR-MIB |
| 1.3.6.1.4.1.9.9.467.1.2 | ccaActivity | CISCO-CRYPTO-ACCELERATOR-MIB |
| 1.3.6.1.4.1.9.9.467.1.2.3 | ccaProtocolActivity | CISCO-CRYPTO-ACCELERATOR-MIB |
| 1.3.6.1.4.1.9.9.467.1.2.3.1 | ccaProtocolStatsTable | CISCO-CRYPTO-ACCELERATOR-MIB |
| 1.3.6.1.4.1.9.9.467.1.2.3.1.1 | ccaProtocolStatsEntry | CISCO-CRYPTO-ACCELERATOR-MIB |
| 1.3.6.1.4.1.9.9.467.1.2.3.1.1.10 | ccaProtNextPhaseKeyAllocReqs | CISCO-CRYPTO-ACCELERATOR-MIB |