CISCO-FIREPOWER-EVENT-MIB

MIB Reference — IPNetwork Monitor · Updated September 14, 2026

All MIBsCISCO-FIREPOWER-EVENT-MIB

Organization: Cisco Systems Inc.

Last Updated: 2022-08-25

Category: Cisco Devices, Hardware and Environment

Description: Provides management objects for monitoring system events, event channels, and event subscriptions on Cisco UCS/Firepower platforms.

Start monitoring vendor-neutral, standards-based MIB, any SNMPv3-capable network device (SNMP engine identity/boot/clock status) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

What Is CISCO-FIREPOWER-EVENT-MIB?

CISCO-FIREPOWER-EVENT-MIB models the internal event subsystem of Cisco UCS/Firepower platforms, covering event channel control and event holder/queue objects used to buffer and dispatch system events. It exposes control-plane objects for event severity level and revert timeout, plus holder tables tracking queued or retained events. The MIB is fundamentally about monitoring software status: it reveals whether the platform's own event/logging pipeline is healthy, including the severity threshold in force and whether event holders are backing up, which would indicate the management plane is not draining events properly. It belongs to the Cisco UCS/Firepower management information model and shares DN/RN addressing with the rest of the Firepower MIB family. It is deployed on Cisco Firepower/UCS fabric interconnects and chassis managers for event-pipeline health monitoring. Engineers can download the CISCO-FIREPOWER-EVENT-MIB file directly to load it into their MIB browser.

IPNetwork Monitor allows you to monitor SNMP objects defined in CISCO-FIREPOWER-EVENT-MIB. Use the built-in SNMP Monitoring Browser to explore available variables, view their current values and descriptions, and select the objects you want to monitor. You can then create SNMP monitors, configure thresholds, and receive alerts when monitored values change.

Supported Devices

  • Cisco Firepower/UCS fabric interconnects and chassis managers

Monitoring Examples

An administrator would poll cfprEventEpCtrlTable, reading cfprEventEpCtrlLevel to confirm the configured event severity threshold and cfprEventEpCtrlRevertTimeout for temporary overrides, then check cfprEventHolderTable entries (identified by cfprEventHolderDn) for growth in queued events. A steadily growing number of entries in cfprEventHolderTable without corresponding drains would suggest the event processing pipeline is stalled or overwhelmed.

What Can Be Monitored

  • event severity level threshold
  • event control revert timeout
  • queued/held event entries
  • event holder identifiers
Imported Objects

From CISCO-FIREPOWER-MIB

CfprManagedObjectDn
CfprManagedObjectId
ciscoFirepowerMIBObjectsOBJECT-IDENTITY

From CISCO-FIREPOWER-TC-MIB

CfprConditionActionIndicator
CfprConditionCause
CfprConditionCode
CfprConditionRule
CfprConditionSeverity
CfprConditionTag
CfprConditionType
CfprEventEpCtrlLevel
CfprPolicyPolicyOwner

From CISCO-SMI

ciscoMgmtOBJECT-IDENTITY

From CISCO-TC

CiscoAlarmSeverity
CiscoInetAddressMask
CiscoNetworkAddress
TimeIntervalSec
Unsigned64

From INET-ADDRESS-MIB

InetAddressIPv4
InetAddressIPv6

From SNMP-FRAMEWORK-MIB

SnmpAdminString

From SNMPv2-SMI

Counter32
Counter64
Gauge32
MODULE-IDENTITY
OBJECT-TYPE
TimeTicks
Unsigned32

From SNMPv2-TC

DateAndTime
DisplayString
MacAddress
RowPointer
TEXTUAL-CONVENTION
TimeInterval
TimeStamp
TruthValue
OIDs

RFC description

MIB representation of Cisco Firepower event management information model tracking system conditions, rules, and event processing.

Start monitoring Cisco Firepower/UCS fabric interconnects and chassis managers with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

Download CISCO-FIREPOWER-EVENT-MIB