CISCO-FIREPOWER-MGMT-MIB

MIB Reference — IPNetwork Monitor · Updated September 14, 2026

All MIBsCISCO-FIREPOWER-MGMT-MIB

Organization: Cisco Systems Inc.

Last Updated: 2022-08-25

Category: Cisco Devices, Hardware and Environment

Description: Provides management objects for UCS Manager management plane configuration including roles, users, and admin settings on Cisco UCS/Firepower.

Start monitoring vendor-neutral, standards-based MIB, any SNMPv3-capable network device (SNMP engine identity/boot/clock status) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

What Is CISCO-FIREPOWER-MGMT-MIB?

CISCO-FIREPOWER-MGMT-MIB models the management-plane configuration of Cisco UCS Manager as used on Firepower platforms, covering administrative access policies and their constituent policy items such as allowed management protocols or access rules. It exposes tables describing access-policy definitions and the individual items/rules within each policy, along with descriptive text and identifiers for each. Its monitoring focus is configuration/software-state auditing rather than hardware health: an operator can verify which management-access policies are in force, confirm that expected access controls are correctly applied, and detect drift from an intended security baseline. It is one of many Cisco Firepower/UCS management-information-model MIBs and is closely tied to the underlying UCS Manager configuration data model reflected in its distinguished-name addressing scheme. It is deployed on Cisco Firepower/UCS-managed chassis and blade systems where centralized management-access policy needs to be audited via SNMP. Engineers can download the CISCO-FIREPOWER-MGMT-MIB file directly to load it into their MIB browser.

IPNetwork Monitor allows you to monitor SNMP objects defined in CISCO-FIREPOWER-MGMT-MIB. Use the built-in SNMP Monitoring Browser to explore available variables, view their current values and descriptions, and select the objects you want to monitor. You can then create SNMP monitors, configure thresholds, and receive alerts when monitored values change.

Supported Devices

  • Cisco Firepower/UCS Manager-managed chassis and blade systems

Monitoring Examples

A security auditor would poll cfprMgmtAccessPolicyTable/cfprMgmtAccessPolicyEntry to list configured access policies by cfprMgmtAccessPolicyDn, then drill into cfprMgmtAccessPolicyItemTable to inspect each cfprMgmtAccessPolicyItemDescr and cfprMgmtAccessPolicyItemIntId, confirming that only sanctioned management protocols are enabled. Detecting an unexpected policy item, such as an open Telnet rule, would flag configuration drift requiring remediation. The Dn/Rn hierarchy lets the monitoring system map each policy item back to its parent chassis/service-profile object in UCS Manager.

What Can Be Monitored

  • management access policy definitions
  • individual access-policy rule items
  • enabled management protocols/interfaces
Imported Objects

From CISCO-FIREPOWER-MIB

CfprManagedObjectDn
CfprManagedObjectId
ciscoFirepowerMIBObjectsOBJECT-IDENTITY

From CISCO-FIREPOWER-TC-MIB

CfprCommClientAdminState
CfprConditionRemoteInvRslt
CfprEtherSatelliteConnectionDisc
CfprFsmCompletion
CfprFsmFlags
CfprFsmFsmStageStatus
CfprIpProtocol
CfprMgmtAccess
CfprMgmtAdminState
CfprMgmtBackupFsmCurrentFsm
CfprMgmtBackupFsmStageName
CfprMgmtBackupFsmTaskItem
CfprMgmtBackupInterval
CfprMgmtBackupIssue
CfprMgmtBackupJob
CfprMgmtBackupPolicyFsmCurrentFsm
CfprMgmtBackupPolicyFsmStageName
CfprMgmtBackupPostAction
CfprMgmtBackupProto
CfprMgmtBackupStatus
CfprMgmtBackupType
CfprMgmtCfgExportPolicyFsmCurrentFsm
CfprMgmtCfgExportPolicyFsmStageName
CfprMgmtCimcSecureBootAdminState
CfprMgmtConfigState
CfprMgmtConnectionState
CfprMgmtControllerFsmCurrentFsm
CfprMgmtControllerFsmStageName
CfprMgmtControllerFsmTaskFlags
CfprMgmtControllerFsmTaskItem
CfprMgmtDimmBlacklistingOperState
CfprMgmtEntityChassisDeviceIoState1
CfprMgmtEntityChassisDeviceIoState2
CfprMgmtEntityChassisDeviceIoState3
CfprMgmtEntityHaFailureReason
CfprMgmtEntityHaReadiness
CfprMgmtEntityLeadership
CfprMgmtEntityMgmtServicesState
CfprMgmtEntityProblems
CfprMgmtEntityState
CfprMgmtEntityUmbilicalState
CfprMgmtExportPolicyAdminState
CfprMgmtExportPolicyFsmCurrentFsm
CfprMgmtExportPolicyFsmStageName
CfprMgmtExportPolicyFsmTaskItem
CfprMgmtExportPolicyProto
CfprMgmtIPv6IfAddrFsmCurrentFsm
CfprMgmtIPv6IfAddrFsmStageName
CfprMgmtIPv6IfAddrFsmTaskItem
CfprMgmtIfFsmCurrentFsm
CfprMgmtIfFsmStageName
CfprMgmtIfFsmTaskItem
CfprMgmtImportAction
CfprMgmtImportStatus
CfprMgmtImporterFsmCurrentFsm
CfprMgmtImporterFsmStageName
CfprMgmtImporterFsmTaskItem
CfprMgmtImporterPostAction
CfprMgmtImporterProto
CfprMgmtIntAuthPolicyMethod
CfprMgmtMode
CfprMgmtOperState
CfprMgmtPmonEntryState
CfprMgmtSecureBootOperState
CfprMgmtSource
CfprMgmtStateQual
CfprMgmtStorageSubsystemState
CfprMgmtSubject
CfprNetworkConnectionType
CfprNetworkLocale
CfprNetworkPhysEpIfType
CfprNetworkPortRole
CfprNetworkSwitchId
CfprNetworkTransport
CfprPolicyPolicyOwner
CfprTrigAdminState
CfprTrigTrigOperState
CfprVnicExternalMgmtIPMode

From CISCO-SMI

ciscoMgmtOBJECT-IDENTITY

From CISCO-TC

CiscoAlarmSeverity
CiscoInetAddressMask
CiscoNetworkAddress
TimeIntervalSec
Unsigned64

From INET-ADDRESS-MIB

InetAddressIPv4
InetAddressIPv6

From SNMP-FRAMEWORK-MIB

SnmpAdminString

From SNMPv2-SMI

Counter32
Counter64
Gauge32
MODULE-IDENTITY
OBJECT-TYPE
TimeTicks
Unsigned32

From SNMPv2-TC

DateAndTime
DisplayString
MacAddress
RowPointer
TEXTUAL-CONVENTION
TimeInterval
TimeStamp
TruthValue
OIDs

RFC description

Management information model for Cisco Firepower security appliances.

Start monitoring Cisco Firepower security appliances with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

Download CISCO-FIREPOWER-MGMT-MIB