All MIBs › CISCO-IPSEC-TC
Organization: Cisco Systems Inc. and Tivoli Systems Inc.
Last Updated: 2004-07-22
Category: Cisco Devices, Textual Conventions and Registries, VPN and Security
Description:
Defines textual conventions for Cisco IPsec MIBs including encryption algorithms and SA types.
Imported Objects
From CISCO-SMI
| ciscoMgmt | OBJECT-IDENTITY |
From SNMPv2-SMI
| Gauge32 | |
| MODULE-IDENTITY | |
| Unsigned32 |
From SNMPv2-TC
| TEXTUAL-CONVENTION |
What Is CISCO-IPSEC-TC?
CISCO-IPSEC-TC is a Cisco textual-convention MIB that defines shared data types used across Cisco's IPsec-related management MIBs, including encryption algorithm identifiers, Security Association (SA) types, and enumerations drawn from RFC 2407 (IPsec DOI), RFC 2408 (ISAKMP), and RFC 2409 (IKE). As a TC-only module it defines no runtime objects itself; it standardizes the vocabulary (e.g., algorithm and protocol identifiers) that Cisco's IPsec/IKE monitoring MIBs use to describe tunnel and SA state consistently. Its relevance to hardware/software status monitoring is indirect: it enables consistent interpretation of IPsec tunnel and negotiation status reported elsewhere, rather than reporting device health itself. Anyone referencing the CISCO-IPSEC-TC MIB will typically do so only indirectly, by importing its type definitions into other Cisco IPsec/IKE monitoring MIBs rather than polling it directly, and it explicitly depends on and encodes values from the IETF IPsec/ISAKMP/IKE RFCs as a required import for Cisco's IPsec tunnel and SA MIBs. It is used wherever Cisco routers, firewalls, or VPN concentrators terminate IPsec VPN tunnels and are managed via SNMP.
IPNetwork Monitor allows you to monitor SNMP objects defined in CISCO-IPSEC-TC. Use the built-in SNMP Monitoring Browser to explore available variables, view their current values and descriptions, and select the objects you want to monitor. You can then create SNMP monitors, configure thresholds, and receive alerts when monitored values change.
Supported Devices
- Cisco Secure Firewall (Firepower Threat Defense) — current IPsec/IKE VPN platform, actively updated through 2025/2026 per Cisco documentation
Monitoring Examples
This is a textual-conventions-only module supplying shared type definitions (encryption algorithm and SA-type enumerations) rather than runtime data objects, so there is no direct polling scenario; actual IPsec tunnel status, negotiated algorithms, and SA counts are exposed by other Cisco IPsec MIBs that import these types, such as tunnel/SA status tables keyed by these encoded values.
OIDs
| OID symbolic | OID numeric | Type | Access | Description |
|---|---|---|---|---|
| ciscoIPsecTc | 1.3.6.1.4.1.9.9.422 | This MIB module defines the textual conventions used in the IPsec suite of MIBs. This includes Internet DOI numbers defined in RFC 2407, ISAKMP numbers defined in RFC 2408, and IKE numbers defined in RFC 2409. |
RFC description
Cisco IPSec textual conventions definition (RFC 3456); defines TEXTUAL-CONVENTION types and objects for IPSec tunnel and security association monitoring.
Start monitoring Cisco Secure Firewall (Firepower Threat Defense) IPsec/IKE VPN platform with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.