CISCO-UNIFIED-FIREWALL-MIB :: cufwAaicHttpNumMismatchContent

MIB Reference — IPNetwork Monitor · Updated September 14, 2026

All MIBsCISCO-UNIFIED-FIREWALL-MIBcufwAaicHttpNumMismatchContent

cufwAaicHttpNumMismatchContent

Module: CISCO-UNIFIED-FIREWALL-MIB

OID (symbolic): CISCO-UNIFIED-FIREWALL-MIB::cufwAaicHttpNumMismatchContent

OID (numeric): 1.3.6.1.4.1.9.9.491.1.5.2.1.6

Node type: OBJECT-TYPE

Type: Counter64

Access: read-only

Description: The number of PDUs corresponding to HTTP protocol which were detected to be containing content whose type was different from the content type specified in the header of the PDU.

For this MIB to be implemented, the managed firewall must be implementing deep packet inspection of HTTP traffic payloads.

This value is accumulated from the last reboot of the firewall.

What is cufwAaicHttpNumMismatchContent?

This Counter64, in HTTP Protocol Data Units, counts HTTP PDUs where the actual content type detected differs from the content type declared in the PDU's header, requiring HTTP-layer deep packet inspection, accumulated since the last reboot. An admin uses it to catch a common evasion technique where a file is mislabeled to slip past content-type filtering. A rise in this counter would point an admin toward investigating traffic where files may be disguised as an allowed type to bypass content restrictions.

Examples

Walk all instances (SNMPv2c):

snmpwalk -v2c -c public <target> 1.3.6.1.4.1.9.9.491.1.5.2.1.6
snmpwalk -v2c -c public <target> CISCO-UNIFIED-FIREWALL-MIB::cufwAaicHttpNumMismatchContent

Get a specific instance (index 1):

snmpget -v2c -c public <target> 1.3.6.1.4.1.9.9.491.1.5.2.1.6.1
snmpget -v2c -c public <target> CISCO-UNIFIED-FIREWALL-MIB::cufwAaicHttpNumMismatchContent.1

Start monitoring Cisco ASA firewalls / IOS zone-based firewall devices with a free 30-day trial of IPNetwork Monitor. Create custom SNMP monitor using the CISCO-UNIFIED-FIREWALL-MIB::cufwAaicHttpNumMismatchContent OID value, configure state conditions and alerts, and monitor any Cisco ASA firewalls / IOS zone-based firewall devices from a single console.

OID Breakdown

Upper-level ancestors (8 from the standard OID tree / other modules)
Numeric OIDNameModule
1isoLANART-AGENT
1.3orgAirPair-MIB
1.3.6dodAirPair-MIB
1.3.6.1internetAirPair-MIB
1.3.6.1.4privateAirPair-MIB
1.3.6.1.4.1enterprisesAirPair-MIB
1.3.6.1.4.1.9ciscoCAT2600-MIB
1.3.6.1.4.1.9.9ciscoMgmtCISCO-SMI
Numeric OIDNameModule
1.3.6.1.4.1.9.9.491ciscoUnifiedFirewallMIBCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1ciscoUnifiedFirewallMIBObjectsCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1.5cuFwAaicGrpCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1.5.2cufwAaicProtocolStatsCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1.5.2.1cufwAaicHttpProtocolStatsCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1.5.2.1.6cufwAaicHttpNumMismatchContentCISCO-UNIFIED-FIREWALL-MIB