CISCO-UNIFIED-FIREWALL-MIB :: cufwConnReptAppStats

MIB Reference — IPNetwork Monitor · Updated September 14, 2026

All MIBsCISCO-UNIFIED-FIREWALL-MIBcufwConnReptAppStats

cufwConnReptAppStats

Module: CISCO-UNIFIED-FIREWALL-MIB

OID (symbolic): CISCO-UNIFIED-FIREWALL-MIB::cufwConnReptAppStats

OID (numeric): 1.3.6.1.4.1.9.9.491.1.1.3.1

Node type: OBJECT-TYPE

Type: TruthValue

Access: read-write

Description: Setting this object to 'true' enables the MIB to report connection activity statistics pertaining to application protocols.

If this object is set to 'false', the agent should stop updating the objects defined in this module pertaining to application protocols.

Application monitoring could be a resource intensive operation. It is expected that the administrators would use this control to disable application monitoring when the performance of the firewall is degrading.

What is cufwConnReptAppStats?

This is a read-write boolean control: setting it to true enables the firewall MIB to report connection activity statistics for application protocols, and setting it to false tells the agent to stop updating those application-protocol statistics objects. An admin uses this switch deliberately because application-level monitoring is resource intensive, so it is expected that admins disable it when that granular visibility is not needed and re-enable it only when investigating application-specific connection behavior. For example, an admin troubleshooting a spike in SIP connection failures might set this to true temporarily to get detailed cufwAppConnNumAttempted-style statistics, then set it back to false afterward to reduce the monitoring overhead.

Examples

Walk all instances (SNMPv2c):

snmpwalk -v2c -c public <target> 1.3.6.1.4.1.9.9.491.1.1.3.1
snmpwalk -v2c -c public <target> CISCO-UNIFIED-FIREWALL-MIB::cufwConnReptAppStats

Get a specific instance (index 1):

snmpget -v2c -c public <target> 1.3.6.1.4.1.9.9.491.1.1.3.1.1
snmpget -v2c -c public <target> CISCO-UNIFIED-FIREWALL-MIB::cufwConnReptAppStats.1

Set instance 1 (SNMPv2c):

snmpset -v2c -c private <target> 1.3.6.1.4.1.9.9.491.1.1.3.1.1 s <value>

SNMPv3 example:

snmpget -v3 -l authPriv -u snmpv3-user -a SHA -A "AuthPassword1" -x AES -X "PrivPassword1" <target> cufwConnReptAppStats.1

Start monitoring Cisco ASA firewalls / IOS zone-based firewall devices with a free 30-day trial of IPNetwork Monitor. Create custom SNMP monitor using the CISCO-UNIFIED-FIREWALL-MIB::cufwConnReptAppStats OID value, configure state conditions and alerts, and monitor any Cisco ASA firewalls / IOS zone-based firewall devices from a single console.

OID Breakdown

Upper-level ancestors (8 from the standard OID tree / other modules)
Numeric OIDNameModule
1isoLANART-AGENT
1.3orgAirPair-MIB
1.3.6dodAirPair-MIB
1.3.6.1internetAirPair-MIB
1.3.6.1.4privateAirPair-MIB
1.3.6.1.4.1enterprisesAirPair-MIB
1.3.6.1.4.1.9ciscoCAT2600-MIB
1.3.6.1.4.1.9.9ciscoMgmtCISCO-SMI
Numeric OIDNameModule
1.3.6.1.4.1.9.9.491ciscoUnifiedFirewallMIBCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1ciscoUnifiedFirewallMIBObjectsCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1.1cuFwConnectionGrpCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1.1.3cuFwConnectionReportSettingsCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1.1.3.1cufwConnReptAppStatsCISCO-UNIFIED-FIREWALL-MIB