CISCO-UNIFIED-FIREWALL-MIB :: cufwPolConnNumAttempted

MIB Reference — IPNetwork Monitor · Updated September 14, 2026

All MIBsCISCO-UNIFIED-FIREWALL-MIBcufwPolConnNumAttempted

cufwPolConnNumAttempted

Module: CISCO-UNIFIED-FIREWALL-MIB

OID (symbolic): CISCO-UNIFIED-FIREWALL-MIB::cufwPolConnNumAttempted

OID (numeric): 1.3.6.1.4.1.9.9.491.1.1.4.3.1.5

Node type: OBJECT-TYPE

Type: Counter64

Access: read-only

Description: The number of connections attempted since the last reboot of the firewall, corresponding to the protocol denoted by 'cufwPolConnProtocol', in the policy 'cufwPolConnPolicy' applied to the entity identified by 'cufwPolConnPolicyTarget'.

What is cufwPolConnNumAttempted?

This Counter64, in Connections, counts every connection attempt since the firewall's last reboot for the protocol in cufwPolConnProtocol, scoped to the specific policy identified by cufwPolConnPolicy applied to the target in cufwPolConnPolicyTarget. It lets an admin see how much connection-attempt traffic a particular policy-and-target pairing is actually seeing, which is the baseline needed to judge whether other counters for that row represent a small or large share. For example, comparing this value against cufwPolConnNumPolicyDeclined for the same row tells you what fraction of a policy's traffic is being turned away.

Examples

Walk all instances (SNMPv2c):

snmpwalk -v2c -c public <target> 1.3.6.1.4.1.9.9.491.1.1.4.3.1.5
snmpwalk -v2c -c public <target> CISCO-UNIFIED-FIREWALL-MIB::cufwPolConnNumAttempted

Get a specific instance (index 1):

snmpget -v2c -c public <target> 1.3.6.1.4.1.9.9.491.1.1.4.3.1.5.1
snmpget -v2c -c public <target> CISCO-UNIFIED-FIREWALL-MIB::cufwPolConnNumAttempted.1

Start monitoring Cisco ASA firewalls / IOS zone-based firewall devices with a free 30-day trial of IPNetwork Monitor. Create custom SNMP monitor using the CISCO-UNIFIED-FIREWALL-MIB::cufwPolConnNumAttempted OID value, configure state conditions and alerts, and monitor any Cisco ASA firewalls / IOS zone-based firewall devices from a single console.

OID Breakdown

Upper-level ancestors (8 from the standard OID tree / other modules)
Numeric OIDNameModule
1isoLANART-AGENT
1.3orgAirPair-MIB
1.3.6dodAirPair-MIB
1.3.6.1internetAirPair-MIB
1.3.6.1.4privateAirPair-MIB
1.3.6.1.4.1enterprisesAirPair-MIB
1.3.6.1.4.1.9ciscoCAT2600-MIB
1.3.6.1.4.1.9.9ciscoMgmtCISCO-SMI
Numeric OIDNameModule
1.3.6.1.4.1.9.9.491ciscoUnifiedFirewallMIBCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1ciscoUnifiedFirewallMIBObjectsCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1.1cuFwConnectionGrpCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1.1.4cuFwConnectionSummaryTablesCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1.1.4.3cufwPolicyConnSummaryTableCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1.1.4.3.1cufwPolicyConnSummaryEntryCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1.1.4.3.1.5cufwPolConnNumAttemptedCISCO-UNIFIED-FIREWALL-MIB