CISCO-UNIFIED-FIREWALL-MIB :: cufwUrlfRequestsNumDenied

MIB Reference — IPNetwork Monitor · Updated September 14, 2026

All MIBsCISCO-UNIFIED-FIREWALL-MIBcufwUrlfRequestsNumDenied

cufwUrlfRequestsNumDenied

Module: CISCO-UNIFIED-FIREWALL-MIB

OID (symbolic): CISCO-UNIFIED-FIREWALL-MIB::cufwUrlfRequestsNumDenied

OID (numeric): 1.3.6.1.4.1.9.9.491.1.3.1.6

Node type: OBJECT-TYPE

Type: Counter64

Access: read-only

Description: The number of URL access requests declined by this firewall, due to a directive from a URL filtering server, a static policy configured on the firewall, due to resource constraints or any other reason.

This value is accumulated from the last reboot of the firewall.

What is cufwUrlfRequestsNumDenied?

This Counter64, in Requests, counts URL access requests declined by the firewall for any of several reasons: a URL filtering server directive, a static local policy, resource constraints, or other causes, accumulated since the last reboot. Because it lumps multiple denial causes together, an admin typically needs the more specific counters, like cache-denied or resource-dropped, to pin down why requests are being blocked. A sudden rise in this counter without a corresponding rise in cufwUrlfRequestsNumResDropped would point toward policy-driven denials rather than resource exhaustion.

Examples

Walk all instances (SNMPv2c):

snmpwalk -v2c -c public <target> 1.3.6.1.4.1.9.9.491.1.3.1.6
snmpwalk -v2c -c public <target> CISCO-UNIFIED-FIREWALL-MIB::cufwUrlfRequestsNumDenied

Get a specific instance (index 1):

snmpget -v2c -c public <target> 1.3.6.1.4.1.9.9.491.1.3.1.6.1
snmpget -v2c -c public <target> CISCO-UNIFIED-FIREWALL-MIB::cufwUrlfRequestsNumDenied.1

Start monitoring Cisco ASA firewalls / IOS zone-based firewall devices with a free 30-day trial of IPNetwork Monitor. Create custom SNMP monitor using the CISCO-UNIFIED-FIREWALL-MIB::cufwUrlfRequestsNumDenied OID value, configure state conditions and alerts, and monitor any Cisco ASA firewalls / IOS zone-based firewall devices from a single console.

OID Breakdown

Upper-level ancestors (8 from the standard OID tree / other modules)
Numeric OIDNameModule
1isoLANART-AGENT
1.3orgAirPair-MIB
1.3.6dodAirPair-MIB
1.3.6.1internetAirPair-MIB
1.3.6.1.4privateAirPair-MIB
1.3.6.1.4.1enterprisesAirPair-MIB
1.3.6.1.4.1.9ciscoCAT2600-MIB
1.3.6.1.4.1.9.9ciscoMgmtCISCO-SMI
Numeric OIDNameModule
1.3.6.1.4.1.9.9.491ciscoUnifiedFirewallMIBCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1ciscoUnifiedFirewallMIBObjectsCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1.3cuFwUrlFilterGrpCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1.3.1cufwUrlFilterGlobalsCISCO-UNIFIED-FIREWALL-MIB
1.3.6.1.4.1.9.9.491.1.3.1.6cufwUrlfRequestsNumDeniedCISCO-UNIFIED-FIREWALL-MIB