DLINKSW-AAA-ACCOUNTING-MIB

MIB Reference — IPNetwork Monitor

All MIBsDLINKSW-AAA-ACCOUNTING-MIB

Organization: D-Link Corp.

Last Updated: 2013-04-25

Category: RADIUS/AAA

Description:

Manages AAA accounting method lists and RADIUS/TACACS+ server assignments on D-Link switches.

Imported Objects

From SNMPv2-CONF

MODULE-COMPLIANCE
OBJECT-GROUP

From SNMPv2-SMI

MODULE-IDENTITY
OBJECT-TYPE

From SNMPv2-TC

RowStatus

What Is DLINKSW-AAA-ACCOUNTING-MIB?

DLINKSW-AAA-ACCOUNTING-MIB is a D-Link switch MIB for AAA (Authentication, Authorization, Accounting) accounting configuration, defining accounting method lists and the RADIUS/TACACS+ server groups assigned to record user login, command, and session activity. It would expose accounting method-list definitions and per-list server assignments, letting an administrator confirm which accounting servers are actively receiving records for a given access method, though no sample objects were extracted for this module. Its relevance to device health monitoring is mainly administrative/security assurance, confirming accounting is actually being recorded rather than silently failing, rather than hardware telemetry. It depends conceptually on the RADIUS/TACACS+ protocols and complements standard AAA authentication MIBs. It is deployed on D-Link switches in enterprise networks with centralized AAA servers for compliance/audit logging of administrative access. Engineers can download the DLINKSW-AAA-ACCOUNTING-MIB file directly to load it into their MIB browser.

IPNetwork Monitor allows you to monitor SNMP objects defined in DLINKSW-AAA-ACCOUNTING-MIB. Use the built-in SNMP Monitoring Browser to explore available variables, view their current values and descriptions, and select the objects you want to monitor. You can then create SNMP monitors, configure thresholds, and receive alerts when monitored values change.

What Can Be Monitored

  • AAA accounting method-list configuration
  • RADIUS/TACACS+ server assignment for accounting

Supported Devices

  • D-Link managed switch

Monitoring Examples

No object names were provided in sample_objects for this MIB, so a concrete polling scenario with real identifiers cannot be given honestly. Conceptually, an administrator would check which accounting method list and RADIUS/TACACS+ server group is bound to console/VTY access to confirm login accounting records are actually being sent, but the exact object/table names are not confirmed here.

OIDs
OID symbolicOID numericTypeAccessDescription
dlinkSwAaaAccountingMIB1.3.6.1.4.1.171.26.150.1.3This MIB module defines objects for configuring accounting feature which based on Authentication, Authorization, Accounting (AAA) protocols.
dAaaAcctMIBNotifications1.3.6.1.4.1.171.26.150.1.3.0
dAaaAcctMIBObjects1.3.6.1.4.1.171.26.150.1.3.1
dAaaAcctGenericCfg1.3.6.1.4.1.171.26.150.1.3.1.1
dAaaAcctGeneicAcctMethodTable1.3.6.1.4.1.171.26.150.1.3.1.1.1not-accessibleThis table contains entries for AAA accounting methods configured for accounting exec/network/system. The following table describes the accounting method. Method Lst type DAaaMethodListName Priority Method ----------- ----------------- -------- ------------ exec console 1 radius exec default 1 radius exec default 2 acct_rad exec default 3 tacacs+ exec default 4 none exec ssh 1 radius exec ssh 2 none exec telnet 1 tacacs+ network default 1 radius network default 2 acct_rad network default 3 tacacs+ network default 4 none system default 1 radius system default 2 acct_rad system default 3 tacacs+ system default 4 none
dAaaAcctGeneicAcctMethodEntry1.3.6.1.4.1.171.26.150.1.3.1.1.1.1not-accessibleAn entry containing the priority number of an accounting method list used for Exec/network/system.
INT dAaaAcctGenMethodLstType1.3.6.1.4.1.171.26.150.1.3.1.1.1.1.1INTEGERnot-accessibleThis object indicates the type for which the method list will be used. exec(1) - for accounting user activities. network(2) - for accounting user activity in accessing the network. system(3) - for accounting system events. Note: Not all method list types defined need to be supported.
DAA dAaaAcctGenMethodLstName1.3.6.1.4.1.171.26.150.1.3.1.1.1.1.2DAaaMethodListNamenot-accessibleThis object indicates the name of the accounting method list. If dAaaAcctGenMethodLstType is 'network' or 'system' then only 'default' can be specified for dAaaAcctGenMethodLstName, and accounting commands/exec and the configured method list will take effect without being explicitly applied. If the type is 'exec', the method list will take effect after it is applied in dAaaAcctExecAcctApplyTable.
DAA dAaaAcctGenMethodPriority1.3.6.1.4.1.171.26.150.1.3.1.1.1.1.3DAaaMethodPrioritynot-accessibleThis is the method priority of a method within a method list.
DAA dAaaAcctGenMethodName1.3.6.1.4.1.171.26.150.1.3.1.1.1.1.4DAaaMethodNameread-createThis object indicates the accounting method name.
ROW dAaaAcctGenMethodRowStatus1.3.6.1.4.1.171.26.150.1.3.1.1.1.1.5RowStatusread-createThe status of this table entry. Before modify the higher method, must destroy the lower method in method list.
dAaaAcctCommandsAcct1.3.6.1.4.1.171.26.150.1.3.1.2
dAaaAcctCommandsAcctMethodTable1.3.6.1.4.1.171.26.150.1.3.1.2.1not-accessibleThis table contains entries for AAA accounting methods configured for commands. The following table describes examples of the accounting commands method. PrivLevel AcctMethodListName Priority Method --------- ------------------ -------- ------------ 1 default 0 radius 12 Acct12_telnet 0 tacacs+ 12 Acct12_ssh 0 radius 12 Acct12_ssh 1 none 15 default 0 radius 15 default 1 acct_rad 15 default 2 tacacs+ 15 default 3 none
dAaaAcctCommandsAcctMethodEntry1.3.6.1.4.1.171.26.150.1.3.1.2.1.1not-accessibleAn entry containing information of an accounting method within a method list which is used for accounting commands.
DAA dAaaAcctCommandsAcctPrivLevel1.3.6.1.4.1.171.26.150.1.3.1.2.1.1.1DAaaPrivilegeLevelnot-accessibleThis object indicates the privilege level of the method list.
DAA dAaaAcctCommandsAcctListName1.3.6.1.4.1.171.26.150.1.3.1.2.1.1.2DAaaMethodListNamenot-accessibleThis object indicates the name of the method list to which the method is associated.
DAA dAaaAcctCommandsAcctPriority1.3.6.1.4.1.171.26.150.1.3.1.2.1.1.3DAaaMethodPrioritynot-accessibleThis object indicates the priority of the method in a method list for accounting commands.
DAA dAaaAcctCommandsAcctMethodName1.3.6.1.4.1.171.26.150.1.3.1.2.1.1.4DAaaMethodNameread-createThis object indicates the name of the method in a method list for accounting commands.
ROW dAaaAcctCommandsAcctRowStatus1.3.6.1.4.1.171.26.150.1.3.1.2.1.1.5RowStatusread-createThe status of this table entry. Once the entry status is set to active, all writable objects of the same entry cannot be modified except destroyed by setting this object to destroy(6). A method which has lower value of dAaaAcctCommandsAcctPriority (which has higher precedence) needs be created than higher value of dAaaAcctCommandsAcctPriority.
dAaaAcctCommandsAcctApplyTable1.3.6.1.4.1.171.26.150.1.3.1.2.2not-accessibleThis table contains a list of session-specific specification to apply accounting method list for command accounting in a session (line). The following table describes examples of the entries. Session PrivLevel Applied Method List ------- --------- ------------------ telnet 1 default telnet 12 Acct12_telnet console 12 default console 15 default ssh 12 Acct12_ssh ssh 15 Acct15_ssh
dAaaAcctCommandsAcctApplyEntry1.3.6.1.4.1.171.26.150.1.3.1.2.2.1not-accessibleAn entry specifies a method list used for command accounting at the specified session and privilege level. The command accounting takes effect after a method list is properly applied.
DAA dAaaAcctCommandsAcctApplySession1.3.6.1.4.1.171.26.150.1.3.1.2.2.1.1DAaaSessionTypenot-accessibleThis object indicates the session type of the entry. The type of 'http' is not supported for commands accounting.
DAA dAaaAcctCommandsAcctApplyPrivLevel1.3.6.1.4.1.171.26.150.1.3.1.2.2.1.2DAaaPrivilegeLevelnot-accessibleThis object indicates the privilege level of the entry.
DAA dAaaAcctCommandsAcctApplyListName1.3.6.1.4.1.171.26.150.1.3.1.2.2.1.3DAaaMethodListNameread-createThis object indicates the method list name of the entry.
ROW dAaaAcctCommandsAcctApplyRowStatus1.3.6.1.4.1.171.26.150.1.3.1.2.2.1.4RowStatusread-createThe status of this table entry.
dAaaAcctExecAcct1.3.6.1.4.1.171.26.150.1.3.1.3
dAaaAcctExecAcctApplyTable1.3.6.1.4.1.171.26.150.1.3.1.3.1not-accessibleThis table contains entries to apply method lists for accounting Exec (user activities). The following table describes examples. Session AAA Method List ------- ------------------ telnet default console rad_cons ssh acct_ssh
dAaaAcctExecAcctApplyEntry1.3.6.1.4.1.171.26.150.1.3.1.3.1.1not-accessibleAn entry containing the session of an accounting application used for Exec(user activities).
DAA dAaaAcctExecAcctApplySession1.3.6.1.4.1.171.26.150.1.3.1.3.1.1.1DAaaSessionTypenot-accessibleThis object indicates the session type of the entry.
DAA dAaaAcctExecAcctApplyListName1.3.6.1.4.1.171.26.150.1.3.1.3.1.1.2DAaaMethodListNameread-createThis object indicates the method list name of the entry.
ROW dAaaAcctExecAcctApplyRowStatus1.3.6.1.4.1.171.26.150.1.3.1.3.1.1.3RowStatusread-createThe status of this table entry.
dAaaAcctMIBConformance1.3.6.1.4.1.171.26.150.1.3.2
dAaaAcctMIBCompliances1.3.6.1.4.1.171.26.150.1.3.2.1
dAaaAcctMIBCompliance1.3.6.1.4.1.171.26.150.1.3.2.1.1The compliance statement for entities which implement the DLINKSW-AAA-ACCOUNTING-MIB.
dAaaAcctMIBGroups1.3.6.1.4.1.171.26.150.1.3.2.2
dAaaAcctAccountingCommandsGroup1.3.6.1.4.1.171.26.150.1.3.2.2.1A collection of objects provides the configuration for AAA accounting commands feature.
dAaaAcctGenericMethodLstGroup1.3.6.1.4.1.171.26.150.1.3.2.2.2A collection of objects provides the configuration of generic AAA accounting method list.
dAaaAcctExecApplyGroup1.3.6.1.4.1.171.26.150.1.3.2.2.3A collection of objects providing the AAA accounting Exec application.

RFC description

D-Link AAA accounting MIB for configuring accounting methods based on Authentication, Authorization, and Accounting protocols.

Start monitoring D-Link managed switch (AAA accounting) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

Download DLINKSW-AAA-ACCOUNTING-MIB