| OID symbolic | OID numeric | Type | Access | Description |
| dAaaSrvMIBConformance | 1.3.6.1.4.1.171.26.150.1.2.2 | | | |
| dAaaSrvMIBNotifications | 1.3.6.1.4.1.171.26.150.1.2.0 | | | |
| dAaaSrvMIBObjects | 1.3.6.1.4.1.171.26.150.1.2.1 | | | |
| dasClear | 1.3.6.1.4.1.171.26.150.1.2.1.6 | | | |
| INT dasClearAllServerStat | 1.3.6.1.4.1.171.26.150.1.2.1.6.4 | INTEGER | read-write | This object is used to clear all AAA server statistics when set
to 'clear'.
No action is taken if this object is set to 'noOp'.
When read, the value 'noOp' is returned. |
| INT dasClearServerStatAction | 1.3.6.1.4.1.171.26.150.1.2.1.6.1.1.1 | INTEGER | read-write | This object is used to clear statistics of an AAA server when set
to 'clear'.
No action is taken if this object is set to 'noOp'.
When read, the value 'noOp' is returned. |
| DLI dasClearServerStatByGroup | 1.3.6.1.4.1.171.26.150.1.2.1.6.2 | DlinkAAAGroupName | read-write | This object is used to clear AAA server statistics based on group name.
Setting this object to the group name which you want to clear.
When read, a zero length string is returned. |
| DLI dasClearServerStatByProtocol | 1.3.6.1.4.1.171.26.150.1.2.1.6.3 | DlinkAAAProtocol | read-write | This object is used to clear AAA server statistics based on protocol.
Setting this object to the protocol which you want to clear.
When read, none(0) is returned. |
| dasClearServerStatEntry | 1.3.6.1.4.1.171.26.150.1.2.1.6.1.1 | | not-accessible | An entry which can be used to clear the statistics of the AAA server. |
| dasClearServerStatTable | 1.3.6.1.4.1.171.26.150.1.2.1.6.1 | | not-accessible | This table is used to clear statistics of the AAA servers. |
| dasClearStatGroup | 1.3.6.1.4.1.171.26.150.1.2.2.2.6 | | | Objects for clear the AAA server statistics. |
| dasConfig | 1.3.6.1.4.1.171.26.150.1.2.1.1 | | | |
| dasConfigGroup | 1.3.6.1.4.1.171.26.150.1.2.2.2.2 | | | Objects for configuring the AAA servers. |
| dasGroup | 1.3.6.1.4.1.171.26.150.1.2.1.3 | | | |
| dasGroupEntry | 1.3.6.1.4.1.171.26.150.1.2.1.3.1.1 | | not-accessible | An AAA server group configuration identified by its protocol,
and its name.
An entry is created/removed when a server group is defined
or undefined with configuration commands via CLI
or by issuing appropriate sets to this table using snmp. |
| DLI dasGroupName | 1.3.6.1.4.1.171.26.150.1.2.1.3.1.1.2 | DlinkAAAGroupName | not-accessible | The server group name. |
| DLI dasGroupProtocol | 1.3.6.1.4.1.171.26.150.1.2.1.3.1.1.1 | DlinkAAAProtocol | not-accessible | The variable denotes the protocol used by the
managed device with the AAA group corresponding to
this entry in the table. |
| ROW dasGroupRowStatus | 1.3.6.1.4.1.171.26.150.1.2.1.3.1.1.3 | RowStatus | read-create | The status of this table entry. Once the entry status is
set to active, the associated entry cannot be modified
except destroyed by setting this object to destroy(6). |
| dasGroupServerEntry | 1.3.6.1.4.1.171.26.150.1.2.1.3.2.1 | | not-accessible | An AAA server group configuration identified by its protocol,
its name and its index.
An entry is created/removed when a server group is defined
or undefined with configuration commands via CLI
or by issuing appropriate sets to this table using snmp.
A management station wishing to create an entry should
first generate a random number to be used as the index
to this sparse table.
dasGroupSrvPriority is automatically assigned once the entry is
made active and reflects the relative priority of the
defined server with respect to already configured servers.
Newly-created servers will be assigned the lowest priority.
To reassign server priorities to existing server entries,
it may be necessary to destroy and recreate entries in order
of priority.
Upon reload, dasGroupSrvIndex values may be changed, but the
priorities that were saved before reload will be retained,
with lowest priority number corresponding to the higher
priority servers. |
| ROW dasGroupServerRowStatus | 1.3.6.1.4.1.171.26.150.1.2.1.3.2.1.5 | RowStatus | read-create | The status of this table entry. Once the entry status is
set to active, the associated entry cannot be modified
except destroyed by setting this object to destroy(6). |
| dasGroupServerTable | 1.3.6.1.4.1.171.26.150.1.2.1.3.2 | | not-accessible | This table consists of a list of configurations for each
AAA server group. An entry is created/removed when a new server group
is created/removed.
The following table describes examples of AAA server groups.
Protocol Name SrvIndex AddressType IPv6Address Priority
---------- ---------- -------- ------------- ------------- --------
tacacsplus tac_con 1 ipv6 2000::2 1
tacacsplus tac_telnet 2 ipv4 10.0.0.1 2
tacacsplus tac_telnet 3 ipv4 192.168.1.254 3
radius rad_ssh 1 ipv4 20.0.0.12 1
radius rad_ssh 2 ipv4 20.0.0.13 2
radius rad_ssh 3 ipv4 20.0.0.14 3
radius rad_ssh 4 ipv4 20.0.0.15 4 |
| IPt dasGroupSrcAddrType | 1.3.6.1.4.1.171.26.150.1.2.1.5.1.1.1 | InetAddressType | not-accessible | This object indicates the type of the address which will be used
as source address for sending RADIUS packets. |
| ROW dasGroupSrcIfConfigRowStatus | 1.3.6.1.4.1.171.26.150.1.2.1.5.1.1.3 | RowStatus | read-create | The status of this table entry. |
| dasGroupSrcIfEntry | 1.3.6.1.4.1.171.26.150.1.2.1.5.1.1 | | not-accessible | An AAA group source interface configuration identified
by its protocol and its group name.
An entry is created/removed when a source interface setting
is defined or undefined with configuration commands via CLI
or by issuing appropriate sets to this table using snmp.
Note: The group name of radius and tacacs+ are reserved group
names and its corresponding source interface is global setting
for RADIUS and TACACS+ servers respectively. If both global
and group-specific have the source interface settings,
the setting of group-specific takes precedence. |
| NUM dasGroupSrcIfIndex | 1.3.6.1.4.1.171.26.150.1.2.1.5.1.1.2 | InterfaceIndex | read-create | This object indicates the ifIndex of the interface whose IP/IPv6
address will be used as source IP/IPv6 address for sending RADIUS packets. |
| dasGroupSrcIfTable | 1.3.6.1.4.1.171.26.150.1.2.1.5.1 | | not-accessible | This table consists of a list of source interface configurations
for each AAA server group. |
| IP dasGroupSrvAddress | 1.3.6.1.4.1.171.26.150.1.2.1.3.2.1.3 | InetAddress | read-create | The address of the server of the entry. |
| IPt dasGroupSrvAddrType | 1.3.6.1.4.1.171.26.150.1.2.1.3.2.1.2 | InetAddressType | read-create | This object indicates the type of network address denoted
in dasGroupSrvAddress object. |
| U32 dasGroupSrvIndex | 1.3.6.1.4.1.171.26.150.1.2.1.3.2.1.1 | Unsigned32 | not-accessible | A management station wishing to initiate a new AAA server
group configuration should use a random value for this object
when creating an instance of dasGroupEntry.
The RowStatus semantics of the dasGroupConfigRowStatus object
will prevent access conflicts. |
| U32 dasGroupSrvPriority | 1.3.6.1.4.1.171.26.150.1.2.1.3.2.1.4 | Unsigned32 | read-only | A number that indicates the priority of the server in
this group. Lower numbers indicate higher priority. |
| dasGroupTable | 1.3.6.1.4.1.171.26.150.1.2.1.3.1 | | not-accessible | This table consists of a list of configurations for each
AAA server group. An entry is created/removed when a new server group
is created/removed.
The following table describes examples of AAA groups.
Protocol Name
---------- ----------
tacacsplus tac_con
tacacsplus tac_telnet
radius rad_acct
radius rad_ssh |
| ROW dasGroupVrfConfigRowStatus | 1.3.6.1.4.1.171.26.150.1.2.1.4.1.1.2 | RowStatus | read-create | The status of this table entry. |
| dasGroupVrfEntry | 1.3.6.1.4.1.171.26.150.1.2.1.4.1.1 | | not-accessible | An AAA group VRF configuration identified by its protocol
and its group name.
An entry is created/removed when a VRF setting is defined
or undefined with configuration commands via CLI
or by issuing appropriate sets to this table using snmp.
When a group VRF configuration is deleted, indicates the
server group will use the global (default) routing table. |
| VRF dasGroupVrfName | 1.3.6.1.4.1.171.26.150.1.2.1.4.1.1.1 | VrfName | read-create | The VRF name of the entry. |
| dasGroupVrfTable | 1.3.6.1.4.1.171.26.150.1.2.1.4.1 | | not-accessible | This table shows current VRF configurations for each
AAA server group, allows existing VRF to be removed
and new ones to be created.
The following table describes the examples of VRF setting for AAA
server groups.
Protocol group Name VRF name
---------- ---------- ----------
tacacsplus tac_con vrf1
tacacsplus tac_telnet vrf_taplus
radius rad_acct vrf_radius
radius rad_ssh vrf_100 |
| dasMIBCompliance | 1.3.6.1.4.1.171.26.150.1.2.2.1.1 | | | The compliance statement for entities which implement the
DLINKSW-AAA-SERVER-MIB. |
| dasMIBCompliances | 1.3.6.1.4.1.171.26.150.1.2.2.1 | | | |
| dasMIBGroups | 1.3.6.1.4.1.171.26.150.1.2.2.2 | | | |
| U32 dasRadiusServerDeadTime | 1.3.6.1.4.1.171.26.150.1.2.1.1.2 | Unsigned32 | read-write | This variable controls the default duration
of time to skip the unresponsive server.
The valid range is 0 to 1440 (24 hours).
When setting to 0, the unresponsive server
will not be marked as dead.
The default value is 0. |
| U32 dasServerAcctPort | 1.3.6.1.4.1.171.26.150.1.2.1.1.1.1.6 | Unsigned32 | read-create | UDP/TCP port used for accounting service in the configuration
For TACACS+, the value of dasServerAcctPort is ignored.
dasServerAuthenPort will be used instead.
Default value is 1813 for RADIUS. |
| IP dasServerAddress | 1.3.6.1.4.1.171.26.150.1.2.1.1.1.1.4 | InetAddress | read-create | The address of the server. |
| IPt dasServerAddrType | 1.3.6.1.4.1.171.26.150.1.2.1.1.1.1.3 | InetAddressType | read-create | This object indicates the address type of the AAA server. |
| U32 dasServerAuthenPort | 1.3.6.1.4.1.171.26.150.1.2.1.1.1.1.5 | Unsigned32 | read-create | UDP/TCP port used for authentication in the configuration
For TACACS+, this object should be explicitly set.
Default value is 1812 for RADIUS. |
| dasServerConfigEntry | 1.3.6.1.4.1.171.26.150.1.2.1.1.1.1 | | not-accessible | An entry consists of an AAA server configuration.
An entry is created/removed when a server is defined
or undefined with configuration commands via CLI
or by issuing appropriate SNMP sets.
A management station wishing to create an entry should
first generate a random number to be used as the index
to this sparse table. The station should then create the
associated instance of the row status and row index objects.
dasServerPriority is automatically assigned once the entry is
made active and reflects the relative priority of the
defined server with respect to already configured servers.
Newly-created servers will be assigned the lowest priority.
To reassign server priorities to existing server entries,
it may be necessary to destroy and recreate entries in order
of priority.
Upon reload, dasServerIndex values may be changed, but the
priorities that were saved before reload will be retained,
with lowest priority number corresponding to the higher
priority servers. |
| dasServerConfigTable | 1.3.6.1.4.1.171.26.150.1.2.1.1.1 | | not-accessible | This table consists of a list of configurations for each
AAA server. An entry is created/removed when a new server
is created/removed.
The following table describes examples of AAA servers.
Protocol Index AddressType IPv6Address AuthenPort AcctPort Key Priority
---------- ----- ----------- ------------- ---------- -------- ------ --------
tacacsplus 1 ipv6 2000::2 49 0 1
tacacsplus 2 ipv4 10.0.0.1 49 0 3
tacacsplus 3 ipv4 192.168.1.254 49 0 2
radius 1 ipv4 192.168.1.254 1812 1813 1
radius 2 ipv4 20.0.0.12 1812 1813 2 |
| U32 dasServerIndex | 1.3.6.1.4.1.171.26.150.1.2.1.1.1.1.2 | Unsigned32 | not-accessible | A management station wishing to initiate a new AAA server
configuration should use a random value for this object
when creating an instance of dasServerConfigEntry. |
| STR dasServerKey | 1.3.6.1.4.1.171.26.150.1.2.1.1.1.1.7 | DisplayString | read-create | The server key to be used with this server.
The maximum length for RADIUS is 32 characters.
The maximum length for TACACS+ is 254 characters.
When read, a zero length string will be returned for security reasons. |
| U32 dasServerPriority | 1.3.6.1.4.1.171.26.150.1.2.1.1.1.1.10 | Unsigned32 | read-only | A number that indicates the priority of the server in
this entry. Lower numbers indicate higher priority. |
| DLI dasServerProtocol | 1.3.6.1.4.1.171.26.150.1.2.1.1.1.1.1 | DlinkAAAProtocol | not-accessible | The variable indicates the protocol of the corresponding AAA server. |
| U32 dasServerRetransmit | 1.3.6.1.4.1.171.26.150.1.2.1.1.1.1.9 | Unsigned32 | read-create | The retransmit times of requests to the server
when no response is received.
For TACACS+, the value of dasServerRetransmit is ignored.
Default value is 2 for RADIUS. |
| ROW dasServerRowStatus | 1.3.6.1.4.1.171.26.150.1.2.1.1.1.1.99 | RowStatus | read-create | The status of this entry. |
| U32 dasServerTimeout | 1.3.6.1.4.1.171.26.150.1.2.1.1.1.1.8 | Unsigned32 | read-create | The time in seconds for waiting server reply.
Default value is 5 seconds. |
| dasSrcIf | 1.3.6.1.4.1.171.26.150.1.2.1.5 | | | |
| dasSrcIfGroup | 1.3.6.1.4.1.171.26.150.1.2.2.2.5 | | | Objects for configuring the AAA source interface setting. |
| dasSrvGroupGroup | 1.3.6.1.4.1.171.26.150.1.2.2.2.3 | | | Objects for configuring the AAA server groups. |
| dasStatistics | 1.3.6.1.4.1.171.26.150.1.2.1.2 | | | |
| C32 dasTacplusReferenceCount | 1.3.6.1.4.1.171.26.150.1.2.1.2.1.1.5 | Counter32 | read-only | The number of packets received from the TACACS+ server. |
| C32 dasTacplusSocketCloses | 1.3.6.1.4.1.171.26.150.1.2.1.2.1.1.2 | Counter32 | read-only | The number of successfully closed TCP socket attempts. |
| C32 dasTacplusSocketOpensEx | 1.3.6.1.4.1.171.26.150.1.2.1.2.1.1.1 | Counter32 | read-only | The number of successful TCP socket connections to the TACACS+ server. |
| dasTacplusStatisticsEntry | 1.3.6.1.4.1.171.26.150.1.2.1.2.1.1 | | not-accessible | An entry consists of statistical information about a particular server.
Objects in this table are read-only and appear automatically whenever a
TACACS+ server in the dasServerConfigTable is made active. |
| dasTacplusStatisticsGroup | 1.3.6.1.4.1.171.26.150.1.2.2.2.1 | | | Objects for providing AAA tacacs+ server statistics and status. |
| dasTacplusStatisticsTable | 1.3.6.1.4.1.171.26.150.1.2.1.2.1 | | not-accessible | This table consists of a list of statistics for each TACACS+ server.
The following table describes examples of TACACS+ servers statistics.
Protocol Index SocketOpens SocketCloses TotalPktSend TotalPktRecv ReferenceCount
---------- ----- ----------- ------------ ------------ ------------ --------------
tacacsplus 1 1 1 0 0 0
tacacsplus 2 5 5 20 20 5
tacacsplus 3 10 10 25 25 10 |
| C32 dasTacplusTotalPktRecv | 1.3.6.1.4.1.171.26.150.1.2.1.2.1.1.4 | Counter32 | read-only | The number of packets received from the TACACS+ server. |
| C32 dasTacplusTotalPktSent | 1.3.6.1.4.1.171.26.150.1.2.1.2.1.1.3 | Counter32 | read-only | The number of packets sent to the TACACS+ server |
| dasVrf | 1.3.6.1.4.1.171.26.150.1.2.1.4 | | | |
| dasVrfGroup | 1.3.6.1.4.1.171.26.150.1.2.2.2.4 | | | Objects for configuring the AAA VRF setting. |
| dlinkSwAAAServerMIB | 1.3.6.1.4.1.171.26.150.1.2 | | | This MIB provides configuration and statistics reflecting the state
of AAA Server operation within the device and AAA communications
with external servers.
AAA stands for authentication, authorization, and accounting
The AAA Server MIB provides the following information:
1) A Table for configuring AAA servers
2) Identities of external AAA servers
3) Distinct statistics for each AAA function
4) Status of servers providing AAA functions
A server is defined as a logical entity which provides any of the
three AAA functions. A TACACS+ server consists of all three
functions with a single IP address and single TCP port.
A RADIUS server consists of the authentication/accounting pair
with a single IP address but distinct UDP ports, or it may be
just one of authentication or accounting. It is possible to have
two distinct RADIUS servers at the same IP address, one providing
authentication only, the other accounting only.
Note: Regarding RADIUS server statistics please refer to
RADIUS-AUTH-CLIENT-MIB (RFC2618) and RADIUS-ACCT-CLIENT-MIB (RFC2620) |