OA-ZBFW-STATUS-MIB

MIB Reference — IPNetwork Monitor · Updated September 09, 2026

All MIBsOA-ZBFW-STATUS-MIB

Organization: OneAccess

Last Updated: 2010-12-16

Category: QoS and Policy

Description: Monitors zone-based firewall session state and policy match statistics on OneAccess CPE router platforms.

Start monitoring vendor-neutral, standards-based MIB, any SNMPv3-capable network device (SNMP engine identity/boot/clock status) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

What Is OA-ZBFW-STATUS-MIB?

OA-ZBFW-STATUS-MIB is a OneAccess (now part of Ekinops) enterprise MIB for monitoring the zone-based firewall (ZBFW) feature on OneAccess CPE routers, tracking session-level connection state and packet-processing statistics for firewall policy enforcement. It exposes runtime performance counters such as connections created, closed, timed out, and the maximum concurrent connections allowed, plus packet counters for how many packets were processed versus passed by the firewall. This is squarely a software/service health MIB: it lets an administrator watch whether the firewall's connection table is nearing capacity, whether sessions are timing out abnormally, and whether the packet-filtering engine itself is functioning (processing vs. dropping traffic), all of which point to firewall software health rather than physical hardware. No dependency on other standard MIBs is apparent from the available data, suggesting this is a self-contained proprietary status module. It is typically deployed on OneAccess branch/edge router CPE devices that provide integrated zone-based firewall security at customer premises. Network engineers evaluating or troubleshooting this functionality can download the OA-ZBFW-STATUS-MIB file directly to load it into their MIB browser.

IPNetwork Monitor allows you to monitor SNMP objects defined in OA-ZBFW-STATUS-MIB. Use the built-in SNMP Monitoring Browser to explore available variables, view their current values and descriptions, and select the objects you want to monitor. You can then create SNMP monitors, configure thresholds, and receive alerts when monitored values change.

Supported Devices

  • OneAccess CPE routers with zone-based firewall

Monitoring Examples

An administrator would poll oacZbfwRtrConnPerfSSCTable/oacZbfwRtrConnPerfEntry for oacZbfwRouterConnectionsCreated, oacZbfwRouterConnectionsClosed, and oacZbfwRouterConnectionsTimedOut, comparing the running total against oacZbfwRouterConnectionsMax to see if the connection table is approaching its ceiling. Separately, oacZbfwPacketsSSCTable/oacZbfwPacketsEntry exposes oacZbfwPacketsProcessed and oacZbfwPacketsPassed, and a growing gap between processed and passed packets combined with a high oacZbfwRouterConnectionsTimedOut count would indicate the firewall is aggressively dropping or timing out legitimate sessions, pointing to a misconfigured policy or resource exhaustion.

What Can Be Monitored

  • firewall connections created/closed/timed out
  • maximum concurrent connections
  • packets processed
  • packets passed
  • connection table utilization
Imported Objects

From ONEACCESS-GLOBAL-REG

oacExpIMZbFwOBJECT-IDENTITY
oacMIBModulesOBJECT-IDENTITY

From SNMP-FRAMEWORK-MIB

SnmpAdminString

From SNMPv2-SMI

Counter32
Integer32
IpAddress
MODULE-IDENTITY
OBJECT-TYPE
TimeTicks
Unsigned32

From SNMPv2-TC

DisplayString

How to Use in IPNetwork Monitor

Example using oacZbfwRouterConnectionsCreated OID:

Select an OneAccess CPE router (zone-based firewall session/connection status) as the target host to create a monitor — the SNMP service should be up and running on it. Click New Monitor, then check SNMP Custom on the Favorites tab, click Next, and confirm the host. On the next page, click Select... to open the built-in SNMP MIB Browser and type oacZbfwRouterConnectionsCreated into the Find box to locate it in the OID tree, selecting the specific row/instance you want to monitor since this is a table column, then select it and click OK. It reports the number of (half-open) connections created by the zone-based firewall. On the monitor's Main parameters page you can set the target's SNMP port (default 161), credentials, polling interval, and other settings — see the SNMP Monitor help for details. On the State conditions and Alerting tabs, configure when the monitor should change state and trigger an alert; since this is a Counter32-type OID, Value bounds is the most useful condition here — trigger an alert if the counter increases sharply between polls relative to its normal baseline, since an unexpected spike often reflects a real change in traffic or activity. Click Finish to create the monitor; you can adjust any parameter later.
OIDs

RFC description

OneAccess Zone-Based Firewall status MIB. Monitors router connection performance and firewall statistics.

Start monitoring OneAccess CPE router (zone-based firewall session/connection status) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

Download OA-ZBFW-STATUS-MIB