All MIBs › RAPID-CITY › rcPasswordChange
rcPasswordChange
Module: RAPID-CITY
OID (symbolic): RAPID-CITY::rcPasswordChange
OID (numeric): 1.3.6.1.4.1.2272.1.21.22
Node type: NOTIFICATION-TYPE
Description:
A rcPasswordChange trap signifies that the SNMPv2 entity, acting in an agent role, has detected that the one of the cli password is changed.
What is rcPasswordChange?
This notification fires whenever a CLI (command-line interface) password is changed on the device, alerting administrators to potential unauthorized access or legitimate maintenance. The device sends this trap to a monitoring system as a security event. An operator reviews these notifications to maintain an audit trail and detect suspicious password changes.
Examples
Send this trap to an SNMP manager — replace <manager> with the IP or hostname of your monitoring server (SNMPv2c):
snmptrap -v2c -c public <manager> '' RAPID-CITY::rcPasswordChange snmptrap -v2c -c public <manager> '' 1.3.6.1.4.1.2272.1.21.22
Listen for incoming traps on the manager host (-f keeps it in the foreground, -Lo prints to stdout — useful for testing):
snmptrapd -f -Lo -c /dev/null authCommunity log public
Example snmptrapd log entry:
zoo11-linux.zoo [UDP: [192.168.30.111]:55124->[192.168.30.10]:162]: DISMAN-EVENT-MIB::sysUpTimeInstance = Timeticks: (220580180) 25 days, 12:43:21.80 SNMPv2-MIB::snmpTrapOID.0 = OID: RAPID-CITY::rcPasswordChange
SNMPv3 example:
snmptrap -v3 -l authPriv -u snmpv3user -a SHA -A "AuthPass1" -x AES -X "PrivPass1" <manager> '' RAPID-CITY::rcPasswordChange
OID Breakdown
| Numeric OID | Name | Module |
|---|---|---|
| 1 | iso | LANART-AGENT |
| 1.3 | org | BIANCA-BRICK-PPP-MIB |
| 1.3.6 | dod | BIANCA-BRICK-PPP-MIB |
| 1.3.6.1 | internet | BIANCA-BRICK-PPP-MIB |
| 1.3.6.1.4 | private | BIANCA-BRICK-PPP-MIB |
| 1.3.6.1.4.1 | enterprises | ANIROOT-MIB |
| 1.3.6.1.4.1.2272 | rapidCity | RAPID-CITY |
| 1.3.6.1.4.1.2272.1 | rcMgmt | RAPID-CITY |
| 1.3.6.1.4.1.2272.1.21 | rcTraps | RAPID-CITY |
| 1.3.6.1.4.1.2272.1.21.22 | rcPasswordChange | RAPID-CITY |