RAPID-CITY :: rcnTacacsAuthFailure

MIB Reference — IPNetwork Monitor

All MIBsRAPID-CITYrcnTacacsAuthFailure

rcnTacacsAuthFailure

Module: RAPID-CITY

OID (symbolic): RAPID-CITY::rcnTacacsAuthFailure

OID (numeric): 1.3.6.1.4.1.2272.1.21.0.74

Node type: NOTIFICATION-TYPE

Description:

TACACS+ authentication failed for user

What is rcnTacacsAuthFailure?

This OID represents an alarm notification triggered when a user fails to authenticate using TACACS+ (a centralized authentication system). It indicates a failed login attempt. A security team would receive this alert to investigate unauthorized access attempts.

Examples

Send this trap to an SNMP manager — replace <manager> with the IP or hostname of your monitoring server (SNMPv2c):

snmptrap -v2c -c public <manager> '' RAPID-CITY::rcnTacacsAuthFailure
snmptrap -v2c -c public <manager> '' 1.3.6.1.4.1.2272.1.21.0.74

Listen for incoming traps on the manager host (-f keeps it in the foreground, -Lo prints to stdout — useful for testing):

snmptrapd -f -Lo -c /dev/null authCommunity log public

Example snmptrapd log entry:

zoo11-linux.zoo [UDP: [192.168.30.111]:49968->[192.168.30.10]:162]:
  DISMAN-EVENT-MIB::sysUpTimeInstance = Timeticks: (223627568) 25 days, 21:11:15.68
  SNMPv2-MIB::snmpTrapOID.0 = OID: RAPID-CITY::rcnTacacsAuthFailure

OID Breakdown

Numeric OIDNameModule
1isoLANART-AGENT
1.3orgBIANCA-BRICK-PPP-MIB
1.3.6dodBIANCA-BRICK-PPP-MIB
1.3.6.1internetBIANCA-BRICK-PPP-MIB
1.3.6.1.4privateBIANCA-BRICK-PPP-MIB
1.3.6.1.4.1enterprisesANIROOT-MIB
1.3.6.1.4.1.2272rapidCityRAPID-CITY
1.3.6.1.4.1.2272.1rcMgmtRAPID-CITY
1.3.6.1.4.1.2272.1.21rcTrapsRAPID-CITY
1.3.6.1.4.1.2272.1.21.0rcTrapsMibRAPID-CITY
1.3.6.1.4.1.2272.1.21.0.74rcnTacacsAuthFailureRAPID-CITY