All MIBs › VIPTELA-POLICY › zoneBasedFirewallStatisticsTcpDropInternalInvalidTcpState
zoneBasedFirewallStatisticsTcpDropInternalInvalidTcpState
Module: VIPTELA-POLICY
OID (symbolic): VIPTELA-POLICY::zoneBasedFirewallStatisticsTcpDropInternalInvalidTcpState
OID (numeric): 1.3.6.1.4.1.41916.8.7.2.17
Node type: OBJECT-TYPE
Type: Integer32
Access: read-only
What is zoneBasedFirewallStatisticsTcpDropInternalInvalidTcpState?
A running count of TCP segments dropped because the firewall's internal state-tracking for that connection reached an invalid/unexpected state. Admins treat sustained increases as a sign of a firewall software issue or unusually malformed TCP traffic.
Examples
Walk all instances (SNMPv2c):
snmpwalk -v2c -c public <target> 1.3.6.1.4.1.41916.8.7.2.17 snmpwalk -v2c -c public <target> VIPTELA-POLICY::zoneBasedFirewallStatisticsTcpDropInternalInvalidTcpState
Get a specific instance (index 1):
snmpget -v2c -c public <target> 1.3.6.1.4.1.41916.8.7.2.17.1 snmpget -v2c -c public <target> VIPTELA-POLICY::zoneBasedFirewallStatisticsTcpDropInternalInvalidTcpState.1
Start monitoring Viptela (Cisco SD-WAN) edge routers (policer/firewall-filter drop/permit counter status) with a free 30-day trial of IPNetwork Monitor. Create custom SNMP monitor using the VIPTELA-POLICY::zoneBasedFirewallStatisticsTcpDropInternalInvalidTcpState OID value, configure state conditions and alerts, and monitor any Viptela (Cisco SD-WAN) edge routers (policer/firewall-filter drop/permit counter status) from a single console.
OID Breakdown
Upper-level ancestors (7 from the standard OID tree / other modules)
| Numeric OID | Name | Module |
|---|---|---|
| 1 | iso | LANART-AGENT |
| 1.3 | org | AirPair-MIB |
| 1.3.6 | dod | AirPair-MIB |
| 1.3.6.1 | internet | AirPair-MIB |
| 1.3.6.1.4 | private | AirPair-MIB |
| 1.3.6.1.4.1 | enterprises | AirPair-MIB |
| 1.3.6.1.4.1.41916 | viptela | VIPTELA-GLOBAL |
| Numeric OID | Name | Module |
|---|---|---|
| 1.3.6.1.4.1.41916.8 | viptela_policy | VIPTELA-POLICY |
| 1.3.6.1.4.1.41916.8.7 | zbfw | VIPTELA-POLICY |
| 1.3.6.1.4.1.41916.8.7.2 | zoneBasedFirewallStatistics | VIPTELA-POLICY |
| 1.3.6.1.4.1.41916.8.7.2.17 | zoneBasedFirewallStatisticsTcpDropInternalInvalidTcpState | VIPTELA-POLICY |