All MIBs › WATCHGUARD-IPSEC-ENDPOINT-PAIR-MIB
Organization: WatchGuard Technologies, Inc.
Last Updated: 2007-01-25
Category: WatchGuard Security Appliances
Description: Monitors WatchGuard IPsec endpoint pair configurations, tunnel states, and traffic statistics per endpoint.
Start monitoring vendor-neutral, standards-based MIB, any SNMPv3-capable network device (SNMP engine identity/boot/clock status) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.
What Is WATCHGUARD-IPSEC-ENDPOINT-PAIR-MIB?
WATCHGUARD-IPSEC-ENDPOINT-PAIR-MIB is a vendor-specific MIB from WatchGuard Technologies that models IPsec Endpoint Pairs — pairs of security gateways connected by zero or more tunnel-mode IPsec SAs — so that a management station can build a topological view of which gateways are tunneled to which. It exposes wgIpsecEndpointPairTable (indexed by wgIpsecEndpointPairIndex) with per-pair local/peer addresses, inbound/outbound SA counts (wgIpsecEndpointPairInSAs/OutSAs), aggregated traffic in Kbytes and packets, and error counters for decrypt, authentication, replay, policy, pad-value, and other receive/send failures, plus a parallel set of entity-wide totals under wgIpsecEndpointPairStatistics and a wgIpsecEndpointPairPeerIPToTunnelTable mapping peer IPs to tunnel IDs. This gives an operator both per-tunnel and aggregate visibility into IPsec health and throughput without needing to correlate individual SA-level data manually. It depends on the WATCHGUARD-MIB base OID tree for its enterprise placement. Deployed on WatchGuard Firebox/XTM appliances functioning as IPsec gateways, the WATCHGUARD-IPSEC-ENDPOINT-PAIR-MIB MIB gives network administrators a topological view of tunnel-connected security gateways.
IPNetwork Monitor allows you to monitor SNMP objects defined in WATCHGUARD-IPSEC-ENDPOINT-PAIR-MIB. Use the built-in SNMP Monitoring Browser to explore available variables, view their current values and descriptions, and select the objects you want to monitor. You can then create SNMP monitors, configure thresholds, and receive alerts when monitored values change.
Supported Devices
- WatchGuard Firebox/XTM security appliances
Monitoring Examples
An operator polls wgIpsecEndpointPairTable to review wgIpsecEndpointPairInSAs/OutSAs and wgIpsecEndpointPairInAccKbytes/OutAccKbytes for a given local/peer address pair; rising wgIpsecEndpointPairDecryptErrors or wgIpsecEndpointPairAuthErrors on that same row would indicate a misconfigured or failing tunnel between the two gateways.
What Can Be Monitored
- IPsec endpoint pair inbound/outbound SA counts
- aggregated tunnel traffic byte/packet counters
- decrypt/auth/replay/policy/pad error counters
- peer-IP-to-tunnel mapping table
- entity-wide global IPsec tunnel statistics
Imported Objects
From SNMPv2-SMI
| Counter32 | |
| Gauge32 | |
| Integer32 | |
| IpAddress | |
| MODULE-IDENTITY | |
| OBJECT-IDENTITY | |
| OBJECT-TYPE | |
| Unsigned32 | |
| enterprises |
From WATCHGUARD-MIB
| watchguard | OBJECT-IDENTITY |
How to Use in IPNetwork Monitor
Example using wgIpsecEndpointPairTotalInAccKbytes OID:
OIDs
RFC description
Describes IPSec endpoint pair information and tunnel mode security associations between WatchGuard security gateways.
Start monitoring WatchGuard Firebox/XTM security appliances (IPsec endpoint-pair SA-count/traffic/error status) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.