WATCHGUARD-IPSEC-ENDPOINT-PAIR-MIB

MIB Reference — IPNetwork Monitor · Updated September 11, 2026

All MIBsWATCHGUARD-IPSEC-ENDPOINT-PAIR-MIB

Organization: WatchGuard Technologies, Inc.

Last Updated: 2007-01-25

Category: WatchGuard Security Appliances

Description: Monitors WatchGuard IPsec endpoint pair configurations, tunnel states, and traffic statistics per endpoint.

Start monitoring vendor-neutral, standards-based MIB, any SNMPv3-capable network device (SNMP engine identity/boot/clock status) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

What Is WATCHGUARD-IPSEC-ENDPOINT-PAIR-MIB?

WATCHGUARD-IPSEC-ENDPOINT-PAIR-MIB is a vendor-specific MIB from WatchGuard Technologies that models IPsec Endpoint Pairs — pairs of security gateways connected by zero or more tunnel-mode IPsec SAs — so that a management station can build a topological view of which gateways are tunneled to which. It exposes wgIpsecEndpointPairTable (indexed by wgIpsecEndpointPairIndex) with per-pair local/peer addresses, inbound/outbound SA counts (wgIpsecEndpointPairInSAs/OutSAs), aggregated traffic in Kbytes and packets, and error counters for decrypt, authentication, replay, policy, pad-value, and other receive/send failures, plus a parallel set of entity-wide totals under wgIpsecEndpointPairStatistics and a wgIpsecEndpointPairPeerIPToTunnelTable mapping peer IPs to tunnel IDs. This gives an operator both per-tunnel and aggregate visibility into IPsec health and throughput without needing to correlate individual SA-level data manually. It depends on the WATCHGUARD-MIB base OID tree for its enterprise placement. Deployed on WatchGuard Firebox/XTM appliances functioning as IPsec gateways, the WATCHGUARD-IPSEC-ENDPOINT-PAIR-MIB MIB gives network administrators a topological view of tunnel-connected security gateways.

IPNetwork Monitor allows you to monitor SNMP objects defined in WATCHGUARD-IPSEC-ENDPOINT-PAIR-MIB. Use the built-in SNMP Monitoring Browser to explore available variables, view their current values and descriptions, and select the objects you want to monitor. You can then create SNMP monitors, configure thresholds, and receive alerts when monitored values change.

Supported Devices

  • WatchGuard Firebox/XTM security appliances

Monitoring Examples

An operator polls wgIpsecEndpointPairTable to review wgIpsecEndpointPairInSAs/OutSAs and wgIpsecEndpointPairInAccKbytes/OutAccKbytes for a given local/peer address pair; rising wgIpsecEndpointPairDecryptErrors or wgIpsecEndpointPairAuthErrors on that same row would indicate a misconfigured or failing tunnel between the two gateways.

What Can Be Monitored

  • IPsec endpoint pair inbound/outbound SA counts
  • aggregated tunnel traffic byte/packet counters
  • decrypt/auth/replay/policy/pad error counters
  • peer-IP-to-tunnel mapping table
  • entity-wide global IPsec tunnel statistics
Imported Objects

From SNMPv2-SMI

Counter32
Gauge32
Integer32
IpAddress
MODULE-IDENTITY
OBJECT-IDENTITY
OBJECT-TYPE
Unsigned32
enterprises

From WATCHGUARD-MIB

watchguardOBJECT-IDENTITY

How to Use in IPNetwork Monitor

Example using wgIpsecEndpointPairTotalInAccKbytes OID:

Select a WatchGuard Firebox/XTM security appliance (IPsec endpoint-pair SA-count/traffic/error status) as the target host to create a monitor — the SNMP service should be up and running on it. Click New Monitor, then check SNMP Custom on the Favorites tab, click Next, and confirm the host. On the next page, click Select... to open the built-in SNMP MIB Browser and type wgIpsecEndpointPairTotalInAccKbytes into the Find box to locate it in the OID tree, then select it and click OK. The total inbound IPsec traffic of this entity. On the monitor's Main parameters page you can set the target's SNMP port (default 161), credentials, polling interval, and other settings — see the SNMP Monitor help for details. On the State conditions and Alerting tabs, configure when the monitor should change state and trigger an alert; since this is a Counter32-type OID, Value bounds is the most useful condition here — trigger an alert if the counter increases sharply between polls relative to its normal baseline (in Kbytes), since an unexpected spike often reflects a real change in traffic or activity. Click Finish to create the monitor; you can adjust any parameter later.
OIDs

RFC description

Describes IPSec endpoint pair information and tunnel mode security associations between WatchGuard security gateways.

Start monitoring WatchGuard Firebox/XTM security appliances (IPsec endpoint-pair SA-count/traffic/error status) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

Download WATCHGUARD-IPSEC-ENDPOINT-PAIR-MIB