All MIBs › ZXR10-SNMP-SECURITY-MIB
Organization: ZTE Corp.
Last Updated: 2015-04-14
Category: ZTE ZXR10 Security and Access Control
Description: Defines ZTE ZXR10 SNMPv3 security configuration including USM user accounts, authentication, and privacy settings.
Start monitoring vendor-neutral, standards-based MIB, any SNMPv3-capable network device (SNMP engine identity/boot/clock status) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.
What Is ZXR10-SNMP-SECURITY-MIB?
ZXR10-SNMP-SECURITY-MIB is a vendor-specific module for ZTE's ZXR10 line of carrier switches and routers, covering the security state of the SNMP management channel itself rather than general device operation. It exposes data on SNMPv3 access attempts, including bad community strings, the source IP of failed or suspicious requests, and staged security state transitions with timestamps and reasons. In terms of hardware/software status monitoring, its relevance is narrow: it does not track CPU, memory, or environmental sensors, but it does track the operational status of the management/security subsystem, such as how many times authentication has been retried and what stage a security policy change is in. It works alongside standard SNMPv3 USM and VACM constructs defined in RFC 3414/3415, extending them with ZTE-specific auditing objects. It is typically deployed by network operators who want tighter visibility into unauthorized SNMP access attempts against ZXR10 switches in service-provider or enterprise core networks, where ZXR10-SNMP-SECURITY-MIB SNMP monitoring adds an extra layer of audit visibility over the management channel itself.
IPNetwork Monitor allows you to monitor SNMP objects defined in ZXR10-SNMP-SECURITY-MIB. Use the built-in SNMP Monitoring Browser to explore available variables, view their current values and descriptions, and select the objects you want to monitor. You can then create SNMP monitors, configure thresholds, and receive alerts when monitored values change.
Supported Devices
- ZTE ZXR10 switches
- ZTE ZXR10 routers
Monitoring Examples
An administrator would poll secBadCommunity and secIP to see which community string and source address were used in a rejected SNMP request, helping identify brute-force or misconfigured polling attempts against the ZXR10. secCurrentStage and secChangeStage/secChangeReason let an operator confirm that a security policy change (e.g., tightening SNMP access) completed as expected and why it was triggered. secTryCount rising unexpectedly, combined with securityTrap notifications, would signal an active probing attempt worth investigating.
What Can Be Monitored
- failed SNMP authentication attempts
- source IP of rejected requests
- security policy change stage
- reason for security state change
- retry count of failed access
- security trap notifications
Imported Objects
From SNMPv2-SMI
| Counter32 | |
| Integer32 | |
| MODULE-IDENTITY | |
| NOTIFICATION-TYPE | |
| OBJECT-TYPE | |
| Unsigned32 | |
| enterprises |
From SNMPv2-TC
| TEXTUAL-CONVENTION |
OIDs
RFC description
Monitors SNMP security events including failed authentication attempts, security stages (normal/watch/quiet), and changes in security state.
Start monitoring ZTE ZXR10 switches, ZTE ZXR10 routers (SNMP access-attempt/security-state-transition status) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.