There is an SNMP MIB for the number of active VPN tunnels on ASA (1.3.6.1.4.1.9.9.171.1.3.1.1.0), which is perfect for our ASA's, however we have a lot of VPNs terminated on a 2951 (and some on a 2811 and 2801), and this SNMP value returns 0 when i poll the IOS devices.
How can i make the IOS devices populate this SNMP value?
Hi,
Check this document out:
IPsec and IKE MIB Support for Cisco VRF-Aware IPsec
Note
The IPSec and IKE MIB Support for the Cisco VRF-Aware IPSec feature is only supported as of Cisco IOS Release 12.2(33)SRA.
The following MIBs are supported by the IPSec and IKE MIB Support for the Cisco VRF-Aware IPSec feature:
•CISCO-IPSEC-FLOW-MONITOR-MIB
•ISCO-IPSEC-MIB
•The CISCO-IPSEC-POLICY-MAP-MIB continues to be supported. However, because this MIB applies to the entire router rather than to a specific VPN VRF instance, it is not VRF-aware; therefore, polling of the object identifiers (OIDs) that belong to this MIB is accomplished with respect to the global VRF context.