cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2829
Views
0
Helpful
1
Replies

SNMP for active VPN tunnels on IOS

john.thompson
Level 1
Level 1

There is an SNMP MIB for the number of active VPN tunnels on ASA (1.3.6.1.4.1.9.9.171.1.3.1.1.0), which is perfect for our ASA's, however we have a lot of VPNs terminated on a 2951 (and some on a 2811 and 2801), and this SNMP value returns 0 when i poll the IOS devices.

How can i make the IOS devices populate this SNMP value?

1 Reply 1

ngoldwat
Level 4
Level 4

Hi,

Check this document out:

IPsec and IKE MIB Support for Cisco VRF-Aware IPsec

Specifically

Note

The IPSec and IKE MIB Support for the Cisco VRF-Aware IPSec feature is only supported as of Cisco IOS Release 12.2(33)SRA.

MIBs Supported by the IPSec and IKE MIB Support for Cisco VRF-Aware IPSec Feature

The following MIBs are supported by the IPSec and IKE MIB Support for the Cisco VRF-Aware IPSec feature:

CISCO-IPSEC-FLOW-MONITOR-MIB

ISCO-IPSEC-MIB

The CISCO-IPSEC-POLICY-MAP-MIB continues  to be supported. However, because this MIB applies to the entire router  rather than to a specific VPN VRF instance, it is not VRF-aware;  therefore, polling of the object identifiers (OIDs) that belong to this  MIB is accomplished with respect to the global VRF context.

Review Cisco Networking for a $25 gift card