Hello Everyone,
I am trying to monitor the Firewall and a Cisco IOS IPS running on a Cisco 2951 router via SNMP.
SNMP has been successfully configured on the router. For testing purposes, I have been using snmpwalk on Linux to retrieve SNMP data:
snmpwalk -v 2c -c public [IP_Address] [OID]
It appears that the router supports many Cisco MIBs. I have been using the Cisco SNMP Object Navigator to find additional information about the individual modules and variables:
http://tools.cisco.com/Support/SNMP/do/BrowseOID.do?local=en
It appears that Cisco IPS Sensor devices support four MIB modules for obtaining data:
- CISCO-CIDS-MIB (Cisco Intrusion Detection System MIB)
- CISCO-PROCESS-MIB
- CISCO-ENHANCED-MEMPOOL-MIB
- CISCO-ENTITY-ALARM-MIB
However, it appears that the 2951 router does not support the CISCO-CIDS-MIB. Is there an equivalent MIB module for Cisco IOS IPS? If so, which variables would be useful to monitor?
It appears that the 2951 router does support the CISCO-UNIFIED-FIREWALL-MIB-V1SMI. Which variables in this MIB would be useful to monitor?
In general, how are you monitoring your Firewall or IOS IPS?
Thanks!