MIBs Depot

CISCO-HARDWARE-IP-VERIFY-MIB

Registered at
1.3.6.1.4.1.9.9.804
Last updated
2012-09-04 00:00
Organization
Cisco Systems, Inc.
Revisions
2012-09-04 00:00
Namespace
cisco
Source file
CISCO-HARDWARE-IP-VERIFY-MIB
Digest
sha256:4b056035fc4e565cc7891b20b112fbc5e893519bef01237384dc7b3270a75d20

Description

This MIB module defines management objects for configuration and monitoring of the Intrusion Detection System (IDS) that checks for IP packet verification. The following terms are used throughout the MIB: IDS: Intrusion Detection System CRC: Cyclic Redundancy Check DF: Don't Fragment

Contact

Cisco Systems Customer Service Postal: 170 W Tasman Drive San Jose, CA 95134 USA Tel: +1 800 553-NETS E-mail: cs-lan-switch-snmp@cisco.com

Imports

FromSymbols
CISCO-SMIciscoMgmt
SNMPv2-CONFMODULE-COMPLIANCE, NOTIFICATION-GROUP, OBJECT-GROUP
SNMPv2-SMICounter64, MODULE-IDENTITY, NOTIFICATION-TYPE, OBJECT-IDENTITY, OBJECT-TYPE, iso
SNMPv2-TCDisplayString, TEXTUAL-CONVENTION

Imported by

Nothing in this corpus imports this module.

Load order

Every file a consumer needs in order to load this module, dependencies first.

CISCO-HARDWARE-IP-VERIFY-MIB
CISCO-SMI
SNMPv2-CONF
SNMPv2-SMI
SNMPv2-TC

Objects

NameOIDSyntaxAccessStatus
ciscoHardwareIpVerifyMIBNotifs
OBJECT-IDENTITY
1.3.6.1.4.1.9.9.804.0
ciscoHardwareIpVerifyMIBObjects
OBJECT-IDENTITY
1.3.6.1.4.1.9.9.804.1
chivIpVerifyTable
OBJECT-TYPE
A list of IDS check configuration and statistical information for each IP type and each IDS check type on the management device.
1.3.6.1.4.1.9.9.804.1.1not-accessiblecurrent
chivIpVerifyEntry
OBJECT-TYPE
An entry contains the IDS packet check configuration information and the associated counters.
1.3.6.1.4.1.9.9.804.1.1.1not-accessiblecurrent
chivIpVerifyCheckIpType
OBJECT-TYPE
This object indicates the IP address type for IDS packet check.
1.3.6.1.4.1.9.9.804.1.1.1.1INTEGER {ipv4(1), ipv6(2)}not-accessiblecurrent
chivIpVerifyCheckTypeName
OBJECT-TYPE
This object indicates the IDS packet check type which can be configured on the device. Each check type is a specific criteria. Those IP packets that matches the certain criteria are dropped. addressSrcBroadcast(1) Drop the IPv4 packet if the source address is a broadcast IPv4 address. addressSrcMulticast(2) Drop the IPv4 packet if the source address is a multicast IPv4 address. addressDestZero(3) Drop the IPv4 packet if the destination address is 0.0.0.0. addressIdentical(4) Drop the IPv4 packet if the source IPv4 address is identical to destination IPv4 address. addressSrcReserved(5) Drop the IPv4 packet if the source address is a reserved IPv4 address. addressClassE(6) Drop the IPv4 packet if either the source address or destination address is a class E IPv4 address. checksum(7) Drops the IPv4 packet if its checksum is invalid. protocol(8) Drop the IPv4 packet if the packet fragment has an invalid IP protocol number fragment(9) Drop the IPv4 packet if the packet fragment has a nonzero offset and the DF bit is active. lengthMinimum(10) Drop the IPv4 packet if the Ethernet frame length is less than the IP packet length plus four octets (the CRC length). lengthConsistent(11) Drop the IPv4 or IPv6 packet where the Ethernet frame size is greater than or equal to the IP packet length plus the Ethernet header. lengthMaximumFragment(12) Drop the IPv4 or IPv6 packet if the maximum fragment offset is greater than 65536. lengthMaximumUdp(13) Drop the IPv4 or IPv6 packet if the IP payload length is less than the UDP packet length. lengthMaximumTcp(14) Drop the IPv4 or IPv6 packet if the TCP length is greater than the IP payload length. tcpFlags(15) Drop the IPv4 packet if verification of TCP packet header fails. tcpTinyFlags(16) Drop the IPv4 or IPv6 packet if the IP fragment offset is 1, or if the IP fragment offset is 0 and the IP payload length is less than 16. version(17) Drop the IPv4 packet if the Ethertype is not set to 4 (IPv4); and drops the IPv6 packet if the Ethertype is not set to 6 (IPv6).
1.3.6.1.4.1.9.9.804.1.1.1.2INTEGER {addressSrcBroadcast(1), addressSrcMulticast(2), addressDestZero(3), addressIdentical(4), addressSrcReserved(5), addressClassE(6), checksum(7), protocol(8), fragment(9), lengthMinimum(10), lengthConsistent(11), lengthMaximumFragment(12), lengthMaximumUdp(13), lengthMaximumTcp(14), tcpFlags(15), tcpTinyFlags(16), version(17)}not-accessiblecurrent
chivIpVerifyCheckStatus
OBJECT-TYPE
This object specifies the IDS packet check configuration status.
1.3.6.1.4.1.9.9.804.1.1.1.3INTEGER {disabled(1), enabled(2)}read-writecurrent
chivIpVerifyPacketsDropped
OBJECT-TYPE
This object indicates the number of packets which has been dropped.
1.3.6.1.4.1.9.9.804.1.1.1.4Counter64read-onlycurrent
ciscoHardwareIpVerifyMIBConform
OBJECT-IDENTITY
1.3.6.1.4.1.9.9.804.2
ciscoHardwareIpVerifyMIBCompliances
OBJECT-IDENTITY
1.3.6.1.4.1.9.9.804.2.1
ciscoHardwareIpVerifyMIBGroups
OBJECT-IDENTITY
1.3.6.1.4.1.9.9.804.2.2

Conformance

NameOIDStatus
ciscoHardwareIpVerifyMIBCompliance
MODULE-COMPLIANCE
The compliance statement for the CISCO-HARDWARE-IP-VERIFY-MIB.
1.3.6.1.4.1.9.9.804.2.1.1current
ciscoHardwareIpVerifyMIBStatisticGroup
OBJECT-GROUP
A collection of objects that provides configuration and statistical information for IDS packet check.
1.3.6.1.4.1.9.9.804.2.2.1current