MIBs Depot

Dell-BRIDGE-SECURITY

Registered at
1.3.6.1.4.1.89.112
Last updated
2006-04-02 00:00
Namespace
dell
Source file
Dell-BRIDGE-SECURITY
Digest
sha256:1a2be3dca5f5c8a2df270fac24e73e377a8b65e434944641cc900c68f3c9d117

Description

The private MIB module definition for DHCP Snoop, ARP Inspection and Ip source Guard features.

Imports

FromSymbols
Dell-MIBrnd
IF-MIBInterfaceIndex, ifIndex
Q-BRIDGE-MIBVlanId
SNMPv2-CONFMODULE-COMPLIANCE, NOTIFICATION-GROUP
SNMPv2-SMICounter32, IpAddress, MODULE-IDENTITY, NOTIFICATION-TYPE, OBJECT-IDENTITY, OBJECT-TYPE, Unsigned32, iso
SNMPv2-TCDisplayString, MacAddress, RowStatus, TEXTUAL-CONVENTION, TruthValue

Imported by

Nothing in this corpus imports this module.

Load order

Every file a consumer needs in order to load this module, dependencies first.

BRIDGE-MIB
Dell-BRIDGE-SECURITY
Dell-MIB
IANAifType-MIB
IF-MIB
P-BRIDGE-MIB
Q-BRIDGE-MIB
RFC1158-MIB
RFC1271-MIB
RMON-MIB
RMON2-MIB
SNMP-FRAMEWORK-MIB
SNMPv2-CONF
SNMPv2-MIB
SNMPv2-SMI
SNMPv2-TC
TOKEN-RING-RMON-MIB

Textual conventions

NameOIDSyntaxAccessStatus
ProtocolFilteringMap
TEXTUAL-CONVENTION
This TC describes the list of protocol to be filtered. The bit 'all(0)' indicates all Cisco protocols in range 0100.0ccc.ccc0 - 0100.0ccc.cccf The bit 'cdp(1)' indicates Cisco CDP protocol. Identified by destination mac address: 0100.0ccc.cccc and protocol type:0x2000. The bit 'vtp(2)' indicates Cisco VTP protocol. Identified by destination mac address: 0100.0ccc.cccc and protocol type:0x2003. The bit 'dtp(3)' indicates Cisco DTP protocol. Identified by destination mac address: 0100.0ccc.cccc and protocol type:0x2004. The bit 'udld (4)' indicates Cisco UDLD protocol. Identified by destination mac address: 0100.0ccc.cccc and protocol type:0x0111. The bit 'pagp(5)' indicates Cisco PAGP protocol. Identified by destination mac address: 0100.0ccc.cccc and protocol type: 0x0104. The bit 'sstp(6)' indicates Cisco SSTP protocol. Identified by destination mac address: 0100.0ccc.cccd.
current
RlIpArpInspectListNameType
TEXTUAL-CONVENTION
Ip arp inspection list name type.
current
RlIpDhcpSnoopType
TEXTUAL-CONVENTION
Ip Dhcp Snoop entry type.
current
RlIpSourceGuardFailReason
TEXTUAL-CONVENTION
Ip IP Source Guard entry reason.
current
RlIpSourceGuardStatus
TEXTUAL-CONVENTION
Ip IP Source Guard entry status.
current
RlIpSourceGuardType
TEXTUAL-CONVENTION
Ip IP Source Guard entry type.
current

Objects

NameOIDSyntaxAccessStatus
rlIpDhcpSnoop
OBJECT-IDENTITY
1.3.6.1.4.1.89.112.1
rlIpDhcpSnoopMibVersion
OBJECT-TYPE
MIB's version, the current version is 1.
1.3.6.1.4.1.89.112.1.1INTEGERread-onlycurrent
rlIpDhcpSnoopEnable
OBJECT-TYPE
Specifies a system DHCP Snoop enable state.
1.3.6.1.4.1.89.112.1.2INTEGER {enable(1), disable(2)}read-writecurrent
rlIpDhcpSnoopFileEnable
OBJECT-TYPE
Specifies a system DHCP Snoop file enable state.
1.3.6.1.4.1.89.112.1.3INTEGER {enable(1), disable(2)}read-writecurrent
rlIpDhcpSnoopClearAction
OBJECT-TYPE
Used to clear DHCP Snoop Table.
1.3.6.1.4.1.89.112.1.4INTEGER {noAction(1), clearNow(2)}read-writecurrent
rlIpDhcpSnoopFileUpdateTime
OBJECT-TYPE
Configures in seconds the period of time between file updates. The valid range is 600 - 86400.
1.3.6.1.4.1.89.112.1.5INTEGER (600..86400)read-writecurrent
rlIpDhcpSnoopVerifyMacAddress
OBJECT-TYPE
Configures on an un-trusted port whether the source MAC address in a DHCP packet matches the client hardware address.
1.3.6.1.4.1.89.112.1.6INTEGER {enable(1), disable(2)}read-writecurrent
rlIpDhcpSnoopCurrentEntiresNumber
OBJECT-TYPE
Contain the current number of DHCP snooping entries for all types.
1.3.6.1.4.1.89.112.1.7INTEGERread-onlycurrent
rlIpDhcpOpt82InsertionEnable
OBJECT-TYPE
Specifies a DHCP option 82 insertion enable state.
1.3.6.1.4.1.89.112.1.8INTEGER {enable(1), disable(2)}read-writecurrent
rlIpDhcpOpt82RxOnUntrustedEnable
OBJECT-TYPE
Specifies a DHCP option 82 receive on untrusted port enable state.
1.3.6.1.4.1.89.112.1.9INTEGER {enable(1), disable(2)}read-writecurrent
rlIpDhcpSnoopStaticTable
OBJECT-TYPE
The table specifies all DHCP Snoop Static (configured by user) entries. The entry contains a local IP address of the DHCP client, a Port interface to which a DHCP client is connected to the switch.
1.3.6.1.4.1.89.112.1.10not-accessiblecurrent
rlIpDhcpSnoopStaticEntry
OBJECT-TYPE
The row definition for this table.
1.3.6.1.4.1.89.112.1.10.1not-accessiblecurrent
rlIpDhcpSnoopStaticVLANTag
OBJECT-TYPE
A DHCP Snoop Static entry vlan tag.
1.3.6.1.4.1.89.112.1.10.1.1VlanIdnot-accessiblecurrent
rlIpDhcpSnoopStaticMACAddress
OBJECT-TYPE
A DHCP Snoop Static entry mac address
1.3.6.1.4.1.89.112.1.10.1.2MacAddressnot-accessiblecurrent
rlIpDhcpSnoopStaticIPAddress
OBJECT-TYPE
A DHCP Snoop Static entry IP address.
1.3.6.1.4.1.89.112.1.10.1.3IpAddressread-writecurrent
rlIpDhcpSnoopStaticPortInterface
OBJECT-TYPE
A DHCP Snoop Static entry Port interface.
1.3.6.1.4.1.89.112.1.10.1.4InterfaceIndexread-writecurrent
rlIpDhcpSnoopStaticRowStatus
OBJECT-TYPE
A status can be destroy, active or createAndGo
1.3.6.1.4.1.89.112.1.10.1.5RowStatusread-writecurrent
rlIpDhcpSnoopTable
OBJECT-TYPE
DHCP Snoop entry. Use to add/delete a dynamic entries and to view all entries (dynamic and static)
1.3.6.1.4.1.89.112.1.11not-accessiblecurrent
rlIpDhcpSnoopEntry
OBJECT-TYPE
The row definition for this table.
1.3.6.1.4.1.89.112.1.11.1not-accessiblecurrent
rlIpDhcpSnoopVLANTag
OBJECT-TYPE
A DHCP Snoop entry vlan tag.
1.3.6.1.4.1.89.112.1.11.1.1VlanIdnot-accessiblecurrent
rlIpDhcpSnoopMACAddress
OBJECT-TYPE
A DHCP Snoop entry mac address
1.3.6.1.4.1.89.112.1.11.1.2MacAddressnot-accessiblecurrent
rlIpDhcpSnoopType
OBJECT-TYPE
A DHCP Snoop entry type: static or dynamic.
1.3.6.1.4.1.89.112.1.11.1.3RlIpDhcpSnoopTyperead-writecurrent
rlIpDhcpSnoopLeaseTime
OBJECT-TYPE
A DHCP Snoop lease time. For static entry the lease time is 0xFFFFFFFF
1.3.6.1.4.1.89.112.1.11.1.4Unsigned32read-writecurrent
rlIpDhcpSnoopIPAddress
OBJECT-TYPE
The IP address of the DHCP client referred to in this table entry.
1.3.6.1.4.1.89.112.1.11.1.5IpAddressread-writecurrent
rlIpDhcpSnoopPortInterface
OBJECT-TYPE
Identifies the port Interface ifindex, which connected to DHCP client identified with the entry.
1.3.6.1.4.1.89.112.1.11.1.6InterfaceIndexread-writecurrent
rlIpDhcpSnoopRowStatus
OBJECT-TYPE
Entry status. A valid status is CreateandGo or Delete.
1.3.6.1.4.1.89.112.1.11.1.7RowStatusread-writecurrent
rlIpDhcpSnoopEnableVlanTable
OBJECT-TYPE
An Ip Dhcp Snooping enabled VLAN table.
1.3.6.1.4.1.89.112.1.12not-accessiblecurrent
rlIpDhcpSnoopEnableVlanEntry
OBJECT-TYPE
An Ip Dhcp Snooping enabled VLAN entry.
1.3.6.1.4.1.89.112.1.12.1not-accessiblecurrent
rlIpDhcpSnoopEnableVlanTag
OBJECT-TYPE
A DHCP Snoop entry vlan tag.
1.3.6.1.4.1.89.112.1.12.1.1VlanIdnot-accessiblecurrent
rlIpDhcpSnoopEnableVlanRowStatus
OBJECT-TYPE
Entry status. A valid status is CreateandGo and Delete.
1.3.6.1.4.1.89.112.1.12.1.2RowStatusread-writecurrent
rlIpDhcpSnoopTrustedPortTable
OBJECT-TYPE
DHCP Snoop Trusted ports entry. The entry created when port is configured as trusted.
1.3.6.1.4.1.89.112.1.13not-accessiblecurrent
rlIpDhcpSnoopTrustedPortEntry
OBJECT-TYPE
The row definition for this table.
1.3.6.1.4.1.89.112.1.13.1not-accessiblecurrent
rlIpDhcpSnoopTrustedPortRowStatus
OBJECT-TYPE
Entry status. A valid status is CreateandGo or Delete.
1.3.6.1.4.1.89.112.1.13.1.2RowStatusread-writecurrent
rlIpSourceGuard
OBJECT-IDENTITY
1.3.6.1.4.1.89.112.2
rlIpSourceGuardMibVersion
OBJECT-TYPE
MIB's version, the current version is 1.
1.3.6.1.4.1.89.112.2.1INTEGERread-onlycurrent
rlIpSourceGuardEnable
OBJECT-TYPE
FALSE - There is no Ip Source Guard in the system. TRUE - Ip Source Guard is enabled on system.
1.3.6.1.4.1.89.112.2.2INTEGER {enable(1), disable(2)}read-writecurrent
rlIpSourceGuardRetryToInsert
OBJECT-TYPE
When setted to retryToInsertNow all IP Source Guard inactive entries due to resource problem reinserted in the Policy. On get always return noAction.
1.3.6.1.4.1.89.112.2.3INTEGER {noAction(0), retryToInsertNow(1)}read-writecurrent
rlIpSourceGuardRetryTime
OBJECT-TYPE
Configures in seconds the period of time the application retries to insert inactive by resource problem rules. The actual range is 10-600. 0 used to sign that the timer is not active.
1.3.6.1.4.1.89.112.2.4INTEGER (0..600)read-writecurrent
rlIpSourceGuardPortTable
OBJECT-TYPE
IP Source Guard ports entry. The entry created when IP Source Guard enabled on port.
1.3.6.1.4.1.89.112.2.5not-accessiblecurrent
rlIpSourceGuardPortEntry
OBJECT-TYPE
The row definition for this table.
1.3.6.1.4.1.89.112.2.5.1not-accessiblecurrent
rlIpSourceGuardPortRowStatus
OBJECT-TYPE
Entry status. A valid status is CreateAndGo or Delete.
1.3.6.1.4.1.89.112.2.5.1.2RowStatusread-writecurrent
rlIpSourceGuardTable
OBJECT-TYPE
IP Source Guard entry. Use to view all entries (dynamic and static)
1.3.6.1.4.1.89.112.2.6not-accessiblecurrent
rlIpSourceGuardEntry
OBJECT-TYPE
The row definition for this table.
1.3.6.1.4.1.89.112.2.6.1not-accessiblecurrent
rlIpSourceGuardIPAddress
OBJECT-TYPE
The IP address of the Ip Source Guard entry.
1.3.6.1.4.1.89.112.2.6.1.1IpAddressnot-accessiblecurrent
rlIpSourceGuardVLANTag
OBJECT-TYPE
A Ip Source Guard entry vlan tag.
1.3.6.1.4.1.89.112.2.6.1.2VlanIdnot-accessiblecurrent
rlIpSourceGuardMACAddress
OBJECT-TYPE
A Ip Source Guard entry mac address
1.3.6.1.4.1.89.112.2.6.1.3MacAddressread-onlycurrent
rlIpSourceGuardType
OBJECT-TYPE
A Ip Source Guard entry type: static or dynamic.
1.3.6.1.4.1.89.112.2.6.1.4RlIpSourceGuardTyperead-onlycurrent
rlIpSourceGuardStatus
OBJECT-TYPE
Identifies the status of Ip Source Guard entry.
1.3.6.1.4.1.89.112.2.6.1.5RlIpSourceGuardStatusread-onlycurrent
rlIpSourceGuardFailReason
OBJECT-TYPE
Identifies the reason for in-activity of Ip Source Guard entry.
1.3.6.1.4.1.89.112.2.6.1.6RlIpSourceGuardFailReasonread-onlycurrent
rlIpSourceGuardPermittedRuleCounterTable
OBJECT-TYPE
The table includes, per vlan, the IP Source Guard permitted rules counters.
1.3.6.1.4.1.89.112.2.7not-accessiblecurrent
rlIpSourceGuardPermittedRuleCounterEntry
OBJECT-TYPE
The row definition for this table.
1.3.6.1.4.1.89.112.2.7.1not-accessiblecurrent
rlIpSourceGuardPermittedRuleCounterVLANTag
OBJECT-TYPE
Ip Source Guard permitted rules counters entry Vlan tag.
1.3.6.1.4.1.89.112.2.7.1.1VlanIdnot-accessiblecurrent
rlIpSourceGuardPermittedRuleCounterNumOfStaticRules
OBJECT-TYPE
Number of static rules added by IP Source Guard for the permitted Hosts
1.3.6.1.4.1.89.112.2.7.1.2Counter32read-onlycurrent
rlIpSourceGuardPermittedRuleCounterNumOfDhcpRules
OBJECT-TYPE
Number of rules added by IP Source Guard for the permitted Hosts, as a result of DHCP Snooping dynamic information.
1.3.6.1.4.1.89.112.2.7.1.3Counter32read-onlycurrent
rlIpArpInspect
OBJECT-IDENTITY
1.3.6.1.4.1.89.112.3
rlIpArpInspectMibVersion
OBJECT-TYPE
MIB's version, the current version is 1.
1.3.6.1.4.1.89.112.3.1INTEGERread-onlycurrent
rlIpArpInspectEnable
OBJECT-TYPE
Specifies a system ARP Inspection enable state.
1.3.6.1.4.1.89.112.3.2INTEGER {enable(1), disable(2)}read-writecurrent
rlIpArpInspectLogInterval
OBJECT-TYPE
Specify the minimal interval between successive ARP SYSLOG messages. 0 - message is immediately generated. 0xFFFFFFFF - messages would not be generated. A legal range is 0-86400.
1.3.6.1.4.1.89.112.3.3Unsigned32read-writecurrent
rlIpArpInspectValidation
OBJECT-TYPE
Defined a specific check on incoming ARP packets: Source MAC: Compare the source MAC address in the Ethernet header against the sender MAC address in the ARP body. This check is performed on both ARP requests and responses. Destination MAC: Compare the destination MAC address in the Ethernet header against the target MAC address in ARP body. This check is performed for ARP responses. IP addresses: Compare the ARP body for invalid and unexpected IP addresses. Addresses include 0.0.0.0, 255.255.255.255, and all IP multicast addresses.
1.3.6.1.4.1.89.112.3.4INTEGER {enable(1), disable(2)}read-writecurrent
rlIpArpInspectListTable
OBJECT-TYPE
The table specifies all ARP Inspection List entries. The entry contains a list name, list IP address, a list Mac address.
1.3.6.1.4.1.89.112.3.5not-accessiblecurrent
rlIpArpInspectListEntry
OBJECT-TYPE
The row definition for this table.
1.3.6.1.4.1.89.112.3.5.1not-accessiblecurrent
rlIpArpInspectListName
OBJECT-TYPE
The Name of the Access List.
1.3.6.1.4.1.89.112.3.5.1.1RlIpArpInspectListNameTypenot-accessiblecurrent
rlIpArpInspectListIPAddress
OBJECT-TYPE
ARP Inspection List IP address.
1.3.6.1.4.1.89.112.3.5.1.2IpAddressnot-accessiblecurrent
rlIpArpInspectListMACAddress
OBJECT-TYPE
ARP Inspection List mac address
1.3.6.1.4.1.89.112.3.5.1.3MacAddressread-writecurrent
rlIpArpInspectListRowStatus
OBJECT-TYPE
A status can be destroy, active or createAndGo
1.3.6.1.4.1.89.112.3.5.1.4RowStatusread-writecurrent
rlIpArpInspectEnableVlanTable
OBJECT-TYPE
An Ip ARP Inspection enabled VLAN table.
1.3.6.1.4.1.89.112.3.6not-accessiblecurrent
rlIpArpInspectEnableVlanEntry
OBJECT-TYPE
An Ip ARP Inspection enabled VLAN entry.
1.3.6.1.4.1.89.112.3.6.1not-accessiblecurrent
rlIpArpInspectEnableVlanTag
OBJECT-TYPE
An Ip ARP Inspection entry vlan tag.
1.3.6.1.4.1.89.112.3.6.1.1VlanIdnot-accessiblecurrent
rlIpArpInspectAssignedListName
OBJECT-TYPE
An Ip ARP Inspection assigned ACL name.
1.3.6.1.4.1.89.112.3.6.1.2RlIpArpInspectListNameTyperead-writecurrent
rlIpArpInspectEnableVlanRowStatus
OBJECT-TYPE
Entry status. A valid status is CreateandGo and Delete.
1.3.6.1.4.1.89.112.3.6.1.3RowStatusread-writecurrent
rlIpArpInspectVlanNumOfArpForwarded
OBJECT-TYPE
Total number of forwarded ARP packets, packets which were validated by ARP inspection
1.3.6.1.4.1.89.112.3.6.1.4Counter32read-onlycurrent
rlIpArpInspectVlanNumOfArpDropped
OBJECT-TYPE
Number of dropped ARP packets, which were validated by ARP inspection (mismatch , not-found and dropped for any reason)
1.3.6.1.4.1.89.112.3.6.1.5Counter32read-onlycurrent
rlIpArpInspectVlanNumOfArpMismatched
OBJECT-TYPE
Number of dropped ARP packets, which were validated by ARP inspection and inconsistency was found for IP and MAC (mismatch)
1.3.6.1.4.1.89.112.3.6.1.6Counter32read-onlycurrent
rlIpArpInspectVlanClearCountersAction
OBJECT-TYPE
If true, clear (set to zero) all Arp Inspection counters: rlIpArpInspectVlanNumOfArpForwarded , rlIpArpInspectVlanNumOfArpDropped and rlIpArpInspectVlanNumOfArpMismatched
1.3.6.1.4.1.89.112.3.6.1.7TruthValueread-writecurrent
rlIpArpInspectTrustedPortTable
OBJECT-TYPE
ARP Inspection Trusted ports entry. The entry created when port is configured as trusted.
1.3.6.1.4.1.89.112.3.7not-accessiblecurrent
rlIpArpInspectTrustedPortEntry
OBJECT-TYPE
The row definition for this table.
1.3.6.1.4.1.89.112.3.7.1not-accessiblecurrent
rlIpArpInspectTrustedPortRowStatus
OBJECT-TYPE
Entry status. A valid status is CreateandGo or Delete.
1.3.6.1.4.1.89.112.3.7.1.2RowStatusread-writecurrent
rlIpArpInspectClearCountersAction
OBJECT-TYPE
If true, clear (set to zero) on all vlans: all Arp Inspection counters: rlIpArpInspectVlanNumOfArpForwarded , rlIpArpInspectVlanNumOfArpDropped and rlIpArpInspectVlanNumOfArpMismatched
1.3.6.1.4.1.89.112.3.8TruthValueread-writecurrent
rlProtocolFiltering
OBJECT-IDENTITY
1.3.6.1.4.1.89.112.4
rlProtocolFilteringTable
OBJECT-TYPE
Protocol filter configuration entry
1.3.6.1.4.1.89.112.4.1not-accessiblecurrent
rlProtocolFilteringEntry
OBJECT-TYPE
The row definition for this table.
1.3.6.1.4.1.89.112.4.1.1not-accessiblecurrent
rlProtocolFilteringList
OBJECT-TYPE
The list of protocol to be filtered.
1.3.6.1.4.1.89.112.4.1.1.1ProtocolFilteringMapread-writecurrent
rlProtocolFilteringRowStatus
OBJECT-TYPE
A status can be destroy, active or createAndGo
1.3.6.1.4.1.89.112.4.1.1.2RowStatusread-writecurrent