MIBs Depot

HH3C-ACL-MIB

Registered at
1.3.6.1.4.1.25506.2.8
Last updated
2014-10-20 10:00
Organization
New H3C Technologies Co., Ltd.
Revisions
2014-10-20 10:00
Namespace
comware
Source file
HH3C-ACL-MIB
Digest
sha256:eef46e137bf093891cf7c2dd8d683b044ad200b860118c4d5157ef01777cf705

Description

ACL management information base for managing devices that support access control list and packet filtering.

Contact

Platform Team New H3C Technologies Co., Ltd. Hai-Dian District Beijing P.R. China http://www.h3c.com Zip:100085

Imports

FromSymbols
HH3C-OID-MIBhh3cCommon
INET-ADDRESS-MIBInetAddress, InetAddressPrefixLength, InetAddressType
SNMPv2-CONFMODULE-COMPLIANCE, NOTIFICATION-GROUP
SNMPv2-SMICounter32, Counter64, Integer32, IpAddress, MODULE-IDENTITY, NOTIFICATION-TYPE, OBJECT-IDENTITY, OBJECT-TYPE, Unsigned32, iso
SNMPv2-TCDisplayString, MacAddress, RowStatus, TEXTUAL-CONVENTION, TruthValue

Imported by

Nothing in this corpus imports this module.

Load order

Every file a consumer needs in order to load this module, dependencies first.

HH3C-ACL-MIB
HH3C-OID-MIB
INET-ADDRESS-MIB
SNMPv2-CONF
SNMPv2-SMI
SNMPv2-TC

Textual conventions

NameOIDSyntaxAccessStatus
AddressFlag
TEXTUAL-CONVENTION
Address flag to select IPv6 Address. Default value is 'invalid'. t64SrcAddrPre64DestAddrPre(1): The mean of the enumeration 't64SrcAddrPre64DestAddrPre' is that system gets the 64 bits prefix of source address and the 64 bits prefix of destination address. t64SrcAddrPre64DestAddrSuf(2): The mean of the enumeration 't64SrcAddrPre64DestAddrSuf' is that system gets the 64 bits prefix of source address and the 64 bits suffix of destination address. t64SrcAddrSuf64DestAddrPre(3): The mean of the enumeration 't64SrcAddrSuf64DestAddrPre' is that system gets the 64 bits suffix of source address and the 64 bits prefix of destination address. t64SrcAddrSuf64DestAddrSuf(4): The mean of the enumeration 't64SrcAddrSuf64DestAddrSuf' is that system gets the 64 bits suffix of source address and the 64 bits suffix of destination address. t128SourceAddress(5): The mean of the enumeration 't128SourceAddress' is that system gets the 128 bits of source address. t128DestinationAddress(6): The mean of the enumeration 't128SourceAddress' is that system gets the 128 bits of destination address.
current
CounterClear
TEXTUAL-CONVENTION
cleared: Reset the value of the rule's counter. nouse: 'nouse' will be returned when getting.
current
DSCPValue
TEXTUAL-CONVENTION
The value of DSCP. <0-63> Value of DSCP af11 Specify Assured Forwarding 11 service(10) af12 Specify Assured Forwarding 12 service(12) af13 Specify Assured Forwarding 13 service(14) af21 Specify Assured Forwarding 21 service(18) af22 Specify Assured Forwarding 22 service(20) af23 Specify Assured Forwarding 23 service(22) af31 Specify Assured Forwarding 31 service(26) af32 Specify Assured Forwarding 32 service(28) af33 Specify Assured Forwarding 33 service(30) af41 Specify Assured Forwarding 41 service(34) af42 Specify Assured Forwarding 42 service(36) af43 Specify Assured Forwarding 43 service(38) be Specify Best Effort service(0) cs1 Specify Class Selector 1 service(8) cs2 Specify Class Selector 2 service(16) cs3 Specify Class Selector 3 service(24) cs4 Specify Class Selector 4 service(32) cs5 Specify Class Selector 5 service(40) cs6 Specify Class Selector 6 service(48) cs7 Specify Class Selector 7 service(56) ef Specify Expedited Forwarding service(46)
current
DirectionType
TEXTUAL-CONVENTION
The direction: inbound or outbound.
current
FragmentFlag
TEXTUAL-CONVENTION
Type of fragment. invalid(0) fragment(1) Frag-Type Fragment fragmentSubseq(2) Frag-Type Fragment-subsequent nonFragment(3) Frag-Type non-Fragment nonSubseq(4) Frag-Type non-subsequent Default value is 'invalid'.
current
PortOp
TEXTUAL-CONVENTION
The operation type of TCP and UDP. lt : Less than given port number. eq : Equal to given port number. gt : Greater than given port number. neq : Not equal to given port number. range : Between two port numbers. Default value is 'invalid'.
current
RuleAction
TEXTUAL-CONVENTION
The value of rule's action. permit: The packet matching the rule will be permitted to forward. deny: The packet matching the rule will be denied.
current
TCPFlag
TEXTUAL-CONVENTION
Type of TCP. invalid(0) tcpack(1) TCP protocol ACK Packet tcpfin(2) TCP protocol PIN Packet tcppsh(3) TCP protocol PUSH Packet tcprst(4) TCP protocol RST Packet tcpsyn(5) TCP protocol SYN Packet tcpurg(6) TCP protocol URG Packet Default value is 'invalid'.
current

Objects

NameOIDSyntaxAccessStatus
hh3cAclMibObjects
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.8.1
hh3cAclMode
OBJECT-TYPE
Access-list mode.
1.3.6.1.4.1.25506.2.8.1.1INTEGER {linkBased(1), ipBased(2)}read-writecurrent
hh3cAclNumGroupTable
OBJECT-TYPE
Configure the match-order of number-acl group.
1.3.6.1.4.1.25506.2.8.1.2not-accessiblecurrent
hh3cAclNumGroupEntry
OBJECT-TYPE
Define the index of hh3cAclNumGroupTable.
1.3.6.1.4.1.25506.2.8.1.2.1not-accessiblecurrent
hh3cAclNumGroupAclNum
OBJECT-TYPE
The index of number-acl group Interface type:1000..1999 Basic type:2000..2999 Advance type:3000..3999 Link type:4000..4999 User type:5000..5999
1.3.6.1.4.1.25506.2.8.1.2.1.1Integer32 (1000..5999)not-accessiblecurrent
hh3cAclNumGroupMatchOrder
OBJECT-TYPE
The match-order of number-acl group.
1.3.6.1.4.1.25506.2.8.1.2.1.2INTEGER {config(1), auto(2)}read-createcurrent
hh3cAclNumGroupSubitemNum
OBJECT-TYPE
The number of number-acl group's node.
1.3.6.1.4.1.25506.2.8.1.2.1.3Integer32read-onlycurrent
hh3cAclNumGroupDescription
OBJECT-TYPE
The description of this acl group.
1.3.6.1.4.1.25506.2.8.1.2.1.4OCTET STRING (SIZE(0..127))read-writecurrent
hh3cAclNumGroupCountClear
OBJECT-TYPE
Reset the value of rules' counter, which belong to this group.
1.3.6.1.4.1.25506.2.8.1.2.1.5INTEGER {cleared(1), nouse(2)}read-createcurrent
hh3cAclNumGroupRowStatus
OBJECT-TYPE
RowStatus, now support three state: CreateAndGo, Active, Destroy.
1.3.6.1.4.1.25506.2.8.1.2.1.6RowStatusread-createcurrent
hh3cAclNameGroupTable
OBJECT-TYPE
Create acl-group that identified by name.
1.3.6.1.4.1.25506.2.8.1.3not-accessiblecurrent
hh3cAclNameGroupEntry
OBJECT-TYPE
Define the index of hh3cAclNameGroupTable.
1.3.6.1.4.1.25506.2.8.1.3.1not-accessiblecurrent
hh3cAclNameGroupIndex
OBJECT-TYPE
The index of name-acl group.
1.3.6.1.4.1.25506.2.8.1.3.1.1Integer32 (10000..12999)not-accessiblecurrent
hh3cAclNameGroupCreateName
OBJECT-TYPE
The name of name-acl group.
1.3.6.1.4.1.25506.2.8.1.3.1.2OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclNameGroupTypes
OBJECT-TYPE
The type of name-acl group.
1.3.6.1.4.1.25506.2.8.1.3.1.3INTEGER {basic(1), advanced(2), ifBased(3), link(4), user(5)}read-createcurrent
hh3cAclNameGroupMatchOrder
OBJECT-TYPE
The match-order of name-acl group.
1.3.6.1.4.1.25506.2.8.1.3.1.4INTEGER {config(1), auto(2)}read-createcurrent
hh3cAclNameGroupSubitemNum
OBJECT-TYPE
The number of name-acl group's node.
1.3.6.1.4.1.25506.2.8.1.3.1.5Integer32 (0..128)read-onlycurrent
hh3cAclNameGroupRowStatus
OBJECT-TYPE
RowStatus, now support three state: CreateAndGo, Active, Destroy.
1.3.6.1.4.1.25506.2.8.1.3.1.6RowStatusread-createcurrent
hh3cAclBasicRuleTable
OBJECT-TYPE
Configure the rule for basic acl group.
1.3.6.1.4.1.25506.2.8.1.4not-accessiblecurrent
hh3cAclBasicRuleEntry
OBJECT-TYPE
Define the index of hh3cAclBasicRuleTable.
1.3.6.1.4.1.25506.2.8.1.4.1not-accessiblecurrent
hh3cAclBasicAclNum
OBJECT-TYPE
The index of basic acl group.
1.3.6.1.4.1.25506.2.8.1.4.1.1Integer32 (0 | 2000..2999 | 10000..12999)not-accessiblecurrent
hh3cAclBasicSubitem
OBJECT-TYPE
The subindex of basic acl group.
1.3.6.1.4.1.25506.2.8.1.4.1.2Integer32 (0..65535)not-accessiblecurrent
hh3cAclBasicAct
OBJECT-TYPE
The action of basic acl rule.
1.3.6.1.4.1.25506.2.8.1.4.1.3INTEGER {permit(1), deny(2)}read-createcurrent
hh3cAclBasicSrcIp
OBJECT-TYPE
Source IP-address of basic acl rule.
1.3.6.1.4.1.25506.2.8.1.4.1.4IpAddressread-createcurrent
hh3cAclBasicSrcWild
OBJECT-TYPE
Source IP-address wild of basic acl rule.
1.3.6.1.4.1.25506.2.8.1.4.1.5IpAddressread-createcurrent
hh3cAclBasicTimeRangeName
OBJECT-TYPE
The Time-range of basic acl rule.
1.3.6.1.4.1.25506.2.8.1.4.1.6OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclBasicFragments
OBJECT-TYPE
The flag of matching fragmented packet.
1.3.6.1.4.1.25506.2.8.1.4.1.7TruthValueread-createcurrent
hh3cAclBasicLog
OBJECT-TYPE
The flag of log.
1.3.6.1.4.1.25506.2.8.1.4.1.8TruthValueread-createcurrent
hh3cAclBasicEnable
OBJECT-TYPE
The rule is active or not. true : active false : inactive
1.3.6.1.4.1.25506.2.8.1.4.1.9TruthValueread-onlycurrent
hh3cAclBasicCount
OBJECT-TYPE
The count of matched by basic rule.
1.3.6.1.4.1.25506.2.8.1.4.1.10Counter32read-onlycurrent
hh3cAclBasicCountClear
OBJECT-TYPE
Reset the value of counter.
1.3.6.1.4.1.25506.2.8.1.4.1.11INTEGER {cleared(1), nouse(2)}read-createcurrent
hh3cAclBasicRowStatus
OBJECT-TYPE
RowStatus, now support three state: CreateAndGo, Active, Destroy.
1.3.6.1.4.1.25506.2.8.1.4.1.12RowStatusread-createcurrent
hh3cAclAdvancedRuleTable
OBJECT-TYPE
Configure the rule for advanced acl group.
1.3.6.1.4.1.25506.2.8.1.5not-accessiblecurrent
hh3cAclAdvancedRuleEntry
OBJECT-TYPE
Define the index of hh3cAclAdvancedRuleTable.
1.3.6.1.4.1.25506.2.8.1.5.1not-accessiblecurrent
hh3cAclAdvancedAclNum
OBJECT-TYPE
The index of advanced acl group.
1.3.6.1.4.1.25506.2.8.1.5.1.1Integer32 (0 | 3000..3999 | 10000..12999)not-accessiblecurrent
hh3cAclAdvancedSubitem
OBJECT-TYPE
The subindex of advanced acl group.
1.3.6.1.4.1.25506.2.8.1.5.1.2Integer32 (0..65535)not-accessiblecurrent
hh3cAclAdvancedAct
OBJECT-TYPE
The action of Advance acl rule.
1.3.6.1.4.1.25506.2.8.1.5.1.3INTEGER {permit(1), deny(2)}read-createcurrent
hh3cAclAdvancedProtocol
OBJECT-TYPE
The protocol-type of advanced acl group. <1-255> Protocol number gre GRE tunneling(47) icmp Internet Control Message Protocol(1) igmp Internet Group Management Protocol(2) ip Any IP protocol ipinip IP in IP tunneling(4) ospf OSPF routing protocol(89) tcp Transmission Control Protocol (6) udp User Datagram Protocol (17)
1.3.6.1.4.1.25506.2.8.1.5.1.4Integer32 (0..255)read-createcurrent
hh3cAclAdvancedSrcIp
OBJECT-TYPE
Source IP-address of advanced acl group.
1.3.6.1.4.1.25506.2.8.1.5.1.5IpAddressread-createcurrent
hh3cAclAdvancedSrcWild
OBJECT-TYPE
Source IP-address wild of advanced acl group.
1.3.6.1.4.1.25506.2.8.1.5.1.6IpAddressread-createcurrent
hh3cAclAdvancedSrcOp
OBJECT-TYPE
The source IP-address's operator of advanced acl group.
1.3.6.1.4.1.25506.2.8.1.5.1.7INTEGER {invalid(0), lt(1), eq(2), gt(3), neq(4), range(5)}read-createcurrent
hh3cAclAdvancedSrcPort1
OBJECT-TYPE
The fourth layer source port1.
1.3.6.1.4.1.25506.2.8.1.5.1.8Integer32 (0..65535)read-createcurrent
hh3cAclAdvancedSrcPort2
OBJECT-TYPE
The fourth layer source port2.
1.3.6.1.4.1.25506.2.8.1.5.1.9Integer32 (0..65535)read-createcurrent
hh3cAclAdvancedDestIp
OBJECT-TYPE
Destination IP-address of advanced acl group.
1.3.6.1.4.1.25506.2.8.1.5.1.10IpAddressread-createcurrent
hh3cAclAdvancedDestWild
OBJECT-TYPE
Destination IP-address wild of advanced acl group.
1.3.6.1.4.1.25506.2.8.1.5.1.11IpAddressread-createcurrent
hh3cAclAdvancedDestOp
OBJECT-TYPE
The destination IP-address's operator of advanced acl group.
1.3.6.1.4.1.25506.2.8.1.5.1.12INTEGER {invalid(0), lt(1), eq(2), gt(3), neq(4), range(5)}read-createcurrent
hh3cAclAdvancedDestPort1
OBJECT-TYPE
The fourth layer destination port1.
1.3.6.1.4.1.25506.2.8.1.5.1.13Integer32 (0..65535)read-createcurrent
hh3cAclAdvancedDestPort2
OBJECT-TYPE
The fourth layer destination port2.
1.3.6.1.4.1.25506.2.8.1.5.1.14Integer32 (0..65535)read-createcurrent
hh3cAclAdvancedPrecedence
OBJECT-TYPE
The value of IP-packet's precedence. <0-7> Value of precedence routine Specify routine precedence(0) priority Specify priority precedence(1) immediate Specify immediate precedence(2) flash Specify flash precedence(3) flash-override Specify flash-override precedence(4) critical Specify critical precedence(5) internet Specify internetwork control precedence(6) network Specify network control precedence(7)
1.3.6.1.4.1.25506.2.8.1.5.1.15Integer32 (0..7 | 255)read-createcurrent
hh3cAclAdvancedTos
OBJECT-TYPE
The value of IP-packet's TOS. <0-15> Value of TOS(type of service) max-reliability Match packets with max reliable TOS(2) max-throughput Match packets with max throughput TOS(4) min-delay Match packets with min delay TOS(8) min-monetary-cost Match packets with min monetary cost TOS(1) normal Match packets with normal TOS(0)
1.3.6.1.4.1.25506.2.8.1.5.1.16Integer32 (0..15 | 255)read-createcurrent
hh3cAclAdvancedDscp
OBJECT-TYPE
The value of DSCP. <0-63> Value of DSCP af11 Specify Assured Forwarding 11 service(10) af12 Specify Assured Forwarding 12 service(12) af13 Specify Assured Forwarding 13 service(14) af21 Specify Assured Forwarding 21 service(18) af22 Specify Assured Forwarding 22 service(20) af23 Specify Assured Forwarding 23 service(22) af31 Specify Assured Forwarding 31 service(26) af32 Specify Assured Forwarding 32 service(28) af33 Specify Assured Forwarding 33 service(30) af41 Specify Assured Forwarding 41 service(34) af42 Specify Assured Forwarding 42 service(36) af43 Specify Assured Forwarding 43 service(38) be Specify Best Effort service(0) cs1 Specify Class Selector 1 service(8) cs2 Specify Class Selector 2 service(16) cs3 Specify Class Selector 3 service(24) cs4 Specify Class Selector 4 service(32) cs5 Specify Class Selector 5 service(40) cs6 Specify Class Selector 6 service(48) cs7 Specify Class Selector 7 service(56) ef Specify Expedited Forwarding service(46)
1.3.6.1.4.1.25506.2.8.1.5.1.17Integer32 (0..63 | 255)read-createcurrent
hh3cAclAdvancedEstablish
OBJECT-TYPE
Establish flag.
1.3.6.1.4.1.25506.2.8.1.5.1.18TruthValueread-createcurrent
hh3cAclAdvancedTimeRangeName
OBJECT-TYPE
The Time-range of advanced acl rule.
1.3.6.1.4.1.25506.2.8.1.5.1.19OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclAdvancedIcmpType
OBJECT-TYPE
The type of ICMP packet. Integer32 ICMP type echo Type=8, Code=0 echo-reply Type=0, Code=0 fragmentneed-DFset Type=3, Code=4 host-redirect Type=5, Code=1 host-tos-redirect Type=5, Code=3 host-unreachable Type=3, Code=1 information-reply Type=16, Code=0 information-request Type=15, Code=0 net-redirect Type=5, Code=0 net-tos-redirect Type=5, Code=2 net-unreachable Type=3, Code=0 parameter-problem Type=12, Code=0 port-unreachable Type=3, Code=3 protocol-unreachable Type=3, Code=2 reassembly-timeout Type=11, Code=1 source-quench Type=4, Code=0 source-route-failed Type=3, Code=5 timestamp-reply Type=14, Code=0 timestamp-request Type=13, Code=0 ttl-exceeded Type=11, Code=0
1.3.6.1.4.1.25506.2.8.1.5.1.20Integer32 (0..255 | 65535)read-createcurrent
hh3cAclAdvancedIcmpCode
OBJECT-TYPE
The code of ICMP packet.
1.3.6.1.4.1.25506.2.8.1.5.1.21Integer32 (0..255 | 65535)read-createcurrent
hh3cAclAdvancedFragments
OBJECT-TYPE
The flag of matching fragmented packet.
1.3.6.1.4.1.25506.2.8.1.5.1.22TruthValueread-createcurrent
hh3cAclAdvancedLog
OBJECT-TYPE
The flag of log.
1.3.6.1.4.1.25506.2.8.1.5.1.23TruthValueread-createcurrent
hh3cAclAdvancedEnable
OBJECT-TYPE
The rule is active or not. true : active false : inactive
1.3.6.1.4.1.25506.2.8.1.5.1.24TruthValueread-onlycurrent
hh3cAclAdvancedCount
OBJECT-TYPE
The count of matched by advanced rule.
1.3.6.1.4.1.25506.2.8.1.5.1.25Counter32read-onlycurrent
hh3cAclAdvancedCountClear
OBJECT-TYPE
Reset the value of counter.
1.3.6.1.4.1.25506.2.8.1.5.1.26INTEGER {cleared(1), nouse(2)}read-createcurrent
hh3cAclAdvancedRowStatus
OBJECT-TYPE
RowStatus, now support three state: CreateAndGo, Active, Destroy.
1.3.6.1.4.1.25506.2.8.1.5.1.27RowStatusread-createcurrent
hh3cAclIfRuleTable
OBJECT-TYPE
Configure the rule for interface-based acl group.
1.3.6.1.4.1.25506.2.8.1.6not-accessiblecurrent
hh3cAclIfRuleEntry
OBJECT-TYPE
Define the index of hh3cAclIfRuleTable.
1.3.6.1.4.1.25506.2.8.1.6.1not-accessiblecurrent
hh3cAclIfAclNum
OBJECT-TYPE
The index of interface-based acl group.
1.3.6.1.4.1.25506.2.8.1.6.1.1Integer32 (0 | 1000..1999 | 10000..12999)not-accessiblecurrent
hh3cAclIfSubitem
OBJECT-TYPE
The subindex of interface-based acl group.
1.3.6.1.4.1.25506.2.8.1.6.1.2Integer32 (0..65535)not-accessiblecurrent
hh3cAclIfAct
OBJECT-TYPE
The action of interface-based acl group.
1.3.6.1.4.1.25506.2.8.1.6.1.3INTEGER {permit(1), deny(2)}read-createcurrent
hh3cAclIfIndex
OBJECT-TYPE
The index of interface.
1.3.6.1.4.1.25506.2.8.1.6.1.4Integer32 (0..2147483647)read-createcurrent
hh3cAclIfAny
OBJECT-TYPE
The flag of matching any interface.
1.3.6.1.4.1.25506.2.8.1.6.1.5TruthValueread-createcurrent
hh3cAclIfTimeRangeName
OBJECT-TYPE
The Time-range of interface-based acl rule.
1.3.6.1.4.1.25506.2.8.1.6.1.6OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclIfLog
OBJECT-TYPE
The flag of log.
1.3.6.1.4.1.25506.2.8.1.6.1.7TruthValueread-createcurrent
hh3cAclIfEnable
OBJECT-TYPE
The rule is active or not. true : active false : inactive
1.3.6.1.4.1.25506.2.8.1.6.1.8TruthValueread-onlycurrent
hh3cAclIfCount
OBJECT-TYPE
The count of matched by basic rule.
1.3.6.1.4.1.25506.2.8.1.6.1.9Counter32read-onlycurrent
hh3cAclIfCountClear
OBJECT-TYPE
Reset the value of the rule's counter.
1.3.6.1.4.1.25506.2.8.1.6.1.10INTEGER {cleared(1), nouse(2)}read-createcurrent
hh3cAclIfRowStatus
OBJECT-TYPE
RowStatus, now support three state: CreateAndGo, Active, Destroy.
1.3.6.1.4.1.25506.2.8.1.6.1.11RowStatusread-createcurrent
hh3cAclLinkTable
OBJECT-TYPE
Create link acl.
1.3.6.1.4.1.25506.2.8.1.7not-accessiblecurrent
hh3cAclLinkEntry
OBJECT-TYPE
The entry of the link acl table.
1.3.6.1.4.1.25506.2.8.1.7.1not-accessiblecurrent
hh3cAclLinkAclNum
OBJECT-TYPE
The index of link-based acl group.
1.3.6.1.4.1.25506.2.8.1.7.1.1Integer32 (0 | 4000..4999 | 10000..12999)not-accessiblecurrent
hh3cAclLinkSubitem
OBJECT-TYPE
The subindex of link-based acl group.
1.3.6.1.4.1.25506.2.8.1.7.1.2Integer32 (0..65535)not-accessiblecurrent
hh3cAclLinkAct
OBJECT-TYPE
The action of link-based acl group.
1.3.6.1.4.1.25506.2.8.1.7.1.3INTEGER {permit(1), deny(2)}read-createcurrent
hh3cAclLinkProtocol
OBJECT-TYPE
The layer 2 protocol-type of link acl rule.
1.3.6.1.4.1.25506.2.8.1.7.1.4INTEGER {invalid(0), ip(2048), arp(2054), rarp(32821), mpls(34887), pppoeControl(34915), pppoeData(34916)}read-createcurrent
hh3cAclLinkFormatType
OBJECT-TYPE
Format type of link acl rule.
1.3.6.1.4.1.25506.2.8.1.7.1.5INTEGER {invalid(0), ethernetII(1), snap(2), ieee802Dot3And2(3), ieee802Dot3(4)}read-createcurrent
hh3cAclLinkVlanTag
OBJECT-TYPE
The flag of vlan tag of link acl rule.
1.3.6.1.4.1.25506.2.8.1.7.1.6INTEGER {invalid(0), tagged(1), untagged(2)}read-createcurrent
hh3cAclLinkVlanPri
OBJECT-TYPE
Vlan priority of link acl rule.
1.3.6.1.4.1.25506.2.8.1.7.1.7Integer32 (0..7 | 255)read-createcurrent
hh3cAclLinkSrcVlanId
OBJECT-TYPE
Source vlan ID of link acl rule.
1.3.6.1.4.1.25506.2.8.1.7.1.8Integer32 (0..4094)read-createcurrent
hh3cAclLinkSrcMac
OBJECT-TYPE
Source mac of link acl rule.
1.3.6.1.4.1.25506.2.8.1.7.1.9MacAddressread-createcurrent
hh3cAclLinkSrcMacWild
OBJECT-TYPE
Source mac wildzard of link acl rule.
1.3.6.1.4.1.25506.2.8.1.7.1.10MacAddressread-createcurrent
hh3cAclLinkSrcIfIndex
OBJECT-TYPE
Source IfIndex of link acl rule.
1.3.6.1.4.1.25506.2.8.1.7.1.11Integer32 (0..2147483647)read-createcurrent
hh3cAclLinkSrcAny
OBJECT-TYPE
The flag of matching any source.
1.3.6.1.4.1.25506.2.8.1.7.1.12TruthValueread-createcurrent
hh3cAclLinkDestVlanId
OBJECT-TYPE
Destination vlan ID of link acl rule.
1.3.6.1.4.1.25506.2.8.1.7.1.13Integer32 (0..4094)read-createcurrent
hh3cAclLinkDestMac
OBJECT-TYPE
Destination mac of link acl rule.
1.3.6.1.4.1.25506.2.8.1.7.1.14MacAddressread-createcurrent
hh3cAclLinkDestMacWild
OBJECT-TYPE
Destination mac wildzard of link acl rule.
1.3.6.1.4.1.25506.2.8.1.7.1.15MacAddressread-createcurrent
hh3cAclLinkDestIfIndex
OBJECT-TYPE
Destination IfIndex of link acl rule.
1.3.6.1.4.1.25506.2.8.1.7.1.16Integer32 (0..2147483647)read-createcurrent
hh3cAclLinkDestAny
OBJECT-TYPE
The flag of matching any destination.
1.3.6.1.4.1.25506.2.8.1.7.1.17TruthValueread-createcurrent
hh3cAclLinkTimeRangeName
OBJECT-TYPE
The Time-range of link-based acl rule.
1.3.6.1.4.1.25506.2.8.1.7.1.18OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclLinkEnable
OBJECT-TYPE
The rule is active or not. true : active false : inactive
1.3.6.1.4.1.25506.2.8.1.7.1.19TruthValueread-onlycurrent
hh3cAclLinkRowStatus
OBJECT-TYPE
RowStatus, now support three state: CreateAndGo, Active, Destroy.
1.3.6.1.4.1.25506.2.8.1.7.1.20RowStatusread-createcurrent
hh3cAclLinkTypeCode
OBJECT-TYPE
The type of layer 2 protocol.0x0000...0xffff.
1.3.6.1.4.1.25506.2.8.1.7.1.21OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclLinkTypeMask
OBJECT-TYPE
The mask of layer 2 protocol.0x0000...0xffff.
1.3.6.1.4.1.25506.2.8.1.7.1.22OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclLinkLsapCode
OBJECT-TYPE
The type of LSAP.0x0000...0xffff.
1.3.6.1.4.1.25506.2.8.1.7.1.23OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclLinkLsapMask
OBJECT-TYPE
The mask of LSAP.0x0000...0xffff.
1.3.6.1.4.1.25506.2.8.1.7.1.24OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclLinkL2LabelRangeOp
OBJECT-TYPE
Operation symbol of the MPLS label. If the symbol is range(5), the objects hh3cAclLinkL2LabelRangeBegin and hh3cAclLinkL2LabelRangeEnd should have different values indicating a range. Otherwise, only hh3cAclLinkL2LabelRangeBegin counts, object hh3cAclLinkL2LabelRangeEnd is ignored. invalid(0) -- unavailable lt(1) -- less than eq(2) -- equal gt(3) -- great than neq(4) -- not equal range(5) -- a range with two ends included
1.3.6.1.4.1.25506.2.8.1.7.1.25INTEGER {invalid(0), lt(1), eq(2), gt(3), neq(4), range(5)}read-createcurrent
hh3cAclLinkL2LabelRangeBegin
OBJECT-TYPE
The beginning of VPLS VC label.
1.3.6.1.4.1.25506.2.8.1.7.1.26Integer32read-createcurrent
hh3cAclLinkL2LabelRangeEnd
OBJECT-TYPE
The end of VPLS VC label.
1.3.6.1.4.1.25506.2.8.1.7.1.27Integer32read-createcurrent
hh3cAclLinkMplsExp
OBJECT-TYPE
The value of MPLS-packet's Exp.
1.3.6.1.4.1.25506.2.8.1.7.1.28Integer32read-createcurrent
hh3cAclUserTable
OBJECT-TYPE
Create user acl.
1.3.6.1.4.1.25506.2.8.1.8not-accessiblecurrent
hh3cAclUserEntry
OBJECT-TYPE
The entry of user acl table.
1.3.6.1.4.1.25506.2.8.1.8.1not-accessiblecurrent
hh3cAclUserAclNum
OBJECT-TYPE
The number of the user acl.
1.3.6.1.4.1.25506.2.8.1.8.1.1Integer32 (0 | 5000..5999 | 10000..12999)not-accessiblecurrent
hh3cAclUserSubitem
OBJECT-TYPE
The subitem of the user acl.
1.3.6.1.4.1.25506.2.8.1.8.1.2Integer32 (0..65535)not-accessiblecurrent
hh3cAclUserAct
OBJECT-TYPE
The action of the user acl.
1.3.6.1.4.1.25506.2.8.1.8.1.3INTEGER {permit(1), deny(2)}read-createcurrent
hh3cAclUserFormatType
OBJECT-TYPE
Format type.
1.3.6.1.4.1.25506.2.8.1.8.1.4INTEGER {invalid(0), ethernetII(1), snap(2), ieee802Dot2And3(3), ieee802Dot4(4)}read-createcurrent
hh3cAclUserVlanTag
OBJECT-TYPE
Vlan tag exits or not.
1.3.6.1.4.1.25506.2.8.1.8.1.5INTEGER {invalid(0), tagged(1), untagged(2)}read-createcurrent
hh3cAclUserRuleStr
OBJECT-TYPE
Rule string.
1.3.6.1.4.1.25506.2.8.1.8.1.6OCTET STRING (SIZE(1..80))read-createcurrent
hh3cAclUserRuleMask
OBJECT-TYPE
Rule mask.
1.3.6.1.4.1.25506.2.8.1.8.1.7OCTET STRING (SIZE(1..80))read-createcurrent
hh3cAclUserTimeRangeName
OBJECT-TYPE
The Time-range of the user defined acl.
1.3.6.1.4.1.25506.2.8.1.8.1.8OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclUserEnable
OBJECT-TYPE
The rule is active or not. true : active false : inactive
1.3.6.1.4.1.25506.2.8.1.8.1.9TruthValueread-onlycurrent
hh3cAclUserRowStatus
OBJECT-TYPE
RowStatus, now support three state: CreateAndGo, Active, Destroy.
1.3.6.1.4.1.25506.2.8.1.8.1.10RowStatusread-createcurrent
hh3cAclActiveTable
OBJECT-TYPE
Active acl.
1.3.6.1.4.1.25506.2.8.1.9not-accessiblecurrent
hh3cAclActiveEntry
OBJECT-TYPE
The entry of active acl table.
1.3.6.1.4.1.25506.2.8.1.9.1not-accessiblecurrent
hh3cAclActiveAclIndex
OBJECT-TYPE
Acl index.
1.3.6.1.4.1.25506.2.8.1.9.1.1Integer32 (0 | 1..5999 | 10000..12999)not-accessiblecurrent
hh3cAclActiveIfIndex
OBJECT-TYPE
IfIndex.
1.3.6.1.4.1.25506.2.8.1.9.1.2Integer32 (0..2147483647)not-accessiblecurrent
hh3cAclActiveVlanID
OBJECT-TYPE
The lower 16 bits is Vlan ID, the higher 16 bits, if not zero, it describes the slot ID of the L3plus board.
1.3.6.1.4.1.25506.2.8.1.9.1.3Integer32not-accessiblecurrent
hh3cAclActiveDirection
OBJECT-TYPE
Direction.
1.3.6.1.4.1.25506.2.8.1.9.1.4INTEGER {invalid(0), input(1), output(2), both(3)}not-accessiblecurrent
hh3cAclActiveUserAclNum
OBJECT-TYPE
The number of the user acl.
1.3.6.1.4.1.25506.2.8.1.9.1.5Integer32 (0 | 5000..5999 | 10000..12999)read-createcurrent
hh3cAclActiveUserAclSubitem
OBJECT-TYPE
The subitem of the user acl.
1.3.6.1.4.1.25506.2.8.1.9.1.6Integer32 (0..65535)read-createcurrent
hh3cAclActiveIpAclNum
OBJECT-TYPE
The number of the IP acl.
1.3.6.1.4.1.25506.2.8.1.9.1.7Integer32 (0 | 2000..3999 | 10000..12999)read-createcurrent
hh3cAclActiveIpAclSubitem
OBJECT-TYPE
The subitem of the IP acl.
1.3.6.1.4.1.25506.2.8.1.9.1.8Integer32 (0..65535)read-createcurrent
hh3cAclActiveLinkAclNum
OBJECT-TYPE
The num of the link acl.
1.3.6.1.4.1.25506.2.8.1.9.1.9Integer32 (0 | 4000..4999 | 10000..12999)read-createcurrent
hh3cAclActiveLinkAclSubitem
OBJECT-TYPE
The subitem of the link acl.
1.3.6.1.4.1.25506.2.8.1.9.1.10Integer32 (0..65535)read-createcurrent
hh3cAclActiveRuntime
OBJECT-TYPE
Is run or not.
1.3.6.1.4.1.25506.2.8.1.9.1.11TruthValueread-onlycurrent
hh3cAclActiveRowStatus
OBJECT-TYPE
RowStatus, now support three state: CreateAndGo, Active, Destroy.
1.3.6.1.4.1.25506.2.8.1.9.1.12RowStatusread-createcurrent
hh3cAclIDSTable
OBJECT-TYPE
Configure the rule for IDS.
1.3.6.1.4.1.25506.2.8.1.10not-accessiblecurrent
hh3cAclIDSEntry
OBJECT-TYPE
The entry of acl ids table.
1.3.6.1.4.1.25506.2.8.1.10.1not-accessiblecurrent
hh3cAclIDSName
OBJECT-TYPE
The name index of the IDS table.
1.3.6.1.4.1.25506.2.8.1.10.1.1OCTET STRING (SIZE(1..32))not-accessiblecurrent
hh3cAclIDSSrcMac
OBJECT-TYPE
Source mac of IDS acl rule.
1.3.6.1.4.1.25506.2.8.1.10.1.2MacAddressread-createcurrent
hh3cAclIDSDestMac
OBJECT-TYPE
Destination mac of IDS acl rule.
1.3.6.1.4.1.25506.2.8.1.10.1.3MacAddressread-createcurrent
hh3cAclIDSSrcIp
OBJECT-TYPE
Source IP-address of IDS acl rule.
1.3.6.1.4.1.25506.2.8.1.10.1.4IpAddressread-createcurrent
hh3cAclIDSSrcWild
OBJECT-TYPE
Source IP-address wild of IDS acl rule.
1.3.6.1.4.1.25506.2.8.1.10.1.5IpAddressread-createcurrent
hh3cAclIDSDestIp
OBJECT-TYPE
Destination IP-address of IDS acl rule.
1.3.6.1.4.1.25506.2.8.1.10.1.6IpAddressread-createcurrent
hh3cAclIDSDestWild
OBJECT-TYPE
Destination IP-address wild of IDS acl rule.
1.3.6.1.4.1.25506.2.8.1.10.1.7IpAddressread-createcurrent
hh3cAclIDSSrcPort
OBJECT-TYPE
The fourth layer source port.
1.3.6.1.4.1.25506.2.8.1.10.1.8Integer32 (0..65535)read-createcurrent
hh3cAclIDSDestPort
OBJECT-TYPE
The fourth layer destination port.
1.3.6.1.4.1.25506.2.8.1.10.1.9Integer32 (0..65535)read-createcurrent
hh3cAclIDSProtocol
OBJECT-TYPE
The protocol-type of advanced acl group. <1-255> Protocol number gre GRE tunneling(47) icmp Internet Control Message Protocol(1) igmp Internet Group Management Protocol(2) ip Any IP protocol ipinip IP in IP tunneling(4) ospf OSPF routing protocol(89) tcp Transmission Control Protocol (6) udp User Datagram Protocol (17)
1.3.6.1.4.1.25506.2.8.1.10.1.10Integer32 (0..255)read-createcurrent
hh3cAclIDSDenyTime
OBJECT-TYPE
The maximum number of seconds which deny for this acl rule.
1.3.6.1.4.1.25506.2.8.1.10.1.11Unsigned32read-createcurrent
hh3cAclIDSAct
OBJECT-TYPE
The action of IDS acl rule.
1.3.6.1.4.1.25506.2.8.1.10.1.12INTEGER {permit(1), deny(2)}read-createcurrent
hh3cAclIDSRowStatus
OBJECT-TYPE
RowStatus, now supports three states: CreateAndGo, Active, and Destroy.
1.3.6.1.4.1.25506.2.8.1.10.1.13RowStatusread-createcurrent
hh3cAclMib2Objects
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.8.2
hh3cAclMib2GlobalGroup
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.8.2.1
hh3cAclMib2NodesGroup
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.8.2.1.1
hh3cAclMib2Mode
OBJECT-TYPE
The applying mode of ACL.
1.3.6.1.4.1.25506.2.8.2.1.1.1INTEGER {linkBased(1), ipBased(2)}read-writecurrent
hh3cAclMib2Version
OBJECT-TYPE
The version of this file. The output value has the format of 'xx'or 'xxx'. For example: 10 means 1.0; 125 means 12.5.
1.3.6.1.4.1.25506.2.8.2.1.1.2Integer32read-onlycurrent
hh3cAclMib2ObjectsCapabilities
OBJECT-TYPE
The objects of hh3cAclMib2Objects.
1.3.6.1.4.1.25506.2.8.2.1.1.3Bits {hh3cAclMib2Mode(0), hh3cAclVersion(1), hh3cAclMib2ObjectsCapabilities(2), hh3cAclMib2CapabilityTable(3), hh3cAclNumberGroupTable(4), hh3cAclIPAclBasicTable(5), hh3cAclIPAclAdvancedTable(6), hh3cAclMACTable(7), hh3cAclEnUserTable(8), hh3cAclMib2ProcessingStatus(9)}read-onlycurrent
hh3cAclMib2ProcessingStatus
OBJECT-TYPE
The processing status of ACL operation.
1.3.6.1.4.1.25506.2.8.2.1.1.4INTEGER {processing(1), done(2)}read-onlycurrent
hh3cAclMib2ResourceThreshold
OBJECT-TYPE
The threshold of TCAM resources. The value 0 indicates that cancelling the TCAM resource notification function.
1.3.6.1.4.1.25506.2.8.2.1.1.5Integer32 (0..100)read-writecurrent
hh3cAclMib2ResourceLogInterval
OBJECT-TYPE
The value of interval. It must be in the range of 1 to 60. Default value is 5.
1.3.6.1.4.1.25506.2.8.2.1.1.6Integer32 (1..60)read-writecurrent
hh3cAclMib2CapabilityTable
OBJECT-TYPE
The capability of mib2.
1.3.6.1.4.1.25506.2.8.2.1.2not-accessiblecurrent
hh3cAclMib2CapabilityEntry
OBJECT-TYPE
The information of Capability of mib2.
1.3.6.1.4.1.25506.2.8.2.1.2.1not-accessiblecurrent
hh3cAclMib2EntityType
OBJECT-TYPE
The type of entity. system: The entity is systemic level. interface: The entity is interface level.
1.3.6.1.4.1.25506.2.8.2.1.2.1.1INTEGER {system(1), interface(2)}not-accessiblecurrent
hh3cAclMib2EntityIndex
OBJECT-TYPE
The index of entity. If hh3cAclMib2EntityType is system, the value of this object is 0. If hh3cAclMib2EntityType is interface, the value of this object is equal to 'ifIndex'.
1.3.6.1.4.1.25506.2.8.2.1.2.1.2Integer32 (0..2147483647)not-accessiblecurrent
hh3cAclMib2ModuleIndex
OBJECT-TYPE
The module index of ACL.
1.3.6.1.4.1.25506.2.8.2.1.2.1.3INTEGER {layer3(1), layer2(2), userDefined(3)}not-accessiblecurrent
hh3cAclMib2CharacteristicsIndex
OBJECT-TYPE
The characteristics index of mib2. See DESCRIPTION of hh3cAclMib2CharacteristicsValue to get detail information about the value of this object.
1.3.6.1.4.1.25506.2.8.2.1.2.1.4Integer32 (0..2147483647)not-accessiblecurrent
hh3cAclMib2CharacteristicsDesc
OBJECT-TYPE
The description of characteristics.
1.3.6.1.4.1.25506.2.8.2.1.2.1.5OCTET STRING (SIZE(0..255))read-onlycurrent
hh3cAclMib2CharacteristicsValue
OBJECT-TYPE
The value of capability of this object. TypeOfRuleStringValue : notSupport(0) and the length of RuleString. TypeOfCodeValue : OnlyOneNotSupport(0), MoreThanOneNotSupport(1) If hh3cAclMib2CharacteristicsValue is 'moreThanOneNotSupport', hh3cAclMib2CharacteristicsDesc must be used to depict which protocols are not supported. The output value of hh3cAclMib2CharacteristicsDesc has the format of 'a,b'. For example, 'ip,rarp'. layer3 Module: Index Characteristics value 1 SourceIPAddress notSupport(0) 2 DestinationIPAddress notSupport(0) 3 SourcePort notSupport(0) 4 DestinationPort notSupport(0) 5 IPPrecedence notSupport(0) 6 TOS notSupport(0) 7 DSCP notSupport(0) 8 TCPFlag notSupport(0) 9 FragmentFlag notSupport(0) 10 Log notSupport(0) 11 RuleMatchCounter notSupport(0) 12 ResetRuleMatchCounter notSupport(0) 13 VPN notSupport(0) 15 protocol notSupport(0) 16 AddressFlag notSupport(0) layer2 Module: Index Characteristics value 1 ProtocolType TypeOfCodeValue 2 SourceMAC notSupport(0) 3 DestinationMAC notSupport(0) 4 LSAPType TypeOfCodeValue 5 CoS notSupport(0) UserDefined Module: Index Characteristics value 1 UserDefaultOffset TypeOfRuleStringValue 2 UserL2RuleOffset TypeOfRuleStringValue 3 UserMplsOffset TypeOfRuleStringValue 4 UserIPv4Offset TypeOfRuleStringValue 5 UserIPv6Offset TypeOfRuleStringValue 6 UserL4Offset TypeOfRuleStringValue 7 UserL5Offset TypeOfRuleStringValue
1.3.6.1.4.1.25506.2.8.2.1.2.1.6Unsigned32read-onlycurrent
hh3cAclNumberGroupTable
OBJECT-TYPE
A table of the number acl group information.
1.3.6.1.4.1.25506.2.8.2.1.3not-accessiblecurrent
hh3cAclNumberGroupEntry
OBJECT-TYPE
Number acl group information entry.
1.3.6.1.4.1.25506.2.8.2.1.3.1not-accessiblecurrent
hh3cAclNumberGroupType
OBJECT-TYPE
The type of number group. Basic ACL and Advanced ACL support ipv4 and ipv6. The range of Basic ACL is from 2000 to 2999. The range of Advanced ACL is from 3000 to 3999. Simple ACL supports ipv6 only. The range of Simple ACL is from 10000 to 42767. MAC ACL support mac only. The range of MAC ACL is from 4000 to 4999. User-defined ACL support user only. The range of user-defined ACL is from 5000 to 5999.
1.3.6.1.4.1.25506.2.8.2.1.3.1.1INTEGER {ipv4(1), ipv6(2), mac(3), user(4)}not-accessiblecurrent
hh3cAclNumberGroupIndex
OBJECT-TYPE
The group index of number acl. Basic type:2000..2999 Advanced type:3000..3999 MAC type:4000..4999 User type:5000..5999 Simple type:10000..42767
1.3.6.1.4.1.25506.2.8.2.1.3.1.2Integer32 (2000..5999 | 10000..42767)not-accessiblecurrent
hh3cAclNumberGroupRowStatus
OBJECT-TYPE
RowStatus.
1.3.6.1.4.1.25506.2.8.2.1.3.1.3RowStatusread-createcurrent
hh3cAclNumberGroupMatchOrder
OBJECT-TYPE
The match-order of number acl group.
1.3.6.1.4.1.25506.2.8.2.1.3.1.4INTEGER {config(1), auto(2)}read-createcurrent
hh3cAclNumberGroupStep
OBJECT-TYPE
The step of rule index.
1.3.6.1.4.1.25506.2.8.2.1.3.1.5Integer32 (1..20)read-createcurrent
hh3cAclNumberGroupDescription
OBJECT-TYPE
Description of this acl group.
1.3.6.1.4.1.25506.2.8.2.1.3.1.6OCTET STRING (SIZE(0..127))read-createcurrent
hh3cAclNumberGroupCountClear
OBJECT-TYPE
Reset the value of counters of this group.
1.3.6.1.4.1.25506.2.8.2.1.3.1.7CounterClearread-writecurrent
hh3cAclNumberGroupRuleCounter
OBJECT-TYPE
The rule count of number acl group.
1.3.6.1.4.1.25506.2.8.2.1.3.1.8Counter32read-onlycurrent
hh3cAclNumberGroupName
OBJECT-TYPE
Name of this acl group.
1.3.6.1.4.1.25506.2.8.2.1.3.1.9OCTET STRING (SIZE(0..63))read-createcurrent
hh3cAclNamedGroupTable
OBJECT-TYPE
A table of the named ACL group.
1.3.6.1.4.1.25506.2.8.2.1.4not-accessiblecurrent
hh3cAclNamedGroupEntry
OBJECT-TYPE
Named ACL group entry.
1.3.6.1.4.1.25506.2.8.2.1.4.1not-accessiblecurrent
hh3cAclNamedGroupCategory
OBJECT-TYPE
The category of number group. 1 indicates basic ACL, 2 indicates advanced ACL.
1.3.6.1.4.1.25506.2.8.2.1.4.1.1INTEGER {invalid(0), basic(1), advanced(2)}not-accessiblecurrent
hh3cAclNamedGroupName
OBJECT-TYPE
Name of an ACL group, a case-insensitive string of 1 to 63 characters. It must start with an English letter.
1.3.6.1.4.1.25506.2.8.2.1.4.1.2OCTET STRING (SIZE(1..63))not-accessiblecurrent
hh3cAclNamedGroupRowStatus
OBJECT-TYPE
RowStatus.
1.3.6.1.4.1.25506.2.8.2.1.4.1.3RowStatusread-createcurrent
hh3cAclNamedGroupMatchOrder
OBJECT-TYPE
The match-order of name acl group.
1.3.6.1.4.1.25506.2.8.2.1.4.1.4INTEGER {config(1), auto(2)}read-createcurrent
hh3cAclNamedGroupStep
OBJECT-TYPE
The numbering step of the increment of the rule index.
1.3.6.1.4.1.25506.2.8.2.1.4.1.5Integer32 (1..20)read-createcurrent
hh3cAclNamedGroupDescription
OBJECT-TYPE
Description of this ACL group.
1.3.6.1.4.1.25506.2.8.2.1.4.1.6OCTET STRING (SIZE(0..127))read-createcurrent
hh3cAclNamedGroupCountClear
OBJECT-TYPE
Reset the statistics counter of this group.
1.3.6.1.4.1.25506.2.8.2.1.4.1.7CounterClearread-writecurrent
hh3cAclNamedGroupRuleCounter
OBJECT-TYPE
The amount of rules of this group.
1.3.6.1.4.1.25506.2.8.2.1.4.1.8Counter32read-onlycurrent
hh3cAclIPAclGroup
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.8.2.2
hh3cAclIPAclBasicTable
OBJECT-TYPE
A table of basic rule group. If some objects of this table are not supported by some products, these objects can't be created, changed or applied. Default value of these objects will be returned when they are read.
1.3.6.1.4.1.25506.2.8.2.2.2not-accessiblecurrent
hh3cAclIPAclBasicEntry
OBJECT-TYPE
Basic rule group information.
1.3.6.1.4.1.25506.2.8.2.2.2.1not-accessiblecurrent
hh3cAclIPAclBasicRuleIndex
OBJECT-TYPE
The rule index of basic acl group.
1.3.6.1.4.1.25506.2.8.2.2.2.1.1Integer32 (0..65534)not-accessiblecurrent
hh3cAclIPAclBasicRowStatus
OBJECT-TYPE
RowStatus.
1.3.6.1.4.1.25506.2.8.2.2.2.1.2RowStatusread-createcurrent
hh3cAclIPAclBasicAct
OBJECT-TYPE
The action of basic acl rule.
1.3.6.1.4.1.25506.2.8.2.2.2.1.3RuleActionread-createcurrent
hh3cAclIPAclBasicSrcAddrType
OBJECT-TYPE
The IP addresses type of IP pool.
1.3.6.1.4.1.25506.2.8.2.2.2.1.4InetAddressTyperead-createcurrent
hh3cAclIPAclBasicSrcAddr
OBJECT-TYPE
The value of a local IP address is available for this association. The type of this address is determined by the value of hh3cAclIPAclBasicSrcAddrType.
1.3.6.1.4.1.25506.2.8.2.2.2.1.5InetAddressread-createcurrent
hh3cAclIPAclBasicSrcPrefix
OBJECT-TYPE
Denotes the length of a generic Internet network address prefix. A value of n corresponds to an IP address mask that has n contiguous 1-bits from the most significant bit (MSB) and all other bits set to 0.
1.3.6.1.4.1.25506.2.8.2.2.2.1.6InetAddressPrefixLengthread-createcurrent
hh3cAclIPAclBasicSrcAny
OBJECT-TYPE
The flag of matching any IP address.
1.3.6.1.4.1.25506.2.8.2.2.2.1.7TruthValueread-createcurrent
hh3cAclIPAclBasicSrcWild
OBJECT-TYPE
Source IPv4 address wildcard mask. Only IPv4 Basic Rule supports this object. Default value is '0.0.0.0'.
1.3.6.1.4.1.25506.2.8.2.2.2.1.8IpAddressread-createcurrent
hh3cAclIPAclBasicTimeRangeName
OBJECT-TYPE
The Time-range of basic acl rule. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.2.2.1.9OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclIPAclBasicFragmentFlag
OBJECT-TYPE
The flag of matching fragmented packets.
1.3.6.1.4.1.25506.2.8.2.2.2.1.10FragmentFlagread-createcurrent
hh3cAclIPAclBasicLog
OBJECT-TYPE
The packet will be logged when it matches the rule.
1.3.6.1.4.1.25506.2.8.2.2.2.1.11TruthValueread-createcurrent
hh3cAclIPAclBasicCount
OBJECT-TYPE
The count of matches by the rule.
1.3.6.1.4.1.25506.2.8.2.2.2.1.12Unsigned32read-onlycurrent
hh3cAclIPAclBasicCountClear
OBJECT-TYPE
Reset the value of counter.
1.3.6.1.4.1.25506.2.8.2.2.2.1.13CounterClearread-writecurrent
hh3cAclIPAclBasicEnable
OBJECT-TYPE
The rule is active or not. true : active false : inactive
1.3.6.1.4.1.25506.2.8.2.2.2.1.14TruthValueread-onlycurrent
hh3cAclIPAclBasicVpnInstanceName
OBJECT-TYPE
The VPN name, to which the rule will be applied. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.2.2.1.15OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclIPAclBasicComment
OBJECT-TYPE
The description of ACL rule. Default value is Zero-length String.
1.3.6.1.4.1.25506.2.8.2.2.2.1.16OCTET STRING (SIZE(0..127))read-createcurrent
hh3cAclIPAclBasicCounting
OBJECT-TYPE
The packet will be counted when it matches the rule. It is disabled by default.
1.3.6.1.4.1.25506.2.8.2.2.2.1.17TruthValueread-createcurrent
hh3cAclIPAclBasicRouteTypeAny
OBJECT-TYPE
The flag of matching any type of routing header of IPv6 packet.
1.3.6.1.4.1.25506.2.8.2.2.2.1.18TruthValueread-createcurrent
hh3cAclIPAclBasicRouteTypeValue
OBJECT-TYPE
Match specific type of routing header of IPv6 packet.
1.3.6.1.4.1.25506.2.8.2.2.2.1.19Integer32 (0..255 | 65535)read-createcurrent
hh3cAclIPAclAdvancedTable
OBJECT-TYPE
A table of advanced and simple acl group. If some objects of this table are not supported by some products, these objects can't be created, changed and applied. Default value of these objects will be returned when they are read.
1.3.6.1.4.1.25506.2.8.2.2.3not-accessiblecurrent
hh3cAclIPAclAdvancedEntry
OBJECT-TYPE
Advanced acl group information.
1.3.6.1.4.1.25506.2.8.2.2.3.1not-accessiblecurrent
hh3cAclIPAclAdvancedRuleIndex
OBJECT-TYPE
The rule index of advanced acl group. As a Simple ACL group, the value of this object must be 0. As an Advanced ACL group, the value of this object is ranging from 0 to 65534.
1.3.6.1.4.1.25506.2.8.2.2.3.1.1Integer32 (0..65534)not-accessiblecurrent
hh3cAclIPAclAdvancedRowStatus
OBJECT-TYPE
RowStatus.
1.3.6.1.4.1.25506.2.8.2.2.3.1.2RowStatusread-createcurrent
hh3cAclIPAclAdvancedAct
OBJECT-TYPE
The action of advanced acl rule.
1.3.6.1.4.1.25506.2.8.2.2.3.1.3RuleActionread-createcurrent
hh3cAclIPAclAdvancedProtocol
OBJECT-TYPE
The protocol-type of advanced acl group. 0 indicates any IPv4 or IPv6 protocol. <1-255> Protocol number gre GRE tunneling(47) icmp Internet Control Message Protocol(1) icmpv6 Internet Control Message Protocol6(58) igmp Internet Group Management Protocol(2) ipinip IP in IP tunneling(4) ospf OSPF routing protocol(89) tcp Transmission Control Protocol (6) udp User Datagram Protocol (17) ipv6-ah IPv6 Authentication Header(51) ipv6-esp IPv6 Encapsulating Security Payload(50)
1.3.6.1.4.1.25506.2.8.2.2.3.1.4Integer32 (0..255)read-createcurrent
hh3cAclIPAclAdvancedAddrFlag
OBJECT-TYPE
Address flag to select address.
1.3.6.1.4.1.25506.2.8.2.2.3.1.5AddressFlagread-createcurrent
hh3cAclIPAclAdvancedSrcAddrType
OBJECT-TYPE
The IP addresses type of IP pool.
1.3.6.1.4.1.25506.2.8.2.2.3.1.6InetAddressTyperead-createcurrent
hh3cAclIPAclAdvancedSrcAddr
OBJECT-TYPE
The value of a local IP address available for this association. The type of this address is determined by the value of hh3cAclIPAclAdvancedSrcAddrType.
1.3.6.1.4.1.25506.2.8.2.2.3.1.7InetAddressread-createcurrent
hh3cAclIPAclAdvancedSrcPrefix
OBJECT-TYPE
Denotes the length of a generic Internet network address prefix. A value of n corresponds to an IP address mask which has n contiguous 1-bits from the most significant bit (MSB) and all other bits set to 0.
1.3.6.1.4.1.25506.2.8.2.2.3.1.8InetAddressPrefixLengthread-createcurrent
hh3cAclIPAclAdvancedSrcAny
OBJECT-TYPE
The flag of matching any IP address.
1.3.6.1.4.1.25506.2.8.2.2.3.1.9TruthValueread-createcurrent
hh3cAclIPAclAdvancedSrcWild
OBJECT-TYPE
Source IPv4 address wildcard mask. Only IPv4 Advanced Rule supports this object. Default value is '0.0.0.0'.
1.3.6.1.4.1.25506.2.8.2.2.3.1.10IpAddressread-createcurrent
hh3cAclIPAclAdvancedSrcOp
OBJECT-TYPE
Source port operation symbol of advanced acl group.
1.3.6.1.4.1.25506.2.8.2.2.3.1.11PortOpread-createcurrent
hh3cAclIPAclAdvancedSrcPort1
OBJECT-TYPE
The fourth layer source port1.
1.3.6.1.4.1.25506.2.8.2.2.3.1.12Integer32 (0..65535)read-createcurrent
hh3cAclIPAclAdvancedSrcPort2
OBJECT-TYPE
The fourth layer source port2.
1.3.6.1.4.1.25506.2.8.2.2.3.1.13Integer32 (0..65535)read-createcurrent
hh3cAclIPAclAdvancedDestAddrType
OBJECT-TYPE
The IP addresses type of IP pool.
1.3.6.1.4.1.25506.2.8.2.2.3.1.14InetAddressTyperead-createcurrent
hh3cAclIPAclAdvancedDestAddr
OBJECT-TYPE
The value of a local IP address available for this association. The type of this address is determined by the value of hh3cAclIPAclAdvancedDestAddrType.
1.3.6.1.4.1.25506.2.8.2.2.3.1.15InetAddressread-createcurrent
hh3cAclIPAclAdvancedDestPrefix
OBJECT-TYPE
Denotes the length of a generic Internet network address prefix. A value of n corresponds to an IP address mask which has n contiguous 1-bits from the most significant bit (MSB) and all other bits set to 0.
1.3.6.1.4.1.25506.2.8.2.2.3.1.16InetAddressPrefixLengthread-createcurrent
hh3cAclIPAclAdvancedDestAny
OBJECT-TYPE
The flag of matching any IP address.
1.3.6.1.4.1.25506.2.8.2.2.3.1.17TruthValueread-createcurrent
hh3cAclIPAclAdvancedDestWild
OBJECT-TYPE
Destination IPv4 address wildcard mask. Only IPv4 Advanced Rule supports this object. Default value is '0.0.0.0'.
1.3.6.1.4.1.25506.2.8.2.2.3.1.18IpAddressread-createcurrent
hh3cAclIPAclAdvancedDestOp
OBJECT-TYPE
Destination port operation symbol of advanced acl group.
1.3.6.1.4.1.25506.2.8.2.2.3.1.19PortOpread-createcurrent
hh3cAclIPAclAdvancedDestPort1
OBJECT-TYPE
The fourth layer destination port1.
1.3.6.1.4.1.25506.2.8.2.2.3.1.20Integer32 (0..65535)read-createcurrent
hh3cAclIPAclAdvancedDestPort2
OBJECT-TYPE
The fourth layer destination port2.
1.3.6.1.4.1.25506.2.8.2.2.3.1.21Integer32 (0..65535)read-createcurrent
hh3cAclIPAclAdvancedIcmpType
OBJECT-TYPE
The type of ICMP packet.
1.3.6.1.4.1.25506.2.8.2.2.3.1.22Integer32 (0..255 | 65535)read-createcurrent
hh3cAclIPAclAdvancedIcmpCode
OBJECT-TYPE
The code of ICMP packet.
1.3.6.1.4.1.25506.2.8.2.2.3.1.23Integer32 (0..255 | 65535)read-createcurrent
hh3cAclIPAclAdvancedPrecedence
OBJECT-TYPE
The value of IP-packet's precedence. <0-7> Value of precedence routine Specify routine precedence(0) priority Specify priority precedence(1) immediate Specify immediate precedence(2) flash Specify flash precedence(3) flash-override Specify flash-override precedence(4) critical Specify critical precedence(5) internet Specify internetwork control precedence(6) network Specify network control precedence(7)
1.3.6.1.4.1.25506.2.8.2.2.3.1.24Integer32 (0..7 | 255)read-createcurrent
hh3cAclIPAclAdvancedTos
OBJECT-TYPE
The value of IP-packet's TOS. <0-15> Value of TOS(type of service) max-reliability Match packets with max reliable TOS(2) max-throughput Match packets with max throughput TOS(4) min-delay Match packets with min delay TOS(8) min-monetary-cost Match packets with min monetary cost TOS(1) normal Match packets with normal TOS(0)
1.3.6.1.4.1.25506.2.8.2.2.3.1.25Integer32 (0..15 | 255)read-createcurrent
hh3cAclIPAclAdvancedDscp
OBJECT-TYPE
The value of DSCP of IP packet.
1.3.6.1.4.1.25506.2.8.2.2.3.1.26DSCPValueread-createcurrent
hh3cAclIPAclAdvancedTimeRangeName
OBJECT-TYPE
The Time-range of advanced acl rule. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.2.3.1.27OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclIPAclAdvancedTCPFlag
OBJECT-TYPE
The packet type of TCP protocol.
1.3.6.1.4.1.25506.2.8.2.2.3.1.28TCPFlagread-createcurrent
hh3cAclIPAclAdvancedFragmentFlag
OBJECT-TYPE
The flag of matching fragmented packet, and now support two value: 0 or 2.
1.3.6.1.4.1.25506.2.8.2.2.3.1.29FragmentFlagread-createcurrent
hh3cAclIPAclAdvancedLog
OBJECT-TYPE
Log matched packets.
1.3.6.1.4.1.25506.2.8.2.2.3.1.30TruthValueread-createcurrent
hh3cAclIPAclAdvancedCount
OBJECT-TYPE
The count of matched by the rule.
1.3.6.1.4.1.25506.2.8.2.2.3.1.31Unsigned32read-onlycurrent
hh3cAclIPAclAdvancedCountClear
OBJECT-TYPE
Reset the value of counter.
1.3.6.1.4.1.25506.2.8.2.2.3.1.32CounterClearread-writecurrent
hh3cAclIPAclAdvancedEnable
OBJECT-TYPE
The rule is active or not. true : active false : inactive
1.3.6.1.4.1.25506.2.8.2.2.3.1.33TruthValueread-onlycurrent
hh3cAclIPAclAdvancedVpnInstanceName
OBJECT-TYPE
The VPN name that the rule will be applied. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.2.3.1.34OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclIPAclAdvancedComment
OBJECT-TYPE
The description of ACL rule. Default value is Zero-length String.
1.3.6.1.4.1.25506.2.8.2.2.3.1.35OCTET STRING (SIZE(0..127))read-createcurrent
hh3cAclIPAclAdvancedReflective
OBJECT-TYPE
The flag of reflective.
1.3.6.1.4.1.25506.2.8.2.2.3.1.36TruthValueread-createcurrent
hh3cAclIPAclAdvancedCounting
OBJECT-TYPE
The packet will be counted when it matches the rule. It is disabled by default.
1.3.6.1.4.1.25506.2.8.2.2.3.1.37TruthValueread-createcurrent
hh3cAclIPAclAdvancedTCPFlagMask
OBJECT-TYPE
The TCP Flag Mask. This is a bit-map of possible conditions. The various bit positions are: |0 |tcpack | |1 |tcpfin | |2 |tcppsh | |3 |tcprst | |4 |tcpsyn | |5 |tcpurg |
1.3.6.1.4.1.25506.2.8.2.2.3.1.38Bits {tcpack(0), tcpfin(1), tcppsh(2), tcprst(3), tcpsyn(4), tcpurg(5)}read-createcurrent
hh3cAclIPAclAdvancedTCPFlagValue
OBJECT-TYPE
The TCP Flag Value. This is a bit-map of possible conditions. The various bit positions are: |0 |tcpack | |1 |tcpfin | |2 |tcppsh | |3 |tcprst | |4 |tcpsyn | |5 |tcpurg |
1.3.6.1.4.1.25506.2.8.2.2.3.1.39Bits {tcpack(0), tcpfin(1), tcppsh(2), tcprst(3), tcpsyn(4), tcpurg(5)}read-createcurrent
hh3cAclIPAclAdvancedRouteTypeAny
OBJECT-TYPE
The flag of matching any type of routing header of IPv6 packet.
1.3.6.1.4.1.25506.2.8.2.2.3.1.40TruthValueread-createcurrent
hh3cAclIPAclAdvancedRouteTypeValue
OBJECT-TYPE
The type of routing header of IPv6 packet.
1.3.6.1.4.1.25506.2.8.2.2.3.1.41Integer32 (0..255 | 65535)read-createcurrent
hh3cAclIPAclAdvancedFlowLabel
OBJECT-TYPE
The value of flow label of IPv6 packet header.
1.3.6.1.4.1.25506.2.8.2.2.3.1.42Unsigned32 (0..1048575 | 4294967295)read-createcurrent
hh3cAclIPAclAdvancedSrcSuffix
OBJECT-TYPE
Denotes the length of a generic Internet network address suffix. A value of n corresponds to an IP address mask that has n contiguous 1-bits from the least significant bit and all other bits set to 0.
1.3.6.1.4.1.25506.2.8.2.2.3.1.43Unsigned32read-createcurrent
hh3cAclIPAclAdvancedDestSuffix
OBJECT-TYPE
Denotes the length of a generic Internet network address suffix. A value of n corresponds to an IP address mask that has n contiguous 1-bits from the least significant bit and all other bits set to 0.
1.3.6.1.4.1.25506.2.8.2.2.3.1.44Unsigned32read-createcurrent
hh3cAclIPAclNamedBscTable
OBJECT-TYPE
A table of basic rule of named ACL. The name of ACL group will be used as an index in this table, which differs from the table hh3cAclIPAclBasicTable. If some objects of this table are not supported by some products, these objects can't be created, changed or applied. Default value of these objects will be returned when they are read.
1.3.6.1.4.1.25506.2.8.2.2.4not-accessiblecurrent
hh3cAclIPAclNamedBscEntry
OBJECT-TYPE
Basic named ACL rule entry.
1.3.6.1.4.1.25506.2.8.2.2.4.1not-accessiblecurrent
hh3cAclIPAclNamedBscRowStatus
OBJECT-TYPE
RowStatus.
1.3.6.1.4.1.25506.2.8.2.2.4.1.1RowStatusread-createcurrent
hh3cAclIPAclNamedBscAct
OBJECT-TYPE
The action of basic ACL rule.
1.3.6.1.4.1.25506.2.8.2.2.4.1.2RuleActionread-createcurrent
hh3cAclIPAclNamedBscSrcAddrType
OBJECT-TYPE
The IP addresses type of IP pool.
1.3.6.1.4.1.25506.2.8.2.2.4.1.3InetAddressTyperead-createcurrent
hh3cAclIPAclNamedBscSrcAddr
OBJECT-TYPE
The specified source IP address. The type of this address is determined by the value of hh3cAclIPAclNamedBscSrcAddrType.
1.3.6.1.4.1.25506.2.8.2.2.4.1.4InetAddressread-createcurrent
hh3cAclIPAclNamedBscSrcPrefix
OBJECT-TYPE
Specify the length of a generic Internet network address prefix. A value of n corresponds to an IP address mask that has n contiguous 1-bits from the most significant bit (MSB) and all other bits set to 0.
1.3.6.1.4.1.25506.2.8.2.2.4.1.5InetAddressPrefixLengthread-createcurrent
hh3cAclIPAclNamedBscSrcAny
OBJECT-TYPE
The flag of matching any source IP address.
1.3.6.1.4.1.25506.2.8.2.2.4.1.6TruthValueread-createcurrent
hh3cAclIPAclNamedBscSrcWild
OBJECT-TYPE
Source IPv4 address wildcard mask. Only IPv4 Basic Rule supports this object. Default value is '0.0.0.0'.
1.3.6.1.4.1.25506.2.8.2.2.4.1.7IpAddressread-createcurrent
hh3cAclIPAclNamedBscTRangeName
OBJECT-TYPE
The Time-range of basic acl rule. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.2.4.1.8OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclIPAclNamedBscFragmentFlag
OBJECT-TYPE
The flag of matching fragmented packets.
1.3.6.1.4.1.25506.2.8.2.2.4.1.9FragmentFlagread-createcurrent
hh3cAclIPAclNamedBscLog
OBJECT-TYPE
The packet will be logged when it matches the rule.
1.3.6.1.4.1.25506.2.8.2.2.4.1.10TruthValueread-createcurrent
hh3cAclIPAclNamedBscCount
OBJECT-TYPE
The count of matches by the rule.
1.3.6.1.4.1.25506.2.8.2.2.4.1.11Unsigned32read-onlycurrent
hh3cAclIPAclNamedBscCountClear
OBJECT-TYPE
Reset the statistics counter of the rule.
1.3.6.1.4.1.25506.2.8.2.2.4.1.12CounterClearread-writecurrent
hh3cAclIPAclNamedBscEnable
OBJECT-TYPE
The rule is active or not. true : active false : inactive
1.3.6.1.4.1.25506.2.8.2.2.4.1.13TruthValueread-onlycurrent
hh3cAclIPAclNamedBscVpnInstName
OBJECT-TYPE
The VPN name, to which the rule will be applied. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.2.4.1.14OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclIPAclNamedBscComment
OBJECT-TYPE
The description of ACL rule. Default value is Zero-length String.
1.3.6.1.4.1.25506.2.8.2.2.4.1.15OCTET STRING (SIZE(0..127))read-createcurrent
hh3cAclIPAclNamedBscCounting
OBJECT-TYPE
The packet will be counted when it matches the rule. It is disabled by default.
1.3.6.1.4.1.25506.2.8.2.2.4.1.16TruthValueread-createcurrent
hh3cAclIPAclNamedBscRouteTypeAny
OBJECT-TYPE
The flag of matching any type of routing header of IPv6 packet.
1.3.6.1.4.1.25506.2.8.2.2.4.1.17TruthValueread-createcurrent
hh3cAclIPAclNamedBscRouteTypeValue
OBJECT-TYPE
Value of the routing header type of IPv6 packet, in the range of 0 to 255.
1.3.6.1.4.1.25506.2.8.2.2.4.1.18Integer32 (0..255 | 65535)read-createcurrent
hh3cAclIPAclNamedAdvTable
OBJECT-TYPE
A table of advanced rule of named ACL. The name of ACL group will be used as an index in this table, which differs from the table hh3cAclIPAclAdvancedTable. If some objects of this table are not supported by some products, these objects can't be created, changed or applied. Default value of these objects will be returned when they are read.
1.3.6.1.4.1.25506.2.8.2.2.5not-accessiblecurrent
hh3cAclIPAclNamedAdvEntry
OBJECT-TYPE
Advanced ACL rule information entry.
1.3.6.1.4.1.25506.2.8.2.2.5.1not-accessiblecurrent
hh3cAclIPAclNamedAdvRowStatus
OBJECT-TYPE
RowStatus.
1.3.6.1.4.1.25506.2.8.2.2.5.1.1RowStatusread-createcurrent
hh3cAclIPAclNamedAdvAct
OBJECT-TYPE
The action of advanced ACL rule.
1.3.6.1.4.1.25506.2.8.2.2.5.1.2RuleActionread-createcurrent
hh3cAclIPAclNamedAdvProtocol
OBJECT-TYPE
The protocol-type of advanced ACL rule. 0 indicates any IPv4 or IPv6 protocol. <1-255> Protocol number gre GRE tunneling(47) icmp Internet Control Message Protocol(1) icmpv6 Internet Control Message Protocol6(58) igmp Internet Group Management Protocol(2) ipinip IP in IP tunneling(4) ospf OSPF routing protocol(89) tcp Transmission Control Protocol (6) udp User Datagram Protocol (17) ipv6-ah IPv6 Authentication Header(51) ipv6-esp IPv6 Encapsulating Security Payload(50)
1.3.6.1.4.1.25506.2.8.2.2.5.1.3Integer32 (0..255)read-createcurrent
hh3cAclIPAclNamedAdvAddrFlag
OBJECT-TYPE
Address flag to select address.
1.3.6.1.4.1.25506.2.8.2.2.5.1.4AddressFlagread-createcurrent
hh3cAclIPAclNamedAdvSrcAddrType
OBJECT-TYPE
The type of source IP address.
1.3.6.1.4.1.25506.2.8.2.2.5.1.5InetAddressTyperead-createcurrent
hh3cAclIPAclNamedAdvSrcAddr
OBJECT-TYPE
The specified source IP address. The type of this address is determined by the value of hh3cAclIPAclNamedAdvSrcAddrType.
1.3.6.1.4.1.25506.2.8.2.2.5.1.6InetAddressread-createcurrent
hh3cAclIPAclNamedAdvSrcPrefix
OBJECT-TYPE
Specify the length of a generic Internet network address prefix. A value of n corresponds to an IP address mask that has n contiguous 1-bits from the most significant bit (MSB) and all other bits set to 0.
1.3.6.1.4.1.25506.2.8.2.2.5.1.7InetAddressPrefixLengthread-createcurrent
hh3cAclIPAclNamedAdvSrcAny
OBJECT-TYPE
The flag of matching any IP address.
1.3.6.1.4.1.25506.2.8.2.2.5.1.8TruthValueread-createcurrent
hh3cAclIPAclNamedAdvSrcWild
OBJECT-TYPE
Source IPv4 address wildcard mask. Only IPv4 Advanced Rule supports this object. Default value is '0.0.0.0'.
1.3.6.1.4.1.25506.2.8.2.2.5.1.9IpAddressread-createcurrent
hh3cAclIPAclNamedAdvSrcOp
OBJECT-TYPE
Source port operation symbol of advanced acl group.
1.3.6.1.4.1.25506.2.8.2.2.5.1.10PortOpread-createcurrent
hh3cAclIPAclNamedAdvSrcPort1
OBJECT-TYPE
The fourth layer source port1.
1.3.6.1.4.1.25506.2.8.2.2.5.1.11Integer32 (0..65535)read-createcurrent
hh3cAclIPAclNamedAdvSrcPort2
OBJECT-TYPE
The fourth layer source port2.
1.3.6.1.4.1.25506.2.8.2.2.5.1.12Integer32 (0..65535)read-createcurrent
hh3cAclIPAclNamedAdvDstAddrType
OBJECT-TYPE
The type of destination IP address.
1.3.6.1.4.1.25506.2.8.2.2.5.1.13InetAddressTyperead-createcurrent
hh3cAclIPAclNamedAdvDstAddr
OBJECT-TYPE
The specified destination IP address. The type of this address is determined by the value of hh3cAclIPAclNamedAdvDstAddrType.
1.3.6.1.4.1.25506.2.8.2.2.5.1.14InetAddressread-createcurrent
hh3cAclIPAclNamedAdvDstPrefix
OBJECT-TYPE
Specify the length of a generic Internet network address prefix. A value of n corresponds to an IP address mask that has n contiguous 1-bits from the most significant bit (MSB) and all other bits set to 0.
1.3.6.1.4.1.25506.2.8.2.2.5.1.15InetAddressPrefixLengthread-createcurrent
hh3cAclIPAclNamedAdvDstAny
OBJECT-TYPE
The flag of matching any IP address.
1.3.6.1.4.1.25506.2.8.2.2.5.1.16TruthValueread-createcurrent
hh3cAclIPAclNamedAdvDstWild
OBJECT-TYPE
Destination IPv4 address wildcard mask. Only IPv4 Advanced Rule supports this object. Default value is '0.0.0.0'.
1.3.6.1.4.1.25506.2.8.2.2.5.1.17IpAddressread-createcurrent
hh3cAclIPAclNamedAdvDstOp
OBJECT-TYPE
Destination port operation symbol of advanced acl group.
1.3.6.1.4.1.25506.2.8.2.2.5.1.18PortOpread-createcurrent
hh3cAclIPAclNamedAdvDstPort1
OBJECT-TYPE
The fourth layer destination port1.
1.3.6.1.4.1.25506.2.8.2.2.5.1.19Integer32 (0..65535)read-createcurrent
hh3cAclIPAclNamedAdvDstPort2
OBJECT-TYPE
The fourth layer destination port2.
1.3.6.1.4.1.25506.2.8.2.2.5.1.20Integer32 (0..65535)read-createcurrent
hh3cAclIPAclNamedAdvIcmpType
OBJECT-TYPE
The type of ICMP packet.
1.3.6.1.4.1.25506.2.8.2.2.5.1.21Integer32 (0..255 | 65535)read-createcurrent
hh3cAclIPAclNamedAdvIcmpCode
OBJECT-TYPE
The code of ICMP packet.
1.3.6.1.4.1.25506.2.8.2.2.5.1.22Integer32 (0..255 | 65535)read-createcurrent
hh3cAclIPAclNamedAdvPrecedence
OBJECT-TYPE
The value of IP-packet's precedence. <0-7> Value of precedence routine Specify routine precedence(0) priority Specify priority precedence(1) immediate Specify immediate precedence(2) flash Specify flash precedence(3) flash-override Specify flash-override precedence(4) critical Specify critical precedence(5) internet Specify internetwork control precedence(6) network Specify network control precedence(7)
1.3.6.1.4.1.25506.2.8.2.2.5.1.23Integer32 (0..7 | 255)read-createcurrent
hh3cAclIPAclNamedAdvTos
OBJECT-TYPE
The value of IP-packet's TOS. <0-15> Value of TOS(type of service) max-reliability Match packets with max reliable TOS(2) max-throughput Match packets with max throughput TOS(4) min-delay Match packets with min delay TOS(8) min-monetary-cost Match packets with min monetary cost TOS(1) normal Match packets with normal TOS(0)
1.3.6.1.4.1.25506.2.8.2.2.5.1.24Integer32 (0..15 | 255)read-createcurrent
hh3cAclIPAclNamedAdvDscp
OBJECT-TYPE
The value of DSCP of IP packet.
1.3.6.1.4.1.25506.2.8.2.2.5.1.25DSCPValueread-createcurrent
hh3cAclIPAclNamedAdvTRangeName
OBJECT-TYPE
The Time-range of advanced ACL rule. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.2.5.1.26OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclIPAclNamedAdvTCPFlag
OBJECT-TYPE
The packet type of TCP protocol.
1.3.6.1.4.1.25506.2.8.2.2.5.1.27TCPFlagread-createcurrent
hh3cAclIPAclNamedAdvFragmentFlag
OBJECT-TYPE
The flag of matching fragmented packet, and now support two value: 0 or 2.
1.3.6.1.4.1.25506.2.8.2.2.5.1.28FragmentFlagread-createcurrent
hh3cAclIPAclNamedAdvLog
OBJECT-TYPE
Log matched packets.
1.3.6.1.4.1.25506.2.8.2.2.5.1.29TruthValueread-createcurrent
hh3cAclIPAclNamedAdvCount
OBJECT-TYPE
The count of matches by the rule.
1.3.6.1.4.1.25506.2.8.2.2.5.1.30Unsigned32read-onlycurrent
hh3cAclIPAclNamedAdvCountClear
OBJECT-TYPE
Reset the statistics counter of this rule.
1.3.6.1.4.1.25506.2.8.2.2.5.1.31CounterClearread-writecurrent
hh3cAclIPAclNamedAdvEnable
OBJECT-TYPE
The rule is active or not. true : active false : inactive
1.3.6.1.4.1.25506.2.8.2.2.5.1.32TruthValueread-onlycurrent
hh3cAclIPAclNamedAdvVpnInstName
OBJECT-TYPE
The VPN name to which the rule will be applied. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.2.5.1.33OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclIPAclNamedAdvComment
OBJECT-TYPE
The description of ACL rule. Default value is zero-length String.
1.3.6.1.4.1.25506.2.8.2.2.5.1.34OCTET STRING (SIZE(0..127))read-createcurrent
hh3cAclIPAclNamedAdvReflective
OBJECT-TYPE
The flag of reflective.
1.3.6.1.4.1.25506.2.8.2.2.5.1.35TruthValueread-createcurrent
hh3cAclIPAclNamedAdvCounting
OBJECT-TYPE
The packet will be counted when it matches the rule. It is disabled by default.
1.3.6.1.4.1.25506.2.8.2.2.5.1.36TruthValueread-createcurrent
hh3cAclIPAclNamedAdvTCPFlagMask
OBJECT-TYPE
The TCP Flag Mask. This is a bit-map of possible conditions. The various bit positions are: |0 |tcpack | |1 |tcpfin | |2 |tcppsh | |3 |tcprst | |4 |tcpsyn | |5 |tcpurg |
1.3.6.1.4.1.25506.2.8.2.2.5.1.37Bits {tcpack(0), tcpfin(1), tcppsh(2), tcprst(3), tcpsyn(4), tcpurg(5)}read-createcurrent
hh3cAclIPAclNamedAdvTCPFlagValue
OBJECT-TYPE
The TCP Flag Value. This is a bit-map of possible conditions. The various bit positions are: |0 |tcpack | |1 |tcpfin | |2 |tcppsh | |3 |tcprst | |4 |tcpsyn | |5 |tcpurg |
1.3.6.1.4.1.25506.2.8.2.2.5.1.38Bits {tcpack(0), tcpfin(1), tcppsh(2), tcprst(3), tcpsyn(4), tcpurg(5)}read-createcurrent
hh3cAclIPAclNamedAdvRouteTypeAny
OBJECT-TYPE
The flag of matching any type of routing header of IPv6 packet.
1.3.6.1.4.1.25506.2.8.2.2.5.1.39TruthValueread-createcurrent
hh3cAclIPAclNamedAdvRouteTypeValue
OBJECT-TYPE
The type of routing header of IPv6 packet.
1.3.6.1.4.1.25506.2.8.2.2.5.1.40Integer32 (0..255 | 65535)read-createcurrent
hh3cAclIPAclNamedAdvFlowLabel
OBJECT-TYPE
The value of flow label of IPv6 packet header.
1.3.6.1.4.1.25506.2.8.2.2.5.1.41Unsigned32 (0..1048575 | 4294967295)read-createcurrent
hh3cAclIPAclNamedAdvSrcSuffix
OBJECT-TYPE
Denotes the length of a generic Internet network address suffix. A value of n corresponds to an IP address mask that has n contiguous 1-bits from the least significant bit and all other bits set to 0.
1.3.6.1.4.1.25506.2.8.2.2.5.1.42Unsigned32read-createcurrent
hh3cAclIPAclNamedAdvDstSuffix
OBJECT-TYPE
Denotes the length of a generic Internet network address suffix. A value of n corresponds to an IP address mask that has n contiguous 1-bits from the least significant bit and all other bits set to 0.
1.3.6.1.4.1.25506.2.8.2.2.5.1.43Unsigned32read-createcurrent
hh3cAclMACAclGroup
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.8.2.3
hh3cAclMACTable
OBJECT-TYPE
A table of MAC acl group. If some objects of this table are not supported by some products, these objects can't be created, changed or applied. Default value of these objects will be returned when they are read.
1.3.6.1.4.1.25506.2.8.2.3.1not-accessiblecurrent
hh3cAclMACEntry
OBJECT-TYPE
MAC acl group information.
1.3.6.1.4.1.25506.2.8.2.3.1.1not-accessiblecurrent
hh3cAclMACRuleIndex
OBJECT-TYPE
The rule index of MAC-based acl group.
1.3.6.1.4.1.25506.2.8.2.3.1.1.1Integer32 (0..65534)not-accessiblecurrent
hh3cAclMACRowStatus
OBJECT-TYPE
RowStatus.
1.3.6.1.4.1.25506.2.8.2.3.1.1.2RowStatusread-createcurrent
hh3cAclMACAct
OBJECT-TYPE
The action of MAC acl rule.
1.3.6.1.4.1.25506.2.8.2.3.1.1.3RuleActionread-createcurrent
hh3cAclMACTypeCode
OBJECT-TYPE
The type of protocol.
1.3.6.1.4.1.25506.2.8.2.3.1.1.4OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclMACTypeMask
OBJECT-TYPE
The mask of protocol.
1.3.6.1.4.1.25506.2.8.2.3.1.1.5OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclMACSrcMac
OBJECT-TYPE
Source MAC of MAC acl rule. Default value is '00:00:00:00:00:00'.
1.3.6.1.4.1.25506.2.8.2.3.1.1.6MacAddressread-createcurrent
hh3cAclMACSrcMacWild
OBJECT-TYPE
Source MAC wildzard of MAC acl rule. Default value is '00:00:00:00:00:00'.
1.3.6.1.4.1.25506.2.8.2.3.1.1.7MacAddressread-createcurrent
hh3cAclMACDestMac
OBJECT-TYPE
Destination MAC of MAC acl rule. Default value is '00:00:00:00:00:00'.
1.3.6.1.4.1.25506.2.8.2.3.1.1.8MacAddressread-createcurrent
hh3cAclMACDestMacWild
OBJECT-TYPE
Destination MAC wildzard of MAC acl rule. Default value is '00:00:00:00:00:00'
1.3.6.1.4.1.25506.2.8.2.3.1.1.9MacAddressread-createcurrent
hh3cAclMACLsapCode
OBJECT-TYPE
The type of LSAP.
1.3.6.1.4.1.25506.2.8.2.3.1.1.10OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclMACLsapMask
OBJECT-TYPE
The mask of LSAP.
1.3.6.1.4.1.25506.2.8.2.3.1.1.11OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclMACCos
OBJECT-TYPE
Vlan priority of MAC acl rule.
1.3.6.1.4.1.25506.2.8.2.3.1.1.12Integer32 (0..7 | 255)read-createcurrent
hh3cAclMACTimeRangeName
OBJECT-TYPE
The Time-range of MAC acl rule. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.3.1.1.13OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclMACCount
OBJECT-TYPE
The count of matched frames by the rule.
1.3.6.1.4.1.25506.2.8.2.3.1.1.14Unsigned32read-onlycurrent
hh3cAclMACCountClear
OBJECT-TYPE
Reset the value of counter.
1.3.6.1.4.1.25506.2.8.2.3.1.1.15CounterClearread-writecurrent
hh3cAclMACEnable
OBJECT-TYPE
The rule is active or not. true : active false : inactive
1.3.6.1.4.1.25506.2.8.2.3.1.1.16TruthValueread-onlycurrent
hh3cAclMACComment
OBJECT-TYPE
The description of ACL rule. Default value is Zero-length String.
1.3.6.1.4.1.25506.2.8.2.3.1.1.17OCTET STRING (SIZE(0..127))read-createcurrent
hh3cAclMACLog
OBJECT-TYPE
The packet will be logged when it matches the rule. It is disabled by default.
1.3.6.1.4.1.25506.2.8.2.3.1.1.18TruthValueread-createcurrent
hh3cAclMACCounting
OBJECT-TYPE
The packet will be counted when it matches the rule. It is disabled by default.
1.3.6.1.4.1.25506.2.8.2.3.1.1.19TruthValueread-createcurrent
hh3cAclNamedMACTable
OBJECT-TYPE
A table of named MAC ACL rule. The name of ACL group will be used as an index in this table, which differs from the table hh3cAclMACTable. If some objects of this table are not supported by some products, these objects can't be created, changed or applied. Default value of these objects will be returned when they are read.
1.3.6.1.4.1.25506.2.8.2.3.2not-accessiblecurrent
hh3cAclNamedMACEntry
OBJECT-TYPE
MAC acl group information.
1.3.6.1.4.1.25506.2.8.2.3.2.1not-accessiblecurrent
hh3cAclNamedMACRowStatus
OBJECT-TYPE
RowStatus.
1.3.6.1.4.1.25506.2.8.2.3.2.1.1RowStatusread-createcurrent
hh3cAclNamedMACAct
OBJECT-TYPE
The action of MAC ACL rule.
1.3.6.1.4.1.25506.2.8.2.3.2.1.2RuleActionread-createcurrent
hh3cAclNamedMACTypeCode
OBJECT-TYPE
The type of protocol.
1.3.6.1.4.1.25506.2.8.2.3.2.1.3OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclNamedMACTypeMask
OBJECT-TYPE
The mask of protocol.
1.3.6.1.4.1.25506.2.8.2.3.2.1.4OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclNamedMACSrcMac
OBJECT-TYPE
Source MAC of MAC ACL rule. Default value is '00:00:00:00:00:00'.
1.3.6.1.4.1.25506.2.8.2.3.2.1.5MacAddressread-createcurrent
hh3cAclNamedMACSrcMacWild
OBJECT-TYPE
Source MAC wildcard of MAC ACL rule. Default value is '00:00:00:00:00:00'.
1.3.6.1.4.1.25506.2.8.2.3.2.1.6MacAddressread-createcurrent
hh3cAclNamedMACDstMac
OBJECT-TYPE
Destination MAC of MAC ACL rule. Default value is '00:00:00:00:00:00'.
1.3.6.1.4.1.25506.2.8.2.3.2.1.7MacAddressread-createcurrent
hh3cAclNamedMACDstMacWild
OBJECT-TYPE
Destination MAC wildcard of MAC ACL rule. Default value is '00:00:00:00:00:00'
1.3.6.1.4.1.25506.2.8.2.3.2.1.8MacAddressread-createcurrent
hh3cAclNamedMACLsapCode
OBJECT-TYPE
The type of LSAP.
1.3.6.1.4.1.25506.2.8.2.3.2.1.9OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclNamedMACLsapMask
OBJECT-TYPE
The mask of LSAP.
1.3.6.1.4.1.25506.2.8.2.3.2.1.10OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclNamedMACCos
OBJECT-TYPE
Vlan priority of MAC ACL rule.
1.3.6.1.4.1.25506.2.8.2.3.2.1.11Integer32 (0..7 | 255)read-createcurrent
hh3cAclNamedMACTimeRangeName
OBJECT-TYPE
The time-range of MAC ACL rule. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.3.2.1.12OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclNamedMACCount
OBJECT-TYPE
The count of matched frames by the rule.
1.3.6.1.4.1.25506.2.8.2.3.2.1.13Unsigned32read-onlycurrent
hh3cAclNamedMACCountClear
OBJECT-TYPE
Reset the value of counter.
1.3.6.1.4.1.25506.2.8.2.3.2.1.14CounterClearread-writecurrent
hh3cAclNamedMACEnable
OBJECT-TYPE
The rule is active or not. true : active false : inactive
1.3.6.1.4.1.25506.2.8.2.3.2.1.15TruthValueread-onlycurrent
hh3cAclNamedMACComment
OBJECT-TYPE
The description of ACL rule. Default value is Zero-length String.
1.3.6.1.4.1.25506.2.8.2.3.2.1.16OCTET STRING (SIZE(0..127))read-createcurrent
hh3cAclNamedMACLog
OBJECT-TYPE
The packet will be logged when it matches the rule. It is disabled by default.
1.3.6.1.4.1.25506.2.8.2.3.2.1.17TruthValueread-createcurrent
hh3cAclNamedMACCounting
OBJECT-TYPE
The packet will be counted when it matches the rule. It is disabled by default.
1.3.6.1.4.1.25506.2.8.2.3.2.1.18TruthValueread-createcurrent
hh3cAclEnUserAclGroup
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.8.2.4
hh3cAclEnUserTable
OBJECT-TYPE
A table of user acl group information. If some objects of this table are not supported by some products, these objects can't be created, changed and applied. Default value of these objects will be returned when they are read.
1.3.6.1.4.1.25506.2.8.2.4.3not-accessiblecurrent
hh3cAclEnUserEntry
OBJECT-TYPE
User defined acl group entry.
1.3.6.1.4.1.25506.2.8.2.4.3.1not-accessiblecurrent
hh3cAclEnUserRuleIndex
OBJECT-TYPE
The subitem of the user acl.
1.3.6.1.4.1.25506.2.8.2.4.3.1.1Integer32 (0..65534)not-accessiblecurrent
hh3cAclEnUserRowStatus
OBJECT-TYPE
RowStatus.
1.3.6.1.4.1.25506.2.8.2.4.3.1.2RowStatusread-createcurrent
hh3cAclEnUserAct
OBJECT-TYPE
The action of user defined acl rule.
1.3.6.1.4.1.25506.2.8.2.4.3.1.3RuleActionread-createcurrent
hh3cAclEnUserStartString
OBJECT-TYPE
The rule, matching packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value of this object is defined by product and it indicates the offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: 10,10af,ffff. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.4.3.1.4OCTET STRING (SIZE(0..255))read-createcurrent
hh3cAclEnUserL2String
OBJECT-TYPE
The rule, matching layer 2 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.4.3.1.5OCTET STRING (SIZE(0..255))read-createcurrent
hh3cAclEnUserMplsString
OBJECT-TYPE
The rule, matching mpls packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.4.3.1.6OCTET STRING (SIZE(0..255))read-createcurrent
hh3cAclEnUserIPv4String
OBJECT-TYPE
The rule, matching IPv4 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.4.3.1.7OCTET STRING (SIZE(0..255))read-createcurrent
hh3cAclEnUserIPv6String
OBJECT-TYPE
The rule, matching IPv6 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.4.3.1.8OCTET STRING (SIZE(0..255))read-createcurrent
hh3cAclEnUserL4String
OBJECT-TYPE
The rule, matching layer 4 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.4.3.1.9OCTET STRING (SIZE(0..255))read-createcurrent
hh3cAclEnUserL5String
OBJECT-TYPE
The rule, matching layer 5 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.4.3.1.10OCTET STRING (SIZE(0..255))read-createcurrent
hh3cAclEnUserTimeRangeName
OBJECT-TYPE
The Time-range of user acl rule. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.4.3.1.11OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclEnUserCount
OBJECT-TYPE
The count of matched by the rule.
1.3.6.1.4.1.25506.2.8.2.4.3.1.12Unsigned32read-onlycurrent
hh3cAclEnUserCountClear
OBJECT-TYPE
Reset the value of counter.
1.3.6.1.4.1.25506.2.8.2.4.3.1.13CounterClearread-writecurrent
hh3cAclEnUserEnable
OBJECT-TYPE
The rule is active or not. true : active false : inactive
1.3.6.1.4.1.25506.2.8.2.4.3.1.14TruthValueread-onlycurrent
hh3cAclEnUserComment
OBJECT-TYPE
The description of ACL rule. Default value is Zero-length String.
1.3.6.1.4.1.25506.2.8.2.4.3.1.15OCTET STRING (SIZE(0..127))read-createcurrent
hh3cAclEnUserLog
OBJECT-TYPE
The packet will be logged when it matches the rule. It is disabled by default.
1.3.6.1.4.1.25506.2.8.2.4.3.1.16TruthValueread-createcurrent
hh3cAclEnUserCounting
OBJECT-TYPE
The packet will be counted when it matches the rule. It is disabled by default.
1.3.6.1.4.1.25506.2.8.2.4.3.1.17TruthValueread-createcurrent
hh3cAclNamedUserTable
OBJECT-TYPE
A table of named user acl rule. The name of ACL group will be used as an index in this table, which differs from the table hh3cAclEnUserTable. If some objects of this table are not supported by some products, these objects can't be created, changed and applied. Default value of these objects will be returned when they are read.
1.3.6.1.4.1.25506.2.8.2.4.4not-accessiblecurrent
hh3cAclNamedUserEntry
OBJECT-TYPE
User defined acl group entry.
1.3.6.1.4.1.25506.2.8.2.4.4.1not-accessiblecurrent
hh3cAclNamedUserRowStatus
OBJECT-TYPE
RowStatus.
1.3.6.1.4.1.25506.2.8.2.4.4.1.1RowStatusread-createcurrent
hh3cAclNamedUserAct
OBJECT-TYPE
The action of user defined acl rule.
1.3.6.1.4.1.25506.2.8.2.4.4.1.2RuleActionread-createcurrent
hh3cAclNamedUserStartString
OBJECT-TYPE
The rule, matching packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value of this object is defined by product and it indicates the offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: 10,10af,ffff. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.4.4.1.3OCTET STRING (SIZE(0..255))read-createcurrent
hh3cAclNamedUserL2String
OBJECT-TYPE
The rule, matching layer 2 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.4.4.1.4OCTET STRING (SIZE(0..255))read-createcurrent
hh3cAclNamedUserMplsString
OBJECT-TYPE
The rule, matching mpls packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.4.4.1.5OCTET STRING (SIZE(0..255))read-createcurrent
hh3cAclNamedUserIPv4String
OBJECT-TYPE
The rule, matching IPv4 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.4.4.1.6OCTET STRING (SIZE(0..255))read-createcurrent
hh3cAclNamedUserIPv6String
OBJECT-TYPE
The rule, matching IPv6 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.4.4.1.7OCTET STRING (SIZE(0..255))read-createcurrent
hh3cAclNamedUserL4String
OBJECT-TYPE
The rule, matching layer 4 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.4.4.1.8OCTET STRING (SIZE(0..255))read-createcurrent
hh3cAclNamedUserL5String
OBJECT-TYPE
The rule, matching layer 5 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.4.4.1.9OCTET STRING (SIZE(0..255))read-createcurrent
hh3cAclNamedUserTimeRangeName
OBJECT-TYPE
The Time-range of user acl rule. Default value is zero-length.
1.3.6.1.4.1.25506.2.8.2.4.4.1.10OCTET STRING (SIZE(0..32))read-createcurrent
hh3cAclNamedUserCount
OBJECT-TYPE
The count of matched by the rule.
1.3.6.1.4.1.25506.2.8.2.4.4.1.11Unsigned32read-onlycurrent
hh3cAclNamedUserCountClear
OBJECT-TYPE
Reset the value of counter.
1.3.6.1.4.1.25506.2.8.2.4.4.1.12CounterClearread-writecurrent
hh3cAclNamedUserEnable
OBJECT-TYPE
The rule is active or not. true : active false : inactive
1.3.6.1.4.1.25506.2.8.2.4.4.1.13TruthValueread-onlycurrent
hh3cAclNamedUserComment
OBJECT-TYPE
The description of ACL rule. Default value is Zero-length String.
1.3.6.1.4.1.25506.2.8.2.4.4.1.14OCTET STRING (SIZE(0..127))read-createcurrent
hh3cAclNamedUserLog
OBJECT-TYPE
The packet will be logged when it matches the rule. It is disabled by default.
1.3.6.1.4.1.25506.2.8.2.4.4.1.15TruthValueread-createcurrent
hh3cAclNamedUserCounting
OBJECT-TYPE
The packet will be counted when it matches the rule. It is disabled by default.
1.3.6.1.4.1.25506.2.8.2.4.4.1.16TruthValueread-createcurrent
hh3cAclResourceGroup
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.8.2.5
hh3cAclResourceUsageTable
OBJECT-TYPE
The table shows ACL resource usage information. Support for resource types that are denoted by hh3cAclResourceType object varies with products. If a type is not supported, the corresponding row for the type will not be instantiated in this table.
1.3.6.1.4.1.25506.2.8.2.5.1not-accessiblecurrent
hh3cAclResourceUsageEntry
OBJECT-TYPE
Each row contains a brief description of the resource type, a port range associated with the chip, total, reserved, and configured amount of resource of this type, the percent of resource that has been allocated, and so on.
1.3.6.1.4.1.25506.2.8.2.5.1.1not-accessiblecurrent
hh3cAclResourceChassis
OBJECT-TYPE
The chassis number. On a centralized or distributed device, the value for this node is always zero.
1.3.6.1.4.1.25506.2.8.2.5.1.1.1Unsigned32not-accessiblecurrent
hh3cAclResourceSlot
OBJECT-TYPE
The slot number. On a centralized device, the value for this node is always zero.
1.3.6.1.4.1.25506.2.8.2.5.1.1.2Unsigned32not-accessiblecurrent
hh3cAclResourceChip
OBJECT-TYPE
The chip number. On a single chip device, the value for this node is always zero.
1.3.6.1.4.1.25506.2.8.2.5.1.1.3Unsigned32not-accessiblecurrent
hh3cAclResourceType
OBJECT-TYPE
The resource type.
1.3.6.1.4.1.25506.2.8.2.5.1.1.4Integer32 (1..255)not-accessiblecurrent
hh3cAclPortRange
OBJECT-TYPE
The port range associated with the chip. Commas are used to separate multiple port ranges, for example, Ethernet1/2 to Ethernet1/12, Ethernet1/31 to Ethernet1/48.
1.3.6.1.4.1.25506.2.8.2.5.1.1.5OCTET STRING (SIZE(0..255))read-onlycurrent
hh3cAclResourceTotal
OBJECT-TYPE
Total TCAM entries of the resource type.
1.3.6.1.4.1.25506.2.8.2.5.1.1.6Unsigned32read-onlycurrent
hh3cAclResourceReserved
OBJECT-TYPE
The amount of reserved TCAM entries of the resource type.
1.3.6.1.4.1.25506.2.8.2.5.1.1.7Unsigned32read-onlycurrent
hh3cAclResourceConfigured
OBJECT-TYPE
The amount of configured TCAM entries of the resource type.
1.3.6.1.4.1.25506.2.8.2.5.1.1.8Unsigned32read-onlycurrent
hh3cAclResourceUsagePercent
OBJECT-TYPE
The percent of TCAM entries that have been used for this resource type.
1.3.6.1.4.1.25506.2.8.2.5.1.1.9Unsigned32read-onlycurrent
hh3cAclResourceTypeDescription
OBJECT-TYPE
The description of this resource type.
1.3.6.1.4.1.25506.2.8.2.5.1.1.10OCTET STRING (SIZE(0..31))read-onlycurrent
hh3cAclIntervalGroup
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.8.2.6
hh3cAclIntervalTable
OBJECT-TYPE
Log interval table.
1.3.6.1.4.1.25506.2.8.2.6.1not-accessiblecurrent
hh3cAclIntervalEntry
OBJECT-TYPE
Log interval entry.
1.3.6.1.4.1.25506.2.8.2.6.1.1not-accessiblecurrent
hh3cAclIntervalType
OBJECT-TYPE
The types of the interval specified for generating packet filtering logs or traps.
1.3.6.1.4.1.25506.2.8.2.6.1.1.1INTEGER {logging(1), trap(2)}not-accessiblecurrent
hh3cAclIntervalValue
OBJECT-TYPE
The value of interval. It must be a multiple of 5 and in the range of 5 to 1440.
1.3.6.1.4.1.25506.2.8.2.6.1.1.2Integer32 (5..1440)read-createcurrent
hh3cAclIntervalRowStatus
OBJECT-TYPE
RowStatus.
1.3.6.1.4.1.25506.2.8.2.6.1.1.3RowStatusread-createcurrent
hh3cAclPacketFilterObjects
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.8.3
hh3cPfilterScalarGroup
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.8.3.1
hh3cPfilterDefaultAction
OBJECT-TYPE
The default action of packet filter. By default, the packet filter permits packets that do not match any ACL rule to pass.
1.3.6.1.4.1.25506.2.8.3.1.1INTEGER {permit(1), deny(2)}read-writecurrent
hh3cPfilterProcessingStatus
OBJECT-TYPE
This object shows the status of the system when applying packet filter. It is forbidden to set or read in hh3cAclPacketFilterObjects MIB module when the value is processing.
1.3.6.1.4.1.25506.2.8.3.1.2INTEGER {processing(1), done(2)}read-onlycurrent
hh3cPfilterApplyTable
OBJECT-TYPE
A table of packet filter application. It's not supported to set default action on an entity, but supported to enable hardware count of default action on an entity.
1.3.6.1.4.1.25506.2.8.3.2not-accessiblecurrent
hh3cPfilterApplyEntry
OBJECT-TYPE
Packet filter application information entry.
1.3.6.1.4.1.25506.2.8.3.2.1not-accessiblecurrent
hh3cPfilterApplyObjType
OBJECT-TYPE
The object type of packet filter application. interface: Apply an ACL to the interface to filter packets. vlan: Apply an ACL to the VLAN to filter packets. global: Apply an ACL globally to filter packets.
1.3.6.1.4.1.25506.2.8.3.2.1.1INTEGER {interface(1), vlan(2), global(3)}not-accessiblecurrent
hh3cPfilterApplyObjIndex
OBJECT-TYPE
The object ID of packet filter application. Interface: interface index, equal to ifIndex VLAN: VLAN ID, 1..4094 Global: 0
1.3.6.1.4.1.25506.2.8.3.2.1.2Integer32 (0..2147483647)not-accessiblecurrent
hh3cPfilterApplyDirection
OBJECT-TYPE
The direction of packet filter application.
1.3.6.1.4.1.25506.2.8.3.2.1.3DirectionTypenot-accessiblecurrent
hh3cPfilterApplyAclType
OBJECT-TYPE
ACL Type: IPv4, IPv6, default action, MAC, and user. Take default action as a special ACL group.
1.3.6.1.4.1.25506.2.8.3.2.1.4INTEGER {ipv4(1), ipv6(2), default(3), mac(4), user(5)}not-accessiblecurrent
hh3cPfilterApplyAclIndex
OBJECT-TYPE
The ACL group index. Basic type: 2000..2999 Advanced type: 3000..3999 MAC type: 4000..4999 User type: 5000..5999 Default action type: 0
1.3.6.1.4.1.25506.2.8.3.2.1.5Integer32 (0 | 2000..5999)not-accessiblecurrent
hh3cPfilterApplyHardCount
OBJECT-TYPE
Hardware count flag. true: enable hardware count false: disable hardware count
1.3.6.1.4.1.25506.2.8.3.2.1.6TruthValueread-createcurrent
hh3cPfilterApplySequence
OBJECT-TYPE
The configure sequence of packet filter application.
1.3.6.1.4.1.25506.2.8.3.2.1.7Unsigned32read-onlycurrent
hh3cPfilterApplyCountClear
OBJECT-TYPE
Clear the value of counters.
1.3.6.1.4.1.25506.2.8.3.2.1.8CounterClearread-writecurrent
hh3cPfilterApplyRowStatus
OBJECT-TYPE
RowStatus.
1.3.6.1.4.1.25506.2.8.3.2.1.9RowStatusread-createcurrent
hh3cPfilterAclGroupRunInfoTable
OBJECT-TYPE
A table of group running information of ACLs for packet filtering. If hardware count function is not supported or not enabled to the packet filter application, the statistics entry will be zero.
1.3.6.1.4.1.25506.2.8.3.3not-accessiblecurrent
hh3cPfilterAclGroupRunInfoEntry
OBJECT-TYPE
ACL group running information entry for packet filtering.
1.3.6.1.4.1.25506.2.8.3.3.1not-accessiblecurrent
hh3cPfilterRunApplyObjType
OBJECT-TYPE
The object type of packet filter application. interface: Apply an ACL to the interface to filter packets. vlan: Apply an ACL to the VLAN to filter packets. global: Apply an ACL globally to filter packets.
1.3.6.1.4.1.25506.2.8.3.3.1.1INTEGER {interface(1), vlan(2), global(3)}not-accessiblecurrent
hh3cPfilterRunApplyObjIndex
OBJECT-TYPE
The object ID of packet filter application. Interface: interface index, equal to ifIndex VLAN: VLAN ID, 1..4094 Global: 0
1.3.6.1.4.1.25506.2.8.3.3.1.2Integer32 (0..2147483647)not-accessiblecurrent
hh3cPfilterRunApplyDirection
OBJECT-TYPE
The direction of packet filter application.
1.3.6.1.4.1.25506.2.8.3.3.1.3DirectionTypenot-accessiblecurrent
hh3cPfilterRunApplyAclType
OBJECT-TYPE
ACL Type: IPv4, IPv6, default action, MAC, and user. Take default action as a special ACL group.
1.3.6.1.4.1.25506.2.8.3.3.1.4INTEGER {ipv4(1), ipv6(2), default(3), mac(4), user(5)}not-accessiblecurrent
hh3cPfilterRunApplyAclIndex
OBJECT-TYPE
The ACL group index. Basic type: 2000..2999 Advanced type: 3000..3999 MAC type: 4000..4999 User type: 5000..5999 MAC default action: 1 IPv4 default action: 2 IPv6 default action: 3
1.3.6.1.4.1.25506.2.8.3.3.1.5Integer32 (1..3 | 2000..5999)not-accessiblecurrent
hh3cPfilterAclGroupStatus
OBJECT-TYPE
The status of ACL group applied. success: ACL applied successfully on all slots failed: failed to apply ACL on all slots partialSuccess: failed to apply ACL on some slots
1.3.6.1.4.1.25506.2.8.3.3.1.6INTEGER {success(1), failed(2), partialSuccess(3)}read-onlycurrent
hh3cPfilterAclGroupCountStatus
OBJECT-TYPE
The status of enabling hardware count. If hardware count is not enabled, it returns success. success: enable hardware count successfully on all slots failed: failed to enable hardware count on all slots partialSuccess: failed to enable hardware count on some slots
1.3.6.1.4.1.25506.2.8.3.3.1.7INTEGER {success(1), failed(2), partialSuccess(3)}read-onlycurrent
hh3cPfilterAclGroupPermitPkts
OBJECT-TYPE
The number of packets permitted.
1.3.6.1.4.1.25506.2.8.3.3.1.8Counter64read-onlycurrent
hh3cPfilterAclGroupPermitBytes
OBJECT-TYPE
The number of bytes permitted.
1.3.6.1.4.1.25506.2.8.3.3.1.9Counter64read-onlycurrent
hh3cPfilterAclGroupDenyPkts
OBJECT-TYPE
The number of packets denied.
1.3.6.1.4.1.25506.2.8.3.3.1.10Counter64read-onlycurrent
hh3cPfilterAclGroupDenyBytes
OBJECT-TYPE
The number of bytes denied.
1.3.6.1.4.1.25506.2.8.3.3.1.11Counter64read-onlycurrent
hh3cPfilterAclRuleRunInfoTable
OBJECT-TYPE
A table of rule's running information of ACLs for packet filtering. If hardware count function is not supported or not enabled to the packet filter application, the hh3cPfilterAclRuleMatchPackets and hh3cPfilterAclRuleMatchBytes will be zero.
1.3.6.1.4.1.25506.2.8.3.4not-accessiblecurrent
hh3cPfilterAclRuleRunInfoEntry
OBJECT-TYPE
ACL rule's running information entry.
1.3.6.1.4.1.25506.2.8.3.4.1not-accessiblecurrent
hh3cPfilterAclRuleIndex
OBJECT-TYPE
The ACL rule index.
1.3.6.1.4.1.25506.2.8.3.4.1.1Integer32 (0..65534)not-accessiblecurrent
hh3cPfilterAclRuleStatus
OBJECT-TYPE
The status of rule application. success: rule applied successfully on all slots failed: failed to apply rule on all slots partialSuccess: failed to apply rule on some slots
1.3.6.1.4.1.25506.2.8.3.4.1.2INTEGER {success(1), failed(2), partialSuccess(3)}read-onlycurrent
hh3cPfilterAclRuleCountStatus
OBJECT-TYPE
The status of enabling rule's hardware count. If hardware count is not enabled, it returns success. success: enable hardware count successfully on all slots failed: failed to enable hardware count on all slots partialSuccess: failed to enable hardware count on some slots
1.3.6.1.4.1.25506.2.8.3.4.1.3INTEGER {success(1), failed(2), partialSuccess(3)}read-onlycurrent
hh3cPfilterAclRuleMatchPackets
OBJECT-TYPE
The number of packets matched.
1.3.6.1.4.1.25506.2.8.3.4.1.4Counter64read-onlycurrent
hh3cPfilterAclRuleMatchBytes
OBJECT-TYPE
The number of bytes matched.
1.3.6.1.4.1.25506.2.8.3.4.1.5Counter64read-onlycurrent
hh3cPfilterStatisticSumTable
OBJECT-TYPE
A table of ACL rule's sum statistics information, accumulated by all entity application on all slots.
1.3.6.1.4.1.25506.2.8.3.5not-accessiblecurrent
hh3cPfilterStatisticSumEntry
OBJECT-TYPE
ACL rule's sum statistics information entry.
1.3.6.1.4.1.25506.2.8.3.5.1not-accessiblecurrent
hh3cPfilterSumDirection
OBJECT-TYPE
The direction of application.
1.3.6.1.4.1.25506.2.8.3.5.1.1DirectionTypenot-accessiblecurrent
hh3cPfilterSumAclType
OBJECT-TYPE
ACL type: IPv4, IPv6, MAC, and user.
1.3.6.1.4.1.25506.2.8.3.5.1.2INTEGER {ipv4(1), ipv6(2), mac(3), user(4)}not-accessiblecurrent
hh3cPfilterSumAclIndex
OBJECT-TYPE
The ACL group index. Basic type: 2000..2999 Advanced type: 3000..3999 MAC type: 4000..4999 User type: 5000..5999
1.3.6.1.4.1.25506.2.8.3.5.1.3Integer32 (2000..5999)not-accessiblecurrent
hh3cPfilterSumRuleIndex
OBJECT-TYPE
The ACL rule index.
1.3.6.1.4.1.25506.2.8.3.5.1.4Integer32 (0..65534)not-accessiblecurrent
hh3cPfilterSumRuleMatchPackets
OBJECT-TYPE
The sum number of packets matched the ACL rule.
1.3.6.1.4.1.25506.2.8.3.5.1.5Counter64read-onlycurrent
hh3cPfilterSumRuleMatchBytes
OBJECT-TYPE
The sum number of bytes matched the ACL rule.
1.3.6.1.4.1.25506.2.8.3.5.1.6Counter64read-onlycurrent
hh3cPfilter2ApplyTable
OBJECT-TYPE
A table of packet filter application. It's not supported to set default action on an entity, but supported to enable hardware count of default action on an entity.
1.3.6.1.4.1.25506.2.8.3.6not-accessiblecurrent
hh3cPfilter2ApplyEntry
OBJECT-TYPE
Packet filter application information entry.
1.3.6.1.4.1.25506.2.8.3.6.1not-accessiblecurrent
hh3cPfilter2ApplyObjType
OBJECT-TYPE
The object type of packet filter application. interface: Apply an ACL to the interface to filter packets. vlan: Apply an ACL to the VLAN to filter packets. global: Apply an ACL globally to filter packets.
1.3.6.1.4.1.25506.2.8.3.6.1.1INTEGER {interface(1), vlan(2), global(3)}accessible-for-notifycurrent
hh3cPfilter2ApplyObjIndex
OBJECT-TYPE
The object ID of packet filter application. Interface: interface index, equal to ifIndex VLAN: VLAN ID, 1..4094 Global: 0
1.3.6.1.4.1.25506.2.8.3.6.1.2Integer32 (0..2147483647)accessible-for-notifycurrent
hh3cPfilter2ApplyDirection
OBJECT-TYPE
The direction of packet filter application.
1.3.6.1.4.1.25506.2.8.3.6.1.3DirectionTypeaccessible-for-notifycurrent
hh3cPfilter2ApplyAclType
OBJECT-TYPE
ACL Type: IPv4, IPv6, default action, MAC, and user. Take default action as a special ACL group.
1.3.6.1.4.1.25506.2.8.3.6.1.4INTEGER {ipv4(1), ipv6(2), default(3), mac(4), user(5)}accessible-for-notifycurrent
hh3cPfilter2ApplyAclIndex
OBJECT-TYPE
The index of ACL group used by packet-filter. If the specified string comprises only digits, it is converted into a numerical sequence in decimal notation, and regarded as an ACL group index or a default action. If the string is a character string beginning with an English letter, it is regarded as an ACL group name. Group index range and default action: Basic type: 2000..2999 Advanced type: 3000..3999 MAC type: 4000..4999 User type: 5000..5999 Default action type: 0
1.3.6.1.4.1.25506.2.8.3.6.1.5OCTET STRING (SIZE(1..63))accessible-for-notifycurrent
hh3cPfilter2ApplyHardCount
OBJECT-TYPE
Hardware count flag. true: enable hardware count false: disable hardware count
1.3.6.1.4.1.25506.2.8.3.6.1.6TruthValueread-createcurrent
hh3cPfilter2ApplySequence
OBJECT-TYPE
The configure sequence of packet filter application.
1.3.6.1.4.1.25506.2.8.3.6.1.7Unsigned32read-onlycurrent
hh3cPfilter2ApplyCountClear
OBJECT-TYPE
Clear the value of counters.
1.3.6.1.4.1.25506.2.8.3.6.1.8CounterClearread-writecurrent
hh3cPfilter2ApplyRowStatus
OBJECT-TYPE
RowStatus.
1.3.6.1.4.1.25506.2.8.3.6.1.9RowStatusread-createcurrent
hh3cPfilter2AclGroupRunInfoTable
OBJECT-TYPE
A table of group running information of ACLs for packet filtering. If hardware count function is not supported or not enabled to the packet filter application, the statistics entry will be zero.
1.3.6.1.4.1.25506.2.8.3.7not-accessiblecurrent
hh3cPfilter2AclGroupRunInfoEntry
OBJECT-TYPE
ACL group running information entry for packet filtering.
1.3.6.1.4.1.25506.2.8.3.7.1not-accessiblecurrent
hh3cPfilter2RunApplyObjType
OBJECT-TYPE
The object type of packet filter application. interface: Apply an ACL to the interface to filter packets. vlan: Apply an ACL to the VLAN to filter packets. global: Apply an ACL globally to filter packets.
1.3.6.1.4.1.25506.2.8.3.7.1.1INTEGER {interface(1), vlan(2), global(3)}not-accessiblecurrent
hh3cPfilter2RunApplyObjIndex
OBJECT-TYPE
The object ID of packet filter application. Interface: interface index, equal to ifIndex VLAN: VLAN ID, 1..4094 Global: 0
1.3.6.1.4.1.25506.2.8.3.7.1.2Integer32 (0..2147483647)not-accessiblecurrent
hh3cPfilter2RunApplyDirection
OBJECT-TYPE
The direction of packet filter application.
1.3.6.1.4.1.25506.2.8.3.7.1.3DirectionTypenot-accessiblecurrent
hh3cPfilter2RunApplyAclType
OBJECT-TYPE
ACL Type: IPv4, IPv6, default action, MAC, and user. Take default action as a special ACL group.
1.3.6.1.4.1.25506.2.8.3.7.1.4INTEGER {ipv4(1), ipv6(2), default(3), mac(4), user(5)}not-accessiblecurrent
hh3cPfilter2RunApplyAclIndex
OBJECT-TYPE
The index of ACL group used by packet-filter. If the specified string comprises only digits, it is converted into a numerical sequence in decimal notation, and regarded as an ACL group index or a default action. If the string is a character string beginning with an English letter, it is regarded as an ACL group name. Group index range and default action: Basic type: 2000..2999 Advanced type: 3000..3999 MAC type: 4000..4999 User type: 5000..5999 MAC default action: 1 IPv4 default action: 2 IPv6 default action: 3
1.3.6.1.4.1.25506.2.8.3.7.1.5OCTET STRING (SIZE(1..63))not-accessiblecurrent
hh3cPfilter2AclGroupStatus
OBJECT-TYPE
The status of ACL group applied. success: ACL applied successfully on all slots failed: failed to apply ACL on all slots partialSuccess: failed to apply ACL on some slots
1.3.6.1.4.1.25506.2.8.3.7.1.6INTEGER {success(1), failed(2), partialSuccess(3)}read-onlycurrent
hh3cPfilter2AclGroupCountStatus
OBJECT-TYPE
The status of enabling hardware count. If hardware count is not enabled, it returns success. success: enable hardware count successfully on all slots failed: failed to enable hardware count on all slots partialSuccess: failed to enable hardware count on some slots
1.3.6.1.4.1.25506.2.8.3.7.1.7INTEGER {success(1), failed(2), partialSuccess(3)}read-onlycurrent
hh3cPfilter2AclGroupPermitPkts
OBJECT-TYPE
The number of packets permitted.
1.3.6.1.4.1.25506.2.8.3.7.1.8Counter64read-onlycurrent
hh3cPfilter2AclGroupPermitBytes
OBJECT-TYPE
The number of bytes permitted.
1.3.6.1.4.1.25506.2.8.3.7.1.9Counter64read-onlycurrent
hh3cPfilter2AclGroupDenyPkts
OBJECT-TYPE
The number of packets denied.
1.3.6.1.4.1.25506.2.8.3.7.1.10Counter64read-onlycurrent
hh3cPfilter2AclGroupDenyBytes
OBJECT-TYPE
The number of bytes denied.
1.3.6.1.4.1.25506.2.8.3.7.1.11Counter64read-onlycurrent
hh3cPfilter2AclRuleRunInfoTable
OBJECT-TYPE
A table of rule's running information of ACLs for packet filtering. If hardware count function is not supported or not enabled to the packet filter application, the hh3cPfilter2AclRuleMatchPackets and hh3cPfilter2AclRuleMatchBytes will be zero.
1.3.6.1.4.1.25506.2.8.3.8not-accessiblecurrent
hh3cPfilter2AclRuleRunInfoEntry
OBJECT-TYPE
ACL rule's running information entry.
1.3.6.1.4.1.25506.2.8.3.8.1not-accessiblecurrent
hh3cPfilter2AclRuleIndex
OBJECT-TYPE
The ACL rule index.
1.3.6.1.4.1.25506.2.8.3.8.1.1Integer32 (0..65534)accessible-for-notifycurrent
hh3cPfilter2AclRuleStatus
OBJECT-TYPE
The status of rule application. success: rule applied successfully on all slots failed: failed to apply rule on all slots partialSuccess: failed to apply rule on some slots
1.3.6.1.4.1.25506.2.8.3.8.1.2INTEGER {success(1), failed(2), partialSuccess(3)}read-onlycurrent
hh3cPfilter2AclRuleCountStatus
OBJECT-TYPE
The status of enabling rule's hardware count. If hardware count is not enabled, it returns success. success: enable hardware count successfully on all slots failed: failed to enable hardware count on all slots partialSuccess: failed to enable hardware count on some slots
1.3.6.1.4.1.25506.2.8.3.8.1.3INTEGER {success(1), failed(2), partialSuccess(3)}read-onlycurrent
hh3cPfilter2AclRuleMatchPackets
OBJECT-TYPE
The number of packets matched.
1.3.6.1.4.1.25506.2.8.3.8.1.4Counter64read-onlycurrent
hh3cPfilter2AclRuleMatchBytes
OBJECT-TYPE
The number of bytes matched.
1.3.6.1.4.1.25506.2.8.3.8.1.5Counter64read-onlycurrent
hh3cPfilter2StatisticSumTable
OBJECT-TYPE
A table of ACL rule's sum statistics information, accumulated by all entity application on all slots.
1.3.6.1.4.1.25506.2.8.3.9not-accessiblecurrent
hh3cPfilter2StatisticSumEntry
OBJECT-TYPE
ACL rule's sum statistics information entry.
1.3.6.1.4.1.25506.2.8.3.9.1not-accessiblecurrent
hh3cPfilter2SumDirection
OBJECT-TYPE
The direction of application.
1.3.6.1.4.1.25506.2.8.3.9.1.1DirectionTypenot-accessiblecurrent
hh3cPfilter2SumAclType
OBJECT-TYPE
ACL type: IPv4, IPv6, MAC, and user.
1.3.6.1.4.1.25506.2.8.3.9.1.2INTEGER {ipv4(1), ipv6(2), mac(3), user(4)}not-accessiblecurrent
hh3cPfilter2SumAclIndex
OBJECT-TYPE
The index of ACL group used by packet-filter. If the specified string comprises only digits, it is converted into a numerical sequence in decimal notation, and regarded as an ACL group index. If the string is a character string beginning with an English letter, it is regarded as an ACL group name. Group index range and default action: Basic type: 2000..2999 Advanced type: 3000..3999 MAC type: 4000..4999 User type: 5000..5999
1.3.6.1.4.1.25506.2.8.3.9.1.3OCTET STRING (SIZE(1..63))not-accessiblecurrent
hh3cPfilter2SumRuleIndex
OBJECT-TYPE
The ACL rule index.
1.3.6.1.4.1.25506.2.8.3.9.1.4Integer32 (0..65534)not-accessiblecurrent
hh3cPfilter2SumRuleMatchPackets
OBJECT-TYPE
The sum number of packets matched the ACL rule.
1.3.6.1.4.1.25506.2.8.3.9.1.5Counter64read-onlycurrent
hh3cPfilter2SumRuleMatchBytes
OBJECT-TYPE
The sum number of bytes matched the ACL rule.
1.3.6.1.4.1.25506.2.8.3.9.1.6Counter64read-onlycurrent
hh3cAclPacketfilterTrapObjects
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.8.4
hh3cPfilterInterface
OBJECT-TYPE
The interface which policy apply.
1.3.6.1.4.1.25506.2.8.4.1OCTET STRINGaccessible-for-notifycurrent
hh3cPfilterDirection
OBJECT-TYPE
Inbound or outbound.
1.3.6.1.4.1.25506.2.8.4.2OCTET STRING (SIZE(0..255))accessible-for-notifycurrent
hh3cPfilterACLNumber
OBJECT-TYPE
ACL number.
1.3.6.1.4.1.25506.2.8.4.3Integer32accessible-for-notifycurrent
hh3cPfilterAction
OBJECT-TYPE
Permit or deny.
1.3.6.1.4.1.25506.2.8.4.4OCTET STRING (SIZE(0..255))accessible-for-notifycurrent
hh3cMACfilterSourceMac
OBJECT-TYPE
Source MAC address.
1.3.6.1.4.1.25506.2.8.4.5OCTET STRING (SIZE(0..255))accessible-for-notifycurrent
hh3cMACfilterDestinationMac
OBJECT-TYPE
Destination MAC address.
1.3.6.1.4.1.25506.2.8.4.6OCTET STRING (SIZE(0..255))accessible-for-notifycurrent
hh3cPfilterPacketNumber
OBJECT-TYPE
The number of packets permitted or denied by ACL.
1.3.6.1.4.1.25506.2.8.4.7Integer32accessible-for-notifycurrent
hh3cPfilterReceiveInterface
OBJECT-TYPE
The interface where packet come from.
1.3.6.1.4.1.25506.2.8.4.8OCTET STRING (SIZE(0..255))accessible-for-notifycurrent
hh3cAclPacketIfName
OBJECT-TYPE
The name of the interface on which the packet is matched.
1.3.6.1.4.1.25506.2.8.4.9OCTET STRING (SIZE(0..255))accessible-for-notifycurrent
hh3cAclPacketDirection
OBJECT-TYPE
The direction the packet is going.
1.3.6.1.4.1.25506.2.8.4.10DirectionTypeaccessible-for-notifycurrent
hh3cAclPacketBAGG
OBJECT-TYPE
The bridge-aggregation-interface ID the interface belongs to.
1.3.6.1.4.1.25506.2.8.4.11Integer32 (0..2048)accessible-for-notifycurrent
hh3cAclPacketVlanID
OBJECT-TYPE
The vlan the interface belongs to.
1.3.6.1.4.1.25506.2.8.4.12Integer32 (1..4094)accessible-for-notifycurrent
hh3cAclPacketSrcIP
OBJECT-TYPE
Source IP address of IPv4/IPv6 packet.
1.3.6.1.4.1.25506.2.8.4.13OCTET STRING (SIZE(0..255))accessible-for-notifycurrent
hh3cAclPacketDstIP
OBJECT-TYPE
Destination IP address of IPv4/IPv6 packet.
1.3.6.1.4.1.25506.2.8.4.14OCTET STRING (SIZE(0..255))accessible-for-notifycurrent
hh3cAclPacketProtocol
OBJECT-TYPE
The protocol of IPv4/IPv6 packet. icmp(1), tcp(6), udp(17), igmp(2), gre(47), ospf(89), ipinip(4), icmp6(58), ipv6_ah(51), ipv6_esp(50)
1.3.6.1.4.1.25506.2.8.4.15Integer32 (0..255)accessible-for-notifycurrent
hh3cAclPacketDscp
OBJECT-TYPE
DSCP of IPv4/IPv6 packet.
1.3.6.1.4.1.25506.2.8.4.16DSCPValueaccessible-for-notifycurrent
hh3cAclPacketFlowLabel
OBJECT-TYPE
Flow label value of IPv6 packet.
1.3.6.1.4.1.25506.2.8.4.17Unsigned32 (0..1048575 | 4294967295)accessible-for-notifycurrent
hh3cAclPacketIcmpIgmpType
OBJECT-TYPE
The type of ICMP or IGMP packet.
1.3.6.1.4.1.25506.2.8.4.18Integer32 (0..255 | 65535)accessible-for-notifycurrent
hh3cAclPacketIcmpIgmpCode
OBJECT-TYPE
The code of ICMP or IGMP packet.
1.3.6.1.4.1.25506.2.8.4.19Integer32 (0..255 | 65535)accessible-for-notifycurrent
hh3cAclPacketTcpFlags
OBJECT-TYPE
The flags of TCP packet. tcpack(1), tcpfin(2), tcppsh(3), tcprst(4), tcpsyn(5), tcpurg(6), invalid(255)
1.3.6.1.4.1.25506.2.8.4.20INTEGER {tcpack(1), tcpfin(2), tcppsh(3), tcprst(4), tcpsyn(5), tcpurg(6), invalid(255)}accessible-for-notifycurrent
hh3cAclPacketSrcPort
OBJECT-TYPE
Source port of TCP or UDP packet.
1.3.6.1.4.1.25506.2.8.4.21Integer32 (0..65535)accessible-for-notifycurrent
hh3cAclPacketDstPort
OBJECT-TYPE
Destination port of TCP or UDP packet.
1.3.6.1.4.1.25506.2.8.4.22Integer32 (0..65535)accessible-for-notifycurrent
hh3cAclPacketSrcMacAddr
OBJECT-TYPE
Source MAC address of Ethernet packet.
1.3.6.1.4.1.25506.2.8.4.23MacAddressaccessible-for-notifycurrent
hh3cAclPacketDstMacAddr
OBJECT-TYPE
Destination MAC address of Ethernet packet.
1.3.6.1.4.1.25506.2.8.4.24MacAddressaccessible-for-notifycurrent
hh3cAclPacketMacTypeLen
OBJECT-TYPE
The Ethertype or 802.3 length of Ethernet packet.
1.3.6.1.4.1.25506.2.8.4.25Integer32 (0..65535)accessible-for-notifycurrent
hh3cAclPacketVlanPCP
OBJECT-TYPE
802.1p priority code point of Ethernet packet.
1.3.6.1.4.1.25506.2.8.4.26Integer32 (0..7 | 255)accessible-for-notifycurrent
hh3cAclPacketfilterTrap
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.8.5
hh3cPfilterTrapPrefix
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.8.5.0
hh3cAclTrapObjects
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.8.6
hh3cAclResourceTypeName
OBJECT-TYPE
The name of TCAM resources.
1.3.6.1.4.1.25506.2.8.6.1OCTET STRING (SIZE(1..255))accessible-for-notifycurrent
hh3cAclResourceUsage
OBJECT-TYPE
The current usage of TCAM resources.
1.3.6.1.4.1.25506.2.8.6.2Integer32 (1..100)accessible-for-notifycurrent
hh3cAclResourceUsedEntries
OBJECT-TYPE
The used number of entries on TCAM.
1.3.6.1.4.1.25506.2.8.6.3Integer32accessible-for-notifycurrent
hh3cAclResourceTotalEntries
OBJECT-TYPE
The total number of entries on TCAM.
1.3.6.1.4.1.25506.2.8.6.4Integer32accessible-for-notifycurrent
hh3cAclResourceChassisID
OBJECT-TYPE
The chassis number. On a centralized or distributed device, the value for this node is always zero.
1.3.6.1.4.1.25506.2.8.6.5Integer32accessible-for-notifycurrent
hh3cAclResourceSlotID
OBJECT-TYPE
The slot number. On a centralized device, the value for this node is always zero.
1.3.6.1.4.1.25506.2.8.6.6Integer32accessible-for-notifycurrent
hh3cAclTrap
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.8.7
hh3cAclTrapPrefix
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.8.7.0

Notifications

NameOIDStatus
hh3cMACfilterTrap
NOTIFICATION-TYPE
This notification is generated when a packet was processed by MAC address filter, but not every packet will generate one notification, the same notification only generate once in 30 seconds.
1.3.6.1.4.1.25506.2.8.5.0.1current
hh3cAclRuleMatchCount
NOTIFICATION-TYPE
This notification is generated periodically due to a timer. The interval of the timer is configured in hh3cAclIntervalTable. The notification details the entries about the packet-filter object, the matched ACL rule and the number of matching packets.
1.3.6.1.4.1.25506.2.8.5.0.2current
hh3cAclFirstIPv4PktCaptured
NOTIFICATION-TYPE
This notification is generated immediately when the first packet of the matched IPv4 flow is captured. Other packets of the matched flow won't be captured.
1.3.6.1.4.1.25506.2.8.5.0.3current
hh3cAclFirstIPv6PktCaptured
NOTIFICATION-TYPE
This notification is generated immediately when the first packet of the matched IPv6 flow is captured. Other packets of the matched flow won't be captured.
1.3.6.1.4.1.25506.2.8.5.0.4current
hh3cAclFirstEthernetPktCaptured
NOTIFICATION-TYPE
This notification is generated immediately when the first packet of the matched Ethernet flow is captured. Other packets of the matched flow won't be captured.
1.3.6.1.4.1.25506.2.8.5.0.5current
hh3cAclResourceTrap
NOTIFICATION-TYPE
This notification is generated when the number of entries on TCAM becomes equal to or greater than a preset threshold level
1.3.6.1.4.1.25506.2.8.7.0.1current