ARISTA-ACL-MIB
101 objects
The MIB module for managing Access Control Lists (ACLs) on Arista devices.
Imported Objects
| ARISTA-SMI-MIB | aristaMibs |
| INET-ADDRESS-MIB | InetAddressIPv6 |
| RMON2-MIB | TimeFilter |
| SNMPv2-CONF | MODULE-COMPLIANCE OBJECT-GROUP |
| SNMPv2-SMI | Counter64 IpAddress MODULE-IDENTITY OBJECT-TYPE Unsigned32 |
| SNMPv2-TC | DisplayString MacAddress TEXTUAL-CONVENTION TimeStamp TruthValue |
| OID | Name | Access | Status | Description |
|---|---|---|---|---|
| 1.3.6.1.4.1.30065.3.5 | IdentityaristaAclMIB | The MIB module for managing Access Control Lists (ACLs) on Arista devices. | ||
| 1.3.6.1.4.1.30065.3.5.1 | NodearistaAcl | |||
| 1.3.6.1.4.1.30065.3.5.1.1 | NodearistaIpAcl | |||
| 1.3.6.1.4.1.30065.3.5.1.1.1 | TablearistaIpAclTable | not-accessible | current | A table that contains IP ACLs that are configured on the switch. |
| 1.3.6.1.4.1.30065.3.5.1.1.1.1 | RowaristaIpAclEntry | not-accessible | current | Information about a specific IP ACL that is configured on the switch. |
| 1.3.6.1.4.1.30065.3.5.1.1.1.1.1 | ColumnaristaIpAclName | not-accessible | current | The name of the IP ACL. |
| 1.3.6.1.4.1.30065.3.5.1.1.1.1.2 | ColumnaristaIpAclReadOnly | read-only | current | This attribute has value 'true(1)' if the IP ACL is configured as read-only; otherwise, the value is 'false(2)'. |
| 1.3.6.1.4.1.30065.3.5.1.1.1.1.3 | ColumnaristaIpAclStatsEnabled | read-only | current | This attribute has value 'true(1)' if the IP ACL is configured to have per-rule statistics enabled; otherwise, the value is 'false(2)'. |
| 1.3.6.1.4.1.30065.3.5.1.1.1.1.4 | ColumnaristaIpAclCountersIncomplete | read-only | current | This attribute has value 'true(1)' if the IP ACL has incomplete counter; otherwise, the value is 'false(2)'. |
| 1.3.6.1.4.1.30065.3.5.1.1.2 | TablearistaIpAclRuleTable | not-accessible | current | A table that contains IP ACL rules that are configured on the switch. |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1 | RowaristaIpAclRuleEntry | not-accessible | current | Configuration information about a specific IP ACL rule. |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.1 | ColumnaristaIpAclRuleSeqId | not-accessible | current | This attribute is the sequence ID for this ACL rule. |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.2 | ColumnaristaIpAclRuleProto | read-only | current | This attribute is the IP protocol to be matched by this ACL rule. The value 0 indicates the rule matches any IP protocol. |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.3 | ColumnaristaIpAclRuleSrc | read-only | current | This attribute is the IP source address to be matched by this ACL rule, subject to the aristaIpAclRuleSrcMask value. |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.4 | ColumnaristaIpAclRuleSrcMask | read-only | current | This attribute is the IP source-address mask in this ACL rule. For the source address of the packet to match the rule, the bitwise logical-AND of the address a… |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.5 | ColumnaristaIpAclRuleDest | read-only | current | This attribute is the IP destination address to be matched by this ACL rule, subject to the aristaIpAclRuleDestMask value. |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.6 | ColumnaristaIpAclRuleDestMask | read-only | current | This attribute is the IP destination-address mask in this ACL rule. For the destination address of the packet to match the rule, the bitwise logical-AND of the… |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.7 | ColumnaristaIpAclRuleL4PortSrcOper | read-only | current | This attribute determines TCP/UDP source-port matching behavior in this ACL rule. If this attribute has value 'any(0)', then attribute aristaIpAclRuleL4PortsSr… |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.8 | ColumnaristaIpAclRuleL4PortsSrc | read-only | current | This attribute is a list of TCP/UDP source ports to be matched in this ACL rule. They are represented as decimal strings, separated by spaces. A maximum of 10 … |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.9 | ColumnaristaIpAclRuleL4PortDestOper | read-only | current | This attribute determines TCP/UDP destination-port matching behavior in this ACL rule. If this attribute has value 'any(0)', then attribute aristaIpAclRuleL4Po… |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.10 | ColumnaristaIpAclRuleL4PortsDest | read-only | current | This attribute is a list of TCP/UDP destination ports to be matched in this ACL rule. They are represented as decimal strings, separated by spaces. A maximum o… |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.11 | ColumnaristaIpAclRuleTtlOper | read-only | current | This attribute is the IP TTL (Time To Live) operation code used in this ACL rule. Combined with attribute aristaIpAclRuleTtl, it specifies the IP TTL matching … |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.12 | ColumnaristaIpAclRuleTtl | read-only | current | This attribute is the IP TTL value in this ACL rule. Attribute aristaIpAclRuleTtlOper determines how the TTL values is matched in this ACL rule. |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.13 | ColumnaristaIpAclRuleTracked | read-only | current | This attribute has the value 'true(1)' if this ACL rule is tracked; otherwise, the value is 'false(2)'. A tracked rule matches packets in existing ICMP/UDP/TCP… |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.14 | ColumnaristaIpAclRuleFragments | read-only | current | This attribute has value 'true(1)' if this ACL rule is configured to match IP fragments; otherwise, the value is 'false(2)'. |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.15 | ColumnaristaIpAclRuleTcpFlags | read-only | current | This attribute describes TCP flags that are matched by this ACL rule. |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.16 | ColumnaristaIpAclRuleEstablished | read-only | current | This attribute has value 'true(1)' if this ACL rule matches existing TCP connections; otherwise, the value is 'false(2)'. |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.17 | ColumnaristaIpAclRuleIcmpType | read-only | current | This attribute is the ICMP type that is matched by this ACL rule. The attribute is ignored in the ACL rule if the value is 65535. |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.18 | ColumnaristaIpAclRuleIcmpCode | read-only | current | This attribute is the ICMP code that is matched by this ACL rule. The attribute is ignored in the ACL rule if the value is 65535. |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.19 | ColumnaristaIpAclRuleAction | read-only | current | This attribute is the action applied to this ACL rule. |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.20 | ColumnaristaIpAclRuleLog | read-only | current | This attribute has value 'true(1)' if logging is required in this ACL rule; otherwise, the value is 'false(2)'. |
| 1.3.6.1.4.1.30065.3.5.1.1.2.1.21 | ColumnaristaIpAclRuleRemark | read-only | current | This attribute is the remark string applied to this ACL rule. |
| 1.3.6.1.4.1.30065.3.5.1.1.3 | TablearistaIpAclRuleStatsTable | not-accessible | current | A table that contains statistics for IP ACL rules. |
| 1.3.6.1.4.1.30065.3.5.1.1.3.1 | RowaristaIpAclRuleStatsEntry | not-accessible | current | Statistics for a specific IP ACL rules. |
| 1.3.6.1.4.1.30065.3.5.1.1.3.1.1 | ColumnaristaIpAclRuleTimeMark | not-accessible | current | A TimeFilter for this entry. See the TimeFilter textual convention to see how this works. |
| 1.3.6.1.4.1.30065.3.5.1.1.3.1.2 | ColumnaristaIpAclRuleStatsPktCount | read-only | current | This attribute is the number of packets that this ACL rule matched. |
| 1.3.6.1.4.1.30065.3.5.1.1.3.1.3 | ColumnaristaIpAclRuleStatsLastUpdateTime | read-only | current | The value of sysUpTime at the time the aristaIpAclRuleStatsPktCount was last updated for this ACL rule. |
| 1.3.6.1.4.1.30065.3.5.1.2 | NodearistaMacAcl | |||
| 1.3.6.1.4.1.30065.3.5.1.2.1 | TablearistaMacAclTable | not-accessible | current | A table that contains MAC ACLs that are configured on the switch. |
| 1.3.6.1.4.1.30065.3.5.1.2.1.1 | RowaristaMacAclEntry | not-accessible | current | Information about a specific MAC ACL that is configured on the switch. |
| 1.3.6.1.4.1.30065.3.5.1.2.1.1.1 | ColumnaristaMacAclName | not-accessible | current | The name of the MAC ACL. |
| 1.3.6.1.4.1.30065.3.5.1.2.1.1.2 | ColumnaristaMacAclReadOnly | read-only | current | This attribute has value 'true(1)' if the MAC ACL is configured as read-only; otherwise, the value is 'false(2)'. |
| 1.3.6.1.4.1.30065.3.5.1.2.1.1.3 | ColumnaristaMacAclStatsEnabled | read-only | current | This attribute has value 'true(1)' if the MAC ACL is configured to have per-entry statistics enabled; otherwise, the value is 'false(2)'. |
| 1.3.6.1.4.1.30065.3.5.1.2.1.1.4 | ColumnaristaMacAclCountersIncomplete | read-only | current | This attribute has value 'true(1)' if the MAC ACL has incomplete counter statistics; otherwise, the value is 'false(2)'. |
| 1.3.6.1.4.1.30065.3.5.1.2.2 | TablearistaMacAclRuleTable | not-accessible | current | A table that contains MAC ACL rules that are configured on the switch. |
| 1.3.6.1.4.1.30065.3.5.1.2.2.1 | RowaristaMacAclRuleEntry | not-accessible | current | Configuration information about a specific MAC ACL rule. |
| 1.3.6.1.4.1.30065.3.5.1.2.2.1.1 | ColumnaristaMacAclRuleSeqId | not-accessible | current | This attribute is the sequence ID for this ACL rule. |
| 1.3.6.1.4.1.30065.3.5.1.2.2.1.2 | ColumnaristaMacAclRuleSrc | read-only | current | This attribute is the MAC source address to be matched by this ACL rule, subject to the aristaMacAclRuleSrcMask value. |
| 1.3.6.1.4.1.30065.3.5.1.2.2.1.3 | ColumnaristaMacAclRuleSrcMask | read-only | current | This attribute is the MAC source-address mask in this ACL rule. For the source address of the packet to match the rule, the bitwise logical-AND of the address … |
| 1.3.6.1.4.1.30065.3.5.1.2.2.1.4 | ColumnaristaMacAclRuleDest | read-only | current | This attribute is the MAC destination address to be matched by this ACL rule, subject to the aristaMacAclRuleSrcMask value. |
| 1.3.6.1.4.1.30065.3.5.1.2.2.1.5 | ColumnaristaMacAclRuleDestMask | read-only | current | This attribute is the MAC destination-address mask in this ACL rule. For the destination address of the packet to match the rule, the bitwise logical-AND of th… |
| 1.3.6.1.4.1.30065.3.5.1.2.2.1.6 | ColumnaristaMacAclRuleProto | read-only | current | This attribute is the MAC protocol number to be matched by this ACL rule. The protocol value 4294967295 (0xFFFFFFFF) is a value that indicates the rule matches… |
| 1.3.6.1.4.1.30065.3.5.1.2.2.1.7 | ColumnaristaMacAclRuleAction | read-only | current | This attribute is the action applied to this ACL rule. |
| 1.3.6.1.4.1.30065.3.5.1.2.2.1.8 | ColumnaristaMacAclRuleLog | read-only | current | This attribute has value 'true(1)' if logging is required in this ACL rule; otherwise, the value is 'false(2)'. |
| 1.3.6.1.4.1.30065.3.5.1.2.2.1.9 | ColumnaristaMacAclRuleRemark | read-only | current | This attribute is the remark string applied to this ACL rule. |
| 1.3.6.1.4.1.30065.3.5.1.2.3 | TablearistaMacAclRuleStatsTable | not-accessible | current | A table that contains statistics information for MAC ACL rules. |
| 1.3.6.1.4.1.30065.3.5.1.2.3.1 | RowaristaMacAclRuleStatsEntry | not-accessible | current | Statistics for MAC ACL rules. |
| 1.3.6.1.4.1.30065.3.5.1.2.3.1.1 | ColumnaristaMacAclRuleTimeMark | not-accessible | current | A TimeFilter for this entry. See the TimeFilter textual convention to see how this works. |
| 1.3.6.1.4.1.30065.3.5.1.2.3.1.2 | ColumnaristaMacAclRuleStatsPktCount | read-only | current | This attribute is the number of packets that this ACL rule matched. |
| 1.3.6.1.4.1.30065.3.5.1.2.3.1.3 | ColumnaristaMacAclRuleStatsLastUpdateTime | read-only | current | The value of sysUpTime at the time the aristaMacAclRuleStatsPktCount was last updated for this ACL rule. |
| 1.3.6.1.4.1.30065.3.5.1.3 | NodearistaIpv6Acl | |||
| 1.3.6.1.4.1.30065.3.5.1.3.1 | TablearistaIpv6AclTable | not-accessible | current | A table that contains IPv6 ACLs that are configured on the switch. |
| 1.3.6.1.4.1.30065.3.5.1.3.1.1 | RowaristaIpv6AclEntry | not-accessible | current | Information about a specific IPv6 ACL that is configured on the switch. |
| 1.3.6.1.4.1.30065.3.5.1.3.1.1.1 | ColumnaristaIpv6AclName | not-accessible | current | The name of the IPv6 ACL. |
| 1.3.6.1.4.1.30065.3.5.1.3.1.1.2 | ColumnaristaIpv6AclReadOnly | read-only | current | This attribute has value 'true(1)' if the IPv6 ACL is configured as read-only; otherwise, the value is 'false(2)'. |
| 1.3.6.1.4.1.30065.3.5.1.3.1.1.3 | ColumnaristaIpv6AclStatsEnabled | read-only | current | This attribute has value 'true(1)' if the IPv6 ACL is configured to have per-entry statistics enabled; otherwise, the value is 'false(2)'. |
| 1.3.6.1.4.1.30065.3.5.1.3.1.1.4 | ColumnaristaIpv6AclCountersIncomplete | read-only | current | This attribute has value 'true(1)' if the IPv6 ACL has incomplete counter statistics; otherwise, the value is 'false(2)'. |
| 1.3.6.1.4.1.30065.3.5.1.3.2 | TablearistaIpv6AclRuleTable | not-accessible | current | A table that contains IPv6 ACL rules that are configured on the switch. |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1 | RowaristaIpv6AclRuleEntry | not-accessible | current | Configuration information about a specific IPv6 ACL rule. |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.1 | ColumnaristaIpv6AclRuleSeqId | not-accessible | current | This attribute is the sequence ID for this ACL rule. |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.2 | ColumnaristaIpv6AclRuleProto | read-only | current | This attribute is the IPv6 upper layer protocol to be matched by this ACL rule. The value 0 indicates the rule matches any IPv6 protocol. |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.3 | ColumnaristaIpv6AclRuleSrc | read-only | current | This attribute is the IPv6 source address to be matched by this ACL rule, subject to the aristaIpv6AclRuleSrcMask value. |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.4 | ColumnaristaIpv6AclRuleSrcMask | read-only | current | This attribute is the IPv6 source-address mask in this ACL rule. For the source address of the packet to match the rule, the bitwise logical-AND of the address… |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.5 | ColumnaristaIpv6AclRuleDest | read-only | current | This attribute is the IPv6 destination address to be matched by this ACL rule, subject to the aristaIpv6AclRuleDestMask value. |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.6 | ColumnaristaIpv6AclRuleDestMask | read-only | current | This attribute is the IPv6 destination-address mask in this ACL rule. For the destination address of the packet to match the rule, the bitwise logical-AND of t… |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.7 | ColumnaristaIpv6AclRuleL4PortSrcOper | read-only | current | This attribute determines TCP/UDP source-port matching behavior in this ACL rule. If this attribute has value 'any(0)', then attribute aristaIpv6AclRuleL4Ports… |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.8 | ColumnaristaIpv6AclRuleL4PortsSrc | read-only | current | This attribute is a list of TCP/UDP source ports to be matched in this ACL rule. They are represented as decimal strings, separated by spaces. A maximum of 10 … |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.9 | ColumnaristaIpv6AclRuleL4PortDestOper | read-only | current | This attribute determines TCP/UDP destination-port matching behavior in this ACL rule. If this attribute has value 'any(0)', then attribute aristaIpv6AclRuleL4… |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.10 | ColumnaristaIpv6AclRuleL4PortsDest | read-only | current | This attribute is a list of TCP/UDP destination ports to be matched in this ACL rule. They are represented as decimal strings, separated by spaces. A maximum o… |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.11 | ColumnaristaIpv6AclRuleHopLimitOper | read-only | current | This attribute is the IPv6 Hop Limit operation code used in this ACL rule. Combined with attribute aristaIpv6AclRuleHopLimit, it specifies the IPv6 Hop Limit m… |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.12 | ColumnaristaIpv6AclRuleHopLimit | read-only | current | This attribute is the IPv6 Hop Limit value in this ACL rule. Attribute aristaIpv6AclRuleHopLimitOper determines how the Hop Limit values is matched in this ACL… |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.13 | ColumnaristaIpv6AclRuleTcpFlags | read-only | current | This attribute describes TCP flags that are matched by this ACL rule. |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.14 | ColumnaristaIpv6AclRuleEstablished | read-only | current | This attribute has value 'true(1)' if this ACL rule matches existing TCP connections; otherwise, the value is 'false(2)'. |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.15 | ColumnaristaIpv6AclRuleIcmpType | read-only | current | This attribute is the ICMP type that is matched by this ACL rule. The attribute is ignored in the ACL rule if the value is 65535. |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.16 | ColumnaristaIpv6AclRuleIcmpCode | read-only | current | This attribute is the ICMP code that is matched by this ACL rule. The attribute is ignored in the ACL rule if the value is 65535. |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.17 | ColumnaristaIpv6AclRuleAction | read-only | current | This attribute is the action applied to this ACL rule. |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.18 | ColumnaristaIpv6AclRuleLog | read-only | current | This attribute has value 'true(1)' if logging is required in this ACL rule; otherwise, the value is 'false(2)'. |
| 1.3.6.1.4.1.30065.3.5.1.3.2.1.19 | ColumnaristaIpv6AclRuleRemark | read-only | current | This attribute is the remark string applied to this ACL rule. |
| 1.3.6.1.4.1.30065.3.5.1.3.3 | TablearistaIpv6AclRuleStatsTable | not-accessible | current | A table that contains statistics information for IPv6 ACL rules. |
| 1.3.6.1.4.1.30065.3.5.1.3.3.1 | RowaristaIpv6AclRuleStatsEntry | not-accessible | current | Statistics for IPv6 ACL rules. |
| 1.3.6.1.4.1.30065.3.5.1.3.3.1.1 | ColumnaristaIpv6AclRuleTimeMark | not-accessible | current | A TimeFilter for this entry. See the TimeFilter textual convention to see how this works. |
| 1.3.6.1.4.1.30065.3.5.1.3.3.1.2 | ColumnaristaIpv6AclRuleStatsPktCount | read-only | current | This attribute is the number of packets that this ACL rule matched. |
| 1.3.6.1.4.1.30065.3.5.1.3.3.1.3 | ColumnaristaIpv6AclRuleStatsLastUpdateTime | read-only | current | The value of sysUpTime at the time the aristaIpv6AclRuleStatsPktCount was last updated for this ACL rule. |
| 1.3.6.1.4.1.30065.3.5.1.4 | ScalararistaAclDpSupportFlags | read-only | current | This attribute describes the data-plane ACL support matrix. If data-plane ACLs are supported, the acl bit is 1; otherwise, other bits are 0. If data-plane ACLs… |
| 1.3.6.1.4.1.30065.3.5.2 | NodearistaAclConformance | |||
| 1.3.6.1.4.1.30065.3.5.2.1 | NodearistaAclCompliances | |||
| 1.3.6.1.4.1.30065.3.5.2.1.1 | CompliancearistaAclCompliance | current | The compliance statement for Arista switches that support Access Control Lists (ACLs). | |
| 1.3.6.1.4.1.30065.3.5.2.2 | NodearistaAclGroups | |||
| 1.3.6.1.4.1.30065.3.5.2.2.1 | GrouparistaAclGroup | current | The group of required ACL objects. |
Type Definitions
| Name | Syntax | Status | Description |
|---|---|---|---|
| AristaAclRangeOperator | INTEGER { any(0), eq(1), gt(2), lt(3), neq(4), range(5) } | current | Range operator used by an ACL rule. |
| AristaAclRuleAction | INTEGER { permit(0), deny(1), remark(2) } | current | Action associated with an ACL rule. If the action has value 'remark(2)', then only the remark field of the ACL rule is meaningful; all other fields are don't-cares. |