EXTREME-IP-SECURITY-MIB
42 objects
Extreme IP Security MIB
Imported Objects
| EXTREME-BASE-MIB | extremeAgent |
| INET-ADDRESS-MIB | InetAddress InetAddressType InetPortNumber |
| SNMPv2-SMI | Counter64 Integer32 IpAddress MODULE-IDENTITY OBJECT-TYPE |
| SNMPv2-TC | DisplayString MacAddress RowStatus TEXTUAL-CONVENTION |
| OID | Name | Access | Status | Description |
|---|---|---|---|---|
| 1.3.6.1.4.1.1916.1.34 | IdentityextremeIpSecurity | Extreme IP Security MIB | ||
| 1.3.6.1.4.1.1916.1.34.1 | NodeextremeIpSecurityTraps | |||
| 1.3.6.1.4.1.1916.1.34.1.0 | NodeextremeIpSecurityTrapsPrefix | |||
| 1.3.6.1.4.1.1916.1.34.1.0.1 | NotificationextremeIpSecurityViolation | current | For vlans/ports on which one or more of the IP Security features have been enabled, this trap will be generated when a packet received on that vlan/port is in … | |
| 1.3.6.1.4.1.1916.1.34.1.1 | ScalarextremeIpSecurityVlanIfIndex | accessible-for-notify | current | The ifIndex of the VLAN on which the violating packet was received. |
| 1.3.6.1.4.1.1916.1.34.1.2 | ScalarextremeIpSecurityVlanDescr | accessible-for-notify | current | The description(name) of the VLAN on which the violating packet was received. |
| 1.3.6.1.4.1.1916.1.34.1.3 | ScalarextremeIpSecurityPortIfIndex | accessible-for-notify | current | The ifIndex of the port on which the violating packet was received. |
| 1.3.6.1.4.1.1916.1.34.1.4 | ScalarextremeIpSecurityIpAddr | accessible-for-notify | current | Source IP address of the violating packet |
| 1.3.6.1.4.1.1916.1.34.1.5 | ScalarextremeIpSecurityMacAddress | accessible-for-notify | current | Source MAC address from the ethernet header of the violating packet |
| 1.3.6.1.4.1.1916.1.34.1.6 | ScalarextremeIpSecurityViolationType | accessible-for-notify | current | The type of IP Security violation that occurred - rogueDhcpServerPacket(1) A rogue DHCP server packet was received. - badIpMacBindingInArpPacket(2) The IP-MAC … |
| 1.3.6.1.4.1.1916.1.34.2 | NodeextremeIpSecurityAnomalyTraps | |||
| 1.3.6.1.4.1.1916.1.34.2.0 | NodeextremeIpSecurityAnomalyTrapsPrefix | |||
| 1.3.6.1.4.1.1916.1.34.2.0.1 | NotificationextremeIpSecurityAnomalyIpViolation | current | For ports on which the protocol anomaly protection IP features has been enabled, this trap will be generated when a packet received on that port if the packet'… | |
| 1.3.6.1.4.1.1916.1.34.2.0.2 | NotificationextremeIpSecurityAnomalyL4PortViolation | current | For ports on which the protocol anomaly protection L4port features has been enabled, this trap will be generated when a packet received on that port if 1) the … | |
| 1.3.6.1.4.1.1916.1.34.2.0.3 | NotificationextremeIpSecurityAnomalyTcpFlagViolation | current | For ports on which the protocol anomaly protection TCP flags features has been enabled, this trap will be generated when a TCP packet received on that port if … | |
| 1.3.6.1.4.1.1916.1.34.2.0.4 | NotificationextremeIpSecurityAnomalyTcpFragmentViolation | current | For ports on which the protocol anomaly protection TCP fragment features has been enabled, this trap will be generated when a packet received on that port if 1… | |
| 1.3.6.1.4.1.1916.1.34.2.0.5 | NotificationextremeIpSecurityAnomalyIcmpViolation | current | For ports on which the protocol anomaly protection ICMP features has been enabled, this trap will be generated when an ICMP packet received on that port if 1) … | |
| 1.3.6.1.4.1.1916.1.34.2.1 | ScalaresAnomalyPortIfIndex | accessible-for-notify | current | The ifIndex of the port on which the violating packet was received. |
| 1.3.6.1.4.1.1916.1.34.2.2 | ScalaresAnomalyVlanIfIndex | accessible-for-notify | current | The ifIndex of the VLAN on which the violating packet was received. |
| 1.3.6.1.4.1.1916.1.34.2.3 | ScalaresAnomalyVlanDescr | accessible-for-notify | current | The description(name) of the VLAN on which the violating packet was received. |
| 1.3.6.1.4.1.1916.1.34.2.4 | ScalaresAnomalySrcMacAddress | accessible-for-notify | current | Source MAC address in the violating packet |
| 1.3.6.1.4.1.1916.1.34.2.5 | ScalaresAnomalyDestMacAddress | accessible-for-notify | current | Destination MAC address in the violating packet |
| 1.3.6.1.4.1.1916.1.34.2.6 | ScalaresAnomalySrcIpAddrType | accessible-for-notify | current | source IP address type: ipv4 or ipv6 |
| 1.3.6.1.4.1.1916.1.34.2.7 | ScalaresAnomalySrcIpAddr | accessible-for-notify | current | source IP address in the violating packet |
| 1.3.6.1.4.1.1916.1.34.2.8 | ScalaresAnomalyDestIpAddrType | accessible-for-notify | current | destination IP address type: ipv4 or ipv6 |
| 1.3.6.1.4.1.1916.1.34.2.9 | ScalaresAnomalyDestIpAddr | accessible-for-notify | current | destination IP address in the violating packet |
| 1.3.6.1.4.1.1916.1.34.2.10 | ScalaresAnomalyIpProto | accessible-for-notify | current | IP protocol in the violating packet |
| 1.3.6.1.4.1.1916.1.34.2.11 | ScalaresAnomalySrcL4Port | accessible-for-notify | current | tcp/udp source port number in the violating packet |
| 1.3.6.1.4.1.1916.1.34.2.12 | ScalaresAnomalyDestL4Port | accessible-for-notify | current | tcp/udp destination port in the violating packet |
| 1.3.6.1.4.1.1916.1.34.2.13 | ScalaresAnomalyTcpFlag | accessible-for-notify | current | TCP flags in the violating packet |
| 1.3.6.1.4.1.1916.1.34.2.14 | ScalaresAnomalyTcpSeq | accessible-for-notify | current | TCP sequence number in the violating packet |
| 1.3.6.1.4.1.1916.1.34.2.15 | ScalaresAnomalyTcpHdrSize | accessible-for-notify | current | TCP Header size in the violating packet |
| 1.3.6.1.4.1.1916.1.34.2.16 | ScalaresAnomalyTcpFlagReason | accessible-for-notify | current | TCP flag anomaly reason code |
| 1.3.6.1.4.1.1916.1.34.2.17 | ScalaresAnomalyIcmpReason | accessible-for-notify | current | ICMP anomaly reason code |
| 1.3.6.1.4.1.1916.1.34.2.18 | ScalaresAnomalyVlanTag | accessible-for-notify | current | the vlan tag in the violating packet |
| 1.3.6.1.4.1.1916.1.34.2.19 | ScalaresAnomalyTcpFragmentReason | accessible-for-notify | current | TCP fragment anomaly reason code |
Type Definitions
| Name | Syntax | Status | Description |
|---|---|---|---|
| HexOctet | OCTET STRING (SIZE (2)) | current | A single hexidecimal octet used to specify TCP flags |
| IcmpAnomalyReason | INTEGER { unknown(0), icmpOverSize(1), icmpFragmented(2) } | current | 1) the size of ICMP is large than pre-configured allowed size 2) Fragmented ICMP packet |
| IpProtocol | INTEGER { unknown(0), icmp(1), tcp(6), udp(17) } | current | The value of the IP Protocol field of an IP Datagram Header. This identifies the protocol layer above IP. For example, the value 6 is used for TCP and the value 17 is used for UDP. The values of this field are defined i… |
| TcpFlagAnomalyReason | INTEGER { unknown(0), flagSynAndSrcPort(1), flagAndSeq(2), flagFinAndUrgAandPshandSeq(3), flagSynAndFin(4) } | current | 1) (TCP flag SYN is set) and (its TCP source port < 1024). OR 2) (TCP flag == 0) and (TCP seq # == 0). OR 3) (TCP flag FIN/URG/PSH bits sre set) and (TCP seq # == 0). OR 4) Both TCP iflag SYN and FIN are set |
| TcpFragmentAnomalyReason | INTEGER { unknown(0), tcpHdrLessSize(1), tcpFragmented(2) } | current | 1) TCP packet and incompleted TCP header (IP payload less tahn MIN_TCP_HDR_SIZE) 2) Fragmented TCP packet (IP fragment offset = 1) |
| VlanTag | INTEGER (0..4095) | current | The tag used when encapsulating packets transmitted |