HH3C-PORT-SECURITY-MIB
65 objects
The MIB module is used for managing port security.
Imported Objects
| OID | Name | Access | Status | Description |
|---|---|---|---|---|
| 1.3.6.1.4.1.25506.2.26.1 | Identityhh3cPortSecurityMIB | The MIB module is used for managing port security. | ||
| 1.3.6.1.4.1.25506.2.26.1.1 | Nodehh3cPortSecurityLeaf | |||
| 1.3.6.1.4.1.25506.2.26.1.1.1 | Scalarhh3cSecurePortSecurityControl | read-write | current | This attribute controls the system wide operation of network access control. The configured port security options only become operational when this attribute i… |
| 1.3.6.1.4.1.25506.2.26.1.1.2 | Scalarhh3cSecurePortVlanMembershipList | accessible-for-notify | current | This is a dummy MIB object referenced by the hh3csecureLogon and hh3csecureLogoff traps. This object contains a comma separated list of the VLAN identifiers (0… |
| 1.3.6.1.4.1.25506.2.26.1.1.4 | Nodehh3cSecureRalmObjects | |||
| 1.3.6.1.4.1.25506.2.26.1.1.4.1 | Scalarhh3cSecureRalmDefaultSessionTime | read-write | current | Specifies the default session lifetime in seconds before a forwarding MAC address is re-authenticated. The default time is 1800 seconds. |
| 1.3.6.1.4.1.25506.2.26.1.1.4.2 | Scalarhh3cSecureRalmHoldoffTime | read-write | current | Specifies the time in seconds before a blocked (denied) MAC address can be re-authenticated. The default time is 60 seconds. |
| 1.3.6.1.4.1.25506.2.26.1.1.4.3 | Scalarhh3cSecureRalmReauthenticate | read-write | current | Writing a MAC address to this object causes an immediate RALM re-authentication of this address (can be on any port). If the MAC address not currently known to… |
| 1.3.6.1.4.1.25506.2.26.1.1.4.4 | Scalarhh3cSecureRalmAuthMode | read-write | current | This controls how MAC addresses are authenticated. papUsernameAsMacAddress(1) Authentication uses the RADIUS server by sending a PAP request with Username and … |
| 1.3.6.1.4.1.25506.2.26.1.1.4.5 | Scalarhh3cSecureRalmAuthUsername | read-write | current | This is the username used for authentication requests where hh3cSecureRalmAuthMode is papUsernameFixed. Default shall be 'mac'. |
| 1.3.6.1.4.1.25506.2.26.1.1.4.6 | Scalarhh3cSecureRalmAuthPassword | read-write | current | This is the password used for authentication requests where hh3cSecureRalmAuthMode is papUsernameFixed. Default shall be a null string. |
| 1.3.6.1.4.1.25506.2.26.1.1.4.7 | Scalarhh3cSecureRalmAuthDomain | read-write | current | MAC-authentication users may be configured in a specific domain, which excludes 802.1x and other authentication users. This specifies the domain of all MAC-aut… |
| 1.3.6.1.4.1.25506.2.26.1.1.4.8 | Scalarhh3cSecureRalmAuthOfflineTime | read-write | current | Switch isn't informed when online user is offline, so switch should be able to detect offline and inform radius server to stop accounting when there is no traf… |
| 1.3.6.1.4.1.25506.2.26.1.1.4.9 | Scalarhh3cSecureRalmAuthServerTimeoutTime | read-write | current | When switch sends request packets (include connecting request and offline request, etc) to radius server and there is no response, switch will terminate the au… |
| 1.3.6.1.4.1.25506.2.26.1.1.4.10 | Scalarhh3cSecureMacControl | read-write | current | This attribute controls the system wide operation of mac-authentication. The system-wide mac-authentication options become non-operational when this attribute … |
| 1.3.6.1.4.1.25506.2.26.1.1.5 | Scalarhh3cSecureUserIPv4BeforeChange | accessible-for-notify | current | The user IPv4 address before change. |
| 1.3.6.1.4.1.25506.2.26.1.1.6 | Scalarhh3cSecureUserIPv4AfterChange | accessible-for-notify | current | The user IPv4 address after change. |
| 1.3.6.1.4.1.25506.2.26.1.1.7 | Scalarhh3cSecureUserIPv6BeforeChange | accessible-for-notify | current | The user IPv6 address before change. |
| 1.3.6.1.4.1.25506.2.26.1.1.8 | Scalarhh3cSecureUserIPv6AfterChange | accessible-for-notify | current | The user IPv6 address after change. |
| 1.3.6.1.4.1.25506.2.26.1.2 | Nodehh3cPortSecurityTables | |||
| 1.3.6.1.4.1.25506.2.26.1.2.1 | Tablehh3cSecurePortTable | not-accessible | current | This table defines the security status of each secure port. Each port can have a number of authorised MAC addresses, and these are stored in the hh3cSecureAddr… |
| 1.3.6.1.4.1.25506.2.26.1.2.1.1 | Rowhh3cSecurePortEntry | not-accessible | current | There is a row in this table for each secure port, and allows repeater ports to be configured for security on a per port basis. It is indexed using the object … |
| 1.3.6.1.4.1.25506.2.26.1.2.1.1.1 | Columnhh3cSecurePortMode | read-write | current | Determines the learning and security modes of the port. See hh3cSecureNeedToKnowMode and hh3cSecureIntrusionAction to configure Need To Know and Intrusion Acti… |
| 1.3.6.1.4.1.25506.2.26.1.2.1.1.2 | Columnhh3cSecureNeedToKnowMode | read-write | current | Attribute to determine which frames are to be forwarded to this port intact. 1 - Need To Know is not available. 2 - All frames. 3 - Frames addressed to the aut… |
| 1.3.6.1.4.1.25506.2.26.1.2.1.1.3 | Columnhh3cSecureIntrusionAction | read-write | current | Attribute to determine the action if an unauthorised device transmits on this port. |
| 1.3.6.1.4.1.25506.2.26.1.2.1.1.4 | Columnhh3cSecureNumberAddresses | read-write | current | The maximum number of addresses that the port can learn or store. Reducing this number may cause some addresses to be deleted. This value is set by the user an… |
| 1.3.6.1.4.1.25506.2.26.1.2.1.1.5 | Columnhh3cSecureNumberAddressesStored | read-only | current | The number of addresses that are currently in the AddressTable for this port. If this object has the same value as hh3cSecureNumberAddresses, then no more addr… |
| 1.3.6.1.4.1.25506.2.26.1.2.1.1.6 | Columnhh3cSecureMaximumAddresses | read-only | current | This indicates the maximum value that hh3cSecureNumberAddresses can be set to. It is dependent on the resources available so may change, eg. if resources are s… |
| 1.3.6.1.4.1.25506.2.26.1.2.2 | Tablehh3cSecureAddressTable | not-accessible | current | This table stores the MAC addresses assigned to each port. This table can be written to by the agent as well as the management station. |
| 1.3.6.1.4.1.25506.2.26.1.2.2.1 | Rowhh3cSecureAddressEntry | not-accessible | current | This table allows multiple addresses to be assigned to each secure port. It is indexed using the objects ifIndex, hh3cSecureAddrMAC and hh3cSecureVlanID. |
| 1.3.6.1.4.1.25506.2.26.1.2.2.1.1 | Columnhh3cSecureAddrMAC | accessible-for-notify | current | The MAC address of a station assigned to this port. This is the second index into the hh3cSecureAddressTable. |
| 1.3.6.1.4.1.25506.2.26.1.2.2.1.2 | Columnhh3cSecureAddrVlanID | read-create | current | The Vlan ID associate with the port and the MAC address. This is the third index into the hh3cSecureAddressTable. |
| 1.3.6.1.4.1.25506.2.26.1.2.2.1.3 | Columnhh3cSecureAddrMACStatus | read-create | current | The state of the mac address assigned to this port. addressBlackhole (1) the mac address is a blackhole address, Each packet whose source address is equal to t… |
| 1.3.6.1.4.1.25506.2.26.1.2.2.1.4 | Columnhh3cSecureAddrRowStatus | read-create | current | This manages the creation and deletion or rows, and shows the current status of the indexed MAC address. This object has the following values. active(1) The in… |
| 1.3.6.1.4.1.25506.2.26.1.2.3 | Tablehh3cSecureOUITable | not-accessible | current | This table stores the OUI values for OUI based authentication. |
| 1.3.6.1.4.1.25506.2.26.1.2.3.1 | Rowhh3cSecureOUIEntry | not-accessible | current | This is a row in the hh3cSecureOUITable. |
| 1.3.6.1.4.1.25506.2.26.1.2.3.1.1 | Columnhh3cSecureOUIIndex | not-accessible | current | The index number. This is the first index into the hh3cSecureOUITable. |
| 1.3.6.1.4.1.25506.2.26.1.2.3.1.2 | Columnhh3cSecureOUI | read-create | current | The OUI value for an authorised device. |
| 1.3.6.1.4.1.25506.2.26.1.2.3.1.3 | Columnhh3cSecureOUIRowStatus | read-create | current | This manages the creation and deletion of rows, and shows the current status of the entry. active(1) The indexed OUI value is authorised. notInService(2) Not S… |
| 1.3.6.1.4.1.25506.2.26.1.2.4 | Tablehh3cSecureBindingTable | not-accessible | current | This table stores the elements of binding rules include the MAC addresses, the IP address and the port. Only the frame exactly matching the binding rules can b… |
| 1.3.6.1.4.1.25506.2.26.1.2.4.1 | Rowhh3cSecureBindingEntry | not-accessible | current | This table allows multiple binding rules. It is indexed using the object hh3cSecureBindingIndex. |
| 1.3.6.1.4.1.25506.2.26.1.2.4.1.1 | Columnhh3cSecureBindingIndex | not-accessible | current | The index number. This is the first index into the hh3cSecureBindingTable. |
| 1.3.6.1.4.1.25506.2.26.1.2.4.1.2 | Columnhh3cSecureBindingPort | read-create | current | The port number of the port bound with the IP address and the MAC address. |
| 1.3.6.1.4.1.25506.2.26.1.2.4.1.3 | Columnhh3cSecureBindingAddrMAC | read-create | current | The MAC address bound with the port and the IP address. |
| 1.3.6.1.4.1.25506.2.26.1.2.4.1.4 | Columnhh3cSecureBindingAddrIp | read-create | current | The IP address bound with the port and the MAC address. |
| 1.3.6.1.4.1.25506.2.26.1.2.4.1.5 | Columnhh3cSecureBindingRowStatus | read-create | current | This manages the creation and deletion or rows, and shows status of the entry. This object has the following values. active(1) The indexed MAC address is autho… |
| 1.3.6.1.4.1.25506.2.26.1.2.5 | Tablehh3cSecureAssignTable | not-accessible | current | Table of port assignment management information about authorised user. |
| 1.3.6.1.4.1.25506.2.26.1.2.5.1 | Rowhh3cSecureAssignEntry | not-accessible | current | An entry (conceptual row) representing information about port assignment about authorised user. |
| 1.3.6.1.4.1.25506.2.26.1.2.5.1.1 | Columnhh3cSecureAssignEnable | read-write | current | The user-based port configuration control. Setting this attribute TRUE causes the port to be configured with any configuration parameters supplied by the authe… |
| 1.3.6.1.4.1.25506.2.26.1.2.5.1.2 | Columnhh3cSecureVlanAssignment | read-only | current | The VLAN membership assigned to the port for the authorised user. This contains the actual value received from the authentication server. This object will cont… |
| 1.3.6.1.4.1.25506.2.26.1.3 | Nodehh3cPortSecurityNotifications | |||
| 1.3.6.1.4.1.25506.2.26.1.3.1 | Notificationhh3cSecureAddressLearned | current | This trap is sent when a new station has been learned. The port on which the address was received is the first object, and the MAC address of the learned stati… | |
| 1.3.6.1.4.1.25506.2.26.1.3.2 | Notificationhh3cSecureViolation | current | This trap is sent whenever a security violation has occurred. The port on which the violation occured is the first object, and the MAC address of the offending… | |
| 1.3.6.1.4.1.25506.2.26.1.3.3 | Notificationhh3cSecureLoginFailure | current | This trap is sent whenever a user network access authentication has failed. The port on which the violation occured is the first object, and the MAC address of… | |
| 1.3.6.1.4.1.25506.2.26.1.3.4 | Notificationhh3cSecureLogon | current | This trap is sent when a new session is started for an authorised port user. The port on which the violation occured is the first object, and the MAC address o… | |
| 1.3.6.1.4.1.25506.2.26.1.3.5 | Notificationhh3cSecureLogoff | current | This trap is sent when a user session is terminated. The port on which the violation occured is the first object, and the MAC address of the offending station … | |
| 1.3.6.1.4.1.25506.2.26.1.3.6 | Notificationhh3cSecureRalmLoginFailure | current | This trap is sent whenever a user network access authentication has failed. The port on which the violation occured is the first object, and the MAC address of… | |
| 1.3.6.1.4.1.25506.2.26.1.3.7 | Notificationhh3cSecureRalmLogon | current | This trap is sent when a new session is started for an authorised port user. The port on which the violation occured is the first object, and the MAC address o… | |
| 1.3.6.1.4.1.25506.2.26.1.3.8 | Notificationhh3cSecureRalmLogoff | current | This trap is sent when a new session is started for an authorised port user. The port on which the violation occured is the first object, and the MAC address o… | |
| 1.3.6.1.4.1.25506.2.26.1.4 | Nodehh3cPortSecurityTrapsV2 | |||
| 1.3.6.1.4.1.25506.2.26.1.4.0 | Nodehh3cPortSecurityTrapsV2Prefix | |||
| 1.3.6.1.4.1.25506.2.26.1.4.0.1 | Notificationhh3cSecureIPv4Change | current | This trap is sent when an 802.1X authentication user IPv4 address changes. | |
| 1.3.6.1.4.1.25506.2.26.1.4.0.2 | Notificationhh3cSecureIPv6Change | current | This trap is sent when an 802.1X authentication user IPv6 address changes. | |
| 1.3.6.1.4.1.25506.2.26.1.4.0.3 | Notificationhh3cSecureRalmIPv4Change | current | This trap is sent when a MAC authentication user IPv4 address changes. | |
| 1.3.6.1.4.1.25506.2.26.1.4.0.4 | Notificationhh3cSecureRalmIPv6Change | current | This trap is sent when a MAC authentication user IPv6 address changes. |