HH3C-RBAC-MIB
50 objects
This MIB is to provide the definition of the RBAC (Role Based Access Control) system.
Imported Objects
| HH3C-OID-MIB | hh3cCommon |
| SNMPv2-SMI | MODULE-IDENTITY NOTIFICATION-TYPE OBJECT-TYPE Unsigned32 |
| SNMPv2-TC | RowStatus StorageType TEXTUAL-CONVENTION TruthValue |
| OID | Name | Access | Status | Description |
|---|---|---|---|---|
| 1.3.6.1.4.1.25506.2.158 | Identityhh3cRbac | This MIB is to provide the definition of the RBAC (Role Based Access Control) system. | ||
| 1.3.6.1.4.1.25506.2.158.0 | Nodehh3cRbacNotifications | |||
| 1.3.6.1.4.1.25506.2.158.1 | Nodehh3cRbacObjects | |||
| 1.3.6.1.4.1.25506.2.158.1.1 | Nodehh3cRbacInfo | |||
| 1.3.6.1.4.1.25506.2.158.1.1.1 | Tablehh3cRbacFeatureTable | not-accessible | current | This table shows the information about features on a device. |
| 1.3.6.1.4.1.25506.2.158.1.1.1.1 | Rowhh3cRbacFeatureEntry | not-accessible | current | An entry in the hh3cRbacFeatureTable. One entry indicates information about a feature on a device. |
| 1.3.6.1.4.1.25506.2.158.1.1.1.1.1 | Columnhh3cRbacFeatureName | not-accessible | current | This object indicates the name of a feature. |
| 1.3.6.1.4.1.25506.2.158.1.1.1.1.2 | Columnhh3cRbacFeatureDescription | read-only | current | This object indicates the introduction of the feature. |
| 1.3.6.1.4.1.25506.2.158.1.2 | Nodehh3cRbacConfig | |||
| 1.3.6.1.4.1.25506.2.158.1.2.1 | Scalarhh3cRbacRoleDefaultEnable | read-write | current | This object controls if an authenticated user can access the system when he or she isn't authorized any user roles. The default value is false. |
| 1.3.6.1.4.1.25506.2.158.1.2.2 | Scalarhh3cRbacRoleDefaultRoleName | read-write | current | If hh3cRbacRoleDefaultEnable is true, this object specifies the user role applied to the user when he or she accesses the system without any authorized user ro… |
| 1.3.6.1.4.1.25506.2.158.1.2.3 | Tablehh3cRbacRoleTable | not-accessible | current | This table shows the basic configuration information about all user roles. |
| 1.3.6.1.4.1.25506.2.158.1.2.3.1 | Rowhh3cRbacRoleEntry | not-accessible | current | An entry in the hh3cRbacRoleTable. One entry per role defined on the device. |
| 1.3.6.1.4.1.25506.2.158.1.2.3.1.1 | Columnhh3cRbacRoleName | not-accessible | current | The name of a role. |
| 1.3.6.1.4.1.25506.2.158.1.2.3.1.2 | Columnhh3cRbacRoleDescription | read-create | current | Description of the role. |
| 1.3.6.1.4.1.25506.2.158.1.2.3.1.3 | Columnhh3cRbacRoleResourceAccess | read-create | current | Defines the default access to the resources to which access can be controlled. For example a role which has access to all VLANs, all Interfaces, no VRF and no … |
| 1.3.6.1.4.1.25506.2.158.1.2.3.1.4 | Columnhh3cRbacRoleStorageType | read-only | current | Storage type of this row. |
| 1.3.6.1.4.1.25506.2.158.1.2.3.1.5 | Columnhh3cRbacRoleRowStatus | read-create | current | Status of this row. |
| 1.3.6.1.4.1.25506.2.158.1.2.4 | Tablehh3cRbacRuleTable | not-accessible | current | This table shows the configuration information about rules in all user roles. |
| 1.3.6.1.4.1.25506.2.158.1.2.4.1 | Rowhh3cRbacRuleEntry | not-accessible | current | An entry in the hh3cRbacRuleTable. One entry indicates one rule in a role. |
| 1.3.6.1.4.1.25506.2.158.1.2.4.1.1 | Columnhh3cRbacRuleType | not-accessible | current | The type of a rule. |
| 1.3.6.1.4.1.25506.2.158.1.2.4.1.2 | Columnhh3cRbacRuleNumber | not-accessible | current | The index of rules in one role. There are two kinds of rules in a role. One is system defined, the other is user defined. The total numbers of user defined rul… |
| 1.3.6.1.4.1.25506.2.158.1.2.4.1.3 | Columnhh3cRbacRuleAction | read-create | current | The action of a rule. |
| 1.3.6.1.4.1.25506.2.158.1.2.4.1.4 | Columnhh3cRbacRuleOperation | read-create | current | Privileges of a rule. |
| 1.3.6.1.4.1.25506.2.158.1.2.4.1.5 | Columnhh3cRbacRuleEntityType | read-create | current | This indicates the type of the entity in a rule. There are seven types of entity as below: unknown: invalid. command: a command or a set of commands that match… |
| 1.3.6.1.4.1.25506.2.158.1.2.4.1.6 | Columnhh3cRbacRuleEntity | read-create | current | This indicates the entity that the privileges of rule apply to. It is may be a regular expression of commands, feature name, feature group name, web menu, xml … |
| 1.3.6.1.4.1.25506.2.158.1.2.4.1.7 | Columnhh3cRbacRuleRowStatus | read-create | current | Status of this rule. |
| 1.3.6.1.4.1.25506.2.158.1.2.5 | Tablehh3cRbacPolicyTable | not-accessible | current | This table shows the configuration information about resource access policies in all user roles. A role may be restricted from accessing various resources of a… |
| 1.3.6.1.4.1.25506.2.158.1.2.5.1 | Rowhh3cRbacPolicyEntry | not-accessible | current | An entry in the hh3cRbacPolicyTable. One entry indicates an accessible resource. If a role named 'R' can access VLAN1 to VLAN10, then there will be 10 entries … |
| 1.3.6.1.4.1.25506.2.158.1.2.5.1.1 | Columnhh3cRbacPolicyType | not-accessible | current | This object indicates the type of the resource access policy of this entry. |
| 1.3.6.1.4.1.25506.2.158.1.2.5.1.2 | Columnhh3cRbacPolicyValue | not-accessible | current | This object identifies the resource this role can access. If the value of 'hh3cRbacPolicyType' is 'vlan' or 'interface', the column 'hh3cRbacPolicyValue' is a … |
| 1.3.6.1.4.1.25506.2.158.1.2.5.1.3 | Columnhh3cRbacPolicyRowStatus | read-create | current | Status of this row. |
| 1.3.6.1.4.1.25506.2.158.1.2.6 | Tablehh3cRbacFeatureGroupTable | not-accessible | current | This table shows the configuration information about feature groups on a device. |
| 1.3.6.1.4.1.25506.2.158.1.2.6.1 | Rowhh3cRbacFeatureGroupEntry | not-accessible | current | An entry in the hh3cRbacFeatureGroupTable. One entry indicates a feature in particular group. |
| 1.3.6.1.4.1.25506.2.158.1.2.6.1.1 | Columnhh3cRbacFeatureGroupName | not-accessible | current | This object indicates the name of a feature group. |
| 1.3.6.1.4.1.25506.2.158.1.2.6.1.2 | Columnhh3cRbacFeatureGroupRowStatus | read-create | current | Status of this row. |
| 1.3.6.1.4.1.25506.2.158.1.2.7 | Tablehh3cRbacFeatureInGroupTable | not-accessible | current | This table shows the configuration information about features in feature groups on a device. |
| 1.3.6.1.4.1.25506.2.158.1.2.7.1 | Rowhh3cRbacFeatureInGroupEntry | not-accessible | current | An entry in the hh3cRbacFeaturesInGroupTable. One entry indicates a feature in a particular group. If a newly created feature group doesn't contain any feature… |
| 1.3.6.1.4.1.25506.2.158.1.2.7.1.1 | Columnhh3cRbacFeatureNameInGroup | not-accessible | current | This object indicates the name of a feature in the feature group. |
| 1.3.6.1.4.1.25506.2.158.1.2.7.1.2 | Columnhh3cRbacFeatureInGroupRowStatus | read-create | current | Status of this row. |
| 1.3.6.1.4.1.25506.2.158.2 | Nodehh3cRbacTrap | |||
| 1.3.6.1.4.1.25506.2.158.2.1 | Nodehh3cRbacSuperTrap | |||
| 1.3.6.1.4.1.25506.2.158.2.1.0 | Nodehh3cRbacSuperTrapPrefix | |||
| 1.3.6.1.4.1.25506.2.158.2.1.0.1 | Notificationhh3cRbacSuperChangeSuccessful | current | Temporary user role authorization succeeded. | |
| 1.3.6.1.4.1.25506.2.158.2.1.0.2 | Notificationhh3cRbacSuperChangeFailure | current | Temporary user role authorization failed. |
Type Definitions
| Name | Syntax | Status | Description |
|---|---|---|---|
| Hh3cEntityType | INTEGER { unknown(1), command(2), feature(3), featuregroup(4), webmenu(5), xmlelement(6), oid(7) } | current | This indicates the type of the entity in a rule. |
| Hh3cResourceType | BITS { vlan(0), interface(1), vrf(2), seczone(3) } | current | A User can be restricted from accessing resources by RBAC resource access policies. There are four types of resource access policies as below: vlan(0) Bit value of 0 indicates that the user has access to no VLANs. Bit v… |
| Hh3cRuleAction | INTEGER { permit(1), deny(2) } | current | This indicates the action of a rule that defines the access privileges. permit - permit the privileges deny - deny the privileges |
| Hh3cRuleOperation | BITS { exec(0), read(1), write(2) } | current | Privileges of a rule. exec - execute operation read - Read operation write - Write operation Note that if an operation is not supported by an entity, the operation does not apply to the entity. |
| Hh3cRuleType | INTEGER { system(1), user(2) } | current | There are two types of rules. List as below: system: pre-defined by system and isn't editable. user: defined by user and is editable. |