ALCATEL-IND1-NETSEC-MIB
AI MIB Summary
The ALCATEL-IND1-NETSEC-MIB provides SNMP management capabilities for the Alcatel-Lucent "Birds Of Prey" product line, specifically enabling the configuration and monitoring of the EtherBreaker security feature. This module facilitates the retrieval of operational status, threshold violations, and event logs associated with the device's Ethernet intrusion prevention and segmentation functions.
This module describes an authoritative enterprise-specific Simple Network Management Protocol (SNMP) Management Information Base (MIB):
For the Birds Of Prey Product Line Configuration and monitoring of the EtherBreaker feature.
The right to make changes in specification and other information contained in this document without prior notice is reserved.
No liability shall be assumed for any incidental, indirect, special, or consequential damages whatsoever arising from or related to this document or the information contained herein.
Vendors, end-users, and other interested parties are granted non-exclusive license to use this specification in connection with management of the products for which it is intended to be used.
Copyright (C) 1995-2007 Alcatel-Lucent ALL RIGHTS RESERVED WORLDWIDE
Main OID:
alcatelIND1NETSECMIB.1.3.6.1.4.1.6486.801.1.2.1.48.1
89
Objects
Active
Status
6
Dependencies
Imported Objects
Objects
89 total| Object Name |
|---|
alcatelIND1NETSECMIBThis module describes an authoritative enterprise-specific Simple
Network Management Protocol (SNMP) Management Information Base (MIB):
For the Birds Of Prey Product Line
Configuration and monitoring of the EtherBreaker feature.
The right to make changes in specification and other information
contained in this document without prior notice is reserved.
No liability shall be assumed for any incidental, indirect, special, or
consequential damages whatsoever arising from or related to this
document or the information contained herein.
Vendors, end-users, and other interested parties are granted
non-exclusive license to use this specification in connection with
management of the products for which it is intended to be used.
Copyright (C) 1995-2007 Alcatel-Lucent
ALL RIGHTS RESERVED WORLDWIDE MODULE-IDENTITY .1.3.6.1.4.1.6486.801.1.2.1.48.1 |
IMPORTSThis module describes an authoritative enterprise-specific Simple
Network Management Protocol (SNMP) Management Information Base (MIB):
For the Birds Of Prey Product Line
Configuration and monitoring of the EtherBreaker feature.
The right to make changes in specification and other information
contained in this document without prior notice is reserved.
No liability shall be assumed for any incidental, indirect, special, or
consequential damages whatsoever arising from or related to this
document or the information contained herein.
Vendors, end-users, and other interested parties are granted
non-exclusive license to use this specification in connection with
management of the products for which it is intended to be used.
Copyright (C) 1995-2007 Alcatel-Lucent
ALL RIGHTS RESERVED WORLDWIDE Unknown .1.3.6.1.4.1.6486.801.1.2.1.48.1 |
alcatelIND1NETSECMIBNotificationsBranch For NETSEC MIB Subsystem Notifications. OBJECT IDENTIFIER .1.3.6.1.4.1.6486.801.1.2.1.48.1.0 |
alaNetSecPortTrapAnomalyTrap for an anomaly detected on a port. NOTIFICATION-TYPE .1.3.6.1.4.1.6486.801.1.2.1.48.1.0.1 |
alaNetSecPortTrapQuarantineTrap for an anomalous port quarantine. NOTIFICATION-TYPE .1.3.6.1.4.1.6486.801.1.2.1.48.1.0.2 |
alcatelIND1NETSECMIBObjects OBJECT IDENTIFIER .1.3.6.1.4.1.6486.801.1.2.1.48.1.1 |
alaNetSecPortRangeConfig OBJECT IDENTIFIER .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.1 |
alaNetSecPortRangeGroupTableTable for collecting port-range and monitoring-group associations.
A port belongs to at most one monitoring-group. SEQUENCE OF AlaNetSecPortRangeGroupEntry .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.1.1 |
alaNetSecPortRangeGroupEntryEach entry is identified by a unique port-range. AlaNetSecPortRangeGroupEntry .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.1.1.1 |
alaNetSecPortRangeGroupStartIfIdStarting interface index of a port-range InterfaceIndex (IF-MIB) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.1.1.1.1 |
alaNetSecPortRangeGroupEndIfIdEnding interface index of a port-range InterfaceIndex (IF-MIB) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.1.1.1.2 |
alaNetSecPortRangeGroupNameName of monitoring-group with which this port-range is associated.rw SnmpAdminString ( SIZE( 1 .. 32 ) ) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.1.1.1.3 |
alaNetSecPortRangeGroupRowStatusidentifies state of this entry. CREATEANDGO will only work, if the name of alaNetSecPortRangeGroupName is part of the create requestrw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.1.1.1.4 |
alaNetSecMonitoringGroupConfig OBJECT IDENTIFIER .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.2 |
alaNetSecMonitoringGroupTableTable for collecting monitoring-groups' anomaly configurations SEQUENCE OF AlaNetSecMonitoringGroupEntry .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.2.1 |
alaNetSecMonitoringGroupEntryEach entry identifies configuration of a monitoring-group's anomaly-type's parameter AlaNetSecMonitoringGroupEntry .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.2.1.1 |
alaNetSecMonitoringGroupNamename of the monitoring-group SnmpAdminString ( SIZE( 1 .. 32 ) ) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.2.1.1.1 |
alaNetSecMonitoringGroupAnomalymonitoring-group's anomaly-type AlaAnomalyType .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.2.1.1.2 |
alaNetSecMonitoringGroupAnomalyStateState of detecting indexed anomaly.rw AlaNetsecStatus .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.2.1.1.3 |
alaNetSecMonitoringGroupAnomalyLogState of logging upon detecting anomaly.rw AlaNetsecStatus .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.2.1.1.4 |
alaNetSecMonitoringGroupAnomalyTrapState of sending traps upon detecting anomaly.rw AlaNetsecStatus .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.2.1.1.5 |
alaNetSecMonitoringGroupAnomalyQuarantineState of Quarantining anomalous port upon detecting anomaly.rw AlaNetsecStatus .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.2.1.1.6 |
alaNetSecMonitoringGroupAnomalyCountCount of packets that must be seen during monitoring period
to initiate anomaly detection check.
Default value varies as below with anomaly:
Anomaly Count
ARP address scan 50
ARP flood 90
ARP poisoning 6
ARP Failure 6
ICMP address scan 30
ICMP Flood 90
ICMP Unreachable 20
TCP port Scan 20
TCP address scan 30
SYN flood 90
SYN Failure 10
SYN-ACK Scan 2
FIN Scan 6
FIN-ACK Diff 5
RST Count 50rw Integer32 ( 1..100000 ) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.2.1.1.7 |
alaNetSecMonitoringGroupAnomalySensitivitySensitivity of Anomaly Check to deviation from expected behavior.rw Integer32 ( 1..100 ) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.2.1.1.8 |
alaNetSecMonitoringGroupAnomalyPeriodTime in seconds to monitor packets before checking for anomaly.rw Integer32 ( 5..3600 ) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.2.1.1.9 |
alaNetSecMonitoringGroupRowStatusCREATEANDGO will only work if, besides RowStatus, at least one of State, Log, Trap, Quarantine, Count, Sensitivity or Period is part of the request.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.2.1.1.10 |
alaNetSecPortStats OBJECT IDENTIFIER .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.3 |
alaNetSecPortStatsTableTable for reporting port specific statistics SEQUENCE OF AlaNetSecPortStatsEntry .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.3.1 |
alaNetSecPortStatsEntryStats are collected on a <port,packet-type,packet-direction,total/last> basis AlaNetSecPortStatsEntry .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.3.1.1 |
alaNetSecPortStatsIfIdInterface Index of the port InterfaceIndex (IF-MIB) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.3.1.1.1 |
alaNetSecPortStatsPacketPacket type AlaPacketType .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.3.1.1.2 |
alaNetSecPortStatsLastIngressCount of Indexed Ingress packets observed during last 5 secondsro Counter32 .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.3.1.1.3 |
alaNetSecPortStatsLastEgressCount of Indexed Egress packets observed during last 5 secondsro Counter32 .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.3.1.1.4 |
alaNetSecPortStatsTotalIngressCount of Indexed Ingress packets observed since monitoring was enabled, Counter will loop back from zero upon reaching the maximumro Counter32 .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.3.1.1.5 |
alaNetSecPortStatsTotalEgressCount of Indexed Egress packets observed since monitoring was enabled. Counter will loop back from zero upon reaching the maximumro Counter32 .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.3.1.1.6 |
alaNetSecPortAnomalyStats OBJECT IDENTIFIER .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.4 |
alaNetSecPortAnomalyStatsTableTable for reporting Anomaly statistics SEQUENCE OF AlaNetSecPortAnomalyStatsEntry .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.4.1 |
alaNetSecPortAnomalyStatsEntryStats are collected on a <port,anomaly-type,packet-type,packet-direction,current/last> basis AlaNetSecPortAnomalyStatsEntry .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.4.1.1 |
alaNetSecPortAnomalyStatsIfIdInterface Index of the port InterfaceIndex (IF-MIB) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.4.1.1.1 |
alaNetSecPortAnomalyStatsAnomalyAnomaly type AlaAnomalyType .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.4.1.1.2 |
alaNetSecPortAnomalyStatsPacketPacket type AlaPacketType .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.4.1.1.3 |
alaNetSecPortAnomalyStatsCurrentIngressCount of Indexed packets ingress during current monitoring period.ro Counter32 .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.4.1.1.4 |
alaNetSecPortAnomalyStatsCurrentEgressCount of Indexed packets egress during current monitoring period.ro Counter32 .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.4.1.1.5 |
alaNetSecPortAnomalyStatsLastIngressCount of Indexed packets ingress during last monitoring period.ro Counter32 .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.4.1.1.6 |
alaNetSecPortAnomalyStatsLastEgressCount of Indexed packets egress during last monitoring period.ro Counter32 .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.4.1.1.7 |
alaNetSecPortAnomalySummary OBJECT IDENTIFIER .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.5 |
alaNetSecPortAnomalySummaryTableTable for reporting Anomaly summaries SEQUENCE OF AlaNetSecPortAnomalySummaryEntry .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.5.1 |
alaNetSecPortAnomalySummaryEntrySummary are reported on a <port,summary-type,anomaly-type> basis AlaNetSecPortAnomalySummaryEntry .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.5.1.1 |
alaNetSecPortAnomalySummaryIfIdInterface Index of port InterfaceIndex (IF-MIB) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.5.1.1.1 |
alaNetSecPortAnomalySummaryAnomalyAnomaly type AlaAnomalyType .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.5.1.1.2 |
alaNetSecPortAnomalySummaryObservedCount of observations for indexed anomaly on indexed port since monitoring was enabled.ro Counter32 .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.5.1.1.3 |
alaNetSecPortAnomalySummaryDetectedCount of detections for indexed anomaly on indexed port since monitoring was enabled.ro Counter32 .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.5.1.1.4 |
alaNetSecPortOp OBJECT IDENTIFIER .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.6 |
alaNetSecPortOpTableTable for reporting port anomaly operation parameters SEQUENCE OF AlaNetSecPortOpEntry .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.6.1 |
alaNetSecPortOpEntryEach entry is identified by a unique port, and anomaly-type combination AlaNetSecPortOpEntry .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.6.1.1 |
alaNetSecPortOpIfIdinterface index of port InterfaceIndex (IF-MIB) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.6.1.1.1 |
alaNetSecPortOpAnomalyanomaly-type AlaAnomalyType .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.6.1.1.2 |
alaNetSecPortOpStatestate of anomalyro AlaNetsecStatus .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.6.1.1.3 |
alaNetSecPortOpLogLogging state of anomalyro AlaNetsecStatus .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.6.1.1.4 |
alaNetSecPortOpTrapTrap state of anomalyro AlaNetsecStatus .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.6.1.1.5 |
alaNetSecPortOpQuarantineQuarantine state of anomalyro AlaNetsecStatus .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.6.1.1.6 |
alaNetSecPortOpCountactivation-count being used by netsec on the indexed objectro Integer32 ( 1 .. 100000 ) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.6.1.1.7 |
alaNetSecPortOpSensitivitysensitivity being used by netsec on the indexed objectro Integer32 ( 1 .. 100 ) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.6.1.1.8 |
alaNetSecPortOpPeriodmonitoring period being used by netsec on the indexed objectro Integer32 ( 5 .. 3600 ) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.6.1.1.9 |
alaNetSecGroupOp OBJECT IDENTIFIER .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.7 |
alaNetSecGroupOpTableTable for reporting group anomaly operation parameters SEQUENCE OF AlaNetSecGroupOpEntry .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.7.1 |
alaNetSecGroupOpEntryEach entry is identified by a unique group, and anomaly-type combination AlaNetSecGroupOpEntry .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.7.1.1 |
alaNetSecGroupOpNamename of the group SnmpAdminString ( SIZE( 1 .. 32 ) ) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.7.1.1.1 |
alaNetSecGroupOpAnomalyanomaly-type AlaAnomalyType .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.7.1.1.2 |
alaNetSecGroupOpStatestate of anomalyro AlaNetsecStatus .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.7.1.1.3 |
alaNetSecGroupOpLogLogging state of anomalyro AlaNetsecStatus .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.7.1.1.4 |
alaNetSecGroupOpTrapTrap state of anomalyro AlaNetsecStatus .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.7.1.1.5 |
alaNetSecGroupOpQuarantineQuarantine state of anomalyro AlaNetsecStatus .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.7.1.1.6 |
alaNetSecGroupOpCountactivation-count being used by netsec on the indexed objectro Integer32 ( 1 .. 100000 ) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.7.1.1.7 |
alaNetSecGroupOpSensitivitysensitivity being used by netsec on the indexed objectro Integer32 ( 1 .. 100 ) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.7.1.1.8 |
alaNetSecGroupOpPeriodmonitoring period being used by netsec on the indexed objectro Integer32 ( 5 .. 3600 ) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.7.1.1.9 |
alaNetSecGroup OBJECT IDENTIFIER .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.8 |
alaNetSecGroupTableTable of groups configured SEQUENCE OF AlaNetSecGroupEntry .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.8.1 |
alaNetSecGroupEntryEach entry identifies a configured group AlaNetSecGroupEntry .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.8.1.1 |
alaNetSecGroupNameName of configured group SnmpAdminString ( SIZE( 1 .. 32 ) ) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.8.1.1.1 |
alaNetSecGroupMemberPortsYes if there are ports in this group.ro TruthValue (SNMPv2-TC) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.8.1.1.2 |
alaNetSecGroupAnomalyCfgYes if any of this group's anomaly has a non-default configuration.ro TruthValue (SNMPv2-TC) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.8.1.1.3 |
alaNetSecPortTrapsObj OBJECT IDENTIFIER .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.9 |
alaNetSecPortTrapInfoIfIdInterface index of port on which anomaly is detectedro InterfaceIndex (IF-MIB) .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.9.1 |
alaNetSecPortTrapInfoAnomalyType of anomaly detected on the interfacero AlaAnomalyType .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.9.2 |
alaNetSecPortTrapInfoTypeNature of anomaly. Informs if system attached to interface is source or target of the anomaly.ro Enumeration .1.3.6.1.4.1.6486.801.1.2.1.48.1.1.9.3 |
alcatelIND1NETSECMIBConformanceBranch for NETSEC application conformance information OBJECT IDENTIFIER .1.3.6.1.4.1.6486.801.1.2.1.48.1.2 |
alcatelIND1NETSECMIBGroupsBranch for NETSEC application units of conformance OBJECT IDENTIFIER .1.3.6.1.4.1.6486.801.1.2.1.48.1.2.1 |
alcatelIND1NETSECMIBCompliancesBranch for NETSEC application compliance statements OBJECT IDENTIFIER .1.3.6.1.4.1.6486.801.1.2.1.48.1.2.2 |