Home/Catalog/CISCO-HARDWARE-IP-VERIFY-MIB

CISCO-HARDWARE-IP-VERIFY-MIB

This MIB module defines management objects for configuration and monitoring of the Intrusion Detection System (IDS) that checks for IP packet verification. The following terms are used throughout the MIB: IDS: Intrusion Detection System CRC: Cyclic Redundancy Check DF: Don't Fragment
Main OID:
ciscoHardwareIpVerifyMIB.1.3.6.1.4.1.9.9.804
12
Objects
Active
Status
3
Dependencies

Imported Objects

Objects

12 total
Object Name
ciscoHardwareIpVerifyMIBThis MIB module defines management objects for configuration and monitoring of the Intrusion Detection System (IDS) that checks for IP packet verification. The following terms are used throughout the MIB: IDS: Intrusion Detection System CRC: Cyclic Redundancy Check DF: Don't Fragment
MODULE-IDENTITY
.1.3.6.1.4.1.9.9.804
ciscoHardwareIpVerifyMIBNotifs
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.804.0
ciscoHardwareIpVerifyMIBObjects
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.804.1
chivIpVerifyTableA list of IDS check configuration and statistical information for each IP type and each IDS check type on the management device.
SEQUENCE OF ChivIpVerifyEntry
.1.3.6.1.4.1.9.9.804.1.1
chivIpVerifyEntryAn entry contains the IDS packet check configuration information and the associated counters.
ChivIpVerifyEntry
.1.3.6.1.4.1.9.9.804.1.1.1
chivIpVerifyCheckIpTypeThis object indicates the IP address type for IDS packet check.
Enumeration
.1.3.6.1.4.1.9.9.804.1.1.1.1
chivIpVerifyCheckTypeNameThis object indicates the IDS packet check type which can be configured on the device. Each check type is a specific criteria. Those IP packets that matches the certain criteria are dropped. addressSrcBroadcast(1) Drop the IPv4 packet if the source address is a broadcast IPv4 address. addressSrcMulticast(2) Drop the IPv4 packet if the source address is a multicast IPv4 address. addressDestZero(3) Drop the IPv4 packet if the destination address is 0.0.0.0. addressIdentical(4) Drop the IPv4 packet if the source IPv4 address is identical to destination IPv4 address. addressSrcReserved(5) Drop the IPv4 packet if the source address is a reserved IPv4 address. addressClassE(6) Drop the IPv4 packet if either the source address or destination address is a class E IPv4 address. checksum(7) Drops the IPv4 packet if its checksum is invalid. protocol(8) Drop the IPv4 packet if the packet fragment has an invalid IP protocol number fragment(9) Drop the IPv4 packet if the packet fragment has a nonzero offset and the DF bit is active. lengthMinimum(10) Drop the IPv4 packet if the Ethernet frame length is less than the IP packet length plus four octets (the CRC length). lengthConsistent(11) Drop the IPv4 or IPv6 packet where the Ethernet frame size is greater than or equal to the IP packet length plus the Ethernet header. lengthMaximumFragment(12) Drop the IPv4 or IPv6 packet if the maximum fragment offset is greater than 65536. lengthMaximumUdp(13) Drop the IPv4 or IPv6 packet if the IP payload length is less than the UDP packet length. lengthMaximumTcp(14) Drop the IPv4 or IPv6 packet if the TCP length is greater than the IP payload length. tcpFlags(15) Drop the IPv4 packet if verification of TCP packet header fails. tcpTinyFlags(16) Drop the IPv4 or IPv6 packet if the IP fragment offset is 1, or if the IP fragment offset is 0 and the IP payload length is less than 16. version(17) Drop the IPv4 packet if the Ethertype is not set to 4 (IPv4); and drops the IPv6 packet if the Ethertype is not set to 6 (IPv6).
Enumeration
.1.3.6.1.4.1.9.9.804.1.1.1.2
chivIpVerifyCheckStatusThis object specifies the IDS packet check configuration status.rw
Enumeration
.1.3.6.1.4.1.9.9.804.1.1.1.3
chivIpVerifyPacketsDroppedThis object indicates the number of packets which has been dropped.ro
Counter64
.1.3.6.1.4.1.9.9.804.1.1.1.4
ciscoHardwareIpVerifyMIBConform
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.804.2
ciscoHardwareIpVerifyMIBCompliances
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.804.2.1
ciscoHardwareIpVerifyMIBGroups
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.804.2.2