Home/Catalog/ENTERASYS-ANTI-SPOOF-MIB

ENTERASYS-ANTI-SPOOF-MIB

AI MIB Summary

The ENTERASYS-ANTI-SPOOF-MIB enables SNMP-based configuration and monitoring of anti-spoofing security policies on Enterasys Networks switches, specifically managing parameters such as source IP validation rules, interface binding states, and spoofing violation counters to prevent IP address forgery attacks.

This MIB module defines a portion of the SNMP MIB under the Enterasys Networks enterprise OID pertaining to configuration of the anti-spoofing feature.
Main OID:
etsysAntiSpoofMIB.1.3.6.1.4.1.5624.1.2.96
82
Objects
Active
Status
8
Dependencies

Imported Objects

Objects

82 total
Object Name
etsysAntiSpoofMIBThis MIB module defines a portion of the SNMP MIB under the Enterasys Networks enterprise OID pertaining to configuration of the anti-spoofing feature.
MODULE-IDENTITY
.1.3.6.1.4.1.5624.1.2.96
etsysAntiSpoofObjects
OBJECT IDENTIFIER
.1.3.6.1.4.1.5624.1.2.96.1
etsysAntiSpoofNotificationBranch
OBJECT IDENTIFIER
.1.3.6.1.4.1.5624.1.2.96.1.0
etsysAntiSpoofClassNotificationThis notification indicates that a Anti Spoof class has reached a threshold limit.
NOTIFICATION-TYPE
.1.3.6.1.4.1.5624.1.2.96.1.0.1
etsysAntiSpoofDuplicateIpNotificationThis notification indicates that a duplicate IP condition has occurred.
NOTIFICATION-TYPE
.1.3.6.1.4.1.5624.1.2.96.1.0.2
etsysAntiSpoofSystemBranch
OBJECT IDENTIFIER
.1.3.6.1.4.1.5624.1.2.96.1.1
etsysAntiSpoofSystemStateWhen enabled(1), all objects in this MIB are fully active. When disabled(2), this object overrides all other object settings in this MIB without affecting their values. Maintaining the value of this object across agent reboots is REQUIRED.rw
EnabledStatus (P-BRIDGE-MIB)
.1.3.6.1.4.1.5624.1.2.96.1.1.1
etsysAntiSpoofMaxClassIndexThe maximum number of class indexes available in the system.ro
Unsigned32
.1.3.6.1.4.1.5624.1.2.96.1.1.2
etsysAntiSpoofMaxClassThresholdIndexThe maximum number of threshold indexes able to be associated with a particular class.ro
Unsigned32
.1.3.6.1.4.1.5624.1.2.96.1.1.3
etsysAntiSpoofSystemSnmpNotificationsThe current state of the SNMP Notification functionality in the Anti Spoofing feature. enabled (1) - Anti-Spoofing will generate SNMP Notifications for user IP address or port changes that exceed the configured limits. The Anti-Spoofing feature MUST be enabled for SNMP Notifications to be generated. disabled (2) - Anti-Spoofing will not generate SNMP Notifications under any conditions. A notification is generated when a value is first detected above its respective configured limit. That notification SHOULD NOT be generated again until the configured notification timeout period has elapsed. Agents are not required to generate SNMP Notifications for conditions that exist when this object is set to enabled. SNMP Notifications MAY only be generated after additional IP address changes are detected that exceed the configured limits for the user. Maintaining the value of this object across agent reboots is REQUIRED.rw
EnabledStatus (P-BRIDGE-MIB)
.1.3.6.1.4.1.5624.1.2.96.1.1.4
etsysAntiSpoofSystemNotificationIntervalThe number of seconds to wait before generating another notification of the same type for the same user. This allows notification generation to be throttled in the case of a user who continually changes IP addresses. A value of zero indicates that the entity SHOULD NOT suppress any notifications related to the Anti-Spoofing feature. Maintaining the value of this object across agent reboots is REQUIRED.rw
Unsigned32
.1.3.6.1.4.1.5624.1.2.96.1.1.5
etsysAntiSpoofDuplicateIpControlWhen this is set to enabled(1) any IP changes will be checked across the system to ensure that the newly configured IP address is not already present. If the IP is present in the system then a syslog and or trap will be issued. When set to disabled(2) this check will not occur.rw
EnabledStatus (P-BRIDGE-MIB)
.1.3.6.1.4.1.5624.1.2.96.1.1.6
etsysAntiSpoofSupportedActionTypesThis object specifies that anti-spoofing action types that the device supports. A bit will be set for each corresponding type that is supported.ro
AntiSpoofPortAction
.1.3.6.1.4.1.5624.1.2.96.1.1.7
etsysAntiSpoofSupportedThresholdTypesThis object specifies that anti-spoofing threshold types that the device supports. A bit will be set for each corresponding type that is supported.ro
Bits
.1.3.6.1.4.1.5624.1.2.96.1.1.8
etsysAntiSpoofSupportedBindingTypesThis object specifies that anti-spoofing binding types that the device supports. A bit will be set for each corresponding type that is supported.ro
Bits
.1.3.6.1.4.1.5624.1.2.96.1.1.9
etsysAntiSpoofClassBranch
OBJECT IDENTIFIER
.1.3.6.1.4.1.5624.1.2.96.1.2
etsysAntiSpoofClassTableProvides for the configuring of each of the classes present in Anti-Spoofing. Maintaining the value of the objects in this table across agent reboots is REQUIRED.
SEQUENCE OF EtsysAntiSpoofClassEntry
.1.3.6.1.4.1.5624.1.2.96.1.2.1
etsysAntiSpoofClassEntryAn entry containing per class properties.
EtsysAntiSpoofClassEntry
.1.3.6.1.4.1.5624.1.2.96.1.2.1.1
etsysAntiSpoofClassIndexThe index of class that this row represents. This index has a value between one(1) and etsysAntiSpoofMaxClassIndex.
Unsigned32
.1.3.6.1.4.1.5624.1.2.96.1.2.1.1.1
etsysAntiSpoofClassNameAdministratively assigned textual description of this class.rw
SnmpAdminString
.1.3.6.1.4.1.5624.1.2.96.1.2.1.1.2
etsysAntiSpoofClassTimeoutThe number of seconds to wait before administratively resetting the counters of the bindings which are based on this class associated with this class. A value of zero indicates that the counters will not be reset automatically.rw
Unsigned32 UNITS "seconds"
.1.3.6.1.4.1.5624.1.2.96.1.2.1.1.3
etsysAntiSpoofThresholdTableProvides for the configuration of the Anti-Spoofing feature's various thresholds. Maintaining the value of the objects in this table across agent reboots is REQUIRED.
SEQUENCE OF EtsysAntiSpoofThresholdEntry
.1.3.6.1.4.1.5624.1.2.96.1.2.2
etsysAntiSpoofThresholdEntryAn entry providing per class, per threshold configuration.
EtsysAntiSpoofThresholdEntry
.1.3.6.1.4.1.5624.1.2.96.1.2.2.1
etsysAntiSpoofThresholdIndexThe index of the threshold that this row represents. This index has a value between one(1) and etsysAntiSpoofMaxClassThresholdIndex.
Unsigned32
.1.3.6.1.4.1.5624.1.2.96.1.2.2.1.1
etsysAntiSpoofThresholdValueThe threshold at which the action defined by the class is taken. A value of zero(0) indicates that the threshold actions will never take place.rw
Unsigned32
.1.3.6.1.4.1.5624.1.2.96.1.2.2.1.2
etsysAntiSpoofThresholdActionMaskThe action(s) that will be taken when the threshold in the class represented by this row is reached.rw
AntiSpoofPortAction
.1.3.6.1.4.1.5624.1.2.96.1.2.2.1.3
etsysAntiSpoofThresholdActionQuarantineValueA value that delineates the policy quarantine index to which the user will be assigned. This value is only used if the quarantineUser(2) bit is set in the etsysAntiSpoofThresholdActionMask.rw
Integer32
.1.3.6.1.4.1.5624.1.2.96.1.2.2.1.4
etsysAntiSpoofThresholdTypeThe class type associated with this entry.rw
AntiSpoofThresholdType
.1.3.6.1.4.1.5624.1.2.96.1.2.2.1.5
etsysAntiSpoofPortBranch
OBJECT IDENTIFIER
.1.3.6.1.4.1.5624.1.2.96.1.3
etsysAntiSpoofPortConfigTableA table of per port information and configuration for Anti-Spoofing.
SEQUENCE OF EtsysAntiSpoofPortConfigEntry
.1.3.6.1.4.1.5624.1.2.96.1.3.1
etsysAntiSpoofPortConfigEntryAn entry containing per port Anti-Spoofing data.
EtsysAntiSpoofPortConfigEntry
.1.3.6.1.4.1.5624.1.2.96.1.3.1.1
etsysAntiSpoofDHCPModeThis object allows for the enabling or disabling of DHCP Snooping functionality on a per-port basis.rw
EnabledStatus (P-BRIDGE-MIB)
.1.3.6.1.4.1.5624.1.2.96.1.3.1.1.1
etsysAntiSpoofDHCPMacVerifyThis object allows for the enabling or disabling of DHCP-Snooping to verify the source address MAC with chaddr in DHCP packets on incoming client messages.rw
EnabledStatus (P-BRIDGE-MIB)
.1.3.6.1.4.1.5624.1.2.96.1.3.1.1.2
etsysAntiSpoofArpInspectionWhen set to enabled(1), dynamic ARP inspection is allowed on this port. When set to disabled(2), dynamic ARP inspection is not allowed on this port. When set to inspectionOnly(3), dynamic ARP inspection will occur but will not be used to create bindings.rw
AntiSpoofInspectionType
.1.3.6.1.4.1.5624.1.2.96.1.3.1.1.3
etsysAntiSpoofIpInspectionWhen set to enabled(1), dynamic IP inspection is allowed on this port. When set to disabled(2), dynamic IP inspection is not allowed on this port. When set to inspectionOnly(3), dynamic IP inspection will occur but will not be used to create bindings.rw
AntiSpoofInspectionType
.1.3.6.1.4.1.5624.1.2.96.1.3.1.1.4
etsysAntiSpoofPortClassIndexThis value represents the class index to be used for the given port. The special case value of zero(0) indicates that no class index will be used for this port.rw
Unsigned32
.1.3.6.1.4.1.5624.1.2.96.1.3.1.1.5
etsysAntiSpoofUntrustedTrafficPacketCounterThis counter is used to measure the number of DHCP server packets received on this port. This counter will only increment when the etsysAntiSpoofPortType is set to untrusted(3).ro
Counter32
.1.3.6.1.4.1.5624.1.2.96.1.3.1.1.6
etsysAntiSpoofPortTypeTableA table containing port type information for each port in the system that supports anti-spoofing.
SEQUENCE OF EtsysAntiSpoofPortTypeEntry
.1.3.6.1.4.1.5624.1.2.96.1.3.2
etsysAntiSpoofPortTypeEntryAn entry containing per port anti-spoofing configuration data.
EtsysAntiSpoofPortTypeEntry
.1.3.6.1.4.1.5624.1.2.96.1.3.2.1
etsysAntiSpoofPortTypeThis object specifies the port type to be used for this port. The port type indicates how DHCP traffic is handled.rw
AntiSpoofPortType
.1.3.6.1.4.1.5624.1.2.96.1.3.2.1.1
etsysAntiSpoofBindingBranch
OBJECT IDENTIFIER
.1.3.6.1.4.1.5624.1.2.96.1.4
etsysAntiSpoofStationBindingTableA table containing information pertaining to the current active bindings set up through Anti-Spoofing.
SEQUENCE OF EtsysAntiSpoofStationBindingEntry
.1.3.6.1.4.1.5624.1.2.96.1.4.1
etsysAntiSpoofStationBindingEntryAn entry containing per binding data.
EtsysAntiSpoofStationBindingEntry
.1.3.6.1.4.1.5624.1.2.96.1.4.1.1
etsysAntiSpoofStationBindingEntryIndexThe unique index for this columnar row.
EtsysInstanceOID
.1.3.6.1.4.1.5624.1.2.96.1.4.1.1.1
etsysAntiSpoofStationBindingEntryMacAddrThe MAC address of the binding.ro
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.5624.1.2.96.1.4.1.1.2
etsysAntiSpoofStationBindingEntryInetAddrTypeThe IP address type of the binding.ro
InetAddressType (INET-ADDRESS-MIB)
.1.3.6.1.4.1.5624.1.2.96.1.4.1.1.3
etsysAntiSpoofStationBindingEntryInetAddrThe IP address of the binding.ro
InetAddress (INET-ADDRESS-MIB)
.1.3.6.1.4.1.5624.1.2.96.1.4.1.1.4
etsysAntiSpoofStationBindingEntryIfIndexThe port that this binding currently resides on.ro
InterfaceIndex (IF-MIB)
.1.3.6.1.4.1.5624.1.2.96.1.4.1.1.5
etsysAntiSpoofStationBindingEntryInetCounterThe number of times the IP address has changed for this binding.ro
Counter32
.1.3.6.1.4.1.5624.1.2.96.1.4.1.1.6
etsysAntiSpoofStationBindingEntryClearInetCounterWhen set to true(1), this object will clear the IP counter associated with this binding. Setting this object to a value of false(2) has no effect. This object MUST always return a value of false(2).rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.5624.1.2.96.1.4.1.1.7
etsysAntiSpoofStationBindingEntryPortCounterThe number of times the port has changed for this binding.ro
Counter32
.1.3.6.1.4.1.5624.1.2.96.1.4.1.1.8
etsysAntiSpoofStationBindingEntryClearPortCounterWhen set to true(1), this object will clear the port counter associated with this binding. Setting this object to a value of false(2) has no effect. This object MUST always return a value of false(2).rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.5624.1.2.96.1.4.1.1.9
etsysAntiSpoofStationBindingEntryClearBindingWhen set to true(1), this object will clear the current binding. Allowing a new binding to be created with the same MAC/IP address and clearing all counter information. Setting this object to a value of false(2) has no effect. This object MUST always return a value of false(2).rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.5624.1.2.96.1.4.1.1.10
etsysAntiSpoofStationBindingEntryBindingTypeThis indicates which binding type (DHCP, ARP, or IP inspection) was used to create the entry.ro
AntiSpoofBindingType
.1.3.6.1.4.1.5624.1.2.96.1.4.1.1.11
etsysAntiSpoofStationBindingEntryDurationTimeThe amount of time, in seconds, that this binding has been operational for.ro
Unsigned32 UNITS "seconds"
.1.3.6.1.4.1.5624.1.2.96.1.4.1.1.12
etsysAntiSpoofStationBindingEntryExpirationTimeThe amount of time, in seconds, from its creation, that this binding will be operational for before being destroyed. A value of zero(0) indicates that this binding will not expire.ro
Unsigned32 UNITS "seconds"
.1.3.6.1.4.1.5624.1.2.96.1.4.1.1.13
etsysAntiSpoofMacBindingTableA table indicating whether a given binding is accessible. This table is indexed first by MAC, then by IP, and finally by port. In this way a user may quickly determine which bindings are active for a given station address and look up those entries in the etsysAntiSpoofStationBindingTable.
SEQUENCE OF EtsysAntiSpoofMacBindingEntry
.1.3.6.1.4.1.5624.1.2.96.1.4.2
etsysAntiSpoofMacBindingEntryAn entry containing per binding data.
EtsysAntiSpoofMacBindingEntry
.1.3.6.1.4.1.5624.1.2.96.1.4.2.1
etsysAntiSpoofStationBindingInterfaceThe current interface index that the IP/MAC binding resides on.
InterfaceIndexOrZero (IF-MIB)
.1.3.6.1.4.1.5624.1.2.96.1.4.2.1.1
etsysAntiSpoofMacStationBindingIndexA unique identifier for this entry to be used as indexing in the etsysAntiSpoofStationBindingTable.ro
EtsysInstanceOID
.1.3.6.1.4.1.5624.1.2.96.1.4.2.1.2
etsysAntiSpoofMacBindingClearBindingWhen set to true(1), this object will clear the current binding, allowing a new binding to be created with the same MAC/IP address and clearing all counter information. If the etsysAntiSpoofStationBindingInterface index specified in the SET operation is zero (0) it will remove the MAC/IP binding regardless of the current port it is associated with. Specifying an etsysAntiSpoofStationBindingInterface index value between 1..2147483647 will only remove the binding if it currently resides on that specific interface. Setting this object to a value of false(2) has no effect. This object MUST always return a value of false(2).rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.5624.1.2.96.1.4.2.1.3
etsysAntiSpoofIpBindingTableA table indicating whether a given binding is accessible. This table is indexed first by IP, then by MAC, and finally by port. In this way a user may quickly determine which bindings are active for a given station address and look up those entries in the etsysAntiSpoofStationBindingTable.
SEQUENCE OF EtsysAntiSpoofIpBindingEntry
.1.3.6.1.4.1.5624.1.2.96.1.4.3
etsysAntiSpoofIpBindingEntryAn entry containing per binding data.
EtsysAntiSpoofIpBindingEntry
.1.3.6.1.4.1.5624.1.2.96.1.4.3.1
etsysAntiSpoofIpStationBindingIndexA unique identifier for this entry to be used as indexing in the etsysAntiSpoofStationBindingTable.ro
EtsysInstanceOID
.1.3.6.1.4.1.5624.1.2.96.1.4.3.1.1
etsysAntiSpoofIpBindingClearBindingWhen set to true(1), this object will clear the current binding, allowing a new binding to be created with the same MAC/IP address and clearing all counter information. If the etsysAntiSpoofStationBindingInterface index specified in the SET operation is zero (0) it will remove the MAC/IP binding regardless of the current port it is associated with. Specifying an etsysAntiSpoofStationBindingInterface index value between 1..2147483647 will only remove the binding if it currently resides on that specific interface. Setting this object to a value of false(2) has no effect. This object MUST always return a value of false(2).rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.5624.1.2.96.1.4.3.1.2
etsysAntiSpoofPortBindingTableA table indicating whether a given binding is accessible. This table is indexed first by port, then by MAC, and finally by IP. In this way a user may quickly determine which bindings are active for a given station address and look up those entries in the etsysAntiSpoofStationBindingTable.
SEQUENCE OF EtsysAntiSpoofPortBindingEntry
.1.3.6.1.4.1.5624.1.2.96.1.4.4
etsysAntiSpoofPortBindingEntryAn entry containing per binding data.
EtsysAntiSpoofPortBindingEntry
.1.3.6.1.4.1.5624.1.2.96.1.4.4.1
etsysAntiSpoofPortStationBindingIndexA unique identifier for this entry to be used as indexing in the etsysAntiSpoofStationBindingTable.ro
EtsysInstanceOID
.1.3.6.1.4.1.5624.1.2.96.1.4.4.1.1
etsysAntiSpoofPortBindingClearBindingWhen set to true(1), this object will clear the current binding, allowing a new binding to be created with the same MAC/IP address and clearing all counter information. If the etsysAntiSpoofStationBindingInterface index specified in the SET operation is zero (0) it will remove the MAC/IP binding regardless of the current port it is associated with. Specifying an etsysAntiSpoofStationBindingInterface index value between 1..2147483647 will only remove the binding if it currently resides on that specific interface. Setting this object to a value of false(2) has no effect. This object MUST always return a value of false(2).rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.5624.1.2.96.1.4.4.1.2
etsysAntiSpoofConformance
OBJECT IDENTIFIER
.1.3.6.1.4.1.5624.1.2.96.2
etsysAntiSpoofGroups
OBJECT IDENTIFIER
.1.3.6.1.4.1.5624.1.2.96.2.1
etsysAntiSpoofSystemGroupThe scalar group for all devices supporting Anti-Spoofing.
Unknown
.1.3.6.1.4.1.5624.1.2.96.2.1.1
etsysAntiSpoofClassGroupThe base level class group for all devices supporting Anti-Spoofing.
Unknown
.1.3.6.1.4.1.5624.1.2.96.2.1.2
etsysAntiSpoofThresholdGroupThe base level threshold group for all devices supporting Anti-Spoofing.
Unknown
.1.3.6.1.4.1.5624.1.2.96.2.1.3
etsysAntiSpoofPortGroupThis group of objects for all devices supporting per interface Anti-Spoofing settings.
Unknown
.1.3.6.1.4.1.5624.1.2.96.2.1.4
etsysAntiSpoofStationBindingGroupThe group for all devices which support bindings for Anti-Spoofing.
Unknown
.1.3.6.1.4.1.5624.1.2.96.2.1.5
etsysAntiSpoofMacBindingGroupThe group for all devices which support MAC bindings for Anti-Spoofing.
Unknown
.1.3.6.1.4.1.5624.1.2.96.2.1.6
etsysAntiSpoofIpBindingGroupThe group for all devices which support IP bindings for Anti-Spoofing.
Unknown
.1.3.6.1.4.1.5624.1.2.96.2.1.7
etsysAntiSpoofPortBindingGroupThe group for all devices which support IP bindings for Anti-Spoofing.
Unknown
.1.3.6.1.4.1.5624.1.2.96.2.1.8
etsysAntiSpoofNotificationGroupThe group of class notifications for Anti-Spoof.
Unknown
.1.3.6.1.4.1.5624.1.2.96.2.1.9
etsysAntiSpoofCompliances
OBJECT IDENTIFIER
.1.3.6.1.4.1.5624.1.2.96.2.2
etsysAntiSpoofComplianceThe compliance statement for devices that support Anti-Spoof.
Unknown
.1.3.6.1.4.1.5624.1.2.96.2.2.1
ENTERASYS-ANTI-SPOOF-MIB - SNMP MIB Reference | MIBs Explorer