ENTERASYS-VLAN-AUTHORIZATION-MIB
AI MIB Summary
The ENTERASYS-VLAN-AUTHORIZATION-MIB monitors and configures the enforcement of RADIUS-derived VLAN Tunnel-Type attributes on Enterasys switch ports to dynamically assign VLANs during 802.1X authentication. It specifically tracks the operational state of this authorization feature and the resulting VLAN mapping applied to the authenticating interface.
This MIB module defines a portion of the SNMP MIB under Enterasys Networks' enterprise OID pertaining to proprietary extensions to the IETF Q-BRIDGE-MIB, as specified in RFC2674, pertaining to VLAN authorization, as specified in RFC3580. Specifically, the enabling and disabling of support for the VLAN Tunnel-Type attribute returned from a RADIUS authentication, and how that attribute is applied to the port which initiated the authentication.
Main OID:
etsysVlanAuthorizationMIB.1.3.6.1.4.1.5624.1.2.48
16
Objects
Active
Status
6
Dependencies
Imported Objects
Objects
16 total| Object Name |
|---|
etsysVlanAuthorizationMIBThis MIB module defines a portion of the SNMP MIB under Enterasys Networks' enterprise OID pertaining to proprietary extensions to the IETF Q-BRIDGE-MIB, as specified in RFC2674, pertaining to VLAN authorization, as specified in RFC3580. Specifically, the enabling and disabling of support for the VLAN Tunnel-Type attribute returned from a RADIUS authentication, and how that attribute is applied to the port which initiated the authentication. MODULE-IDENTITY .1.3.6.1.4.1.5624.1.2.48 |
etsysVlanAuthorizationObjects OBJECT IDENTIFIER .1.3.6.1.4.1.5624.1.2.48.1 |
etsysVlanAuthorizationSystem OBJECT IDENTIFIER .1.3.6.1.4.1.5624.1.2.48.1.1 |
etsysVlanAuthorizationEnableThe enable/disable state for the VLAN authorization feature. When disabled, no modifications to the VLAN attributes related to packet switching should be enforced.rw EnabledStatus (P-BRIDGE-MIB) .1.3.6.1.4.1.5624.1.2.48.1.1.1 |
etsysVlanAuthorizationPorts OBJECT IDENTIFIER .1.3.6.1.4.1.5624.1.2.48.1.2 |
etsysVlanAuthorizationTableExtensions to the table that contains information about every port that is associated with this transparent bridge. SEQUENCE OF EtsysVlanAuthorizationEntry .1.3.6.1.4.1.5624.1.2.48.1.2.1 |
etsysVlanAuthorizationEntryA list of extensions that support the management of proprietary features for each port of a transparent bridge. This is indexed by dot1dBasePort. EtsysVlanAuthorizationEntry .1.3.6.1.4.1.5624.1.2.48.1.2.1.1 |
etsysVlanAuthorizationStatusThe enabled/disabled status for the application of VLAN authorization on this port, if disabled, the information returned in the VLAN-Tunnel-Type from the authentication will not be applied to the port (although it should be represented in this table). If enabled, those results will be applied to the port.rw EnabledStatus (P-BRIDGE-MIB) .1.3.6.1.4.1.5624.1.2.48.1.2.1.1.1 |
etsysVlanAuthorizationAdminEgressControls the modification of the current vlan egress list (of the vlan returned in the VLAN-Tunnel-Type, and reported by etsysVlanAuthorizationVlanID) upon successful authentication in the following manner: none(1) No egress manipulation will be made. tagged(2) The authenticating port will be added to the current egress for the VLAN-ID returned. untagged(3) The authenticating port will be added to the current untagged egress for the VLAN-ID returned. dynamic(4) The authenticating port will use information returned in the authentication response to modify the current egress lists. This value is supported only if the device supports a mechanism through which the egress status may be returned through the RADIUS response. Should etsysVlanAuthorizationEnable become disabled, etsysVlanAuthorizationStatus become disabled for a port, or should etsysVlanAuthorizationVlanID become 0 or 4095, all effect on the port egress MUST be removed.rw VlanAuthEgressStatus .1.3.6.1.4.1.5624.1.2.48.1.2.1.1.2 |
etsysVlanAuthorizationOperEgressReports the current state of modification to the current vlan egress list (of the vlan returned in the VLAN-Tunnel-Type) upon successful authentication, if etsysVlanAuthorizationStatus is enabled, in the following manner: none(1) No egress manipulation will be made. tagged(2) The authenticating port will be added to the current egress for the VLAN-ID returned. untagged(3) The authenticating port will be added to the current untagged egress for the VLAN-ID returned. The purpose of this leaf is to report, specifically when etsysVlanAuthorizationAdminEgress has been set to dynamic(4), the currently enforced egress modification. If the port is unauthenticated, or no VLAN-ID has been applied, this leaf should return none(1).ro VlanAuthEgressStatus .1.3.6.1.4.1.5624.1.2.48.1.2.1.1.3 |
etsysVlanAuthorizationVlanIDThe 12 bit VLAN identifier for a given port, used to override the PVID of the given port, obtained as a result of an authentication. A value of zero indicates that there is no authenticated VLAN ID for the given port. Should a port become unauthenticated this value MUST be returned to zero. A value of 4095 indicates that a the port has been authenticated, but that the VLAN returned could not be applied to the port (possibly because of resource constraints or misconfiguration). In this instance, the original PVID should still be applied. Should the feature become disabled or the session terminate, all effect on the Port VLAN ID MUST be removed.ro Integer32 (0 | 1..4094 | 4095) .1.3.6.1.4.1.5624.1.2.48.1.2.1.1.4 |
etsysVlanAuthorizationConformance OBJECT IDENTIFIER .1.3.6.1.4.1.5624.1.2.48.2 |
etsysVlanAuthorizationGroups OBJECT IDENTIFIER .1.3.6.1.4.1.5624.1.2.48.2.1 |
etsysVlanAuthorizationGroupA collection of objects relating to VLAN Authorization. Unknown .1.3.6.1.4.1.5624.1.2.48.2.1.1 |
etsysVlanAuthorizationCompliances OBJECT IDENTIFIER .1.3.6.1.4.1.5624.1.2.48.2.2 |
etsysVlanAuthorizationComplianceThe compliance statement for devices that support the Enterasys VLAN Authorization MIB. Unknown .1.3.6.1.4.1.5624.1.2.48.2.2.1 |