FDRY-ACL-MIB
AI MIB Summary
The FDRY-ACL-MIB enables SNMP-based monitoring and management of IPv6 Access Control List configurations and enforcement policies on Brocade hardware platforms. It provides programmatic access to specific ACL tables for tracking rule definitions, match statistics, and packet filtering states within the network security infrastructure.
The Brocade proprietary MIB module for Ipv6 Access Control List. It has new tables for Ipv6 Access Control List.
Copyright 1996-2010 Brocade Communications Systems, Inc. All rights reserved. This Brocade Communications Systems SNMP Management Information Base Specification embodies Brocade Communications Systems' confidential and proprietary intellectual property. Brocade Communications Systems retains all title and ownership in the Specification, including any revisions.
This Specification is supplied AS IS, and Brocade Communications Systems makes no warranty, either express or implied, as to the use, operation, condition, or performance of the specification, and any unintended consequence it may on the user environment.
Main OID:
fdryAclMIB.1.3.6.1.4.1.1991.1.2.16.1
29
Objects
Active
Status
5
Dependencies
Imported Objects
Objects
29 total| Object Name |
|---|
fdryAclMIBThe Brocade proprietary MIB module for Ipv6 Access Control List.
It has new tables for Ipv6 Access Control List.
Copyright 1996-2010 Brocade Communications Systems, Inc.
All rights reserved.
This Brocade Communications Systems SNMP Management Information Base Specification
embodies Brocade Communications Systems' confidential and proprietary
intellectual property. Brocade Communications Systems retains all
title and ownership in the Specification, including any revisions.
This Specification is supplied AS IS, and Brocade Communications Systems makes
no warranty, either express or implied, as to the use,
operation, condition, or performance of the specification, and any unintended
consequence it may on the user environment. MODULE-IDENTITY .1.3.6.1.4.1.1991.1.2.16.1 |
fdryIpv6Acl OBJECT IDENTIFIER .1.3.6.1.4.1.1991.1.2.16.1.1 |
fdryIpv6AclTableTable of Ipv6 Access Control List filters SEQUENCE OF FdryIpv6AclEntry .1.3.6.1.4.1.1991.1.2.16.1.1.1 |
fdryIpv6AclEntryAn entry in the Ipv6 Access Control List filter table. FdryIpv6AclEntry .1.3.6.1.4.1.1991.1.2.16.1.1.1.1 |
fdryIpv6AclIndexThe access control list item number for an entry.
This is a unique number that identifies different
Access list entries. This one has to be
unique even though the name is not unique
for a give access list with same or different source
address, prefix length, destination address and destination
prefix length, protocol type, action (permit/deny) type and the
operator (neq, eq, gt and , lt). Unsigned32 .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.1 |
fdryIpv6AclNameAccess Control List name for an entry.
This object is not writable on NI platforms.rw DisplayString .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.2 |
fdryIpv6AclActionAction to take if the ip packet matches
with this access control list.rw Action .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.3 |
fdryIpv6AclProtocolTransport protocols. 0 means any protocol.rw IpProtocol .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.4 |
fdryIpv6AclSourceIpSource Ipv6 address.rw Ipv6Address (IPV6-TC) .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.5 |
fdryIpv6AclSourcePrefixLenSource IPv6 address prefix length.rw Unsigned32 .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.6 |
fdryIpv6AclSourceOperatorType of comparison to perform.
for now, this only applys to tcp or udp
to compare the port numberrw Operator .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.7 |
fdryIpv6AclSourceOperand1For now this only refers to transport
protocol port number.rw Unsigned32 .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.8 |
fdryIpv6AclSourceOperand2For now this only refers to transport
protocol port number.rw Unsigned32 .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.9 |
fdryIpv6AclDestinationIpDestination Ipv6 address.rw Ipv6Address (IPV6-TC) .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.10 |
fdryIpv6AclDestinationPrefixLenDestination IPv6 address prefix length.rw Unsigned32 .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.11 |
fdryIpv6AclDestinationOperatorType of comparison to perform.
for now, this only applys to tcp or udp
to compare the port numberrw Operator .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.12 |
fdryIpv6AclDestinationOperand1For now this only refers to transport
protocol port number.rw Unsigned32 .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.13 |
fdryIpv6AclDestinationOperand2For now this only refers to transport
protocol port number.rw Unsigned32 .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.14 |
fdryIpv6AclEstablishedEnable/Disable the filtering of established TCP
packets of which the ACK or RESET flag is on. This
additional filter only applies to TCP transport
protocol.rw RtrStatus .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.15 |
fdryIpv6AclLogOptionLog flag, should be set to one to enable loggingrw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.16 |
fdryIpv6AclCommentsRemark description of individual Access Control List entry.rw DisplayString .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.17 |
fdryIpv6AclRowStatusTo create or delete a access list
entry.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.18 |
fdryIpv6AclVlanIdOptional VLAN ID to match against that of the incoming packet.
By default, the VLAN ID field is ignored during the match. In this case,
value 0 is returned.rw FdryVlanIdOrNoneTC (FOUNDRY-SN-SWITCH-GROUP-MIB) .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.19 |
fdryIpv6AclClauseStringReturns the equivalent filter clause string.ro DisplayString (SNMPv2-TC) .1.3.6.1.4.1.1991.1.2.16.1.1.1.1.20 |
brcdIpv6AccessListTableTable of Ipv6 Access Control List. This table only supports
IPv6 ACLs with name length less than or equal to 110 characters
SNMP walk operation will skip the entries if the IPv6 ACL name is
greater than 110 characters. SEQUENCE OF BrcdIpv6AccessListEntry .1.3.6.1.4.1.1991.1.2.16.1.1.2 |
brcdIpv6AccessListEntryAn entry in the Ipv6 Access Control List table. BrcdIpv6AccessListEntry .1.3.6.1.4.1.1991.1.2.16.1.1.2.1 |
brcdIpv6AccessListNameName of the IPv6 Access Control List. From SNMP the length
of the IPv6 ACL name is restricted to 110 characters although
from CLI it can be 200 characters, due to SNMP restriction on
sub OID length to be 128 for Index objects. SNMP get/getnext
will skip the IPv6 ACLs with more than 110 characters in it.
SNMP set request will be rejected if the IPv6 ACL name length
is more than 110 characters. DisplayString .1.3.6.1.4.1.1991.1.2.16.1.1.2.1.1 |
brcdIpv6AccessListNextIndexWhen read provides the encoded Index - combination of IPv6 ACL id and
next available filter id - which can be used as index while creating
access list filter entry in the fdryIpv6AclTable.ro Unsigned32 .1.3.6.1.4.1.1991.1.2.16.1.1.2.1.2 |
brcdIpv6AccessListRowStatusTo create or delete a Ipv6 access list entry. The supported values are
createAndGo(4) to create an entry in this table and destroy(6) to delete
an entry from this table. Value of active(1) will be always returned for
SNMP Get/GetNext operations.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.1991.1.2.16.1.1.2.1.3 |