Home/Catalog/FDRY-ACL-MIB

FDRY-ACL-MIB

AI MIB Summary

The FDRY-ACL-MIB enables SNMP-based monitoring and management of IPv6 Access Control List configurations and enforcement policies on Brocade hardware platforms. It provides programmatic access to specific ACL tables for tracking rule definitions, match statistics, and packet filtering states within the network security infrastructure.

The Brocade proprietary MIB module for Ipv6 Access Control List. It has new tables for Ipv6 Access Control List. Copyright 1996-2010 Brocade Communications Systems, Inc. All rights reserved. This Brocade Communications Systems SNMP Management Information Base Specification embodies Brocade Communications Systems' confidential and proprietary intellectual property. Brocade Communications Systems retains all title and ownership in the Specification, including any revisions. This Specification is supplied AS IS, and Brocade Communications Systems makes no warranty, either express or implied, as to the use, operation, condition, or performance of the specification, and any unintended consequence it may on the user environment.
Main OID:
fdryAclMIB.1.3.6.1.4.1.1991.1.2.16.1
29
Objects
Active
Status
5
Dependencies

Imported Objects

Objects

29 total
Object Name
fdryAclMIBThe Brocade proprietary MIB module for Ipv6 Access Control List. It has new tables for Ipv6 Access Control List. Copyright 1996-2010 Brocade Communications Systems, Inc. All rights reserved. This Brocade Communications Systems SNMP Management Information Base Specification embodies Brocade Communications Systems' confidential and proprietary intellectual property. Brocade Communications Systems retains all title and ownership in the Specification, including any revisions. This Specification is supplied AS IS, and Brocade Communications Systems makes no warranty, either express or implied, as to the use, operation, condition, or performance of the specification, and any unintended consequence it may on the user environment.
MODULE-IDENTITY
.1.3.6.1.4.1.1991.1.2.16.1
fdryIpv6Acl
OBJECT IDENTIFIER
.1.3.6.1.4.1.1991.1.2.16.1.1
fdryIpv6AclTableTable of Ipv6 Access Control List filters
SEQUENCE OF FdryIpv6AclEntry
.1.3.6.1.4.1.1991.1.2.16.1.1.1
fdryIpv6AclEntryAn entry in the Ipv6 Access Control List filter table.
FdryIpv6AclEntry
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1
fdryIpv6AclIndexThe access control list item number for an entry. This is a unique number that identifies different Access list entries. This one has to be unique even though the name is not unique for a give access list with same or different source address, prefix length, destination address and destination prefix length, protocol type, action (permit/deny) type and the operator (neq, eq, gt and , lt).
Unsigned32
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.1
fdryIpv6AclNameAccess Control List name for an entry. This object is not writable on NI platforms.rw
DisplayString
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.2
fdryIpv6AclActionAction to take if the ip packet matches with this access control list.rw
Action
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.3
fdryIpv6AclProtocolTransport protocols. 0 means any protocol.rw
IpProtocol
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.4
fdryIpv6AclSourceIpSource Ipv6 address.rw
Ipv6Address (IPV6-TC)
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.5
fdryIpv6AclSourcePrefixLenSource IPv6 address prefix length.rw
Unsigned32
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.6
fdryIpv6AclSourceOperatorType of comparison to perform. for now, this only applys to tcp or udp to compare the port numberrw
Operator
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.7
fdryIpv6AclSourceOperand1For now this only refers to transport protocol port number.rw
Unsigned32
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.8
fdryIpv6AclSourceOperand2For now this only refers to transport protocol port number.rw
Unsigned32
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.9
fdryIpv6AclDestinationIpDestination Ipv6 address.rw
Ipv6Address (IPV6-TC)
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.10
fdryIpv6AclDestinationPrefixLenDestination IPv6 address prefix length.rw
Unsigned32
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.11
fdryIpv6AclDestinationOperatorType of comparison to perform. for now, this only applys to tcp or udp to compare the port numberrw
Operator
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.12
fdryIpv6AclDestinationOperand1For now this only refers to transport protocol port number.rw
Unsigned32
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.13
fdryIpv6AclDestinationOperand2For now this only refers to transport protocol port number.rw
Unsigned32
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.14
fdryIpv6AclEstablishedEnable/Disable the filtering of established TCP packets of which the ACK or RESET flag is on. This additional filter only applies to TCP transport protocol.rw
RtrStatus
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.15
fdryIpv6AclLogOptionLog flag, should be set to one to enable loggingrw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.16
fdryIpv6AclCommentsRemark description of individual Access Control List entry.rw
DisplayString
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.17
fdryIpv6AclRowStatusTo create or delete a access list entry.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.18
fdryIpv6AclVlanIdOptional VLAN ID to match against that of the incoming packet. By default, the VLAN ID field is ignored during the match. In this case, value 0 is returned.rw
FdryVlanIdOrNoneTC (FOUNDRY-SN-SWITCH-GROUP-MIB)
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.19
fdryIpv6AclClauseStringReturns the equivalent filter clause string.ro
DisplayString (SNMPv2-TC)
.1.3.6.1.4.1.1991.1.2.16.1.1.1.1.20
brcdIpv6AccessListTableTable of Ipv6 Access Control List. This table only supports IPv6 ACLs with name length less than or equal to 110 characters SNMP walk operation will skip the entries if the IPv6 ACL name is greater than 110 characters.
SEQUENCE OF BrcdIpv6AccessListEntry
.1.3.6.1.4.1.1991.1.2.16.1.1.2
brcdIpv6AccessListEntryAn entry in the Ipv6 Access Control List table.
BrcdIpv6AccessListEntry
.1.3.6.1.4.1.1991.1.2.16.1.1.2.1
brcdIpv6AccessListNameName of the IPv6 Access Control List. From SNMP the length of the IPv6 ACL name is restricted to 110 characters although from CLI it can be 200 characters, due to SNMP restriction on sub OID length to be 128 for Index objects. SNMP get/getnext will skip the IPv6 ACLs with more than 110 characters in it. SNMP set request will be rejected if the IPv6 ACL name length is more than 110 characters.
DisplayString
.1.3.6.1.4.1.1991.1.2.16.1.1.2.1.1
brcdIpv6AccessListNextIndexWhen read provides the encoded Index - combination of IPv6 ACL id and next available filter id - which can be used as index while creating access list filter entry in the fdryIpv6AclTable.ro
Unsigned32
.1.3.6.1.4.1.1991.1.2.16.1.1.2.1.2
brcdIpv6AccessListRowStatusTo create or delete a Ipv6 access list entry. The supported values are createAndGo(4) to create an entry in this table and destroy(6) to delete an entry from this table. Value of active(1) will be always returned for SNMP Get/GetNext operations.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.1991.1.2.16.1.1.2.1.3
FDRY-ACL-MIB - SNMP MIB Reference | MIBs Explorer