H3C-ACL-MIB
AI MIB Summary
The H3C-ACL-MIB module enables SNMP-based configuration and monitoring of Access Control List (ACL) rules and packet filtering policies on H3C network devices. It exposes specific metrics for ACL entry states, hit counts, and rule definitions to facilitate real-time traffic control enforcement and security auditing.
ACL management information base for managing devices that support access control list and packet filtering.
Main OID:
h3cAcl.1.3.6.1.4.1.2011.10.2.8
343
Objects
Active
Status
4
Dependencies
Imported Objects
Objects
343 total| Object Name |
|---|
h3cAclACL management information base for managing devices that support access control list and packet filtering. MODULE-IDENTITY .1.3.6.1.4.1.2011.10.2.8 |
h3cAclMibObjects OBJECT IDENTIFIER .1.3.6.1.4.1.2011.10.2.8.1 |
h3cAclModeAccess-list mode.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.1 |
h3cAclNumGroupTableConfigure the match-order of number-acl group. SEQUENCE OF H3cAclNumGroupEntry .1.3.6.1.4.1.2011.10.2.8.1.2 |
h3cAclNumGroupEntryDefine the index of h3cAclNumGroupTable. H3cAclNumGroupEntry .1.3.6.1.4.1.2011.10.2.8.1.2.1 |
h3cAclNumGroupAclNumThe index of number-acl group Interface type:1000..1999 Basic type:2000..2999 Advance type:3000..3999 Link type:4000..4999 User type:5000..5999 Integer32 .1.3.6.1.4.1.2011.10.2.8.1.2.1.1 |
h3cAclNumGroupMatchOrderThe match-order of number-acl group.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.2.1.2 |
h3cAclNumGroupSubitemNumThe number of number-acl group's node.ro Integer32 .1.3.6.1.4.1.2011.10.2.8.1.2.1.3 |
h3cAclNumGroupDescriptionThe description of this acl group.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.1.2.1.4 |
h3cAclNumGroupCountClearReset the value of rules' counter, which belong to this group.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.2.1.5 |
h3cAclNumGroupRowStatusRowStatus, now support three state: CreateAndGo, Active, Destroy.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.2.1.6 |
h3cAclNameGroupTableCreate acl-group that identified by name. SEQUENCE OF H3cAclNameGroupEntry .1.3.6.1.4.1.2011.10.2.8.1.3 |
h3cAclNameGroupEntryDefine the index of h3cAclNameGroupTable. H3cAclNameGroupEntry .1.3.6.1.4.1.2011.10.2.8.1.3.1 |
h3cAclNameGroupIndexThe index of name-acl group. Integer32 .1.3.6.1.4.1.2011.10.2.8.1.3.1.1 |
h3cAclNameGroupCreateNameThe name of name-acl group.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.1.3.1.2 |
h3cAclNameGroupTypesThe type of name-acl group.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.3.1.3 |
h3cAclNameGroupMatchOrderThe match-order of name-acl group.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.3.1.4 |
h3cAclNameGroupSubitemNumThe number of name-acl group's node.ro Integer32 .1.3.6.1.4.1.2011.10.2.8.1.3.1.5 |
h3cAclNameGroupRowStatusRowStatus, now support three state: CreateAndGo, Active, Destroy.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.3.1.6 |
h3cAclBasicRuleTableConfigure the rule for basic acl group. SEQUENCE OF H3cAclBasicRuleEntry .1.3.6.1.4.1.2011.10.2.8.1.4 |
h3cAclBasicRuleEntryDefine the index of h3cAclBasicRuleTable. H3cAclBasicRuleEntry .1.3.6.1.4.1.2011.10.2.8.1.4.1 |
h3cAclBasicAclNumThe index of basic acl group. Integer32 (0|2000..2999|10000..12999) .1.3.6.1.4.1.2011.10.2.8.1.4.1.1 |
h3cAclBasicSubitemThe subindex of basic acl group. Integer32 .1.3.6.1.4.1.2011.10.2.8.1.4.1.2 |
h3cAclBasicActThe action of basic acl rule.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.4.1.3 |
h3cAclBasicSrcIpSource IP-address of basic acl rule.rw IpAddress .1.3.6.1.4.1.2011.10.2.8.1.4.1.4 |
h3cAclBasicSrcWildSource IP-address wild of basic acl rule.rw IpAddress .1.3.6.1.4.1.2011.10.2.8.1.4.1.5 |
h3cAclBasicTimeRangeNameThe Time-range of basic acl rule.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.1.4.1.6 |
h3cAclBasicFragmentsThe flag of matching fragmented packet.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.4.1.7 |
h3cAclBasicLogThe flag of log.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.4.1.8 |
h3cAclBasicEnableThe rule is active or not. true : active false : inactivero TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.4.1.9 |
h3cAclBasicCountThe count of matched by basic rule.ro Counter32 .1.3.6.1.4.1.2011.10.2.8.1.4.1.10 |
h3cAclBasicCountClearReset the value of counter.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.4.1.11 |
h3cAclBasicRowStatusRowStatus, now support three state: CreateAndGo, Active, Destroy.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.4.1.12 |
h3cAclAdvancedRuleTableConfigure the rule for advanced acl group. SEQUENCE OF H3cAclAdvancedRuleEntry .1.3.6.1.4.1.2011.10.2.8.1.5 |
h3cAclAdvancedRuleEntryDefine the index of h3cAclAdvancedRuleTable. H3cAclAdvancedRuleEntry .1.3.6.1.4.1.2011.10.2.8.1.5.1 |
h3cAclAdvancedAclNumThe index of advanced acl group. Integer32 (0|3000..3999|10000..12999) .1.3.6.1.4.1.2011.10.2.8.1.5.1.1 |
h3cAclAdvancedSubitemThe subindex of advanced acl group. Integer32 .1.3.6.1.4.1.2011.10.2.8.1.5.1.2 |
h3cAclAdvancedActThe action of Advance acl rule.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.5.1.3 |
h3cAclAdvancedProtocolThe protocol-type of advanced acl group. <1-255> Protocol number gre GRE tunneling(47) icmp Internet Control Message Protocol(1) igmp Internet Group Management Protocol(2) ip Any IP protocol ipinip IP in IP tunneling(4) ospf OSPF routing protocol(89) tcp Transmission Control Protocol (6) udp User Datagram Protocol (17)rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.5.1.4 |
h3cAclAdvancedSrcIpSource IP-address of advanced acl group.rw IpAddress .1.3.6.1.4.1.2011.10.2.8.1.5.1.5 |
h3cAclAdvancedSrcWildSource IP-address wild of advanced acl group.rw IpAddress .1.3.6.1.4.1.2011.10.2.8.1.5.1.6 |
h3cAclAdvancedSrcOpThe source IP-address's operator of advanced acl group.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.5.1.7 |
h3cAclAdvancedSrcPort1The fourth layer source port1.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.5.1.8 |
h3cAclAdvancedSrcPort2The fourth layer source port2.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.5.1.9 |
h3cAclAdvancedDestIpDestination IP-address of advanced acl group.rw IpAddress .1.3.6.1.4.1.2011.10.2.8.1.5.1.10 |
h3cAclAdvancedDestWildDestination IP-address wild of advanced acl group.rw IpAddress .1.3.6.1.4.1.2011.10.2.8.1.5.1.11 |
h3cAclAdvancedDestOpThe destination IP-address's operator of advanced acl group.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.5.1.12 |
h3cAclAdvancedDestPort1The fourth layer destination port1.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.5.1.13 |
h3cAclAdvancedDestPort2The fourth layer destination port2.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.5.1.14 |
h3cAclAdvancedPrecedenceThe value of IP-packet's precedence. <0-7> Value of precedence routine Specify routine precedence(0) priority Specify priority precedence(1) immediate Specify immediate precedence(2) flash Specify flash precedence(3) flash-override Specify flash-override precedence(4) critical Specify critical precedence(5) internet Specify internetwork control precedence(6) network Specify network control precedence(7)rw Integer32 (0..7|255) .1.3.6.1.4.1.2011.10.2.8.1.5.1.15 |
h3cAclAdvancedTosThe value of IP-packet's TOS. <0-15> Value of TOS(type of service) max-reliability Match packets with max reliable TOS(2) max-throughput Match packets with max throughput TOS(4) min-delay Match packets with min delay TOS(8) min-monetary-cost Match packets with min monetary cost TOS(1) normal Match packets with normal TOS(0)rw Integer32 (0..15|255) .1.3.6.1.4.1.2011.10.2.8.1.5.1.16 |
h3cAclAdvancedDscpThe value of DSCP. <0-63> Value of DSCP af11 Specify Assured Forwarding 11 service(10) af12 Specify Assured Forwarding 12 service(12) af13 Specify Assured Forwarding 13 service(14) af21 Specify Assured Forwarding 21 service(18) af22 Specify Assured Forwarding 22 service(20) af23 Specify Assured Forwarding 23 service(22) af31 Specify Assured Forwarding 31 service(26) af32 Specify Assured Forwarding 32 service(28) af33 Specify Assured Forwarding 33 service(30) af41 Specify Assured Forwarding 41 service(34) af42 Specify Assured Forwarding 42 service(36) af43 Specify Assured Forwarding 43 service(38) be Specify Best Effort service(0) cs1 Specify Class Selector 1 service(8) cs2 Specify Class Selector 2 service(16) cs3 Specify Class Selector 3 service(24) cs4 Specify Class Selector 4 service(32) cs5 Specify Class Selector 5 service(40) cs6 Specify Class Selector 6 service(48) cs7 Specify Class Selector 7 service(56) ef Specify Expedited Forwarding service(46)rw Integer32 (0..63|255) .1.3.6.1.4.1.2011.10.2.8.1.5.1.17 |
h3cAclAdvancedEstablishEstablish flag.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.5.1.18 |
h3cAclAdvancedTimeRangeNameThe Time-range of advanced acl rule.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.1.5.1.19 |
h3cAclAdvancedIcmpTypeThe type of ICMP packet. Integer32 ICMP type echo Type=8, Code=0 echo-reply Type=0, Code=0 fragmentneed-DFset Type=3, Code=4 host-redirect Type=5, Code=1 host-tos-redirect Type=5, Code=3 host-unreachable Type=3, Code=1 information-reply Type=16, Code=0 information-request Type=15, Code=0 net-redirect Type=5, Code=0 net-tos-redirect Type=5, Code=2 net-unreachable Type=3, Code=0 parameter-problem Type=12, Code=0 port-unreachable Type=3, Code=3 protocol-unreachable Type=3, Code=2 reassembly-timeout Type=11, Code=1 source-quench Type=4, Code=0 source-route-failed Type=3, Code=5 timestamp-reply Type=14, Code=0 timestamp-request Type=13, Code=0 ttl-exceeded Type=11, Code=0rw Integer32 (0..255|65535) .1.3.6.1.4.1.2011.10.2.8.1.5.1.20 |
h3cAclAdvancedIcmpCodeThe code of ICMP packet.rw Integer32 (0..255|65535) .1.3.6.1.4.1.2011.10.2.8.1.5.1.21 |
h3cAclAdvancedFragmentsThe flag of matching fragmented packet.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.5.1.22 |
h3cAclAdvancedLogThe flag of log.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.5.1.23 |
h3cAclAdvancedEnableThe rule is active or not. true : active false : inactivero TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.5.1.24 |
h3cAclAdvancedCountThe count of matched by advanced rule.ro Counter32 .1.3.6.1.4.1.2011.10.2.8.1.5.1.25 |
h3cAclAdvancedCountClearReset the value of counter.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.5.1.26 |
h3cAclAdvancedRowStatusRowStatus, now support three state: CreateAndGo, Active, Destroy.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.5.1.27 |
h3cAclIfRuleTableConfigure the rule for interface-based acl group. SEQUENCE OF H3cAclIfRuleEntry .1.3.6.1.4.1.2011.10.2.8.1.6 |
h3cAclIfRuleEntryDefine the index of h3cAclIfRuleTable. H3cAclIfRuleEntry .1.3.6.1.4.1.2011.10.2.8.1.6.1 |
h3cAclIfAclNumThe index of interface-based acl group. Integer32 (0|1000..1999|10000..12999) .1.3.6.1.4.1.2011.10.2.8.1.6.1.1 |
h3cAclIfSubitemThe subindex of interface-based acl group. Integer32 .1.3.6.1.4.1.2011.10.2.8.1.6.1.2 |
h3cAclIfActThe action of interface-based acl group.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.6.1.3 |
h3cAclIfIndexThe index of interface.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.6.1.4 |
h3cAclIfAnyThe flag of matching any interface.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.6.1.5 |
h3cAclIfTimeRangeNameThe Time-range of interface-based acl rule.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.1.6.1.6 |
h3cAclIfLogThe flag of log.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.6.1.7 |
h3cAclIfEnableThe rule is active or not. true : active false : inactivero TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.6.1.8 |
h3cAclIfCountThe count of matched by basic rule.ro Counter32 .1.3.6.1.4.1.2011.10.2.8.1.6.1.9 |
h3cAclIfCountClearReset the value of the rule's counter.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.6.1.10 |
h3cAclIfRowStatusRowStatus, now support three state: CreateAndGo, Active, Destroy.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.6.1.11 |
h3cAclLinkTableCreate link acl. SEQUENCE OF H3cAclLinkEntry .1.3.6.1.4.1.2011.10.2.8.1.7 |
h3cAclLinkEntryThe entry of the link acl table. H3cAclLinkEntry .1.3.6.1.4.1.2011.10.2.8.1.7.1 |
h3cAclLinkAclNumThe index of link-based acl group. Integer32 (0|4000..4999|10000..12999) .1.3.6.1.4.1.2011.10.2.8.1.7.1.1 |
h3cAclLinkSubitemThe subindex of link-based acl group. Integer32 .1.3.6.1.4.1.2011.10.2.8.1.7.1.2 |
h3cAclLinkActThe action of link-based acl group.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.7.1.3 |
h3cAclLinkProtocolThe layer 2 protocol-type of link acl rule.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.7.1.4 |
h3cAclLinkFormatTypeFormat type of link acl rule.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.7.1.5 |
h3cAclLinkVlanTagThe flag of vlan tag of link acl rule.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.7.1.6 |
h3cAclLinkVlanPriVlan priority of link acl rule.rw Integer32 (0..7 | 255) .1.3.6.1.4.1.2011.10.2.8.1.7.1.7 |
h3cAclLinkSrcVlanIdSource vlan ID of link acl rule.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.7.1.8 |
h3cAclLinkSrcMacSource mac of link acl rule.rw MacAddress (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.7.1.9 |
h3cAclLinkSrcMacWildSource mac wildzard of link acl rule.rw MacAddress (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.7.1.10 |
h3cAclLinkSrcIfIndexSource IfIndex of link acl rule.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.7.1.11 |
h3cAclLinkSrcAnyThe flag of matching any source.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.7.1.12 |
h3cAclLinkDestVlanIdDestination vlan ID of link acl rule.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.7.1.13 |
h3cAclLinkDestMacDestination mac of link acl rule.rw MacAddress (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.7.1.14 |
h3cAclLinkDestMacWildDestination mac wildzard of link acl rule.rw MacAddress (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.7.1.15 |
h3cAclLinkDestIfIndexDestination IfIndex of link acl rule.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.7.1.16 |
h3cAclLinkDestAnyThe flag of matching any destination.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.7.1.17 |
h3cAclLinkTimeRangeNameThe Time-range of link-based acl rule.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.1.7.1.18 |
h3cAclLinkEnableThe rule is active or not. true : active false : inactivero TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.7.1.19 |
h3cAclLinkRowStatusRowStatus, now support three state: CreateAndGo, Active, Destroy.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.7.1.20 |
h3cAclLinkTypeCodeThe type of layer 2 protocol.0x0000...0xffff.rw OCTET STRING ( SIZE .1.3.6.1.4.1.2011.10.2.8.1.7.1.21 |
h3cAclLinkTypeMaskThe mask of layer 2 protocol.0x0000...0xffff.rw OCTET STRING ( SIZE .1.3.6.1.4.1.2011.10.2.8.1.7.1.22 |
h3cAclLinkLsapCodeThe type of LSAP.0x0000...0xffff.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.1.7.1.23 |
h3cAclLinkLsapMaskThe mask of LSAP.0x0000...0xffff.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.1.7.1.24 |
h3cAclLinkL2LabelRangeOpOperation symbol of the MPLS label. If the symbol is range(5), the objects h3cAclLinkL2LabelRangeBegin and h3cAclLinkL2LabelRangeEnd should have different values indicating a range. Otherwise, only h3cAclLinkL2LabelRangeBegin counts, object h3cAclLinkL2LabelRangeEnd is ignored. invalid(0) -- unavailable lt(1) -- less than eq(2) -- equal gt(3) -- great than neq(4) -- not equal range(5) -- a range with two ends includedrw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.7.1.25 |
h3cAclLinkL2LabelRangeBeginThe beginning of VPLS VC label.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.7.1.26 |
h3cAclLinkL2LabelRangeEndThe end of VPLS VC label.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.7.1.27 |
h3cAclLinkMplsExpThe value of MPLS-packet's Exp.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.7.1.28 |
h3cAclUserTableCreate user acl. SEQUENCE OF H3cAclUserEntry .1.3.6.1.4.1.2011.10.2.8.1.8 |
h3cAclUserEntryThe entry of user acl table. H3cAclUserEntry .1.3.6.1.4.1.2011.10.2.8.1.8.1 |
h3cAclUserAclNumThe number of the user acl. Integer32 (0|5000..5999|10000..12999) .1.3.6.1.4.1.2011.10.2.8.1.8.1.1 |
h3cAclUserSubitemThe subitem of the user acl. Integer32 .1.3.6.1.4.1.2011.10.2.8.1.8.1.2 |
h3cAclUserActThe action of the user acl.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.8.1.3 |
h3cAclUserFormatTypeFormat type.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.8.1.4 |
h3cAclUserVlanTagVlan tag exits or not.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.8.1.5 |
h3cAclUserRuleStrRule string.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.1.8.1.6 |
h3cAclUserRuleMaskRule mask.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.1.8.1.7 |
h3cAclUserTimeRangeNameThe Time-range of the user defined acl.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.1.8.1.8 |
h3cAclUserEnableThe rule is active or not. true : active false : inactivero TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.8.1.9 |
h3cAclUserRowStatusRowStatus, now support three state: CreateAndGo, Active, Destroy.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.8.1.10 |
h3cAclActiveTableActive acl. SEQUENCE OF H3cAclActiveEntry .1.3.6.1.4.1.2011.10.2.8.1.9 |
h3cAclActiveEntryThe entry of active acl table. H3cAclActiveEntry .1.3.6.1.4.1.2011.10.2.8.1.9.1 |
h3cAclActiveAclIndexAcl index. Integer32 (0|1..5999|10000..12999) .1.3.6.1.4.1.2011.10.2.8.1.9.1.1 |
h3cAclActiveIfIndexIfIndex. Integer32 .1.3.6.1.4.1.2011.10.2.8.1.9.1.2 |
h3cAclActiveVlanIDThe lower 16 bits is Vlan ID, the higher 16 bits, if not zero, it describes the slot ID of the L3plus board. Integer32 .1.3.6.1.4.1.2011.10.2.8.1.9.1.3 |
h3cAclActiveDirectionDirection. Enumeration .1.3.6.1.4.1.2011.10.2.8.1.9.1.4 |
h3cAclActiveUserAclNumThe number of the user acl.rw Integer32 (0|5000..5999|10000..12999) .1.3.6.1.4.1.2011.10.2.8.1.9.1.5 |
h3cAclActiveUserAclSubitemThe subitem of the user acl.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.9.1.6 |
h3cAclActiveIpAclNumThe number of the IP acl.rw Integer32 (0|2000..3999|10000..12999) .1.3.6.1.4.1.2011.10.2.8.1.9.1.7 |
h3cAclActiveIpAclSubitemThe subitem of the IP acl.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.9.1.8 |
h3cAclActiveLinkAclNumThe num of the link acl.rw Integer32 (0|4000..4999|10000..12999) .1.3.6.1.4.1.2011.10.2.8.1.9.1.9 |
h3cAclActiveLinkAclSubitemThe subitem of the link acl.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.9.1.10 |
h3cAclActiveRuntimeIs run or not.ro TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.9.1.11 |
h3cAclActiveRowStatusRowStatus, now support three state: CreateAndGo, Active, Destroy.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.9.1.12 |
h3cAclIDSTableConfigure the rule for IDS. SEQUENCE OF H3cAclIDSEntry .1.3.6.1.4.1.2011.10.2.8.1.10 |
h3cAclIDSEntryThe entry of acl ids table. H3cAclIDSEntry .1.3.6.1.4.1.2011.10.2.8.1.10.1 |
h3cAclIDSNameThe name index of the IDS table. OCTET STRING .1.3.6.1.4.1.2011.10.2.8.1.10.1.1 |
h3cAclIDSSrcMacSource mac of IDS acl rule.rw MacAddress (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.10.1.2 |
h3cAclIDSDestMacDestination mac of IDS acl rule.rw MacAddress (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.10.1.3 |
h3cAclIDSSrcIpSource IP-address of IDS acl rule.rw IpAddress .1.3.6.1.4.1.2011.10.2.8.1.10.1.4 |
h3cAclIDSSrcWildSource IP-address wild of IDS acl rule.rw IpAddress .1.3.6.1.4.1.2011.10.2.8.1.10.1.5 |
h3cAclIDSDestIpDestination IP-address of IDS acl rule.rw IpAddress .1.3.6.1.4.1.2011.10.2.8.1.10.1.6 |
h3cAclIDSDestWildDestination IP-address wild of IDS acl rule.rw IpAddress .1.3.6.1.4.1.2011.10.2.8.1.10.1.7 |
h3cAclIDSSrcPortThe fourth layer source port.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.10.1.8 |
h3cAclIDSDestPortThe fourth layer destination port.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.10.1.9 |
h3cAclIDSProtocolThe protocol-type of advanced acl group. <1-255> Protocol number gre GRE tunneling(47) icmp Internet Control Message Protocol(1) igmp Internet Group Management Protocol(2) ip Any IP protocol ipinip IP in IP tunneling(4) ospf OSPF routing protocol(89) tcp Transmission Control Protocol (6) udp User Datagram Protocol (17)rw Integer32 .1.3.6.1.4.1.2011.10.2.8.1.10.1.10 |
h3cAclIDSDenyTimeThe maximum number of seconds which deny for this acl rule.rw Unsigned32 .1.3.6.1.4.1.2011.10.2.8.1.10.1.11 |
h3cAclIDSActThe action of IDS acl rule.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.1.10.1.12 |
h3cAclIDSRowStatusRowStatus, now supports three states: CreateAndGo, Active, and Destroy.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.1.10.1.13 |
h3cAclMib2Objects OBJECT IDENTIFIER .1.3.6.1.4.1.2011.10.2.8.2 |
h3cAclMib2GlobalGroup OBJECT IDENTIFIER .1.3.6.1.4.1.2011.10.2.8.2.1 |
h3cAclMib2NodesGroup OBJECT IDENTIFIER .1.3.6.1.4.1.2011.10.2.8.2.1.1 |
h3cAclMib2ModeThe applying mode of ACL.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.2.1.1.1 |
h3cAclMib2VersionThe version of this file. The output value has the format of 'xx'or 'xxx'. For example: 10 means 1.0; 125 means 12.5.ro Integer32 .1.3.6.1.4.1.2011.10.2.8.2.1.1.2 |
h3cAclMib2ObjectsCapabilitiesThe objects of h3cAclMib2Objects.ro Bits .1.3.6.1.4.1.2011.10.2.8.2.1.1.3 |
h3cAclMib2ProcessingStatusThe processing status of ACL operation.ro Enumeration .1.3.6.1.4.1.2011.10.2.8.2.1.1.4 |
h3cAclMib2CapabilityTableThe capability of mib2. SEQUENCE OF H3cAclMib2CapabilityEntry .1.3.6.1.4.1.2011.10.2.8.2.1.2 |
h3cAclMib2CapabilityEntryThe information of Capability of mib2. H3cAclMib2CapabilityEntry .1.3.6.1.4.1.2011.10.2.8.2.1.2.1 |
h3cAclMib2EntityTypeThe type of entity . system: The entity is systemic level. interface: The entity is interface level. Enumeration .1.3.6.1.4.1.2011.10.2.8.2.1.2.1.1 |
h3cAclMib2EntityIndexThe index of entity. If h3cAclMib2EntityType is system, the value of this object is 0. If h3cAclMib2EntityType is interface, the value of this object is equal to 'ifIndex'. Integer32 .1.3.6.1.4.1.2011.10.2.8.2.1.2.1.2 |
h3cAclMib2ModuleIndexThe module index of ACL. Enumeration .1.3.6.1.4.1.2011.10.2.8.2.1.2.1.3 |
h3cAclMib2CharacteristicsIndexThe characteristics index of mib2. See DESCRIPTION of h3cAclMib2CharacteristicsValue to get detail information about the value of this object. Integer32 .1.3.6.1.4.1.2011.10.2.8.2.1.2.1.4 |
h3cAclMib2CharacteristicsDescThe description of characteristics.ro OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.1.2.1.5 |
h3cAclMib2CharacteristicsValueThe value of capability of this object. TypeOfRuleStringValue : notSupport(0) and the length of RuleString. TypeOfCodeValue : OnlyOneNotSupport(0), MoreThanOneNotSupport(1) If h3cAclMib2CharacteristicsValue is 'moreThanOneNotSupport', h3cAclMib2CharacteristicsDesc must be used to depict which protocols are not supported. The output value of h3cAclMib2CharacteristicsDesc has the format of 'a,b'. For example, 'ip,rarp'. layer3 Module: Index Characteristics value 1 SourceIPAddress notSupport(0) 2 DestinationIPAddress notSupport(0) 3 SourcePort notSupport(0) 4 DestinationPort notSupport(0) 5 IPPrecedence notSupport(0) 6 TOS notSupport(0) 7 DSCP notSupport(0) 8 TCPFlag notSupport(0) 9 FragmentFlag notSupport(0) 10 Log notSupport(0) 11 RuleMatchCounter notSupport(0) 12 ResetRuleMatchCounter notSupport(0) 13 VPN notSupport(0) 15 protocol notSupport(0) 16 AddressFlag notSupport(0) layer2 Module: Index Characteristics value 1 ProtocolType TypeOfCodeValue 2 SourceMAC notSupport(0) 3 DestinationMAC notSupport(0) 4 LSAPType TypeOfCodeValue 5 CoS notSupport(0) UserDefined Module: Index Characteristics value 1 UserDefaultOffset TypeOfRuleStringValue 2 UserL2RuleOffset TypeOfRuleStringValue 3 UserMplsOffset TypeOfRuleStringValue 4 UserIPv4Offset TypeOfRuleStringValue 5 UserIPv6Offset TypeOfRuleStringValue 6 UserL4Offset TypeOfRuleStringValue 7 UserL5Offset TypeOfRuleStringValuero Unsigned32 .1.3.6.1.4.1.2011.10.2.8.2.1.2.1.6 |
h3cAclNumberGroupTableA table of the number acl group information. SEQUENCE OF H3cAclNumberGroupEntry .1.3.6.1.4.1.2011.10.2.8.2.1.3 |
h3cAclNumberGroupEntryNumber acl group information entry. H3cAclNumberGroupEntry .1.3.6.1.4.1.2011.10.2.8.2.1.3.1 |
h3cAclNumberGroupTypeThe type of number group. Basic ACL and Advanced ACL support ipv4 and ipv6. The range of Basic ACL is from 2000 to 2999. The range of Advanced ACL is from 3000 to 3999. Simple ACL supports ipv6 only. The range of Simple ACL is from 10000 to 42767. MAC ACL and User ACL support ipv4 only. The range of MAC ACL is from 4000 to 4999. The range of User ACL is from 5000 to 5999. Enumeration .1.3.6.1.4.1.2011.10.2.8.2.1.3.1.1 |
h3cAclNumberGroupIndexThe group index of number acl. Basic type:2000..2999 Advanced type:3000..3999 MAC type:4000..4999 User type:5000..5999 Simple type:10000..42767 Integer32 (2000..5999|10000..42767) .1.3.6.1.4.1.2011.10.2.8.2.1.3.1.2 |
h3cAclNumberGroupRowStatusRowStatus.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.1.3.1.3 |
h3cAclNumberGroupMatchOrderThe match-order of number acl group.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.2.1.3.1.4 |
h3cAclNumberGroupStepThe step of rule index.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.2.1.3.1.5 |
h3cAclNumberGroupDescriptionDescription of this acl group.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.1.3.1.6 |
h3cAclNumberGroupCountClearReset the value of counters of this group.rw CounterClear .1.3.6.1.4.1.2011.10.2.8.2.1.3.1.7 |
h3cAclNumberGroupRuleCounterThe rule count of number acl group.ro Counter32 .1.3.6.1.4.1.2011.10.2.8.2.1.3.1.8 |
h3cAclNumberGroupNameName of this acl group.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.1.3.1.9 |
h3cAclIPAclGroup OBJECT IDENTIFIER .1.3.6.1.4.1.2011.10.2.8.2.2 |
h3cAclIPAclBasicTableA table of basic rule group. If some objects of this table are not supported by some products, these objects can't be created, changed and applied. Default value of these objects will be returned when they are read. SEQUENCE OF H3cAclIPAclBasicEntry .1.3.6.1.4.1.2011.10.2.8.2.2.2 |
h3cAclIPAclBasicEntryBasic rule group information. H3cAclIPAclBasicEntry .1.3.6.1.4.1.2011.10.2.8.2.2.2.1 |
h3cAclIPAclBasicRuleIndexThe rule index of basic acl group. Integer32 .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.1 |
h3cAclIPAclBasicRowStatusRowStatus.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.2 |
h3cAclIPAclBasicActThe action of basic acl rule.rw RuleAction .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.3 |
h3cAclIPAclBasicSrcAddrTypeThe IP addresses type of IP pool.rw InetAddressType (INET-ADDRESS-MIB) .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.4 |
h3cAclIPAclBasicSrcAddrThe value of a local IP address is available for this association. The type of this address is determined by the value of h3cAclIPAclBasicSrcAddrType.rw InetAddress (INET-ADDRESS-MIB) .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.5 |
h3cAclIPAclBasicSrcPrefixDenotes the length of a generic Internet network address prefix. A value of n corresponds to an IP address mask which has n contiguous 1-bits from the most significant bit (MSB) and all other bits set to 0.rw InetAddressPrefixLength (INET-ADDRESS-MIB) .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.6 |
h3cAclIPAclBasicSrcAnyThe flag of matching any IP address.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.7 |
h3cAclIPAclBasicSrcWildSource IPv4 address wild. Only IPv4 Basic Rule support this object. Default value is '0.0.0.0'.rw IpAddress .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.8 |
h3cAclIPAclBasicTimeRangeNameThe Time-range of basic acl rule. Default value is null.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.9 |
h3cAclIPAclBasicFragmentFlagThe flag of matching fragmented packets.rw FragmentFlag .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.10 |
h3cAclIPAclBasicLogThe packet will be logged when it matches the rule.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.11 |
h3cAclIPAclBasicCountThe count of matched by the rule.ro Unsigned32 .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.12 |
h3cAclIPAclBasicCountClearReset the value of counter.rw CounterClear .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.13 |
h3cAclIPAclBasicEnableThe rule is active or not. true : active false : inactivero TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.14 |
h3cAclIPAclBasicVpnInstanceNameThe VPN name, which the rule will be applied. Default value is null.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.15 |
h3cAclIPAclBasicCommentThe description of ACL rule. Default value is Zero-length String.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.16 |
h3cAclIPAclBasicCountingThe packet will be counted when it matches the rule. It is disabled by default.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.17 |
h3cAclIPAclBasicRouteTypeAnyThe flag of matching any type of routing header of IPv6 packet.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.18 |
h3cAclIPAclBasicRouteTypeValueMatch specify type of routing header of IPv6 packet.rw Integer32 (0..255|65535) .1.3.6.1.4.1.2011.10.2.8.2.2.2.1.19 |
h3cAclIPAclAdvancedTableA table of advanced and simple acl group. If some objects of this table are not supported by some products, these objects can't be created, changed and applied. Default value of these objects will be returned when they are read. SEQUENCE OF H3cAclIPAclAdvancedEntry .1.3.6.1.4.1.2011.10.2.8.2.2.3 |
h3cAclIPAclAdvancedEntryAdvanced acl group information. H3cAclIPAclAdvancedEntry .1.3.6.1.4.1.2011.10.2.8.2.2.3.1 |
h3cAclIPAclAdvancedRuleIndexThe rule index of advanced acl group. As a Simple ACL group, the value of this object must be 0. As an Advanced ACL group, the value of this object is ranging from 0 to 65534. Integer32 .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.1 |
h3cAclIPAclAdvancedRowStatusRowStatus.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.2 |
h3cAclIPAclAdvancedActThe action of advanced acl rule.rw RuleAction .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.3 |
h3cAclIPAclAdvancedProtocolThe protocol-type of advanced acl group. <1-255> Protocol number gre GRE tunneling(47) icmp Internet Control Message Protocol(1) icmpv6 Internet Control Message Protocol6(58) igmp Internet Group Management Protocol(2) ip Any IPv4 protocol ipv6 Any IPv6 protocol ipinip IP in IP tunneling(4) ospf OSPF routing protocol(89) tcp Transmission Control Protocol (6) udp User Datagram Protocol (17) ipv6-ah IPv6 Authentication Header(51) ipv6-esp IPv6 Encapsulating Security Payload(50)rw Integer32 .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.4 |
h3cAclIPAclAdvancedAddrFlagAddress flag to select address.rw AddressFlag .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.5 |
h3cAclIPAclAdvancedSrcAddrTypeThe IP addresses type of IP pool.rw InetAddressType (INET-ADDRESS-MIB) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.6 |
h3cAclIPAclAdvancedSrcAddrThe value of a local IP address available for this association. The type of this address is determined by the value of h3cAclIPAclAdvancedSrcAddrType.rw InetAddress (INET-ADDRESS-MIB) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.7 |
h3cAclIPAclAdvancedSrcPrefixDenotes the length of a generic Internet network address prefix. A value of n corresponds to an IP address mask which has n contiguous 1-bits from the most significant bit (MSB) and all other bits set to 0.rw InetAddressPrefixLength (INET-ADDRESS-MIB) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.8 |
h3cAclIPAclAdvancedSrcAnyThe flag of matching any IP address.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.9 |
h3cAclIPAclAdvancedSrcWildSource IPv4 address wild. Only IPv4 Advanced Rule supports this object. Default value is '0.0.0.0'.rw IpAddress .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.10 |
h3cAclIPAclAdvancedSrcOpSource port operation symbol of advanced acl group.rw PortOp .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.11 |
h3cAclIPAclAdvancedSrcPort1The fourth layer source port1.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.12 |
h3cAclIPAclAdvancedSrcPort2The fourth layer source port2.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.13 |
h3cAclIPAclAdvancedDestAddrTypeThe IP addresses type of IP pool.rw InetAddressType (INET-ADDRESS-MIB) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.14 |
h3cAclIPAclAdvancedDestAddrThe value of a local IP address available for this association. The type of this address is determined by the value of h3cAclIPAclAdvancedDestAddrType.rw InetAddress (INET-ADDRESS-MIB) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.15 |
h3cAclIPAclAdvancedDestPrefixDenotes the length of a generic Internet network address prefix. A value of n corresponds to an IP address mask which has n contiguous 1-bits from the most significant bit (MSB) and all other bits set to 0.rw InetAddressPrefixLength (INET-ADDRESS-MIB) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.16 |
h3cAclIPAclAdvancedDestAnyThe flag of matching any IP address.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.17 |
h3cAclIPAclAdvancedDestWildDestination IPv4 address wild. Only IPv4 Advanced Rule supports this object. Default value is '0.0.0.0'.rw IpAddress .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.18 |
h3cAclIPAclAdvancedDestOpDestination port operation symbol of advanced acl group.rw PortOp .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.19 |
h3cAclIPAclAdvancedDestPort1The fourth layer destination port1.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.20 |
h3cAclIPAclAdvancedDestPort2The fourth layer destination port2.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.21 |
h3cAclIPAclAdvancedIcmpTypeThe type of ICMP packet.rw Integer32 (0..255|65535) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.22 |
h3cAclIPAclAdvancedIcmpCodeThe code of ICMP packet.rw Integer32 (0..255|65535) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.23 |
h3cAclIPAclAdvancedPrecedenceThe value of IP-packet's precedence. <0-7> Value of precedence routine Specify routine precedence(0) priority Specify priority precedence(1) immediate Specify immediate precedence(2) flash Specify flash precedence(3) flash-override Specify flash-override precedence(4) critical Specify critical precedence(5) internet Specify internetwork control precedence(6) network Specify network control precedence(7)rw Integer32 (0..7|255) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.24 |
h3cAclIPAclAdvancedTosThe value of IP-packet's TOS. <0-15> Value of TOS(type of service) max-reliability Match packets with max reliable TOS(2) max-throughput Match packets with max throughput TOS(4) min-delay Match packets with min delay TOS(8) min-monetary-cost Match packets with min monetary cost TOS(1) normal Match packets with normal TOS(0)rw Integer32 (0..15|255) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.25 |
h3cAclIPAclAdvancedDscpThe value of DSCP of IP packet.rw DSCPValue .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.26 |
h3cAclIPAclAdvancedTimeRangeNameThe Time-range of advanced acl rule. Default value is null.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.27 |
h3cAclIPAclAdvancedTCPFlagThe packet type of TCP protocol.rw TCPFlag .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.28 |
h3cAclIPAclAdvancedFragmentFlagThe flag of matching fragmented packet, and now support two value: 0 or 2 .rw FragmentFlag .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.29 |
h3cAclIPAclAdvancedLogLog matched packets.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.30 |
h3cAclIPAclAdvancedCountThe count of matched by the rule.ro Unsigned32 .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.31 |
h3cAclIPAclAdvancedCountClearReset the value of counter.rw CounterClear .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.32 |
h3cAclIPAclAdvancedEnableThe rule is active or not. true : active false : inactivero TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.33 |
h3cAclIPAclAdvancedVpnInstanceNameThe VPN name that the rule will be applied. Default value is null.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.34 |
h3cAclIPAclAdvancedCommentThe description of ACL rule. Default value is Zero-length String.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.35 |
h3cAclIPAclAdvancedReflectiveThe flag of reflective.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.36 |
h3cAclIPAclAdvancedCountingThe packet will be counted when it matches the rule. It is disabled by default.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.37 |
h3cAclIPAclAdvancedTCPFlagMaskThe TCP Flag Mask. This is a bit-map of possible conditions. The various bit positions are: |0 |tcpack | |1 |tcpfin | |2 |tcppsh | |3 |tcprst | |4 |tcpsyn | |5 |tcpurg |rw Bits .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.38 |
h3cAclIPAclAdvancedTCPFlagValueThe TCP Flag Value. This is a bit-map of possible conditions. The various bit positions are: |0 |tcpack | |1 |tcpfin | |2 |tcppsh | |3 |tcprst | |4 |tcpsyn | |5 |tcpurg |rw Bits .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.39 |
h3cAclIPAclAdvancedRouteTypeAnyThe flag of matching any type of routing header of IPv6 packet.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.40 |
h3cAclIPAclAdvancedRouteTypeValueThe type of routing header of IPv6 packet.rw Integer32 (0..255|65535) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.41 |
h3cAclIPAclAdvancedFlowLabelThe value of flow label of IPv6 packet header.rw Unsigned32 (0..1048575|4294967295) .1.3.6.1.4.1.2011.10.2.8.2.2.3.1.42 |
h3cAclMACAclGroup OBJECT IDENTIFIER .1.3.6.1.4.1.2011.10.2.8.2.3 |
h3cAclMACTableA table of MAC acl group. If some objects of this table are not supported by some products, these objects can't be created, changed and applied. Default value of these objects will be returned when they are read. SEQUENCE OF H3cAclMACEntry .1.3.6.1.4.1.2011.10.2.8.2.3.1 |
h3cAclMACEntryMAC acl group information. H3cAclMACEntry .1.3.6.1.4.1.2011.10.2.8.2.3.1.1 |
h3cAclMACRuleIndexThe rule index of MAC-based acl group. Integer32 .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.1 |
h3cAclMACRowStatusRowStatus.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.2 |
h3cAclMACActThe action of MAC acl rule.rw RuleAction .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.3 |
h3cAclMACTypeCodeThe type of protocol.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.4 |
h3cAclMACTypeMaskThe mask of protocol.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.5 |
h3cAclMACSrcMacSource MAC of MAC acl rule. Default value is '00:00:00:00:00:00'.rw MacAddress (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.6 |
h3cAclMACSrcMacWildSource MAC wildzard of MAC acl rule. Default value is '00:00:00:00:00:00'.rw MacAddress (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.7 |
h3cAclMACDestMacDestination MAC of MAC acl rule. Default value is '00:00:00:00:00:00'.rw MacAddress (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.8 |
h3cAclMACDestMacWildDestination MAC wildzard of MAC acl rule. Default value is '00:00:00:00:00:00'rw MacAddress (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.9 |
h3cAclMACLsapCodeThe type of LSAP.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.10 |
h3cAclMACLsapMaskThe mask of LSAP.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.11 |
h3cAclMACCosVlan priority of MAC acl rule.rw Integer32 .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.12 |
h3cAclMACTimeRangeNameThe Time-range of MAC acl rule. Default value is null.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.13 |
h3cAclMACCountThe count of matched frame by the rule.ro Unsigned32 .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.14 |
h3cAclMACCountClearReset the value of counter.rw CounterClear .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.15 |
h3cAclMACEnableThe rule is active or not. true : active false : inactivero TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.16 |
h3cAclMACCommentThe description of ACL rule. Default value is Zero-length String.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.17 |
h3cAclMACLogThe packet will be logged when it matches the rule. It is disabled by default.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.18 |
h3cAclMACCountingThe packet will be counted when it matches the rule. It is disabled by default.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.3.1.1.19 |
h3cAclEnUserAclGroup OBJECT IDENTIFIER .1.3.6.1.4.1.2011.10.2.8.2.4 |
h3cAclEnUserTableA table of user acl group information. If some objects of this table are not supported by some products, these objects can't be created, changed and applied. Default value of these objects will be returned when they are read. SEQUENCE OF H3cAclEnUserEntry .1.3.6.1.4.1.2011.10.2.8.2.4.3 |
h3cAclEnUserEntryUser defined acl group entry. H3cAclEnUserEntry .1.3.6.1.4.1.2011.10.2.8.2.4.3.1 |
h3cAclEnUserRuleIndexThe subitem of the user acl. Integer32 .1.3.6.1.4.1.2011.10.2.8.2.4.3.1.1 |
h3cAclEnUserRowStatusRowStatus.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.4.3.1.2 |
h3cAclEnUserActThe action of user defined acl rule.rw RuleAction .1.3.6.1.4.1.2011.10.2.8.2.4.3.1.3 |
h3cAclEnUserStartStringThe rule, matching packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value of this object is defined by product and it indicates the offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: 10,10af,ffff. Default value is null.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.4.3.1.4 |
h3cAclEnUserL2StringThe rule, matching layer 2 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is null.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.4.3.1.5 |
h3cAclEnUserMplsStringThe rule, matching mpls packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is null.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.4.3.1.6 |
h3cAclEnUserIPv4StringThe rule, matching IPv4 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is null.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.4.3.1.7 |
h3cAclEnUserIPv6StringThe rule, matching IPv6 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is null.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.4.3.1.8 |
h3cAclEnUserL4StringThe rule, matching layer 4 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is null.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.4.3.1.9 |
h3cAclEnUserL5StringThe rule, matching layer 5 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is null.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.4.3.1.10 |
h3cAclEnUserTimeRangeNameThe Time-range of user acl rule. Default value is null.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.4.3.1.11 |
h3cAclEnUserCountThe count of matched by the rule.ro Unsigned32 .1.3.6.1.4.1.2011.10.2.8.2.4.3.1.12 |
h3cAclEnUserCountClearReset the value of counter.rw CounterClear .1.3.6.1.4.1.2011.10.2.8.2.4.3.1.13 |
h3cAclEnUserEnableThe rule is active or not. true : active false : inactivero TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.4.3.1.14 |
h3cAclEnUserCommentThe description of ACL rule. Default value is Zero-length String.rw OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.4.3.1.15 |
h3cAclEnUserLogThe packet will be logged when it matches the rule. It is disabled by default.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.4.3.1.16 |
h3cAclEnUserCountingThe packet will be counted when it matches the rule. It is disabled by default.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.2.4.3.1.17 |
h3cAclResourceGroup OBJECT IDENTIFIER .1.3.6.1.4.1.2011.10.2.8.2.5 |
h3cAclResourceUsageTableThe table shows ACL resource usage information. Support for resource types that are denoted by h3cAclResourceType object varies with products. If a type is not supported, the corresponding row for the type will not be instantiated in this table. SEQUENCE OF H3cAclResourceUsageEntry .1.3.6.1.4.1.2011.10.2.8.2.5.1 |
h3cAclResourceUsageEntryEach row contains a brief description of the resource type, a port range associated with the chip, total, reserved, and configured amount of resource of this type, the percent of resource that has been allocated, and so on. H3cAclResourceUsageEntry .1.3.6.1.4.1.2011.10.2.8.2.5.1.1 |
h3cAclResourceChassisThe chassis number. On a centralized or distributed device, the value for this node is always zero. Unsigned32 .1.3.6.1.4.1.2011.10.2.8.2.5.1.1.1 |
h3cAclResourceSlotThe slot number. On a centralized device, the value for this node is always zero. Unsigned32 .1.3.6.1.4.1.2011.10.2.8.2.5.1.1.2 |
h3cAclResourceChipThe chip number. On a single chip device, the value for this node is always zero. Unsigned32 .1.3.6.1.4.1.2011.10.2.8.2.5.1.1.3 |
h3cAclResourceTypeThe resource type. Integer32 .1.3.6.1.4.1.2011.10.2.8.2.5.1.1.4 |
h3cAclPortRangeThe port range associated with the chip. Commas are used to separate multiple port ranges, for example, Ethernet1/2 to Ethernet1/12, Ethernet1/31 to Ethernet1/48.ro OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.5.1.1.5 |
h3cAclResourceTotalTotal TCAM entries of the resource type.ro Unsigned32 .1.3.6.1.4.1.2011.10.2.8.2.5.1.1.6 |
h3cAclResourceReservedThe amount of reserved TCAM entries of the resource type.ro Unsigned32 .1.3.6.1.4.1.2011.10.2.8.2.5.1.1.7 |
h3cAclResourceConfiguredThe amount of configured TCAM entries of the resource type.ro Unsigned32 .1.3.6.1.4.1.2011.10.2.8.2.5.1.1.8 |
h3cAclResourceUsagePercentThe percent of TCAM entries that have been used for this resource type.ro Unsigned32 .1.3.6.1.4.1.2011.10.2.8.2.5.1.1.9 |
h3cAclResourceTypeDescriptionThe description of this resource type.ro OCTET STRING .1.3.6.1.4.1.2011.10.2.8.2.5.1.1.10 |
h3cAclPacketFilterObjects OBJECT IDENTIFIER .1.3.6.1.4.1.2011.10.2.8.3 |
h3cPfilterScalarGroup OBJECT IDENTIFIER .1.3.6.1.4.1.2011.10.2.8.3.1 |
h3cPfilterDefaultActionThe default action of packet filter. By default, the packet filter permits packets that do not match any ACL rule to pass.rw Enumeration .1.3.6.1.4.1.2011.10.2.8.3.1.1 |
h3cPfilterProcessingStatusThis object shows the status of the system when applying packet filter. It is forbidden to set or read in h3cAclPacketFilterObjects MIB module when the value is processing.ro Enumeration .1.3.6.1.4.1.2011.10.2.8.3.1.2 |
h3cPfilterApplyTableA table of packet filter application. It's not supported to set default action on an entity, but supported to enable hardware count of default action on an entity. SEQUENCE OF H3cPfilterApplyEntry .1.3.6.1.4.1.2011.10.2.8.3.2 |
h3cPfilterApplyEntryPacket filter application information entry. H3cPfilterApplyEntry .1.3.6.1.4.1.2011.10.2.8.3.2.1 |
h3cPfilterApplyObjTypeThe object type of packet filter application. interface: Apply an ACL to the interface to filter packets. vlan: Apply an ACL to the VLAN to filter packets. global: Apply an ACL globally to filter packets. Enumeration .1.3.6.1.4.1.2011.10.2.8.3.2.1.1 |
h3cPfilterApplyObjIndexThe object ID of packet filter application. Interface: interface index, equal to ifIndex VLAN: VLAN ID, 1..4094 Global: 0 Integer32 .1.3.6.1.4.1.2011.10.2.8.3.2.1.2 |
h3cPfilterApplyDirectionThe direction of packet filter application. DirectionType .1.3.6.1.4.1.2011.10.2.8.3.2.1.3 |
h3cPfilterApplyAclTypeACL Type: IPv4, IPv6, default action. Take default action as a special ACL group. Enumeration .1.3.6.1.4.1.2011.10.2.8.3.2.1.4 |
h3cPfilterApplyAclIndexThe ACL group index. Basic type: 2000..2999 Advanced type: 3000..3999 MAC type: 4000..4999 User type: 5000..5999 Default action type: 0 Integer32 (0|2000..5999) .1.3.6.1.4.1.2011.10.2.8.3.2.1.5 |
h3cPfilterApplyHardCountHardware count flag. true: enable hardware count false: disable hardware countrw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.3.2.1.6 |
h3cPfilterApplySequenceThe configure sequence of packet filter application.ro Unsigned32 .1.3.6.1.4.1.2011.10.2.8.3.2.1.7 |
h3cPfilterApplyCountClearClear the value of counters.rw CounterClear .1.3.6.1.4.1.2011.10.2.8.3.2.1.8 |
h3cPfilterApplyRowStatusRowStatus.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.2011.10.2.8.3.2.1.9 |
h3cPfilterAclGroupRunInfoTableA table of group running information of ACLs for packet filtering. If hardware count function is not supported or not enabled to the packet filter application, the statistics entry will be zero. SEQUENCE OF H3cPfilterAclGroupRunInfoEntry .1.3.6.1.4.1.2011.10.2.8.3.3 |
h3cPfilterAclGroupRunInfoEntryACL group running information entry for packet filtering. H3cPfilterAclGroupRunInfoEntry .1.3.6.1.4.1.2011.10.2.8.3.3.1 |
h3cPfilterAclGroupStatusThe status of ACL group applied. success: ACL applied successfully on all slots failed: failed to apply ACL on all slots partialSuccess: failed to apply ACL on some slotsro Enumeration .1.3.6.1.4.1.2011.10.2.8.3.3.1.1 |
h3cPfilterAclGroupCountStatusThe status of enabling hardware count. If hardware count is not enabled, it returns success. success: enable hardware count successfully on all slots failed: failed to enable hardware count on all slots partialSuccess: failed to enable hardware count on some slotsro Enumeration .1.3.6.1.4.1.2011.10.2.8.3.3.1.2 |
h3cPfilterAclGroupPermitPktsThe number of packets permitted.ro Counter64 .1.3.6.1.4.1.2011.10.2.8.3.3.1.3 |
h3cPfilterAclGroupPermitBytesThe number of bytes permitted.ro Counter64 .1.3.6.1.4.1.2011.10.2.8.3.3.1.4 |
h3cPfilterAclGroupDenyPktsThe number of packets denied.ro Counter64 .1.3.6.1.4.1.2011.10.2.8.3.3.1.5 |
h3cPfilterAclGroupDenyBytesThe number of bytes denied.ro Counter64 .1.3.6.1.4.1.2011.10.2.8.3.3.1.6 |
h3cPfilterAclRuleRunInfoTableA table of rule's running information of ACLs for packet filtering. If hardware count function is not supported or not enabled to the packet filter application, the h3cPfilterAclRuleMatchPackets and h3cPfilterAclRuleMatchBytes will be zero. SEQUENCE OF H3cPfilterAclRuleRunInfoEntry .1.3.6.1.4.1.2011.10.2.8.3.4 |
h3cPfilterAclRuleRunInfoEntryACL rule's running information entry. H3cPfilterAclRuleRunInfoEntry .1.3.6.1.4.1.2011.10.2.8.3.4.1 |
h3cPfilterAclRuleIndexThe ACL rule index. Integer32 .1.3.6.1.4.1.2011.10.2.8.3.4.1.1 |
h3cPfilterAclRuleStatusThe status of rule application. success: rule applied successfully on all slots failed: failed to apply rule on all slots partialSuccess: failed to apply rule on some slotsro Enumeration .1.3.6.1.4.1.2011.10.2.8.3.4.1.2 |
h3cPfilterAclRuleCountStatusThe status of enabling rule's hardware count. If hardware count is not enabled, it returns success. success: enable hardware count successfully on all slots failed: failed to enable hardware count on all slots partialSuccess: failed to enable hardware count on some slotsro Enumeration .1.3.6.1.4.1.2011.10.2.8.3.4.1.3 |
h3cPfilterAclRuleMatchPacketsThe number of packets matched.ro Counter64 .1.3.6.1.4.1.2011.10.2.8.3.4.1.4 |
h3cPfilterAclRuleMatchBytesThe number of bytes matched.ro Counter64 .1.3.6.1.4.1.2011.10.2.8.3.4.1.5 |
h3cPfilterStatisticSumTableA table of ACL rule's sum statistics information, accumulated by all entity application on all slots. SEQUENCE OF H3cPfilterStatisticSumEntry .1.3.6.1.4.1.2011.10.2.8.3.5 |
h3cPfilterStatisticSumEntryACL rule's sum statistics information entry. H3cPfilterStatisticSumEntry .1.3.6.1.4.1.2011.10.2.8.3.5.1 |
h3cPfilterSumDirectionThe direction of application. DirectionType .1.3.6.1.4.1.2011.10.2.8.3.5.1.1 |
h3cPfilterSumAclTypeACL type, IPv4 or IPv6. Enumeration .1.3.6.1.4.1.2011.10.2.8.3.5.1.2 |
h3cPfilterSumAclIndexThe ACL group index. Basic type: 2000..2999 Advanced type: 3000..3999 MAC type: 4000..4999 User type: 5000..5999 Integer32 .1.3.6.1.4.1.2011.10.2.8.3.5.1.3 |
h3cPfilterSumRuleIndexThe ACL rule index. Integer32 .1.3.6.1.4.1.2011.10.2.8.3.5.1.4 |
h3cPfilterSumRuleMatchPacketsThe sum number of packets matched the ACL rule.ro Counter64 .1.3.6.1.4.1.2011.10.2.8.3.5.1.5 |
h3cPfilterSumRuleMatchBytesThe sum number of bytes matched the ACL rule.ro Counter64 .1.3.6.1.4.1.2011.10.2.8.3.5.1.6 |
h3cAclPacketfilterTrapObjects OBJECT IDENTIFIER .1.3.6.1.4.1.2011.10.2.8.4 |
h3cPfilterInterfaceThe interface which policy apply.ro OCTET STRING .1.3.6.1.4.1.2011.10.2.8.4.1 |
h3cPfilterDirectionInbound or outbound.ro OCTET STRING .1.3.6.1.4.1.2011.10.2.8.4.2 |
h3cPfilterACLNumberACL number.ro Integer32 .1.3.6.1.4.1.2011.10.2.8.4.3 |
h3cPfilterActionPermit or deny.ro OCTET STRING .1.3.6.1.4.1.2011.10.2.8.4.4 |
h3cMACfilterSourceMacSource MAC address.ro OCTET STRING .1.3.6.1.4.1.2011.10.2.8.4.5 |
h3cMACfilterDestinationMacDestination MAC address.ro OCTET STRING .1.3.6.1.4.1.2011.10.2.8.4.6 |
h3cPfilterPacketNumberThe number of packets permitted or denied by ACL.ro Integer32 .1.3.6.1.4.1.2011.10.2.8.4.7 |
h3cPfilterReceiveInterfaceThe interface where packet come from.ro OCTET STRING .1.3.6.1.4.1.2011.10.2.8.4.8 |
h3cAclPacketfilterTrap OBJECT IDENTIFIER .1.3.6.1.4.1.2011.10.2.8.5 |
h3cPfilterTrapPrefix OBJECT IDENTIFIER .1.3.6.1.4.1.2011.10.2.8.5.0 |
h3cMACfilterTrapThis notification is generated when a packet was processed by MAC address filter, but not every packet will generate one notification, the same notification only generate once in 30 seconds. NOTIFICATION-TYPE .1.3.6.1.4.1.2011.10.2.8.5.0.1 |