Home/Catalog/HH3C-ACL-MIB

HH3C-ACL-MIB

AI MIB Summary

The HH3C-ACL-MIB enables monitoring and configuration of Access Control List (ACL) entries, packet filtering rules, and associated hit counters on H3C network devices. It provides visibility into specific traffic matching statistics, rule hit counts, and policy enforcement status for ingress and egress filtering operations.

ACL management information base for managing devices that support access control list and packet filtering.
Main OID:
hh3cAcl.1.3.6.1.4.1.25506.2.8
530
Objects
Active
Status
4
Dependencies

Imported Objects

Objects

530 total
Object Name
hh3cAclACL management information base for managing devices that support access control list and packet filtering.
MODULE-IDENTITY
.1.3.6.1.4.1.25506.2.8
hh3cAclMibObjects
OBJECT IDENTIFIER
.1.3.6.1.4.1.25506.2.8.1
hh3cAclModeAccess-list mode.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.1
hh3cAclNumGroupTableConfigure the match-order of number-acl group.
SEQUENCE OF Hh3cAclNumGroupEntry
.1.3.6.1.4.1.25506.2.8.1.2
hh3cAclNumGroupEntryDefine the index of hh3cAclNumGroupTable.
Hh3cAclNumGroupEntry
.1.3.6.1.4.1.25506.2.8.1.2.1
hh3cAclNumGroupAclNumThe index of number-acl group Interface type:1000..1999 Basic type:2000..2999 Advance type:3000..3999 Link type:4000..4999 User type:5000..5999
Integer32
.1.3.6.1.4.1.25506.2.8.1.2.1.1
hh3cAclNumGroupMatchOrderThe match-order of number-acl group.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.2.1.2
hh3cAclNumGroupSubitemNumThe number of number-acl group's node.ro
Integer32
.1.3.6.1.4.1.25506.2.8.1.2.1.3
hh3cAclNumGroupDescriptionThe description of this acl group.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.1.2.1.4
hh3cAclNumGroupCountClearReset the value of rules' counter, which belong to this group.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.2.1.5
hh3cAclNumGroupRowStatusRowStatus, now support three state: CreateAndGo, Active, Destroy.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.2.1.6
hh3cAclNameGroupTableCreate acl-group that identified by name.
SEQUENCE OF Hh3cAclNameGroupEntry
.1.3.6.1.4.1.25506.2.8.1.3
hh3cAclNameGroupEntryDefine the index of hh3cAclNameGroupTable.
Hh3cAclNameGroupEntry
.1.3.6.1.4.1.25506.2.8.1.3.1
hh3cAclNameGroupIndexThe index of name-acl group.
Integer32
.1.3.6.1.4.1.25506.2.8.1.3.1.1
hh3cAclNameGroupCreateNameThe name of name-acl group.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.1.3.1.2
hh3cAclNameGroupTypesThe type of name-acl group.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.3.1.3
hh3cAclNameGroupMatchOrderThe match-order of name-acl group.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.3.1.4
hh3cAclNameGroupSubitemNumThe number of name-acl group's node.ro
Integer32
.1.3.6.1.4.1.25506.2.8.1.3.1.5
hh3cAclNameGroupRowStatusRowStatus, now support three state: CreateAndGo, Active, Destroy.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.3.1.6
hh3cAclBasicRuleTableConfigure the rule for basic acl group.
SEQUENCE OF Hh3cAclBasicRuleEntry
.1.3.6.1.4.1.25506.2.8.1.4
hh3cAclBasicRuleEntryDefine the index of hh3cAclBasicRuleTable.
Hh3cAclBasicRuleEntry
.1.3.6.1.4.1.25506.2.8.1.4.1
hh3cAclBasicAclNumThe index of basic acl group.
Integer32 (0|2000..2999|10000..12999)
.1.3.6.1.4.1.25506.2.8.1.4.1.1
hh3cAclBasicSubitemThe subindex of basic acl group.
Integer32
.1.3.6.1.4.1.25506.2.8.1.4.1.2
hh3cAclBasicActThe action of basic acl rule.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.4.1.3
hh3cAclBasicSrcIpSource IP-address of basic acl rule.rw
IpAddress
.1.3.6.1.4.1.25506.2.8.1.4.1.4
hh3cAclBasicSrcWildSource IP-address wild of basic acl rule.rw
IpAddress
.1.3.6.1.4.1.25506.2.8.1.4.1.5
hh3cAclBasicTimeRangeNameThe Time-range of basic acl rule.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.1.4.1.6
hh3cAclBasicFragmentsThe flag of matching fragmented packet.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.4.1.7
hh3cAclBasicLogThe flag of log.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.4.1.8
hh3cAclBasicEnableThe rule is active or not. true : active false : inactivero
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.4.1.9
hh3cAclBasicCountThe count of matched by basic rule.ro
Counter32
.1.3.6.1.4.1.25506.2.8.1.4.1.10
hh3cAclBasicCountClearReset the value of counter.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.4.1.11
hh3cAclBasicRowStatusRowStatus, now support three state: CreateAndGo, Active, Destroy.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.4.1.12
hh3cAclAdvancedRuleTableConfigure the rule for advanced acl group.
SEQUENCE OF Hh3cAclAdvancedRuleEntry
.1.3.6.1.4.1.25506.2.8.1.5
hh3cAclAdvancedRuleEntryDefine the index of hh3cAclAdvancedRuleTable.
Hh3cAclAdvancedRuleEntry
.1.3.6.1.4.1.25506.2.8.1.5.1
hh3cAclAdvancedAclNumThe index of advanced acl group.
Integer32 (0|3000..3999|10000..12999)
.1.3.6.1.4.1.25506.2.8.1.5.1.1
hh3cAclAdvancedSubitemThe subindex of advanced acl group.
Integer32
.1.3.6.1.4.1.25506.2.8.1.5.1.2
hh3cAclAdvancedActThe action of Advance acl rule.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.5.1.3
hh3cAclAdvancedProtocolThe protocol-type of advanced acl group. <1-255> Protocol number gre GRE tunneling(47) icmp Internet Control Message Protocol(1) igmp Internet Group Management Protocol(2) ip Any IP protocol ipinip IP in IP tunneling(4) ospf OSPF routing protocol(89) tcp Transmission Control Protocol (6) udp User Datagram Protocol (17)rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.5.1.4
hh3cAclAdvancedSrcIpSource IP-address of advanced acl group.rw
IpAddress
.1.3.6.1.4.1.25506.2.8.1.5.1.5
hh3cAclAdvancedSrcWildSource IP-address wild of advanced acl group.rw
IpAddress
.1.3.6.1.4.1.25506.2.8.1.5.1.6
hh3cAclAdvancedSrcOpThe source IP-address's operator of advanced acl group.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.5.1.7
hh3cAclAdvancedSrcPort1The fourth layer source port1.rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.5.1.8
hh3cAclAdvancedSrcPort2The fourth layer source port2.rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.5.1.9
hh3cAclAdvancedDestIpDestination IP-address of advanced acl group.rw
IpAddress
.1.3.6.1.4.1.25506.2.8.1.5.1.10
hh3cAclAdvancedDestWildDestination IP-address wild of advanced acl group.rw
IpAddress
.1.3.6.1.4.1.25506.2.8.1.5.1.11
hh3cAclAdvancedDestOpThe destination IP-address's operator of advanced acl group.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.5.1.12
hh3cAclAdvancedDestPort1The fourth layer destination port1.rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.5.1.13
hh3cAclAdvancedDestPort2The fourth layer destination port2.rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.5.1.14
hh3cAclAdvancedPrecedenceThe value of IP-packet's precedence. <0-7> Value of precedence routine Specify routine precedence(0) priority Specify priority precedence(1) immediate Specify immediate precedence(2) flash Specify flash precedence(3) flash-override Specify flash-override precedence(4) critical Specify critical precedence(5) internet Specify internetwork control precedence(6) network Specify network control precedence(7)rw
Integer32 (0..7|255)
.1.3.6.1.4.1.25506.2.8.1.5.1.15
hh3cAclAdvancedTosThe value of IP-packet's TOS. <0-15> Value of TOS(type of service) max-reliability Match packets with max reliable TOS(2) max-throughput Match packets with max throughput TOS(4) min-delay Match packets with min delay TOS(8) min-monetary-cost Match packets with min monetary cost TOS(1) normal Match packets with normal TOS(0)rw
Integer32 (0..15|255)
.1.3.6.1.4.1.25506.2.8.1.5.1.16
hh3cAclAdvancedDscpThe value of DSCP. <0-63> Value of DSCP af11 Specify Assured Forwarding 11 service(10) af12 Specify Assured Forwarding 12 service(12) af13 Specify Assured Forwarding 13 service(14) af21 Specify Assured Forwarding 21 service(18) af22 Specify Assured Forwarding 22 service(20) af23 Specify Assured Forwarding 23 service(22) af31 Specify Assured Forwarding 31 service(26) af32 Specify Assured Forwarding 32 service(28) af33 Specify Assured Forwarding 33 service(30) af41 Specify Assured Forwarding 41 service(34) af42 Specify Assured Forwarding 42 service(36) af43 Specify Assured Forwarding 43 service(38) be Specify Best Effort service(0) cs1 Specify Class Selector 1 service(8) cs2 Specify Class Selector 2 service(16) cs3 Specify Class Selector 3 service(24) cs4 Specify Class Selector 4 service(32) cs5 Specify Class Selector 5 service(40) cs6 Specify Class Selector 6 service(48) cs7 Specify Class Selector 7 service(56) ef Specify Expedited Forwarding service(46)rw
Integer32 (0..63|255)
.1.3.6.1.4.1.25506.2.8.1.5.1.17
hh3cAclAdvancedEstablishEstablish flag.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.5.1.18
hh3cAclAdvancedTimeRangeNameThe Time-range of advanced acl rule.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.1.5.1.19
hh3cAclAdvancedIcmpTypeThe type of ICMP packet. Integer32 ICMP type echo Type=8, Code=0 echo-reply Type=0, Code=0 fragmentneed-DFset Type=3, Code=4 host-redirect Type=5, Code=1 host-tos-redirect Type=5, Code=3 host-unreachable Type=3, Code=1 information-reply Type=16, Code=0 information-request Type=15, Code=0 net-redirect Type=5, Code=0 net-tos-redirect Type=5, Code=2 net-unreachable Type=3, Code=0 parameter-problem Type=12, Code=0 port-unreachable Type=3, Code=3 protocol-unreachable Type=3, Code=2 reassembly-timeout Type=11, Code=1 source-quench Type=4, Code=0 source-route-failed Type=3, Code=5 timestamp-reply Type=14, Code=0 timestamp-request Type=13, Code=0 ttl-exceeded Type=11, Code=0rw
Integer32 (0..255|65535)
.1.3.6.1.4.1.25506.2.8.1.5.1.20
hh3cAclAdvancedIcmpCodeThe code of ICMP packet.rw
Integer32 (0..255|65535)
.1.3.6.1.4.1.25506.2.8.1.5.1.21
hh3cAclAdvancedFragmentsThe flag of matching fragmented packet.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.5.1.22
hh3cAclAdvancedLogThe flag of log.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.5.1.23
hh3cAclAdvancedEnableThe rule is active or not. true : active false : inactivero
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.5.1.24
hh3cAclAdvancedCountThe count of matched by advanced rule.ro
Counter32
.1.3.6.1.4.1.25506.2.8.1.5.1.25
hh3cAclAdvancedCountClearReset the value of counter.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.5.1.26
hh3cAclAdvancedRowStatusRowStatus, now support three state: CreateAndGo, Active, Destroy.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.5.1.27
hh3cAclIfRuleTableConfigure the rule for interface-based acl group.
SEQUENCE OF Hh3cAclIfRuleEntry
.1.3.6.1.4.1.25506.2.8.1.6
hh3cAclIfRuleEntryDefine the index of hh3cAclIfRuleTable.
Hh3cAclIfRuleEntry
.1.3.6.1.4.1.25506.2.8.1.6.1
hh3cAclIfAclNumThe index of interface-based acl group.
Integer32 (0|1000..1999|10000..12999)
.1.3.6.1.4.1.25506.2.8.1.6.1.1
hh3cAclIfSubitemThe subindex of interface-based acl group.
Integer32
.1.3.6.1.4.1.25506.2.8.1.6.1.2
hh3cAclIfActThe action of interface-based acl group.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.6.1.3
hh3cAclIfIndexThe index of interface.rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.6.1.4
hh3cAclIfAnyThe flag of matching any interface.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.6.1.5
hh3cAclIfTimeRangeNameThe Time-range of interface-based acl rule.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.1.6.1.6
hh3cAclIfLogThe flag of log.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.6.1.7
hh3cAclIfEnableThe rule is active or not. true : active false : inactivero
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.6.1.8
hh3cAclIfCountThe count of matched by basic rule.ro
Counter32
.1.3.6.1.4.1.25506.2.8.1.6.1.9
hh3cAclIfCountClearReset the value of the rule's counter.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.6.1.10
hh3cAclIfRowStatusRowStatus, now support three state: CreateAndGo, Active, Destroy.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.6.1.11
hh3cAclLinkTableCreate link acl.
SEQUENCE OF Hh3cAclLinkEntry
.1.3.6.1.4.1.25506.2.8.1.7
hh3cAclLinkEntryThe entry of the link acl table.
Hh3cAclLinkEntry
.1.3.6.1.4.1.25506.2.8.1.7.1
hh3cAclLinkAclNumThe index of link-based acl group.
Integer32 (0|4000..4999|10000..12999)
.1.3.6.1.4.1.25506.2.8.1.7.1.1
hh3cAclLinkSubitemThe subindex of link-based acl group.
Integer32
.1.3.6.1.4.1.25506.2.8.1.7.1.2
hh3cAclLinkActThe action of link-based acl group.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.7.1.3
hh3cAclLinkProtocolThe layer 2 protocol-type of link acl rule.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.7.1.4
hh3cAclLinkFormatTypeFormat type of link acl rule.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.7.1.5
hh3cAclLinkVlanTagThe flag of vlan tag of link acl rule.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.7.1.6
hh3cAclLinkVlanPriVlan priority of link acl rule.rw
Integer32 (0..7 | 255)
.1.3.6.1.4.1.25506.2.8.1.7.1.7
hh3cAclLinkSrcVlanIdSource vlan ID of link acl rule.rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.7.1.8
hh3cAclLinkSrcMacSource mac of link acl rule.rw
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.7.1.9
hh3cAclLinkSrcMacWildSource mac wildzard of link acl rule.rw
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.7.1.10
hh3cAclLinkSrcIfIndexSource IfIndex of link acl rule.rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.7.1.11
hh3cAclLinkSrcAnyThe flag of matching any source.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.7.1.12
hh3cAclLinkDestVlanIdDestination vlan ID of link acl rule.rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.7.1.13
hh3cAclLinkDestMacDestination mac of link acl rule.rw
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.7.1.14
hh3cAclLinkDestMacWildDestination mac wildzard of link acl rule.rw
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.7.1.15
hh3cAclLinkDestIfIndexDestination IfIndex of link acl rule.rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.7.1.16
hh3cAclLinkDestAnyThe flag of matching any destination.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.7.1.17
hh3cAclLinkTimeRangeNameThe Time-range of link-based acl rule.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.1.7.1.18
hh3cAclLinkEnableThe rule is active or not. true : active false : inactivero
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.7.1.19
hh3cAclLinkRowStatusRowStatus, now support three state: CreateAndGo, Active, Destroy.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.7.1.20
hh3cAclLinkTypeCodeThe type of layer 2 protocol.0x0000...0xffff.rw
OCTET STRING ( SIZE
.1.3.6.1.4.1.25506.2.8.1.7.1.21
hh3cAclLinkTypeMaskThe mask of layer 2 protocol.0x0000...0xffff.rw
OCTET STRING ( SIZE
.1.3.6.1.4.1.25506.2.8.1.7.1.22
hh3cAclLinkLsapCodeThe type of LSAP.0x0000...0xffff.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.1.7.1.23
hh3cAclLinkLsapMaskThe mask of LSAP.0x0000...0xffff.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.1.7.1.24
hh3cAclLinkL2LabelRangeOpOperation symbol of the MPLS label. If the symbol is range(5), the objects hh3cAclLinkL2LabelRangeBegin and hh3cAclLinkL2LabelRangeEnd should have different values indicating a range. Otherwise, only hh3cAclLinkL2LabelRangeBegin counts, object hh3cAclLinkL2LabelRangeEnd is ignored. invalid(0) -- unavailable lt(1) -- less than eq(2) -- equal gt(3) -- great than neq(4) -- not equal range(5) -- a range with two ends includedrw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.7.1.25
hh3cAclLinkL2LabelRangeBeginThe beginning of VPLS VC label.rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.7.1.26
hh3cAclLinkL2LabelRangeEndThe end of VPLS VC label.rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.7.1.27
hh3cAclLinkMplsExpThe value of MPLS-packet's Exp.rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.7.1.28
hh3cAclUserTableCreate user acl.
SEQUENCE OF Hh3cAclUserEntry
.1.3.6.1.4.1.25506.2.8.1.8
hh3cAclUserEntryThe entry of user acl table.
Hh3cAclUserEntry
.1.3.6.1.4.1.25506.2.8.1.8.1
hh3cAclUserAclNumThe number of the user acl.
Integer32 (0|5000..5999|10000..12999)
.1.3.6.1.4.1.25506.2.8.1.8.1.1
hh3cAclUserSubitemThe subitem of the user acl.
Integer32
.1.3.6.1.4.1.25506.2.8.1.8.1.2
hh3cAclUserActThe action of the user acl.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.8.1.3
hh3cAclUserFormatTypeFormat type.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.8.1.4
hh3cAclUserVlanTagVlan tag exits or not.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.8.1.5
hh3cAclUserRuleStrRule string.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.1.8.1.6
hh3cAclUserRuleMaskRule mask.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.1.8.1.7
hh3cAclUserTimeRangeNameThe Time-range of the user defined acl.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.1.8.1.8
hh3cAclUserEnableThe rule is active or not. true : active false : inactivero
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.8.1.9
hh3cAclUserRowStatusRowStatus, now support three state: CreateAndGo, Active, Destroy.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.8.1.10
hh3cAclActiveTableActive acl.
SEQUENCE OF Hh3cAclActiveEntry
.1.3.6.1.4.1.25506.2.8.1.9
hh3cAclActiveEntryThe entry of active acl table.
Hh3cAclActiveEntry
.1.3.6.1.4.1.25506.2.8.1.9.1
hh3cAclActiveAclIndexAcl index.
Integer32 (0|1..5999|10000..12999)
.1.3.6.1.4.1.25506.2.8.1.9.1.1
hh3cAclActiveIfIndexIfIndex.
Integer32
.1.3.6.1.4.1.25506.2.8.1.9.1.2
hh3cAclActiveVlanIDThe lower 16 bits is Vlan ID, the higher 16 bits, if not zero, it describes the slot ID of the L3plus board.
Integer32
.1.3.6.1.4.1.25506.2.8.1.9.1.3
hh3cAclActiveDirectionDirection.
Enumeration
.1.3.6.1.4.1.25506.2.8.1.9.1.4
hh3cAclActiveUserAclNumThe number of the user acl.rw
Integer32 (0|5000..5999|10000..12999)
.1.3.6.1.4.1.25506.2.8.1.9.1.5
hh3cAclActiveUserAclSubitemThe subitem of the user acl.rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.9.1.6
hh3cAclActiveIpAclNumThe number of the IP acl.rw
Integer32 (0|2000..3999|10000..12999)
.1.3.6.1.4.1.25506.2.8.1.9.1.7
hh3cAclActiveIpAclSubitemThe subitem of the IP acl.rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.9.1.8
hh3cAclActiveLinkAclNumThe num of the link acl.rw
Integer32 (0|4000..4999|10000..12999)
.1.3.6.1.4.1.25506.2.8.1.9.1.9
hh3cAclActiveLinkAclSubitemThe subitem of the link acl.rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.9.1.10
hh3cAclActiveRuntimeIs run or not.ro
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.9.1.11
hh3cAclActiveRowStatusRowStatus, now support three state: CreateAndGo, Active, Destroy.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.9.1.12
hh3cAclIDSTableConfigure the rule for IDS.
SEQUENCE OF Hh3cAclIDSEntry
.1.3.6.1.4.1.25506.2.8.1.10
hh3cAclIDSEntryThe entry of acl ids table.
Hh3cAclIDSEntry
.1.3.6.1.4.1.25506.2.8.1.10.1
hh3cAclIDSNameThe name index of the IDS table.
OCTET STRING
.1.3.6.1.4.1.25506.2.8.1.10.1.1
hh3cAclIDSSrcMacSource mac of IDS acl rule.rw
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.10.1.2
hh3cAclIDSDestMacDestination mac of IDS acl rule.rw
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.10.1.3
hh3cAclIDSSrcIpSource IP-address of IDS acl rule.rw
IpAddress
.1.3.6.1.4.1.25506.2.8.1.10.1.4
hh3cAclIDSSrcWildSource IP-address wild of IDS acl rule.rw
IpAddress
.1.3.6.1.4.1.25506.2.8.1.10.1.5
hh3cAclIDSDestIpDestination IP-address of IDS acl rule.rw
IpAddress
.1.3.6.1.4.1.25506.2.8.1.10.1.6
hh3cAclIDSDestWildDestination IP-address wild of IDS acl rule.rw
IpAddress
.1.3.6.1.4.1.25506.2.8.1.10.1.7
hh3cAclIDSSrcPortThe fourth layer source port.rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.10.1.8
hh3cAclIDSDestPortThe fourth layer destination port.rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.10.1.9
hh3cAclIDSProtocolThe protocol-type of advanced acl group. <1-255> Protocol number gre GRE tunneling(47) icmp Internet Control Message Protocol(1) igmp Internet Group Management Protocol(2) ip Any IP protocol ipinip IP in IP tunneling(4) ospf OSPF routing protocol(89) tcp Transmission Control Protocol (6) udp User Datagram Protocol (17)rw
Integer32
.1.3.6.1.4.1.25506.2.8.1.10.1.10
hh3cAclIDSDenyTimeThe maximum number of seconds which deny for this acl rule.rw
Unsigned32
.1.3.6.1.4.1.25506.2.8.1.10.1.11
hh3cAclIDSActThe action of IDS acl rule.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.1.10.1.12
hh3cAclIDSRowStatusRowStatus, now supports three states: CreateAndGo, Active, and Destroy.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.1.10.1.13
hh3cAclMib2Objects
OBJECT IDENTIFIER
.1.3.6.1.4.1.25506.2.8.2
hh3cAclMib2GlobalGroup
OBJECT IDENTIFIER
.1.3.6.1.4.1.25506.2.8.2.1
hh3cAclMib2NodesGroup
OBJECT IDENTIFIER
.1.3.6.1.4.1.25506.2.8.2.1.1
hh3cAclMib2ModeThe applying mode of ACL.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.2.1.1.1
hh3cAclMib2VersionThe version of this file. The output value has the format of 'xx'or 'xxx'. For example: 10 means 1.0; 125 means 12.5.ro
Integer32
.1.3.6.1.4.1.25506.2.8.2.1.1.2
hh3cAclMib2ObjectsCapabilitiesThe objects of hh3cAclMib2Objects.ro
Bits
.1.3.6.1.4.1.25506.2.8.2.1.1.3
hh3cAclMib2ProcessingStatusThe processing status of ACL operation.ro
Enumeration
.1.3.6.1.4.1.25506.2.8.2.1.1.4
hh3cAclMib2CapabilityTableThe capability of mib2.
SEQUENCE OF Hh3cAclMib2CapabilityEntry
.1.3.6.1.4.1.25506.2.8.2.1.2
hh3cAclMib2CapabilityEntryThe information of Capability of mib2.
Hh3cAclMib2CapabilityEntry
.1.3.6.1.4.1.25506.2.8.2.1.2.1
hh3cAclMib2EntityTypeThe type of entity. system: The entity is systemic level. interface: The entity is interface level.
Enumeration
.1.3.6.1.4.1.25506.2.8.2.1.2.1.1
hh3cAclMib2EntityIndexThe index of entity. If hh3cAclMib2EntityType is system, the value of this object is 0. If hh3cAclMib2EntityType is interface, the value of this object is equal to 'ifIndex'.
Integer32
.1.3.6.1.4.1.25506.2.8.2.1.2.1.2
hh3cAclMib2ModuleIndexThe module index of ACL.
Enumeration
.1.3.6.1.4.1.25506.2.8.2.1.2.1.3
hh3cAclMib2CharacteristicsIndexThe characteristics index of mib2. See DESCRIPTION of hh3cAclMib2CharacteristicsValue to get detail information about the value of this object.
Integer32
.1.3.6.1.4.1.25506.2.8.2.1.2.1.4
hh3cAclMib2CharacteristicsDescThe description of characteristics.ro
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.1.2.1.5
hh3cAclMib2CharacteristicsValueThe value of capability of this object. TypeOfRuleStringValue : notSupport(0) and the length of RuleString. TypeOfCodeValue : OnlyOneNotSupport(0), MoreThanOneNotSupport(1) If hh3cAclMib2CharacteristicsValue is 'moreThanOneNotSupport', hh3cAclMib2CharacteristicsDesc must be used to depict which protocols are not supported. The output value of hh3cAclMib2CharacteristicsDesc has the format of 'a,b'. For example, 'ip,rarp'. layer3 Module: Index Characteristics value 1 SourceIPAddress notSupport(0) 2 DestinationIPAddress notSupport(0) 3 SourcePort notSupport(0) 4 DestinationPort notSupport(0) 5 IPPrecedence notSupport(0) 6 TOS notSupport(0) 7 DSCP notSupport(0) 8 TCPFlag notSupport(0) 9 FragmentFlag notSupport(0) 10 Log notSupport(0) 11 RuleMatchCounter notSupport(0) 12 ResetRuleMatchCounter notSupport(0) 13 VPN notSupport(0) 15 protocol notSupport(0) 16 AddressFlag notSupport(0) layer2 Module: Index Characteristics value 1 ProtocolType TypeOfCodeValue 2 SourceMAC notSupport(0) 3 DestinationMAC notSupport(0) 4 LSAPType TypeOfCodeValue 5 CoS notSupport(0) UserDefined Module: Index Characteristics value 1 UserDefaultOffset TypeOfRuleStringValue 2 UserL2RuleOffset TypeOfRuleStringValue 3 UserMplsOffset TypeOfRuleStringValue 4 UserIPv4Offset TypeOfRuleStringValue 5 UserIPv6Offset TypeOfRuleStringValue 6 UserL4Offset TypeOfRuleStringValue 7 UserL5Offset TypeOfRuleStringValuero
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.1.2.1.6
hh3cAclNumberGroupTableA table of the number acl group information.
SEQUENCE OF Hh3cAclNumberGroupEntry
.1.3.6.1.4.1.25506.2.8.2.1.3
hh3cAclNumberGroupEntryNumber acl group information entry.
Hh3cAclNumberGroupEntry
.1.3.6.1.4.1.25506.2.8.2.1.3.1
hh3cAclNumberGroupTypeThe type of number group. Basic ACL and Advanced ACL support ipv4 and ipv6. The range of Basic ACL is from 2000 to 2999. The range of Advanced ACL is from 3000 to 3999. Simple ACL supports ipv6 only. The range of Simple ACL is from 10000 to 42767. MAC ACL support mac only. The range of MAC ACL is from 4000 to 4999. User-defined ACL support user only. The range of user-defined ACL is from 5000 to 5999.
Enumeration
.1.3.6.1.4.1.25506.2.8.2.1.3.1.1
hh3cAclNumberGroupIndexThe group index of number acl. Basic type:2000..2999 Advanced type:3000..3999 MAC type:4000..4999 User type:5000..5999 Simple type:10000..42767
Integer32 (2000..5999|10000..42767)
.1.3.6.1.4.1.25506.2.8.2.1.3.1.2
hh3cAclNumberGroupRowStatusRowStatus.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.1.3.1.3
hh3cAclNumberGroupMatchOrderThe match-order of number acl group.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.2.1.3.1.4
hh3cAclNumberGroupStepThe step of rule index.rw
Integer32
.1.3.6.1.4.1.25506.2.8.2.1.3.1.5
hh3cAclNumberGroupDescriptionDescription of this acl group.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.1.3.1.6
hh3cAclNumberGroupCountClearReset the value of counters of this group.rw
CounterClear
.1.3.6.1.4.1.25506.2.8.2.1.3.1.7
hh3cAclNumberGroupRuleCounterThe rule count of number acl group.ro
Counter32
.1.3.6.1.4.1.25506.2.8.2.1.3.1.8
hh3cAclNumberGroupNameName of this acl group.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.1.3.1.9
hh3cAclNamedGroupTableA table of the named ACL group.
SEQUENCE OF Hh3cAclNamedGroupEntry
.1.3.6.1.4.1.25506.2.8.2.1.4
hh3cAclNamedGroupEntryNamed ACL group entry.
Hh3cAclNamedGroupEntry
.1.3.6.1.4.1.25506.2.8.2.1.4.1
hh3cAclNamedGroupCategoryThe category of number group. 1 indicates basic ACL, 2 indicates advanced ACL.
Enumeration
.1.3.6.1.4.1.25506.2.8.2.1.4.1.1
hh3cAclNamedGroupNameName of an ACL group, a case-insensitive string of 1 to 63 characters. It must start with an English letter.
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.1.4.1.2
hh3cAclNamedGroupRowStatusRowStatus.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.1.4.1.3
hh3cAclNamedGroupMatchOrderThe match-order of name acl group.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.2.1.4.1.4
hh3cAclNamedGroupStepThe numbering step of the increment of the rule index.rw
Integer32
.1.3.6.1.4.1.25506.2.8.2.1.4.1.5
hh3cAclNamedGroupDescriptionDescription of this ACL group.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.1.4.1.6
hh3cAclNamedGroupCountClearReset the statistics counter of this group.rw
CounterClear
.1.3.6.1.4.1.25506.2.8.2.1.4.1.7
hh3cAclNamedGroupRuleCounterThe amount of rules of this group.ro
Counter32
.1.3.6.1.4.1.25506.2.8.2.1.4.1.8
hh3cAclIPAclGroup
OBJECT IDENTIFIER
.1.3.6.1.4.1.25506.2.8.2.2
hh3cAclIPAclBasicTableA table of basic rule group. If some objects of this table are not supported by some products, these objects can't be created, changed or applied. Default value of these objects will be returned when they are read.
SEQUENCE OF Hh3cAclIPAclBasicEntry
.1.3.6.1.4.1.25506.2.8.2.2.2
hh3cAclIPAclBasicEntryBasic rule group information.
Hh3cAclIPAclBasicEntry
.1.3.6.1.4.1.25506.2.8.2.2.2.1
hh3cAclIPAclBasicRuleIndexThe rule index of basic acl group.
Integer32
.1.3.6.1.4.1.25506.2.8.2.2.2.1.1
hh3cAclIPAclBasicRowStatusRowStatus.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.2.1.2
hh3cAclIPAclBasicActThe action of basic acl rule.rw
RuleAction
.1.3.6.1.4.1.25506.2.8.2.2.2.1.3
hh3cAclIPAclBasicSrcAddrTypeThe IP addresses type of IP pool.rw
InetAddressType (INET-ADDRESS-MIB)
.1.3.6.1.4.1.25506.2.8.2.2.2.1.4
hh3cAclIPAclBasicSrcAddrThe value of a local IP address is available for this association. The type of this address is determined by the value of hh3cAclIPAclBasicSrcAddrType.rw
InetAddress (INET-ADDRESS-MIB)
.1.3.6.1.4.1.25506.2.8.2.2.2.1.5
hh3cAclIPAclBasicSrcPrefixDenotes the length of a generic Internet network address prefix. A value of n corresponds to an IP address mask that has n contiguous 1-bits from the most significant bit (MSB) and all other bits set to 0.rw
InetAddressPrefixLength (INET-ADDRESS-MIB)
.1.3.6.1.4.1.25506.2.8.2.2.2.1.6
hh3cAclIPAclBasicSrcAnyThe flag of matching any IP address.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.2.1.7
hh3cAclIPAclBasicSrcWildSource IPv4 address wildcard mask. Only IPv4 Basic Rule supports this object. Default value is '0.0.0.0'.rw
IpAddress
.1.3.6.1.4.1.25506.2.8.2.2.2.1.8
hh3cAclIPAclBasicTimeRangeNameThe Time-range of basic acl rule. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.2.2.1.9
hh3cAclIPAclBasicFragmentFlagThe flag of matching fragmented packets.rw
FragmentFlag
.1.3.6.1.4.1.25506.2.8.2.2.2.1.10
hh3cAclIPAclBasicLogThe packet will be logged when it matches the rule.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.2.1.11
hh3cAclIPAclBasicCountThe count of matches by the rule.ro
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.2.2.1.12
hh3cAclIPAclBasicCountClearReset the value of counter.rw
CounterClear
.1.3.6.1.4.1.25506.2.8.2.2.2.1.13
hh3cAclIPAclBasicEnableThe rule is active or not. true : active false : inactivero
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.2.1.14
hh3cAclIPAclBasicVpnInstanceNameThe VPN name, to which the rule will be applied. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.2.2.1.15
hh3cAclIPAclBasicCommentThe description of ACL rule. Default value is Zero-length String.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.2.2.1.16
hh3cAclIPAclBasicCountingThe packet will be counted when it matches the rule. It is disabled by default.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.2.1.17
hh3cAclIPAclBasicRouteTypeAnyThe flag of matching any type of routing header of IPv6 packet.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.2.1.18
hh3cAclIPAclBasicRouteTypeValueMatch specific type of routing header of IPv6 packet.rw
Integer32 (0..255|65535)
.1.3.6.1.4.1.25506.2.8.2.2.2.1.19
hh3cAclIPAclAdvancedTableA table of advanced and simple acl group. If some objects of this table are not supported by some products, these objects can't be created, changed and applied. Default value of these objects will be returned when they are read.
SEQUENCE OF Hh3cAclIPAclAdvancedEntry
.1.3.6.1.4.1.25506.2.8.2.2.3
hh3cAclIPAclAdvancedEntryAdvanced acl group information.
Hh3cAclIPAclAdvancedEntry
.1.3.6.1.4.1.25506.2.8.2.2.3.1
hh3cAclIPAclAdvancedRuleIndexThe rule index of advanced acl group. As a Simple ACL group, the value of this object must be 0. As an Advanced ACL group, the value of this object is ranging from 0 to 65534.
Integer32
.1.3.6.1.4.1.25506.2.8.2.2.3.1.1
hh3cAclIPAclAdvancedRowStatusRowStatus.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.2
hh3cAclIPAclAdvancedActThe action of advanced acl rule.rw
RuleAction
.1.3.6.1.4.1.25506.2.8.2.2.3.1.3
hh3cAclIPAclAdvancedProtocolThe protocol-type of advanced acl group. 0 indicates any IPv4 or IPv6 protocol. <1-255> Protocol number gre GRE tunneling(47) icmp Internet Control Message Protocol(1) icmpv6 Internet Control Message Protocol6(58) igmp Internet Group Management Protocol(2) ipinip IP in IP tunneling(4) ospf OSPF routing protocol(89) tcp Transmission Control Protocol (6) udp User Datagram Protocol (17) ipv6-ah IPv6 Authentication Header(51) ipv6-esp IPv6 Encapsulating Security Payload(50)rw
Integer32
.1.3.6.1.4.1.25506.2.8.2.2.3.1.4
hh3cAclIPAclAdvancedAddrFlagAddress flag to select address.rw
AddressFlag
.1.3.6.1.4.1.25506.2.8.2.2.3.1.5
hh3cAclIPAclAdvancedSrcAddrTypeThe IP addresses type of IP pool.rw
InetAddressType (INET-ADDRESS-MIB)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.6
hh3cAclIPAclAdvancedSrcAddrThe value of a local IP address available for this association. The type of this address is determined by the value of hh3cAclIPAclAdvancedSrcAddrType.rw
InetAddress (INET-ADDRESS-MIB)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.7
hh3cAclIPAclAdvancedSrcPrefixDenotes the length of a generic Internet network address prefix. A value of n corresponds to an IP address mask which has n contiguous 1-bits from the most significant bit (MSB) and all other bits set to 0.rw
InetAddressPrefixLength (INET-ADDRESS-MIB)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.8
hh3cAclIPAclAdvancedSrcAnyThe flag of matching any IP address.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.9
hh3cAclIPAclAdvancedSrcWildSource IPv4 address wildcard mask. Only IPv4 Advanced Rule supports this object. Default value is '0.0.0.0'.rw
IpAddress
.1.3.6.1.4.1.25506.2.8.2.2.3.1.10
hh3cAclIPAclAdvancedSrcOpSource port operation symbol of advanced acl group.rw
PortOp
.1.3.6.1.4.1.25506.2.8.2.2.3.1.11
hh3cAclIPAclAdvancedSrcPort1The fourth layer source port1.rw
Integer32
.1.3.6.1.4.1.25506.2.8.2.2.3.1.12
hh3cAclIPAclAdvancedSrcPort2The fourth layer source port2.rw
Integer32
.1.3.6.1.4.1.25506.2.8.2.2.3.1.13
hh3cAclIPAclAdvancedDestAddrTypeThe IP addresses type of IP pool.rw
InetAddressType (INET-ADDRESS-MIB)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.14
hh3cAclIPAclAdvancedDestAddrThe value of a local IP address available for this association. The type of this address is determined by the value of hh3cAclIPAclAdvancedDestAddrType.rw
InetAddress (INET-ADDRESS-MIB)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.15
hh3cAclIPAclAdvancedDestPrefixDenotes the length of a generic Internet network address prefix. A value of n corresponds to an IP address mask which has n contiguous 1-bits from the most significant bit (MSB) and all other bits set to 0.rw
InetAddressPrefixLength (INET-ADDRESS-MIB)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.16
hh3cAclIPAclAdvancedDestAnyThe flag of matching any IP address.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.17
hh3cAclIPAclAdvancedDestWildDestination IPv4 address wildcard mask. Only IPv4 Advanced Rule supports this object. Default value is '0.0.0.0'.rw
IpAddress
.1.3.6.1.4.1.25506.2.8.2.2.3.1.18
hh3cAclIPAclAdvancedDestOpDestination port operation symbol of advanced acl group.rw
PortOp
.1.3.6.1.4.1.25506.2.8.2.2.3.1.19
hh3cAclIPAclAdvancedDestPort1The fourth layer destination port1.rw
Integer32
.1.3.6.1.4.1.25506.2.8.2.2.3.1.20
hh3cAclIPAclAdvancedDestPort2The fourth layer destination port2.rw
Integer32
.1.3.6.1.4.1.25506.2.8.2.2.3.1.21
hh3cAclIPAclAdvancedIcmpTypeThe type of ICMP packet.rw
Integer32 (0..255|65535)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.22
hh3cAclIPAclAdvancedIcmpCodeThe code of ICMP packet.rw
Integer32 (0..255|65535)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.23
hh3cAclIPAclAdvancedPrecedenceThe value of IP-packet's precedence. <0-7> Value of precedence routine Specify routine precedence(0) priority Specify priority precedence(1) immediate Specify immediate precedence(2) flash Specify flash precedence(3) flash-override Specify flash-override precedence(4) critical Specify critical precedence(5) internet Specify internetwork control precedence(6) network Specify network control precedence(7)rw
Integer32 (0..7|255)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.24
hh3cAclIPAclAdvancedTosThe value of IP-packet's TOS. <0-15> Value of TOS(type of service) max-reliability Match packets with max reliable TOS(2) max-throughput Match packets with max throughput TOS(4) min-delay Match packets with min delay TOS(8) min-monetary-cost Match packets with min monetary cost TOS(1) normal Match packets with normal TOS(0)rw
Integer32 (0..15|255)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.25
hh3cAclIPAclAdvancedDscpThe value of DSCP of IP packet.rw
DSCPValue
.1.3.6.1.4.1.25506.2.8.2.2.3.1.26
hh3cAclIPAclAdvancedTimeRangeNameThe Time-range of advanced acl rule. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.2.3.1.27
hh3cAclIPAclAdvancedTCPFlagThe packet type of TCP protocol.rw
TCPFlag
.1.3.6.1.4.1.25506.2.8.2.2.3.1.28
hh3cAclIPAclAdvancedFragmentFlagThe flag of matching fragmented packet, and now support two value: 0 or 2.rw
FragmentFlag
.1.3.6.1.4.1.25506.2.8.2.2.3.1.29
hh3cAclIPAclAdvancedLogLog matched packets.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.30
hh3cAclIPAclAdvancedCountThe count of matched by the rule.ro
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.2.3.1.31
hh3cAclIPAclAdvancedCountClearReset the value of counter.rw
CounterClear
.1.3.6.1.4.1.25506.2.8.2.2.3.1.32
hh3cAclIPAclAdvancedEnableThe rule is active or not. true : active false : inactivero
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.33
hh3cAclIPAclAdvancedVpnInstanceNameThe VPN name that the rule will be applied. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.2.3.1.34
hh3cAclIPAclAdvancedCommentThe description of ACL rule. Default value is Zero-length String.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.2.3.1.35
hh3cAclIPAclAdvancedReflectiveThe flag of reflective.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.36
hh3cAclIPAclAdvancedCountingThe packet will be counted when it matches the rule. It is disabled by default.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.37
hh3cAclIPAclAdvancedTCPFlagMaskThe TCP Flag Mask. This is a bit-map of possible conditions. The various bit positions are: |0 |tcpack | |1 |tcpfin | |2 |tcppsh | |3 |tcprst | |4 |tcpsyn | |5 |tcpurg |rw
Bits
.1.3.6.1.4.1.25506.2.8.2.2.3.1.38
hh3cAclIPAclAdvancedTCPFlagValueThe TCP Flag Value. This is a bit-map of possible conditions. The various bit positions are: |0 |tcpack | |1 |tcpfin | |2 |tcppsh | |3 |tcprst | |4 |tcpsyn | |5 |tcpurg |rw
Bits
.1.3.6.1.4.1.25506.2.8.2.2.3.1.39
hh3cAclIPAclAdvancedRouteTypeAnyThe flag of matching any type of routing header of IPv6 packet.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.40
hh3cAclIPAclAdvancedRouteTypeValueThe type of routing header of IPv6 packet.rw
Integer32 (0..255|65535)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.41
hh3cAclIPAclAdvancedFlowLabelThe value of flow label of IPv6 packet header.rw
Unsigned32 (0..1048575|4294967295)
.1.3.6.1.4.1.25506.2.8.2.2.3.1.42
hh3cAclIPAclAdvancedSrcSuffixDenotes the length of a generic Internet network address suffix. A value of n corresponds to an IP address mask that has n contiguous 1-bits from the least significant bit and all other bits set to 0.rw
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.2.3.1.43
hh3cAclIPAclAdvancedDestSuffixDenotes the length of a generic Internet network address suffix. A value of n corresponds to an IP address mask that has n contiguous 1-bits from the least significant bit and all other bits set to 0.rw
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.2.3.1.44
hh3cAclIPAclNamedBscTableA table of basic rule of named ACL. The name of ACL group will be used as an index in this table, which differs from the table hh3cAclIPAclBasicTable. If some objects of this table are not supported by some products, these objects can't be created, changed or applied. Default value of these objects will be returned when they are read.
SEQUENCE OF Hh3cAclIPAclNamedBscEntry
.1.3.6.1.4.1.25506.2.8.2.2.4
hh3cAclIPAclNamedBscEntryBasic named ACL rule entry.
Hh3cAclIPAclNamedBscEntry
.1.3.6.1.4.1.25506.2.8.2.2.4.1
hh3cAclIPAclNamedBscRowStatusRowStatus.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.4.1.1
hh3cAclIPAclNamedBscActThe action of basic ACL rule.rw
RuleAction
.1.3.6.1.4.1.25506.2.8.2.2.4.1.2
hh3cAclIPAclNamedBscSrcAddrTypeThe IP addresses type of IP pool.rw
InetAddressType (INET-ADDRESS-MIB)
.1.3.6.1.4.1.25506.2.8.2.2.4.1.3
hh3cAclIPAclNamedBscSrcAddrThe specified source IP address. The type of this address is determined by the value of hh3cAclIPAclNamedBscSrcAddrType.rw
InetAddress (INET-ADDRESS-MIB)
.1.3.6.1.4.1.25506.2.8.2.2.4.1.4
hh3cAclIPAclNamedBscSrcPrefixSpecify the length of a generic Internet network address prefix. A value of n corresponds to an IP address mask that has n contiguous 1-bits from the most significant bit (MSB) and all other bits set to 0.rw
InetAddressPrefixLength (INET-ADDRESS-MIB)
.1.3.6.1.4.1.25506.2.8.2.2.4.1.5
hh3cAclIPAclNamedBscSrcAnyThe flag of matching any source IP address.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.4.1.6
hh3cAclIPAclNamedBscSrcWildSource IPv4 address wildcard mask. Only IPv4 Basic Rule supports this object. Default value is '0.0.0.0'.rw
IpAddress
.1.3.6.1.4.1.25506.2.8.2.2.4.1.7
hh3cAclIPAclNamedBscTRangeNameThe Time-range of basic acl rule. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.2.4.1.8
hh3cAclIPAclNamedBscFragmentFlagThe flag of matching fragmented packets.rw
FragmentFlag
.1.3.6.1.4.1.25506.2.8.2.2.4.1.9
hh3cAclIPAclNamedBscLogThe packet will be logged when it matches the rule.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.4.1.10
hh3cAclIPAclNamedBscCountThe count of matches by the rule.ro
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.2.4.1.11
hh3cAclIPAclNamedBscCountClearReset the statistics counter of the rule.rw
CounterClear
.1.3.6.1.4.1.25506.2.8.2.2.4.1.12
hh3cAclIPAclNamedBscEnableThe rule is active or not. true : active false : inactivero
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.4.1.13
hh3cAclIPAclNamedBscVpnInstNameThe VPN name, to which the rule will be applied. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.2.4.1.14
hh3cAclIPAclNamedBscCommentThe description of ACL rule. Default value is Zero-length String.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.2.4.1.15
hh3cAclIPAclNamedBscCountingThe packet will be counted when it matches the rule. It is disabled by default.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.4.1.16
hh3cAclIPAclNamedBscRouteTypeAnyThe flag of matching any type of routing header of IPv6 packet.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.4.1.17
hh3cAclIPAclNamedBscRouteTypeValueValue of the routing header type of IPv6 packet, in the range of 0 to 255.rw
Integer32 (0..255|65535)
.1.3.6.1.4.1.25506.2.8.2.2.4.1.18
hh3cAclIPAclNamedAdvTableA table of advanced rule of named ACL. The name of ACL group will be used as an index in this table, which differs from the table hh3cAclIPAclAdvancedTable. If some objects of this table are not supported by some products, these objects can't be created, changed or applied. Default value of these objects will be returned when they are read.
SEQUENCE OF Hh3cAclIPAclNamedAdvEntry
.1.3.6.1.4.1.25506.2.8.2.2.5
hh3cAclIPAclNamedAdvEntryAdvanced ACL rule information entry.
Hh3cAclIPAclNamedAdvEntry
.1.3.6.1.4.1.25506.2.8.2.2.5.1
hh3cAclIPAclNamedAdvRowStatusRowStatus.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.1
hh3cAclIPAclNamedAdvActThe action of advanced ACL rule.rw
RuleAction
.1.3.6.1.4.1.25506.2.8.2.2.5.1.2
hh3cAclIPAclNamedAdvProtocolThe protocol-type of advanced ACL rule. 0 indicates any IPv4 or IPv6 protocol. <1-255> Protocol number gre GRE tunneling(47) icmp Internet Control Message Protocol(1) icmpv6 Internet Control Message Protocol6(58) igmp Internet Group Management Protocol(2) ipinip IP in IP tunneling(4) ospf OSPF routing protocol(89) tcp Transmission Control Protocol (6) udp User Datagram Protocol (17) ipv6-ah IPv6 Authentication Header(51) ipv6-esp IPv6 Encapsulating Security Payload(50)rw
Integer32
.1.3.6.1.4.1.25506.2.8.2.2.5.1.3
hh3cAclIPAclNamedAdvAddrFlagAddress flag to select address.rw
AddressFlag
.1.3.6.1.4.1.25506.2.8.2.2.5.1.4
hh3cAclIPAclNamedAdvSrcAddrTypeThe type of source IP address.rw
InetAddressType (INET-ADDRESS-MIB)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.5
hh3cAclIPAclNamedAdvSrcAddrThe specified source IP address. The type of this address is determined by the value of hh3cAclIPAclNamedAdvSrcAddrType.rw
InetAddress (INET-ADDRESS-MIB)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.6
hh3cAclIPAclNamedAdvSrcPrefixSpecify the length of a generic Internet network address prefix. A value of n corresponds to an IP address mask that has n contiguous 1-bits from the most significant bit (MSB) and all other bits set to 0.rw
InetAddressPrefixLength (INET-ADDRESS-MIB)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.7
hh3cAclIPAclNamedAdvSrcAnyThe flag of matching any IP address.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.8
hh3cAclIPAclNamedAdvSrcWildSource IPv4 address wildcard mask. Only IPv4 Advanced Rule supports this object. Default value is '0.0.0.0'.rw
IpAddress
.1.3.6.1.4.1.25506.2.8.2.2.5.1.9
hh3cAclIPAclNamedAdvSrcOpSource port operation symbol of advanced acl group.rw
PortOp
.1.3.6.1.4.1.25506.2.8.2.2.5.1.10
hh3cAclIPAclNamedAdvSrcPort1The fourth layer source port1.rw
Integer32
.1.3.6.1.4.1.25506.2.8.2.2.5.1.11
hh3cAclIPAclNamedAdvSrcPort2The fourth layer source port2.rw
Integer32
.1.3.6.1.4.1.25506.2.8.2.2.5.1.12
hh3cAclIPAclNamedAdvDstAddrTypeThe type of destination IP address.rw
InetAddressType (INET-ADDRESS-MIB)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.13
hh3cAclIPAclNamedAdvDstAddrThe specified destination IP address. The type of this address is determined by the value of hh3cAclIPAclNamedAdvDstAddrType.rw
InetAddress (INET-ADDRESS-MIB)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.14
hh3cAclIPAclNamedAdvDstPrefixSpecify the length of a generic Internet network address prefix. A value of n corresponds to an IP address mask that has n contiguous 1-bits from the most significant bit (MSB) and all other bits set to 0.rw
InetAddressPrefixLength (INET-ADDRESS-MIB)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.15
hh3cAclIPAclNamedAdvDstAnyThe flag of matching any IP address.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.16
hh3cAclIPAclNamedAdvDstWildDestination IPv4 address wildcard mask. Only IPv4 Advanced Rule supports this object. Default value is '0.0.0.0'.rw
IpAddress
.1.3.6.1.4.1.25506.2.8.2.2.5.1.17
hh3cAclIPAclNamedAdvDstOpDestination port operation symbol of advanced acl group.rw
PortOp
.1.3.6.1.4.1.25506.2.8.2.2.5.1.18
hh3cAclIPAclNamedAdvDstPort1The fourth layer destination port1.rw
Integer32
.1.3.6.1.4.1.25506.2.8.2.2.5.1.19
hh3cAclIPAclNamedAdvDstPort2The fourth layer destination port2.rw
Integer32
.1.3.6.1.4.1.25506.2.8.2.2.5.1.20
hh3cAclIPAclNamedAdvIcmpTypeThe type of ICMP packet.rw
Integer32 (0..255|65535)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.21
hh3cAclIPAclNamedAdvIcmpCodeThe code of ICMP packet.rw
Integer32 (0..255|65535)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.22
hh3cAclIPAclNamedAdvPrecedenceThe value of IP-packet's precedence. <0-7> Value of precedence routine Specify routine precedence(0) priority Specify priority precedence(1) immediate Specify immediate precedence(2) flash Specify flash precedence(3) flash-override Specify flash-override precedence(4) critical Specify critical precedence(5) internet Specify internetwork control precedence(6) network Specify network control precedence(7)rw
Integer32 (0..7|255)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.23
hh3cAclIPAclNamedAdvTosThe value of IP-packet's TOS. <0-15> Value of TOS(type of service) max-reliability Match packets with max reliable TOS(2) max-throughput Match packets with max throughput TOS(4) min-delay Match packets with min delay TOS(8) min-monetary-cost Match packets with min monetary cost TOS(1) normal Match packets with normal TOS(0)rw
Integer32 (0..15|255)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.24
hh3cAclIPAclNamedAdvDscpThe value of DSCP of IP packet.rw
DSCPValue
.1.3.6.1.4.1.25506.2.8.2.2.5.1.25
hh3cAclIPAclNamedAdvTRangeNameThe Time-range of advanced ACL rule. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.2.5.1.26
hh3cAclIPAclNamedAdvTCPFlagThe packet type of TCP protocol.rw
TCPFlag
.1.3.6.1.4.1.25506.2.8.2.2.5.1.27
hh3cAclIPAclNamedAdvFragmentFlagThe flag of matching fragmented packet, and now support two value: 0 or 2.rw
FragmentFlag
.1.3.6.1.4.1.25506.2.8.2.2.5.1.28
hh3cAclIPAclNamedAdvLogLog matched packets.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.29
hh3cAclIPAclNamedAdvCountThe count of matches by the rule.ro
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.2.5.1.30
hh3cAclIPAclNamedAdvCountClearReset the statistics counter of this rule.rw
CounterClear
.1.3.6.1.4.1.25506.2.8.2.2.5.1.31
hh3cAclIPAclNamedAdvEnableThe rule is active or not. true : active false : inactivero
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.32
hh3cAclIPAclNamedAdvVpnInstNameThe VPN name to which the rule will be applied. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.2.5.1.33
hh3cAclIPAclNamedAdvCommentThe description of ACL rule. Default value is zero-length String.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.2.5.1.34
hh3cAclIPAclNamedAdvReflectiveThe flag of reflective.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.35
hh3cAclIPAclNamedAdvCountingThe packet will be counted when it matches the rule. It is disabled by default.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.36
hh3cAclIPAclNamedAdvTCPFlagMaskThe TCP Flag Mask. This is a bit-map of possible conditions. The various bit positions are: |0 |tcpack | |1 |tcpfin | |2 |tcppsh | |3 |tcprst | |4 |tcpsyn | |5 |tcpurg |rw
Bits
.1.3.6.1.4.1.25506.2.8.2.2.5.1.37
hh3cAclIPAclNamedAdvTCPFlagValueThe TCP Flag Value. This is a bit-map of possible conditions. The various bit positions are: |0 |tcpack | |1 |tcpfin | |2 |tcppsh | |3 |tcprst | |4 |tcpsyn | |5 |tcpurg |rw
Bits
.1.3.6.1.4.1.25506.2.8.2.2.5.1.38
hh3cAclIPAclNamedAdvRouteTypeAnyThe flag of matching any type of routing header of IPv6 packet.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.39
hh3cAclIPAclNamedAdvRouteTypeValueThe type of routing header of IPv6 packet.rw
Integer32 (0..255|65535)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.40
hh3cAclIPAclNamedAdvFlowLabelThe value of flow label of IPv6 packet header.rw
Unsigned32 (0..1048575|4294967295)
.1.3.6.1.4.1.25506.2.8.2.2.5.1.41
hh3cAclIPAclNamedAdvSrcSuffixDenotes the length of a generic Internet network address suffix. A value of n corresponds to an IP address mask that has n contiguous 1-bits from the least significant bit and all other bits set to 0.rw
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.2.5.1.42
hh3cAclIPAclNamedAdvDstSuffixDenotes the length of a generic Internet network address suffix. A value of n corresponds to an IP address mask that has n contiguous 1-bits from the least significant bit and all other bits set to 0.rw
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.2.5.1.43
hh3cAclMACAclGroup
OBJECT IDENTIFIER
.1.3.6.1.4.1.25506.2.8.2.3
hh3cAclMACTableA table of MAC acl group. If some objects of this table are not supported by some products, these objects can't be created, changed or applied. Default value of these objects will be returned when they are read.
SEQUENCE OF Hh3cAclMACEntry
.1.3.6.1.4.1.25506.2.8.2.3.1
hh3cAclMACEntryMAC acl group information.
Hh3cAclMACEntry
.1.3.6.1.4.1.25506.2.8.2.3.1.1
hh3cAclMACRuleIndexThe rule index of MAC-based acl group.
Integer32
.1.3.6.1.4.1.25506.2.8.2.3.1.1.1
hh3cAclMACRowStatusRowStatus.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.3.1.1.2
hh3cAclMACActThe action of MAC acl rule.rw
RuleAction
.1.3.6.1.4.1.25506.2.8.2.3.1.1.3
hh3cAclMACTypeCodeThe type of protocol.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.3.1.1.4
hh3cAclMACTypeMaskThe mask of protocol.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.3.1.1.5
hh3cAclMACSrcMacSource MAC of MAC acl rule. Default value is '00:00:00:00:00:00'.rw
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.3.1.1.6
hh3cAclMACSrcMacWildSource MAC wildzard of MAC acl rule. Default value is '00:00:00:00:00:00'.rw
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.3.1.1.7
hh3cAclMACDestMacDestination MAC of MAC acl rule. Default value is '00:00:00:00:00:00'.rw
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.3.1.1.8
hh3cAclMACDestMacWildDestination MAC wildzard of MAC acl rule. Default value is '00:00:00:00:00:00'rw
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.3.1.1.9
hh3cAclMACLsapCodeThe type of LSAP.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.3.1.1.10
hh3cAclMACLsapMaskThe mask of LSAP.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.3.1.1.11
hh3cAclMACCosVlan priority of MAC acl rule.rw
Integer32 (0..7 | 255)
.1.3.6.1.4.1.25506.2.8.2.3.1.1.12
hh3cAclMACTimeRangeNameThe Time-range of MAC acl rule. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.3.1.1.13
hh3cAclMACCountThe count of matched frames by the rule.ro
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.3.1.1.14
hh3cAclMACCountClearReset the value of counter.rw
CounterClear
.1.3.6.1.4.1.25506.2.8.2.3.1.1.15
hh3cAclMACEnableThe rule is active or not. true : active false : inactivero
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.3.1.1.16
hh3cAclMACCommentThe description of ACL rule. Default value is Zero-length String.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.3.1.1.17
hh3cAclMACLogThe packet will be logged when it matches the rule. It is disabled by default.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.3.1.1.18
hh3cAclMACCountingThe packet will be counted when it matches the rule. It is disabled by default.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.3.1.1.19
hh3cAclNamedMACTableA table of named MAC ACL rule. The name of ACL group will be used as an index in this table, which differs from the table hh3cAclMACTable. If some objects of this table are not supported by some products, these objects can't be created, changed or applied. Default value of these objects will be returned when they are read.
SEQUENCE OF Hh3cAclNamedMACEntry
.1.3.6.1.4.1.25506.2.8.2.3.2
hh3cAclNamedMACEntryMAC acl group information.
Hh3cAclNamedMACEntry
.1.3.6.1.4.1.25506.2.8.2.3.2.1
hh3cAclNamedMACRowStatusRowStatus.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.3.2.1.1
hh3cAclNamedMACActThe action of MAC ACL rule.rw
RuleAction
.1.3.6.1.4.1.25506.2.8.2.3.2.1.2
hh3cAclNamedMACTypeCodeThe type of protocol.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.3.2.1.3
hh3cAclNamedMACTypeMaskThe mask of protocol.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.3.2.1.4
hh3cAclNamedMACSrcMacSource MAC of MAC ACL rule. Default value is '00:00:00:00:00:00'.rw
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.3.2.1.5
hh3cAclNamedMACSrcMacWildSource MAC wildcard of MAC ACL rule. Default value is '00:00:00:00:00:00'.rw
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.3.2.1.6
hh3cAclNamedMACDstMacDestination MAC of MAC ACL rule. Default value is '00:00:00:00:00:00'.rw
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.3.2.1.7
hh3cAclNamedMACDstMacWildDestination MAC wildcard of MAC ACL rule. Default value is '00:00:00:00:00:00'rw
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.3.2.1.8
hh3cAclNamedMACLsapCodeThe type of LSAP.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.3.2.1.9
hh3cAclNamedMACLsapMaskThe mask of LSAP.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.3.2.1.10
hh3cAclNamedMACCosVlan priority of MAC ACL rule.rw
Integer32 (0..7 | 255)
.1.3.6.1.4.1.25506.2.8.2.3.2.1.11
hh3cAclNamedMACTimeRangeNameThe time-range of MAC ACL rule. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.3.2.1.12
hh3cAclNamedMACCountThe count of matched frames by the rule.ro
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.3.2.1.13
hh3cAclNamedMACCountClearReset the value of counter.rw
CounterClear
.1.3.6.1.4.1.25506.2.8.2.3.2.1.14
hh3cAclNamedMACEnableThe rule is active or not. true : active false : inactivero
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.3.2.1.15
hh3cAclNamedMACCommentThe description of ACL rule. Default value is Zero-length String.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.3.2.1.16
hh3cAclNamedMACLogThe packet will be logged when it matches the rule. It is disabled by default.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.3.2.1.17
hh3cAclNamedMACCountingThe packet will be counted when it matches the rule. It is disabled by default.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.3.2.1.18
hh3cAclEnUserAclGroup
OBJECT IDENTIFIER
.1.3.6.1.4.1.25506.2.8.2.4
hh3cAclEnUserTableA table of user acl group information. If some objects of this table are not supported by some products, these objects can't be created, changed and applied. Default value of these objects will be returned when they are read.
SEQUENCE OF Hh3cAclEnUserEntry
.1.3.6.1.4.1.25506.2.8.2.4.3
hh3cAclEnUserEntryUser defined acl group entry.
Hh3cAclEnUserEntry
.1.3.6.1.4.1.25506.2.8.2.4.3.1
hh3cAclEnUserRuleIndexThe subitem of the user acl.
Integer32
.1.3.6.1.4.1.25506.2.8.2.4.3.1.1
hh3cAclEnUserRowStatusRowStatus.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.4.3.1.2
hh3cAclEnUserActThe action of user defined acl rule.rw
RuleAction
.1.3.6.1.4.1.25506.2.8.2.4.3.1.3
hh3cAclEnUserStartStringThe rule, matching packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value of this object is defined by product and it indicates the offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: 10,10af,ffff. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.4.3.1.4
hh3cAclEnUserL2StringThe rule, matching layer 2 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.4.3.1.5
hh3cAclEnUserMplsStringThe rule, matching mpls packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.4.3.1.6
hh3cAclEnUserIPv4StringThe rule, matching IPv4 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.4.3.1.7
hh3cAclEnUserIPv6StringThe rule, matching IPv6 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.4.3.1.8
hh3cAclEnUserL4StringThe rule, matching layer 4 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.4.3.1.9
hh3cAclEnUserL5StringThe rule, matching layer 5 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.4.3.1.10
hh3cAclEnUserTimeRangeNameThe Time-range of user acl rule. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.4.3.1.11
hh3cAclEnUserCountThe count of matched by the rule.ro
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.4.3.1.12
hh3cAclEnUserCountClearReset the value of counter.rw
CounterClear
.1.3.6.1.4.1.25506.2.8.2.4.3.1.13
hh3cAclEnUserEnableThe rule is active or not. true : active false : inactivero
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.4.3.1.14
hh3cAclEnUserCommentThe description of ACL rule. Default value is Zero-length String.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.4.3.1.15
hh3cAclEnUserLogThe packet will be logged when it matches the rule. It is disabled by default.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.4.3.1.16
hh3cAclEnUserCountingThe packet will be counted when it matches the rule. It is disabled by default.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.4.3.1.17
hh3cAclNamedUserTableA table of named user acl rule. The name of ACL group will be used as an index in this table, which differs from the table hh3cAclEnUserTable. If some objects of this table are not supported by some products, these objects can't be created, changed and applied. Default value of these objects will be returned when they are read.
SEQUENCE OF Hh3cAclNamedUserEntry
.1.3.6.1.4.1.25506.2.8.2.4.4
hh3cAclNamedUserEntryUser defined acl group entry.
Hh3cAclNamedUserEntry
.1.3.6.1.4.1.25506.2.8.2.4.4.1
hh3cAclNamedUserRowStatusRowStatus.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.4.4.1.1
hh3cAclNamedUserActThe action of user defined acl rule.rw
RuleAction
.1.3.6.1.4.1.25506.2.8.2.4.4.1.2
hh3cAclNamedUserStartStringThe rule, matching packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value of this object is defined by product and it indicates the offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: 10,10af,ffff. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.4.4.1.3
hh3cAclNamedUserL2StringThe rule, matching layer 2 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.4.4.1.4
hh3cAclNamedUserMplsStringThe rule, matching mpls packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.4.4.1.5
hh3cAclNamedUserIPv4StringThe rule, matching IPv4 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.4.4.1.6
hh3cAclNamedUserIPv6StringThe rule, matching IPv6 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.4.4.1.7
hh3cAclNamedUserL4StringThe rule, matching layer 4 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.4.4.1.8
hh3cAclNamedUserL5StringThe rule, matching layer 5 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.4.4.1.9
hh3cAclNamedUserTimeRangeNameThe Time-range of user acl rule. Default value is zero-length.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.4.4.1.10
hh3cAclNamedUserCountThe count of matched by the rule.ro
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.4.4.1.11
hh3cAclNamedUserCountClearReset the value of counter.rw
CounterClear
.1.3.6.1.4.1.25506.2.8.2.4.4.1.12
hh3cAclNamedUserEnableThe rule is active or not. true : active false : inactivero
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.4.4.1.13
hh3cAclNamedUserCommentThe description of ACL rule. Default value is Zero-length String.rw
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.4.4.1.14
hh3cAclNamedUserLogThe packet will be logged when it matches the rule. It is disabled by default.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.4.4.1.15
hh3cAclNamedUserCountingThe packet will be counted when it matches the rule. It is disabled by default.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.4.4.1.16
hh3cAclResourceGroup
OBJECT IDENTIFIER
.1.3.6.1.4.1.25506.2.8.2.5
hh3cAclResourceUsageTableThe table shows ACL resource usage information. Support for resource types that are denoted by hh3cAclResourceType object varies with products. If a type is not supported, the corresponding row for the type will not be instantiated in this table.
SEQUENCE OF Hh3cAclResourceUsageEntry
.1.3.6.1.4.1.25506.2.8.2.5.1
hh3cAclResourceUsageEntryEach row contains a brief description of the resource type, a port range associated with the chip, total, reserved, and configured amount of resource of this type, the percent of resource that has been allocated, and so on.
Hh3cAclResourceUsageEntry
.1.3.6.1.4.1.25506.2.8.2.5.1.1
hh3cAclResourceChassisThe chassis number. On a centralized or distributed device, the value for this node is always zero.
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.5.1.1.1
hh3cAclResourceSlotThe slot number. On a centralized device, the value for this node is always zero.
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.5.1.1.2
hh3cAclResourceChipThe chip number. On a single chip device, the value for this node is always zero.
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.5.1.1.3
hh3cAclResourceTypeThe resource type.
Integer32
.1.3.6.1.4.1.25506.2.8.2.5.1.1.4
hh3cAclPortRangeThe port range associated with the chip. Commas are used to separate multiple port ranges, for example, Ethernet1/2 to Ethernet1/12, Ethernet1/31 to Ethernet1/48.ro
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.5.1.1.5
hh3cAclResourceTotalTotal TCAM entries of the resource type.ro
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.5.1.1.6
hh3cAclResourceReservedThe amount of reserved TCAM entries of the resource type.ro
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.5.1.1.7
hh3cAclResourceConfiguredThe amount of configured TCAM entries of the resource type.ro
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.5.1.1.8
hh3cAclResourceUsagePercentThe percent of TCAM entries that have been used for this resource type.ro
Unsigned32
.1.3.6.1.4.1.25506.2.8.2.5.1.1.9
hh3cAclResourceTypeDescriptionThe description of this resource type.ro
OCTET STRING
.1.3.6.1.4.1.25506.2.8.2.5.1.1.10
hh3cAclIntervalGroup
OBJECT IDENTIFIER
.1.3.6.1.4.1.25506.2.8.2.6
hh3cAclIntervalTableLog interval table.
SEQUENCE OF Hh3cAclIntervalEntry
.1.3.6.1.4.1.25506.2.8.2.6.1
hh3cAclIntervalEntryLog interval entry.
Hh3cAclIntervalEntry
.1.3.6.1.4.1.25506.2.8.2.6.1.1
hh3cAclIntervalTypeThe types of the interval specified for generating packet filtering logs or traps.
Enumeration
.1.3.6.1.4.1.25506.2.8.2.6.1.1.1
hh3cAclIntervalValueThe value of interval. It must be a multiple of 5 and in the range of 5 to 1440.rw
Integer32
.1.3.6.1.4.1.25506.2.8.2.6.1.1.2
hh3cAclIntervalRowStatusRowStatus.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.2.6.1.1.3
hh3cAclPacketFilterObjects
OBJECT IDENTIFIER
.1.3.6.1.4.1.25506.2.8.3
hh3cPfilterScalarGroup
OBJECT IDENTIFIER
.1.3.6.1.4.1.25506.2.8.3.1
hh3cPfilterDefaultActionThe default action of packet filter. By default, the packet filter permits packets that do not match any ACL rule to pass.rw
Enumeration
.1.3.6.1.4.1.25506.2.8.3.1.1
hh3cPfilterProcessingStatusThis object shows the status of the system when applying packet filter. It is forbidden to set or read in hh3cAclPacketFilterObjects MIB module when the value is processing.ro
Enumeration
.1.3.6.1.4.1.25506.2.8.3.1.2
hh3cPfilterApplyTableA table of packet filter application. It's not supported to set default action on an entity, but supported to enable hardware count of default action on an entity.
SEQUENCE OF Hh3cPfilterApplyEntry
.1.3.6.1.4.1.25506.2.8.3.2
hh3cPfilterApplyEntryPacket filter application information entry.
Hh3cPfilterApplyEntry
.1.3.6.1.4.1.25506.2.8.3.2.1
hh3cPfilterApplyObjTypeThe object type of packet filter application. interface: Apply an ACL to the interface to filter packets. vlan: Apply an ACL to the VLAN to filter packets. global: Apply an ACL globally to filter packets.
Enumeration
.1.3.6.1.4.1.25506.2.8.3.2.1.1
hh3cPfilterApplyObjIndexThe object ID of packet filter application. Interface: interface index, equal to ifIndex VLAN: VLAN ID, 1..4094 Global: 0
Integer32
.1.3.6.1.4.1.25506.2.8.3.2.1.2
hh3cPfilterApplyDirectionThe direction of packet filter application.
DirectionType
.1.3.6.1.4.1.25506.2.8.3.2.1.3
hh3cPfilterApplyAclTypeACL Type: IPv4, IPv6, default action, MAC, and user. Take default action as a special ACL group.
Enumeration
.1.3.6.1.4.1.25506.2.8.3.2.1.4
hh3cPfilterApplyAclIndexThe ACL group index. Basic type: 2000..2999 Advanced type: 3000..3999 MAC type: 4000..4999 User type: 5000..5999 Default action type: 0
Integer32 (0|2000..5999)
.1.3.6.1.4.1.25506.2.8.3.2.1.5
hh3cPfilterApplyHardCountHardware count flag. true: enable hardware count false: disable hardware countrw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.3.2.1.6
hh3cPfilterApplySequenceThe configure sequence of packet filter application.ro
Unsigned32
.1.3.6.1.4.1.25506.2.8.3.2.1.7
hh3cPfilterApplyCountClearClear the value of counters.rw
CounterClear
.1.3.6.1.4.1.25506.2.8.3.2.1.8
hh3cPfilterApplyRowStatusRowStatus.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.3.2.1.9
hh3cPfilterAclGroupRunInfoTableA table of group running information of ACLs for packet filtering. If hardware count function is not supported or not enabled to the packet filter application, the statistics entry will be zero.
SEQUENCE OF Hh3cPfilterAclGroupRunInfoEntry
.1.3.6.1.4.1.25506.2.8.3.3
hh3cPfilterAclGroupRunInfoEntryACL group running information entry for packet filtering.
Hh3cPfilterAclGroupRunInfoEntry
.1.3.6.1.4.1.25506.2.8.3.3.1
hh3cPfilterRunApplyObjTypeThe object type of packet filter application. interface: Apply an ACL to the interface to filter packets. vlan: Apply an ACL to the VLAN to filter packets. global: Apply an ACL globally to filter packets.
Enumeration
.1.3.6.1.4.1.25506.2.8.3.3.1.1
hh3cPfilterRunApplyObjIndexThe object ID of packet filter application. Interface: interface index, equal to ifIndex VLAN: VLAN ID, 1..4094 Global: 0
Integer32
.1.3.6.1.4.1.25506.2.8.3.3.1.2
hh3cPfilterRunApplyDirectionThe direction of packet filter application.
DirectionType
.1.3.6.1.4.1.25506.2.8.3.3.1.3
hh3cPfilterRunApplyAclTypeACL Type: IPv4, IPv6, default action, MAC, and user. Take default action as a special ACL group.
Enumeration
.1.3.6.1.4.1.25506.2.8.3.3.1.4
hh3cPfilterRunApplyAclIndexThe ACL group index. Basic type: 2000..2999 Advanced type: 3000..3999 MAC type: 4000..4999 User type: 5000..5999 MAC default action: 1 IPv4 default action: 2 IPv6 default action: 3
Integer32 (1..3|2000..5999)
.1.3.6.1.4.1.25506.2.8.3.3.1.5
hh3cPfilterAclGroupStatusThe status of ACL group applied. success: ACL applied successfully on all slots failed: failed to apply ACL on all slots partialSuccess: failed to apply ACL on some slotsro
Enumeration
.1.3.6.1.4.1.25506.2.8.3.3.1.6
hh3cPfilterAclGroupCountStatusThe status of enabling hardware count. If hardware count is not enabled, it returns success. success: enable hardware count successfully on all slots failed: failed to enable hardware count on all slots partialSuccess: failed to enable hardware count on some slotsro
Enumeration
.1.3.6.1.4.1.25506.2.8.3.3.1.7
hh3cPfilterAclGroupPermitPktsThe number of packets permitted.ro
Counter64
.1.3.6.1.4.1.25506.2.8.3.3.1.8
hh3cPfilterAclGroupPermitBytesThe number of bytes permitted.ro
Counter64
.1.3.6.1.4.1.25506.2.8.3.3.1.9
hh3cPfilterAclGroupDenyPktsThe number of packets denied.ro
Counter64
.1.3.6.1.4.1.25506.2.8.3.3.1.10
hh3cPfilterAclGroupDenyBytesThe number of bytes denied.ro
Counter64
.1.3.6.1.4.1.25506.2.8.3.3.1.11
hh3cPfilterAclRuleRunInfoTableA table of rule's running information of ACLs for packet filtering. If hardware count function is not supported or not enabled to the packet filter application, the hh3cPfilterAclRuleMatchPackets and hh3cPfilterAclRuleMatchBytes will be zero.
SEQUENCE OF Hh3cPfilterAclRuleRunInfoEntry
.1.3.6.1.4.1.25506.2.8.3.4
hh3cPfilterAclRuleRunInfoEntryACL rule's running information entry.
Hh3cPfilterAclRuleRunInfoEntry
.1.3.6.1.4.1.25506.2.8.3.4.1
hh3cPfilterAclRuleIndexThe ACL rule index.
Integer32
.1.3.6.1.4.1.25506.2.8.3.4.1.1
hh3cPfilterAclRuleStatusThe status of rule application. success: rule applied successfully on all slots failed: failed to apply rule on all slots partialSuccess: failed to apply rule on some slotsro
Enumeration
.1.3.6.1.4.1.25506.2.8.3.4.1.2
hh3cPfilterAclRuleCountStatusThe status of enabling rule's hardware count. If hardware count is not enabled, it returns success. success: enable hardware count successfully on all slots failed: failed to enable hardware count on all slots partialSuccess: failed to enable hardware count on some slotsro
Enumeration
.1.3.6.1.4.1.25506.2.8.3.4.1.3
hh3cPfilterAclRuleMatchPacketsThe number of packets matched.ro
Counter64
.1.3.6.1.4.1.25506.2.8.3.4.1.4
hh3cPfilterAclRuleMatchBytesThe number of bytes matched.ro
Counter64
.1.3.6.1.4.1.25506.2.8.3.4.1.5
hh3cPfilterStatisticSumTableA table of ACL rule's sum statistics information, accumulated by all entity application on all slots.
SEQUENCE OF Hh3cPfilterStatisticSumEntry
.1.3.6.1.4.1.25506.2.8.3.5
hh3cPfilterStatisticSumEntryACL rule's sum statistics information entry.
Hh3cPfilterStatisticSumEntry
.1.3.6.1.4.1.25506.2.8.3.5.1
hh3cPfilterSumDirectionThe direction of application.
DirectionType
.1.3.6.1.4.1.25506.2.8.3.5.1.1
hh3cPfilterSumAclTypeACL type: IPv4, IPv6, MAC, and user.
Enumeration
.1.3.6.1.4.1.25506.2.8.3.5.1.2
hh3cPfilterSumAclIndexThe ACL group index. Basic type: 2000..2999 Advanced type: 3000..3999 MAC type: 4000..4999 User type: 5000..5999
Integer32
.1.3.6.1.4.1.25506.2.8.3.5.1.3
hh3cPfilterSumRuleIndexThe ACL rule index.
Integer32
.1.3.6.1.4.1.25506.2.8.3.5.1.4
hh3cPfilterSumRuleMatchPacketsThe sum number of packets matched the ACL rule.ro
Counter64
.1.3.6.1.4.1.25506.2.8.3.5.1.5
hh3cPfilterSumRuleMatchBytesThe sum number of bytes matched the ACL rule.ro
Counter64
.1.3.6.1.4.1.25506.2.8.3.5.1.6
hh3cPfilter2ApplyTableA table of packet filter application. It's not supported to set default action on an entity, but supported to enable hardware count of default action on an entity.
SEQUENCE OF Hh3cPfilter2ApplyEntry
.1.3.6.1.4.1.25506.2.8.3.6
hh3cPfilter2ApplyEntryPacket filter application information entry.
Hh3cPfilter2ApplyEntry
.1.3.6.1.4.1.25506.2.8.3.6.1
hh3cPfilter2ApplyObjTypeThe object type of packet filter application. interface: Apply an ACL to the interface to filter packets. vlan: Apply an ACL to the VLAN to filter packets. global: Apply an ACL globally to filter packets.ro
Enumeration
.1.3.6.1.4.1.25506.2.8.3.6.1.1
hh3cPfilter2ApplyObjIndexThe object ID of packet filter application. Interface: interface index, equal to ifIndex VLAN: VLAN ID, 1..4094 Global: 0ro
Integer32
.1.3.6.1.4.1.25506.2.8.3.6.1.2
hh3cPfilter2ApplyDirectionThe direction of packet filter application.ro
DirectionType
.1.3.6.1.4.1.25506.2.8.3.6.1.3
hh3cPfilter2ApplyAclTypeACL Type: IPv4, IPv6, default action, MAC, and user. Take default action as a special ACL group.ro
Enumeration
.1.3.6.1.4.1.25506.2.8.3.6.1.4
hh3cPfilter2ApplyAclIndexThe index of ACL group used by packet-filter. If the specified string comprises only digits, it is converted into a numerical sequence in decimal notation, and regarded as an ACL group index or a default action. If the string is a character string beginning with an English letter, it is regarded as an ACL group name. Group index range and default action: Basic type: 2000..2999 Advanced type: 3000..3999 MAC type: 4000..4999 User type: 5000..5999 Default action type: 0ro
OCTET STRING
.1.3.6.1.4.1.25506.2.8.3.6.1.5
hh3cPfilter2ApplyHardCountHardware count flag. true: enable hardware count false: disable hardware countrw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.3.6.1.6
hh3cPfilter2ApplySequenceThe configure sequence of packet filter application.ro
Unsigned32
.1.3.6.1.4.1.25506.2.8.3.6.1.7
hh3cPfilter2ApplyCountClearClear the value of counters.rw
CounterClear
.1.3.6.1.4.1.25506.2.8.3.6.1.8
hh3cPfilter2ApplyRowStatusRowStatus.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.3.6.1.9
hh3cPfilter2AclGroupRunInfoTableA table of group running information of ACLs for packet filtering. If hardware count function is not supported or not enabled to the packet filter application, the statistics entry will be zero.
SEQUENCE OF Hh3cPfilter2AclGroupRunInfoEntry
.1.3.6.1.4.1.25506.2.8.3.7
hh3cPfilter2AclGroupRunInfoEntryACL group running information entry for packet filtering.
Hh3cPfilter2AclGroupRunInfoEntry
.1.3.6.1.4.1.25506.2.8.3.7.1
hh3cPfilter2RunApplyObjTypeThe object type of packet filter application. interface: Apply an ACL to the interface to filter packets. vlan: Apply an ACL to the VLAN to filter packets. global: Apply an ACL globally to filter packets.
Enumeration
.1.3.6.1.4.1.25506.2.8.3.7.1.1
hh3cPfilter2RunApplyObjIndexThe object ID of packet filter application. Interface: interface index, equal to ifIndex VLAN: VLAN ID, 1..4094 Global: 0
Integer32
.1.3.6.1.4.1.25506.2.8.3.7.1.2
hh3cPfilter2RunApplyDirectionThe direction of packet filter application.
DirectionType
.1.3.6.1.4.1.25506.2.8.3.7.1.3
hh3cPfilter2RunApplyAclTypeACL Type: IPv4, IPv6, default action, MAC, and user. Take default action as a special ACL group.
Enumeration
.1.3.6.1.4.1.25506.2.8.3.7.1.4
hh3cPfilter2RunApplyAclIndexThe index of ACL group used by packet-filter. If the specified string comprises only digits, it is converted into a numerical sequence in decimal notation, and regarded as an ACL group index or a default action. If the string is a character string beginning with an English letter, it is regarded as an ACL group name. Group index range and default action: Basic type: 2000..2999 Advanced type: 3000..3999 MAC type: 4000..4999 User type: 5000..5999 MAC default action: 1 IPv4 default action: 2 IPv6 default action: 3
OCTET STRING
.1.3.6.1.4.1.25506.2.8.3.7.1.5
hh3cPfilter2AclGroupStatusThe status of ACL group applied. success: ACL applied successfully on all slots failed: failed to apply ACL on all slots partialSuccess: failed to apply ACL on some slotsro
Enumeration
.1.3.6.1.4.1.25506.2.8.3.7.1.6
hh3cPfilter2AclGroupCountStatusThe status of enabling hardware count. If hardware count is not enabled, it returns success. success: enable hardware count successfully on all slots failed: failed to enable hardware count on all slots partialSuccess: failed to enable hardware count on some slotsro
Enumeration
.1.3.6.1.4.1.25506.2.8.3.7.1.7
hh3cPfilter2AclGroupPermitPktsThe number of packets permitted.ro
Counter64
.1.3.6.1.4.1.25506.2.8.3.7.1.8
hh3cPfilter2AclGroupPermitBytesThe number of bytes permitted.ro
Counter64
.1.3.6.1.4.1.25506.2.8.3.7.1.9
hh3cPfilter2AclGroupDenyPktsThe number of packets denied.ro
Counter64
.1.3.6.1.4.1.25506.2.8.3.7.1.10
hh3cPfilter2AclGroupDenyBytesThe number of bytes denied.ro
Counter64
.1.3.6.1.4.1.25506.2.8.3.7.1.11
hh3cPfilter2AclRuleRunInfoTableA table of rule's running information of ACLs for packet filtering. If hardware count function is not supported or not enabled to the packet filter application, the hh3cPfilter2AclRuleMatchPackets and hh3cPfilter2AclRuleMatchBytes will be zero.
SEQUENCE OF Hh3cPfilter2AclRuleRunInfoEntry
.1.3.6.1.4.1.25506.2.8.3.8
hh3cPfilter2AclRuleRunInfoEntryACL rule's running information entry.
Hh3cPfilter2AclRuleRunInfoEntry
.1.3.6.1.4.1.25506.2.8.3.8.1
hh3cPfilter2AclRuleIndexThe ACL rule index.ro
Integer32
.1.3.6.1.4.1.25506.2.8.3.8.1.1
hh3cPfilter2AclRuleStatusThe status of rule application. success: rule applied successfully on all slots failed: failed to apply rule on all slots partialSuccess: failed to apply rule on some slotsro
Enumeration
.1.3.6.1.4.1.25506.2.8.3.8.1.2
hh3cPfilter2AclRuleCountStatusThe status of enabling rule's hardware count. If hardware count is not enabled, it returns success. success: enable hardware count successfully on all slots failed: failed to enable hardware count on all slots partialSuccess: failed to enable hardware count on some slotsro
Enumeration
.1.3.6.1.4.1.25506.2.8.3.8.1.3
hh3cPfilter2AclRuleMatchPacketsThe number of packets matched.ro
Counter64
.1.3.6.1.4.1.25506.2.8.3.8.1.4
hh3cPfilter2AclRuleMatchBytesThe number of bytes matched.ro
Counter64
.1.3.6.1.4.1.25506.2.8.3.8.1.5
hh3cPfilter2StatisticSumTableA table of ACL rule's sum statistics information, accumulated by all entity application on all slots.
SEQUENCE OF Hh3cPfilter2StatisticSumEntry
.1.3.6.1.4.1.25506.2.8.3.9
hh3cPfilter2StatisticSumEntryACL rule's sum statistics information entry.
Hh3cPfilter2StatisticSumEntry
.1.3.6.1.4.1.25506.2.8.3.9.1
hh3cPfilter2SumDirectionThe direction of application.
DirectionType
.1.3.6.1.4.1.25506.2.8.3.9.1.1
hh3cPfilter2SumAclTypeACL type: IPv4, IPv6, MAC, and user.
Enumeration
.1.3.6.1.4.1.25506.2.8.3.9.1.2
hh3cPfilter2SumAclIndexThe index of ACL group used by packet-filter. If the specified string comprises only digits, it is converted into a numerical sequence in decimal notation, and regarded as an ACL group index. If the string is a character string beginning with an English letter, it is regarded as an ACL group name. Group index range and default action: Basic type: 2000..2999 Advanced type: 3000..3999 MAC type: 4000..4999 User type: 5000..5999
OCTET STRING
.1.3.6.1.4.1.25506.2.8.3.9.1.3
hh3cPfilter2SumRuleIndexThe ACL rule index.
Integer32
.1.3.6.1.4.1.25506.2.8.3.9.1.4
hh3cPfilter2SumRuleMatchPacketsThe sum number of packets matched the ACL rule.ro
Counter64
.1.3.6.1.4.1.25506.2.8.3.9.1.5
hh3cPfilter2SumRuleMatchBytesThe sum number of bytes matched the ACL rule.ro
Counter64
.1.3.6.1.4.1.25506.2.8.3.9.1.6
hh3cAclPacketfilterTrapObjects
OBJECT IDENTIFIER
.1.3.6.1.4.1.25506.2.8.4
hh3cPfilterInterfaceThe interface which policy apply.ro
OCTET STRING
.1.3.6.1.4.1.25506.2.8.4.1
hh3cPfilterDirectionInbound or outbound.ro
OCTET STRING
.1.3.6.1.4.1.25506.2.8.4.2
hh3cPfilterACLNumberACL number.ro
Integer32
.1.3.6.1.4.1.25506.2.8.4.3
hh3cPfilterActionPermit or deny.ro
OCTET STRING
.1.3.6.1.4.1.25506.2.8.4.4
hh3cMACfilterSourceMacSource MAC address.ro
OCTET STRING
.1.3.6.1.4.1.25506.2.8.4.5
hh3cMACfilterDestinationMacDestination MAC address.ro
OCTET STRING
.1.3.6.1.4.1.25506.2.8.4.6
hh3cPfilterPacketNumberThe number of packets permitted or denied by ACL.ro
Integer32
.1.3.6.1.4.1.25506.2.8.4.7
hh3cPfilterReceiveInterfaceThe interface where packet come from.ro
OCTET STRING
.1.3.6.1.4.1.25506.2.8.4.8
hh3cAclPacketIfNameThe name of the interface on which the packet is matched.ro
OCTET STRING
.1.3.6.1.4.1.25506.2.8.4.9
hh3cAclPacketDirectionThe direction the packet is going.ro
DirectionType
.1.3.6.1.4.1.25506.2.8.4.10
hh3cAclPacketBAGGThe bridge-aggregation-interface ID the interface belongs to.ro
Integer32
.1.3.6.1.4.1.25506.2.8.4.11
hh3cAclPacketVlanIDThe vlan the interface belongs to.ro
Integer32
.1.3.6.1.4.1.25506.2.8.4.12
hh3cAclPacketSrcIPSource IP address of IPv4/IPv6 packet.ro
OCTET STRING
.1.3.6.1.4.1.25506.2.8.4.13
hh3cAclPacketDstIPDestination IP address of IPv4/IPv6 packet.ro
OCTET STRING
.1.3.6.1.4.1.25506.2.8.4.14
hh3cAclPacketProtocolThe protocol of IPv4/IPv6 packet. icmp(1), tcp(6), udp(17), igmp(2), gre(47), ospf(89), ipinip(4), icmp6(58), ipv6_ah(51), ipv6_esp(50)ro
Integer32
.1.3.6.1.4.1.25506.2.8.4.15
hh3cAclPacketDscpDSCP of IPv4/IPv6 packet.ro
DSCPValue
.1.3.6.1.4.1.25506.2.8.4.16
hh3cAclPacketFlowLabelFlow label value of IPv6 packet.ro
Unsigned32 (0..1048575|4294967295)
.1.3.6.1.4.1.25506.2.8.4.17
hh3cAclPacketIcmpIgmpTypeThe type of ICMP or IGMP packet.ro
Integer32 (0..255|65535)
.1.3.6.1.4.1.25506.2.8.4.18
hh3cAclPacketIcmpIgmpCodeThe code of ICMP or IGMP packet.ro
Integer32 (0..255|65535)
.1.3.6.1.4.1.25506.2.8.4.19
hh3cAclPacketTcpFlagsThe flags of TCP packet. tcpack(1), tcpfin(2), tcppsh(3), tcprst(4), tcpsyn(5), tcpurg(6), invalid(255)ro
Enumeration
.1.3.6.1.4.1.25506.2.8.4.20
hh3cAclPacketSrcPortSource port of TCP or UDP packet.ro
Integer32
.1.3.6.1.4.1.25506.2.8.4.21
hh3cAclPacketDstPortDestination port of TCP or UDP packet.ro
Integer32
.1.3.6.1.4.1.25506.2.8.4.22
hh3cAclPacketSrcMacAddrSource MAC address of Ethernet packet.ro
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.4.23
hh3cAclPacketDstMacAddrDestination MAC address of Ethernet packet.ro
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.25506.2.8.4.24
hh3cAclPacketMacTypeLenThe Ethertype or 802.3 length of Ethernet packet.ro
Integer32
.1.3.6.1.4.1.25506.2.8.4.25
hh3cAclPacketVlanPCP802.1p priority code point of Ethernet packet.ro
Integer32 (0..7|255)
.1.3.6.1.4.1.25506.2.8.4.26
hh3cAclPacketfilterTrap
OBJECT IDENTIFIER
.1.3.6.1.4.1.25506.2.8.5
hh3cPfilterTrapPrefix
OBJECT IDENTIFIER
.1.3.6.1.4.1.25506.2.8.5.0
hh3cMACfilterTrapThis notification is generated when a packet was processed by MAC address filter, but not every packet will generate one notification, the same notification only generate once in 30 seconds.
NOTIFICATION-TYPE
.1.3.6.1.4.1.25506.2.8.5.0.1
hh3cAclRuleMatchCountThis notification is generated periodically due to a timer. The interval of the timer is configured in hh3cAclIntervalTable. The notification details the entries about the packet-filter object, the matched ACL rule and the number of matching packets.
NOTIFICATION-TYPE
.1.3.6.1.4.1.25506.2.8.5.0.2
hh3cAclFirstIPv4PktCapturedThis notification is generated immediately when the first packet of the matched IPv4 flow is captured. Other packets of the matched flow won't be captured.
NOTIFICATION-TYPE
.1.3.6.1.4.1.25506.2.8.5.0.3
hh3cAclFirstIPv6PktCapturedThis notification is generated immediately when the first packet of the matched IPv6 flow is captured. Other packets of the matched flow won't be captured.
NOTIFICATION-TYPE
.1.3.6.1.4.1.25506.2.8.5.0.4
hh3cAclFirstEthernetPktCapturedThis notification is generated immediately when the first packet of the matched Ethernet flow is captured. Other packets of the matched flow won't be captured.
NOTIFICATION-TYPE
.1.3.6.1.4.1.25506.2.8.5.0.5
HH3C-ACL-MIB - SNMP MIB Reference | MIBs Explorer