Home/Catalog/HM2-DOS-MITIGATION-MIB

HM2-DOS-MITIGATION-MIB

AI MIB Summary

The HM2-DOS-MITIGATION-MIB provides management access to Hirschmann network devices for monitoring and configuring Denial of Service (DoS) mitigation policies, specifically tracking attack traffic counters, triggered mitigation events, and the operational status of active defense mechanisms.

Hirschmann Denial of Service MIB Copyright (C) 2012. All Rights Reserved.
Main OID:
hm2DosMitigationMib.1.3.6.1.4.1.248.11.82
43
Objects
Active
Status
5
Dependencies

Imported Objects

Objects

43 total
Object Name
hm2DosMitigationMibHirschmann Denial of Service MIB Copyright (C) 2012. All Rights Reserved.
MODULE-IDENTITY
.1.3.6.1.4.1.248.11.82
hm2DosMitigationNotifications
OBJECT IDENTIFIER
.1.3.6.1.4.1.248.11.82.0
hm2DosMitigationObjects
OBJECT IDENTIFIER
.1.3.6.1.4.1.248.11.82.1
hm2DosMitigationGeneralSettings
OBJECT IDENTIFIER
.1.3.6.1.4.1.248.11.82.1.1
hm2DosMitigationCapabilities
OBJECT IDENTIFIER
.1.3.6.1.4.1.248.11.82.1.1.0
hm2DosMitigationTcpHdrChecksSupThe type of support for TCP header checks.ro
DosFeatureValue
.1.3.6.1.4.1.248.11.82.1.1.0.1
hm2DosMitigationIcmpChecksSupThe type of support for ICMP checks.ro
DosFeatureValue
.1.3.6.1.4.1.248.11.82.1.1.0.2
hm2DosMitigationTcpSynLimitSupThe type of support for TCP SYN limiter.ro
DosFeatureValue
.1.3.6.1.4.1.248.11.82.1.1.0.3
hm2DosMitigationArpLimitSupThe type of support for ARP limiter.ro
DosFeatureValue
.1.3.6.1.4.1.248.11.82.1.1.0.4
hm2DosMitigationTcpNullScanSupThe type of support for TCP Null Scan.ro
DosFeatureValue
.1.3.6.1.4.1.248.11.82.1.1.0.5
hm2DosMitigationTcpXmasSupThe type of support for TCP Xmas Scan.ro
DosFeatureValue
.1.3.6.1.4.1.248.11.82.1.1.0.6
hm2DosMitigationTcpLandSupThe type of support for land attack detection.ro
DosFeatureValue
.1.3.6.1.4.1.248.11.82.1.1.0.7
hm2DosMitigationTcpHdrChecks
OBJECT IDENTIFIER
.1.3.6.1.4.1.248.11.82.1.1.1
hm2DosMitigationTcpNullScanWhen enabled, TCP Null scans (TCP flags and sequence number set to 0) are filtered by the device.rw
HmEnabledStatus (HM2-TC-MIB)
.1.3.6.1.4.1.248.11.82.1.1.1.1
hm2DosMitigationTcpXmasScanWhen enabled TCP Xmas scans (TCP flags FIN, URG and PSH all set to 1 and a TCP sequence number = 0) are filtered by the device.rw
HmEnabledStatus (HM2-TC-MIB)
.1.3.6.1.4.1.248.11.82.1.1.1.4
hm2DosMitigationTcpSynFinScanWhen enabled TCP packets with SYN and FIN flags set are filtered by the device.rw
HmEnabledStatus (HM2-TC-MIB)
.1.3.6.1.4.1.248.11.82.1.1.1.7
hm2DosMitigationTcpMinimalHeaderWhen enabled all TCP frames are checked for a minimal valid header size. Packets that contain an invalid header size are discarded.rw
HmEnabledStatus (HM2-TC-MIB)
.1.3.6.1.4.1.248.11.82.1.1.1.10
hm2DosMitigationTcpMinimalHeaderSizeSpecifies the minimum size of a valid TCP frame header size.rw
Unsigned32
.1.3.6.1.4.1.248.11.82.1.1.1.11
hm2DosMitigationLandAttackWhen enabled all IP frames are checked for equality of src and dst IP address (known as land attack). Packets that contain such a combination are silently discarded when enabled.rw
HmEnabledStatus (HM2-TC-MIB)
.1.3.6.1.4.1.248.11.82.1.1.1.13
hm2DosMitigationTcpOffsetEqu1Enable/Disable TCP offset DoS protection. All packets ingress having a TCP header offset equal to 1 are dropped.rw
HmEnabledStatus (HM2-TC-MIB)
.1.3.6.1.4.1.248.11.82.1.1.1.14
hm2DosMitigationTcpPrivilegedSrcPortEnable/Disable TCP SYN and L4 source port smaller than 1024 DoS protection. All packets ingress having the TCP SYN flag set and a L4 source port from 0 to 1023 are dropped.rw
HmEnabledStatus (HM2-TC-MIB)
.1.3.6.1.4.1.248.11.82.1.1.1.15
hm2DosMitigationTcpSrcDstPortEquEnable/Disable L4 source port equals L4 destination port DoS protection. All TCP or UDP packets ingress having the L4 source port equal to L4 destination port are dropped.rw
HmEnabledStatus (HM2-TC-MIB)
.1.3.6.1.4.1.248.11.82.1.1.1.16
hm2DosMitigationIcmpChecks
OBJECT IDENTIFIER
.1.3.6.1.4.1.248.11.82.1.1.2
hm2DosMitigationIcmpFragsWhen enabled, all fragmented ICMP packets are filtered by the device.rw
HmEnabledStatus (HM2-TC-MIB)
.1.3.6.1.4.1.248.11.82.1.1.2.1
hm2DosMitigationIcmpPacketSizeSpecifies the max. allowed payload size of ICMP packets. Packets having bigger payload are filtered by the device if the hm2DosMitigationIcmpPacketSizeMode is enabled.rw
Unsigned32
.1.3.6.1.4.1.248.11.82.1.1.2.4
hm2DosMitigationIcmpPacketSizeModeWhen enabled all ICMP ingress packets having the payload bigger than hm2DosMitigationIcmpPacketSize are filtered by device.rw
HmEnabledStatus (HM2-TC-MIB)
.1.3.6.1.4.1.248.11.82.1.1.2.5
hm2DosMitigationIcmpSmurfAttackWhen enabled, all ingress ICMP packets having the type set to ECHO_REQ (ping) and a broadcast destination IP are dropped.rw
HmEnabledStatus (HM2-TC-MIB)
.1.3.6.1.4.1.248.11.82.1.1.2.6
hm2DosMitigationL2Checks
OBJECT IDENTIFIER
.1.3.6.1.4.1.248.11.82.1.1.3
hm2DosMitigationSMacDMacEnable/Disable source MAC address equals destination MAC address DoS protection. All packets ingress having SMAC equals DMAC are dropped.rw
HmEnabledStatus (HM2-TC-MIB)
.1.3.6.1.4.1.248.11.82.1.1.3.7
hm2DosMitigationLimiter
OBJECT IDENTIFIER
.1.3.6.1.4.1.248.11.82.1.2
hm2DosMitigationLimiterObjects
OBJECT IDENTIFIER
.1.3.6.1.4.1.248.11.82.1.2.1
hm2DosMitigationLimiterRules
OBJECT IDENTIFIER
.1.3.6.1.4.1.248.11.82.1.2.2
hm2DosMitigationLimiterRuleTableTCP Syn Limiter Interface Table
SEQUENCE OF Hm2DosMitigationLimiterRuleEntry
.1.3.6.1.4.1.248.11.82.1.2.2.1
hm2DosMitigationLimiterRuleEntryTCP Syn Interface entry.
Hm2DosMitigationLimiterRuleEntry
.1.3.6.1.4.1.248.11.82.1.2.2.1.1
hm2DosMitigationLimiterInterfaceThe interface the limiter is assigned to.ro
InterfaceIndex (IF-MIB)
.1.3.6.1.4.1.248.11.82.1.2.2.1.1.1
hm2DosMitigationLimiterTcpSynLimitThe number of allowed outgoing TCP syn packets per second per interface. A value of 0 disables the limiter for this interface.rw
Unsigned32
.1.3.6.1.4.1.248.11.82.1.2.2.1.1.2
hm2DosMitigationLimiterArpLimitThe number of allowed outgoing ARP packets per second per interface. A value of 0 disables the limiter for this interface.rw
Unsigned32
.1.3.6.1.4.1.248.11.82.1.2.2.1.1.3
hm2DosMitigationLimiterRowStatusRow status.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.248.11.82.1.2.2.1.1.4
hm2DosMitigationConformance
OBJECT IDENTIFIER
.1.3.6.1.4.1.248.11.82.2
hm2DosMitigationCompliances
OBJECT IDENTIFIER
.1.3.6.1.4.1.248.11.82.2.1
hm2DosMitigationComplianceThe compliance statement for an SNMP entity which implements the Hirschmann DOS Mitigation MIB.
Unknown
.1.3.6.1.4.1.248.11.82.2.1.1
hm2DosMitigationGroups
OBJECT IDENTIFIER
.1.3.6.1.4.1.248.11.82.2.2
hm2DosMitigationGeneralGroupA collection of all Hirschmann objects provided by the DoS Mitigation module.
Unknown
.1.3.6.1.4.1.248.11.82.2.2.1
HM2-DOS-MITIGATION-MIB - SNMP MIB Reference | MIBs Explorer