Home/Catalog/HPN-ICF-IPA-MIB

HPN-ICF-IPA-MIB

AI MIB Summary

The HPN-ICF-IPA-MIB enables granular IP traffic accounting on HPE ProCurve/Aruba switches by monitoring packet and byte counters for specific source/destination IP address groups, categorized by interface direction (inbound/outbound) and firewall policy outcomes (accepted, denied, or external). This module facilitates precise bandwidth utilization analysis and security auditing by segregating traffic statistics into internal, external, and firewall-dropped lists based on user-defined access control lists.

This MIB is used to acquire ip accounting information. The hpnicfIpaAccountListTable is set by user to define the group of ip address which they want to account. This module can be enabled in each port, which was defined in the hpnicfIpaIfConfigTable. If this module has been enabled, the packets will be accounted when crossing the router from the ports having been enabled by user, according to whether the source/destination ip address is in hpnicfIpaAccountListTable and what kinds of function(in/out/both/fw) are enabled and also whether it is denied by the firewall. If it is denied by the firewall, it will be accounted in hpnicfIpaFWListTable If it is accepted by the firewall, and ip source or ip destination is in hpnicfIpaAccountListTable, it will be accounted in hpnicfIpaIntListTable, otherwise it will be accounted in hpnicfIpaExtListTable. And IP Accounting function also differentiates the packets by direction. If the packet is inbound, the accounting information can be seen as hpnicfIpaIntListInPackets/hpnicfIpaIntListInBytes in hpnicfIpaIntListTable, hpnicfIpaExtListInPackets/hpnicfIpaExtListInBytes in hpnicfIpaExtListTable, hpnicfIpaFWListInPackets/hpnicfIpaFWListInBytes in hpnicfIpaFWListTable. or else the accounting information can be seen as hpnicfIpaIntListOutPackets/hpnicfIpaIntListOutBytes in hpnicfIpaIntListTable, hpnicfIpaExtListOutPackets/hpnicfIpaExtListOutBytes in hpnicfIpaExtListTable, hpnicfIpaFWListOutPackets/hpnicfIpaFWListOutBytes in hpnicfIpaFWListTable.
Main OID:
hpnicfIpa.1.3.6.1.4.1.11.2.14.11.15.2.25
48
Objects
Active
Status
3
Dependencies

Imported Objects

Objects

48 total
Object Name
hpnicfIpaThis MIB is used to acquire ip accounting information. The hpnicfIpaAccountListTable is set by user to define the group of ip address which they want to account. This module can be enabled in each port, which was defined in the hpnicfIpaIfConfigTable. If this module has been enabled, the packets will be accounted when crossing the router from the ports having been enabled by user, according to whether the source/destination ip address is in hpnicfIpaAccountListTable and what kinds of function(in/out/both/fw) are enabled and also whether it is denied by the firewall. If it is denied by the firewall, it will be accounted in hpnicfIpaFWListTable If it is accepted by the firewall, and ip source or ip destination is in hpnicfIpaAccountListTable, it will be accounted in hpnicfIpaIntListTable, otherwise it will be accounted in hpnicfIpaExtListTable. And IP Accounting function also differentiates the packets by direction. If the packet is inbound, the accounting information can be seen as hpnicfIpaIntListInPackets/hpnicfIpaIntListInBytes in hpnicfIpaIntListTable, hpnicfIpaExtListInPackets/hpnicfIpaExtListInBytes in hpnicfIpaExtListTable, hpnicfIpaFWListInPackets/hpnicfIpaFWListInBytes in hpnicfIpaFWListTable. or else the accounting information can be seen as hpnicfIpaIntListOutPackets/hpnicfIpaIntListOutBytes in hpnicfIpaIntListTable, hpnicfIpaExtListOutPackets/hpnicfIpaExtListOutBytes in hpnicfIpaExtListTable, hpnicfIpaFWListOutPackets/hpnicfIpaFWListOutBytes in hpnicfIpaFWListTable.
MODULE-IDENTITY
.1.3.6.1.4.1.11.2.14.11.15.2.25
hpnicfIpaGlobalStats
OBJECT IDENTIFIER
.1.3.6.1.4.1.11.2.14.11.15.2.25.1
hpnicfIpaGlobalEnableThe indication of whether Ip Accounting function is enabled. If it is disabled, ip packets will not be accounted.rw
Enumeration
.1.3.6.1.4.1.11.2.14.11.15.2.25.1.1
hpnicfIpaTimeOutSecondsThe value of List aging timeout. The unit is second. If exceeding the interval, the item in hpnicfIpaIntListTable, hpnicfIpaExtListTable and hpnicfIpaFWListTable will be removed automaticlly. The range is (3600..604800).rw
Integer32
.1.3.6.1.4.1.11.2.14.11.15.2.25.1.2
hpnicfIpaIntListMaxItemNumThe max number of items in hpnicfIpaIntListTable. The range is (0..16384).rw
Integer32
.1.3.6.1.4.1.11.2.14.11.15.2.25.1.3
hpnicfIpaExtListMaxItemNumThe max number of items in hpnicfIpaExtListTable. The range is (0..8192).rw
Integer32
.1.3.6.1.4.1.11.2.14.11.15.2.25.1.4
hpnicfIpaFWListMaxItemNumThe max number of items in hpnicfIpaFWListTable.ro
Integer32
.1.3.6.1.4.1.11.2.14.11.15.2.25.1.5
hpnicfIpaAccountListMaxItemNumThe max number of items in hpnicfIpaAccountListTable.ro
Integer32
.1.3.6.1.4.1.11.2.14.11.15.2.25.1.6
hpnicfIpaAccountListNextIndexThe next available index for creating rows of hpnicfIpaAccountListTable. If the value is zero, it means the table is full and no available index can be used.ro
Integer32
.1.3.6.1.4.1.11.2.14.11.15.2.25.1.7
hpnicfIpaListCleaningFlagCleaning List in this module. The default value is idle. If user wants to clean some lists, he can set the value to 2, 3, 4 and 5 to clean the corresponding list. After the operation, the value will return to idle.rw
Enumeration
.1.3.6.1.4.1.11.2.14.11.15.2.25.1.8
hpnicfIpaIfConfigTableEnable or disable the ip accounting inbound/outbound function under a particular interface.
SEQUENCE OF HpnicfIpaIfConfigEntry
.1.3.6.1.4.1.11.2.14.11.15.2.25.2
hpnicfIpaIfConfigEntryEntry of the table.
HpnicfIpaIfConfigEntry
.1.3.6.1.4.1.11.2.14.11.15.2.25.2.1
hpnicfIpaIfConfigIfIndexIt equals to ifIndex
InterfaceIndex
.1.3.6.1.4.1.11.2.14.11.15.2.25.2.1.1
hpnicfIpaIfConfigInEnableThis object is applicable to hpnicfIpaIntListTable and hpnicfIpaExtListTable. If the value is disabled, inbound ip packets are not accounted.rw
Enumeration
.1.3.6.1.4.1.11.2.14.11.15.2.25.2.1.2
hpnicfIpaIfConfigOutEnableThis object is applicable to hpnicfIpaIntListTable and hpnicfIpaExtListTable. If the value is disabled, outbound ip packets are not accounted.rw
Enumeration
.1.3.6.1.4.1.11.2.14.11.15.2.25.2.1.3
hpnicfIpaIfConfigFWEnableThis object is applicable to hpnicfIpaFWListTable only. If the value is 'inbound', then inbound ip packets which are denied by firewall are accounted. If the value is 'outbound', then outbound ip packets which were denied by firewall are accounted. If the value is 'nodirection', neither inbound nor outbound ip packets which were denied by firewall are accounted. If the value is 'bidirection', both inbound and outbound ip packets which were denied by firewall are accounted.rw
Enumeration
.1.3.6.1.4.1.11.2.14.11.15.2.25.2.1.4
hpnicfIpaAccountListTableThe List is used by user to sort packets into two groups by source or destination ip address. When source/destination ip address of a packet matches a item in this table, the packet is accounted in hpnicfIpaIntListTable. When source/destination ip address of a packet does not match any item in this table, the packet is accounted in hpnicfIpaExtListTable.
SEQUENCE OF HpnicfIpaAccountListEntry
.1.3.6.1.4.1.11.2.14.11.15.2.25.3
hpnicfIpaAccountListEntryEntry of the table.
HpnicfIpaAccountListEntry
.1.3.6.1.4.1.11.2.14.11.15.2.25.3.1
hpnicfIpaAccountListIndexThe Index of the table.
Integer32
.1.3.6.1.4.1.11.2.14.11.15.2.25.3.1.1
hpnicfIpaAccountListIpAddrThe IP address to which this entry's addressing information pertains.rw
IpAddress
.1.3.6.1.4.1.11.2.14.11.15.2.25.3.1.2
hpnicfIpaAccountListIpMaskThe subnet mask associated with the IP address of this entry. The value of the mask is an IP address with all the network bits set to 1 and all the hosts bits set to 0.rw
IpAddress
.1.3.6.1.4.1.11.2.14.11.15.2.25.3.1.3
hpnicfIpaAccountListRowStatusThe row status of the entry, Supporting CreateAndGo and Destroy operation.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.11.2.14.11.15.2.25.3.1.4
hpnicfIpaIntListTableIf matching the ip address recorded in hpnicfIpaAccountListTable and not denied by the firewall, the packets will be accounted in this list.
SEQUENCE OF HpnicfIpaIntListEntry
.1.3.6.1.4.1.11.2.14.11.15.2.25.4
hpnicfIpaIntListEntryEntry of the table.
HpnicfIpaIntListEntry
.1.3.6.1.4.1.11.2.14.11.15.2.25.4.1
hpnicfIpaIntListIpSrcSource IP-address of these accounted packets.
IpAddress
.1.3.6.1.4.1.11.2.14.11.15.2.25.4.1.1
hpnicfIpaIntListIpDstDestination IP-address of these accounted packets.
IpAddress
.1.3.6.1.4.1.11.2.14.11.15.2.25.4.1.2
hpnicfIpaIntListProtocolThe type of these accounted IP packets defined in RFC 1700.
Integer32
.1.3.6.1.4.1.11.2.14.11.15.2.25.4.1.3
hpnicfIpaIntListInPacketsThe number of inbound packets in hpnicfIpaIntListTable.ro
Counter32
.1.3.6.1.4.1.11.2.14.11.15.2.25.4.1.4
hpnicfIpaIntListInBytesThe number of inbound bytes in hpnicfIpaIntListTable.ro
Counter64
.1.3.6.1.4.1.11.2.14.11.15.2.25.4.1.5
hpnicfIpaIntListOutPacketsThe number of outbound Packets in hpnicfIpaIntListTable.ro
Counter32
.1.3.6.1.4.1.11.2.14.11.15.2.25.4.1.6
hpnicfIpaIntListOutBytesThe number of outbound bytes in hpnicfIpaIntListTable.ro
Counter64
.1.3.6.1.4.1.11.2.14.11.15.2.25.4.1.7
hpnicfIpaExtListTableIf mismatching the ip address recorded in the hpnicfIpaAccountListTable and not denied by the firewall, the packets will be accounted in this list.
SEQUENCE OF HpnicfIpaExtListEntry
.1.3.6.1.4.1.11.2.14.11.15.2.25.5
hpnicfIpaExtListEntryEntry of the table.
HpnicfIpaExtListEntry
.1.3.6.1.4.1.11.2.14.11.15.2.25.5.1
hpnicfIpaExtListIpSrcSource IP-address of these accounted packets.
IpAddress
.1.3.6.1.4.1.11.2.14.11.15.2.25.5.1.1
hpnicfIpaExtListIpDstDestination IP-address of these accounted packets.
IpAddress
.1.3.6.1.4.1.11.2.14.11.15.2.25.5.1.2
hpnicfIpaExtListProtocolThe value indicates the value of the 'protocol' field which is part of ip packet header.
Integer32
.1.3.6.1.4.1.11.2.14.11.15.2.25.5.1.3
hpnicfIpaExtListInPacketsThe number of inbound packets in hpnicfIpaExtListTable.ro
Counter32
.1.3.6.1.4.1.11.2.14.11.15.2.25.5.1.4
hpnicfIpaExtListInBytesThe number of inbound bytes in hpnicfIpaExtListTable.ro
Counter64
.1.3.6.1.4.1.11.2.14.11.15.2.25.5.1.5
hpnicfIpaExtListOutPacketsThe number of outbound packets in hpnicfIpaExtListTable.ro
Counter32
.1.3.6.1.4.1.11.2.14.11.15.2.25.5.1.6
hpnicfIpaExtListOutBytesThe number of outbound bytes in hpnicfIpaExtListTable.ro
Counter64
.1.3.6.1.4.1.11.2.14.11.15.2.25.5.1.7
hpnicfIpaFWListTableIf the packet is denied by the firewall, it will be accounted in this list.
SEQUENCE OF HpnicfIpaFWListEntry
.1.3.6.1.4.1.11.2.14.11.15.2.25.6
hpnicfIpaFWListEntryEntry of the table.
HpnicfIpaFWListEntry
.1.3.6.1.4.1.11.2.14.11.15.2.25.6.1
hpnicfIpaFWListIpSrcSource IP-address of these accounted packets.
IpAddress
.1.3.6.1.4.1.11.2.14.11.15.2.25.6.1.1
hpnicfIpaFWListIpDstDestination IP-address of these accounted packets.
IpAddress
.1.3.6.1.4.1.11.2.14.11.15.2.25.6.1.2
hpnicfIpaFWListInPacketsThe number of outbound packets in hpnicfIpaFWListTable.ro
Counter32
.1.3.6.1.4.1.11.2.14.11.15.2.25.6.1.3
hpnicfIpaFWListInBytesThe number of inbound bytes in hpnicfIpaFWListTable.ro
Counter64
.1.3.6.1.4.1.11.2.14.11.15.2.25.6.1.4
hpnicfIpaFWListOutPacketsThe number of outbound packets in hpnicfIpaFWListTable.ro
Counter32
.1.3.6.1.4.1.11.2.14.11.15.2.25.6.1.5
hpnicfIpaFWListOutBytesThe number of outbound bytes in hpnicfIpaFWListTable.ro
Counter64
.1.3.6.1.4.1.11.2.14.11.15.2.25.6.1.6