Home/Catalog/Juniper-DOS-PROTECTION-PLATFORM-MIB

Juniper-DOS-PROTECTION-PLATFORM-MIB

AI MIB Summary

The Juniper-DOS-PROTECTION-PLATFORM-MIB enables SNMP-based monitoring and configuration of Denial-of-Service (DoS) mitigation policies and traffic counters specifically on Juniper E-Series routers. It exposes platform-specific managed objects to track active DoS attack sessions, blocked traffic volumes, and the operational state of the DOS protection application engine.

The DOS Protection MIB for the Juniper E-Series product family. This MIB contains managed objects for the DOS Protection application, which are platform specific. Management objects are provided to control and monitor the DOS protection application.
Main OID:
juniDosProtectionPlatformMIB.1.3.6.1.4.1.4874.2.2.81
89
Objects
Active
Status
7
Dependencies

Imported Objects

Objects

89 total
Object Name
juniDosProtectionPlatformMIBThe DOS Protection MIB for the Juniper E-Series product family. This MIB contains managed objects for the DOS Protection application, which are platform specific. Management objects are provided to control and monitor the DOS protection application.
MODULE-IDENTITY
.1.3.6.1.4.1.4874.2.2.81
juniDosProtectionPlatformTraps
OBJECT IDENTIFIER
.1.3.6.1.4.1.4874.2.2.81.0
juniDosProtectionPlatformScfdsTraps
OBJECT IDENTIFIER
.1.3.6.1.4.1.4874.2.2.81.0.0
juniDosProtectionScfdsSuspiciousControlFlowThis trap will be generated when a control flow becomes suspicious.obsolete
NOTIFICATION-TYPE
.1.3.6.1.4.1.4874.2.2.81.0.0.1
juniDosProtectionScfdsNonSuspiciousControlFlowThis trap will be generated when a control flow becomes no longer suspiciousobsolete
NOTIFICATION-TYPE
.1.3.6.1.4.1.4874.2.2.81.0.0.2
juniDosProtectionScfdsSuspiciousControlFlowGroupThis trap will be generated when a control flow that represents a group becomes suspicious.
NOTIFICATION-TYPE
.1.3.6.1.4.1.4874.2.2.81.0.0.3
juniDosProtectionScfdsNonSuspiciousControlFlowGroupThis trap will be generated when a control flow that represents a group becomes no longer suspicious.
NOTIFICATION-TYPE
.1.3.6.1.4.1.4874.2.2.81.0.0.4
juniDosProtectionScfdsTableFullThis trap will be generated when the suspicious flow control table becomes full on a slot.
NOTIFICATION-TYPE
.1.3.6.1.4.1.4874.2.2.81.0.0.5
juniDosProtectionScfdsTableNotFullThis trap will be generated when the suspicious flow control table is no longer full on a slot.
NOTIFICATION-TYPE
.1.3.6.1.4.1.4874.2.2.81.0.0.6
juniDosProtectionScfdsGroupingInUseThis trap will be generated when the suspicious flow control system begins to group flow controls on a slot, due to the suspicious flow control table being full.
NOTIFICATION-TYPE
.1.3.6.1.4.1.4874.2.2.81.0.0.7
juniDosProtectionScfdsSuspiciousProtocolThis trap will be generated when a control protocol becomes suspicious on a slot, and therefore the suspicious control flow system begins to watch flows of this control protocol type.
NOTIFICATION-TYPE
.1.3.6.1.4.1.4874.2.2.81.0.0.8
juniDosProtectionScfdsNonSuspiciousProtocolThis trap will be generated when a control protocol becomes no longer suspicious on a slot, and therefore the suspicious control flow system will no longer watch flows of this control protocol type.
NOTIFICATION-TYPE
.1.3.6.1.4.1.4874.2.2.81.0.0.9
juniDosProtectionScfdsSuspiciousPriorityThis trap will be generated when a control priority becomes suspicious on a slot.
NOTIFICATION-TYPE
.1.3.6.1.4.1.4874.2.2.81.0.0.10
juniDosProtectionScfdsNonSuspiciousPriorityThis trap will be generated when a control priority becomes no longer suspicious on a slot.
NOTIFICATION-TYPE
.1.3.6.1.4.1.4874.2.2.81.0.0.11
juniDosProtectionScfdsSuspiciousControlFlowMacThis trap will be generated when a control flow becomes suspicious.
NOTIFICATION-TYPE
.1.3.6.1.4.1.4874.2.2.81.0.0.12
juniDosProtectionScfdsNonSuspiciousControlFlowMacThis trap will be generated when a control flow becomes no longer suspiciousobsolete
NOTIFICATION-TYPE
.1.3.6.1.4.1.4874.2.2.81.0.0.13
juniDosProtectionPlatformObjects
OBJECT IDENTIFIER
.1.3.6.1.4.1.4874.2.2.81.1
juniDosProtectionPlatformScfdsGroup
OBJECT IDENTIFIER
.1.3.6.1.4.1.4874.2.2.81.1.1
juniDosProtectionScfdsSlotProtocolTableThe information for the DOS protection control protocols for a specific slot.
SEQUENCE OF JuniDosProtectionScfdsSlotProtocolEntry
.1.3.6.1.4.1.4874.2.2.81.1.1.1
juniDosProtectionScfdsSlotProtocolEntryThe information for an individual control protocol on a specific slot.
JuniDosProtectionScfdsSlotProtocolEntry
.1.3.6.1.4.1.4874.2.2.81.1.1.1.1
juniDosProtectionScfdsSlotProtocolSlotThe slot value for the entry.
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.1.1.1.1.1
juniDosProtectionScfdsSlotProtocolIndexThe control protocol value for the entry.
JuniDosProtectionProtocolType (Juniper-DOS-PROTECTION-MIB)
.1.3.6.1.4.1.4874.2.2.81.1.1.1.1.2
juniDosProtectionScfdsSlotProtocolStateThe current state of the protocol. This object will return inTrouble(2) if the specific slot referenced is reporting that the protocol is currently being watched for suspicious flows. If the module is not reporting that this protocol is being watched this object will return ok(1). A protocol is in trouble for a slot when the sum of the rate of all flows for the protocol is over the limit for that protocol.ro
JuniDosProtectionProtocolState (Juniper-DOS-PROTECTION-MIB)
.1.3.6.1.4.1.4874.2.2.81.1.1.1.1.3
juniDosProtectionScfdsSlotProtocolTransitionsThe number of transitions to 'inTrouble' that this control protocol has made for this slot.ro
Counter32
.1.3.6.1.4.1.4874.2.2.81.1.1.1.1.4
juniDosProtectionScfdsSlotFlowTableInformation about suspicious control flows.obsolete
SEQUENCE OF JuniDosProtectionScfdsSlotFlowEntry
.1.3.6.1.4.1.4874.2.2.81.1.1.2
juniDosProtectionScfdsSlotFlowEntryInformation about a suspicious control flow.obsolete
JuniDosProtectionScfdsSlotFlowEntry
.1.3.6.1.4.1.4874.2.2.81.1.1.2.1
juniDosProtectionScfdsSlotFlowSlotThe slot value for the flow.obsolete
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.1.1.2.1.1
juniDosProtectionScfdsSlotFlowIfIndexThe ifIndex value for the flow. For group flows, this value will be zero.obsolete
InterfaceIndex (IF-MIB)
.1.3.6.1.4.1.4874.2.2.81.1.1.2.1.2
juniDosProtectionScfdsSlotFlowGroupIdThe group id for the flow. The group id will be zero for an individual flow. It is non-zero when the entry represents a group of flows.obsolete
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.1.1.2.1.3
juniDosProtectionScfdsSlotFlowProtocolThe control protocol for the flow.obsolete
JuniDosProtectionProtocolType (Juniper-DOS-PROTECTION-MIB)
.1.3.6.1.4.1.4874.2.2.81.1.1.2.1.4
juniDosProtectionScfdsSlotFlowRateThe current rate in packets per second for the flow.roobsolete
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.1.1.2.1.5
juniDosProtectionScfdsSlotFlowPeakRateThe peak rate in packets per second for the flow.roobsolete
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.1.1.2.1.6
juniDosProtectionScfdsSlotFlowTimeFlaggedThe sysUpTime value for the time when the flow was determined to be suspicious.roobsolete
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.1.1.2.1.7
juniDosProtectionScfdsSlotFlowIngressSlotFor control flow that are monitored on the egress processor in the forwarding path, this value will indicate the possible ingress slot for data stream that is possibly causing this suspicious flow control. This object will report -1 when it is undefinedroobsolete
Integer32
.1.3.6.1.4.1.4874.2.2.81.1.1.2.1.8
juniDosProtectionScfdsSlotFlowGroupIndicates whether the flow is a group flow or not. A value of true(1) indicates that the flow represents a group of flows. A value of false(2) indicates that the flow is an individual flow.roobsolete
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.4874.2.2.81.1.1.2.1.9
juniDosProtectionScfdsSlotFlowClearEntryWhen set to clear(1), the suspicious control flow is removed from the suspicious control flow table. When set to ok(0), there is no effect and the suspicious control flow is unchanged. When read, always returns a value of ok(0).rwobsolete
Enumeration
.1.3.6.1.4.1.4874.2.2.81.1.1.2.1.10
juniDosProtectionScfdsSlotTableThe suspicious control flow information for each slot.
SEQUENCE OF JuniDosProtectionScfdsSlotEntry
.1.3.6.1.4.1.4874.2.2.81.1.1.3
juniDosProtectionScfdsSlotEntryThe information for a specific slot.
JuniDosProtectionScfdsSlotEntry
.1.3.6.1.4.1.4874.2.2.81.1.1.3.1
juniDosProtectionScfdsSlotSlotThe slot value for this entry.
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.1.1.3.1.1
juniDosProtectionScfdsSlotClearAllWhen set to clear(1), the suspicious control flow detection system is cleared for this slot. When set to ok(0), there is no effect and the suspicious control flow detection system is unchanged. By clearing the suspicious control flow detection system all flows on the slot are removed from the suspicious flow table. When read, always returns a value of ok(0).rw
Enumeration
.1.3.6.1.4.1.4874.2.2.81.1.1.3.1.2
juniDosProtectionScfdsSlotDiscontinuityTimeThe sysUpTime at which the counters were re-adjusted due to slot restart.ro
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.1.1.3.1.3
juniDosProtectionScfdsSlotTableOverflowStateIndicates whether this slot is under a resource shortage situation. A value of notOverflowingOrGrouping(1) indicates that there is no resource shortage on the slot. A value of grouping(2) or overflowing(3) indicates that this module is suffering from a resource shortage and has acted according to the state of the juniDosProtectionScfdsGlobalGrouping object.ro
JuniDosProtectionScfdsTableOverflowState (Juniper-DOS-PROTECTION-MIB)
.1.3.6.1.4.1.4874.2.2.81.1.1.3.1.4
juniDosProtectionScfdsSlotCurrentSuspiciousFlowsThe number of flows currently marked as suspicious for this slot.ro
Counter32
.1.3.6.1.4.1.4874.2.2.81.1.1.3.1.5
juniDosProtectionScfdsSlotNumberSuspiciousFlowsThe number of suspicious flows seen on this slot, since slot restartro
Counter32
.1.3.6.1.4.1.4874.2.2.81.1.1.3.1.6
juniDosProtectionScfdsSlotNumberSuspiciousFlowGroupsThe number of suspicius flow groups seen on this slot since slot restart.ro
Counter32
.1.3.6.1.4.1.4874.2.2.81.1.1.3.1.7
juniDosProtectionScfdsSlotCurrentSuspiciousFlowGroupsThe number of flows currently falsely considered suspicious for this slot.ro
Counter32
.1.3.6.1.4.1.4874.2.2.81.1.1.3.1.8
juniDosProtectionScfdsSlotCurrentFalseNegativeFlowsThe number of flows currently falsely considered suspicious on this slot.ro
Counter32
.1.3.6.1.4.1.4874.2.2.81.1.1.3.1.9
juniDosProtectionScfdsSlotNumberFalseNegativeFlowsThe number of suspicious flows seen on this slot, since this slot restart.ro
Counter32
.1.3.6.1.4.1.4874.2.2.81.1.1.3.1.10
juniDosProtectionScfdsSlotOverflowsThe number of times this slot has had a table overflow.ro
Counter32
.1.3.6.1.4.1.4874.2.2.81.1.1.3.1.11
juniDosProtectionScfdsSlotFlowMacTableInformation about suspicious control flows.
SEQUENCE OF JuniDosProtectionScfdsSlotFlowMacEntry
.1.3.6.1.4.1.4874.2.2.81.1.1.4
juniDosProtectionScfdsSlotFlowMacEntryInformation about a suspicious control flow.
JuniDosProtectionScfdsSlotFlowMacEntry
.1.3.6.1.4.1.4874.2.2.81.1.1.4.1
juniDosProtectionScfdsSlotFlowMacSlotThe slot value for the flow.
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.1.1.4.1.1
juniDosProtectionScfdsSlotFlowMacIfIndexThe ifIndex value for the flow. For group flows, this value will be zero.
InterfaceIndex (IF-MIB)
.1.3.6.1.4.1.4874.2.2.81.1.1.4.1.2
juniDosProtectionScfdsSlotFlowMacGroupIdThe group id for the flow. The group id will be zero for an individual flow. It is non-zero when the entry represents a group of flows.
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.1.1.4.1.3
juniDosProtectionScfdsSlotFlowMacProtocolThe control protocol for the flow.
JuniDosProtectionProtocolType (Juniper-DOS-PROTECTION-MIB)
.1.3.6.1.4.1.4874.2.2.81.1.1.4.1.4
juniDosProtectionScfdsSlotFlowMacSrcMacThe source MAC address for the flow. A null source MAC address indicates that no source physical address was available.
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.4874.2.2.81.1.1.4.1.5
juniDosProtectionScfdsSlotFlowMacRateThe current rate in packets per second for the flow.ro
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.1.1.4.1.6
juniDosProtectionScfdsSlotFlowMacPeakRateThe peak rate in packets per second for the flow.ro
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.1.1.4.1.7
juniDosProtectionScfdsSlotFlowMacTimeFlaggedThe sysUpTime value for the time when the flow was determined to be suspicious.ro
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.1.1.4.1.8
juniDosProtectionScfdsSlotFlowMacIngressSlotFor control flow that are monitored on the egress processor in the forwarding path, this value will indicate the possible ingress slot for data stream that is possibly causing this suspicious flow control. This object will report -1 when it is undefinedro
Integer32
.1.3.6.1.4.1.4874.2.2.81.1.1.4.1.9
juniDosProtectionScfdsSlotFlowMacGroupIndicates whether the flow is a group flow or not. A value of true(1) indicates that the flow represents a group of flows. A value of false(0) indicates that the flow is an individual flow.ro
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.4874.2.2.81.1.1.4.1.10
juniDosProtectionScfdsSlotFlowMacClearEntryWhen set to clear(1), the suspicious control flow is removed from the suspicious control flow table. When set to ok(0), there is no effect and the suspicious control flow is unchanged. When read, always returns a value of ok(0).rw
Enumeration
.1.3.6.1.4.1.4874.2.2.81.1.1.4.1.11
juniDosProtectionPlatformDpgGroup
OBJECT IDENTIFIER
.1.3.6.1.4.1.4874.2.2.81.1.2
juniDosProtectionDpgSlotRateTableThis table provides information about the calculated minimum rates (as well as the maximum rates) for each dos-protection-group control protocol for each line module.
SEQUENCE OF JuniDosProtectionDpgSlotRateEntry
.1.3.6.1.4.1.4874.2.2.81.1.2.1
juniDosProtectionDpgSlotRateEntryThe rates for an individual dos-protection-group on an line module for a control protocol.
JuniDosProtectionDpgSlotRateEntry
.1.3.6.1.4.1.4874.2.2.81.1.2.1.1
juniDosProtectionDpgSlotRateSlotThe slot value for this entry.
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.1.2.1.1.1
juniDosProtectionDpgSlotRateDpgNameThe dos-protection-group name for this entry.
DisplayString
.1.3.6.1.4.1.4874.2.2.81.1.2.1.1.2
juniDosProtectionDpgSlotRateProtocolThe control protocol for this entry.
JuniDosProtectionProtocolType (Juniper-DOS-PROTECTION-MIB)
.1.3.6.1.4.1.4874.2.2.81.1.2.1.1.3
juniDosProtectionDpgSlotRateMinRateThe minimum rate for this control protocol on this slot for this dos-protection-group. This value is calculated based on the priority rate and oversubscription as well as the control protocol weightro
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.1.2.1.1.4
juniDosProtectionDpgSlotRateMaxRateThe maximum rate for this protocol on this slot for this dos-protection-group. This is equivalent to the configured rate for the dos-protection-groupro
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.1.2.1.1.5
juniDosProtectionDpgSlotRateMinBurstThe minimum burst for this control protocol on this slot for this dos-protection-group. This value is calculated based on the priority burst and oversubscription as well as the control protocol weightro
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.1.2.1.1.6
juniDosProtectionDpgSlotRateMaxBurstThe maximum burst for this protocol on this slot for this dos-protection-group. This is equivalent to the configured burst for the dos-protection-groupro
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.1.2.1.1.7
juniDosProtectionPlatformTrapControl
OBJECT IDENTIFIER
.1.3.6.1.4.1.4874.2.2.81.2
juniDosProtectionScfdsSlotThe slot value.ro
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.2.1
juniDosProtectionPriorityThe control priority value.ro
JuniDosProtectionPriorityType (Juniper-DOS-PROTECTION-MIB)
.1.3.6.1.4.1.4874.2.2.81.2.2
juniDosProtectionProtocolThe control protocol value.ro
JuniDosProtectionProtocolType (Juniper-DOS-PROTECTION-MIB)
.1.3.6.1.4.1.4874.2.2.81.2.3
juniDosProtectionIfIndexThe ifIndex value.ro
InterfaceIndex (IF-MIB)
.1.3.6.1.4.1.4874.2.2.81.2.4
juniDosProtectionGroupIdThe group id value.ro
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.2.5
juniDosProtectionSrcPhysAddrThe source physical MAC address.ro
MacAddress
.1.3.6.1.4.1.4874.2.2.81.2.6
juniDosProtectionScfdsFlowRateThe flow rate at the creation time.ro
Unsigned32
.1.3.6.1.4.1.4874.2.2.81.2.7
juniDosProtectionPlatformMIBConformance
OBJECT IDENTIFIER
.1.3.6.1.4.1.4874.2.2.81.4
juniDosProtectionPlatformMIBCompliances
OBJECT IDENTIFIER
.1.3.6.1.4.1.4874.2.2.81.4.1
juniDosProtectionComplianceThe compliance statement for entities which implement the Juniper Dos Protection Platform specific MIB. Obsoleted with the addition of dos-protection groups.obsolete
Unknown
.1.3.6.1.4.1.4874.2.2.81.4.1.1
juniDosProtectionCompliance2The compliance statement for entities which implement the Juniper Dos Protection Platform specific MIB.
Unknown
.1.3.6.1.4.1.4874.2.2.81.4.1.2
juniDosProtectionPlatformMIBGroups
OBJECT IDENTIFIER
.1.3.6.1.4.1.4874.2.2.81.4.2
juniDosProtectionGroupA collection of objects providing management of platform specific aspects of the DOS protection application in a Juniper product. This became obsolete with the addition of MAC address in the flow table and the addition of dos-protection-groups.
Unknown
.1.3.6.1.4.1.4874.2.2.81.4.2.1
juniDosProtectionNotificationGroupCollection of objects for DOS protection application notifications in a Juniper product.This became obsolete with the addition of MAC address in flow traps.
Unknown
.1.3.6.1.4.1.4874.2.2.81.4.2.2
juniDosProtectionGroup1A collection of objects providing management of platform specific aspects of the DOS protection application in a Juniper product.
Unknown
.1.3.6.1.4.1.4874.2.2.81.4.2.3
juniDosProtectionNotificationGroup1Collection of objects for DOS protection application notifications in a Juniper product.
Unknown
.1.3.6.1.4.1.4874.2.2.81.4.2.4
Juniper-DOS-PROTECTION-PLATFORM-MIB - SNMP MIB Reference | MIBs Explorer