USERGROUP-MIB
The Hirschmann Private Usergroup MIB definitions for Platform devices.
Main OID:
hmUserGroup.1.3.6.1.4.1.248.14.3
50
Objects
Active
Status
3
Dependencies
Imported Objects
Objects
50 total| Object Name |
|---|
hmUserGroupThe Hirschmann Private Usergroup MIB definitions for Platform devices. MODULE-IDENTITY .1.3.6.1.4.1.248.14.3 |
hmUserGroupEventThe events of hmUserGroup. OBJECT IDENTIFIER .1.3.6.1.4.1.248.14.3.0 |
hmNewUserTrapThis trap is sent if an unknown MAC address is detected on a port. NOTIFICATION-TYPE .1.3.6.1.4.1.248.14.3.0.1 |
hmPortSecurityTrapThis trap is sent if a MAC address / IP address is detected on a port
which is not acceptable for the current setting of
hmPortSecPermission AND ...SecAction is either set to trapOnly(2)
or portDisable(3). NOTIFICATION-TYPE .1.3.6.1.4.1.248.14.3.0.2 |
hmPortSecConfigErrorTrapThis trap is sent when two or more users with incompatible
user group settings have been detected at the port. NOTIFICATION-TYPE .1.3.6.1.4.1.248.14.3.0.3 |
hmUserGroupTableA list of user group definitions. SEQUENCE OF HmUserGroupEntry .1.3.6.1.4.1.248.14.3.1 |
hmUserGroupEntryuser group definition HmUserGroupEntry .1.3.6.1.4.1.248.14.3.1.1 |
hmUserGroupIDThe user group number identifying this instance.ro Integer32 .1.3.6.1.4.1.248.14.3.1.1.1 |
hmUserGroupDescriptionA textual description of the user group instance.rw DisplayString (SNMPv2-TC) .1.3.6.1.4.1.248.14.3.1.1.2 |
hmUserGroupRestrictedIf set to true(1) any member of this group is restricted to ports
- which have hmPortSecPermission set to group(2) and
- the group is in hmPortSecAllowedGroupIDs.
If set to false(2) the user may also connect to a port if permitted
by other hmPortSecPermission settings, e.g. known(3) or world(4).
The following access restrictions apply:
UserRestr. UserGroupRestr. PortSecPermission access allowed
false false user hmPortSecAllowedUserID
false false group hmPortSecAllowedGroupIDs
false false known any user group member
false false world yes
true false/true user hmPortSecAllowedUserID
true false/true group no
true false/true known no
true false/true world no
false true user hmPortSecAllowedUserID
false true group hmPortSecAllowedGroupIDs
false true known no
false true world norw Enumeration .1.3.6.1.4.1.248.14.3.1.1.3 |
hmUserGroupSecActionThis variable specifies the action which is taken if a
user tries to connect to the given port when he is not
allowed to do so. Setting the variable to none(1)
disables any action. A value of trapOnly(2) generates
a trap. Setting the value to portDisable(3) will
send a trap, and additionally disable the port until
it is re-enabled by management.rw Enumeration .1.3.6.1.4.1.248.14.3.1.1.4 |
hmUserGroupMemberTableA list of users which are members of a given user group. SEQUENCE OF HmUserGroupMemberEntry .1.3.6.1.4.1.248.14.3.2 |
hmUserGroupMemberEntryAn user group member entry. HmUserGroupMemberEntry .1.3.6.1.4.1.248.14.3.2.1 |
hmUserGroupMemberGroupIDuser group id of this member.ro Integer32 .1.3.6.1.4.1.248.14.3.2.1.1 |
hmUserGroupMemberUserIDuser ID of this member.ro MemberID .1.3.6.1.4.1.248.14.3.2.1.2 |
hmUserTableList of all user group members. SEQUENCE OF HmUserEntry .1.3.6.1.4.1.248.14.3.3 |
hmUserEntryAn user entry. HmUserEntry .1.3.6.1.4.1.248.14.3.3.1 |
hmUserIDUser ID.ro MemberID .1.3.6.1.4.1.248.14.3.3.1.1 |
hmUserRestrictedIf set to true(1) the user may only connect to ports which
have hmPortSecPermission set to user(1) and hmPortSecAllowedUserID
set to hmUserID.
If set to false(2) the user may also connect to a port if permitted
by other hmPortSecPermission settings, e.g. group(2), known(3) or
world(4).
The following access restrictions apply:
UserRestr. UserGroupRestr. PortSecPermission access allowed
-
false false user hmPortSecAllowedUserID
false false group hmPortSecAllowedGroupIDs
false false known any user group member
false false world yes
true false/true user hmPortSecAllowedUserID
true false/true group no
true false/true known no
true false/true world no
false true user hmPortSecAllowedUserID
false true group hmPortSecAllowedGroupIDs
false true known no
false true world norw Enumeration .1.3.6.1.4.1.248.14.3.3.1.2 |
hmPortSecurityTableList of port security entries. SEQUENCE OF HmPortSecurityEntry .1.3.6.1.4.1.248.14.3.4 |
hmPortSecurityEntryA single port security entry. HmPortSecurityEntry .1.3.6.1.4.1.248.14.3.4.1 |
hmPortSecSlotIDSlot number the switch unit is plugged in.ro Integer32 .1.3.6.1.4.1.248.14.3.4.1.1 |
hmPortSecPortIDPort number within the group.ro Integer32 .1.3.6.1.4.1.248.14.3.4.1.2 |
hmPortSecPermissionThis variable specifies the security level of the port.
If set to user(1) only the user defined by hmPortSecAllowedUserID
may connect to this port. In group(2) mode only members of the
user group specified by hmPortSecAllowedGroupIDs are allowed.
known(3) means that all users belonging to any user group
(all known users) are accepted. Setting the value to world(4)
disables the security features, i.e. any user is permitted.
For backbone ports the value uplink(5) should be used.
If a user does not match the allowed permission he is not able
to connect to the network over this port, additionally the actions
configured through hmPortSecAction are taken.rw Enumeration .1.3.6.1.4.1.248.14.3.4.1.3 |
hmPortSecAllowedUserIDThis variable specifies the allowed user ID if
hmPortSecPermission has been set to user(1).rw MemberID .1.3.6.1.4.1.248.14.3.4.1.4 |
hmPortSecAllowedGroupIDsThis variable specifies the allowed user groups if
hmPortSecPermission has been set to group(2).
Each group is represented by a single bit. If a
group does not exist the value of the bit is ignored.rw OCTET STRING .1.3.6.1.4.1.248.14.3.4.1.5 |
hmPortSecConnectedUserIDThis variable reflects the user ID of a connected user
actually seen on this port. If there is no user connected
the value will be 0x00:00:00:00:00:00.ro MemberID .1.3.6.1.4.1.248.14.3.4.1.6 |
hmPortSecActionThis variable specifies the action which is taken if a
user tries to connect to the given port when he is not
allowed to do so. Setting the variable to none(1)
disables any action. A value of trapOnly(2) generates
a trap. Setting the value to portDisable(3) will
send a trap, and additionally disable the port until
it is re-enabled by management. Setting the value to
autoDisable(3) will send a trap, and additionally
auto-disable the port for the amount of time specified per port.rw Enumeration .1.3.6.1.4.1.248.14.3.4.1.7 |
hmPortSecAutoReconfigureThis variable controls whether the agent should
re-configure the port when another user with an
incompatible user group setting has been detected.
The default setting, true(1), should be used if a
single user is connected to the port.
The value false(2) might be useful if more than one
user is connected to the port (workgroup mode).rw Enumeration .1.3.6.1.4.1.248.14.3.4.1.8 |
hmPortSecPortStatusThis variable shows the current status of the port with
respect to port security. If the address seen on the port
is allowed, the status is enabled(1), if it is not allowed,
the status is disabled(2) if hmUserGroupSecurityAction is
portDisable(3), or enabledWithWrongAddr(3) if
hmUserGroupSecurityAction is none(1) or trapOnly(2).ro Enumeration .1.3.6.1.4.1.248.14.3.4.1.9 |
hmPortSecAllowedUserIPIDThis variable specifies the allowed user IP ID if
hmPortSecPermission has been set to user(1).rw IpAddress .1.3.6.1.4.1.248.14.3.4.1.10 |
hmPortSecDynamicLimitThis variable signifies the limit of dynamically learned allowed MAC addresses
for a specific port.rw Integer32 .1.3.6.1.4.1.248.14.3.4.1.11 |
hmPortSecDynamicCountThe current number of dynamically learned allowed MAC addresses on this port.ro Integer32 .1.3.6.1.4.1.248.14.3.4.1.12 |
hmUserGroupSecurityActionThis variable specifies the action which is taken if a
user tries to connect to the given port when he is not
allowed to do so. Setting the variable to none(1)
disables any action. A value of trapOnly(2) generates
a trap. Setting the value to portDisable(3) will
send a trap, and additionally disable the port until
it is re-enabled by management.rw Enumeration .1.3.6.1.4.1.248.14.3.5 |
hmUserGroupPortSecurityModeThis variable specifies the mode of the hmPortSecurityTable.rw Enumeration .1.3.6.1.4.1.248.14.3.8 |
hmPortSecExtendedGroup OBJECT IDENTIFIER .1.3.6.1.4.1.248.14.3.10 |
hmPortSecExtendedTableList of extended port security entries. SEQUENCE OF HmPortSecExtendedEntry .1.3.6.1.4.1.248.14.3.10.1 |
hmPortSecExtendedEntryA single extended port security entry. HmPortSecExtendedEntry .1.3.6.1.4.1.248.14.3.10.1.1 |
hmPortSecExtSlotIDSlot number the switch unit is plugged in. Integer32 .1.3.6.1.4.1.248.14.3.10.1.1.1 |
hmPortSecExtPortIDPort number within the group. Integer32 .1.3.6.1.4.1.248.14.3.10.1.1.2 |
hmPortSecExtActionThis variable specifies the action which is taken if a
user tries to connect to the given port when he is not
allowed to do so. Setting the variable to none(1)
disables any action. A value of trapOnly(2) generates
a trap. Setting the value to portDisable(3) will
send a trap, and additionally disable the port until
it is re-enabled by management.rw Enumeration .1.3.6.1.4.1.248.14.3.10.1.1.3 |
hmPortSecExtPortStatusThis variable shows the current status of the port with
respect to port security. If the address seen on the port
is allowed, the status is enabled(1), if it is not allowed,
the status is disabled(2) if hmUserGroupSecurityAction is
portDisable(3), or enabledWithWrongAddr(3) if
hmUserGroupSecurityAction is none(1) or trapOnly(2).ro Enumeration .1.3.6.1.4.1.248.14.3.10.1.1.4 |
hmPortSecMultipleAdressesTableList of port security entries with multiple allowed addresses. SEQUENCE OF HmPortSecMultipleAdressesEntry .1.3.6.1.4.1.248.14.3.10.2 |
hmPortSecMultipleAdressesEntryA single port security entry with multiple allowed addresses. HmPortSecMultipleAdressesEntry .1.3.6.1.4.1.248.14.3.10.2.1 |
hmPortSecMASlotIDSlot number the switch unit is plugged in. Integer32 .1.3.6.1.4.1.248.14.3.10.2.1.1 |
hmPortSecMAPortIDPort number within the group. Integer32 .1.3.6.1.4.1.248.14.3.10.2.1.2 |
hmPortSecMAExtendedIndexNumber of adresses. Integer32 .1.3.6.1.4.1.248.14.3.10.2.1.3 |
hmPortSecMAAllowedUserIDsThis variable specifies the allowed user ID if
hmPortSecPermission has been set to user(1).rw MemberID .1.3.6.1.4.1.248.14.3.10.2.1.4 |
hmPortSecMAAllowedUserIPIDsThis variable specifies the allowed user IP ID if
hmPortSecPermission has been set to user(1).rw IpAddress .1.3.6.1.4.1.248.14.3.10.2.1.5 |
hmPortSecMAAllowedUserIDMaskThe number of bits from left ro right, that are used
from the MAC address.rw Integer32 .1.3.6.1.4.1.248.14.3.10.2.1.6 |