Home/Catalog/ZYXEL-ACL-MIB

ZYXEL-ACL-MIB

AI MIB Summary

The ZYXEL-ACL-MIB module enables the monitoring and configuration of Access Control List (ACL) entries, including rule definitions, hit counts, and packet statistics, on ZyXEL network security appliances and routers.

The subtree for access control list (ACL)
Main OID:
zyxelAcl.1.3.6.1.4.1.890.1.15.3.10
52
Objects
Active
Status
14
Dependencies

Imported Objects

Objects

52 total
Object Name
zyxelAclThe subtree for access control list (ACL)
MODULE-IDENTITY
.1.3.6.1.4.1.890.1.15.3.10
RFC1155-SMIThe subtree for access control list (ACL)
Unknown
.1.3.6.1.4.1.890.1.15.3.10
IF-MIBThe subtree for access control list (ACL)
NOTIFICATION-TYPE
.1.3.6.1.4.1.890.1.15.3.10
zyxelClassifierStatus
OBJECT IDENTIFIER
.1.3.6.1.4.1.890.1.15.3.10.1
zyxelClassifierTableThe table contains classifier configuration.
SEQUENCE OF ZyxelClassifierEntry
.1.3.6.1.4.1.890.1.15.3.10.1.1
zyxelClassifierEntryAn entry contains classifier configuration.
ZyxelClassifierEntry
.1.3.6.1.4.1.890.1.15.3.10.1.1.1
zyClassifierNameThe name of classifier rule is used for identifying purposes.
DisplayString (SNMPv2-TC)
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.1
zyClassifierStateEnable/Disable classifier rule on this switch.ro
EnabledStatus (P-BRIDGE-MIB)
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.2
zyClassifierPacketFormatPacket format for classifier rule. A value of 802.3 indicates that the packets are formatted according to the IEEE 802.3 standards. A value of Ethernet II indicates that the packets are formatted according to RFC 894, Ethernet II encapsulation.ro
Enumeration
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.3
zyClassifierVidSource VLAN ID for classifier rule. The range is 1~4094 and value 0 means any VLAN.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.4
zyClassifier8021pPriority802.1p priority for classifier rule. 0~7. The range is 0~7 and value -1 means any priority level.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.5
zyClassifierEthernetTypeEthernet type for classifier rule. It is represented in decimal expression and value 65535 means any Ethernet type.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.6
zyClassifierSourceMacAddressSource MAC address for classifier rule. 00:00:00:00:00:00 means any source MAC address.ro
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.7
zyClassifierIncomingPortIncoming Port for classifier rule. Value 65536 means any port.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.8
zyClassifierDestinationMacAddressDestination MAC address for classifier rule. 00:00:00:00:00:00 means any destination MAC address.ro
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.9
zyClassifierDSCPDSCP (DiffServ Code Point) for classifier rule. The range is 0~63 and value -1 means any DSCP.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.10
zyClassifierIpProtocolIP Protocol for classifier rule. Value 255 means any IP protocol.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.11
zyClassifierEstablishOnlyEstablish Only for TCP protocol type in classifier rule. This means that the switch will pick out the packets that are sent to establish TCP connections.ro
EnabledStatus (P-BRIDGE-MIB)
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.12
zyClassifierSourceIpAddressSource IP address for classifier rule. 0.0.0.0 means any source IP address.ro
IpAddress
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.13
zyClassifierSourceIpMaskBitsSource IP mask bits for classifier rule.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.14
zyClassifierSourceSocketSource socket number for classifier rule. Value 0 means any socket number.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.15
zyClassifierDestinationIpAddressDestination IP address for classifier rule. 0.0.0.0 means any destination IP address.ro
IpAddress
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.16
zyClassifierDestinationIpMaskBitsDestination IP mask bits for classifier rule.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.17
zyClassifierDestinationSocketDestination socket number for classifier rule. Value 0 means any socket number.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.18
zyClassifierIPv6DSCPDSCP (DiffServ Code Point) for classifier rule. The range is 0~63 and value -1 means any DSCP.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.19
zyClassifierIPv6NextHeaderIPv6 next header protocol type for classifier rule. Value 255 means any protocol type.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.20
zyClassifierIPv6EstablishOnlyEstablish Only for TCP protocol type in classifier rule. This means that the switch will pick out the packets that are sent to establish TCP connections.ro
EnabledStatus (P-BRIDGE-MIB)
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.21
zyClassifierIPv6SourceIpAddressIPv6 source address for classifier rule. :: means any IPv6 source ip address.ro
InetAddress (INET-ADDRESS-MIB)
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.22
zyClassifierIPv6SourceIpPrefixLengthIPv6 source address prefix length for classifier rule.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.23
zyClassifierIPv6DestinationIpAddressIPv6 destination address for classifier rule. :: means any IPv6 destination ip address.ro
InetAddress (INET-ADDRESS-MIB)
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.24
zyClassifierIPv6DestinationIpPrefixLengthIPv6 destination address prefix length for classifier rule.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.25
zyClassifierRowstatusThis object shows the entry of classifier rule status.ro
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.890.1.15.3.10.1.1.1.26
zyxelPolicyStatus
OBJECT IDENTIFIER
.1.3.6.1.4.1.890.1.15.3.10.2
zyxelPolicyTableThe table contains policy configuration.
SEQUENCE OF ZyxelPolicyEntry
.1.3.6.1.4.1.890.1.15.3.10.2.1
zyxelPolicyEntryAn entry contains policy configuration.
ZyxelPolicyEntry
.1.3.6.1.4.1.890.1.15.3.10.2.1.1
zyPolicyNameThe name of policy rule is used for identifying purposes.
DisplayString (SNMPv2-TC)
.1.3.6.1.4.1.890.1.15.3.10.2.1.1.1
zyPolicyStateEnable/Disable policy rule on this switch.ro
EnabledStatus (P-BRIDGE-MIB)
.1.3.6.1.4.1.890.1.15.3.10.2.1.1.2
zyPolicyClassifierThe classifier(s) applies in this policy rule.ro
DisplayString (SNMPv2-TC)
.1.3.6.1.4.1.890.1.15.3.10.2.1.1.3
zyPolicyVidVLAN ID for policy rule.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.2.1.1.4
zyPolicyEgressPortThe outgoing port number in this policy rule.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.2.1.1.5
zyPolicy8021pPrioritySpecify a 802.1p priority level for policy rule. The value of 802.1p is between 0 and 7.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.2.1.1.6
zyPolicyDSCPSpecify a DSCP (DiffServ Code Point) for policy rule. DSCP number is between 0 and 63.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.2.1.1.7
zyPolicyTOSSpecify the type of service (TOS) priority level for policy rule. The value of TOS is between 0 and 7.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.2.1.1.8
zyPolicyBandwidthSpecify the bandwidth for policy rule in kilobit per second (Kbps).ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.2.1.1.9
zyPolicyOutOfProfileDSCPSpecify a new DSCP number (between 0 and 63) for policy rule if you want to replace or remark the DSCP number for out-of-profile traffic.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.2.1.1.10
zyPolicyForwardingActionThere are three forwarding actions for policy rule. 'No change' is forward the packets. 'Discard the packet' is drop the packets. 'Do not drop the matching frame previously marked for dropping' is retain the frames that were marked to be dropped before.ro
Enumeration
.1.3.6.1.4.1.890.1.15.3.10.2.1.1.11
zyPolicyPriorityActionThere are four priority actions for policy rule. 'No change' is keep the priority setting of the frames. 'Set the packet's 802.1 priority' is replace the packet's 802.1 priority field with the value you set in the Priority field. 'Send the packet to priority queue' is put the packets in the designated queue. 'Replace the 802.1 priority field with the IP TOS value' to replace the packet's 802.1 priority field with the value you set in the TOS field.ro
Enumeration
.1.3.6.1.4.1.890.1.15.3.10.2.1.1.12
zyPolicyDiffServActionThere are four DiffServ actions for policy rule. 'No change' is keeping the TOS and/or DSCP fields in the packets. 'Set the packet's TOS field' is set the TOS field with the value you configure in the TOS field. 'Replace the IP TOS with the 802.1 priority value' is replace the TOS field with the value you configure in the Priority field. 'Set the Diffserv Codepoint field in the frame' to set the DSCP field with the value you configure in the DSCP field.ro
Enumeration
.1.3.6.1.4.1.890.1.15.3.10.2.1.1.13
zyPolicyOutgoingActionThere are four outgoing actions for policy rule. 'Send the packet to the mirror port' is sent the packet to the mirror port. 'Send the packet to the egress port' is sent the packet to the egress port. 'Send the matching frames to the egress port' is sent the matching policy rule frames to the egress port. 'Set the packets VLAN ID' is set packet with tag.ro
Bits
.1.3.6.1.4.1.890.1.15.3.10.2.1.1.14
zyPolicyMeteringStateEnable/Disable bandwidth limitation on the traffic flow(s) then set the actions to be taken on out-of-profile packets.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.10.2.1.1.15
zyPolicyOutOfProfileActionThere are four out of profile actions for policy rule. 'Drop the packet' is discard the out-of-profile traffic. 'Change the DSCP value' is replace the DSCP field with the value specified in the Out of profile DSCP field. 'Set Out-Drop Precedence' is mark out-of-profile traffic and drop it when network is congested. 'Do not drop the matching frame previously marked for dropping' to queue the frames that are marked to be dropped.ro
Bits
.1.3.6.1.4.1.890.1.15.3.10.2.1.1.16
zyPolicyRowstatusThis object shows the entry of policy rule status.ro
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.890.1.15.3.10.2.1.1.17
ZYXEL-ACL-MIB - SNMP MIB Reference | MIBs Explorer