CISCO-LWAPP-ACL-MIB
48 objects
This MIB is intended to be implemented on all those devices operating as Central Controllers (CC) that terminate the Light Weight Access Point Protocol tunnel from Light-weight LWAPP Access Points. This MIB provides configuration and status information about the ACLs on the controller. Particularly this mib covers the CPU ACLs for the wireless controllers. Traffic to the controller CPU comes from the NPU (Network Processing Unit). Using CPU ACLs, the user can place restrictions on type of traffic reaching the CPU of the controller from the NPU. CPU ACLs introduce an ACL for the traffic to the CPU of controller. With this ACL the type of packets reaching the CPU can be controlled. The mode of operation is as follows. The administrator designates one ACL for the traffic to the CPU. The ACL kicks in for packets from the NPU to the CPU. Each ACL is an ordered set of rules. If a rule matches then action for that rule is applied to the packet. The decision to send or drop the packet is taken based on the action parameter of the ACL. There will be no ACL for the packets from the CPU to the NPU. GLOSSARY Access Control List ( ACL ) A list of rules used to restrict the traffic reaching an interface or the CPU. Each ACL is an ordered set of rules and actions. If a rule matches then the action for that rule is applied to the packet. Access Point ( AP ) An entity that contains an 802.11 medium access control ( MAC ) and physical layer ( PHY ) interface and provides acess to the distribution services via the wireless medium for associated clients. CPU ACL ( CPU ACL ) The ACL applied to the CPU. This controls the type of traffic reaching the CPU of the controller. Network Processing Unit ( NPU ) This entity is responsible for forwarding traffic to the CPU. The only exceptions are data coming through the console port and the Service port i.e. these communicate directly with the CPU and not via the NPU. Light Weight Access Point Protocol ( LWAPP ) This is a generic protocol that defines the communciation between the Access Points and the Central Controller. REFERENCE [1] Part 11 Wireless LAN Medium Access Control ( MAC ) and Physical Layer ( PHY ) Specifications.
Imported Objects
| CISCO-SMI | ciscoMgmt |
| CISCO-TC | CiscoURLString |
| INET-ADDRESS-MIB | InetAddress InetAddressType |
| SNMP-FRAMEWORK-MIB | SnmpAdminString |
| SNMPv2-CONF | MODULE-COMPLIANCE OBJECT-GROUP |
| SNMPv2-SMI | Counter32 MODULE-IDENTITY OBJECT-TYPE Unsigned32 |
| SNMPv2-TC | RowStatus TruthValue |
| OID | Name | Access | Status | Description |
|---|---|---|---|---|
| 1.3.6.1.4.1.9.9.577 | IdentityciscoLwappAclMIB | This MIB is intended to be implemented on all those devices operating as Central Controllers (CC) that terminate the Light Weight Access Point Protocol tunnel … | ||
| 1.3.6.1.4.1.9.9.577.0 | NodeciscoLwappAclMIBNotifs | |||
| 1.3.6.1.4.1.9.9.577.1 | NodeciscoLwappAclMIBObjects | |||
| 1.3.6.1.4.1.9.9.577.1.1 | NodeciscoLwappCpuAcl | |||
| 1.3.6.1.4.1.9.9.577.1.1.1 | TableclaCpuAclTable | not-accessible | current | This table represents the CPU ACL related parameters of the controller. |
| 1.3.6.1.4.1.9.9.577.1.1.1.1 | RowclaCpuAclEntry | not-accessible | current | Each entry represents a conceptual row in this table. For each CPU ACL of the controller, there will be a row. |
| 1.3.6.1.4.1.9.9.577.1.1.1.1.1 | ColumnclaCpuAclIndex | not-accessible | current | This object represents unique instance of a CPU ACL on the controller. |
| 1.3.6.1.4.1.9.9.577.1.1.1.1.2 | ColumnclaCpuAclName | read-write | current | This object specifies name of the ACL applied to the CPU. The access list to be applied should already exist on the controller. If it is required to remove the… |
| 1.3.6.1.4.1.9.9.577.1.1.1.1.3 | ColumnclaCpuAclPacketApplicability | read-write | current | This object specifies whether CPU ACL applied for only wired packets, wireless packets or both. From release 7.0 onwards, wired and wireless is not supported. … |
| 1.3.6.1.4.1.9.9.577.1.2 | NodeciscoLwappControllerAcl | |||
| 1.3.6.1.4.1.9.9.577.1.2.1 | TableclaAclTable | not-accessible | current | The table represents the ACLs (Access Control Lists) and counter status on the Switch. |
| 1.3.6.1.4.1.9.9.577.1.2.1.1 | RowclaAclEntry | not-accessible | current | Each entry represents a conceptual row in this table. For each ACL on the controller, there will be a row. |
| 1.3.6.1.4.1.9.9.577.1.2.1.1.1 | ColumnclaAclName | not-accessible | current | This object represents name of the Access Control List. |
| 1.3.6.1.4.1.9.9.577.1.2.1.1.2 | ColumnclaAclCounterClear | read-write | current | This object specifies the counter clear value of a unique ACL name. A value of 'true' indicates that, ACL counter will be cleared. A value of 'false' indicates… |
| 1.3.6.1.4.1.9.9.577.1.2.2 | TableclaAclRuleTable | not-accessible | current | This table represents the rules and number of hits under ACL on the switch. |
| 1.3.6.1.4.1.9.9.577.1.2.2.1 | RowclaAclRuleEntry | not-accessible | current | Each entry represents a conceptual row in this table. For each ACL rule of the controller, there will be a row. |
| 1.3.6.1.4.1.9.9.577.1.2.2.1.2 | ColumnclaAclRuleIndex | not-accessible | current | This object represents index of the ACL rule. This can be updated to reset the sequence of the rules of an ACL. |
| 1.3.6.1.4.1.9.9.577.1.2.2.1.3 | ColumnclaAclRuleHits | read-only | current | This object indicates number of hits in the particular rule under the ACL. This object is cleared by setting the claAclCounterClear object. |
| 1.3.6.1.4.1.9.9.577.1.2.3 | TableclaAclUrlTable | not-accessible | current | This table represents the URL ACLs (Access Control Lists). |
| 1.3.6.1.4.1.9.9.577.1.2.3.1 | RowclaAclUrlEntry | not-accessible | current | Each entry represents a conceptual row in this table. For each ACL rule of the controller, there will be a row. |
| 1.3.6.1.4.1.9.9.577.1.2.3.1.1 | ColumnclaAclUrlIndex | not-accessible | current | This object represents index of the ACL URL. This can be updated to reset the sequence of the URL entries of an ACL. |
| 1.3.6.1.4.1.9.9.577.1.2.3.1.2 | ColumnclaAclUrlName | read-create | current | This object specifies URL used for ACL. This is used by ACL to permit or deny |
| 1.3.6.1.4.1.9.9.577.1.2.3.1.3 | ColumnclaAclUrlRowStatus | read-create | current | This is the status column for this row and is used to create and delete specific instances of rows in this table. |
| 1.3.6.1.4.1.9.9.577.1.2.4 | TableclaUrlAclTable | not-accessible | current | This table represents URL ACLs on the switch. |
| 1.3.6.1.4.1.9.9.577.1.2.4.1 | RowclaUrlAclEntry | not-accessible | current | Each entry represents the attributes for cLlaUrlAclTable. An entry gets added to the table on creating a Url ACL. Only 64 Url-Acls can be configured |
| 1.3.6.1.4.1.9.9.577.1.2.4.1.1 | ColumnclaUrlAclName | not-accessible | current | This object specifies name of the URL Access Control List. |
| 1.3.6.1.4.1.9.9.577.1.2.4.1.2 | ColumnclaUrlAclApplyMode | read-create | current | This object specifies the apply mode of the URL ACL on the switch. A value of notapplied(1) indicates that, URL ACL not applied. A value of applied(2) indicate… |
| 1.3.6.1.4.1.9.9.577.1.2.4.1.3 | ColumnclaUrlAclCounterClear | read-create | current | This object specifies the URL ACL counter clear value. A value of 'true' indicates that, URL ACL counters will be cleared. A value of 'false' indicates that, U… |
| 1.3.6.1.4.1.9.9.577.1.2.4.1.4 | ColumnclaUrlAclRowStatus | read-create | current | This object specifies status column for this row and used to create and delete specific instances of rows in this table. |
| 1.3.6.1.4.1.9.9.577.1.2.4.1.5 | ColumnclaUrlAclListType | read-create | current | This object specifies the URL ACL list type. A value of whitelist(1) indicates that, all the url configured in acl will only be permitted. A value of blacklist… |
| 1.3.6.1.4.1.9.9.577.1.2.5 | TableclaUrlAclRuleTable | not-accessible | current | This table represents URL ACL Rules. |
| 1.3.6.1.4.1.9.9.577.1.2.5.1 | RowclaUrlAclRuleEntry | not-accessible | current | Each entry represents the attributes for claUrlAclRuleTable. An entry gets added to the table on creating a rule on URL ACL.In a given ACL there can only be 10… |
| 1.3.6.1.4.1.9.9.577.1.2.5.1.1 | ColumnclaUrlAclRuleIndex | not-accessible | current | This object represents the unique index of the URL ACL rule. This can be updated to reset the sequence of the rules of an URL ACL. |
| 1.3.6.1.4.1.9.9.577.1.2.5.1.2 | ColumnclaUrlAclRuleUrl | read-create | current | This object specifies the URL of a rule. |
| 1.3.6.1.4.1.9.9.577.1.2.5.1.3 | ColumnclaUrlAclRuleAction | read-create | current | This object specifies the permission mode of a rule. A value of deny(0) indicates that, URL is to be denied. A value of permit(1) indicates that, URL is to be … |
| 1.3.6.1.4.1.9.9.577.1.2.5.1.4 | ColumnclaUrlAclRuleHits | read-only | current | This object indicates number of hits in the particular rule under the URL ACL.This object is cleared by setting the claUrlAclCounterClear object. |
| 1.3.6.1.4.1.9.9.577.1.2.5.1.5 | ColumnclaUrlAclRuleRowStatus | read-create | current | This is the status column for this row and is used to create and delete specific instances of rows in this table. |
| 1.3.6.1.4.1.9.9.577.1.3 | NodeciscoLwappControllerAclGeneral | |||
| 1.3.6.1.4.1.9.9.577.1.3.1 | ScalarclaAclCounterEnable | read-write | current | This object specifies the ACL Counters status if packets are hitting any of the ACLs that are configured on the controller. A value of 'true' indicates that AC… |
| 1.3.6.1.4.1.9.9.577.1.3.2 | ScalarclaUrlAclExternalServerIpType | read-write | current | This object specifies the IP address type of External server to which the blocked URL will be redirected. |
| 1.3.6.1.4.1.9.9.577.1.3.3 | ScalarclaUrlAclExternalServerIp | read-write | current | This object specifies the Ip address of External server to which the blocked URL will be redirected. |
| 1.3.6.1.4.1.9.9.577.2 | NodeciscoLwappAclMIBConform | |||
| 1.3.6.1.4.1.9.9.577.2.1 | NodeciscoLwappAclMIBCompliances | |||
| 1.3.6.1.4.1.9.9.577.2.1.1 | ComplianceciscoLwappAclMIBCompliance | deprecated | The compliance statement for the SNMP entities that implement the ciscoLwappAclMIB module. | |
| 1.3.6.1.4.1.9.9.577.2.1.2 | ComplianceciscoLwappAclMIBComplianceRev1 | current | The compliance statement for the SNMP entities that implement the ciscoLwappAclMIB module. | |
| 1.3.6.1.4.1.9.9.577.2.2 | NodeciscoLwappAclMIBGroups | |||
| 1.3.6.1.4.1.9.9.577.2.2.1 | GroupciscoLwappCpuAclGroup | current | This collection of objects represents the information about the general attributes of CPU ACL. | |
| 1.3.6.1.4.1.9.9.577.2.2.2 | GroupciscoLwappAclGroup | current | This collection of objects represents the information about the general attributes of controller ACL. |