MIB Viewer

H3C-PORT-SECURITY-MIB

55 objects
The MIB module is used for managing port security.
OIDNameAccessStatusDescription
1.3.6.1.4.1.2011.10.2.26.1Identityh3cPortSecurityMIBThe MIB module is used for managing port security.
1.3.6.1.4.1.2011.10.2.26.1.1Nodeh3cPortSecurityLeaf
1.3.6.1.4.1.2011.10.2.26.1.1.1Scalarh3cSecurePortSecurityControlread-writecurrentThis attribute controls the system wide operation of network access control. The configured port security options only become operational when this attribute i…
1.3.6.1.4.1.2011.10.2.26.1.1.2Scalarh3cSecurePortVlanMembershipListaccessible-for-notifycurrentThis is a dummy MIB object referenced by the h3csecureLogon and h3csecureLogoff traps. This object contains a comma separated list of the VLAN identifiers (0-4…
1.3.6.1.4.1.2011.10.2.26.1.1.4Nodeh3cSecureRalmObjects
1.3.6.1.4.1.2011.10.2.26.1.1.4.1Scalarh3cSecureRalmDefaultSessionTimeread-writecurrentSpecifies the default session lifetime in seconds before a forwarding MAC address is re-authenticated. The default time is 1800 seconds.
1.3.6.1.4.1.2011.10.2.26.1.1.4.2Scalarh3cSecureRalmHoldoffTimeread-writecurrentSpecifies the time in seconds before a blocked (denied) MAC address can be re-authenticated. The default time is 60 seconds.
1.3.6.1.4.1.2011.10.2.26.1.1.4.3Scalarh3cSecureRalmReauthenticateread-writecurrentWriting a MAC address to this object causes an immediate RALM re-authentication of this address (can be on any port). If the MAC address not currently known to…
1.3.6.1.4.1.2011.10.2.26.1.1.4.4Scalarh3cSecureRalmAuthModeread-writecurrentThis controls how MAC addresses are authenticated. papUsernameAsMacAddress(1) Authentication uses the RADIUS server by sending a PAP request with Username and …
1.3.6.1.4.1.2011.10.2.26.1.1.4.5Scalarh3cSecureRalmAuthUsernameread-writecurrentThis is the username used for authentication requests where h3cSecureRalmAuthMode is papUsernameFixed. Default shall be 'mac'.
1.3.6.1.4.1.2011.10.2.26.1.1.4.6Scalarh3cSecureRalmAuthPasswordread-writecurrentThis is the password used for authentication requests where h3cSecureRalmAuthMode is papUsernameFixed. Default shall be a null string.
1.3.6.1.4.1.2011.10.2.26.1.1.4.7Scalarh3cSecureRalmAuthDomainread-writecurrentMAC-authentication users may be configured in a specific domain, which excludes 802.1x and other authentication users. This specifies the domain of all MAC-aut…
1.3.6.1.4.1.2011.10.2.26.1.1.4.8Scalarh3cSecureRalmAuthOfflineTimeread-writecurrentSwitch isn't informed when online user is offline, so switch should be able to detect offline and inform radius server to stop accounting when there is no traf…
1.3.6.1.4.1.2011.10.2.26.1.1.4.9Scalarh3cSecureRalmAuthServerTimeoutTimeread-writecurrentWhen switch sends request packets (include connecting request and offline request, etc) to radius server and there is no response, switch will terminate the au…
1.3.6.1.4.1.2011.10.2.26.1.1.4.10Scalarh3cSecureMacControlread-writecurrentThis attribute controls the system wide operation of mac-authentication. The system-wide mac-authentication options become non-operational when this attribute …
1.3.6.1.4.1.2011.10.2.26.1.2Nodeh3cPortSecurityTables
1.3.6.1.4.1.2011.10.2.26.1.2.1Tableh3cSecurePortTablenot-accessiblecurrentThis table defines the security status of each secure port. Each port can have a number of authorised MAC addresses, and these are stored in the h3cSecureAddre…
1.3.6.1.4.1.2011.10.2.26.1.2.1.1Rowh3cSecurePortEntrynot-accessiblecurrentThere is a row in this table for each secure port, and allows repeater ports to be configured for security on a per port basis. It is indexed using the object …
1.3.6.1.4.1.2011.10.2.26.1.2.1.1.1Columnh3cSecurePortModeread-writecurrentDetermines the learning and security modes of the port. See h3cSecureNeedToKnowMode and h3cSecureIntrusionAction to configure Need To Know and Intrusion Action…
1.3.6.1.4.1.2011.10.2.26.1.2.1.1.2Columnh3cSecureNeedToKnowModeread-writecurrentAttribute to determine which frames are to be forwarded to this port intact. 1 - Need To Know is not available. 2 - All frames. 3 - Frames addressed to the aut…
1.3.6.1.4.1.2011.10.2.26.1.2.1.1.3Columnh3cSecureIntrusionActionread-writecurrentAttribute to determine the action if an unauthorised device transmits on this port.
1.3.6.1.4.1.2011.10.2.26.1.2.1.1.4Columnh3cSecureNumberAddressesread-writecurrentThe maximum number of addresses that the port can learn or store. Reducing this number may cause some addresses to be deleted. This value is set by the user an…
1.3.6.1.4.1.2011.10.2.26.1.2.1.1.5Columnh3cSecureNumberAddressesStoredread-onlycurrentThe number of addresses that are currently in the AddressTable for this port. If this object has the same value as h3cSecureNumberAddresses, then no more addre…
1.3.6.1.4.1.2011.10.2.26.1.2.1.1.6Columnh3cSecureMaximumAddressesread-onlycurrentThis indicates the maximum value that h3cSecureNumberAddresses can be set to. It is dependent on the resources available so may change, eg. if resources are sh…
1.3.6.1.4.1.2011.10.2.26.1.2.2Tableh3cSecureAddressTablenot-accessiblecurrentThis table stores the MAC addresses assigned to each port. This table can be written to by the agent as well as the management station.
1.3.6.1.4.1.2011.10.2.26.1.2.2.1Rowh3cSecureAddressEntrynot-accessiblecurrentThis table allows multiple addresses to be assigned to each secure port. It is indexed using the objects ifIndex, h3cSecureAddrMAC and h3cSecureVlanID.
1.3.6.1.4.1.2011.10.2.26.1.2.2.1.1Columnh3cSecureAddrMACaccessible-for-notifycurrentThe MAC address of a station assigned to this port. This is the second index into the h3cSecureAddressTable.
1.3.6.1.4.1.2011.10.2.26.1.2.2.1.2Columnh3cSecureAddrVlanIDread-createcurrentThe Vlan ID associate with the port and the MAC address. This is the third index into the h3cSecureAddressTable.
1.3.6.1.4.1.2011.10.2.26.1.2.2.1.3Columnh3cSecureAddrMACStatusread-createcurrentThe state of the mac address assigned to this port. addressBlackhole (1) the mac address is a blackhole address, Each packet whose source address is equal to t…
1.3.6.1.4.1.2011.10.2.26.1.2.2.1.4Columnh3cSecureAddrRowStatusread-createcurrentThis manages the creation and deletion or rows, and shows the current status of the indexed MAC address. This object has the following values. active(1) The in…
1.3.6.1.4.1.2011.10.2.26.1.2.3Tableh3cSecureOUITablenot-accessiblecurrentThis table stores the OUI values for OUI based authentication.
1.3.6.1.4.1.2011.10.2.26.1.2.3.1Rowh3cSecureOUIEntrynot-accessiblecurrentThis is a row in the h3cSecureOUITable.
1.3.6.1.4.1.2011.10.2.26.1.2.3.1.1Columnh3cSecureOUIIndexnot-accessiblecurrentThe index number. This is the first index into the h3cSecureOUITable.
1.3.6.1.4.1.2011.10.2.26.1.2.3.1.2Columnh3cSecureOUIread-createcurrentThe OUI value for an authorised device.
1.3.6.1.4.1.2011.10.2.26.1.2.3.1.3Columnh3cSecureOUIRowStatusread-createcurrentThis manages the creation and deletion of rows, and shows the current status of the entry. active(1) The indexed OUI value is authorised. notInService(2) Not S…
1.3.6.1.4.1.2011.10.2.26.1.2.4Tableh3cSecureBindingTablenot-accessiblecurrentThis table stores the elements of binding rules include the MAC addresses, the IP address and the port. Only the frame exactly matching the binding rules can b…
1.3.6.1.4.1.2011.10.2.26.1.2.4.1Rowh3cSecureBindingEntrynot-accessiblecurrentThis table allows multiple binding rules. It is indexed using the object h3cSecureBindingIndex.
1.3.6.1.4.1.2011.10.2.26.1.2.4.1.1Columnh3cSecureBindingIndexnot-accessiblecurrentThe index number. This is the first index into the h3cSecureBindingTable.
1.3.6.1.4.1.2011.10.2.26.1.2.4.1.2Columnh3cSecureBindingPortread-createcurrentThe port number of the port bound with the IP address and the MAC address.
1.3.6.1.4.1.2011.10.2.26.1.2.4.1.3Columnh3cSecureBindingAddrMACread-createcurrentThe MAC address bound with the port and the IP address.
1.3.6.1.4.1.2011.10.2.26.1.2.4.1.4Columnh3cSecureBindingAddrIpread-createcurrentThe IP address bound with the port and the MAC address.
1.3.6.1.4.1.2011.10.2.26.1.2.4.1.5Columnh3cSecureBindingRowStatusread-createcurrentThis manages the creation and deletion or rows, and shows status of the entry. This object has the following values. active(1) The indexed MAC address is autho…
1.3.6.1.4.1.2011.10.2.26.1.2.5Tableh3cSecureAssignTablenot-accessiblecurrentTable of port assignment management information about authorised user.
1.3.6.1.4.1.2011.10.2.26.1.2.5.1Rowh3cSecureAssignEntrynot-accessiblecurrentAn entry (conceptual row) representing information about port assignment about authorised user.
1.3.6.1.4.1.2011.10.2.26.1.2.5.1.1Columnh3cSecureAssignEnableread-writecurrentThe user-based port configuration control. Setting this attribute TRUE causes the port to be configured with any configuration parameters supplied by the authe…
1.3.6.1.4.1.2011.10.2.26.1.2.5.1.2Columnh3cSecureVlanAssignmentread-onlycurrentThe VLAN membership assigned to the port for the authorised user. This contains the actual value received from the authentication server. This object will cont…
1.3.6.1.4.1.2011.10.2.26.1.3Nodeh3cPortSecurityNotifications
1.3.6.1.4.1.2011.10.2.26.1.3.1Notificationh3cSecureAddressLearnedcurrentThis trap is sent when a new station has been learned. The port on which the address was received is the first object, and the MAC address of the learned stati…
1.3.6.1.4.1.2011.10.2.26.1.3.2Notificationh3cSecureViolationcurrentThis trap is sent whenever a security violation has occurred. The port on which the violation occured is the first object, and the MAC address of the offending…
1.3.6.1.4.1.2011.10.2.26.1.3.3Notificationh3cSecureLoginFailurecurrentThis trap is sent whenever a user network access authentication has failed. The port on which the violation occured is the first object, and the MAC address of…
1.3.6.1.4.1.2011.10.2.26.1.3.4Notificationh3cSecureLogoncurrentThis trap is sent when a new session is started for an authorised port user. The port on which the violation occured is the first object, and the MAC address o…
1.3.6.1.4.1.2011.10.2.26.1.3.5Notificationh3cSecureLogoffcurrentThis trap is sent when a user session is terminated. The port on which the violation occured is the first object, and the MAC address of the offending station …
1.3.6.1.4.1.2011.10.2.26.1.3.6Notificationh3cSecureRalmLoginFailurecurrentThis trap is sent whenever a user network access authentication has failed. The port on which the violation occured is the first object, and the MAC address of…
1.3.6.1.4.1.2011.10.2.26.1.3.7Notificationh3cSecureRalmLogoncurrentThis trap is sent when a new session is started for an authorised port user. The port on which the violation occured is the first object, and the MAC address o…
1.3.6.1.4.1.2011.10.2.26.1.3.8Notificationh3cSecureRalmLogoffcurrentThis trap is sent when a new session is started for an authorised port user. The port on which the violation occured is the first object, and the MAC address o…