MIB Viewer

HM2-DOS-MITIGATION-MIB

51 objects
Hirschmann Denial of Service MIB Copyright (C) 2012. All Rights Reserved.
Imported Objects
HM2-TC-MIBhm2ConfigurationMibs HmEnabledStatus
IF-MIBifIndex InterfaceIndex
SNMPv2-CONFMODULE-COMPLIANCE OBJECT-GROUP
SNMPv2-SMIMODULE-IDENTITY OBJECT-TYPE Unsigned32
SNMPv2-TCRowStatus TEXTUAL-CONVENTION
OIDNameAccessStatusDescription
1.3.6.1.4.1.248.11.82Identityhm2DosMitigationMibHirschmann Denial of Service MIB Copyright (C) 2012. All Rights Reserved.
1.3.6.1.4.1.248.11.82.0Nodehm2DosMitigationNotifications
1.3.6.1.4.1.248.11.82.1Nodehm2DosMitigationObjects
1.3.6.1.4.1.248.11.82.1.1Nodehm2DosMitigationGeneralSettings
1.3.6.1.4.1.248.11.82.1.1.0Nodehm2DosMitigationCapabilities
1.3.6.1.4.1.248.11.82.1.1.0.1Scalarhm2DosMitigationTcpHdrChecksSupread-onlycurrentThe type of support for TCP header checks.
1.3.6.1.4.1.248.11.82.1.1.0.2Scalarhm2DosMitigationIcmpChecksSupread-onlycurrentThe type of support for ICMP checks.
1.3.6.1.4.1.248.11.82.1.1.0.3Scalarhm2DosMitigationTcpSynLimitSupread-onlycurrentThe type of support for TCP SYN limiter.
1.3.6.1.4.1.248.11.82.1.1.0.4Scalarhm2DosMitigationArpLimitSupread-onlycurrentThe type of support for ARP limiter.
1.3.6.1.4.1.248.11.82.1.1.0.5Scalarhm2DosMitigationTcpNullScanSupread-onlycurrentThe type of support for TCP Null Scan.
1.3.6.1.4.1.248.11.82.1.1.0.6Scalarhm2DosMitigationTcpXmasSupread-onlycurrentThe type of support for TCP Xmas Scan.
1.3.6.1.4.1.248.11.82.1.1.0.7Scalarhm2DosMitigationTcpLandSupread-onlycurrentThe type of support for land attack detection.
1.3.6.1.4.1.248.11.82.1.1.1Nodehm2DosMitigationTcpHdrChecks
1.3.6.1.4.1.248.11.82.1.1.1.1Scalarhm2DosMitigationTcpNullScanread-writecurrentWhen enabled, TCP Null scans (TCP flags and sequence number set to 0) are filtered by the device.
1.3.6.1.4.1.248.11.82.1.1.1.4Scalarhm2DosMitigationTcpXmasScanread-writecurrentWhen enabled TCP Xmas scans (TCP flags FIN, URG and PSH all set to 1 and a TCP sequence number = 0) are filtered by the device.
1.3.6.1.4.1.248.11.82.1.1.1.7Scalarhm2DosMitigationTcpSynFinScanread-writecurrentWhen enabled TCP packets with SYN and FIN flags set are filtered by the device.
1.3.6.1.4.1.248.11.82.1.1.1.10Scalarhm2DosMitigationTcpMinimalHeaderread-writecurrentWhen enabled all TCP frames are checked for a minimal valid header size. Packets that contain an invalid header size are discarded.
1.3.6.1.4.1.248.11.82.1.1.1.11Scalarhm2DosMitigationTcpMinimalHeaderSizeread-writecurrentSpecifies the minimum size of a valid TCP frame header size.
1.3.6.1.4.1.248.11.82.1.1.1.13Scalarhm2DosMitigationLandAttackread-writecurrentWhen enabled all IP frames are checked for equality of src and dst IP address (known as land attack). Packets that contain such a combination are silently disc…
1.3.6.1.4.1.248.11.82.1.1.1.14Scalarhm2DosMitigationTcpOffsetEqu1read-writecurrentEnable/Disable TCP offset DoS protection. All packets ingress having a TCP header offset equal to 1 are dropped.
1.3.6.1.4.1.248.11.82.1.1.1.15Scalarhm2DosMitigationTcpPrivilegedSrcPortread-writecurrentEnable/Disable TCP SYN and L4 source port smaller than 1024 DoS protection. All packets ingress having the TCP SYN flag set and a L4 source port from 0 to 1023…
1.3.6.1.4.1.248.11.82.1.1.1.16Scalarhm2DosMitigationTcpSrcDstPortEquread-writecurrentEnable/Disable L4 source port equals L4 destination port DoS protection. All TCP or UDP packets ingress having the L4 source port equal to L4 destination port …
1.3.6.1.4.1.248.11.82.1.1.2Nodehm2DosMitigationIcmpChecks
1.3.6.1.4.1.248.11.82.1.1.2.1Scalarhm2DosMitigationIcmpFragsread-writecurrentWhen enabled, all fragmented ICMP packets are filtered by the device.
1.3.6.1.4.1.248.11.82.1.1.2.4Scalarhm2DosMitigationIcmpPacketSizeread-writecurrentSpecifies the max. allowed payload size of ICMP packets. Packets having bigger payload are filtered by the device if the hm2DosMitigationIcmpPacketSizeMode is …
1.3.6.1.4.1.248.11.82.1.1.2.5Scalarhm2DosMitigationIcmpPacketSizeModeread-writecurrentWhen enabled all ICMP ingress packets having the payload bigger than hm2DosMitigationIcmpPacketSize are filtered by device.
1.3.6.1.4.1.248.11.82.1.1.2.6Scalarhm2DosMitigationIcmpSmurfAttackread-writecurrentWhen enabled, all ingress ICMP packets having the type set to ECHO_REQ (ping) and a broadcast destination IP are dropped.
1.3.6.1.4.1.248.11.82.1.1.3Nodehm2DosMitigationL2Checks
1.3.6.1.4.1.248.11.82.1.1.3.7Scalarhm2DosMitigationSMacDMacread-writecurrentEnable/Disable source MAC address equals destination MAC address DoS protection. All packets ingress having SMAC equals DMAC are dropped.
1.3.6.1.4.1.248.11.82.1.1.4Nodehm2DosMitigationIpHdrChecks
1.3.6.1.4.1.248.11.82.1.1.4.1Scalarhm2DosMitigationDropIpSrcRouteread-writecurrentDiscard packets with the Strict/Loose Source Routing IP option set.
1.3.6.1.4.1.248.11.82.1.2Nodehm2DosMitigationLimiter
1.3.6.1.4.1.248.11.82.1.2.1Nodehm2DosMitigationLimiterObjects
1.3.6.1.4.1.248.11.82.1.2.2Nodehm2DosMitigationLimiterRules
1.3.6.1.4.1.248.11.82.1.2.2.1Tablehm2DosMitigationLimiterRuleTablenot-accessiblecurrentTCP Syn Limiter Interface Table
1.3.6.1.4.1.248.11.82.1.2.2.1.1Rowhm2DosMitigationLimiterRuleEntrynot-accessiblecurrentTCP Syn Interface entry.
1.3.6.1.4.1.248.11.82.1.2.2.1.1.1Columnhm2DosMitigationLimiterInterfaceaccessible-for-notifycurrentThe interface the limiter is assigned to.
1.3.6.1.4.1.248.11.82.1.2.2.1.1.2Columnhm2DosMitigationLimiterTcpSynLimitread-createcurrentThe number of allowed outgoing TCP syn packets per second per interface. A value of 0 disables the limiter for this interface.
1.3.6.1.4.1.248.11.82.1.2.2.1.1.3Columnhm2DosMitigationLimiterArpLimitread-createcurrentThe number of allowed outgoing ARP packets per second per interface. A value of 0 disables the limiter for this interface.
1.3.6.1.4.1.248.11.82.1.2.2.1.1.4Columnhm2DosMitigationLimiterRowStatusread-createcurrentRow status.
1.3.6.1.4.1.248.11.82.1.3Nodehm2DosMitigationStatistics
1.3.6.1.4.1.248.11.82.1.3.1Scalarhm2DosMitigationGlobalDropCounterread-onlycurrentThe total number of packets dropped by the different dos mitigation features.
1.3.6.1.4.1.248.11.82.1.3.2Tablehm2DosMitigationStatisticsPortTablenot-accessiblecurrentA list of statistics counters for dos mitigation features.
1.3.6.1.4.1.248.11.82.1.3.2.1Rowhm2DosMitigationStatisticsPortEntrynot-accessiblecurrentA list of statistics counters for dos mitigation features for an interface.
1.3.6.1.4.1.248.11.82.1.3.2.1.1Columnhm2DosMitigationPortDropCounterread-onlycurrentThe total number of packets dropped by the different dos mitigation features.
1.3.6.1.4.1.248.11.82.2Nodehm2DosMitigationConformance
1.3.6.1.4.1.248.11.82.2.1Nodehm2DosMitigationCompliances
1.3.6.1.4.1.248.11.82.2.1.1Compliancehm2DosMitigationCompliancecurrentThe compliance statement for an SNMP entity which implements the Hirschmann DOS Mitigation MIB.
1.3.6.1.4.1.248.11.82.2.2Nodehm2DosMitigationGroups
1.3.6.1.4.1.248.11.82.2.2.1Grouphm2DosMitigationGeneralGroupcurrentA collection of all Hirschmann objects provided by the DoS Mitigation module.
Type Definitions
NameSyntaxStatusDescription
DosFeatureValueINTEGER { hw(1), sw(2), noSup(3) }currentType of feature support: - hw(1): Supported in Hardware - sw(2): Supported in Software - noSup(3): Not implemented (no support)