HM2-DOS-MITIGATION-MIB
51 objects
Hirschmann Denial of Service MIB Copyright (C) 2012. All Rights Reserved.
Imported Objects
| HM2-TC-MIB | hm2ConfigurationMibs HmEnabledStatus |
| IF-MIB | ifIndex InterfaceIndex |
| SNMPv2-CONF | MODULE-COMPLIANCE OBJECT-GROUP |
| SNMPv2-SMI | MODULE-IDENTITY OBJECT-TYPE Unsigned32 |
| SNMPv2-TC | RowStatus TEXTUAL-CONVENTION |
| OID | Name | Access | Status | Description |
|---|---|---|---|---|
| 1.3.6.1.4.1.248.11.82 | Identityhm2DosMitigationMib | Hirschmann Denial of Service MIB Copyright (C) 2012. All Rights Reserved. | ||
| 1.3.6.1.4.1.248.11.82.0 | Nodehm2DosMitigationNotifications | |||
| 1.3.6.1.4.1.248.11.82.1 | Nodehm2DosMitigationObjects | |||
| 1.3.6.1.4.1.248.11.82.1.1 | Nodehm2DosMitigationGeneralSettings | |||
| 1.3.6.1.4.1.248.11.82.1.1.0 | Nodehm2DosMitigationCapabilities | |||
| 1.3.6.1.4.1.248.11.82.1.1.0.1 | Scalarhm2DosMitigationTcpHdrChecksSup | read-only | current | The type of support for TCP header checks. |
| 1.3.6.1.4.1.248.11.82.1.1.0.2 | Scalarhm2DosMitigationIcmpChecksSup | read-only | current | The type of support for ICMP checks. |
| 1.3.6.1.4.1.248.11.82.1.1.0.3 | Scalarhm2DosMitigationTcpSynLimitSup | read-only | current | The type of support for TCP SYN limiter. |
| 1.3.6.1.4.1.248.11.82.1.1.0.4 | Scalarhm2DosMitigationArpLimitSup | read-only | current | The type of support for ARP limiter. |
| 1.3.6.1.4.1.248.11.82.1.1.0.5 | Scalarhm2DosMitigationTcpNullScanSup | read-only | current | The type of support for TCP Null Scan. |
| 1.3.6.1.4.1.248.11.82.1.1.0.6 | Scalarhm2DosMitigationTcpXmasSup | read-only | current | The type of support for TCP Xmas Scan. |
| 1.3.6.1.4.1.248.11.82.1.1.0.7 | Scalarhm2DosMitigationTcpLandSup | read-only | current | The type of support for land attack detection. |
| 1.3.6.1.4.1.248.11.82.1.1.1 | Nodehm2DosMitigationTcpHdrChecks | |||
| 1.3.6.1.4.1.248.11.82.1.1.1.1 | Scalarhm2DosMitigationTcpNullScan | read-write | current | When enabled, TCP Null scans (TCP flags and sequence number set to 0) are filtered by the device. |
| 1.3.6.1.4.1.248.11.82.1.1.1.4 | Scalarhm2DosMitigationTcpXmasScan | read-write | current | When enabled TCP Xmas scans (TCP flags FIN, URG and PSH all set to 1 and a TCP sequence number = 0) are filtered by the device. |
| 1.3.6.1.4.1.248.11.82.1.1.1.7 | Scalarhm2DosMitigationTcpSynFinScan | read-write | current | When enabled TCP packets with SYN and FIN flags set are filtered by the device. |
| 1.3.6.1.4.1.248.11.82.1.1.1.10 | Scalarhm2DosMitigationTcpMinimalHeader | read-write | current | When enabled all TCP frames are checked for a minimal valid header size. Packets that contain an invalid header size are discarded. |
| 1.3.6.1.4.1.248.11.82.1.1.1.11 | Scalarhm2DosMitigationTcpMinimalHeaderSize | read-write | current | Specifies the minimum size of a valid TCP frame header size. |
| 1.3.6.1.4.1.248.11.82.1.1.1.13 | Scalarhm2DosMitigationLandAttack | read-write | current | When enabled all IP frames are checked for equality of src and dst IP address (known as land attack). Packets that contain such a combination are silently disc… |
| 1.3.6.1.4.1.248.11.82.1.1.1.14 | Scalarhm2DosMitigationTcpOffsetEqu1 | read-write | current | Enable/Disable TCP offset DoS protection. All packets ingress having a TCP header offset equal to 1 are dropped. |
| 1.3.6.1.4.1.248.11.82.1.1.1.15 | Scalarhm2DosMitigationTcpPrivilegedSrcPort | read-write | current | Enable/Disable TCP SYN and L4 source port smaller than 1024 DoS protection. All packets ingress having the TCP SYN flag set and a L4 source port from 0 to 1023… |
| 1.3.6.1.4.1.248.11.82.1.1.1.16 | Scalarhm2DosMitigationTcpSrcDstPortEqu | read-write | current | Enable/Disable L4 source port equals L4 destination port DoS protection. All TCP or UDP packets ingress having the L4 source port equal to L4 destination port … |
| 1.3.6.1.4.1.248.11.82.1.1.2 | Nodehm2DosMitigationIcmpChecks | |||
| 1.3.6.1.4.1.248.11.82.1.1.2.1 | Scalarhm2DosMitigationIcmpFrags | read-write | current | When enabled, all fragmented ICMP packets are filtered by the device. |
| 1.3.6.1.4.1.248.11.82.1.1.2.4 | Scalarhm2DosMitigationIcmpPacketSize | read-write | current | Specifies the max. allowed payload size of ICMP packets. Packets having bigger payload are filtered by the device if the hm2DosMitigationIcmpPacketSizeMode is … |
| 1.3.6.1.4.1.248.11.82.1.1.2.5 | Scalarhm2DosMitigationIcmpPacketSizeMode | read-write | current | When enabled all ICMP ingress packets having the payload bigger than hm2DosMitigationIcmpPacketSize are filtered by device. |
| 1.3.6.1.4.1.248.11.82.1.1.2.6 | Scalarhm2DosMitigationIcmpSmurfAttack | read-write | current | When enabled, all ingress ICMP packets having the type set to ECHO_REQ (ping) and a broadcast destination IP are dropped. |
| 1.3.6.1.4.1.248.11.82.1.1.3 | Nodehm2DosMitigationL2Checks | |||
| 1.3.6.1.4.1.248.11.82.1.1.3.7 | Scalarhm2DosMitigationSMacDMac | read-write | current | Enable/Disable source MAC address equals destination MAC address DoS protection. All packets ingress having SMAC equals DMAC are dropped. |
| 1.3.6.1.4.1.248.11.82.1.1.4 | Nodehm2DosMitigationIpHdrChecks | |||
| 1.3.6.1.4.1.248.11.82.1.1.4.1 | Scalarhm2DosMitigationDropIpSrcRoute | read-write | current | Discard packets with the Strict/Loose Source Routing IP option set. |
| 1.3.6.1.4.1.248.11.82.1.2 | Nodehm2DosMitigationLimiter | |||
| 1.3.6.1.4.1.248.11.82.1.2.1 | Nodehm2DosMitigationLimiterObjects | |||
| 1.3.6.1.4.1.248.11.82.1.2.2 | Nodehm2DosMitigationLimiterRules | |||
| 1.3.6.1.4.1.248.11.82.1.2.2.1 | Tablehm2DosMitigationLimiterRuleTable | not-accessible | current | TCP Syn Limiter Interface Table |
| 1.3.6.1.4.1.248.11.82.1.2.2.1.1 | Rowhm2DosMitigationLimiterRuleEntry | not-accessible | current | TCP Syn Interface entry. |
| 1.3.6.1.4.1.248.11.82.1.2.2.1.1.1 | Columnhm2DosMitigationLimiterInterface | accessible-for-notify | current | The interface the limiter is assigned to. |
| 1.3.6.1.4.1.248.11.82.1.2.2.1.1.2 | Columnhm2DosMitigationLimiterTcpSynLimit | read-create | current | The number of allowed outgoing TCP syn packets per second per interface. A value of 0 disables the limiter for this interface. |
| 1.3.6.1.4.1.248.11.82.1.2.2.1.1.3 | Columnhm2DosMitigationLimiterArpLimit | read-create | current | The number of allowed outgoing ARP packets per second per interface. A value of 0 disables the limiter for this interface. |
| 1.3.6.1.4.1.248.11.82.1.2.2.1.1.4 | Columnhm2DosMitigationLimiterRowStatus | read-create | current | Row status. |
| 1.3.6.1.4.1.248.11.82.1.3 | Nodehm2DosMitigationStatistics | |||
| 1.3.6.1.4.1.248.11.82.1.3.1 | Scalarhm2DosMitigationGlobalDropCounter | read-only | current | The total number of packets dropped by the different dos mitigation features. |
| 1.3.6.1.4.1.248.11.82.1.3.2 | Tablehm2DosMitigationStatisticsPortTable | not-accessible | current | A list of statistics counters for dos mitigation features. |
| 1.3.6.1.4.1.248.11.82.1.3.2.1 | Rowhm2DosMitigationStatisticsPortEntry | not-accessible | current | A list of statistics counters for dos mitigation features for an interface. |
| 1.3.6.1.4.1.248.11.82.1.3.2.1.1 | Columnhm2DosMitigationPortDropCounter | read-only | current | The total number of packets dropped by the different dos mitigation features. |
| 1.3.6.1.4.1.248.11.82.2 | Nodehm2DosMitigationConformance | |||
| 1.3.6.1.4.1.248.11.82.2.1 | Nodehm2DosMitigationCompliances | |||
| 1.3.6.1.4.1.248.11.82.2.1.1 | Compliancehm2DosMitigationCompliance | current | The compliance statement for an SNMP entity which implements the Hirschmann DOS Mitigation MIB. | |
| 1.3.6.1.4.1.248.11.82.2.2 | Nodehm2DosMitigationGroups | |||
| 1.3.6.1.4.1.248.11.82.2.2.1 | Grouphm2DosMitigationGeneralGroup | current | A collection of all Hirschmann objects provided by the DoS Mitigation module. |
Type Definitions
| Name | Syntax | Status | Description |
|---|---|---|---|
| DosFeatureValue | INTEGER { hw(1), sw(2), noSup(3) } | current | Type of feature support: - hw(1): Supported in Hardware - sw(2): Supported in Software - noSup(3): Not implemented (no support) |