MIB Viewer

JUNIPER-SECURE-ACCESS-PORT-MIB

26 objects
This is Juniper Networks' implementation of enterprise specific MIB for configuration of Secure Access Port feature. DHCP Snooping and Dynamic ARP Inspection are mechanisms to provide per interface security capabilities. This MIB Module is also used to control some layer 2 functions like MAC limiting. It also supports IP Source Guard, Mac Source Guard and Storm Control features.
Imported Objects
IF-MIBifIndex
JUNIPER-EX-SMIjnxExSecureAccessPort
SNMPv2-SMIInteger32 MODULE-IDENTITY NOTIFICATION-TYPE OBJECT-TYPE Unsigned32
SNMPv2-TCDisplayString TEXTUAL-CONVENTION TruthValue
OIDNameAccessStatusDescription
1.3.6.1.4.1.2636.3.40.1.2.1IdentityjnxExSecureAccessPortMIBThis is Juniper Networks' implementation of enterprise specific MIB for configuration of Secure Access Port feature. DHCP Snooping and Dynamic ARP Inspection a…
1.3.6.1.4.1.2636.3.40.1.2.1.0NodejnxSecAccessPortMIBNotifications
1.3.6.1.4.1.2636.3.40.1.2.1.0.1NotificationjnxSecAccessdsRateLimitCrossedcurrentA jnxdsRateLimitCrossed notification is generated when the number of DHCP packets from an untrusted interface exceeds jnxSecAccessdsIfRateLimit.
1.3.6.1.4.1.2636.3.40.1.2.1.0.2NotificationjnxSecAccessIfMacLimitExceededcurrentNotification is sent when the number of MAC addresses learnt by the interface has crossed the limit of MAC addresses(jnxSecAccessIfMacLimit) and if MAC Limit E…
1.3.6.1.4.1.2636.3.40.1.2.1.0.3NotificationjnxStormEventNotificationcurrentNotification is sent when the traffic in the interface exceeds rising threshold(jnxStormCtlRisingThreshold).
1.3.6.1.4.1.2636.3.40.1.2.1.1NodejnxSecAccessPortMIBObjects
1.3.6.1.4.1.2636.3.40.1.2.1.1.1TablejnxSecAccessPortVlanTablenot-accessiblecurrentA table provides the mechanism to control DHCP Snooping and Dynamic ARP Inspection per VLAN. When a VLAN is created in a device supporting this table, a corres…
1.3.6.1.4.1.2636.3.40.1.2.1.1.1.1RowjnxSecAccessPortVlanEntrynot-accessiblecurrentA row instance contains whether DHCP Snooping and Dynamic ARP Inspection at each existing VLAN is enabled or disabled.
1.3.6.1.4.1.2636.3.40.1.2.1.1.1.1.1ColumnjnxSecAccessVlanNamenot-accessiblecurrentThis object indicates the VLAN name on which Dhcp Snooping feature and Dynamic ARP Inspection is enabled.
1.3.6.1.4.1.2636.3.40.1.2.1.1.1.1.2ColumnjnxSecAccessVlanDhcpSnoopStatusread-onlycurrentThis object indicates whether Dhcp Snooping is enabled in this VLAN. If this object is 'true', Dhcp Snooping is enabled in the specified VLAN. If this object i…
1.3.6.1.4.1.2636.3.40.1.2.1.1.1.1.3ColumnjnxSecAccessVlanDAIStatusread-onlycurrentThis object indicates whether Dynamic ARP Inspection is enabled in this VLAN. If this object is 'true', Dynamic ARP Inspection is enabled. If this object is 'f…
1.3.6.1.4.1.2636.3.40.1.2.1.1.2TablejnxSecAccessPortIfTablenot-accessiblecurrentThe table contains the trust state and rate limit of each interface for DHCP Snooping purpose. The table also contains information on MAC address limit feature…
1.3.6.1.4.1.2636.3.40.1.2.1.1.2.1RowjnxSecAccessPortIfEntrynot-accessiblecurrentA table entry contains the trust state and rate limit of an interface, MAC address limit for that Interface. It also contains the action to be undertaken if MA…
1.3.6.1.4.1.2636.3.40.1.2.1.1.2.1.1ColumnjnxSecAccessdsIfTrustStateread-onlycurrentThis object indicates whether the interface is trusted for DHCP Snooping purpose. If this object is 'true', the interface is trusted. DHCP packets coming to th…
1.3.6.1.4.1.2636.3.40.1.2.1.1.2.1.2ColumnjnxSecAccessdsIfRateLimitread-onlycurrentThis object indicates rate limit value for DHCP Snooping purpose. If the value of this object is 0, no rate limit is applied for DHCP traffic at this interface.
1.3.6.1.4.1.2636.3.40.1.2.1.1.2.1.3ColumnjnxSecAccessIfMacLimitread-onlycurrentThis object specifies the threshold limit for the number of MAC address entries on this interface. When the instance value of this object is set to 0, no thres…
1.3.6.1.4.1.2636.3.40.1.2.1.1.2.1.4ColumnjnxSecAccessIfMacLimitExceedread-onlycurrentThis object specifies the action to be taken by the system for this interface while the number of MAC addresses has exceeded the value of jnxIfMacLimit. This o…
1.3.6.1.4.1.2636.3.40.1.2.1.1.2.1.5ColumnjnxSecAccessIfIpSrcGuardStatusread-onlycurrentThis object indicates whether IP Source Guard is enabled on the specified interface. If this object is 'true', then IP Source Guard is enabled on the specified…
1.3.6.1.4.1.2636.3.40.1.2.1.1.2.1.6ColumnjnxSecAccessIfMacSrcGuardStatusread-onlycurrentThis object indicates whether Mac Source Guard is enabled on the specified interface. If this object is 'true', then Mac Source Guard is enabled on the specifi…
1.3.6.1.4.1.2636.3.40.1.2.1.1.3TablejnxStormCtlTablenot-accessiblecurrentStorm control monitors each type of traffic level on an interface. If traffic level exceeds the threshold value(rising threshold), switch will drop all packets…
1.3.6.1.4.1.2636.3.40.1.2.1.1.3.1RowjnxStormCtlEntrynot-accessiblecurrentAn entry contains the interface index,traffic type for the interface, the rising threshold, falling threshold and the action to be taken if the traffic exceeds…
1.3.6.1.4.1.2636.3.40.1.2.1.1.3.1.1ColumnjnxStormCtlIfTrafficTypenot-accessiblecurrentThis object specifies the traffic type on the particular interface. Value 1 specifies that it is broadcast traffic, value 2 specifies that it is multicast traf…
1.3.6.1.4.1.2636.3.40.1.2.1.1.3.1.2ColumnjnxStormCtlRisingThresholdread-onlycurrentThis object specifies the rising threshold value in packets per second. The storm control action is occurs when the traffic exceeds this threshold value.
1.3.6.1.4.1.2636.3.40.1.2.1.1.3.1.3ColumnjnxStormCtlFallingThresholdread-onlycurrentThis object specifies the falling threshold value in packets per second. The storm control action ceases when the traffic drops to this threshold value.
1.3.6.1.4.1.2636.3.40.1.2.1.1.3.1.4ColumnjnxStormCtlActionread-onlycurrentThis object specifies the action to be taken, when traffic exceeds rising threshold value. Value 1 specifies that the action taken is to shutdown the port. Val…
Type Definitions
NameSyntaxStatusDescription
JnxMacLimitExceededActionINTEGER { none (1), drop (2), alarm (3), shutdown (4) }currentOne of the following action will be taken by the system on an interface, when the system detects the current learned number of MAC addresses in the forwarding table has exceeded the limit number of MAC address. none : N…