QTECH-URPF-MIB
35 objects
Unicast Reverse Path Forwarding (URPF) is a function that checks the validity of the source address of IP packets received on an interface. This in an attempt to prevent Denial of Service attacks based on IP address spoofing. URPF checks validity of a source address by determining whether the packet would be successfully routed as a destination address. Based on configuration, the check made can be for existence of any route for the address, or more strictly for a route out the interface on which the packet was received by the device. When a violating packet is detected, it can be dropped. This MIB allows detection of spoofing events.
Imported Objects
| IF-MIB | ifIndex |
| QTECH-SMI | qtechMgmt |
| SNMP-FRAMEWORK-MIB | SnmpAdminString |
| SNMPv2-CONF | MODULE-COMPLIANCE NOTIFICATION-GROUP OBJECT-GROUP |
| SNMPv2-SMI | Counter32 Gauge32 Integer32 MODULE-IDENTITY NOTIFICATION-TYPE OBJECT-TYPE Unsigned32 |
| SNMPv2-TC | TruthValue |
| OID | Name | Access | Status | Description |
|---|---|---|---|---|
| 1.3.6.1.4.1.27514.1.1.10.2.46 | IdentityqtechUrpfMIB | Unicast Reverse Path Forwarding (URPF) is a function that checks the validity of the source address of IP packets received on an interface. This in an attempt … | ||
| 1.3.6.1.4.1.27514.1.1.10.2.46.0 | NodeqtechUrpfMIBObjects | |||
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.1 | NodeqtechUrpfScalar | |||
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.1.1 | ScalarqtechUrpfComputeInterval | read-write | current | The time between rate computations. This global value applies for the computation of all URPF rates, global and per-interface. When the value of qtechUrpfCompu… |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.1.2 | ScalarqtechUrpfDropRateWindow | read-only | current | The window of time in the recent past over which the drop count used in the drop rate computation is collected. This global value applies for the computation o… |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.1.3 | ScalarqtechUrpfDropNotifyHoldDownTime | read-write | current | The minimum time between issuance of qtechUrpfIfDropRateNotify notifications for a particular interface and packet forwarding type. Notifications are generated… |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.2 | NodeqtechUrpfStatistics | |||
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.2.1 | TableqtechUrpfTable | not-accessible | current | This table contains summary information for the managed device on URPF dropping. |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.2.1.1 | RowqtechUrpfEntry | not-accessible | current | If the managed device supports URPF dropping, a row exists for each IP version type (v4 and v6). A row contains summary information on URPF dropping over the e… |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.2.1.1.1 | ColumnqtechUrpfIpVersion | not-accessible | current | Specifies the version of IP forwarding on an interface to which the table row URPF counts, rates, and configuration apply. |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.2.1.1.2 | ColumnqtechUrpfDrops | read-only | current | Sum of dropped IP version qtechUrpfIpVersion packets failing a URPF check. This value is the sum of drops of packets received on all interfaces of the managed … |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.2.1.1.3 | ColumnqtechUrpfDropRate | read-only | current | The rate of packet drops of IP version qtechUrpfIpVersion packets due to URPF for the managed device. The per-interface drop rate notification is issued on rat… |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.2.2 | TableqtechUrpfIfMonTable | not-accessible | current | This table contains information on URPF dropping on an interface. |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.2.2.1 | RowqtechUrpfIfMonEntry | not-accessible | current | If IPv4 packet forwarding is configured on an interface, and is configured to perform URPF checking, a row appears in this table with indices [ifIndex][ipv4]. … |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.2.2.1.1 | ColumnqtechUrpfIfIpVersion | not-accessible | current | Specifies the version of IP forwarding on an interface to which the table row URPF counts, rates, and configuration apply. |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.2.2.1.2 | ColumnqtechUrpfIfDrops | read-only | current | The number of IP packets of version qtechUrpfIfIpVersion failing the URPF check and dropped by the managed device on a particular interface. |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.2.2.1.3 | ColumnqtechUrpfIfDropRate | read-only | current | The rate of packet drops of IP version qtechUrpfIfIpVersion packets due to URPF on the interface. This object is the average rate of dropping over the most rec… |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.3 | NodeqtechUrpfInterfaceConfig | |||
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.3.1 | TableqtechUrpfIfConfTable | not-accessible | current | This table contains statistics information on URPF on an interface. |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.3.1.1 | RowqtechUrpfIfConfEntry | not-accessible | current | A row exists in this table if a row exists in qtechUrpfIfMonTable. |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.3.1.1.1 | ColumnqtechUrpfIfCheckStrict | read-only | current | Interface configuration indicating the strictness of the reachability check performed on the interface. - none: not enable urpf check in this interface. - stri… |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.3.1.1.2 | ColumnqtechUrpfIfDropRateNotifyEnable | read-write | current | This object specifies whether the system produces the qtechUrpfIfDropRateNotify notification as a result of URPF dropping of version qtechUrpfIfIpVersion IP pa… |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.3.1.1.3 | ColumnqtechUrpfIfNotifyDropRateThreshold | read-write | current | When the calculated rate of URPF packet drops (qtechUrpfIfDropRate) meets or exceeds the value specified by this object, a qtechUrpfIfDropRateNotify notificati… |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.3.1.1.4 | ColumnqtechUrpfIfNotifyDrHoldDownReset | read-write | current | Setting this object to true causes the five-minute hold-down timer for emitting URPF drop rate notifications for IP version qtechUrpfIfIpVersion on the interfa… |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.3.1.1.5 | ColumnqtechUrpfIfWhichRouteTableID | read-only | current | Interface configuration indicating the routing table consulted for the reachability check: - default: the non-private routing table for of the managed system. … |
| 1.3.6.1.4.1.27514.1.1.10.2.46.0.3.1.1.6 | ColumnqtechUrpfIfVrfName | read-only | current | If the value of qtechUrpfIfWhichRouteTableID is 'vrf', the name of the VRF Table. Otherwise a zero-length string. |
| 1.3.6.1.4.1.27514.1.1.10.2.46.1 | NodeqtechUrpfMIBNotifs | |||
| 1.3.6.1.4.1.27514.1.1.10.2.46.1.1 | NotificationqtechUrpfIfDropRateNotify | current | This notification is generated when qtechUrpfIfDropRateNotifyEnable is set to true and the calculated URPF drop rate (qtechUrpfIfDropRate) exceeds the notifica… | |
| 1.3.6.1.4.1.27514.1.1.10.2.46.2 | NodeqtechUrpfMIBConformance | |||
| 1.3.6.1.4.1.27514.1.1.10.2.46.2.1 | NodeqtechUrpfMIBCompliances | |||
| 1.3.6.1.4.1.27514.1.1.10.2.46.2.1.1 | ComplianceqtechUrpfMIBCompliance | current | An SNMP entity can implement this module to provide URPF problem diagnosis information. | |
| 1.3.6.1.4.1.27514.1.1.10.2.46.2.2 | NodeqtechUrpfMIBGroups | |||
| 1.3.6.1.4.1.27514.1.1.10.2.46.2.2.1 | GroupqtechUrpfMIBMainObjectGroup | current | The collection of common counter objects, those needed by other objects, and the common interface table. | |
| 1.3.6.1.4.1.27514.1.1.10.2.46.2.2.2 | GroupqtechUrpfMIBVrfObjectGroup | current | The collection of objects needed to index by VRF. | |
| 1.3.6.1.4.1.27514.1.1.10.2.46.2.2.3 | GroupqtechUrpfMIBNotifyGroup | current | The collection of objects which are used to specify notifications for URPF. |