CISCO-NAT-CGN-EXT-MIB
This MIB module extends the IETF draft NAT MIB available at
http://tools.ietf.org/html/draft-ietf-behave-nat-mib-11
The extensions are intended to address the needs of the Carrier
Grade NAT (CGN), also known as Large Scale NAT (LSN).
GLOSSARY
==========
Address mapping - is used to refer to association between
a private IP to public IP (in case of NAT44 and DS Lite)
or source IPv6 address to IPv4 address in case of NAT64
stateful application.
Mapping - A mapping used to refer to a NAT translation record.
It is a record held in memory that maps a private IP address
and port to a public IP address and port.
Subscriber - A subscriber is a record held in memory that
provides IP address and other details of an end user device
which has one or more mappings.
Session - A session is a record maintained in memory that
identifies a flow. The flow is uniquely identified by the
source IPv4/IPv6 address, source port, translated IP address,
translated source port, destination IPv4/IPv6 address and
destination port.
In to Out packet - A packet originating from a subscriber,
with a private source address (or with an IPv6 address in
case of NAT64), destined to a host with a public IP address.
This packet needs NAT (or NAPT) service.
Out to In packet - A packet originating from a host on the
public Internet (or any host with a routable/public) source
address, whose destination address is a mapped (translated)
IP address. This packet needs reverse-NAT.
Bulk port allocation - A NAT instance can be configured
pre-allocate a range of contiguous ports instead of a single
port. A mapping log record is created indicating the range of
ports allocated to this subscriber. This is done in anticipation
that the subscriber is likely to send packets that require more
mappings to be created. For the subsequent mapping requests, one
of the pre-allocated port is used and no additional log entries
need to be created. This is a technique used to reduce the
volume of translation record data.
- Source file
CISCO-NAT-CGN-EXT-MIB- Last revised
- Identity
ciscoNatCgnExtMIB- Base OID
1.3.6.1.4.1.9.9.818
Imported Objects
| CISCO-SMI | ciscoMgmt |
| NAT-MIB | NatBehaviorType (no object page) natCountersEntry (no object page) natInstanceEntry (no object page) natInstanceIndex (no object page) NatPoolingType (no object page) |
| SNMP-FRAMEWORK-MIB | SnmpAdminString |
| SNMPv2-CONF | MODULE-COMPLIANCE (no object page) NOTIFICATION-GROUP (no object page) OBJECT-GROUP (no object page) |
| SNMPv2-SMI | Counter64 Gauge32 Integer32 MODULE-IDENTITY (no object page) NOTIFICATION-TYPE (no object page) OBJECT-TYPE (no object page) Unsigned32 |
| SNMPv2-TC | TEXTUAL-CONVENTION (no object page) |
Net-SNMP examples using the cisco MIB directory Show commands
These commands use the standard Observium installation path and load the selected MIB variant before the RFC and Net-SNMP directories.
Translate the module identity
/usr/bin/snmptranslate -Pud -Ir -On -m 'CISCO-NAT-CGN-EXT-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'CISCO-NAT-CGN-EXT-MIB::ciscoNatCgnExtMIB'
Walk the MIB subtree
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-NAT-CGN-EXT-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-NAT-CGN-EXT-MIB::ciscoNatCgnExtMIB'
Objects (54)
Showing 54 of 54 objects
Object legend
Object type
Icons distinguish tables, entry rows, columns, scalars, and structural nodes.
SNMPv2-TCTruthValue
Syntax
Blue badges identify the value syntax. Connected badges read as defining module and convention.
IF-MIBifIndex
Table index
Green identifies an index object; yellow names its module when the index is defined elsewhere.
r/w
deprecated
obsolete
Access and status
r/w means read-write. Grey labels mark definitions retained for compatibility.
OBS ✓
Observium use
The indicator appears only when Observium directly references that object.
ifOperStatus
.1.3.6.1.2.1…
Names and OIDs
Object names link to their detail pages. Hover or focus a linked name or badge for available definition details.
.1.3.6.1.4.1.9.9.818 |
||
.1.3.6.1.4.1.9.9.818.0 |
||
.1.3.6.1.4.1.9.9.818.1 |
||
.1.3.6.1.4.1.9.9.818.1.1 |
||
.1.3.6.1.4.1.9.9.818.1.1.1 |
||
.1.3.6.1.4.1.9.9.818.1.1.1.1 |
||
|
OctetString
|
.1.3.6.1.4.1.9.9.818.1.1.1.2 |
|
|
OctetString
|
.1.3.6.1.4.1.9.9.818.1.1.1.3 |
|
|
OctetString
|
.1.3.6.1.4.1.9.9.818.1.1.1.4 |
|
.1.3.6.1.4.1.9.9.818.1.1.1.5 |
||
.1.3.6.1.4.1.9.9.818.1.1.1.6 |
||
|
Unsigned32
|
.1.3.6.1.4.1.9.9.818.1.1.1.7 |
|
|
Unsigned32
|
.1.3.6.1.4.1.9.9.818.1.1.1.8 |
|
.1.3.6.1.4.1.9.9.818.1.2 |
||
.1.3.6.1.4.1.9.9.818.1.2.1 |
||
.1.3.6.1.4.1.9.9.818.1.2.1.1 |
||
.1.3.6.1.4.1.9.9.818.1.2.1.1.1 |
||
|
packetsSNMPv2-SMICounter64
|
.1.3.6.1.4.1.9.9.818.1.2.1.1.10 |
|
|
packetsSNMPv2-SMICounter64
|
.1.3.6.1.4.1.9.9.818.1.2.1.1.11 |
|
|
Integer32
|
.1.3.6.1.4.1.9.9.818.1.2.1.1.12 |
|
|
percentInteger32
|
.1.3.6.1.4.1.9.9.818.1.2.1.1.13 |
|
|
percentInteger32
|
.1.3.6.1.4.1.9.9.818.1.2.1.1.14 |
|
|
percentInteger32
|
.1.3.6.1.4.1.9.9.818.1.2.1.1.15 |
|
|
percentInteger32
|
.1.3.6.1.4.1.9.9.818.1.2.1.1.16 |
|
|
Unsigned32
|
.1.3.6.1.4.1.9.9.818.1.2.1.1.17 |
|
.1.3.6.1.4.1.9.9.818.1.2.1.1.2 |
||
|
packetsSNMPv2-SMICounter64
|
.1.3.6.1.4.1.9.9.818.1.2.1.1.3 |
|
|
packetsSNMPv2-SMICounter64
|
.1.3.6.1.4.1.9.9.818.1.2.1.1.4 |
|
|
packetsSNMPv2-SMICounter64
|
.1.3.6.1.4.1.9.9.818.1.2.1.1.5 |
|
|
packetsSNMPv2-SMICounter64
|
.1.3.6.1.4.1.9.9.818.1.2.1.1.6 |
|
|
packetsSNMPv2-SMICounter64
|
.1.3.6.1.4.1.9.9.818.1.2.1.1.7 |
|
|
packetsSNMPv2-SMICounter64
|
.1.3.6.1.4.1.9.9.818.1.2.1.1.8 |
|
|
packetsSNMPv2-SMICounter64
|
.1.3.6.1.4.1.9.9.818.1.2.1.1.9 |
|
.1.3.6.1.4.1.9.9.818.1.2.2 |
||
|
natInstanceIndex
|
.1.3.6.1.4.1.9.9.818.1.2.2.1 |
|
.1.3.6.1.4.1.9.9.818.1.2.2.1.1 |
||
.1.3.6.1.4.1.9.9.818.1.2.2.1.2 |
||
.1.3.6.1.4.1.9.9.818.1.2.2.1.3 |
||
.1.3.6.1.4.1.9.9.818.1.2.2.1.4 |
||
.1.3.6.1.4.1.9.9.818.1.2.2.1.5 |
||
.1.3.6.1.4.1.9.9.818.1.2.2.1.6 |
||
.1.3.6.1.4.1.9.9.818.1.2.2.1.7 |
||
.1.3.6.1.4.1.9.9.818.1.2.2.1.8 |
||
.1.3.6.1.4.1.9.9.818.1.2.3 |
||
|
natInstanceIndexcNatCgnALGType
|
.1.3.6.1.4.1.9.9.818.1.2.3.1 |
|
.1.3.6.1.4.1.9.9.818.1.2.3.1.1 |
||
|
Enumeration
|
.1.3.6.1.4.1.9.9.818.1.2.3.1.2 |
|
.1.3.6.1.4.1.9.9.818.1.2.3.1.3 |
||
.1.3.6.1.4.1.9.9.818.1.2.3.1.4 |
||
.1.3.6.1.4.1.9.9.818.1.2.3.1.5 |
||
.1.3.6.1.4.1.9.9.818.1.2.3.1.6 |
||
.1.3.6.1.4.1.9.9.818.2 |
||
.1.3.6.1.4.1.9.9.818.2.1 |
||
.1.3.6.1.4.1.9.9.818.2.2 |
Dependencies (10) 6 direct · 4 transitive Show tree and compile order Hide dependency details
Each imported module is resolved in the importing module's source directory first, then through the normal default-variant rules.
Dependency tree
Dependency-first compile order
- SNMPv2-SMIrfc
- CISCO-SMIcisco
- SNMPv2-TCrfc
- IANAifType-MIBrfc
- SNMPv2-CONFrfc
- SNMPv2-MIBrfc
- IF-MIBrfc
- INET-ADDRESS-MIBrfc
- SNMP-FRAMEWORK-MIBrfc
- NAT-MIBrfc
- CISCO-NAT-CGN-EXT-MIBciscoselected
Type Definitions (2)
| Enumeration |
algActiveFTP(1)algDNS(2)algH323(3)algHTTP(4)algLDAP(5)algMSRPC(6)algNetBIOS(7)algPCP(8)algPPTP(9)algRCMD(10)algRTSP(11)algSCCP(12)algSIP(13)algSunRPC(14) |
|
| Enumeration |
nat44(1)nat64Stateful(2)dsLite(3) |
Conformance Groups (11)
|
This group contains objects describing basic configuration
elements of NAT instances. |
.1.3.6.1.4.1.9.9.818.2.2.1
|
|
|
This group contains objects describing optional configuration
elements of NAT instances. |
.1.3.6.1.4.1.9.9.818.2.2.2
|
|
|
cNatCgnCounterNoMappingEntryDrops cNatCgnCounterSourceIPOutOfRangeDrops cNatCgnCounterEndPointFilteringDrops cNatCgnCounterTCPSequenceDrops cNatCgnCounterTCPMappingDrops cNatCgnCounterCurrentPortAllocation cNatCgnCounterPortUsageLowThreshold cNatCgnCounterPortUsageClearLowThreshold cNatCgnCounterPortUsageHighThreshold cNatCgnCounterPortUsageClearHighThreshold
This group contains objects describing counters and
thresholds. |
.1.3.6.1.4.1.9.9.818.2.2.3
|
|
|
cNatCgnCounterSessionCreations cNatCgnCounterSessionRemovals cNatCgnCounterOutOfSessionDrops cNatCgnCounterEndPointFilteringDrops cNatCgnCounterSessionLimitDrops
This group contains objects describing counters specific to
session level tracking. |
.1.3.6.1.4.1.9.9.818.2.2.4
|
|
|
This group contains objects describing configuration and
statistics specific to bulk port allocation. |
.1.3.6.1.4.1.9.9.818.2.2.5
|
|
|
cNatCgnLogStatMappingCreateRecords cNatCgnLogStatMappingDeleteRecords cNatCgnLogStatSessionCreateRecords cNatCgnLogStatSessionDeleteRecords cNatCgnLogStatNetflowPackets cNatCgnLogStatNetflowPacketDrops
This group contains objects describing counters of
Netflow based logging. |
.1.3.6.1.4.1.9.9.818.2.2.6
|
|
|
cNatCgnLogStatMappingCreateRecords cNatCgnLogStatMappingDeleteRecords cNatCgnLogStatSessionCreateRecords cNatCgnLogStatSessionDeleteRecords cNatCgnLogStatSyslogPackets cNatCgnLogStatSyslogPacketDrops
This group contains objects describing counters of
syslog based logging. |
.1.3.6.1.4.1.9.9.818.2.2.7
|
|
|
This group contains objects describing fragment related
counters. |
.1.3.6.1.4.1.9.9.818.2.2.8
|
|
|
cNatCgnALGStatus cNatCgnALGMappingCreations cNatCgnALGMappingRemovals cNatCgnALGUnsupportedErrors cNatCgnALGProtocolErrors
This group contains objects describing counters related
to ALG processing. |
.1.3.6.1.4.1.9.9.818.2.2.9
|
|
|
This group contains objects describing service related
configuration elements |
.1.3.6.1.4.1.9.9.818.2.2.11
|
|
|
cNatCgnNotifPortUsageWatermarkLow cNatCgnNotifPortUsageWatermarkLowClear cNatCgnNotifPortUsageWatermarkHigh cNatCgnNotifPortUsageWatermarkHighClear
This group contains notifications supporting NAT instances.
|
.1.3.6.1.4.1.9.9.818.2.2.15
|
Compliance Statements (1)
OID
.1.3.6.1.4.1.9.9.818.2.1.1This compliance statement specifies the minimal requirements an
implementation must meet in order to claim full compliance with
the definition of the CISCO-NAT-CGN-EXT-MIB.
implementation must meet in order to claim full compliance with
the definition of the CISCO-NAT-CGN-EXT-MIB.
Required groups
| mandatory | cNatCgnConfigGroup | |
| mandatory | cNatCgnCountersGroup | |
| mandatory | cNatCgnNotificationsGroup | |
| optional | cNatCgnOptionConfigGroup |
This group is to be supported if the device supports configuration of NAT pooling and behavior types. |
| optional | cNatCgnBulkAllocGroup |
This group is to be supported if the device supports bulk port allocation. |
| optional | cNatCgnSessionGroup |
This group is to be supported if the device supports session level tracking. |
| optional | cNatCgnNetflowLoggingGroup |
This group is to be supported if the device supports Netflow format of translation logging. |
| optional | cNatCgnSyslogLoggingGroup |
This group is to be supported if the device supports Syslog format of translation logging. |
| optional | cNatCgnFragmentsGroup |
This group is to be supported if the device supports fragmented packet processing. |
| optional | cNatCgnALGCountersGroup |
This group is to be supported if the device supports one or more ALGs in the NAT. |
| optional | cNatCgnServiceNameGroup |
This group is to be supported if the device supports service configuration. |
Object refinements
| Object | Access | Syntax | Description |
|---|---|---|---|
| cNatCgnInstanceBehaviorType | readonly | Write access is optional. | |
| cNatCgnInstancePoolingType | readonly | Write access is optional. | |
| cNatCgnInstanceProtocolPortLimit | readonly | Write access is optional. | |
| cNatCgnInstanceProtocolPortBulkAllocControl | readonly | Write access is optional. | |
| cNatCgnInstanceType | readonly | Write access is optional. | |
| cNatCgnInstanceVrf | readonly | Write access is optional. | |
| cNatCgnInstanceInterface | readonly | Write access is optional. | |
| cNatCgnInstanceServiceName | readonly | Write access is optional. |
Notifications / Traps (4)
| Name | OID | Description |
|---|---|---|
.1.3.6.1.4.1.9.9.818.0.1 |
The device generates this notification when the value of
cNatCgnCounterCurrentPortAllocation becomes lower than or equal to the value of cNatCgnCounterPortUsageLowThreshold. The device will not generate notification if cNatCgnCounterPortUsageLowThreshold is set to zero. |
|
.1.3.6.1.4.1.9.9.818.0.2 |
The device generates this notification when the value of
cNatCgnCounterCurrentPortAllocation becomes higher than or equal to the value of cNatCgnCounterPortUsageClearLowThreshold and if cNatCgnNotifPortUsageWatermarkLow is already generated. The device will not generate notification if cNatCgnCounterPortUsageClearLowThreshold is set to zero. |
|
.1.3.6.1.4.1.9.9.818.0.3 |
The device generates this notification when the value of
cNatCgnCounterCurrentPortAllocation becomes higher than or equal to the cNatCgnCounterPortUsageHighThreshold. The device will not generate notification if cNatCgnCounterPortUsageHighThreshold is set to zero. |
|
.1.3.6.1.4.1.9.9.818.0.4 |
The device generates this notification when the value of
cNatCgnCounterCurrentPortAllocation becomes lower than or equal to the value of cNatCgnCounterPortUsageClearLowThreshold and if cNatCgnNotifPortUsageWatermarkHigh is already generated. The device will not generate notification if cNatCgnCounterPortUsageClearHighThreshold is set to zero. |