CISCO-NAT-CGN-EXT-MIB

        This MIB module extends the IETF draft NAT MIB available at
http://tools.ietf.org/html/draft-ietf-behave-nat-mib-11 
The extensions are intended to address the needs of the Carrier
Grade NAT (CGN), also known as Large Scale NAT (LSN).
        
GLOSSARY
==========
Address mapping - is used to refer to association between
a private IP to public IP (in case of NAT44 and DS Lite)
or source IPv6 address to IPv4 address in case of NAT64 
stateful application.
        
Mapping - A mapping used to refer to a NAT translation record.
It is a record held in memory that maps a private IP address
and port to a public IP address and port.
        
Subscriber - A subscriber is a record held in memory that
provides IP address and other details of an end user device
which has one or more mappings.
        
Session - A session is a record maintained in memory that
identifies a flow. The flow is uniquely identified by the
source IPv4/IPv6 address, source port, translated IP address,
translated source port, destination IPv4/IPv6 address and
destination port.
        
In to Out packet - A packet originating from a subscriber,
with a private source address (or with an IPv6 address in
case of NAT64), destined to a host with a public IP address.
This packet needs NAT (or NAPT) service.
        
Out to In packet - A packet originating from a host on the
public Internet (or any host with a routable/public) source
address, whose destination address is a mapped (translated)
IP address. This packet needs reverse-NAT.
        
Bulk port allocation - A NAT instance can be configured
pre-allocate a range of contiguous ports instead of a single
port. A mapping log record is created indicating the range of
ports allocated to this subscriber. This is done in anticipation
that the subscriber is likely to send packets that require more
mappings to be created. For the subsequent mapping requests, one
of the pre-allocated port is used and no additional log entries
need to be created. This is a technique used to reduce the
volume of translation record data.
    
Source file
CISCO-NAT-CGN-EXT-MIB
Last revised
Identity
ciscoNatCgnExtMIB
Base OID
1.3.6.1.4.1.9.9.818
Imported Objects
CISCO-SMI ciscoMgmt
NAT-MIB NatBehaviorType (no object page) natCountersEntry (no object page) natInstanceEntry (no object page) natInstanceIndex (no object page) NatPoolingType (no object page)
SNMP-FRAMEWORK-MIB SnmpAdminString
SNMPv2-CONF MODULE-COMPLIANCE (no object page) NOTIFICATION-GROUP (no object page) OBJECT-GROUP (no object page)
SNMPv2-SMI Counter64 Gauge32 Integer32 MODULE-IDENTITY (no object page) NOTIFICATION-TYPE (no object page) OBJECT-TYPE (no object page) Unsigned32
SNMPv2-TC TEXTUAL-CONVENTION (no object page)
Net-SNMP examples using the cisco MIB directory Show commands

These commands use the standard Observium installation path and load the selected MIB variant before the RFC and Net-SNMP directories.

Translate the module identity
/usr/bin/snmptranslate -Pud -Ir -On -m 'CISCO-NAT-CGN-EXT-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'CISCO-NAT-CGN-EXT-MIB::ciscoNatCgnExtMIB'
Walk the MIB subtree
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-NAT-CGN-EXT-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-NAT-CGN-EXT-MIB::ciscoNatCgnExtMIB'
How SNMP, Net-SNMP, MIB paths, and variants work
Objects (54)
.1.3.6.1.4.1.9.9.818
.1.3.6.1.4.1.9.9.818.0
.1.3.6.1.4.1.9.9.818.1
.1.3.6.1.4.1.9.9.818.1.1
.1.3.6.1.4.1.9.9.818.1.1.1
.1.3.6.1.4.1.9.9.818.1.1.1.1
OctetString
.1.3.6.1.4.1.9.9.818.1.1.1.2
OctetString
.1.3.6.1.4.1.9.9.818.1.1.1.3
OctetString
.1.3.6.1.4.1.9.9.818.1.1.1.4
.1.3.6.1.4.1.9.9.818.1.1.1.5
.1.3.6.1.4.1.9.9.818.1.1.1.6
Unsigned32
.1.3.6.1.4.1.9.9.818.1.1.1.7
Unsigned32
.1.3.6.1.4.1.9.9.818.1.1.1.8
.1.3.6.1.4.1.9.9.818.1.2
.1.3.6.1.4.1.9.9.818.1.2.1
.1.3.6.1.4.1.9.9.818.1.2.1.1
.1.3.6.1.4.1.9.9.818.1.2.1.1.1
.1.3.6.1.4.1.9.9.818.1.2.1.1.10
.1.3.6.1.4.1.9.9.818.1.2.1.1.11
Integer32
.1.3.6.1.4.1.9.9.818.1.2.1.1.12
percentInteger32
.1.3.6.1.4.1.9.9.818.1.2.1.1.13
percentInteger32
.1.3.6.1.4.1.9.9.818.1.2.1.1.14
percentInteger32
.1.3.6.1.4.1.9.9.818.1.2.1.1.15
percentInteger32
.1.3.6.1.4.1.9.9.818.1.2.1.1.16
Unsigned32
.1.3.6.1.4.1.9.9.818.1.2.1.1.17
.1.3.6.1.4.1.9.9.818.1.2.1.1.2
.1.3.6.1.4.1.9.9.818.1.2.1.1.3
.1.3.6.1.4.1.9.9.818.1.2.1.1.4
.1.3.6.1.4.1.9.9.818.1.2.1.1.5
.1.3.6.1.4.1.9.9.818.1.2.1.1.6
.1.3.6.1.4.1.9.9.818.1.2.1.1.7
.1.3.6.1.4.1.9.9.818.1.2.1.1.8
.1.3.6.1.4.1.9.9.818.1.2.1.1.9
.1.3.6.1.4.1.9.9.818.1.2.2
natInstanceIndex
.1.3.6.1.4.1.9.9.818.1.2.2.1
.1.3.6.1.4.1.9.9.818.1.2.2.1.1
.1.3.6.1.4.1.9.9.818.1.2.2.1.2
.1.3.6.1.4.1.9.9.818.1.2.2.1.3
.1.3.6.1.4.1.9.9.818.1.2.2.1.4
.1.3.6.1.4.1.9.9.818.1.2.2.1.5
.1.3.6.1.4.1.9.9.818.1.2.2.1.6
.1.3.6.1.4.1.9.9.818.1.2.2.1.7
.1.3.6.1.4.1.9.9.818.1.2.2.1.8
.1.3.6.1.4.1.9.9.818.1.2.3
natInstanceIndexcNatCgnALGType
.1.3.6.1.4.1.9.9.818.1.2.3.1
.1.3.6.1.4.1.9.9.818.1.2.3.1.1
Enumeration
.1.3.6.1.4.1.9.9.818.1.2.3.1.2
.1.3.6.1.4.1.9.9.818.1.2.3.1.3
.1.3.6.1.4.1.9.9.818.1.2.3.1.4
.1.3.6.1.4.1.9.9.818.1.2.3.1.5
.1.3.6.1.4.1.9.9.818.1.2.3.1.6
.1.3.6.1.4.1.9.9.818.2
.1.3.6.1.4.1.9.9.818.2.1
.1.3.6.1.4.1.9.9.818.2.2
Dependencies (10) 6 direct · 4 transitive Show tree and compile order Hide dependency details

Each imported module is resolved in the importing module's source directory first, then through the normal default-variant rules.

Dependency tree
Type Definitions (2)
Enumeration
algActiveFTP(1)
algDNS(2)
algH323(3)
algHTTP(4)
algLDAP(5)
algMSRPC(6)
algNetBIOS(7)
algPCP(8)
algPPTP(9)
algRCMD(10)
algRTSP(11)
algSCCP(12)
algSIP(13)
algSunRPC(14)
Enumeration
nat44(1)
nat64Stateful(2)
dsLite(3)
Conformance Groups (11)
This group contains objects describing basic configuration
elements of NAT instances.
.1.3.6.1.4.1.9.9.818.2.2.1
This group contains objects describing optional configuration
elements of NAT instances.
.1.3.6.1.4.1.9.9.818.2.2.2
This group contains objects describing counters and
thresholds.
.1.3.6.1.4.1.9.9.818.2.2.3
This group contains objects describing counters specific to
session level tracking.
.1.3.6.1.4.1.9.9.818.2.2.4
This group contains objects describing configuration and
statistics specific to bulk port allocation.
.1.3.6.1.4.1.9.9.818.2.2.5
This group contains objects describing counters of
Netflow based logging.
.1.3.6.1.4.1.9.9.818.2.2.6
This group contains objects describing counters of
syslog based logging.
.1.3.6.1.4.1.9.9.818.2.2.7
This group contains objects describing fragment related
counters.
.1.3.6.1.4.1.9.9.818.2.2.8
This group contains objects describing counters related
to ALG processing.
.1.3.6.1.4.1.9.9.818.2.2.9
This group contains objects describing service related
configuration elements
.1.3.6.1.4.1.9.9.818.2.2.11
This group contains notifications supporting NAT instances.
.1.3.6.1.4.1.9.9.818.2.2.15
Compliance Statements (1)

OID .1.3.6.1.4.1.9.9.818.2.1.1
This compliance statement specifies the minimal requirements an
implementation must meet in order to claim full compliance with
the definition of the CISCO-NAT-CGN-EXT-MIB.
Required groups
mandatory cNatCgnConfigGroup
mandatory cNatCgnCountersGroup
mandatory cNatCgnNotificationsGroup
optional cNatCgnOptionConfigGroup This group is to be supported if the device supports
configuration of NAT pooling and behavior types.
optional cNatCgnBulkAllocGroup This group is to be supported if the device supports bulk port
allocation.
optional cNatCgnSessionGroup This group is to be supported if the device supports session
level tracking.
optional cNatCgnNetflowLoggingGroup This group is to be supported if the device supports Netflow
format of translation logging.
optional cNatCgnSyslogLoggingGroup This group is to be supported if the device supports Syslog
format of translation logging.
optional cNatCgnFragmentsGroup This group is to be supported if the device supports
fragmented packet processing.
optional cNatCgnALGCountersGroup This group is to be supported if the device supports one or
more ALGs in the NAT.
optional cNatCgnServiceNameGroup This group is to be supported if the device supports service
configuration.
Object refinements
ObjectAccessSyntaxDescription
cNatCgnInstanceBehaviorType readonly
Write access is optional.
cNatCgnInstancePoolingType readonly
Write access is optional.
cNatCgnInstanceProtocolPortLimit readonly
Write access is optional.
cNatCgnInstanceProtocolPortBulkAllocControl readonly
Write access is optional.
cNatCgnInstanceType readonly
Write access is optional.
cNatCgnInstanceVrf readonly
Write access is optional.
cNatCgnInstanceInterface readonly
Write access is optional.
cNatCgnInstanceServiceName readonly
Write access is optional.
Notifications / Traps (4)
NameOIDDescription
.1.3.6.1.4.1.9.9.818.0.1
The device generates this notification when the value of
cNatCgnCounterCurrentPortAllocation becomes lower than or equal
to the value of cNatCgnCounterPortUsageLowThreshold.
The device will not generate notification if
cNatCgnCounterPortUsageLowThreshold is set to zero.
.1.3.6.1.4.1.9.9.818.0.2
The device generates this notification when the value of
cNatCgnCounterCurrentPortAllocation becomes higher than or
equal to the value of cNatCgnCounterPortUsageClearLowThreshold
and if cNatCgnNotifPortUsageWatermarkLow is already generated.
The device will not generate notification if
cNatCgnCounterPortUsageClearLowThreshold is set to zero.
.1.3.6.1.4.1.9.9.818.0.3
The device generates this notification when the value of
cNatCgnCounterCurrentPortAllocation becomes higher than or
equal to the cNatCgnCounterPortUsageHighThreshold.
The device will not generate notification if
cNatCgnCounterPortUsageHighThreshold is set to zero.
.1.3.6.1.4.1.9.9.818.0.4
The device generates this notification when the value of
cNatCgnCounterCurrentPortAllocation becomes lower than or
equal to the value of cNatCgnCounterPortUsageClearLowThreshold
and if cNatCgnNotifPortUsageWatermarkHigh is already generated.
The device will not generate notification if
cNatCgnCounterPortUsageClearHighThreshold is set to zero.