CTRON-SSR-POLICY-MIB Table View

Table-centric layout grouping table, row, and column objects.

Tables
7
Rows
7
Columns
56
.1.3.6.1.4.1.52.2501.1.12.4 · 1 row entry · 18 columns
A list of Access Control List entries.
polAclEntry entry .1.3.6.1.4.1.52.2501.1.12.4.1
A record containing a Access Control List.
Indexes
polAclName polAclItem
Column Syntax OID
polAclName
The administratively assigned name to this static route entry.
SNMPv2-TCDisplayString
Textual Convention: SNMPv2-TCDisplayString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.52.2501.1.12.4.1.1
polAclItem
This row's unique identifier within a given ACL set. Member of the ACL set
are numbered from 1 to 256. If Item is set to 0, and rowStatus is destroy,
all rows for this set are destroyed.
Integer32
Constraints:
range: 0-256
.1.3.6.1.4.1.52.2501.1.12.4.1.2
polAclRestriction
The permissions/restrictions given to this static route entry.
Enumerationr/w
Enumerated Values:
1permit
2deny
.1.3.6.1.4.1.52.2501.1.12.4.1.3
polAclProtocol
The IETF protocol this ACL applies to.
SSRProtocolr/w
Textual Convention: SSRProtocol Enumeration
Type Values:
1ip
2tcp
3udp
4icmp
5igmp
6ipx
7ipxsap
8ipxrip
.1.3.6.1.4.1.52.2501.1.12.4.1.4
polAclSrcIp
The source L3 IP Address this ACL applies to.
SNMPv2-SMIIpAddressr/w
Textual Convention: SNMPv2-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.52.2501.1.12.4.1.5
polAclSrcMask
The source L3 IP Mask this ACL Applies to.
SNMPv2-SMIIpAddressr/w
Textual Convention: SNMPv2-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.52.2501.1.12.4.1.6
polAclDstIp
The source L3 IP Address this ACL applies to.
SNMPv2-SMIIpAddressr/w
Textual Convention: SNMPv2-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.52.2501.1.12.4.1.7
polAclDstMask
The source L3 IP Mask this ACL Applies to.
SNMPv2-SMIIpAddressr/w
Textual Convention: SNMPv2-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.52.2501.1.12.4.1.8
polAclTOS
The source L3 IP Type of Service field.
Integer32r/w
Constraints:
range: 0-15
.1.3.6.1.4.1.52.2501.1.12.4.1.9
polAclSrcPort
The source L3 IP source port/socket ACL applies to.
SSRsocketIdr/w
Textual Convention: SSRsocketId Integer32
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.52.2501.1.12.4.1.10
polAclDstPort
The source L3 IP destination port/socket ACL applies to.
SSRsocketIdr/w
Textual Convention: SSRsocketId Integer32
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.52.2501.1.12.4.1.11
polAclSrcOperator
polAclSrcPort is compared using this operator.
SSRPortComparatorr/w
Textual Convention: SSRPortComparator Enumeration
Type Values:
1notused
2eq
3neq
4lt
5gt
6range
.1.3.6.1.4.1.52.2501.1.12.4.1.12
polAclDstOperator
polAclDstPort is compared using this operator.
SSRPortComparatorr/w
Textual Convention: SSRPortComparator Enumeration
Type Values:
1notused
2eq
3neq
4lt
5gt
6range
.1.3.6.1.4.1.52.2501.1.12.4.1.13
polAclSrcHighRange
The high range source L3 IP port. Used
only when SrcOperator == range. polAclSrcPort is
used as the lower bounds of the range.
Integer32r/w
Constraints:
range: -1-65535
.1.3.6.1.4.1.52.2501.1.12.4.1.14
polAclDstHighRange
The high range destination L3 IP port. Used
only when SrcOperator == range. polAclDstPort is
used as the lower bounds of the range.
Integer32r/w
Constraints:
range: -1-65535
.1.3.6.1.4.1.52.2501.1.12.4.1.15
polAclAuditTrail
Flows matching this ACL are logged for Accounting when true.
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.52.2501.1.12.4.1.16
polAclCheckpoint
How long to keep flow at which point a checkpoint should be done.
A checkpoint may trigger earlier than this time should the maximum
batch size be reached.
Enumerationr/w
Enumerated Values:
1hourly
2daily
3weekly
4monthly
5endofcall
.1.3.6.1.4.1.52.2501.1.12.4.1.17
polAclRowStatus
SNMP V2 RowStatus control for this table.
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.52.2501.1.12.4.1.18
.1.3.6.1.4.1.52.2501.1.12.7 · 1 row entry · 4 columns
A list of ACL's currently in service.
polAclServiceEntry entry .1.3.6.1.4.1.52.2501.1.12.7.1
A record containing a Access Control Lists applied to Interfaces.
Indexes
polAclServiceIfIndex polAclName2
Column Syntax OID
polAclServiceIfIndex
The ifIndex of the IP Interface the ACL is applied to.
An SSR IP Interface has ifType 142
InterfaceIndex
Textual Convention: InterfaceIndex Integer32
Type Constraints:
range: 1..2147483647
.1.3.6.1.4.1.52.2501.1.12.7.1.1
polAclName2
The name of the ACL applied to the particular port.
SNMPv2-TCDisplayString
Textual Convention: SNMPv2-TCDisplayString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.52.2501.1.12.7.1.2
polAclServiceDirection
The direction the ACL is applied to the particular port.
Enumerationr/w
Enumerated Values:
1ingress
2egress
3both
.1.3.6.1.4.1.52.2501.1.12.7.1.3
polAclServiceRowStatus
SNMP V2 RowStatus control for this table.
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.52.2501.1.12.7.1.6
.1.3.6.1.4.1.52.2501.1.12.12 · 1 row entry · 3 columns
A list of IP Interfaces in service and their policy status. Each IP Interface can be
defined to use local static policy or remote dynamic policy in the config.
polAclInterfaceEntry entry .1.3.6.1.4.1.52.2501.1.12.12.1
A record containing a Access Control Lists applied to Interfaces.
Indexes
polAclInterfaceIfIndex polAclInterfaceDirection
Column Syntax OID
polAclInterfaceIfIndex
The ifIndex of the IP Interface the ACL is applied to.
InterfaceIndex
Textual Convention: InterfaceIndex Integer32
Type Constraints:
range: 1..2147483647
.1.3.6.1.4.1.52.2501.1.12.12.1.1
polAclInterfaceDirection
The direction the ACL is applied to the particular port.
Enumeration
Enumerated Values:
1ingress
2egress
3both
.1.3.6.1.4.1.52.2501.1.12.12.1.2
polAclPolicyStatus
Rules for what type of management can apply ACLs to a particular interface. If set to remote,
then a Policy Manager via SNMP may change dynamically the ACLs applied to an interface. Note,
ACLs applied dynamically are no…
Enumeration
Enumerated Values:
1local
2remote
.1.3.6.1.4.1.52.2501.1.12.12.1.3
.1.3.6.1.4.1.52.2501.1.15.20 · 1 row entry · 5 columns
A list of next hop IP routers.
polL4NextHopEntry entry .1.3.6.1.4.1.52.2501.1.15.20.1
An entry contains the status of a next hop router.
Indexes
polL4NextHopRouter
Column Syntax OID
polL4NextHopRouter
The IP Address of the next hop router flow will be sent to.
SNMPv2-SMIIpAddress
Textual Convention: SNMPv2-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.52.2501.1.15.20.1.1
polL4NextHopState
The current status of the polL4NextHopRouter.
If no entry found when a policy route is activated,
then arp for the request the state will be waitingForArp(2).
If a reply is found the state will go to macAcquired(3)
Enumeration
Enumerated Values:
1unknown
2waitingForArp
3macAcquired
4noArpReply
.1.3.6.1.4.1.52.2501.1.15.20.1.2
polL4NextHopPortOfExit
IfIndex of port we learned this router on or else zero if not known.
InterfaceIndexOrZero
Textual Convention: InterfaceIndexOrZero Integer32
Type Constraints:
range: 0..2147483647
.1.3.6.1.4.1.52.2501.1.15.20.1.3
polL4NextHopMacAddress
MAC Address of next hop router learned from ARP.
SNMPv2-TCMacAddress
Textual Convention: SNMPv2-TCMacAddress OctetString
Type Constraints:
range: 6
.1.3.6.1.4.1.52.2501.1.15.20.1.4
polL4NextHopLastChange
The value of sysUpTime when this polL4NextHopState changed.
SNMPv2-SMITimeTicks
Textual Convention: SNMPv2-SMITimeTicks Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.52.2501.1.15.20.1.5
.1.3.6.1.4.1.52.2501.1.15.30 · 1 row entry · 13 columns
Contains Control rows that indicate which flows have been redirected. As flows
are aged out and recreated, these rules will enforce flow redirection policy.
polL4lowControlEntry entry .1.3.6.1.4.1.52.2501.1.15.30.1
This table is an ordered collection of route policies. For SSR, this maps
to the command: ip-policy Name [permit|deny] acl acl-list
Indexes
polL4PolicyName polL4PolicySequence polL4PolicyInstance
Column Syntax OID
polL4PolicyName
A unique name for this flow policy.
SNMPv2-TCDisplayString
Textual Convention: SNMPv2-TCDisplayString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.52.2501.1.15.30.1.1
polL4PolicySequence
The evaluation order of this object. When two objects have the same value,
the value of the instance value decides which is evaluated first.
than higher numbers.
Integer32
Constraints:
range: 1-65535
.1.3.6.1.4.1.52.2501.1.15.30.1.2
polL4PolicyInstance
The sequence of this policy based route. Lower numbers have higher precedence
than higher numbers.
Integer32
Constraints:
range: 1-65535
.1.3.6.1.4.1.52.2501.1.15.30.1.3
polL4PolicyType
Controls if packets are forwarded or not for this policy.
SSRFlowPolicyTyper/w
Textual Convention: SSRFlowPolicyType Enumeration
Type Values:
1permitFlow
2denyFlow
.1.3.6.1.4.1.52.2501.1.15.30.1.4
polL4PolicyAction
Define when this policy should be used during normal packet forwarding process.
SSRFlowPolicyActionr/w
Textual Convention: SSRFlowPolicyAction Enumeration
Type Values:
1policyBeforeRouteLookup
2policyAfterRouteLookup
3useOnlyPolicyLookup
.1.3.6.1.4.1.52.2501.1.15.30.1.5
polL4PolicyMatch
Up to twenty (20) separate ACLs may be defined to match for this policy.
This object is mandatory. Use active row from polAclTable.
SSRFlowPolicyAclListr/w
Textual Convention: SSRFlowPolicyAclList OctetString
Type Constraints:
range: 1..4096
.1.3.6.1.4.1.52.2501.1.15.30.1.6
polL4PolicyNextHops
Up to for IpAddresses may be specified to route data to next. Load balancing
If more than one next hop ip address is specified, the default load balancing
scheme is round robin. This object is mandatory. Use objects fro…
SSRFlowNextHopListr/w
Textual Convention: SSRFlowNextHopList OctetString
Type Constraints:
range: 1..4096
.1.3.6.1.4.1.52.2501.1.15.30.1.7
polL4PolicyLoading
When more than one next hop is defined and available, set loading policy here.
SSRFlowLoadPolicyr/w
Textual Convention: SSRFlowLoadPolicy Enumeration
Type Values:
2firstAvailable
3roundRobin
.1.3.6.1.4.1.52.2501.1.15.30.1.8
polL4PolicyWatch
When True, use icmp echo to actively maintain status of next hop. This
is useful to prevent data sinks with static routes.
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.52.2501.1.15.30.1.9
polL4lowCreationTime
The value of sysUpTime when policy went was created then activated.
SNMPv2-SMITimeTicks
Textual Convention: SNMPv2-SMITimeTicks Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.52.2501.1.15.30.1.10
polL4lowActiveGates
The number of currently active nexthop gateways.
SNMPv2-SMIGauge32
Textual Convention: SNMPv2-SMIGauge32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.52.2501.1.15.30.1.11
polL4lowAppliedTimes
The number of times this policy was used.
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.52.2501.1.15.30.1.12
polL4lowControlStatus
Entries in active state cause a flow to remain programmed with the next hop router specified.
If the next hop router goes down, the rowStatus will become inactive. New flows that match this
specification will assume thi…
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.52.2501.1.15.30.1.13
.1.3.6.1.4.1.52.2501.1.16.3 · 1 row entry · 11 columns
A list of Layer 2 filters.
polL2FilterEntry entry .1.3.6.1.4.1.52.2501.1.16.3.1
An entry containing a layer 2 filter.
Indexes
polL2FilterIndex
Column Syntax OID
polL2FilterIndex
A unique index into the table representing a single filter entry. This value
will remain unique and the relationship between the index and the underlying filter
is valid until the next reboot.
Integer32
Constraints:
range: 1-65535
.1.3.6.1.4.1.52.2501.1.16.3.1.1
polL2FilterDesc
A string used to describe the filter. It should contain
the creator IP address, and other descriptive information about the filter.
It is recommended that names be unique within a given filter type.
This object may not …
OctetStringr/w
Constraints:
range: 0-25
.1.3.6.1.4.1.52.2501.1.16.3.1.2
polL2FilterType
The types of filters, as explained below.

static-entry

Based on the restrictions and the presence of
source, destination MAC address they can be of
three types :
Enumerationr/w
Enumerated Values:
1staticEntry
2addressFilter
3portAddressLock
4securePort
.1.3.6.1.4.1.52.2501.1.16.3.1.3
polL2FilterRestrictions
The first 3 restrictions, allow, disallow, force apply when the filterType
is static-entry. When polL2FilterType is addressFilter or portAddressLock,
this object does not apply. For securePort, the blockIngress, blockE…
Enumerationr/w
Enumerated Values:
1allow
2disallow
3force
4none
5blockIngress
6blockEgress
.1.3.6.1.4.1.52.2501.1.16.3.1.4
polL2FilterSrcMacAddr
The source MAC address, which is present in case
of a Flow, that has been learned by the switch.
SNMPv2-TCMacAddressr/w
Textual Convention: SNMPv2-TCMacAddress OctetString
Type Constraints:
range: 6
.1.3.6.1.4.1.52.2501.1.16.3.1.5
polL2FilterDstMacAddr
The destination MAC address which has been learned.

This object may not be modified if the associated.
polL2FilterStatus object is equal to active(1).
SNMPv2-TCMacAddressr/w
Textual Convention: SNMPv2-TCMacAddress OctetString
Type Constraints:
range: 6
.1.3.6.1.4.1.52.2501.1.16.3.1.6
polL2FilterVlanId
The VLAN the destination MAC address belongs to. The default VLAN
is id 1 on SSR.

This object may not be modified if the associated.
polL2FilterStatus object is equal to active(1).
SSRVlanIndexr/w
Textual Convention: SSRVlanIndex Integer32
Type Constraints:
range: 1..4100
.1.3.6.1.4.1.52.2501.1.16.3.1.7
polL2FilterInPorts
The set of Ports to which this filter applies on input.

This object may not be modified if the associated.
polL2FilterStatus object is equal to active(1).
SSRPortListr/w
Textual Convention: SSRPortList OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.52.2501.1.16.3.1.8
polL2FilterOutPorts
The set of ports to which this filter applies on output.

This object may not be modified if the associated.
polL2FilterStatus object is equal to active(1).
SSRPortListr/w
Textual Convention: SSRPortList OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.52.2501.1.16.3.1.9
polL2FilterCreationTime
The value of sysUpTime when this filter was made active(1).
SNMPv2-SMITimeTicks
Textual Convention: SNMPv2-SMITimeTicks Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.52.2501.1.16.3.1.10
polL2FilterStatus
SMIv2 RowStatus control for this table. Use createAndWait or createAndGo
to create a filter, use destroy to remove an entry or notInService to
disengage a filter without destroying it. A row in the notReady state has
n…
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.52.2501.1.16.3.1.11
.1.3.6.1.4.1.52.2501.1.16.4 · 1 row entry · 2 columns
A table containing hardware specific VLAN behavior configuration
information for VLANs created with the dot1qVlanStaticTable.
Configuration information for each VLAN configured into the device by (local or
network) management.
polL2Dot1qVlanStaticEntry entry .1.3.6.1.4.1.52.2501.1.16.4.1
An entry containing additional hardware
specific objects for a dot1qVlanStaticEntry.
Indexes
No indexes recorded
Column Syntax OID
polL2Dot1qVlanStaticProtocols
Specifies the types of traffic that will be forwarded on this VLAN.
Protocols not set in this definition will be filtered. The types of protocols
supported on this VLAN corresponds to the type option in the CLI comman…
Bitsr/w
Enumerated Values:
0reserved
1bridged-protocols
2ip
3ipx
4appletalk
5dec
6sna
7ipv6
.1.3.6.1.4.1.52.2501.1.16.4.1.1
polL2Dot1qVlanStaticL4Bridging
If this object has a value of false(2), the L4 Bridging feature is not
enabled on this VLAN. If this object has a value of true(1), the L4 Bridging
feature is enabled for this VLAN. This corresponds to the CLI command
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.52.2501.1.16.4.1.2