FOUNDRY-SN-IP-ACL-MIB Table View

Table-centric layout grouping table, row, and column objects.

Tables
8
Rows
8
Columns
85
.1.3.6.1.4.1.1991.1.2.2.15.2 · 1 row entry · 33 columns
Table of Access Control List
snAgAclEntry entry .1.3.6.1.4.1.1991.1.2.2.15.2.1
An entry in the IP access control list table.
Indexes
snAgAclIndex
Column Syntax OID
snAgAclIndex
The Access control list item number for an entry. This is a unique
number that identifies different Access list entries combined with
the Access list name and Access list number. This one has to be
unique even though th…
SNMPv2-SMIInteger32
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.1991.1.2.2.15.2.1.1
snAgAclNumber
The access-list number for this entry.
AclNumberr/w
Textual Convention: AclNumber Integer32
Type Constraints:
range: 1..5100
.1.3.6.1.4.1.1991.1.2.2.15.2.1.2
snAgAclName
ACL name for an entry.
SNMPv2-TCDisplayStringr/w
Textual Convention: SNMPv2-TCDisplayString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.1991.1.2.2.15.2.1.3
snAgAclAction
Action to take if the ip packet matches with this access control list.
Actionr/w
Textual Convention: Action Enumeration
Type Values:
0deny
1permit
.1.3.6.1.4.1.1991.1.2.2.15.2.1.4
snAgAclProtocol
Transport protocol. Valid values for the IP protocol are:
0 = any IP protocol
1 = ICMP
2 = IGMP
3 = ggp
4 = ipencap
5 = st2
6 = TCP
7 = cbt
8 = egp
9 = igp
10 = bbn_rcc
11 = nvp
12 = pup
13 = argus
14 = emcon
15 = xnet
IpProtocolr/w
Textual Convention: IpProtocol Integer32
Type Constraints:
range: 0..255
.1.3.6.1.4.1.1991.1.2.2.15.2.1.5
snAgAclSourceIp
Source IP address.
SNMPv2-SMIIpAddressr/w
Textual Convention: SNMPv2-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.1991.1.2.2.15.2.1.6
snAgAclSourceMask
Source IP subnet mask.
SNMPv2-SMIIpAddressr/w
Textual Convention: SNMPv2-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.1991.1.2.2.15.2.1.7
snAgAclSourceOperator
Type of comparison to perform. For now, this only applys to tcp or udp
to compare the port number
Operatorr/w
Textual Convention: Operator Enumeration
Type Values:
0eq
1neq
2lt
3gt
4range
7undefined
.1.3.6.1.4.1.1991.1.2.2.15.2.1.8
snAgAclSourceOperand1
For now this only refers to transport protocol port number. 0 means NA
Integer32r/w
Constraints:
range: 0-65535
.1.3.6.1.4.1.1991.1.2.2.15.2.1.9
snAgAclSourceOperand2
For now this only refers to transport protocol port number.
Used in ICMP Protocol to convey the ICMP Type
value. 0 means NA.
Valid values for ICMP Type:
1 = Echo reply
4 = Destination unreachable
5 = Source quench
6 = R…
Integer32r/w
Constraints:
range: 0-65535
.1.3.6.1.4.1.1991.1.2.2.15.2.1.10
snAgAclDestinationIp
Destination IP address.
SNMPv2-SMIIpAddressr/w
Textual Convention: SNMPv2-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.1991.1.2.2.15.2.1.11
snAgAclDestinationMask
Destination IP subnet mask.
SNMPv2-SMIIpAddressr/w
Textual Convention: SNMPv2-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.1991.1.2.2.15.2.1.12
snAgAclDestinationOperator
Type of comparison to perform. For now, this only applys to tcp or udp
to compare the port number
Operatorr/w
Textual Convention: Operator Enumeration
Type Values:
0eq
1neq
2lt
3gt
4range
7undefined
.1.3.6.1.4.1.1991.1.2.2.15.2.1.13
snAgAclDestinationOperand1
For now this only refers to transport protocol port number. 0 means NA
Integer32r/w
Constraints:
range: 0-65535
.1.3.6.1.4.1.1991.1.2.2.15.2.1.14
snAgAclDestinationOperand2
For now this only refers to transport protocol port number. 0 means NA
Integer32r/w
Constraints:
range: 0-65535
.1.3.6.1.4.1.1991.1.2.2.15.2.1.15
snAgAclPrecedence
This refers to IP precedence value in the range <0-7>
critical(5),
flash(3),
flash-override(4),
immediate(2),
internet(6),
network(7),
priority(1),
routine(0)
PrecedenceValuer/w
Textual Convention: PrecedenceValue Enumeration
Type Values:
0routine
1priority
2immediate
3flash
4flashoverride
5critical
6internet
7network
8undefined
.1.3.6.1.4.1.1991.1.2.2.15.2.1.16
snAgAclTos
This refers to the IP type of service value in range <0-15>, which is
the sum of numeric vlaues of the following options -
match packets with maximum reliability TOS (2)
match packets with maximum throughput TOS (4)
mat…
TosValuer/w
Textual Convention: TosValue Enumeration
Type Values:
0normal
1minMonetaryCost
2maxReliability
3tosValue3
4maxThroughput
5tosValue5
6tosValue6
7tosValue7
8minDelay
9tosValue9
10tosValue10
11tosValue11
12tosValue12
13tosValue13
14tosValue14
15tosValue15
16undefined
.1.3.6.1.4.1.1991.1.2.2.15.2.1.17
snAgAclEstablished
Enable/Disable the filtering of established TCP packets of which the
ACK or RESET flag is on. This additional filter only applies to TCP
transport protocol.
FOUNDRY-SN-IP-MIBRtrStatusr/w
Textual Convention: FOUNDRY-SN-IP-MIBRtrStatus Enumeration
Type Values:
0disabled
1enabled
.1.3.6.1.4.1.1991.1.2.2.15.2.1.18
snAgAclLogOption
Log flag
TruthValr/w
Textual Convention: TruthVal Enumeration
Type Values:
0false
1true
.1.3.6.1.4.1.1991.1.2.2.15.2.1.19
snAgAclStandardFlag
Return whether the ACL is standard or extended, 1 for standard ACL
TruthValr/w
Textual Convention: TruthVal Enumeration
Type Values:
0false
1true
.1.3.6.1.4.1.1991.1.2.2.15.2.1.20
snAgAclRowStatus
To create or delete a access list entry.
SnRowStatusr/w
Textual Convention: SnRowStatus Enumeration
Type Values:
1other
2valid
3delete
4create
.1.3.6.1.4.1.1991.1.2.2.15.2.1.21
snAgAclFlowCounter
Approximate count of flows matching individual ACL entry.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.1991.1.2.2.15.2.1.22
snAgAclPacketCounter
Accurate count of packets matching individual ACL entry.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.1991.1.2.2.15.2.1.23
snAgAclComments
Remark description of individual ACL entry.
SNMPv2-TCDisplayStringr/w
Textual Convention: SNMPv2-TCDisplayString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.1991.1.2.2.15.2.1.24
snAgAclIpPriority
QoS priority option for IP ACL entry.
Integer32r/w
Constraints:
range: 0-3
.1.3.6.1.4.1.1991.1.2.2.15.2.1.25
snAgAclPriorityForce
Force packet outgoing priority. Not defined(4)
Integer32r/w
Constraints:
range: 0-4
.1.3.6.1.4.1.1991.1.2.2.15.2.1.26
snAgAclPriorityMapping
Map incoming packet priority. Not defined(8)
Integer32r/w
Constraints:
range: 0-8
.1.3.6.1.4.1.1991.1.2.2.15.2.1.27
snAgAclDscpMarking
Mark packets with given DSCP value. Not defined(64)
Integer32r/w
Constraints:
range: 0-64
.1.3.6.1.4.1.1991.1.2.2.15.2.1.28
snAgAclDscpMapping
Map incoming DSCP value. Not defined(64)
Integer32r/w
Constraints:
range: 0-64
.1.3.6.1.4.1.1991.1.2.2.15.2.1.29
snAgAclIcmpCode
ICMP Message Code value. Used in combination with
ICMP Message Type (use snAgAclSourceOperand2) to
setup an ICMP filter. This object is not used with any
other protocol. 0 means NA.
Supported values
Type: Echo reply
---…
Integer32r/w
Constraints:
range: 0-255
.1.3.6.1.4.1.1991.1.2.2.15.2.1.30
snAgAclParameters
This mask represents multiple parameters configured for this ACL.
Bit 0 specified in the BITS construct is the MS bit of the first octet.
Bit 0: Match fragmented IP packets
Bit 1: Match non-fragmented IP packets
Bit 2: …
Bitsr/w
Enumerated Values:
0matchFragmentedPackets
1matchNonFragmentedPackets
2matchTcpSynSetPackets
3permitFailedRPFCheckPackets
4mirrorPermitPackets
5sendPermitPacketsToSflowCollector
6dscpMappingFlagSet
7dscpMarkingFlagSet
.1.3.6.1.4.1.1991.1.2.2.15.2.1.31
snAgAclVlanId
Optional VLAN ID to match against that of the incoming packet.
By default, the VLAN ID field is ignored during the match. In this case,
value 0 is returned.
FOUNDRY-SN-SWITCH-GROUP-MIBFdryVlanIdOrNoneTCr/w
Textual Convention: FOUNDRY-SN-SWITCH-GROUP-MIBFdryVlanIdOrNoneTC Integer32
Type Constraints:
range: 0..4094
.1.3.6.1.4.1.1991.1.2.2.15.2.1.32
snAgAclClauseString
Returns the equivalent filter clause string.
SNMPv2-TCDisplayString
Textual Convention: SNMPv2-TCDisplayString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.1991.1.2.2.15.2.1.33
.1.3.6.1.4.1.1991.1.2.2.15.3 · 1 row entry · 6 columns
Table of ACL binding to port for router
snAgAclBindToPortEntry entry .1.3.6.1.4.1.1991.1.2.2.15.3.1
An entry in the ACL-binding-to-port table.
Indexes
snAgAclPortNum snAgAclPortBindDirection
Column Syntax OID
snAgAclPortNum
Binding-to port num, either physical port or virtual interface.
SNMPv2-SMIInteger32
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.1991.1.2.2.15.3.1.1
snAgAclPortBindDirection
ACL port direction, inbound or outbound
Direction
Textual Convention: Direction Enumeration
Type Values:
0inbound
1outbound
.1.3.6.1.4.1.1991.1.2.2.15.3.1.2
snAgAclNum
Defined ACL number
SNMPv2-SMIInteger32r/w
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.1991.1.2.2.15.3.1.3
snAgAclNameString
Defined ACL name
SNMPv2-TCDisplayStringr/w
Textual Convention: SNMPv2-TCDisplayString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.1991.1.2.2.15.3.1.4
snAgBindPortListInVirtualInterface
Port list for binding virtual interface
OctetStringr/w .1.3.6.1.4.1.1991.1.2.2.15.3.1.5
snAgAclPortRowStatus
To create or delete a ACL port entry.
SnRowStatusr/w
Textual Convention: SnRowStatus Enumeration
Type Values:
1other
2valid
3delete
4create
.1.3.6.1.4.1.1991.1.2.2.15.3.1.6
.1.3.6.1.4.1.1991.1.2.2.15.4 · 1 row entry · 8 columns
Table of ACL binding to port for router
snAgAclIfBindEntry entry .1.3.6.1.4.1.1991.1.2.2.15.4.1
An entry in the ACL-binding-to-port table.
Indexes
snAgAclIfBindIndex snAgAclIfBindDirection
Column Syntax OID
snAgAclIfBindIndex
Binding-to port num, either physical port or virtual interface.
IF-MIBInterfaceIndex
Textual Convention: IF-MIBInterfaceIndex Integer32
Type Constraints:
range: 1..2147483647
.1.3.6.1.4.1.1991.1.2.2.15.4.1.1
snAgAclIfBindDirection
ACL port direction, inbound or outbound
Direction
Textual Convention: Direction Enumeration
Type Values:
0inbound
1outbound
.1.3.6.1.4.1.1991.1.2.2.15.4.1.2
snAgAclIfBindNum
The id of the IPv4 ACL bound to this Interface (0 represents named ACL)
Integer32r/w
Constraints:
range: 0-199
.1.3.6.1.4.1.1991.1.2.2.15.4.1.3
snAgAclIfBindName
The name of the IPv4 ACL name bound to this Interface
OctetStringr/w
Constraints:
range: 0-255
.1.3.6.1.4.1.1991.1.2.2.15.4.1.4
snAgAclIfBindVifPortList
This object specifies the port list for binding virtual interface.
Each port index is an ifIndex, if there are consecutive 4 or more
ifIndex then, they will be encoded like below.

Encoding and decoding sc…
OctetStringr/w .1.3.6.1.4.1.1991.1.2.2.15.4.1.5
snAgAclIfBindRowStatus
To create or delete a ACL port entry.
SnRowStatusr/w
Textual Convention: SnRowStatus Enumeration
Type Values:
1other
2valid
3delete
4create
.1.3.6.1.4.1.1991.1.2.2.15.4.1.6
snAgAclIfBindDenyLogging
Enable or disable deny logging.
Enumerationr/w
Enumerated Values:
0disable
1enable
.1.3.6.1.4.1.1991.1.2.2.15.4.1.7
snAgAclIfIpv6BindName
The name of the IPv6 ACL name bound to this Interface
OctetStringr/w
Constraints:
range: 0-200
.1.3.6.1.4.1.1991.1.2.2.15.4.1.8
.1.3.6.1.4.1.1991.1.2.2.15.5 · 1 row entry · 15 columns
Table of ACL Accounting Statistics for router
agAclAccntEntry entry .1.3.6.1.4.1.1991.1.2.2.15.5.1
An entry in the ACL-binding-to-port table.
Indexes
agAclAccntKind agAclAccntIfIndex agAclAccntDirection agAclAccntAclNumber agAclAccntFilterId
Column Syntax OID
agAclAccntKind
Kind of ACL Accounting statistics needed. ipv4PolicyBasedRouting(2)
and ipv6PolicyBasedRouting(6) are implemented in brcdPbrAclAccntTable.
Agent will fail for GET on ipv4PolicyBasedRouting(2) and
ipv6PolicyBasedRouting(…
Enumeration
Enumerated Values:
0ipv4
1l2
3rateLimit
4receiveAcl
5ipv6
7ipv6ReceiveAcl
.1.3.6.1.4.1.1991.1.2.2.15.5.1.1
agAclAccntIfIndex
Physical or virtual interface on which ACL accounting is desired.
For Receive ACL, we use the lowest port of the management module
as value for this object.
IF-MIBInterfaceIndex
Textual Convention: IF-MIBInterfaceIndex Integer32
Type Constraints:
range: 1..2147483647
.1.3.6.1.4.1.1991.1.2.2.15.5.1.2
agAclAccntDirection
ACL port direction, inbound or outbound. For receive-acl kind, direction cannot be outbound.
Direction
Textual Convention: Direction Enumeration
Type Values:
0inbound
1outbound
.1.3.6.1.4.1.1991.1.2.2.15.5.1.3
agAclAccntAclNumber
The access-list number for this entry.
AclNumber
Textual Convention: AclNumber Integer32
Type Constraints:
range: 1..5100
.1.3.6.1.4.1.1991.1.2.2.15.5.1.4
agAclAccntFilterId
FilterId within a given ACL. This is a zero based value.
SNMPv2-SMIUnsigned32
Textual Convention: SNMPv2-SMIUnsigned32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.2.2.15.5.1.5
agAclAccntAclName
ACL name for an entry, if applicable. Otherwise, null string is returned.
AclNameString
Textual Convention: AclNameString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.1991.1.2.2.15.5.1.6
agAclAccntOneSecond
Last one second accounting data.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.1991.1.2.2.15.5.1.7
agAclAccntOneMinute
Last one minute accounting data.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.1991.1.2.2.15.5.1.8
agAclAccntFiveMinute
Last five minute accounting data.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.1991.1.2.2.15.5.1.9
agAclAccntCumulative
Cummulative accounting data since the ACL was installed.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.1991.1.2.2.15.5.1.10
agAclAccntRaclDropCnt
Receive-ACL drop counter used for rate limiting. Not used for other ACL kind.
The value returned is per ACL, instead of per filter within the ACL.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.1991.1.2.2.15.5.1.11
agAclAccntRaclFwdCnt
Receive-ACL forward counter used for rate limiting. Not used for other ACL kind.
The value returned is per ACL, instead of per filter within the ACL.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.1991.1.2.2.15.5.1.12
agAclAccntRaclRemarkCnt
Receive-ACL remark counter used for rate limiting. Not used for other ACL kind.
The value returned is per ACL, instead of per filter within the ACL.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.1991.1.2.2.15.5.1.13
agAclAccntRaclTotalCnt
Receive-ACL total counter used for rate limiting. Not used for other ACL kind.
The value returned is per ACL, instead of per filter within the ACL.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.1991.1.2.2.15.5.1.14
agAclAccntRaclTotalSWHitCountCnt
Receive-ACL cumulative software hit counter. Not used for other ACL kind.
The value returned is per ACL, instead of per filter within the ACL.
SNMPv2-SMICounter64
Textual Convention: SNMPv2-SMICounter64 Unsigned64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.1991.1.2.2.15.5.1.15
.1.3.6.1.4.1.1991.1.2.2.15.6 · 1 row entry · 1 columns
This read-only table contains the list of next lowest available clause index that
can be used for creating a new instance in the fdryL2AclTable.
The clause index values will not change as a result of switchovers or hitless upgrades,
but may change as a result of a device reload (though the relative order of persistent
entries would remain the same).
fdryL2AclNextClauseEntry entry .1.3.6.1.4.1.1991.1.2.2.15.6.1
An entry specifying the next lowest available clause index for this ACL number.
Indexes
fdryL2AclNumber
Column Syntax OID
fdryL2AclNextClauseIndex
The next lowest available clause index for a given ACL number. The maximum value
of this object is the configured maximum number of clauses for a L2 ACL.
FdryClauseIndexTC
Textual Convention: FdryClauseIndexTC Unsigned32
.1.3.6.1.4.1.1991.1.2.2.15.6.1.1
.1.3.6.1.4.1.1991.1.2.2.15.7 · 1 row entry · 15 columns
Table of Layer 2 Access Control Lists. Layer 2 ACLs filter traffic
based on any of the following fields:
- Source MAC address and source MAC mask
- Destination MAC address and destination MAC mask
- VLAN ID
- Ethernet type.
For a given ACL number, one can have 64 (default) to 256 clauses.
The clause index values will not change as a result of switchovers or hitless upgrades,
but may change as a result of a device reload (though the relative order of persistent
entries would remain the same).
fdryL2AclEntry entry .1.3.6.1.4.1.1991.1.2.2.15.7.1
An entry in the L2 Access Control List table.
Indexes
fdryL2AclNumber fdryL2AclClauseIndex
Column Syntax OID
fdryL2AclNumber
The access-list number for this entry.
For L2ACL, the valid values are between 400 and 599.
AclNumber
Textual Convention: AclNumber Integer32
Type Constraints:
range: 1..5100
.1.3.6.1.4.1.1991.1.2.2.15.7.1.1
fdryL2AclClauseIndex
The index of the clause within a given ACL number.
During row creation, the clause index value should match
with the next available clause index for a given ACL number.
It is advisable to first do a Get operation on the…
FdryClauseIndexTC
Textual Convention: FdryClauseIndexTC Unsigned32
.1.3.6.1.4.1.1991.1.2.2.15.7.1.2
fdryL2AclAction
Action to take if the ingress L2 packet matches this ACL.
Actionr/w
Textual Convention: Action Enumeration
Type Values:
0deny
1permit
.1.3.6.1.4.1.1991.1.2.2.15.7.1.3
fdryL2AclSourceMac
Optional Source MAC address. By default, it matches with
any source MAC within a packet.
SNMPv2-TCMacAddressr/w
Textual Convention: SNMPv2-TCMacAddress OctetString
Type Constraints:
range: 6
.1.3.6.1.4.1.1991.1.2.2.15.7.1.4
fdryL2AclSourceMacMask
Optional Source MAC address mask.
For Set operation, this object can only be used in
conjunction with fdryL2AclSourceMac.
By default, it matches with any source MAC within a packet.
it matches with any source MAC withi…
SNMPv2-TCMacAddressr/w
Textual Convention: SNMPv2-TCMacAddress OctetString
Type Constraints:
range: 6
.1.3.6.1.4.1.1991.1.2.2.15.7.1.5
fdryL2AclDestinationMac
Optional destination MAC address.
By default, it matches with any destination MAC within a packet.
SNMPv2-TCMacAddressr/w
Textual Convention: SNMPv2-TCMacAddress OctetString
Type Constraints:
range: 6
.1.3.6.1.4.1.1991.1.2.2.15.7.1.6
fdryL2AclDestinationMacMask
Optional destination MAC address mask.
For Set operation, this object can only be used in
conjunction with fdryL2AclDestinationMac.
By default, it matches with any destination MAC within a packet.
To match on the first …
SNMPv2-TCMacAddressr/w
Textual Convention: SNMPv2-TCMacAddress OctetString
Type Constraints:
range: 6
.1.3.6.1.4.1.1991.1.2.2.15.7.1.7
fdryL2AclVlanId
Optional VLAN ID to match against that of the incoming packet.
By default, the VLAN ID field is ignored during the match. In this case,
value 0 is returned.
FOUNDRY-SN-SWITCH-GROUP-MIBFdryVlanIdOrNoneTCr/w
Textual Convention: FOUNDRY-SN-SWITCH-GROUP-MIBFdryVlanIdOrNoneTC Integer32
Type Constraints:
range: 0..4094
.1.3.6.1.4.1.1991.1.2.2.15.7.1.8
fdryL2AclEthernetType
Optional Ethernet Type to match against the etype field
of the incoming packet.
By default, etype field is ignored during the match.
FdryEnetTypeOrZeroTCr/w
Textual Convention: FdryEnetTypeOrZeroTC Enumeration
Type Values:
0invalid
1ipv4
2arp
3ipv6
.1.3.6.1.4.1.1991.1.2.2.15.7.1.9
fdryL2AclDot1pPriority
The priority option assigns traffic that matches the ACL to a
hardware forwarding queue. In addition to changing the internal
forwarding priority, if the outgoing interface is an 802.1q interface,
this option maps the s…
FOUNDRY-SN-SWITCH-GROUP-MIBPortQosTCr/w
Textual Convention: FOUNDRY-SN-SWITCH-GROUP-MIBPortQosTC Enumeration
Type Values:
0level0
1level1
2level2
3level3
4level4
5level5
6level6
7level7
127invalid
.1.3.6.1.4.1.1991.1.2.2.15.7.1.10
fdryL2AclDot1pPriorityForce
The priority-force option assigns packets of outgoing traffic
that match the ACL to a specific hardware forwarding queue,
even though the incoming packet may be assigned to another queue.
This option is applicable for i…
FOUNDRY-SN-SWITCH-GROUP-MIBPortQosTCr/w
Textual Convention: FOUNDRY-SN-SWITCH-GROUP-MIBPortQosTC Enumeration
Type Values:
0level0
1level1
2level2
3level3
4level4
5level5
6level6
7level7
127invalid
.1.3.6.1.4.1.1991.1.2.2.15.7.1.11
fdryL2AclDot1pPriorityMapping
The priority-mapping option matches on the packets 802.1p value.
This option does not change the packets forwarding priority through
the device or mark the packet. This keyword is applicable for both
inbound and outboun…
FOUNDRY-SN-SWITCH-GROUP-MIBPortQosTCr/w
Textual Convention: FOUNDRY-SN-SWITCH-GROUP-MIBPortQosTC Enumeration
Type Values:
0level0
1level1
2level2
3level3
4level4
5level5
6level6
7level7
127invalid
.1.3.6.1.4.1.1991.1.2.2.15.7.1.12
fdryL2AclMirrorPackets
Mirror packets matching ACL permit clause.
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.1991.1.2.2.15.7.1.13
fdryL2AclLogEnable
Optional parameter to enable logging only when deny clause
is specified. Note that traffic denied by implicit deny mechanism is not
subject to logging. The implicit deny kicks in when the traffic
does not match any of t…
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.1991.1.2.2.15.7.1.14
fdryL2AclRowStatus
The row status variable, used according to installation
and removal conventions for conceptual rows. Setting this
object to active(1) or createAndGo(4) results in the
addition of a L2 ACL filter in the router. Duplicate…
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.1991.1.2.2.15.7.1.15
.1.3.6.1.4.1.1991.1.2.2.15.8 · 1 row entry · 3 columns
Table of L2 ACL binding to port.
- One cannot bind Layer 2 ACLs and Layer 3 ACLs to the same port.
However, one can configure a port to use Layer 2 ACLs, and
another port on the same device to use Layer 3 ACLs.
- In general, Layer 2 ACLs cannot be bound to virtual interfaces, unlike L3 ACLs.
- One cannot modify an existing Layer 2 ACL clause. For that, one must
unbind the ACL, delete it and make a new clause.
fdryL2AclIfBindEntry entry .1.3.6.1.4.1.1991.1.2.2.15.8.1
An entry in the L2ACL binding table which lists the ACL bindings to a port.
Indexes
IF-MIBifIndex fdryL2AclIfBindDirection
Column Syntax OID
fdryL2AclIfBindDirection
Direction in which this ACL should be applied on this port.
Direction
Textual Convention: Direction Enumeration
Type Values:
0inbound
1outbound
.1.3.6.1.4.1.1991.1.2.2.15.8.1.1
fdryL2AclIfBindAclNumber
The ACL number that is to be bound to given physical interface.
The valid values for L2 numbered ACLs are between 400 and 599.
SNMPv2-SMIUnsigned32r/w
Textual Convention: SNMPv2-SMIUnsigned32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.1991.1.2.2.15.8.1.2
fdryL2AclIfBindRowStatus
The row status variable, used according to installation
and removal conventions for conceptual rows. Setting this
object to active(1) or createAndGo(4) results in the
binding of a L2 ACL with a given physical port.
Sett…
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.1991.1.2.2.15.8.1.3
.1.3.6.1.4.1.1991.1.2.2.15.9 · 1 row entry · 4 columns
Table of PBR ACL Accounting Statistics for router.
brcdPbrAclAccntEntry entry .1.3.6.1.4.1.1991.1.2.2.15.9.1
An entry in the PBR ACL-binding-to-port table.
Indexes
brcdPbrAclAccntKind brcdPbrAclAccntIfIndex brcdPbrSerialNumber
Column Syntax OID
brcdPbrAclAccntKind
Kind of PBR ACL Accounting statistics needed.
Enumeration
Enumerated Values:
1ipv4PolicyBasedRouting
2ipv6PolicyBasedRouting
.1.3.6.1.4.1.1991.1.2.2.15.9.1.1
brcdPbrAclAccntIfIndex
Physical or virtual interface on which ACL accounting is desired
IF-MIBInterfaceIndex
Textual Convention: IF-MIBInterfaceIndex Integer32
Type Constraints:
range: 1..2147483647
.1.3.6.1.4.1.1991.1.2.2.15.9.1.2
brcdPbrSerialNumber
This is a running number and may change if an acl or routemap is modified
Integer32
Constraints:
range: 0-2147483647
.1.3.6.1.4.1.1991.1.2.2.15.9.1.3
brcdPbrAclAccntAclInfo
This contains ACL Number, ACL Name, ACL Filter Id, last five minutes and
cumulative accounting data since the ACL was installed.
Each field is separated by a pipe character
i.e. 5MIN|CUMULATIVE|ACL Number|ACL Filter …
SNMPv2-TCDisplayString
Textual Convention: SNMPv2-TCDisplayString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.1991.1.2.2.15.9.1.4