H3C-PORT-SECURITY-MIB Table View

Table-centric layout grouping table, row, and column objects.

Tables
5
Rows
5
Columns
20
.1.3.6.1.4.1.2011.10.2.26.1.2.1 · 1 row entry · 6 columns
Uses the h3c variant from /opt/observium/mibs/h3c.
Command help
Walk h3cSecurePortTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'H3C-PORT-SECURITY-MIB' -M '/opt/observium/mibs/h3c:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'H3C-PORT-SECURITY-MIB::h3cSecurePortTable'
This table defines the security status of each secure port.
Each port can have a number of authorised MAC addresses, and these are
stored in the h3cSecureAddressTable.
h3cSecurePortEntry row .1.3.6.1.4.1.2011.10.2.26.1.2.1.1
There is a row in this table for each secure port, and
allows repeater ports to be configured for security on a per port basis.
It is indexed using the object ifIndex in RFC1213-MIB.
Column Syntax OID
Determines the learning and security modes of the port.
See h3cSecureNeedToKnowMode and h3cSecureIntrusionAction to
configure Need To Know and Intrusion Action on each port.
(When in a learning mode, h3cSecureNumberAddr…
Enumerationr/w
Enumerated Values:
1noRestrictions
2continuousLearning
3autoLearn
4secure
5userLogin
6userLoginSecure
7userLoginWithOUI
8macAddressWithRadius
9macAddressOrUserLoginSecure
10macAddressElseUserLoginSecure
11userLoginSecureExt
12macAddressOrUserLoginSecureExt
13macAddressElseUserLoginSecureExt
14macAddressAndUserLoginSecure
15macAddressAndUserLoginSecureExt
.1.3.6.1.4.1.2011.10.2.26.1.2.1.1.1
Attribute to determine which frames are to be forwarded to
this port intact.

1 - Need To Know is not available.
2 - All frames.
3 - Frames addressed to the authorised devices only.
4 - Frames addressed to…
Enumerationr/w
Enumerated Values:
1notAvailable
2disabled
3needToKnowOnly
4needToKnowWithBroadcastsAllowed
5needToKnowWithMulticastsAllowed
6permanentNeedToKnowOnly
7permanentNeedToKnowWithBroadcastsAllowed
8permanentNeedToKnowWithMulticastsAllowed
.1.3.6.1.4.1.2011.10.2.26.1.2.1.1.2
Attribute to determine the action if an unauthorised device
transmits on this port.
Enumerationr/w
Enumerated Values:
1notAvailable
2noAction
3disablePort
4disablePortTemporarily
5allowDefaultAccess
6blockMacAddress
.1.3.6.1.4.1.2011.10.2.26.1.2.1.1.3
The maximum number of addresses that the port can learn or
store. Reducing this number may cause some addresses to be deleted.
This value is set by the user and cannot be automatically changed by the
agent. The maximum…
SNMPv2-SMIInteger32r/w
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.2011.10.2.26.1.2.1.1.4
The number of addresses that are currently in the
AddressTable for this port. If this object has the same value as
h3cSecureNumberAddresses, then no more addresses can be authorised on this
port. The number will not i…
SNMPv2-SMIInteger32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.2011.10.2.26.1.2.1.1.5
This indicates the maximum value that h3cSecureNumberAddresses
can be set to. It is dependent on the resources available so may change,
eg. if resources are shared between ports, then this value can both
increase and d…
SNMPv2-SMIInteger32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.2011.10.2.26.1.2.1.1.6
.1.3.6.1.4.1.2011.10.2.26.1.2.2 · 1 row entry · 4 columns
Uses the h3c variant from /opt/observium/mibs/h3c.
Command help
Walk h3cSecureAddressTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'H3C-PORT-SECURITY-MIB' -M '/opt/observium/mibs/h3c:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'H3C-PORT-SECURITY-MIB::h3cSecureAddressTable'
This table stores the MAC addresses assigned to each
port.  This table can be written to by the agent as well as the
management station.
h3cSecureAddressEntry row .1.3.6.1.4.1.2011.10.2.26.1.2.2.1
This table allows multiple addresses to be assigned to each
secure port. It is indexed using the objects ifIndex,
h3cSecureAddrMAC and h3cSecureVlanID.
Column Syntax OID
The MAC address of a station assigned to this port.
This is the second index into the h3cSecureAddressTable.
SNMPv2-TCMacAddress
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.2011.10.2.26.1.2.2.1.1
The Vlan ID associate with the port and the MAC address.
This is the third index into the h3cSecureAddressTable.
SNMPv2-SMIInteger32r/w
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.2011.10.2.26.1.2.2.1.2
The state of the mac address assigned to this port.

addressBlackhole (1) the mac address is a blackhole address,
Each packet whose source address is equal to this address will be
dropped by the ag…
Enumerationr/w
Enumerated Values:
1addressBlackhole
2addressUserConfig
3addressDot1xAuth
4addressRALM
.1.3.6.1.4.1.2011.10.2.26.1.2.2.1.3
This manages the creation and deletion or rows, and shows
the current status of the indexed MAC address. This object has the
following values.

active(1) The indexed MAC address is authorised on th…
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.2011.10.2.26.1.2.2.1.4
.1.3.6.1.4.1.2011.10.2.26.1.2.3 · 1 row entry · 3 columns
Uses the h3c variant from /opt/observium/mibs/h3c.
Command help
Walk h3cSecureOUITable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'H3C-PORT-SECURITY-MIB' -M '/opt/observium/mibs/h3c:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'H3C-PORT-SECURITY-MIB::h3cSecureOUITable'
This table stores the OUI values for OUI based
authentication.
h3cSecureOUIEntry row .1.3.6.1.4.1.2011.10.2.26.1.2.3.1
This is a row in the h3cSecureOUITable.
Column Syntax OID
The index number. This is the first index into the
h3cSecureOUITable.
Integer32
Constraints:
range: 1-1024
.1.3.6.1.4.1.2011.10.2.26.1.2.3.1.1
The OUI value for an authorised device.
OctetStringr/w
Constraints:
range: 3-3
.1.3.6.1.4.1.2011.10.2.26.1.2.3.1.2
This manages the creation and deletion of rows, and shows
the current status of the entry.

active(1) The indexed OUI value is authorised.
notInService(2) Not Supported.
notReady(3) Not Supported…
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.2011.10.2.26.1.2.3.1.3
.1.3.6.1.4.1.2011.10.2.26.1.2.4 · 1 row entry · 5 columns
Uses the h3c variant from /opt/observium/mibs/h3c.
Command help
Walk h3cSecureBindingTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'H3C-PORT-SECURITY-MIB' -M '/opt/observium/mibs/h3c:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'H3C-PORT-SECURITY-MIB::h3cSecureBindingTable'
This table stores the elements of binding rules include the
MAC addresses, the IP address and the port.  Only the frame exactly
matching the binding rules can be forwarded.  This table can be
written to by the agent as well as the management station.
h3cSecureBindingEntry row .1.3.6.1.4.1.2011.10.2.26.1.2.4.1
This table allows multiple binding rules. It is indexed using the object
h3cSecureBindingIndex.
Column Syntax OID
The index number. This is the first index into the
h3cSecureBindingTable.
SNMPv2-SMIInteger32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.2011.10.2.26.1.2.4.1.1
The port number of the port bound with the IP address
and the MAC address.
SNMPv2-SMIInteger32r/w
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.2011.10.2.26.1.2.4.1.2
The MAC address bound with the port and the IP address.
SNMPv2-TCMacAddressr/w
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.2011.10.2.26.1.2.4.1.3
The IP address bound with the port and the MAC address.
RFC1155-SMIIpAddressr/w
Type Constraints:
range: 4
.1.3.6.1.4.1.2011.10.2.26.1.2.4.1.4
This manages the creation and deletion or rows, and shows
status of the entry. This object has the following values.

active(1) The indexed MAC address is authorised on this port.
notInService(2) …
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.2011.10.2.26.1.2.4.1.5
.1.3.6.1.4.1.2011.10.2.26.1.2.5 · 1 row entry · 2 columns
Uses the h3c variant from /opt/observium/mibs/h3c.
Command help
Walk h3cSecureAssignTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'H3C-PORT-SECURITY-MIB' -M '/opt/observium/mibs/h3c:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'H3C-PORT-SECURITY-MIB::h3cSecureAssignTable'
Table of port assignment management information about authorised user.
h3cSecureAssignEntry row .1.3.6.1.4.1.2011.10.2.26.1.2.5.1
An entry (conceptual row) representing information about port assignment
about authorised user.
Column Syntax OID
The user-based port configuration control. Setting this attribute
TRUE causes the port to be configured with any configuration
parameters supplied by the authentication server. Setting this
attribute to FALSE causes any…
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.2011.10.2.26.1.2.5.1.1
The VLAN membership assigned to the port for the authorised user.
This contains the actual value received from the authentication
server. This object will contain a null value if there is no user
authorised to access th…
OctetString
Constraints:
range: 0-255
.1.3.6.1.4.1.2011.10.2.26.1.2.5.1.2