NETGEAR-RADLAN-SECURITY-SUITE Table View

Table-centric layout grouping table, row, and column objects.

Tables
7
Rows
7
Columns
23
.1.3.6.1.4.1.4526.17.120.2 · 1 row entry · 2 columns
Uses the netgear variant from /opt/observium/mibs/netgear.
Command help
Walk rlSecuritySuiteKnownDoSAttacksTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'NETGEAR-RADLAN-SECURITY-SUITE' -M '/opt/observium/mibs/netgear:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'NETGEAR-RADLAN-SECURITY-SUITE::rlSecuritySuiteKnownDoSAttacksTable'
This table enables/disable well-know DoS attacks,
applied globally to all ifIndexes.
rlSecuritySuiteKnownDoSAttacksEntry row .1.3.6.1.4.1.4526.17.120.2.1
Each entry in this table describes one well known DoS attack address
Column Syntax OID
A well-known DoS attack to enable
RlSecuritySuiteKnownDosAttackType
Type Values:
1stacheldraht
2invasor-Trojan
3back-orifice-Trojan
.1.3.6.1.4.1.4526.17.120.2.1.1
Enable/Disable a well-known DoS attack
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.4526.17.120.2.1.2
.1.3.6.1.4.1.4526.17.120.3 · 1 row entry · 3 columns
Uses the netgear variant from /opt/observium/mibs/netgear.
Command help
Walk rlSecuritySuiteKnownDoSAttacksDetailsTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'NETGEAR-RADLAN-SECURITY-SUITE' -M '/opt/observium/mibs/netgear:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'NETGEAR-RADLAN-SECURITY-SUITE::rlSecuritySuiteKnownDoSAttacksDetailsTable'
This read-only table used to present the detailed attributes
of each well-known DoS attack. Used for presentation propose only.
rlSecuritySuiteKnownDoSAttacksDetailsEntry row .1.3.6.1.4.1.4526.17.120.3.1
Each entry in this table describes one well known DoS attack address ,
Column Syntax OID
Specifies the protocol type of the relevant well-known attack
RlSecuritySuiteKnownDosAttackProtocolType
Type Values:
1tcp
2upd
.1.3.6.1.4.1.4526.17.120.3.1.1
Specifies the source tcp/udp port of the relevant well-known attack
Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.4526.17.120.3.1.2
Specifies the destination tcp/udp port of the relevant well-known attack
Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.4526.17.120.3.1.3
.1.3.6.1.4.1.4526.17.120.5 · 1 row entry · 3 columns
Uses the netgear variant from /opt/observium/mibs/netgear.
Command help
Walk rlSecuritySuiteMartianAddrAllTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'NETGEAR-RADLAN-SECURITY-SUITE' -M '/opt/observium/mibs/netgear:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'NETGEAR-RADLAN-SECURITY-SUITE::rlSecuritySuiteMartianAddrAllTable'
This read-only table specifies all current configured Martian addresses -
both pre-defined (=reserved) and used-configured (=static) addresses
rlSecuritySuiteMartianAddrAllEntry row .1.3.6.1.4.1.4526.17.120.5.1
Each entry in this table describes one Martian address ,
packets with this address as IP source or IP destination, are discarded.
Column Syntax OID
An IP address to discard all packets with that address as source
or destination
SNMPv2-SMIIpAddress
Type Constraints:
range: 4
.1.3.6.1.4.1.4526.17.120.5.1.1
Specify the net mask that comprise the destination IP address prefix.
SNMPv2-SMIIpAddress
Type Constraints:
range: 4
.1.3.6.1.4.1.4526.17.120.5.1.2
Specific the entry origin: pre-defined (reserved) of statically configured.
RlSecuritySuiteAllMartianEntryType
Type Values:
1reserved
2static
.1.3.6.1.4.1.4526.17.120.5.1.3
.1.3.6.1.4.1.4526.17.120.6 · 1 row entry · 1 columns
Uses the netgear variant from /opt/observium/mibs/netgear.
Command help
Walk rlSecuritySuiteMartianAddrTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'NETGEAR-RADLAN-SECURITY-SUITE' -M '/opt/observium/mibs/netgear:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'NETGEAR-RADLAN-SECURITY-SUITE::rlSecuritySuiteMartianAddrTable'
This table specifies the Martian addresses -
the addresses that packets with these IP addressed as source or
destination are discarded.
rlSecuritySuiteMartianAddrEntry row .1.3.6.1.4.1.4526.17.120.6.1
Each entry in this table describes one Martian address ,
packets with this address as IP source or IP destination, are discarded.
Column Syntax OID
The status of a table entry.
It is used to delete/Add an entry from this table.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.4526.17.120.6.1.1
.1.3.6.1.4.1.4526.17.120.7 · 1 row entry · 5 columns
Uses the netgear variant from /opt/observium/mibs/netgear.
Command help
Walk rlSecuritySuiteDoSSynAttackTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'NETGEAR-RADLAN-SECURITY-SUITE' -M '/opt/observium/mibs/netgear:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'NETGEAR-RADLAN-SECURITY-SUITE::rlSecuritySuiteDoSSynAttackTable'
This table contains IP address and rate, to limit DoS SYN attacks from
a specific IP address and interface(s)
rlSecuritySuiteDoSSynAttackEntry row .1.3.6.1.4.1.4526.17.120.7.1
Each entry in this table describes one Martian address ,
packets with this address as IP source or IP destination, are discarded.
Column Syntax OID
Interface which the attack is applied on
IF-MIBInterfaceIndex
Type Constraints:
range: 1..2147483647
Description:
A unique value, greater than zero, for each interface or
interface sub-layer in the managed system. It is
recommended that values are assigned contiguously starting
from 1. The value for each interface sub-layer must …
.1.3.6.1.4.1.4526.17.120.7.1.1
An IP address to discard all packets with that address as destination
SNMPv2-SMIIpAddress
Type Constraints:
range: 4
.1.3.6.1.4.1.4526.17.120.7.1.2
Relevant when rlSecuritySuiteSynAttackRangeType equals prefix(2).
Specify the number of bits that comprise the destination
IP address prefix.
SNMPv2-SMIIpAddress
Type Constraints:
range: 4
.1.3.6.1.4.1.4526.17.120.7.1.3
Specify the maximum connections per second allowed from this IP address
and rlSecuritySuiteSynAttackPortList
Integer32r/w
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.4526.17.120.7.1.4
The status of a table entry.
It is used to delete/Add an entry from this table.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.4526.17.120.7.1.6
.1.3.6.1.4.1.4526.17.120.8 · 1 row entry · 6 columns
Uses the netgear variant from /opt/observium/mibs/netgear.
Command help
Walk rlSecuritySuiteDenyTypesTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'NETGEAR-RADLAN-SECURITY-SUITE' -M '/opt/observium/mibs/netgear:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'NETGEAR-RADLAN-SECURITY-SUITE::rlSecuritySuiteDenyTypesTable'
This table specifies the ip address and TCP ports that
TCP SYN packets from them on a specific interfaces are dropped.
rlSecuritySuiteDenyTypesEntry row .1.3.6.1.4.1.4526.17.120.8.1
Each entry in this table describes one ip address, TCP port and
list of ifIndexes, that packets with these attributes are discarded.
Column Syntax OID
Interface which the attack is applied on
IF-MIBInterfaceIndex
Type Constraints:
range: 1..2147483647
Description:
A unique value, greater than zero, for each interface or
interface sub-layer in the managed system. It is
recommended that values are assigned contiguously starting
from 1. The value for each interface sub-layer must …
.1.3.6.1.4.1.4526.17.120.8.1.1
The specific deny attack type
RlSecuritySuiteDenyAttackType
Type Values:
1syn
2icmp-echo-request
3fragmented
.1.3.6.1.4.1.4526.17.120.8.1.2
An IP address to discard all packets with that address as destination
SNMPv2-SMIIpAddress
Type Constraints:
range: 4
.1.3.6.1.4.1.4526.17.120.8.1.3
Relevant when rlSecuritySuiteDenyTCPRangeType equals mask(1).
Specify the number of bits that comprise the destination
IP address prefix.
SNMPv2-SMIIpAddress
Type Constraints:
range: 4
.1.3.6.1.4.1.4526.17.120.8.1.4
Destination TCP port.
Use 65553 to specify all ports.
This key-field is relevant in specific attack types (not all)
Use 0 when not relevant.
Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.4526.17.120.8.1.5
The status of a table entry.
It is used to delete/Add an entry from this table.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.4526.17.120.8.1.6
.1.3.6.1.4.1.4526.17.120.13 · 1 row entry · 3 columns
Uses the netgear variant from /opt/observium/mibs/netgear.
Command help
Walk rlSecuritySuiteSynProtectionPortTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'NETGEAR-RADLAN-SECURITY-SUITE' -M '/opt/observium/mibs/netgear:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'NETGEAR-RADLAN-SECURITY-SUITE::rlSecuritySuiteSynProtectionPortTable'
This table keeps SYN protection status per port.
rlSecuritySuiteSynProtectionPortEntry row .1.3.6.1.4.1.4526.17.120.13.1
Each entry in this table describes TCP SYN protection status for one port.
Indexes
Column Syntax OID
The port's TCP SYN protection mode.
RlSecuritySuiteSynProtectionPortMode
Type Values:
1normal
2attacked
3blocked
.1.3.6.1.4.1.4526.17.120.13.1.1
The port's TCP SYN protection last attack time mode.
RlSecuritySuiteSynProtectionPortMode
Type Values:
1normal
2attacked
3blocked
.1.3.6.1.4.1.4526.17.120.13.1.2
The port's TCP SYN protection last attack time.
SNMPv2-TCDisplayString
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.4526.17.120.13.1.3