NETSCREEN-IDS-MIB Table View
Table-centric layout grouping table, row, and column objects.
Tables
3
Rows
3
Columns
74
nsIdsProtectSetTable
table.1.3.6.1.4.1.3224.3.1.1
·
1 row entry
·
31 columns
Uses the netscreen variant from
Command help
/opt/observium/mibs/netscreen.
Walk nsIdsProtectSetTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'NETSCREEN-IDS-MIB' -M '/opt/observium/mibs/netscreen:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'NETSCREEN-IDS-MIB::nsIdsProtectSetTable'
NetScreen ScreenOS can allow DI protection on each of NetScreen device's physical interface. This table collects the DI protection configuration on each physical interface.
Hold the DI setting attribute.
Indexes
| Column | Syntax | OID | ||||
|---|---|---|---|---|---|---|
|
unique zone id.
|
Integer32 Constraints: range: 0-2147483647 |
.1.3.6.1.4.1.3224.3.1.1.1.1 |
||||
|
Detect Ping of Death.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.2 |
||||
|
Detect Tear Drop Attack.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.3 |
||||
|
Detect Win Nuke Attack.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.4 |
||||
|
Detect Filter IP Source Route Option attack.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.5 |
||||
|
Detect Port Scan Death attack.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.6 |
||||
|
Detect Address Sweep Attack.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.7 |
||||
|
Detect Land Attack.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.8 |
||||
|
Block Java/ActiveX/ZIP/EXE Component.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.9 |
||||
|
Detect IP Spoofing attack.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.10 |
||||
|
Detect SYN attack.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.11 |
||||
|
Detect ICMP Flood attack.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.12 |
||||
|
Detect UDP Flood attack.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.13 |
||||
|
Detect SYN fragment
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.14 |
||||
|
Detect TCP without flag set.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.15 |
||||
|
Detect Unknown protocol IP packet.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.16 |
||||
|
Detect IP bad option.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.17 |
||||
|
Detect IP record option.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.18 |
||||
|
Detect IP timestamp option.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.19 |
||||
|
Detect IP security option.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.20 |
||||
|
Detect Loose source route.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.21 |
||||
|
Detect strict source route.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.22 |
||||
|
Detect IP stream option.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.23 |
||||
|
Detect ICMP fragment.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.24 |
||||
|
Detect large ICMP packet.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.25 |
||||
|
Detect TCP syn fin both set.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.26 |
||||
|
Detect TCP fin set without ack bit set.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.27 |
||||
|
Detect malicious URL.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.28 |
||||
|
Detect malicious session connection.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.29 |
||||
|
Detect SYN ACK ACK DoS.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.30 |
||||
|
Block IP fragment packet.
|
Enumeration Enumerated Values:
|
.1.3.6.1.4.1.3224.3.1.1.1.31 |
nsIdsProtectThreshTable
table.1.3.6.1.4.1.3224.3.1.2
·
1 row entry
·
11 columns
Uses the netscreen variant from
Command help
/opt/observium/mibs/netscreen.
Walk nsIdsProtectThreshTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'NETSCREEN-IDS-MIB' -M '/opt/observium/mibs/netscreen:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'NETSCREEN-IDS-MIB::nsIdsProtectThreshTable'
NetScreen ScreenOS can allow DI protection on each of NetScreen device's physical interface. This table collects the DI protection configuration on each physical interface.
Hold the DI setting attribute.
Indexes
| Column | Syntax | OID |
|---|---|---|
|
unique zone id.
|
Integer32 Constraints: range: 0-2147483647 |
.1.3.6.1.4.1.3224.3.1.2.1.1 |
|
SYN attack threshold.
|
SNMPv2-SMIInteger32 Type Constraints: range: -2147483648..2147483647 |
.1.3.6.1.4.1.3224.3.1.2.1.2 |
|
SYN attack timeout.
|
SNMPv2-SMIInteger32 Type Constraints: range: -2147483648..2147483647 |
.1.3.6.1.4.1.3224.3.1.2.1.3 |
|
SYN attack alarm threshold.
|
SNMPv2-SMIInteger32 Type Constraints: range: -2147483648..2147483647 |
.1.3.6.1.4.1.3224.3.1.2.1.4 |
|
SYN attack queue size.
|
SNMPv2-SMIInteger32 Type Constraints: range: -2147483648..2147483647 |
.1.3.6.1.4.1.3224.3.1.2.1.5 |
|
SYN flood age time.
|
SNMPv2-SMIInteger32 Type Constraints: range: -2147483648..2147483647 |
.1.3.6.1.4.1.3224.3.1.2.1.6 |
|
ICMP attack alarm threshold.
|
SNMPv2-SMIInteger32 Type Constraints: range: -2147483648..2147483647 |
.1.3.6.1.4.1.3224.3.1.2.1.7 |
|
UDP attack alarm threshold.
|
SNMPv2-SMIInteger32 Type Constraints: range: -2147483648..2147483647 |
.1.3.6.1.4.1.3224.3.1.2.1.8 |
|
ICMP attack alarm threshold.
|
SNMPv2-SMIInteger32 Type Constraints: range: -2147483648..2147483647 |
.1.3.6.1.4.1.3224.3.1.2.1.9 |
|
UDP attack alarm threshold.
|
SNMPv2-SMIInteger32 Type Constraints: range: -2147483648..2147483647 |
.1.3.6.1.4.1.3224.3.1.2.1.10 |
|
SYN ack ack alarm threshold.
|
SNMPv2-SMIInteger32 Type Constraints: range: -2147483648..2147483647 |
.1.3.6.1.4.1.3224.3.1.2.1.11 |
nsIdsAttkMonTable
table.1.3.6.1.4.1.3224.3.2
·
1 row entry
·
32 columns
Uses the netscreen variant from
Command help
/opt/observium/mibs/netscreen.
Walk nsIdsAttkMonTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'NETSCREEN-IDS-MIB' -M '/opt/observium/mibs/netscreen:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'NETSCREEN-IDS-MIB::nsIdsAttkMonTable'
The table monitors the intrusion attack attemps amount to NetScreen Device.
An entry containing intrusion attack couters.
Indexes
| Column | Syntax | OID |
|---|---|---|
|
unique interface id.
|
Integer32 Constraints: range: 0-2147483647 |
.1.3.6.1.4.1.3224.3.2.1.1 |
|
according NetScreen's concepts. each interface belongs to one
virtual system. This attribute displays the virtual system name an interface belongs to. |
SNMPv2-SMIInteger32 Type Constraints: range: -2147483648..2147483647 |
.1.3.6.1.4.1.3224.3.2.1.2 |
|
sync attack packet counter.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.3 |
|
tear drop attack packet counter.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.4 |
|
source route option attack packet counter.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.5 |
|
ping of death attack packet counter.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.6 |
|
address spoofing attack packet counter.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.7 |
|
land attack packet counter.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.8 |
|
ICMP flood attack packet counter.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.9 |
|
udp flood attack packet counter.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.10 |
|
weired netbios attack packet counter.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.11 |
|
port scan attempt attack packet counter.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.12 |
|
address sweep attemp attack packet counter.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.13 |
|
Detect SYN fragment
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.14 |
|
Detect TCP without flag set.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.15 |
|
Detect Unknown protocol IP packet.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.16 |
|
Detect IP bad option.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.17 |
|
Detect IP record option.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.18 |
|
Detect IP timestamp option.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.19 |
|
Detect IP security option.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.20 |
|
Detect Loose source route.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.21 |
|
Detect strict source route.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.22 |
|
Detect IP stream option.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.23 |
|
Detect ICMP fragment.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.24 |
|
Detect large ICMP packet.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.25 |
|
Detect TCP syn fin both set.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.26 |
|
Detect TCP fin set without ack bit set.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.27 |
|
Detect malicious URL.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.28 |
|
Detect malicious session connection.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.29 |
|
Detect SYN ACK ACK attack.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.30 |
|
Block IP fragment packet.
|
SNMPv2-SMICounter32 Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.3224.3.2.1.31 |
|
Internal id assigned to this interface. Stays persistent across resets.
|
Integer32 Constraints: range: 0-2147483647 |
.1.3.6.1.4.1.3224.3.2.1.32 |