TIMETRA-SECURITY-MIB Table View

Table-centric layout grouping table, row, and column objects.

Tables
68
Rows
68
Columns
580
.1.3.6.1.4.1.6527.3.1.2.22.1 · 1 row entry · 27 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxUserProfileTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxUserProfileTable'
Table to store the user profiles for access to the commands in the
command line interface.
tmnxUserProfileEntry row .1.3.6.1.4.1.6527.3.1.2.22.1.1
Information about a single user profile.
Indexes
Column Syntax OID
The name of the profile is the index to the table.
TIMETRA-TC-MIBTNamedItem
Type Constraints:
range: 1..32
.1.3.6.1.4.1.6527.3.1.2.22.1.1.1
Row Status for the user profile. The deletion of this row has an
action of removing the dependent rows in the tmnxUserProfileTable.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.1.1.2
The action to be given to the user profile in case if none of the
entries match the command.
TProfileActionr/w
Type Values:
1deny
2allow
3none
4read-only
.1.3.6.1.4.1.6527.3.1.2.22.1.1.3
The value of tmnxUserProfileLi specifies whether or this profile
can be assigned to a user to support Lawful Intercept (LI)
operations. This object can only be modified from the SNMPv3 'li'
context.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.1.1.4
The value of tmnxUserProfileNCKillSession specifies whether or this
profile can be assigned to a user to support NETCONF Kill Session
operations.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.1.1.5
The value of the object tmnxUserProfileSshLimit specifies the maximum
limit of concurrent SSH sessions for given User Profile.
TmnxSessionLimitr/w
Type Constraints:
range: -1..50
.1.3.6.1.4.1.6527.3.1.2.22.1.1.6
The value of the object tmnxUserProfileTelnetLimit specifies the
maximum limit of concurrent TELNET sessions for given User Profile.
TmnxSessionLimitr/w
Type Constraints:
range: -1..50
.1.3.6.1.4.1.6527.3.1.2.22.1.1.7
The value of the object tmnxUserProfileTotalLimit specifies the
combined maximum limit of concurrent TELNET and SSH sessions for given
User Profile.
TmnxSessionLimitr/w
Type Constraints:
range: -1..50
.1.3.6.1.4.1.6527.3.1.2.22.1.1.8
The value of tmnxUserProfileCliSessionGroup specifies a cli session
group that the profile belongs to. This cli session group must be a
valid row entry in tmnxCliSessionGroupEntry.
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.1.1.9
The value of tmnxUserProfileNCLock specifies whether or this profile
can be assigned to a user to support NETCONF Lock/Unlock operations.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.1.1.10
The value of tmnxUserProfileGrpcAuthGet specifies whether a user to
whom this profile is assigned is allowed to execute the gRPC gNMI Get
RPC.
TProfileGrpcRpcAuthr/w
Type Values:
1permit
2deny
.1.3.6.1.4.1.6527.3.1.2.22.1.1.11
The value of tmnxUserProfileGrpcAuthSet specifies whether a user to
whom this profile is assigned is allowed to execute the gRPC gNMI Set
RPC.
TProfileGrpcRpcAuthr/w
Type Values:
1permit
2deny
.1.3.6.1.4.1.6527.3.1.2.22.1.1.12
The value of tmnxUserProfileGrpcAuthSubscribe specifies whether a user
to whom this profile is assigned is allowed to execute the gRPC gNMI
Subscribe RPC.
TProfileGrpcRpcAuthr/w
Type Values:
1permit
2deny
.1.3.6.1.4.1.6527.3.1.2.22.1.1.13
The value of tmnxUserProfileGrpcAuthGnmiCap specifies whether a user
to whom this profile is assigned is allowed to execute the gRPC gNMI
Capabilities RPC.
TProfileGrpcRpcAuthr/w
Type Values:
1permit
2deny
.1.3.6.1.4.1.6527.3.1.2.22.1.1.14
The value of tmnxUserProfileGrpcAuthRAModify specifies whether a user
to whom this profile is assigned is allowed to execute the gRPC RibApi
Modify RPC.
TProfileGrpcRpcAuthr/w
Type Values:
1permit
2deny
.1.3.6.1.4.1.6527.3.1.2.22.1.1.15
The value of tmnxUserProfileGrpcAuthRAGetVer specifies whether a user
to whom this profile is assigned is allowed to execute the gRPC RibApi
'GetVersion' RPC.
TProfileGrpcRpcAuthr/w
Type Values:
1permit
2deny
.1.3.6.1.4.1.6527.3.1.2.22.1.1.16
The value of tmnxUserProfileGrpcAuthCMRotate specifies whether a user
to whom this profile is assigned is allowed to execute the gRPC gNOI
CertificateManagement Rotate RPC.
TProfileGrpcRpcAuthr/w
Type Values:
1permit
2deny
.1.3.6.1.4.1.6527.3.1.2.22.1.1.17
The value of tmnxUserProfileGrpcAuthCMInstall specifies whether a user
to whom this profile is assigned is allowed to execute the gRPC gNOI
CertificateManagement Install RPC.
TProfileGrpcRpcAuthr/w
Type Values:
1permit
2deny
.1.3.6.1.4.1.6527.3.1.2.22.1.1.18
The value of tmnxUserProfileGrpcAuthCMGetCert specifies whether a user
to whom this profile is assigned is allowed to execute the gRPC gNOI
CertificateManagement 'GetCertificates' RPC.
TProfileGrpcRpcAuthr/w
Type Values:
1permit
2deny
.1.3.6.1.4.1.6527.3.1.2.22.1.1.19
The value of tmnxUserProfileGrpcAuthCMRevoke specifies whether a user
to whom this profile is assigned is allowed to execute the gRPC gNOI
CertificateManagement 'RevokeCertificates' RPC.
TProfileGrpcRpcAuthr/w
Type Values:
1permit
2deny
.1.3.6.1.4.1.6527.3.1.2.22.1.1.20
The value of tmnxUserProfileGrpcAuthCMCanGen specifies whether a user
to whom this profile is assigned is allowed to execute the gRPC gNOI
CertificateManagement 'CanGenerateCSR' RPC.
TProfileGrpcRpcAuthr/w
Type Values:
1permit
2deny
.1.3.6.1.4.1.6527.3.1.2.22.1.1.21
The value of tmnxUserProfileGrpcAuthMdCliSess specifies whether a user
to whom this profile is assigned is allowed to execute the gRPC MdCli
'Session' RPC.
TProfileGrpcRpcAuthr/w
Type Values:
1permit
2deny
.1.3.6.1.4.1.6527.3.1.2.22.1.1.22
The value of tmnxUserProfileGrpcAuthSysSetPkg specifies whether a user
to whom this profile is assigned is allowed to execute the gRPC gNOI
System 'SetPackage' RPC.
TProfileGrpcRpcAuthr/w
Type Values:
1permit
2deny
.1.3.6.1.4.1.6527.3.1.2.22.1.1.31
The value of tmnxUserProfileGrpcAuthSysSwCP specifies whether a user
to whom this profile is assigned is allowed to execute the gRPC gNOI
System 'SwitchControlProcessor' RPC.
TProfileGrpcRpcAuthr/w
Type Values:
1permit
2deny
.1.3.6.1.4.1.6527.3.1.2.22.1.1.32
The value of tmnxUserProfileGrpcAuthSysReboot specifies whether a user
to whom this profile is assigned is allowed to execute the gRPC gNOI
System 'Reboot' RPC.
TProfileGrpcRpcAuthr/w
Type Values:
1permit
2deny
.1.3.6.1.4.1.6527.3.1.2.22.1.1.33
The value of tmnxUserProfileGrpcAuthSysRebtSt specifies whether a user
to whom this profile is assigned is allowed to execute the gRPC gNOI
System 'RebootStatus' RPC.
TProfileGrpcRpcAuthr/w
Type Values:
1permit
2deny
.1.3.6.1.4.1.6527.3.1.2.22.1.1.34
The value of tmnxUserProfileGrpcAuthSysCnRebt specifies whether a user
to whom this profile is assigned is allowed to execute the gRPC gNOI
System 'CancelReboot' RPC.
TProfileGrpcRpcAuthr/w
Type Values:
1permit
2deny
.1.3.6.1.4.1.6527.3.1.2.22.1.1.35
.1.3.6.1.4.1.6527.3.1.2.22.2 · 1 row entry · 5 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxUserProfileMatchTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxUserProfileMatchTable'
Table which stores multiple entries per user profile to define
specific action to be taken in case if the command matches the entry.
tmnxUserProfileMatchEntry row .1.3.6.1.4.1.6527.3.1.2.22.2.1
Information about a single user profile.
Column Syntax OID
The Secondary index for the table
Unsigned32
Constraints:
range: 1-9999
.1.3.6.1.4.1.6527.3.1.2.22.2.1.1
Row Status for the user profile match.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.2.1.2
User-provided description for the match entry.
TIMETRA-TC-MIBTItemDescriptionr/w
Type Constraints:
range: 0..80
.1.3.6.1.4.1.6527.3.1.2.22.2.1.3
Action to be used in case if a command matches this entry.
TProfileMatchActionr/w
Type Values:
1deny
2allow
3none
4read-only
.1.3.6.1.4.1.6527.3.1.2.22.2.1.4
Match string to be used for this entry.
SNMPv2-TCDisplayStringr/w
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.6527.3.1.2.22.2.1.5
.1.3.6.1.4.1.6527.3.1.2.22.3 · 1 row entry · 26 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxUserTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxUserTable'
tmnxUserTable contains configuration information for the system users.
tmnxUserEntry row .1.3.6.1.4.1.6527.3.1.2.22.3.1
tmnxUserEntry is an entry (conceptual row) in the tmnxUserEntry. Each
entry represents the configuration for a system user. Entries in this
table can be created and deleted via SNMP SET operations to
tmnxUserRowStatus.
Indexes
Column Syntax OID
The value of tmnxUserName specifies the name for a system user. This
name must be unique amongst the table entries.
TIMETRA-TC-MIBTNamedItem
Type Constraints:
range: 1..32
.1.3.6.1.4.1.6527.3.1.2.22.3.1.1
tmnxUserRowStatus controls the creation and deletion of rows in the
table.

To create a row in the tmnxUserTable, set tmnxUserRowStatus to
createAndGo(4). All objects will take on default values and the ag…
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.3.1.2
The value of tmnxUserPassword specifies the password used to
authenticate the user for console and FTP access.

The password can be provided both as a plain text string, or as a
bcrypt encrypted hash.
OctetStringr/w
Constraints:
range: 0-136
.1.3.6.1.4.1.6527.3.1.2.22.3.1.3
This object has been obsoleted in release 12.0.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.3.1.4
The value of tmnxUserAccess specifies the type of access the the user
is permitted. To allow the user access to the console, FTP or SNMP,
set the corresponding bit in tmnxUserAccess. Reset the bit to deny the
access.
Bitsr/w
Enumerated Values:
0console
1ftp
2snmp
3li
4netconf
5grpc
.1.3.6.1.4.1.6527.3.1.2.22.3.1.5
The value of tmnxUserHomeDirectory specifies the local home directory
for the user for console and FTP access.
OctetStringr/w
Constraints:
range: 0-200
.1.3.6.1.4.1.6527.3.1.2.22.3.1.6
When the value of tmnxUserRestrictedToHome is 'true', the user is not
allowed to navigate to directories above his home directory for file
access.

When the value of tmnxUserRestrictedToHome is 'false', th…
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.3.1.7
The value of tmnxUserConsoleLoginExecFile specifies the file that
should be executed whenever the user successfully logs in to a console
session.
OctetStringr/w
Constraints:
range: 0-200
.1.3.6.1.4.1.6527.3.1.2.22.3.1.8
When the value of tmnxUserConsoleCannotChangePswd is 'true', the user
does not have the privilege to change the password for console and FTP
login.

When the value of tmnxUserConsoleCannotChangePswd is 'fa…
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.3.1.9
When the value of tmnxUserConsoleNewPswdAtLogin is 'true', the will be
forced to change his password at the next console or telnet or SSH
login.

When the value of tmnxUserConsoleNewPswdAtLogin is 'false',…
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.3.1.10
The value of tmnxUserConsoleMemberProfile1 specifies a user profile
that the user has access to. This profile must be a valid row entry in
tmnxUserProfileTable.

Each user can access a maximum of 8 user pr…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.3.1.11
The value of tmnxUserConsoleMemberProfile2 specifies a user profile
that the user has access to. This profile must be a valid row entry in
tmnxUserProfileTable.

Each user can access a maximum of 8 user pr…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.3.1.12
The value of tmnxUserConsoleMemberProfile3 specifies a user profile
that the user has access to. This profile must be a valid row entry in
tmnxUserProfileTable.

Each user can access a maximum of 8 user pr…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.3.1.13
The value of tmnxUserConsoleMemberProfile4 specifies a user profile
that the user has access to. This profile must be a valid row entry in
tmnxUserProfileTable.

Each user can access a maximum of 8 user pr…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.3.1.14
The value of tmnxUserConsoleMemberProfile5 specifies a user profile
that the user has access to. This profile must be a valid row entry in
tmnxUserProfileTable.

Each user can access a maximum of 8 user pr…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.3.1.15
The value of tmnxUserConsoleMemberProfile6 specifies a user profile
that the user has access to. This profile must be a valid row entry in
tmnxUserProfileTable.

Each user can access a maximum of 8 user pr…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.3.1.16
The value of tmnxUserConsoleMemberProfile7 specifies a user profile
that the user has access to. This profile must be a valid row entry in
tmnxUserProfileTable.

Each user can access a maximum of 8 user pr…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.3.1.17
The value of tmnxUserConsoleMemberProfile8 specifies a user profile
that the user has access to. This profile must be a valid row entry in
tmnxUserProfileTable.

Each user can access a maximum of 8 user pr…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.3.1.18
The value of tmnxUserAttemptedLogins indicates the number of times the
user has attempted to login irrespective of whether the login
succeeded or failed.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.3.1.19
The value of tmnxUserSuccessfulLogins indicates the number of times
the user has successfully logged in.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.3.1.20
The value of tmnxUserPasswordChanged indicates the value of sysUpTime
when the login password was last changed.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.3.1.21
The value of tmnxUserCliEngine1 specifies the CLI engine that is
active when a user logs in.

Value systemDerived specifies that the CLI engine inherits the value
of tmnxSysMgmtCliEngine1 from tmnxSysMgmtP…
TIMETRA-TC-MIBTmnxCliEnginer/w
Type Values:
1classicCli
2mdCli
3systemDerived
.1.3.6.1.4.1.6527.3.1.2.22.3.1.23
The value of tmnxUserCliEngine2 specifies the secondary CLI engine
that is accessible to a logged-in user.

Value systemDerived specifies that the user does not have access to
secondary engine (i.e.: can o…
TIMETRA-TC-MIBTmnxCliEnginer/w
Type Values:
1classicCli
2mdCli
3systemDerived
.1.3.6.1.4.1.6527.3.1.2.22.3.1.24
The value of tmnxUserPasswordChangedTime specifies the calendar date
and time when the login password was last changed.
SNMPv2-TCDateAndTime
Type Constraints:
range: 8
range: 11
Description:
A date-time specification.

field octets contents range
----- ------ -------- -----
1 1-2 year* 0..65536
2 3 month …
.1.3.6.1.4.1.6527.3.1.2.22.3.1.25
The value of tmnxUserPasswordExpirationTime specifies the calendar
date and time when login password will be expire.

If password aging is disabled, '0-1-1,0:0:0.0,+0:0' is returned.
SNMPv2-TCDateAndTime
Type Constraints:
range: 8
range: 11
Description:
A date-time specification.

field octets contents range
----- ------ -------- -----
1 1-2 year* 0..65536
2 3 month …
.1.3.6.1.4.1.6527.3.1.2.22.3.1.26
The value of the object tmnxUserCreationOrigin indicates the mechanism
which created this user.
TIMETRA-TC-MIBTmnxCreateOrigin
Type Values:
1manual
2bgp-l2vpn
3radius
4bgpSignalL2vpn
5multiSegmentPW
6vplsPmsi
7dynScript
8bof
9bgpSignalVpws
12vsd
13evpn
14vsd-sd
15satellites
16fpe
17evpnIsa
18greBridged
19tli
20pdn
23ipsec
24esa
25pfcpCups
26manual-mci
.1.3.6.1.4.1.6527.3.1.2.22.3.1.27

tmnxMafTable

table obsolete
.1.3.6.1.4.1.6527.3.1.2.22.4.1 · 1 row entry · 4 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxMafTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxMafTable'
This table has been replaced with tmnxGenMafTable. The new table
allows to define both IPv4 and IPv6 MAFs.
          
The tmnxMafTable has an entry for each Management Access Filter
(MAF) configured on the system.  Management Access Filters are
used to restrict management of this Nokia SROS device by
other nodes outside either specific (sub)networks or through
designated ports.  By default no Management Access Filters are
defined and this table will be empty.
tmnxMafEntry row .1.3.6.1.4.1.6527.3.1.2.22.4.1.1
Each row entry contains information about a Management Access Filter
(MAF).
Indexes
Column Syntax OID
tmnxMafNameobsolete
The value of tmnxMafName specifies the Management Access Filter (MAF)
represented by this row in the tmnxMafTable.
TIMETRA-TC-MIBTNamedItem
Type Constraints:
range: 1..32
.1.3.6.1.4.1.6527.3.1.2.22.4.1.1.1
The tmnxMafRowStatus object is used to create and delete rows in
the tmnxMafTable. The values supported during a set operation are
createAndGo(4), createAndWait(5) and destroy(6).
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.4.1.1.2
The value of tmnxMafDefaultAction specifies the default action
for management access in the absence of a specific management
access filter entry match. The default action is applied
to a packet that does not satisfy an…
TmnxMafActionr/w
Type Values:
0none
1permit
2deny
3denyHostUnreachable
.1.3.6.1.4.1.6527.3.1.2.22.4.1.1.3
The value of tmnxMafAdminState specifies the administrative state
for this management access filter. A value of 'outOfService'
disables this filter which results in permitting all traffic.
TIMETRA-TC-MIBTmnxAdminStater/w
Type Values:
1noop
2inService
3outOfService
.1.3.6.1.4.1.6527.3.1.2.22.4.1.1.4

tmnxMafMatchTable

table obsolete
.1.3.6.1.4.1.6527.3.1.2.22.4.2 · 1 row entry · 15 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxMafMatchTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxMafMatchTable'
This tables has been replaced with the table tmnxIPMafMatchTable which
allows for both IPv4 and IPv6 MAF entries.
          
The tmnxMafMatchTable contains filter match criteria associated with
Management Access Filters (MAFs) configured on the system.
tmnxMafMatchEntry row .1.3.6.1.4.1.6527.3.1.2.22.4.2.1
Each row entry contains information about a management access filter
entry associated with a specific Management Access Filter (MAF).
The filter criteria are applied in order according to the value of
tmnxMafMatchIndex.…
Column Syntax OID
The value of tmnxMafMatchIndex specifies the Management Access Filter
Entry (MAFE) represented by this row in the tmnxMafMatchTable. It
is associated to a specific Management Access Filter by the value
of tmnxMafName i…
Unsigned32
Constraints:
range: 1-9999
.1.3.6.1.4.1.6527.3.1.2.22.4.2.1.1
The tmnxMafMatchRowStatus object is used to create and delete rows in
the tmnxMafMatchTable. The values supported during a set operation
are createAndGo(4), createAndWait(5) and destroy(6).
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.4.2.1.2
The value of tmnxMafMatchLastChanged is the timestamp of last change
to this row in tmnxMafMatchTable.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.4.2.1.3
The value of tmnxMafMatchAction specifies the action to be taken
when a packet matches the selection criteria configured in this
management access filter entry. Before a filter entry can be active,
tmnxMafMatchAction m…
TmnxMafActionr/w
Type Values:
0none
1permit
2deny
3denyHostUnreachable
.1.3.6.1.4.1.6527.3.1.2.22.4.2.1.4
The value of tmnxMafMatchDescription is a user provided description
string for this Management Access Filter Entry. It can consist of
any printable, seven-bit ASCII characters up to 80 characters in
length.
TIMETRA-TC-MIBTItemDescriptionr/w
Type Constraints:
range: 0..80
.1.3.6.1.4.1.6527.3.1.2.22.4.2.1.5
The value of tmnxMafMatchSrcIpAddr specifies IP address used with the
value of tmnxMafMatchSrcIpMask to indicate a source IP address range
to be used as the match criteria for this Management Access Filter
Entry.
SNMPv2-SMIIpAddressr/w
Type Constraints:
range: 4
.1.3.6.1.4.1.6527.3.1.2.22.4.2.1.6
The value of tmnxMafMatchSrcIpMask specifies the number of bits to
match of the source Ip Address.
TIMETRA-TC-MIBIpAddressPrefixLengthr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.4.2.1.7
The value of tmnxMafMatchSrcPortType is used to restrict ingress
management packets to either the configured management Ethernet
port or any other logical port (LAG, port, or channel) on the
device. By default, managem…
Enumerationr/w
Enumerated Values:
1any
2cpm
3port
4lag
.1.3.6.1.4.1.6527.3.1.2.22.4.2.1.8
When tmnxMafMatchSrcPortType has a value of 'port' or 'lag' the
value of tmnxMafMatchSrcPortId specifies the port used to restrict
ingress management packets. A value of zero indicated that this
object is not initializ…
TIMETRA-TC-MIBTmnxPortIDr/w .1.3.6.1.4.1.6527.3.1.2.22.4.2.1.9
The value of tmnxMafMatchDestPort specifies a TCP or UDP port
number to be used as a match criteria in this Management Access
Filter Entry. A value of zero indicates that this object is
not initialized.
TIMETRA-TC-MIBTTcpUdpPortr/w
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.6527.3.1.2.22.4.2.1.10
The value of tmnxMafMatchDestPortMask specifies a mask to be used
when the value of tmnxMafMatchDestPort is not equal to zero.
The mask allows a range of TCP or UDP port values to be
specified for the match criteria in …
Unsigned32r/w
Constraints:
range: 0-65535
.1.3.6.1.4.1.6527.3.1.2.22.4.2.1.11
The value of tmnxMafMatchProtocol specifies an IP protocol type
to be used in the match criteria for this Management Access Filter
Entry. Some well known protocol numbers are TCP (6), and UDP (7).
The value of -1 is us…
TIMETRA-TC-MIBTIpProtocolr/w
Type Constraints:
range: -2..255
.1.3.6.1.4.1.6527.3.1.2.22.4.2.1.12
The value of tmnxMafMatchCount indicates the number of times a
management packet has matched this filter entry.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.6527.3.1.2.22.4.2.1.13
The value of tmnxMafMatchRouter specifies a router (VPRN) name or
a service-id, expressed as an ASCII numeric string, to be used in
the match criteria for the Management Access Filter Entry. The
empty string value ''H …
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.4.2.1.14
When the value of tmnxMafMatchLog is 'true', entry match logging is
enabled.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.4.2.1.15
.1.3.6.1.4.1.6527.3.1.2.22.4.4 · 1 row entry · 6 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxGenMafTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxGenMafTable'
This table replaces the tmnxMafTable. It allows to define both IPv4
and IPv6 MAFs.
          
The tmnxGenMafTable has an entry for each Management Access Filter
(MAF) configured on the system (IPv4 and IPv6).
          
Management Access Filters are used to restrict management of this
Nokia SROS device by other nodes outside either specific (sub)networks
or through designated ports.
          
By default a single IPv4 and a single IPv6 Management Access Filter is
created by the system. No additional filters can be defined by the
operator.
          
When a filter is deleted, the system will recreate it with all default
settings.
tmnxGenMafEntry row .1.3.6.1.4.1.6527.3.1.2.22.4.4.1
Each row entry contains information about a IPv4 or IPv6 Management
Access Filter (MAF).
Column Syntax OID
The value of tmnxGenMafType specifies the type of packets, destined
for CPM, this management access filter applies to.
TmnxMafType
Type Values:
1ipv4
2ipv6
3mac
.1.3.6.1.4.1.6527.3.1.2.22.4.4.1.1
The value of tmnxGenMafName specifies the Management Access Filter
(MAF) represented by this row in the tmnxGenMafTable.
TIMETRA-TC-MIBTNamedItem
Type Constraints:
range: 1..32
.1.3.6.1.4.1.6527.3.1.2.22.4.4.1.2
The tmnxGenMafLastModified object indicates the timestamp of the last
change to this row. A value of zero indicates that this row was not
modified since the system was last initialized.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.4.4.1.3
The tmnxGenMafRowStatus object is used to create and delete rows in
the tmnxGenMafTable. The values supported during a set operation are
- active(1)
- createAndGo(4),
- createAndWait(5) which is treated in the same way…
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.4.4.1.4
The value of tmnxGenMafAdminState specifies the administrative state
for this management access filter. A value of 'outOfService'
disables this filter which results in permitting all traffic.
TIMETRA-TC-MIBTmnxAdminStater/w
Type Values:
1noop
2inService
3outOfService
.1.3.6.1.4.1.6527.3.1.2.22.4.4.1.5
The value of tmnxGenMafDefaultAction specifies the default action
for management access in the absence of a specific management
access filter entry match. The default action is applied
to a packet that does not satisfy…
TmnxMafActionr/w
Type Values:
0none
1permit
2deny
3denyHostUnreachable
.1.3.6.1.4.1.6527.3.1.2.22.4.4.1.6
.1.3.6.1.4.1.6527.3.1.2.22.4.6 · 1 row entry · 18 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxIPMafMatchTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxIPMafMatchTable'
This table replaces the tmnxMafMatchTable. It allows to define both
IPv4 and IPv6 MAF IP entries.
          
The tmnxIPMafMatchTable contains ipvx filter match criteria associated
with Management Access Filters (MAFs) configured on the system.
tmnxIPMafMatchEntry row .1.3.6.1.4.1.6527.3.1.2.22.4.6.1
Each row entry contains information about a management access filter
entry associated with a specific Management Access Filter (MAF).

The filter criteria are applied in order according to the value of
tmnxI…
Column Syntax OID
The value of tmnxIPMafMatchIndex specifies the Management Access
Filter Entry (MAFE) represented by this row in the
tmnxIPMafMatchTable.

It is associated to a specific Management Access Filter by the valu…
Unsigned32
Constraints:
range: 1-9999
.1.3.6.1.4.1.6527.3.1.2.22.4.6.1.1
The tmnxIPMafMatchRowStatus object is used to create and delete rows
in the tmnxIPMafMatchTable. Following values are supported:
- active(1)
- createAndGo(4),
- createAndWait(5) which is treated in the same way as crea…
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.4.6.1.2
The value of tmnxIPMafMatchLastChanged is the timestamp of last change
to this row in tmnxIPMafMatchTable.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.4.6.1.3
The value of tmnxIPMafMatchAction specifies the action to be taken
when a packet matches the selection criteria configured in this
management access filter entry. Before a filter entry can be active,
tmnxIPMafMatchActi…
TmnxMafActionr/w
Type Values:
0none
1permit
2deny
3denyHostUnreachable
.1.3.6.1.4.1.6527.3.1.2.22.4.6.1.4
The value of tmnxIPMafMatchDescription is a user provided description
string for this Management Access Filter Entry. It can consist of
any printable, seven-bit ASCII characters up to 80 characters in
length.
TIMETRA-TC-MIBTItemDescriptionr/w
Type Constraints:
range: 0..80
.1.3.6.1.4.1.6527.3.1.2.22.4.6.1.5
The value of tmnxIPMafMatchSrcIpAddrType specifies the type of IP
address stored in the object tmnxIPMafMatchSrcIpAddr.

If the value of tmnxGenMafType indicates 'ipv4' the only allowed
values for this obj…
INET-ADDRESS-MIBInetAddressTyper/w
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.6527.3.1.2.22.4.6.1.6
The value of tmnxIPMafMatchSrcIpAddr specifies IP address used with
the value of tmnxIPMafMatchSrcIpMask to indicate a source IP address
range to be used as the match criteria for this Management Access
Filter Entry.
OctetStringr/w
Constraints:
range: 0-0
range: 4-4
range: 16-16
.1.3.6.1.4.1.6527.3.1.2.22.4.6.1.7
The value of tmnxIPMafMatchSrcIpMask specifies the number of bits to
match of the source Ip Address.
Unsigned32r/w
Constraints:
range: 0-128
.1.3.6.1.4.1.6527.3.1.2.22.4.6.1.8
The value of tmnxIPMafMatchSrcPortType is used, in conjunction with
the value of tmnxIPMafMatchSrcPortId, to specify the type of port that
applies to the management access filter entry. By default, management
traffic is…
Enumerationr/w
Enumerated Values:
1any
2cpm
3port
4lag
.1.3.6.1.4.1.6527.3.1.2.22.4.6.1.9
The value of tmnxIPMafMatchSrcPortId is used, in conjunction with the
value of tmnxIPMafMatchSrcPortType, to specify the port that applies
to the management access filter entry. By default, management traffic
is accepte…
TIMETRA-TC-MIBTmnxPortIDr/w .1.3.6.1.4.1.6527.3.1.2.22.4.6.1.10
The value of tmnxIPMafMatchDestPort specifies a destination TCP or UDP
port number to be used as a match criteria in this Management Access
Filter Entry.

A value of '0' indicates that no match is performe…
TIMETRA-TC-MIBTTcpUdpPortr/w
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.6527.3.1.2.22.4.6.1.11
The value of tmnxIPMafMatchDestPortMask specifies a mask to be used
when the value of tmnxIPMafMatchDestPort is not equal to '0'.

The mask allows a range of TCP or UDP port values to be specified for
the …
Unsigned32r/w
Constraints:
range: 0-65535
.1.3.6.1.4.1.6527.3.1.2.22.4.6.1.12
The value of tmnxIPMafMatchProtNxtHdr specifies for IPv4 MAF the IP
protocol field, and for IPv6 the next header type to be used in the
match criteria for this Management Access Filter Entry.

Some well kn…
TIMETRA-TC-MIBTIpProtocolr/w
Type Constraints:
range: -2..255
.1.3.6.1.4.1.6527.3.1.2.22.4.6.1.13
The value of tmnxIPMafMatchCount indicates the number of times a
management packet has matched this filter entry.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.6527.3.1.2.22.4.6.1.14
The value of tmnxIPMafMatchRouter specifies a router (VPRN) name or
a service-id, expressed as an ASCII numeric string, to be used in
the match criteria for the Management Access Filter Entry. The
empty string value ''…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.4.6.1.15
The value of tmnxIPMafMatchFlowLabel specifies the flow label to be
matched. When the value is '-1', no flow label matching occurs. This
object is only meaningful in case of an IPv6 MAF entry. The value is
ignored in IP…
TIMETRA-TC-MIBIPv6FlowLabelr/w
Type Constraints:
range: -1..1048575
.1.3.6.1.4.1.6527.3.1.2.22.4.6.1.16
When the value of tmnxIPMafMatchLog is 'true', entry match logging is
enabled.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.4.6.1.17
The value of this object specifies the IP prefix list used as match
criterion for the source IP address.

The value specified for this object must correspond to a prefix list
defined in tFilterPrefixListTa…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.4.6.1.18
.1.3.6.1.4.1.6527.3.1.2.22.4.8 · 1 row entry · 25 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxMacMafMatchTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxMacMafMatchTable'
This table allows to define Mac Maf filter entries.
          
The tmnxMacMafMatchTable contains Mac filter match criteria associated
with Management Access Filters (MAFs) configured on the system.
tmnxMacMafMatchEntry row .1.3.6.1.4.1.6527.3.1.2.22.4.8.1
Each row entry contains information about a management access filter
entry associated with a specific Mac Management Access Filter (MAF).

The filter criteria are applied in order according to the value of
t…
Column Syntax OID
The value of tmnxMacMafMatchIndex specifies the Management Access
Filter Entry (MAFE) represented by this row in the
tmnxMacMafMatchTable.

It is associated to a specific Management Access Filter by the va…
Unsigned32
Constraints:
range: 1-9999
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.1
The tmnxMacMafMatchRowStatus object is used to create and delete rows
in the tmnxMacMafMatchTable. The values supported are
- active(1)
- createAndGo(4),
- createAndWait(5) which is treated in the same way as createAnd…
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.2
The value of tmnxMacMafMatchLastChanged indicates the timestamp of the
last change to this row in tmnxMacMafMatchTable.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.3
The value of tmnxMacMafMatchAction specifies the action to be taken
when a packet matches the selection criteria configured in this
management access filter entry. Before a filter entry can be active,
tmnxMacMafMatchAc…
TmnxMafActionr/w
Type Values:
0none
1permit
2deny
3denyHostUnreachable
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.4
The value of tmnxMacMafMatchDescription specifies a user provided
description string for this Management Access Filter Entry. It can
consist of any printable, seven-bit ASCII characters up to 80
characters in length.
TIMETRA-TC-MIBTItemDescriptionr/w
Type Constraints:
range: 0..80
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.5
The value of the object tmnxMacMafMatchLog specifies whether or not
logging is active for this filter entry.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.6
The value of tmnxMacMafMatchFrameType specifies the type of mac frame
for which we are defining this match criteria.
TmnxMafMacFltrFrameTyper/w
Type Values:
0e802dot3
1e802dot2LLC
2e802dot2SNAP
3ethernetII
4e802dot1ag
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.7
The value of the object tmnxMacMafMatchSvcId specifies the service-id
in which the packet is to be received for this entry to match. A value
of 0 indicates: any service.
Unsigned32r/w
Constraints:
range: 0-2147483647
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.8
The value of the object tmnxMacMafMatchDot1pValue specifies the IEEE
802.1p priority value for this MAC filter entry. Use -1 to disable
matching this filter criteria.
TIMETRA-TC-MIBDot1PPriorityr/w
Type Constraints:
range: -1..7
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.9
The value of the object tmnxMacMafMatchDot1pMask specifies the IEEE
802.1p priority mask value for this policy MAC filter entry.
TIMETRA-TC-MIBDot1PPriorityNonZeroMaskr/w
Type Constraints:
range: 1..7
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.10
The value of the object tmnxMacMafMatchDsap specifies the MAC DSAP to
match for this MAC filter entry. This object has no significance if
the object tmnxMacMafMatchFrameType is not set to 802dot2LLC.
TIMETRA-TC-MIBServiceAccessPointr/w
Type Constraints:
range: -1..255
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.11
The value of the object tmnxMacMafMatchDsapMask specifies the MAC DSAP
mask for this MAC filter entry. This object has no significance if the
object tmnxMacMafMatchFrameType is not set to 802dot2LLC.
TIMETRA-TC-MIBServiceAccessPointr/w
Type Constraints:
range: -1..255
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.12
The value of the object tmnxMacMafMatchSrcMAC specifies the source MAC
to match for this policy MAC filter entry.
SNMPv2-TCMacAddressr/w
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.13
The value of the object tmnxMacMafMatchSrcMACMask specifies the source
MAC mask value for this policy MAC filter entry. The mask is ANDed
with the MAC to match tmnxMacMafMatchSrcMAC. A zero bit means ignore
this bit, do…
SNMPv2-TCMacAddressr/w
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.14
The value of the object tmnxMacMafMatchDstMAC specifies the
Destination MAC mask value for this policy MAC filter entry.
SNMPv2-TCMacAddressr/w
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.15
The value of the object tmnxMacMafMatchDstMACMask specifies
the destination MAC mask value for this policy MAC filter entry.
The mask is ANDed with the MAC to match tmnxMacMafMatchDstMAC.
A zero bit means ignore this bi…
SNMPv2-TCMacAddressr/w
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.16
The value of the object tmnxMacMafMatchEtherType specifies the
Ethertype for this MAC filter entry. Use -1 to disable matching by
this criteria. This object has no significance if the object
tmnxMacMafMatchFrameType is …
Integer32r/w
Constraints:
range: -1--1
range: 1536-65535
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.17
The value of the object tmnxMacMafMatchSnapOui specifies the MAC SNAP
OUI to match. The values zero(2) and nonZero(3) specify what to match.
Matching can be disabled by the use of the value off(1). This object
has no si…
Enumerationr/w
Enumerated Values:
1off
2zero
3nonZero
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.18
The value of the object tmnxMacMafMatchSnapPid specifies the
MAC SNAP PID to match for this MAC filter entry. use -1 to
disable matching by this criteria. This object has no significance if
object tmnxMacMafMatchFrameT…
Integer32r/w
Constraints:
range: -1-65535
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.19
The value of the object tmnxMacMafMatchSsap specifies the the MAC SSAP
to match for this MAC filter entry. This object has no significance if
the object tmnxMacMafMatchFrameType is not set to 802dot2LLC.
TIMETRA-TC-MIBServiceAccessPointr/w
Type Constraints:
range: -1..255
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.20
The value of the object tmnxMacMafMatchSsapMask specifies the MAC SSAP
mask for this MAC filter entry. use 0 to disable matching by this
criteria. This object has no significance if the object
tmnxMacMafMatchFrameType i…
TIMETRA-TC-MIBServiceAccessPointr/w
Type Constraints:
range: -1..255
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.21
The value of the object tmnxMacMafMatchCfmOpCodeOper specifies which
type of opcode checking is to be performed. If different from none,
more info is provided in the objects tmnxMacMafMatchCfmOpCodeValue1
and tmnxMacMaf…
TIMETRA-TC-MIBTOperatorr/w
Type Values:
0none
1eq
2range
3lt
4gt
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.22
The value of the object tmnxMacMafMatchCfmOpCodeValue1 specifies a cfm
opcode. The value of this object is used as per the description for
tmnxMacMafMatchCfmOpCodeOper.
Unsigned32r/w
Constraints:
range: 0-255
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.23
The value of the object tmnxMacMafMatchCfmOpCodeValue2 specifies a cfm
opcode. The value of this object is used as per the description for
tmnxMacMafMatchCfmOpCodeOper.
Unsigned32r/w
Constraints:
range: 0-255
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.24
The value of tmnxMacMafMatchCount indicates the number of times a
management packet has matched this filter entry.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.6527.3.1.2.22.4.8.1.25
.1.3.6.1.4.1.6527.3.1.2.22.6.7 · 1 row entry · 7 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxRadiusServerTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxRadiusServerTable'
The tmnxRadiusServerEntry has an entry for each RADIUS server. The
table can have up to a maximum of 5 entries.
tmnxRadiusServerEntry row .1.3.6.1.4.1.6527.3.1.2.22.6.7.1
tmnxRadiusServerEntry is an entry (conceptual row) in the
tmnxRadiusServerTable. Each entry represents the configuration for a
RADIUS server.

Entries in this table can be created and deleted via SNMP SET
op…
Column Syntax OID
The unique value which identifies a specific Radius server.
Unsigned32
Constraints:
range: 1-5
.1.3.6.1.4.1.6527.3.1.2.22.6.7.1.1
The IP address of the RADIUS server.

tmnxRadiusServerAddress was made obsolete in 5.0 revision of
Nokia SROS series system. Radius servers are now
configured using tmnxRadiusServerInetAddress and
tmnxRad…
SNMPv2-SMIIpAddressr/w
Type Constraints:
range: 4
.1.3.6.1.4.1.6527.3.1.2.22.6.7.1.2
The secret key associated with the RADIUS server. The value returned
by tmnxRadiusServerSecret is always an empty string.

The value of tmnxRadiusServerSecret cannot be set to an empty string.
OctetStringr/w
Constraints:
range: 0-64
.1.3.6.1.4.1.6527.3.1.2.22.6.7.1.3
Current status of the RADIUS server.
Enumeration
Enumerated Values:
1up
2down
.1.3.6.1.4.1.6527.3.1.2.22.6.7.1.4
tmnxRadiusServerRowStatus controls the creation and deletion of rows
in the table.

To create a row in the tmnxRadiusServerTable, set
tmnxRadiusServerRowStatus to createAndGo(4). Objects
tmnxRadiusServerSe…
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.6.7.1.5
The value of tmnxRadiusServerInetAddressType specifies the address
type of tmnxRadiusServerInetAddress address.

The value of tmnxRadiusServerInetAddressType can be either of
InetAddressType - 'ipv4' or In…
INET-ADDRESS-MIBInetAddressTyper/w
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.6527.3.1.2.22.6.7.1.6
The value of tmnxRadiusServerInetAddress specifies the address of the
Radius server.
OctetStringr/w
Constraints:
range: 0-0
range: 4-4
range: 16-16
range: 20-20
.1.3.6.1.4.1.6527.3.1.2.22.6.7.1.7
.1.3.6.1.4.1.6527.3.1.2.22.6.18 · 1 row entry · 19 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxRadiusUserStatsTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxRadiusUserStatsTable'
The tmnxRadiusUserStatsTable is the Radius server statistics per user
using specific policy.
          
Entries are created and deleted by the system.
tmnxRadiusUserStatsEntry row .1.3.6.1.4.1.6527.3.1.2.22.6.18.1
Information about Radius server statistics per user per policy.
Column Syntax OID
The tmnxRadiusPolicyName indicates the policy name used by the user to
access the Radius server.
TIMETRA-TC-MIBTNamedItem
Type Constraints:
range: 1..32
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.1
The value of the tmnxRadiusUserServerIndex identifies a specific
Radius server.
Unsigned32
Constraints:
range: 1-16
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.2
The tmnxRadiusUserReqTx indicates the number of requests sent to the
Radius server from the user using this policy.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.3
The tmnxRadiusUserReqRx indicates the number of requests received by
the Radius server by the user using this policy.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.4
The tmnxRadiusUserOpenFail indicates the number of socket open
failures to the Radius server.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.5
The tmnxRadiusUserBindFail indicates the number of socket bind
failures to the Radius server.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.6
The tmnxRadiusUserSendFail indicates the number of socket send
failures to the Radius server.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.7
The tmnxRadiusUserRecvFail indicates the number of socket receive
failures to the Radius server.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.8
The tmnxRadiusUserSendTimeout indicates the number of sends which
timed out waiting for reply from the Radius server.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.9
The tmnxRadiusUserLoginPass indicates the number of authentication
succeeded for the user using this policy to the Radius server.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.10
The tmnxRadiusUserLoginFail indicates the number of authentication
failed for the user using this policy to the Radius server.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.11
The tmnxRadiusUserMd5Fail indicates the number of times authentication
failed due to MD5 for the user using this policy to the Radius server.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.12
The tmnxRadiusUserPending indicates the number of requests pending for
the user using this policy to the Radius server.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.13
The tmnxRadiusUserAcctReqTx indicates the number of accounting
requests for the user using this policy to the Radius server.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.14
The tmnxRadiusUserAcctRejRx indicates the number of accounting
rejections received for the user using this policy to the Radius
server.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.15
The tmnxRadiusUserAcctConnError indicates the number of accounting
connection failures for the user using this policy to the Radius
server.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.16
The tmnxRadiusUserAccChallengePkt indicates the number of packets
which challenged access to the user account from the Radius server.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.17
The tmnxRadiusUserAuthAvgDelay indicates the average response delay of
the last 10 authentication packets.
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.18
The tmnxRadiusUserAcctAvgDelay indicates the average response delay of
the last 10 accounting packets.
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.6.18.1.19
.1.3.6.1.4.1.6527.3.1.2.22.7.3 · 1 row entry · 8 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxTacPlusServerTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxTacPlusServerTable'
The tmnxTacPlusServerEntry has an entry for each Tacacs+ server. The
table can have up to a maximum of 5 entries.
tmnxTacPlusServerEntry row .1.3.6.1.4.1.6527.3.1.2.22.7.3.1
tmnxTacPlusServerEntry is an entry (conceptual row) in the
tmnxTacPlusServerTable. Each entry represents the configuration for a
Tacacs+ server. Entries in this table can be created and deleted via
SNMP SET operations t…
Column Syntax OID
The unique value which identifies a specific Tacacs+ server.
Unsigned32
Constraints:
range: 1-5
.1.3.6.1.4.1.6527.3.1.2.22.7.3.1.1
The IP address of the Tacacs+ server.

tmnxTacPlusServerAddress was made obsolete in 5.0 revision of Nokia
SROS series system. Tacacs+ servers are now configured using
tmnxTacPlusServerInetAddress and tmnx…
SNMPv2-SMIIpAddressr/w
Type Constraints:
range: 4
.1.3.6.1.4.1.6527.3.1.2.22.7.3.1.2
The secret key associated with the Tacacs+ server. The value returned
by tmnxTacPlusServerSecret is always an empty string.

The value of tmnxTacPlusServerSecret cannot be set to an empty string.
OctetStringr/w
Constraints:
range: 0-128
.1.3.6.1.4.1.6527.3.1.2.22.7.3.1.3
tmnxTacPlusServerRowStatus controls the creation and deletion of rows
in the table.

To create a row in the tmnxTacPlusServerTable, set
tmnxTacPlusServerRowStatus to createAndGo(4). Objects
tmnxTacPlusServ…
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.7.3.1.4
tmnxTacPlusServerOperStatus indicates the operational status of the
TACACS+ server.
Enumeration
Enumerated Values:
1up
2down
.1.3.6.1.4.1.6527.3.1.2.22.7.3.1.5
The value of tmnxTacPlusServerInetAddressType specifies the address
type of tmnxTacPlusServerInetAddress address.

The value of tmnxTacPlusServerInetAddressType can be either of
InetAddressType - 'ipv4' or…
INET-ADDRESS-MIBInetAddressTyper/w
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.6527.3.1.2.22.7.3.1.6
The value of tmnxTacPlusServerInetAddress specifies the address of the
Tacplus server.
OctetStringr/w
Constraints:
range: 0-0
range: 4-4
range: 16-16
range: 20-20
.1.3.6.1.4.1.6527.3.1.2.22.7.3.1.7
The value of tmnxTacPlusServerPort specifies the TCP port on which to
contact the Tacplus server.
TIMETRA-TC-MIBTTcpUdpPortr/w
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.6527.3.1.2.22.7.3.1.8
.1.3.6.1.4.1.6527.3.1.2.22.9.4 · 1 row entry · 10 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tCpmFilterQueueTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tCpmFilterQueueTable'
The tCpmFilterQueueTable has an entry for each CPM filter queue
configured on this system.
          
This table is not supported on SR-1 and ESS-1, where the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '5'.
tCpmFilterQueueEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.4.1
Each row entry represents a particular CPM Filter Queue. Entries are
created/deleted by user. Entries have a presumed StorageType of
nonVolatile.
Column Syntax OID
The value of tCpmFilterQueueId is used to index into the
tCpmFilterQueueTable. It uniquely identifies a CPM Queue as configured
on this system.
Unsigned32
Constraints:
range: 33-2000
.1.3.6.1.4.1.6527.3.1.2.22.9.4.1.1
The value of tCpmFilterQueueRowStatus specifies the row status. It
allows entries to be created or deleted in the tCpmFilterQueueEntry
table.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.9.4.1.2
The value of tCpmFilterQueueLastChanged indicates the timestamp of the
last change to this row in tCpmFilterQueueTable.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.4.1.3
The value of tCpmFilterQueueAdminPIR specifies the Peak Information
Rate associated with this queue.

This object can only be set to 1 or -1, when the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '8'.
TIMETRA-TC-MIBTPIRRater/w
Type Constraints:
range: -1
range: 1..100000000
.1.3.6.1.4.1.6527.3.1.2.22.9.4.1.4
The value of tCpmFilterQueueAdminCIR specifies the Committed
Information Rate associated with this queue.

This object cannot be set when the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '8'.
TIMETRA-TC-MIBTCIRRater/w
Type Constraints:
range: -1..100000000
.1.3.6.1.4.1.6527.3.1.2.22.9.4.1.5
The value of tCpmFilterQueueCBS specifies the Committed Burst Excess
associated with this queue.

This object cannot be set when the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '8'.
TIMETRA-TC-MIBTCpmFilterBurstSizer/w
Type Constraints:
range: -1..131072
.1.3.6.1.4.1.6527.3.1.2.22.9.4.1.6
The value of tCpmFilterQueueMBS specifies the Maximum Burst Size
associated with this queue.
TIMETRA-TC-MIBTCpmFilterBurstSizer/w
Type Constraints:
range: -1..131072
.1.3.6.1.4.1.6527.3.1.2.22.9.4.1.7
The value of tCpmFilterQueueReferences indicates the count of filter
entries using this particular queue to forward traffic to the main
CPU.
SNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.9.4.1.8
The value of tCpmFilterQueueOperPIR indicates the operational value of
the Peak Information Rate associated with this queue. This value can
be zero if the queue is not instantiated.
TIMETRA-TC-MIBTPIRRateOrZero
Type Constraints:
range: -1..100000000
.1.3.6.1.4.1.6527.3.1.2.22.9.4.1.9
The value of tCpmFilterQueueOperCIR indicates the operational value of
the Committed Information Rate associated with this queue.
TIMETRA-TC-MIBTCIRRate
Type Constraints:
range: -1..100000000
.1.3.6.1.4.1.6527.3.1.2.22.9.4.1.10
.1.3.6.1.4.1.6527.3.1.2.22.9.6 · 1 row entry · 37 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tCpmIpFilterTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tCpmIpFilterTable'
The tCpmIpFilterTable has an entry for each CPM IPv4 filter entry
configured on this system.
          
This table is not supported on SR-1 and ESS-1, where the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '5'.
tCpmIpFilterEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.6.1
Each row entry represents a particular Cpm Filter match entry. Every
Cpm Filter can have zero or more Cpm Filter match entries. A filter
entry with no match criteria set will match every packet, and the
entry action wil…
Column Syntax OID
The value of tCpmIpFilterEntryId is used to index into the
tCpmIpFilterTable. It uniquely identifies a CPM filter entry as
configured on this system.
Unsigned32
Constraints:
range: 1-131072
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.1
The value of tCpmIpFilterEntryRowStatus specifies the row status. It
allows entries to be created and deleted in the tCpmIpFilterTable.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.2
The value of tCpmIpFilterEntryLastChanged indicates the timestamp of
the last change to this row in tCpmIpFilterTable.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.3
The value of tCpmIpFilterEntryLogId specifies the log in which packets
matching this entry should be entered. The value zero indicates that
logging is disabled.
TIMETRA-FILTER-MIBTFilterLogIdr/w
Type Constraints:
range: 0
range: 101..199
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.4
The value of tCpmIpFilterEntryDescription specifies the user-provided
string describing this filter.
TIMETRA-TC-MIBTItemDescriptionr/w
Type Constraints:
range: 0..80
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.5
The value of tCpmIpFilterEntryAction specifies the action to take for
packets that match this filter entry. The value default(4) specifies
this entry to inherit the behavior defined as the default for the
filter in tCpm…
TCpmFilterActionOrDefaultr/w
Type Values:
1drop
2forward
3queue
4default
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.6
The value of tCpmIpFilterEntryQueueId specifies which queue to put the
packet in when tCpmIpFilterEntryAction is queue (3).

If the value of tCpmIpFilterEntryAction is different from queue (3)
tCpmIpFilter…
TCpmFilterQueueIdr/w
Type Constraints:
range: 0
range: 33..2000
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.7
The value of tCpmIpFilterEntrySrcIPAddr specifies the IP address to
match the source IP address of the packet.
SNMPv2-SMIIpAddressr/w
Type Constraints:
range: 4
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.8
The value of tCpmIpFilterEntrySrcIPMask specifies the IP Mask value
for this policy Cpm FilterEntry entry. The mask is ANDed with the IP
to match the tCpmIpFilterEntrySrcIPAddr.
TIMETRA-TC-MIBIpAddressPrefixLengthr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.9
The value of tCpmIpFilterEntryDestIPAddr specifies the IP address to
match the destination IP address of the packet.
SNMPv2-SMIIpAddressr/w
Type Constraints:
range: 4
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.10
The value of tCpmIpFilterEntryDestIPMask specifies the IP Mask value
for this policy Cpm FilterEntry entry. The mask is ANDed with the IP
to match the tCpmIpFilterEntryDestIPAddr.
TIMETRA-TC-MIBIpAddressPrefixLengthr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.11
The value of tCpmIpFilterEntryProtocol specifies the IP protocol to
match. It can be set to -1 to disable matching Cpm protocol. If the
protocol is changed, the protocol specific parameters are reset. For
instance, if p…
TIMETRA-TC-MIBTIpProtocolr/w
Type Constraints:
range: -2..255
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.12
The value of tCpmIpFilterEntrySrcPort specifies the TCP/UDP port to
match the source port of the packet.

See also the description of tCpmIpFilterEntrySrcPortOper for
additional information about this obje…
TIMETRA-TC-MIBTTcpUdpPortr/w
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.13
The value of tCpmIpFilterEntrySrcPortMask specifies the 16 bit mask to
be applied when matching tCpmIpFilterEntrySrcPort.

See also the description of tCpmIpFilterEntrySrcPortOper for
additional informatio…
Integer32r/w
Constraints:
range: 0-65535
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.14
The value of tCpmIpFilterEntryDestPort specifies the TCP/UDP port to
match the destination port of the packet.

See also the description of tCpmIpFilterEntryDestPortOper for
additional information about th…
TIMETRA-TC-MIBTTcpUdpPortr/w
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.15
The value of tCpmIpFilterEntryDestPortMask specifies the 16 bit mask
to be applied when matching tCpmIpFilterEntryDestPortOper.

See also the description of tCpmIpFilterEntryDestPortHigh for
additional inf…
Integer32r/w
Constraints:
range: 0-65535
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.16
The value of tCpmIpFilterEntryDSCP specifies the DSCP to be matched on
the packet.
TIMETRA-TC-MIBTDSCPNameOrEmptyr/w .1.3.6.1.4.1.6527.3.1.2.22.9.6.1.17
The value of tCpmIpFilterEntryFragment specifies whether fragment
matching is enabled. When enabled, this object matches
fragmented/unfragmented packets as per the value of the object.
TIMETRA-FILTER-MIBTItemMatchr/w
Type Values:
1off
2false
3true
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.18
The value of tCpmIpFilterEntryOptionPresent specifies whether IP
options matching is enabled. When enables, this object matches packets
if they have options present or not as per the value of the object.
TIMETRA-FILTER-MIBTItemMatchr/w
Type Values:
1off
2false
3true
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.19
The value of tCpmIpFilterEntryIPOptionValue specifies the specific IP
option to match.
TIMETRA-TC-MIBTIpOptionr/w
Type Constraints:
range: 0..255
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.20
The value of tCpmIpFilterEntryIPOptionMask specifies the mask that is
ANDed with the IP option in the packet header before being compared to
tCpmIpFilterEntryIPOptionValue.
TIMETRA-TC-MIBTIpOptionr/w
Type Constraints:
range: 0..255
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.21
The value of tCpmIpFilterEntryMultipleOption specifies whether
multiple options are to be matched as per the value of the object.
TIMETRA-FILTER-MIBTItemMatchr/w
Type Values:
1off
2false
3true
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.22
The value of tCpmIpFilterEntryTcpSyn specifies whether a TCP Syn
packet should match.
TIMETRA-FILTER-MIBTItemMatchr/w
Type Values:
1off
2false
3true
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.23
The value of tCpmIpFilterEntryTcpAck specifies whether a TCP Ack
packet should match.
TIMETRA-FILTER-MIBTItemMatchr/w
Type Values:
1off
2false
3true
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.24
The value of tCpmIpFilterEntryIcmpCode specifies the ICMP code to be
matched.

The value -1 means ICMP code matching is disabled.
TIMETRA-TC-MIBTIcmpCodeOrNoner/w
Type Constraints:
range: -1..255
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.25
The value of tCpmIpFilterEntryIcmpType specifies the ICMP type to be
matched.

The value -1 means ICMP type matching is disabled.
TIMETRA-TC-MIBTIcmpTypeOrNoner/w
Type Constraints:
range: -1..255
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.26
The value of tCpmIpFilterEntryVRtrId specifies the virtual router ID
to be matched. When the value is '0', no virtual router matching
occurs.
TIMETRA-TC-MIBTmnxVRtrIDOrZeror/w
Type Constraints:
range: 0..10240
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.27
The value of tCpmIpFilterEntryLogCreated indicates whether the filter
log for this filter entry has been instantiated.
SNMPv2-TCTruthValue
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.28
The value of this object specifies the IP prefix list used as match
criterion for the source ip address.

The value specified for this object must correspond to a prefix list
defined in TIMETRA-FILTER-MIB:…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.30
The value of this object specifies the IP prefix list used as match
criterion for the destination ip address.

The value specified for this object must correspond to a prefix list
defined in TIMETRA-FILTER…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.31
This object specifies the upper value for the TCP/UDP port range that
is used as match criterion for the source port of a packet.

See also the description of tCpmIpFilterEntrySrcPortOper for
additional in…
TIMETRA-TC-MIBTTcpUdpPortr/w
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.32
This object specifies the manner in which tCpmIpFilterEntrySrcPort,
tCpmIpFilterEntrySrcPortMask, and tCpmIpFilterEntrySrcPortHigh are to
be used. See description of TCpmFilterPortOperator.
TCpmFilterPortOperatorr/w
Type Values:
0mask
1range
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.33
This object specifies the upper value for the TCP/UDP port range that
is used as match criterion for the destination port of a packet.

See also the description of tCpmIpFilterEntryDestPortOper for
additio…
TIMETRA-TC-MIBTTcpUdpPortr/w
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.34
This object specifies the manner in which tCpmIpFilterEntryDestPort,
tCpmIpFilterEntryDestPortMask, and tCpmIpFilterEntryDestPortHigh are
to be used. See description of TCpmFilterPortOperator.
TCpmFilterPortOperatorr/w
Type Values:
0mask
1range
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.35
The value of this object specifies the port-list used as match
criterion for the source port.

The value specified for this object must correspond to a port-list
defined in TIMETRA-FILTER-MIB::tFilterPortL…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.36
The value of this object specifies the port-list used as match
criterion for the destination port.

The value specified for this object must correspond to a port-list
defined in TIMETRA-FILTER-MIB::tFilter…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.37
This object specifies how the source port objects
(tCpmIpFilterEntrySrcPort, tCpmIpFilterEntrySrcPortMask,
tCpmIpFilterEntrySrcPortHigh, tCpmIpFilterEntrySrcPortOper,
tCpmIpFilterEntrySrcPortList) and destination port o…
TIMETRA-FILTER-MIBTFltrPortSelectorr/w
Type Values:
0and-port
1or-port
.1.3.6.1.4.1.6527.3.1.2.22.9.6.1.38
.1.3.6.1.4.1.6527.3.1.2.22.9.7 · 1 row entry · 2 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tCpmIpFilterStatsTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tCpmIpFilterStatsTable'
The tCpmIpFilterStatsTable has a stats entry for each entry in each
CPM filter configured on this system.
          
This table is not supported on SR-1 and ESS-1, where the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '5'.
tCpmIpFilterStatsEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.7.1
Each row entry represents the statistics related to the
tCpmIpFilterEntry indexed by the same tCpmIpFilterEntryId. Entries are
created when tCpmIpFilterEntry rows are created.
Column Syntax OID
The value of tCpmIpFilterStatsDroppedPkts indicates the number of
packets dropped due to the tCpmIpFilterEntry with the same index.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.6527.3.1.2.22.9.7.1.1
The value of tCpmIpFilterStatsForwardedPkts indicates the number of
packets forwarded due to the tCpmIpFilterEntry with the same index.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.6527.3.1.2.22.9.7.1.2
.1.3.6.1.4.1.6527.3.1.2.22.9.8 · 1 row entry · 8 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tCpmFilterQueueStatsTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tCpmFilterQueueStatsTable'
The tCpmFilterQueueStatsTable has a stats entry for each CPM filter
queue configured on this system.
          
This table is not supported on SR-1 and ESS-1, where the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '5'.
tCpmFilterQueueStatsEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.8.1
Each row entry represents the statistics related to the
tCpmFilterQueueEntry indexed by the same tCpmFilterQueueId. Entries
are created when tCpmFilterQueueEntry rows are created.
Column Syntax OID
The value of tCpmFilterQInProfileDropPkts indicates the number of
packets complying to the queue Qos profile dropped from the
tCpmFilterQueueEntry with the same index.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.6527.3.1.2.22.9.8.1.1
The value of tCpmFilterQInProfileFwdPkts indicates the number of
packets complying to the queue Qos profile forwarded from the
tCpmFilterQueueEntry with the same index.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.6527.3.1.2.22.9.8.1.2
The value of tCpmFilterQInProfileDropOctets indicates the number of
octets complying to the queue Qos profile dropped from the
tCpmFilterQueueEntry with the same index.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.6527.3.1.2.22.9.8.1.3
The value of tCpmFilterQInProfileFwdOctets indicates the number of
octets complying to the queue Qos profile forwarded from the
tCpmFilterQueueEntry with the same index.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.6527.3.1.2.22.9.8.1.4
The value of tCpmFilterQOutProfileDropPkts indicates the number of
packets not complying to the queue Qos profile dropped from the
tCpmFilterQueueEntry with the same index.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.6527.3.1.2.22.9.8.1.5
The value of tCpmFilterQOutProfileFwdPkts indicates the number of
packets not complying to the queue Qos profile forwarded from the
tCpmFilterQueueEntry with the same index.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.6527.3.1.2.22.9.8.1.6
The value of tCpmFilterQOutProfileDropOctets indicates the number of
octets not complying to the queue Qos profile dropped from the
tCpmFilterQueueEntry with the same index.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.6527.3.1.2.22.9.8.1.7
The value of tCpmFilterQOutProfileFwdOctets indicates the number of
octets not complying to the queue Qos profile forwarded from the
tCpmFilterQueueEntry with the same index.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.6527.3.1.2.22.9.8.1.8
.1.3.6.1.4.1.6527.3.1.2.22.9.9 · 1 row entry · 35 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tCpmIPv6FilterTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tCpmIPv6FilterTable'
The tCpmIPv6FilterTable has an entry for each CPM IPv6 filter entry
configured on this system.
          
This table is not supported on SR-1 and ESS-1, where the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '5'.
tCpmIPv6FilterEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.9.1
Each row entry represents a particular CPM IPv6 filter match entry.
The CPM IPv6 Filter can have zero or more CPM IPv6 filter match
entries.

A filter entry with no match criteria set will match every packet…
Column Syntax OID
The value of tCpmIPv6FilterEntryId is used to index into the
tCpmIPv6FilterTable. It uniquely identifies a CPM IPv6 filter entry as
configured on this system.
Unsigned32
Constraints:
range: 1-131072
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.1
The value of tCpmIPv6FilterEntryRowStatus specifies the row status. It
allows entries to be created and deleted in the tCpmIPv6FilterTable.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.2
The value of tCpmIPv6FilterEntryLastChanged indicates the timestamp of
the last change to this row in tCpmIPv6FilterTable.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.3
The value of tCpmIPv6FilterEntryLogId specifies the log in which
packets matching this entry should be entered. The value zero
indicates that logging is disabled.
TIMETRA-FILTER-MIBTFilterLogIdr/w
Type Constraints:
range: 0
range: 101..199
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.4
The value of tCpmIPv6FilterEntryDescription specifies the
user-provided string describing this filter entry.
TIMETRA-TC-MIBTItemDescriptionr/w
Type Constraints:
range: 0..80
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.5
The value of tCpmIPv6FilterEntryAction specifies the action to take
for packets that match this filter entry. The value default(4)
specifies this entry to inherit the behavior defined as the default
for the filter in tC…
TCpmFilterActionOrDefaultr/w
Type Values:
1drop
2forward
3queue
4default
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.6
The value of tCpmIPv6FilterEntryQueueId specifies which queue to put
the packet in when tCpmIPv6FilterEntryAction is queue (3).

If the value of tCpmIPv6FilterEntryAction is different from queue (3)
tCpmIP…
TCpmFilterQueueIdr/w
Type Constraints:
range: 0
range: 33..2000
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.7
The value of tCpmIPv6FilterEntrySrcIPAddr specifies the IPv6 address
to match the source IPv6 address in the packet.
INET-ADDRESS-MIBInetAddressIPv6r/w
Type Constraints:
range: 16
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.8
tCpmIPv6FilterEntrySrcIPMask holds the IPv6 source address mask for
this IPv6 CPM filter entry. The mask specifies the bits to be compared
between tCpmIPv6FilterEntrySrcIPAddr and the IPv6 source address in
the packet.
Unsigned32r/w
Constraints:
range: 0-128
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.9
The value of tCpmIPv6FilterEntryDestIPAddr specifies the IPv6 address
to match the destination IPv6 address in the packet.
INET-ADDRESS-MIBInetAddressIPv6r/w
Type Constraints:
range: 16
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.10
tCpmIPv6FilterEntryDestIPMask holds the IPv6 destination address mask
for this IPv6 CPM filter entry.

The mask specifies the bits to be compared between
tCpmIPv6FilterEntryDestIPAddr and the IPv6 destinat…
Unsigned32r/w
Constraints:
range: 0-128
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.11
The value of tCpmIPv6FilterEntryNextHeader specifies the IPv6 protocol
to match. '-1' specifies that the matching has been disabled. To
change a protocol, the protocol specific values should be reset. For
instance, to c…
TIMETRA-TC-MIBTIpProtocolr/w
Type Constraints:
range: -2..255
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.12
The value of tCpmIPv6FilterEntrySrcPort specifies the TCP/UDP port to
match the source port of the packet.

See also the description of tCpmIPv6FilterEntrySrcPortOper for
additional information about this …
TIMETRA-TC-MIBTTcpUdpPortr/w
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.13
The value of tCpmIPv6FilterEntrySrcPortMask specifies the bits to be
compared between tCpmIPv6FilterEntrySrcPort and the TCP/UDP source
port in the packet.

See also the description of tCpmIPv6FilterEntryS…
Integer32r/w
Constraints:
range: 0-65535
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.14
The value of tCpmIPv6FilterEntryDestPort specifies the TCP/UDP port to
match the destination port of the packet.

See also the description of tCpmIPv6FilterEntryDestPortOper for
additional information abou…
TIMETRA-TC-MIBTTcpUdpPortr/w
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.15
The value of tCpmIPv6FilterEntryDestPortMask specifies the bits to be
compared between tCpmIPv6FilterEntryDestPort and the TCP/UDP source
port in the packet.

See also the description of tCpmIPv6FilterEntr…
Integer32r/w
Constraints:
range: 0-65535
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.16
The value of tCpmIPv6FilterEntryDSCP specifies the DSCP to be matched
on the packet.
TIMETRA-TC-MIBTDSCPNameOrEmptyr/w .1.3.6.1.4.1.6527.3.1.2.22.9.9.1.17
The value of tCpmIPv6FilterEntryTcpSyn specifies whether a TCP Syn
packet should match.
TIMETRA-FILTER-MIBTItemMatchr/w
Type Values:
1off
2false
3true
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.23
The value of tCpmIPv6FilterEntryTcpAck specifies whether a TCP Ack
packet should match.
TIMETRA-FILTER-MIBTItemMatchr/w
Type Values:
1off
2false
3true
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.24
The value of tCpmIPv6FilterEntryIcmpCode specifies the ICMP code to be
matched.

The value '-1' means ICMP code matching is disabled.
TIMETRA-TC-MIBTIcmpCodeOrNoner/w
Type Constraints:
range: -1..255
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.25
The value of tCpmIPv6FilterEntryIcmpType specifies the ICMP type to be
matched.

The value '-1' means ICMP type matching is disabled.
TIMETRA-TC-MIBTIcmpTypeOrNoner/w
Type Constraints:
range: -1..255
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.26
The value of tCpmIPv6FilterEntryVRtrId specifies the virtual router ID
to be matched. When the value is '0', no virtual router matching
occurs.
TIMETRA-TC-MIBTmnxVRtrIDOrZeror/w
Type Constraints:
range: 0..10240
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.27
The value of tCpmIPv6FilterEntryLogCreated indicates whether the
filter log for this filter entry has been instantiated.
SNMPv2-TCTruthValue
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.28
The value of tCpmIPv6FilterEntryFlowLabel specifies the flow label to
be matched. When the value is '-1', no flow label matching occurs.
TIMETRA-TC-MIBIPv6FlowLabelr/w
Type Constraints:
range: -1..1048575
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.29
The value of this object specifies the IPv6 prefix list used as match
criterion for the source ipv6 address.

The value specified for this object must correspond to a prefix list
defined in TIMETRA-FILTER-…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.30
The value of this object specifies the IPv6 prefix list used as match
criterion for the destination ipv6 address.

The value specified for this object must correspond to a prefix list
defined in TIMETRA-FI…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.31
This object specifies the upper value for the TCP/UDP port range that
is used as match criterion for the source port of a packet.

See also the description of tCpmIPv6FilterEntrySrcPortOper for
additional …
TIMETRA-TC-MIBTTcpUdpPortr/w
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.32
This object specifies the manner in which tCpmIPv6FilterEntrySrcPort,
tCpmIPv6FilterEntrySrcPortMask, and tCpmIPv6FilterEntrySrcPortHigh are
to be used. See description of TCpmFilterPortOperator.
TCpmFilterPortOperatorr/w
Type Values:
0mask
1range
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.33
This object specifies the upper value for the TCP/UDP port range that
is used as match criterion for the source port of a packet.

Setting tCpmIPv6FilterEntryDestPortOper to range in combination with a
val…
TIMETRA-TC-MIBTTcpUdpPortr/w
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.34
This object specifies the manner in which tCpmIPv6FilterEntryDestPort,
tCpmIPv6FilterEntryDestPortMask, and tCpmIPv6FilterEntryDestPortHigh
are to be used. See description of TCpmFilterPortOperator.
TCpmFilterPortOperatorr/w
Type Values:
0mask
1range
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.35
The value of this object specifies the port-list used as match
criterion for the source port.

The value specified for this object must correspond to a port-list
defined in TIMETRA-FILTER-MIB::tFilterPortL…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.36
The value of this object specifies the port-list used as match
criterion for the destination port.

The value specified for this object must correspond to a port-list
defined in TIMETRA-FILTER-MIB::tFilter…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.37
This object specifies how the source port objects
(tCpmIPv6FilterEntrySrcPort, tCpmIPv6FilterEntrySrcPortMask,
tCpmIPv6FilterEntrySrcPortHigh, tCpmIPv6FilterEntrySrcPortOper,
tCpmIPv6FilterEntrySrcPortList) and destinat…
TIMETRA-FILTER-MIBTFltrPortSelectorr/w
Type Values:
0and-port
1or-port
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.38
If Enabled, matches a Fragmentation Extension Header as per value of
the object.
TIMETRA-FILTER-MIBTItemMatchr/w
Type Values:
1off
2false
3true
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.39
If Enabled, matches a Hop-By-Hop options Extension Header as per value
of the object.
TIMETRA-FILTER-MIBTItemMatchr/w
Type Values:
1off
2false
3true
.1.3.6.1.4.1.6527.3.1.2.22.9.9.1.40
.1.3.6.1.4.1.6527.3.1.2.22.9.10 · 1 row entry · 2 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tCpmIPv6FilterStatsTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tCpmIPv6FilterStatsTable'
The tCpmIPv6FilterStatsTable has a stats entry for each entry in each
CPM filter configured on this system.
          
This table is not supported on SR-1 and ESS-1, where the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '5'.
tCpmIPv6FilterStatsEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.10.1
Each row entry represents the statistics related to the
tCpmIPv6FilterEntry indexed by the same tCpmIPv6FilterEntryId. Entries
are created when tCpmIPv6FilterEntry rows are created.
Column Syntax OID
The value of tCpmIPv6FilterStatsDroppedPkts indicates the number of
packets dropped due to the tCpmIPv6FilterEntry with the same index.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.6527.3.1.2.22.9.10.1.1
The value of tCpmIPv6FilterStatsForwardedPkts indicates the number of
packets forwarded due to the tCpmIPv6FilterEntry with the same index.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.6527.3.1.2.22.9.10.1.2
.1.3.6.1.4.1.6527.3.1.2.22.9.12 · 1 row entry · 10 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxCpmProtPolTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxCpmProtPolTable'
The tmnxCpmProtPolTable has an entry for each CPM Protection policy
configured in the system. There are two default policies.
          
CPM Protection policy (254) is the default Access CPM Protection
policy. CPM Protection policy (255) is the default Network CPM
Protection policy.
          
The default CPM Protection policies are created by the system, and can
be modified but cannot be destroyed.
          
This object is not supported on SR-1 and ESS-1, where the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '5', and 7710, where the value
of TIMETRA-CHASSIS-MIB::tmnxChassisType is '7' or '9'.
tmnxCpmProtPolEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.12.1
Each row entry represents the configuration information related to a
CPM Protection policy.
Column Syntax OID
The value of tmnxCpmProtPolicyId specifies the identification number
of the CPM Protection policy.
Unsigned32
Constraints:
range: 1-255
.1.3.6.1.4.1.6527.3.1.2.22.9.12.1.1
The value of tmnxCpmProtPolRowStatus controls the creation and
deletion of rows in this table.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.9.12.1.2
The value of tmnxCpmProtPolLastChanged indicates the sysUpTime at the
time of the last modification of this entry.

If no changes were made to the entry since the last re-initialization
of the local networ…
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.12.1.3
The value of tmnxCpmProtPolDescription specifies the user provided
description of this CPM Protection policy. The default CPM Protection
policies 254 and 255 have a default description which can be modified
by the user.
TIMETRA-TC-MIBTItemDescriptionr/w
Type Constraints:
range: 0..80
.1.3.6.1.4.1.6527.3.1.2.22.9.12.1.4
The value of tmnxCpmProtPolPerSrcRateLimit specifies the packet
arrival rate limit to be applied to each source of packets.

Objects referring to this CPM Protection policy that do not support
per-source r…
packets per secondTmnxCpmPacketPolRateLimitr/w
Type Constraints:
range: -1
range: 1..65534
.1.3.6.1.4.1.6527.3.1.2.22.9.12.1.5
The value of tmnxCpmProtPolOverallRateLimit specifies the overall
packet arrival rate limit to be applied to all sources of packets.

A default value of -1, specifies an unrestricted packet arrival rate
on…
packets per secondTmnxCpmPacketPolRateLimitr/w
Type Constraints:
range: -1
range: 1..65534
.1.3.6.1.4.1.6527.3.1.2.22.9.12.1.6
The value of tmnxCpmProtPolAlarm specifies if a notification must be
issued when one of the packet arrival rate limits is crossed.

A value of 'true' specifies that a notification must be issued.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.9.12.1.7
The value of tmnxCpmProtPolOutProfileRate specifies the threshold
value at which incoming control packets are marked out of profile.

A default value of -1 specifies absence of a set threshold on the
inter…
packets per secondTmnxCpmPacketPolRateLimitr/w
Type Constraints:
range: -1
range: 1..65534
.1.3.6.1.4.1.6527.3.1.2.22.9.12.1.8
The value of tmnxCpmProtPolLimDhcpCiAddrZero specifies whether or not
to apply per-source rate limiting to DHCP packets containing Client IP
address zero (e.g., for IPv4, ciaddr = 0.0.0.0).

For example, s…
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.9.12.1.9
The value of tmnxCpmProtPolOutProfRateLogEvnt controls the generation
of log events when the out-profile-rate specified by
tmnxCpmProtPolOutProfileRate is exceeded.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.9.12.1.10
.1.3.6.1.4.1.6527.3.1.2.22.9.16 · 1 row entry · 4 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxCpmProtExcdTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxCpmProtExcdTable'
tmnxCpmProtExcdTable has a row for each <service ID, SAP, source MAC
address> triple that has exceeded the per-source rate limit configured
for the <service ID, SAP> pair.  MAC-layer per-source rate limiting is
enabled for a <service ID, SAP> pair by setting
TIMETRA-SAP-MIB::sapCpmProtMonitorMac to 'true'.
          
This object is not supported on SR-1 and ESS-1, where the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '5', and 7710, where the value
of TIMETRA-CHASSIS-MIB::tmnxChassisType is '7' or '9'.
tmnxCpmProtExcdEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.16.1
Each row contains statistics for a MAC packet stream that has exceeded
its per-source rate limit.

A row is created by the system the first time a <service ID, SAP,
source MAC address> triple exceeds its per…
Column Syntax OID
The value of tmnxCpmProtExcdMac indicates the MAC address of a source
which has exceeded its per-source rate limit.
SNMPv2-TCMacAddress
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.6527.3.1.2.22.9.16.1.1
The value of tmnxCpmProtExcdPeriods indicates the number of times a
per-source rate limit violation was detected for this source.

The sampling interval length is indicated by the object
tmnxCpmProtDetectP…
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.9.16.1.2
The value of tmnxCpmProtExcdTimeStarted indicates the sysUpTime at the
time of the creation of this row.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.16.1.3
The value of tmnxCpmProtExcdTime indicates the sysUpTime at the time
of the last update of this row.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.16.1.4
.1.3.6.1.4.1.6527.3.1.2.22.9.18 · 1 row entry · 6 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxCpmProtViolPortTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxCpmProtViolPortTable'
The tmnxCpmProtViolPortTable has an entry for each port where either
the link-specific packet arrival rate limit or the per-port overall
packet rate limit was violated.
          
This object is not supported on SR-1 and ESS-1, where the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '5', and 7710, where the value
of TIMETRA-CHASSIS-MIB::tmnxChassisType is '7' or '9'.
tmnxCpmProtViolPortEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.18.1
Each row entry represents the information related to a port where the
link-specific packet arrival rate limit was violated.

Rows are created or removed automatically by the system.
Indexes
TIMETRA-PORT-MIBtmnxPortPortID
Column Syntax OID
The value of tmnxCpmProtViolPortPeriods indicates the number of times
the link-specific rate limit violation was detected at this port.

The sampling interval length is indicated by the object
tmnxCpmProtD…
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.9.18.1.1
The value of tmnxCpmProtViolPortTimeStarted indicates the sysUpTime
when the link-specific rate limit violation was detected the first
time at this port.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.18.1.2
The value of tmnxCpmProtViolPortTime indicates the sysUpTime when the
link-specific rate limit violation was detected the last time at this
port.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.18.1.3
The value of tmnxCpmProtViolPortAggPeriods indicates the number of
times the per-port overall rate limit violation was detected at this
port.
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.9.18.1.4
The value of tmnxCpmProtViolPortAggTimeStart indicates the sysUpTime
when the per-port overall rate limit violation was detected the first
time at this port.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.18.1.5
The value of tmnxCpmProtViolPortAggTime indicates the sysUpTime when
the per-port overall rate limit violation was detected the last time
at this port.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.18.1.6
.1.3.6.1.4.1.6527.3.1.2.22.9.20 · 1 row entry · 3 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxCpmProtViolIfTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxCpmProtViolIfTable'
The tmnxCpmProtViolIfTable has an entry for each router interface
where the overall packet arrival rate limit was violated.
          
This object is not supported on SR-1 and ESS-1, where the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '5', and 7710, where the value
of TIMETRA-CHASSIS-MIB::tmnxChassisType is '7' or '9'.
tmnxCpmProtViolIfEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.20.1
Each row entry represents the information related to a router
interface where the overall packet arrival rate limit was violated.

Rows are created or removed automatically by the system.
Column Syntax OID
The value of tmnxCpmProtViolIfPeriods indicates the number of times
the rate limit violation was detected at this router interface.

The sampling interval length is indicated by the object
tmnxCpmProtDetec…
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.9.20.1.1
The value of tmnxCpmProtViolIfTimeStarted indicates the sysUpTime at
the time of the creation of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.20.1.2
The value of tmnxCpmProtViolIfTime indicates the sysUpTime at the time
of the last modification of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.20.1.3
.1.3.6.1.4.1.6527.3.1.2.22.9.22 · 1 row entry · 3 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxCpmProtViolSapTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxCpmProtViolSapTable'
The tmnxCpmProtViolSapTable has an entry for each SAP where the
overall packet arrival rate limit was violated.
          
This object is not supported on SR-1 and ESS-1, where the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '5', and 7710, where the value
of TIMETRA-CHASSIS-MIB::tmnxChassisType is '7' or '9'.
tmnxCpmProtViolSapEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.22.1
Each row entry represents the information related to a SAP where the
overall packet arrival rate limit was violated.

Rows are created or removed automatically by the system.
Column Syntax OID
The value of tmnxCpmProtViolSapPeriods indicates the number of times
the rate limit violation was detected at this SAP.

The sampling interval length is indicated by the object
tmnxCpmProtDetectPeriod.
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.9.22.1.1
The value of tmnxCpmProtViolSapTimeStarted indicates the sysUpTime at
the time of the creation of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.22.1.2
The value of tmnxCpmProtViolSapTime indicates the sysUpTime at the
time of the last update of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.22.1.3
.1.3.6.1.4.1.6527.3.1.2.22.9.25 · 1 row entry · 24 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tCpmMacFilterTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tCpmMacFilterTable'
The tCpmMacFilterTable has an entry for each CPM Mac filter entry
configured on this system.
          
This table is not supported on SR-1 and ESS-1, where the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '5'.
tCpmMacFilterEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.25.1
Each row entry represents a particular Cpm Mac Filter match entry. The
Cpm Mac Filter can have zero or more Cpm Mac Filter match entries. A
filter entry with no match criteria set will match every packet, and
the entry …
Column Syntax OID
The value of tCpmMacFltrEntryId is used to index into the
tCpmMacFilterTable. It uniquely identifies a CPM Mac filter entry as
configured on this system.
Unsigned32
Constraints:
range: 1-131072
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.1
The value of tCpmMacFltrEntryRowStatus specifies the row status. It
allows entries to be created and deleted in the tCpmMacFilterTable.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.2
The value of tCpmMacFltrEntryLastChanged indicates the timestamp of
the last change to this row in tCpmMacFilterTable.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.3
The value of tCpmMacFltrEntryLogId specifies the log in which packets
matching this entry should be entered. The value zero indicates that
logging is disabled.
TIMETRA-FILTER-MIBTFilterLogIdr/w
Type Constraints:
range: 0
range: 101..199
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.4
The value of tCpmMacFltrEntryDescription specifies the user-provided
string describing this filter entry.
TIMETRA-TC-MIBTItemDescriptionr/w
Type Constraints:
range: 0..80
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.5
The value of tCpmMacFltrEntryAction specifies the action to take for
packets that match this filter entry. The value default(4) specifies
this entry to inherit the behavior defined as the default for the
filter in tCpmF…
TCpmFilterActionOrDefaultr/w
Type Values:
1drop
2forward
3queue
4default
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.6
The value of tCpmMacFltrEntryQueueId specifies which queue to put the
packet in when tCpmMacFltrEntryAction is queue (3).

If the value of tCpmMacFltrEntryAction is different from queue (3)
tCpmMacFltrEntr…
TCpmFilterQueueIdr/w
Type Constraints:
range: 0
range: 33..2000
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.7
The value of tCpmMacFltrEntryFrameType specifies the type of mac frame
for which we are defining this match criteria. The value 'none' means
that this entry is not matching on any ethernet frame.

The valu…
TmnxCpmMacFltrFrameTyper/w
Type Values:
-1none
1e802dot2LLC
3ethernetII
4e802dot1ag
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.8
The value of the object tCpmMacFltrEntrySvcId specifies the service-id
in which the packet is to be received for this entry to match. A value
of 0 indicates: any service.
TIMETRA-TC-MIBTmnxServIdr/w
Type Constraints:
range: 0..2148278381
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.9
Filtering on dot1p bits is currently not offered on cpm-mac filters.
All set actions on this object will therefore be ignored.
TIMETRA-TC-MIBDot1PPriorityr/w
Type Constraints:
range: -1..7
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.10
Filtering on dot1p bits is currently not offered on cpm-mac filters.
All set actions on this object will therefore be ignored.
TIMETRA-TC-MIBDot1PPriorityMaskr/w
Type Constraints:
range: 0..7
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.11
The value of the object tCpmMacFltrEntryDsap specifies the MAC DSAP to
match for this MAC filter entry. This object has no significance if
the object tCpmMacFltrEntryFrameType is not set to 802dot2LLC.
TIMETRA-TC-MIBServiceAccessPointr/w
Type Constraints:
range: -1..255
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.12
The value of the object tCpmMacFltrEntryDsapMask specifies the MAC
DSAP mask for this MAC filter entry. This object has no significance
if the object tCpmMacFltrEntryFrameType is not set to 802dot2LLC.
TIMETRA-TC-MIBServiceAccessPointr/w
Type Constraints:
range: -1..255
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.13
The value of the object tCpmMacFltrEntrySrcMAC specifies the source
MAC to match for this policy MAC filter entry.
SNMPv2-TCMacAddressr/w
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.14
The value of the object tCpmMacFltrEntrySrcMACMask specifies the
source MAC mask value for this policy MAC filter entry. The mask is
ANDed with the MAC to match tCpmMacFltrEntrySrcMAC. A zero bit means
ignore this bit, …
SNMPv2-TCMacAddressr/w
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.15
The value of the object tCpmMacFltrEntryDstMAC specifies the
Destination MAC mask value for this policy MAC filter entry.
SNMPv2-TCMacAddressr/w
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.16
The value of the object tCpmMacFltrEntryDstMACMask specifies
the destination MAC mask value for this policy MAC filter entry.
The mask is ANDed with the MAC to match tCpmMacFltrEntryDstMAC.
A zero bit means ignore this …
SNMPv2-TCMacAddressr/w
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.17
The value of the object tCpmMacFltrEntryEtherType specifies the
Ethertype for this MAC filter entry. Use -1 to disable matching by
this criteria. This object has no significance if the object
tCpmMacFltrEntryFrameType i…
Integer32r/w
Constraints:
range: -1--1
range: 1536-65535
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.18
The value of the object tCpmMacFltrEntrySsap specifies the MAC SSAP to
match for this MAC filter entry. This object has no significance if
the object tCpmMacFltrEntryFrameType is not set to 802dot2LLC.
TIMETRA-TC-MIBServiceAccessPointr/w
Type Constraints:
range: -1..255
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.21
The value of the object tCpmMacFltrEntrySsapMask specifies the MAC
SSAP mask for this MAC filter entry. Use 0 to disable matching by this
criteria. This object has no significance if the object
tCpmMacFltrEntryFrameType…
TIMETRA-TC-MIBServiceAccessPointr/w
Type Constraints:
range: -1..255
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.22
The value of the object tCpmMacFltrEntryCfmOpCodeOper specifies which
type of opcode checking is to be performed. If different from none,
more info is provided in the objects tCpmMacFltrEntryCfmOpCodeValue1
and tCpmMacF…
TIMETRA-TC-MIBTOperatorr/w
Type Values:
0none
1eq
2range
3lt
4gt
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.23
The value of the object tCpmMacFltrEntryCfmOpCodeValue1 specifies a
cfm opcode. The value of this object is used as per the description
for tCpmMacFltrEntryCfmOpCodeOper.
Unsigned32r/w
Constraints:
range: 0-255
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.24
The value of the object tCpmMacFltrEntryCfmOpCodeValue2 specifies a
cfm opcode. The value of this object is used as per the description
for tCpmMacFltrEntryCfmOpCodeOper.
Unsigned32r/w
Constraints:
range: 0-255
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.25
The value of tCpmMacFltrEntryLogCreated indicates whether the filter
log for this filter entry has been instantiated.
SNMPv2-TCTruthValue
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.9.25.1.26
.1.3.6.1.4.1.6527.3.1.2.22.9.26 · 1 row entry · 2 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tCpmMacFilterStatsTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tCpmMacFilterStatsTable'
The tCpmMacFilterStatsTable has a stats entry of the CPM Mac filter
configured on this system.
          
This table is not supported on SR-1 and ESS-1, where the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '5'.
tCpmMacFilterStatsEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.26.1
Each row entry represents the statistics related to the
tCpmMacFilterEntry indexed by the same tCpmMacFltrEntryId. Entries are
created when tCpmMacFilterEntry rows are created.
Column Syntax OID
The value of tCpmMacFilterStatsDroppedPkts indicates the number of
packets dropped due to the tCpmMacFilterEntry with the same index.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.6527.3.1.2.22.9.26.1.1
The value of tCpmMacFilterStatsForwardedPkts indicates the number of
packets forwarded due to the tCpmMacFilterEntry with the same index.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.3.6.1.4.1.6527.3.1.2.22.9.26.1.2
.1.3.6.1.4.1.6527.3.1.2.22.9.28 · 1 row entry · 6 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxCpmProtViolVdoSvcTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxCpmProtViolVdoSvcTable'
The tmnxCpmProtViolVdoSvcTable has an entry for each client address of
a RTCP control traffic in VPLS service where the per-source rate limit
was violated.
tmnxCpmProtViolVdoSvcEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.28.1
Each row entry represents the information related to a client address
of a RTCP control traffic in VPLS service where the per-source rate
limit was violated.

Rows are created or removed automatically by the…
Column Syntax OID
The value of tmnxCpmProtViolVdoSvcCltAddrType indicates the type of
address represented by tmnxCpmProtViolVdoSvcCltAddr.
INET-ADDRESS-MIBInetAddressType
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.6527.3.1.2.22.9.28.1.1
The value of tmnxCpmProtViolVdoSvcCltAddr indicates the client IP
address of a RTCP control traffic in VPLS service where the per-source
rate limit was violated.
OctetString
Constraints:
range: 4-4
range: 16-16
.1.3.6.1.4.1.6527.3.1.2.22.9.28.1.2
The value of tmnxCpmProtViolVdoSvcPeriods indicates the number of
times the per-source rate limit violation was detected for this
client.

The sampling interval length is indicated by the object
tmnxCpmPro…
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.9.28.1.3
The value of tmnxCpmProtViolVdoSvcTimeStarted indicates the sysUpTime
at the time of the creation of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.28.1.4
The value of tmnxCpmProtViolVdoSvcTime indicates the sysUpTime at the
time of the last update of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.28.1.5
The value of tmnxCpmProtViolVdoSvcVrtrIfIndex specifies the secondary
index in the TIMETRA-VRTR-MIB::vRtrIfTable corresponding to the video
interface where the per-source rate limit was violated. The value of
primary in…
TIMETRA-TC-MIBInterfaceIndex .1.3.6.1.4.1.6527.3.1.2.22.9.28.1.6
.1.3.6.1.4.1.6527.3.1.2.22.9.29 · 1 row entry · 7 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxCpmProtViolVdoVrtrTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxCpmProtViolVdoVrtrTable'
The tmnxCpmProtViolVdoVrtrTable has an entry for each client address
of a RTCP control traffic in router context where the per-source rate
limit was violated.
tmnxCpmProtViolVdoVrtrEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.29.1
Each row entry represents the information related to a client address
of a RTCP control traffic in router context where the per-source rate
limit was violated.

Rows are created or removed automatically by t…
Column Syntax OID
The value of tmnxCpmProtViolVdoVrtrCltAdrType indicates the type of
address represented by tmnxCpmProtViolVdoVrtrCltAddr.
INET-ADDRESS-MIBInetAddressType
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.6527.3.1.2.22.9.29.1.1
The value of tmnxCpmProtViolVdoVrtrCltAddr indicates the client IP
address of a RTCP control traffic in router context where the
per-source rate limit was violated.
OctetString
Constraints:
range: 4-4
range: 16-16
.1.3.6.1.4.1.6527.3.1.2.22.9.29.1.2
The value of tmnxCpmProtViolVdoVrtrPeriods indicates the number of
times the per-source rate limit violation was detected for this
client.

The sampling interval length is indicated by the object
tmnxCpmPr…
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.9.29.1.3
The value of tmnxCpmProtViolVdoVrtrTimeStart indicates the sysUpTime
at the time of the creation of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.29.1.4
The value of tmnxCpmProtViolVdoVrtrTime indicates the sysUpTime at the
time of the last update of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.29.1.5
The value of tmnxCpmProtViolVdoVrtrSvcId indicates the row index in
the TIMETRA-SERV-MIB::svcBaseInfoTable corresponding to the service
where the per-source rate limit was violated.
TIMETRA-TC-MIBTmnxServId
Type Constraints:
range: 0..2148278381
.1.3.6.1.4.1.6527.3.1.2.22.9.29.1.6
The value of tmnxCpmProtViolVdoVrtrIfIndex specifies the secondary
index in the TIMETRA-VRTR-MIB::vRtrIfTable corresponding to the video
interface where the per-source rate limit was violated. The value of
vRtrID specif…
TIMETRA-TC-MIBInterfaceIndex .1.3.6.1.4.1.6527.3.1.2.22.9.29.1.7
.1.3.6.1.4.1.6527.3.1.2.22.9.31 · 1 row entry · 6 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxCpmProtEthCfmPolTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxCpmProtEthCfmPolTable'
tmnxCpmProtEthCfmPolTable contains configurable rules (similar to an
Access Control List) used to rate limit the flow of Ethernet
Connectivity Fault Management packets.  The table can be used to
minimize the impact of an Eth-CFM Denial of Service attack.
          
The table extends tmnxCpmProtPolTable, by allowing several
<rate-limit, eth-cfm-level, eth-cfm-opcode> triples to be defined for
a CPM protection policy.
          
For example, tmnxCpmProtEthCfmPolTable could contain the following
information (where the column labels for the table's index objects are
in upper case):
   POLICY ID  ENTRY NUM  Level  Opcode    Rate Limit
   ---------  ---------  -----  ------    ----------
   250        10         {4}    {10}      100 packets/sec
   250        20         {4,6}  {1,3}     200 packets/sec
   250        30         {0-7}  {0-255}   300 packets/sec
          
{0-7} indicates {0, 1, 2, 3, 4, 5, 6, 7}.
          
Suppose the example configuration above is in place, and an Eth-CFM
PDU arrives on a SAP which has Policy ID 250 configured against it.
If the PDU contains level=4 and opcode=1, the 200 packets/sec rate
limit is applied.  Within a Policy ID, the first row (i.e.
the row with the lowest entry number) matching the PDU applies.
Therefore, the third row in the example applies a 300 packets/sec
limit to any PDU which does not match the first or second row.
          
At most four Policy IDs can have rows in this table.  At most 10 rows
are supported per Policy ID.
          
If the user chooses well-spaced tmnxCpmProtEthCfmPolEntryNum values
(e.g. 10, 20, 30) when initially creating the rows for a particular
tmnxCpmProtPolicyId, it will be possible to add rows in the gaps
later, without reconfiguration.
          
A prerequisite for creating a row in this table:  a row with the same
tmnxCpmProtPolicyId must exist in tmnxCpmProtPolTable.  Deleting a row
in tmnxCpmProtPolTable deletes all the rows in this table with
matching tmnxCpmProtPolicyId values.
tmnxCpmProtEthCfmPolEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.31.1
Each row specifies a set of Ethernet CFM packets to be rate limited,
and the associated rate limit.

Table rows are created and destroyed using
tmnxCpmProtEthCfmPolRowStatus.
Column Syntax OID
The value of tmnxCpmProtEthCfmPolEntryNum specifies a user-selected
entry number. This index exists to allow multiple
tmnxCpmProtEthCfmPolTable rows for one tmnxCpmProtPolicyId.
Unsigned32
Constraints:
range: 1-100
.1.3.6.1.4.1.6527.3.1.2.22.9.31.1.1
The value of tmnxCpmProtEthCfmPolRowStatus specifies the row status of
this tmnxCpmProtEthCfmPolEntry.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.9.31.1.2
The value of tmnxCpmProtEthCfmPolLastChanged indicates the value of
the sysUpTime object when the last change was made to this row. A
value of 0 indicates that no changes were made to this row since the
system was last…
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.31.1.3
The value of tmnxCpmProtEthCfmPolLevelSet specifies a set of MEG
(Maintenance Entity Group) Level values. At least one Level must be
specified (i.e. the empty set is not supported).

The rate limit specif…
Bitsr/w
Enumerated Values:
0level0
1level1
2level2
3level3
4level4
5level5
6level6
7level7
.1.3.6.1.4.1.6527.3.1.2.22.9.31.1.4
The value of tmnxCpmProtEthCfmPolOpCodeSet specifies a set of Eth-CFM
PDU Opcode values to be matched against the Opcode field of an Eth-CFM
PDU which is subject to rate limiting. At least one Opcode must be
specified …
Bitsr/w
Enumerated Values:
0opCode0
1opCode1
2opCode2
3opCode3
4opCode4
5opCode5
6opCode6
7opCode7
8opCode8
9opCode9
10opCode10
11opCode11
12opCode12
13opCode13
14opCode14
15opCode15
16opCode16
17opCode17
18opCode18
19opCode19
20opCode20
21opCode21
22opCode22
23opCode23
24opCode24
25opCode25
26opCode26
27opCode27
28opCode28
29opCode29
30opCode30
31opCode31
32opCode32
33opCode33
34opCode34
35opCode35
36opCode36
37opCode37
38opCode38
39opCode39
40opCode40
41opCode41
42opCode42
43opCode43
44opCode44
45opCode45
46opCode46
47opCode47
48opCode48
49opCode49
50opCode50
51opCode51
52opCode52
53opCode53
54opCode54
55opCode55
56opCode56
57opCode57
58opCode58
59opCode59
60opCode60
61opCode61
62opCode62
63opCode63
64opCode64
65opCode65
66opCode66
67opCode67
68opCode68
69opCode69
70opCode70
71opCode71
72opCode72
73opCode73
74opCode74
75opCode75
76opCode76
77opCode77
78opCode78
79opCode79
80opCode80
81opCode81
82opCode82
83opCode83
84opCode84
85opCode85
86opCode86
87opCode87
88opCode88
89opCode89
90opCode90
91opCode91
92opCode92
93opCode93
94opCode94
95opCode95
96opCode96
97opCode97
98opCode98
99opCode99
100opCode100
101opCode101
102opCode102
103opCode103
104opCode104
105opCode105
106opCode106
107opCode107
108opCode108
109opCode109
110opCode110
111opCode111
112opCode112
113opCode113
114opCode114
115opCode115
116opCode116
117opCode117
118opCode118
119opCode119
120opCode120
121opCode121
122opCode122
123opCode123
124opCode124
125opCode125
126opCode126
127opCode127
128opCode128
129opCode129
130opCode130
131opCode131
132opCode132
133opCode133
134opCode134
135opCode135
136opCode136
137opCode137
138opCode138
139opCode139
140opCode140
141opCode141
142opCode142
143opCode143
144opCode144
145opCode145
146opCode146
147opCode147
148opCode148
149opCode149
150opCode150
151opCode151
152opCode152
153opCode153
154opCode154
155opCode155
156opCode156
157opCode157
158opCode158
159opCode159
160opCode160
161opCode161
162opCode162
163opCode163
164opCode164
165opCode165
166opCode166
167opCode167
168opCode168
169opCode169
170opCode170
171opCode171
172opCode172
173opCode173
174opCode174
175opCode175
176opCode176
177opCode177
178opCode178
179opCode179
180opCode180
181opCode181
182opCode182
183opCode183
184opCode184
185opCode185
186opCode186
187opCode187
188opCode188
189opCode189
190opCode190
191opCode191
192opCode192
193opCode193
194opCode194
195opCode195
196opCode196
197opCode197
198opCode198
199opCode199
200opCode200
201opCode201
202opCode202
203opCode203
204opCode204
205opCode205
206opCode206
207opCode207
208opCode208
209opCode209
210opCode210
211opCode211
212opCode212
213opCode213
214opCode214
215opCode215
216opCode216
217opCode217
218opCode218
219opCode219
220opCode220
221opCode221
222opCode222
223opCode223
224opCode224
225opCode225
226opCode226
227opCode227
228opCode228
229opCode229
230opCode230
231opCode231
232opCode232
233opCode233
234opCode234
235opCode235
236opCode236
237opCode237
238opCode238
239opCode239
240opCode240
241opCode241
242opCode242
243opCode243
244opCode244
245opCode245
246opCode246
247opCode247
248opCode248
249opCode249
250opCode250
251opCode251
252opCode252
253opCode253
254opCode254
255opCode255
.1.3.6.1.4.1.6527.3.1.2.22.9.31.1.5
The value of tmnxCpmProtEthCfmPolRateLimit specifies the rate limit to
be enforced for the Eth-CFM packet stream specified by
tmnxCpmProtPolicyId, tmnxCpmProtEthCfmPolLevelSet, and
tmnxCpmProtEthCfmPolOpCodeSet.
packets per secondTmnxCpmPktPolRateLimitInclZeror/w
Type Constraints:
range: -1..65534
.1.3.6.1.4.1.6527.3.1.2.22.9.31.1.6
.1.3.6.1.4.1.6527.3.1.2.22.9.33 · 1 row entry · 3 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxCpmProtViolSdpBindTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxCpmProtViolSdpBindTable'
tmnxCpmProtViolSdpBindTable has a row for each SDP binding, where the
overall packet arrival rate limit was violated.
tmnxCpmProtViolSdpBindEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.33.1
Each row contains the statistics for an SDP binding where the overall
packet arrival rate limit was violated.

Rows are created or removed automatically by the system.
Column Syntax OID
The value of tmnxCpmProtViolSdpBindPeriods indicates the number of
times a rate limit violation was detected at this SDP binding.

The sampling interval length is indicated by the object
tmnxCpmProtDetectP…
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.9.33.1.1
The value of tmnxCpmProtViolSdpBindTimeStartd indicates the sysUpTime
at the time of the creation of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.33.1.2
The value of tmnxCpmProtViolSdpBindTime indicates the sysUpTime at the
time of the last update of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.33.1.3
.1.3.6.1.4.1.6527.3.1.2.22.9.35 · 1 row entry · 4 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxCpmProtExcdSdpBindTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxCpmProtExcdSdpBindTable'
tmnxCpmProtExcdSdpBindTable has a row for each SDP binding and source
MAC address pair that has exceeded its per-source rate limit. The
equivalent table for SAPs is tmnxCpmProtExcdTable.
tmnxCpmProtExcdSdpBindEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.35.1
Each row contains the statistics for a PDU stream that has exceeded
its per-source rate limit.

Rows are created or removed automatically by the system.
Column Syntax OID
The value of tmnxCpmProtExcdSdpBindMac specifies the MAC address of
the source.
SNMPv2-TCMacAddress
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.6527.3.1.2.22.9.35.1.1
The value of tmnxCpmProtExcdSdpBindPeriods indicates the number of
times a per-source rate limit violation was detected for this source.

The sampling interval length is indicated by the object
tmnxCpmProt…
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.9.35.1.2
The value of tmnxCpmProtExcdSdpBindTimeStartd indicates the sysUpTime
at the time of the creation of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.35.1.3
The value of tmnxCpmProtExcdSdpBindTime indicates the sysUpTime at the
time of the last update of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.35.1.4
.1.3.6.1.4.1.6527.3.1.2.22.9.37 · 1 row entry · 6 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxCpmProtExcdSdpBindEcmTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxCpmProtExcdSdpBindEcmTable'
tmnxCpmProtExcdSdpBindEcmTable has a row for each Ethernet
Connectivity Fault Management (Eth-CFM) PDU stream, served by an SDP
binding, that has exceeded its Eth-CFM rate limit.
tmnxCpmProtExcdSdpBindEcmEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.37.1
Each row contains the statistics for an Eth-CFM PDU stream that has
exceeded its Eth-CFM rate limit.

Rows are created or removed automatically by the system.
Column Syntax OID
The value of tmnxCpmProtExcdSdpBindEcmMac specifies a source MAC
address. The Eth-CFM PDU stream matching the MAC address (and
matching the other index values of this table) has exceeded its
Eth-CFM rate limit.
SNMPv2-TCMacAddress
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.6527.3.1.2.22.9.37.1.1
The value of tmnxCpmProtExcdSdpBindEcmLevel specifies an Eth-CFM domain
level. The Eth-CFM PDU stream matching the domain level (and matching
the other index values of this table) has exceeded its Eth-CFM rate
limit.
IEEE8021-CFM-MIBDot1agCfmMDLevel
Type Constraints:
range: 0..7
.1.3.6.1.4.1.6527.3.1.2.22.9.37.1.2
The value of tmnxCpmProtExcdSdpBindEcmOpCode specifies an Eth-CFM
opcode (e.g. Continuity Check Message == 1). The Eth-CFM PDU stream
matching the opcode (and matching the other index values of this table)
has exceeded…
TmnxCpmProtEthCfmOpCode
Type Constraints:
range: 0..255
.1.3.6.1.4.1.6527.3.1.2.22.9.37.1.3
The value of tmnxCpmProtExcdSdpBindEcmPeriods indicates the number of
times a rate limit violation was detected for this source.

The sampling interval length is indicated by the object
tmnxCpmProtDetectPe…
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.9.37.1.4
The value of tmnxCpmProtExcdSdpBindEcmStarted indicates the sysUpTime
at the time of the creation of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.37.1.5
The value of tmnxCpmProtExcdSdpBindEcmTime indicates the sysUpTime at
the time of the last update of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.37.1.6
.1.3.6.1.4.1.6527.3.1.2.22.9.39 · 1 row entry · 6 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxCpmProtExcdSapEcmTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxCpmProtExcdSapEcmTable'
tmnxCpmProtExcdSapEcmTable has a row for each Ethernet Connectivity
Fault Management (Eth-CFM) PDU stream, served by a SAP, that has
exceeded its Eth-CFM rate limit.
tmnxCpmProtExcdSapEcmEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.39.1
Each row contains the statistics for an Eth-CFM PDU stream that has
exceeded its Eth-CFM rate limit.

Rows are created or removed automatically by the system.
Column Syntax OID
The value of tmnxCpmProtExcdSapEcmMac specifies a source MAC
address. The Eth-CFM PDU stream matching the MAC address (and
matching the other index values of this table) has exceeded its
Eth-CFM rate limit.
SNMPv2-TCMacAddress
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.6527.3.1.2.22.9.39.1.1
The value of tmnxCpmProtExcdSapEcmLevel specifies an Eth-CFM domain
level. The Eth-CFM PDU stream matching the domain level (and matching
the other index values of this table) has exceeded its Eth-CFM rate
limit.
IEEE8021-CFM-MIBDot1agCfmMDLevel
Type Constraints:
range: 0..7
.1.3.6.1.4.1.6527.3.1.2.22.9.39.1.2
The value of tmnxCpmProtExcdSapEcmOpCode specifies an Eth-CFM opcode
(e.g. Continuity Check Message == 1). The Eth-CFM PDU stream matching
the opcode (and matching the other index values of this table) has
exceeded its…
TmnxCpmProtEthCfmOpCode
Type Constraints:
range: 0..255
.1.3.6.1.4.1.6527.3.1.2.22.9.39.1.3
The value of tmnxCpmProtExcdSapEcmPeriods indicates the number of
times a rate limit violation was detected for this source.

The sampling interval length is indicated by the object
tmnxCpmProtDetectPeriod.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.9.39.1.4
The value of tmnxCpmProtExcdSapEcmStarted indicates the sysUpTime at
the time of the creation of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.39.1.5
The value of tmnxCpmProtExcdSapEcmTime indicates the sysUpTime at the
time of the last update of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.39.1.6
.1.3.6.1.4.1.6527.3.1.2.22.9.44 · 1 row entry · 5 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxCpmProtExcdSapIpTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxCpmProtExcdSapIpTable'
tmnxCpmProtExcdSapIpTable has a row for each <service ID, SAP, source
IP address> triple that has exceeded the per-source rate limit
configured for the <service ID, SAP> pair.  IP layer per-source rate
limiting is enabled for a <service ID, SAP> pair by setting
TIMETRA-SAP-MIB::sapCpmProtMonitorIP to 'true'.
tmnxCpmProtExcdSapIpEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.44.1
Each row contains statistics for an IP packet stream that has exceeded
its per-source rate limit.

A row is created by the system the first time a <service ID, SAP,
source IP address> triple exceeds its per-…
Column Syntax OID
The value of tmnxCpmProtExcdSapIpAddrType indicates the address type of
tmnxCpmProtExcdSapIpAddr. 'ipv4(1)' is the only supported value.
INET-ADDRESS-MIBInetAddressType
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.6527.3.1.2.22.9.44.1.1
The value of tmnxCpmProtExcdSapIpAddr indicates the IP address of a
source which has exceeded its per-source rate limit.
OctetString
Constraints:
range: 4-4
range: 16-16
.1.3.6.1.4.1.6527.3.1.2.22.9.44.1.2
The value of tmnxCpmProtExcdSapIpPeriods indicates the number of times
a per-source rate limit violation was detected for this source.

The sampling interval length is indicated by the object
tmnxCpmProtDe…
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.9.44.1.3
The value of tmnxCpmProtExcdSapIpStarted indicates the sysUpTime at
the time of the creation of this row.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.44.1.4
The value of tmnxCpmProtExcdSapIpTime indicates the sysUpTime at the
time of the last update of this row.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.44.1.5
.1.3.6.1.4.1.6527.3.1.2.22.9.46 · 1 row entry · 4 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxDCpuProtPolicyTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxDCpuProtPolicyTable'
The tmnxDCpuProtPolicyTable has an entry for each Distributed CPU
Protection Policy configured in the system.
tmnxDCpuProtPolicyEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.46.1
Each row entry represents the configuration information related to a
Distributed CPU Protection Policy.
Column Syntax OID
The value of tmnxDCpuProtPolicyName specifies Distributed CPU
Protection Policy name.
TIMETRA-TC-MIBTNamedItem
Type Constraints:
range: 1..32
.1.3.6.1.4.1.6527.3.1.2.22.9.46.1.1
The tmnxDCpuProtPolicyRowStatus object is used to create and delete
rows in the tmnxDCpuProtPolicyTable.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.9.46.1.2
The tmnxDCpuProtPolicyLastMdfy object indicates the timestamp of the
last change to this row. A value of zero indicates that this row was
not modified since the system was last initialized.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.46.1.3
The value of tmnxDCpuProtPolicyDescr specifies the user provided
description of this Distributed CPU Protection Policy.
TIMETRA-TC-MIBTItemDescriptionr/w
Type Constraints:
range: 0..80
.1.3.6.1.4.1.6527.3.1.2.22.9.46.1.4
.1.3.6.1.4.1.6527.3.1.2.22.9.48 · 1 row entry · 14 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxDCpuProtStaticPlcrTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxDCpuProtStaticPlcrTable'
The tmnxDCpuProtStaticPlcrTable has an entry for static-policer
configured for each Distributed CPU Protection Policy identified by
tmnxDCpuProtPolicyName.
tmnxDCpuProtStaticPlcrEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.48.1
Each row entry represents the configuration information related to
static-policer for Distributed CPU Protection Policy.
Column Syntax OID
The value of tmnxDCpuProtStaticPlcrName specifies the static-policer
name for Distributed CPU Protection Policy.
TIMETRA-TC-MIBTNamedItem
Type Constraints:
range: 1..32
.1.3.6.1.4.1.6527.3.1.2.22.9.48.1.1
The tmnxDCpuProtStaticPlcrRowStatus object is used to create and
delete rows in the tmnxDCpuProtStaticPlcrTable.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.9.48.1.2
The tmnxDCpuProtStaticPlcrLastMdfy object indicates the timestamp of
the last change to this row. A value of zero indicates that this row
was not modified since the system was last initialized.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.48.1.3
The value of tmnxDCpuProtStaticPlcrDescr specifies the user provided
description for this static-policer.
TIMETRA-TC-MIBTItemDescriptionr/w
Type Constraints:
range: 0..80
.1.3.6.1.4.1.6527.3.1.2.22.9.48.1.4
The value of tmnxDCpuProtStaticPlcrPackets specifies the overall
packet arrival rate limit to be applied to all sources of packets.

A default value of -1, specifies an unrestricted packet arrival rate.
packets per intervalTIMETRA-TC-MIBTmnxDistCpuProtPacketPolicerRateLimitr/w
Type Constraints:
range: -1..8000
.1.3.6.1.4.1.6527.3.1.2.22.9.48.1.5
The value of tmnxDCpuProtStaticPlcrWithin specifies packets rate
limiting time base.
secondsUnsigned32r/w
Constraints:
range: 1-32767
.1.3.6.1.4.1.6527.3.1.2.22.9.48.1.6
The value of tmnxDCpuProtStaticPlcrInitDelay specifies the number of
packets allowed in an initial burst or burst after the policer bucket
has drained to zero.
packetsUnsigned32r/w
Constraints:
range: 0-255
.1.3.6.1.4.1.6527.3.1.2.22.9.48.1.7
The value of tmnxDCpuProtStaticPlcrKbps specifies the limiting rate.
When tmnxDCpuProtStaticPlcrKbps is used, bucket limit in the policer
is initialized to value specified by tmnxDCpuProtStaticPlcrMbs.
kilobpsTIMETRA-TC-MIBTmnxDistCpuProtRater/w
Type Constraints:
range: -1
range: 1..20000000
.1.3.6.1.4.1.6527.3.1.2.22.9.48.1.8
The value of tmnxDCpuProtStaticPlcrMbs specifies buffer space
assigned. When tmnxDCpuProtStaticPlcrKbps is used, bucket limit in the
policer is initialized to value specified by
tmnxDCpuProtStaticPlcrMbs.
bytesTIMETRA-TC-MIBTmnxDistCpuProtBurstSizer/w
Type Constraints:
range: -1..4194304
.1.3.6.1.4.1.6527.3.1.2.22.9.48.1.9
The value of tmnxDCpuProtStaticPlcrExdActn specifies the exceed-action
performed on the incoming packets. When the value of
tmnxDCpuProtStaticPlcrExdActn is set to discard, all packets that are
non-conformant are discar…
TIMETRA-TC-MIBTmnxDistCpuProtActionr/w
Type Values:
1discard
2low-priority
3none
.1.3.6.1.4.1.6527.3.1.2.22.9.48.1.10
The value of tmnxDCpuProtStaticPlcrExdHold specifies the hold-down
behavior.

When an enforcement policer has marked or discarded one or more
packets and tmnxDCpuProtStaticPlcrExdHold has been specified fo…
secondsTIMETRA-TC-MIBTmnxDistCpuProtActionDurationr/w
Type Constraints:
range: -1..10080
.1.3.6.1.4.1.6527.3.1.2.22.9.48.1.11
The value of tmnxDCpuProtStaticPlcrRateType specifies the rate type
applied for static-policer specified by tmnxDCpuProtStaticPlcrName.

When the value of tmnxDCpuProtStaticPlcrName is 'packets', the value…
TIMETRA-TC-MIBTmnxDistCpuProtRateTyper/w
Type Values:
1packets
2kbps
.1.3.6.1.4.1.6527.3.1.2.22.9.48.1.12
The value of tmnxDCpuProtStaticPlcrDectnTime specifies contiguous
conformant period, when a static-policer specified by
tmnxDCpuProtStaticPlcrName is declared in an 'exceed' state.
secondsUnsigned32r/w
Constraints:
range: 1-128000
.1.3.6.1.4.1.6527.3.1.2.22.9.48.1.13
The value of tmnxDCpuProtStaticPlcrLogEvent controls the creation of
log events related to static policer status and activity.
TIMETRA-TC-MIBTmnxDistCpuProtLogEventTyper/w
Type Values:
0none
1enable
2verbose
.1.3.6.1.4.1.6527.3.1.2.22.9.48.1.14
.1.3.6.1.4.1.6527.3.1.2.22.9.50 · 1 row entry · 12 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxDCpuProtLocMonPlcrTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxDCpuProtLocMonPlcrTable'
The tmnxDCpuProtLocMonPlcrTable has an entry for each Distributed CPU
Protection Policy configured in the system.
tmnxDCpuProtLocMonPlcrEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.50.1
Each row entry represents the configuration information related to
Local Monitoring Policer for Distributed CPU Protection Policy.
Column Syntax OID
The value of tmnxDCpuProtLocMonPlcrName specifies the local monitoring
policy name for Distributed CPU Protection Policy.
TIMETRA-TC-MIBTNamedItem
Type Constraints:
range: 1..32
.1.3.6.1.4.1.6527.3.1.2.22.9.50.1.1
The tmnxDCpuProtLocMonPlcrRowStatus object is used to create and
delete rows in the tmnxDCpuProtLocMonPlcrTable.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.9.50.1.2
The tmnxDCpuProtLocMonPlcrLastMdfy object indicates the timestamp of
the last change to this row. A value of zero indicates that this row
was not modified since the system was last initialized.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.50.1.3
The value of tmnxDCpuProtLocMonPlcrDescr specifies the user provided
description of this Distributed CPU Protection Policy.
TIMETRA-TC-MIBTItemDescriptionr/w
Type Constraints:
range: 0..80
.1.3.6.1.4.1.6527.3.1.2.22.9.50.1.4
The value of tmnxDCpuProtLocMonPlcrPackets specifies the overall
packet arrival rate limit to be applied to all sources of packets.

A default value of -1, specifies an unrestricted packet arrival rate.
packets per intervalTIMETRA-TC-MIBTmnxDistCpuProtPacketRateLimitr/w
Type Constraints:
range: -1..255
.1.3.6.1.4.1.6527.3.1.2.22.9.50.1.5
The value of tmnxDCpuProtLocMonPlcrWithin specifies packets rate
limiting time base.
secondsUnsigned32r/w
Constraints:
range: 1-32767
.1.3.6.1.4.1.6527.3.1.2.22.9.50.1.6
The value of tmnxDCpuProtLocMonPlcrInitDelay specifies the number of
packets allowed in an initial burst or burst after the policer bucket
has drained to zero.
packetsUnsigned32r/w
Constraints:
range: 0-255
.1.3.6.1.4.1.6527.3.1.2.22.9.50.1.7
The value of tmnxDCpuProtLocMonPlcrKbps specifies the limiting rate.
When tmnxDCpuProtLocMonPlcrKbps is used, bucket limit in the policer
is initialized to value specified by tmnxDCpuProtLocMonPlcrMbs.
kilobpsTIMETRA-TC-MIBTmnxDistCpuProtRater/w
Type Constraints:
range: -1
range: 1..20000000
.1.3.6.1.4.1.6527.3.1.2.22.9.50.1.8
The value of tmnxDCpuProtLocMonPlcrMbs specifies buffer space
assigned. When tmnxDCpuProtLocMonPlcrKbps is used, bucket limit in the
policer is initialized to value specified by
tmnxDCpuProtLocMonPlcrMbs.
bytesTIMETRA-TC-MIBTmnxDistCpuProtBurstSizer/w
Type Constraints:
range: -1..4194304
.1.3.6.1.4.1.6527.3.1.2.22.9.50.1.9
The value of tmnxDCpuProtLocMonPlcrExcdActn specifies the
exceed-action performed on the incoming packets. When the value of
tmnxDCpuProtLocMonPlcrExcdActn is set to discard, all packets that are
non-conformant are disc…
TIMETRA-TC-MIBTmnxDistCpuProtActionr/w
Type Values:
1discard
2low-priority
3none
.1.3.6.1.4.1.6527.3.1.2.22.9.50.1.10
The value of tmnxDCpuProtLocMonPlcrRateType specifies the rate type
applied for local-monitoring-policer specified by
tmnxDCpuProtLocMonPlcrName.

When the value of tmnxDCpuProtLocMonPlcrRateType is 'packe…
TIMETRA-TC-MIBTmnxDistCpuProtRateTyper/w
Type Values:
1packets
2kbps
.1.3.6.1.4.1.6527.3.1.2.22.9.50.1.11
The value of tmnxDCpuProtLocMonPlcrLogEvent controls the creation of
log events related to local-monitoring policer status and activity.
TIMETRA-TC-MIBTmnxDistCpuProtLogEventTyper/w
Type Values:
0none
1enable
2verbose
.1.3.6.1.4.1.6527.3.1.2.22.9.50.1.12
.1.3.6.1.4.1.6527.3.1.2.22.9.52 · 1 row entry · 15 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxDCpuProtProtocolTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxDCpuProtProtocolTable'
The tmnxDCpuProtProtocolTable has an entry for each Distributed CPU
Protection Policy configured in the system.
tmnxDCpuProtProtocolEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.52.1
Each row entry represents the configuration information related to
type of Protocol Policer monitored by Distributed CPU Protection
Policy.
Column Syntax OID
The value of tmnxDCpuProtProtocol specifies the
protocol name to be monitored by Distributed CPU Protection Policy.
TIMETRA-TC-MIBTmnxDistCpuProtProtocolId
Type Values:
1arp
2dhcp
3http-redirect
4icmp
5igmp
6mld
7ndis
8pppoe-pppoa
9all-unspecified
10mpls-ttl
11bfd-cpm
12bgp
13eth-cfm
14isis
15ldp
16ospf
17pim
18rsvp
19icmp-ping-check
.1.3.6.1.4.1.6527.3.1.2.22.9.52.1.1
The tmnxDCpuProtProtocolRowStatus object is used to create and delete
rows in the tmnxDCpuProtProtocolTable.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.9.52.1.2
The tmnxDCpuProtProtocolLastMdfy object indicates the timestamp of the
last change to this row. A value of zero indicates that this row was
not modified since the system was last initialized.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.52.1.3
The value of tmnxDCpuProtProtocolEnforce specifies the type of
enforcement policer used.
TIMETRA-TC-MIBTmnxDistCpuProtEnforceTyper/w
Type Values:
1static
2dynamic
.1.3.6.1.4.1.6527.3.1.2.22.9.52.1.4
The value of tmnxDCpuProtProtocolEnfrcePolNme specifies the
enforcement policer name.
TIMETRA-TC-MIBTNamedItemr/w
Type Constraints:
range: 1..32
.1.3.6.1.4.1.6527.3.1.2.22.9.52.1.5
The value of tmnxDCpuProtProtocolDynPackets specifies the overall
packet arrival rate limit to be applied to all sources of packets.

A default value of -1, specifies an unrestricted packet arrival rate.
packets per intervalTIMETRA-TC-MIBTmnxDistCpuProtPacketRateLimitr/w
Type Constraints:
range: -1..255
.1.3.6.1.4.1.6527.3.1.2.22.9.52.1.6
The value of tmnxDCpuProtProtocolDynWithin specifies packets rate
limiting time base.
secondsUnsigned32r/w
Constraints:
range: 1-32767
.1.3.6.1.4.1.6527.3.1.2.22.9.52.1.7
The value of tmnxDCpuProtProtocolDynInitDly specifies the number of
packets allowed in an initial burst or burst after the policer bucket
has drained to zero.
packetsUnsigned32r/w
Constraints:
range: 0-255
.1.3.6.1.4.1.6527.3.1.2.22.9.52.1.8
The value of tmnxDCpuProtProtocolDynKbps specifies the limiting rate.
When tmnxDCpuProtProtocolDynKbps is used, bucket limit in the policer
is initialized to value specified by tmnxDCpuProtProtocolDynMbs.
kilobpsTIMETRA-TC-MIBTmnxDistCpuProtRater/w
Type Constraints:
range: -1
range: 1..20000000
.1.3.6.1.4.1.6527.3.1.2.22.9.52.1.9
The value of tmnxDCpuProtProtocolDynMbs specifies buffer space
assigned. When tmnxDCpuProtProtocolDynKbps is used, bucket limit in
the policer is initialized to value specified by
tmnxDCpuProtProtocolDynMbs.
bytesTIMETRA-TC-MIBTmnxDistCpuProtBurstSizer/w
Type Constraints:
range: -1..4194304
.1.3.6.1.4.1.6527.3.1.2.22.9.52.1.10
The value of tmnxDCpuProtProtocolDynDectnTime specifies contiguous
conformant period of min-enforce-time when dynamic enforcing policer
is instantiated.
secondsUnsigned32r/w
Constraints:
range: 1-128000
.1.3.6.1.4.1.6527.3.1.2.22.9.52.1.11
The value of tmnxDCpuProtProtocolDynExdActn specifies the action
performed on the incoming packets. When the value of
tmnxDCpuProtProtocolDynExdActn is set to discard, all packets that are
non-conformant are discarded a…
TIMETRA-TC-MIBTmnxDistCpuProtActionr/w
Type Values:
1discard
2low-priority
3none
.1.3.6.1.4.1.6527.3.1.2.22.9.52.1.12
The value of tmnxDCpuProtProtocolDynExdHold specifies the hold-down
behavior.

When an enforcement policer has marked or discarded one or more
packets and tmnxDCpuProtProtocolDynExdHold has been specified …
secondsTIMETRA-TC-MIBTmnxDistCpuProtActionDurationr/w
Type Constraints:
range: -1..10080
.1.3.6.1.4.1.6527.3.1.2.22.9.52.1.13
The value of tmnxDCpuProtProtocolDynRateType specifies the rate type
applied for the protocol specified by tmnxDCpuProtProtocol.

When the value of tmnxDCpuProtProtocolDynRateType is 'packets', the
values …
TIMETRA-TC-MIBTmnxDistCpuProtRateTyper/w
Type Values:
1packets
2kbps
.1.3.6.1.4.1.6527.3.1.2.22.9.52.1.14
The value of tmnxDCpuProtProtocolDynLogEvent controls the creation of
log events related to dynamic enforcement policer status and activity.
TIMETRA-TC-MIBTmnxDistCpuProtLogEventTyper/w
Type Values:
0none
1enable
2verbose
.1.3.6.1.4.1.6527.3.1.2.22.9.52.1.15
.1.3.6.1.4.1.6527.3.1.2.22.9.61 · 1 row entry · 3 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tCpmProtOutProfViolIfTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tCpmProtOutProfViolIfTable'
The tCpmProtOutProfViolIfTable has an entry for each router interface
where the cpu protection policy's out-of-profile rate limit was
violated.
          
This object is not supported on SR-1 and ESS-1, where the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '5', and 7710, where the value
of TIMETRA-CHASSIS-MIB::tmnxChassisType is '7' or '9'.
tCpmProtOutProfViolIfEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.61.1
Each row entry represents the information related to a router
interface where the cpu protection policy's out-of-profile rate limit
was violated.

Rows are created or removed automatically by the system.
Column Syntax OID
The value of tCpmProtOutProfViolIfPeriods indicates the number of
times the out-of-profile rate limit violation was detected at this
router interface.

The out-of-profile rate limit is indicated by the obj…
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.9.61.1.1
The value of tCpmProtOutProfViolIfTimeStart indicates the sysUpTime at
the time of the creation of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.61.1.2
The value of tCpmProtOutProfViolIfTime indicates the sysUpTime at the
time of the last modification of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.61.1.3
.1.3.6.1.4.1.6527.3.1.2.22.9.62 · 1 row entry · 3 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tCpmProtOutProfViolSapTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tCpmProtOutProfViolSapTable'
The tCpmProtOutProfViolSapTable has an entry for each SAP where the
cpu protection policy's out-of-profile rate limit was violated.
          
This object is not supported on SR-1 and ESS-1, where the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '5', and 7710, where the value
of TIMETRA-CHASSIS-MIB::tmnxChassisType is '7' or '9'.
tCpmProtOutProfViolSapEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.62.1
Each row entry represents the information related to a SAP where the
cpu protection policy's out-of-profile rate limit was violated.

Rows are created or removed automatically by the system.
Column Syntax OID
The value of tCpmProtOutProfViolSapPeriods indicates the number of
times the out-of-profile rate limit violation was detected at this
SAP.

The out-of-profile rate limit is indicated by the object
tmnxCpmP…
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.9.62.1.1
The value of tCpmProtOutProfViolSapTimeStart indicates the sysUpTime
at the time of the creation of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.62.1.2
The value of tCpmProtOutProfViolSapTime indicates the sysUpTime at the
time of the last update of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.62.1.3
.1.3.6.1.4.1.6527.3.1.2.22.9.63 · 1 row entry · 3 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tCpmProtOutProfViolSdpBindTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tCpmProtOutProfViolSdpBindTable'
The tCpmProtOutProfViolSdpBindTable has an entry for each SDP binding
where the cpu protection policy's out-of-profile rate limit was
violated.
          
This object is not supported on SR-1 and ESS-1, where the value of
TIMETRA-CHASSIS-MIB::tmnxChassisType is '5', and 7710, where the value
of TIMETRA-CHASSIS-MIB::tmnxChassisType is '7' or '9'.
tCpmProtOutProfViolSdpBindEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.63.1
Each row entry represents the information related to a SDP binding
where the cpu protection policy's out-of-profile rate limit was
violated.

Rows are created or removed automatically by the system.
Column Syntax OID
The value of tCpmProtOutProfViolSdpBindPeriod indicates the number of
times the out-of-profile rate limit violation was detected at this SDP
binding.

The out-of-profile rate limit is indicated by the obje…
SNMPv2-SMIGauge32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.9.63.1.1
The value of tCpmProtOutProfViolSdpBindTmeStr indicates the sysUpTime
at the time of the creation of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.63.1.2
The value of tCpmProtOutProfViolSdpBindTime indicates the sysUpTime at
the time of the last update of this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.63.1.3
.1.3.6.1.4.1.6527.3.1.2.22.9.64 · 1 row entry · 5 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxCpmProtExcdSdpBindIpTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxCpmProtExcdSdpBindIpTable'
The tmnxCpmProtExcdSdpBindIpTable has a row for each service-id, sdp
and source IP address that has exceeded the per-source rate limit
configured for the <service-id, sdp> pair.  IP layer per-source rate
limiting is enabled for a <service-id, sdp> pair by setting
TIMETRA-SDP-MIB::sdpBindCpmProtMonitorIP to 'true'.
tmnxCpmProtExcdSdpBindIpEntry row .1.3.6.1.4.1.6527.3.1.2.22.9.64.1
Each row contains statistics for an IP packet stream that has exceeded
its per-source rate limit.

A row is created by the system the first time a service-id, sdp and
source IP address exceeds its per-source…
Column Syntax OID
The value of tmnxCpmProtExcdSdpBindIpAddrType indicates the address
type of tmnxCpmProtExcdSdpBindIpAddr. 'ipv4(1)' is the only supported
value.
INET-ADDRESS-MIBInetAddressType
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.6527.3.1.2.22.9.64.1.1
The value of tmnxCpmProtExcdSdpBindIpAddr indicates the IP address of
a source which has exceeded its per-source rate limit.
OctetString
Constraints:
range: 4-4
range: 16-16
.1.3.6.1.4.1.6527.3.1.2.22.9.64.1.2
The value of tmnxCpmProtExcdSdpBindIpPeriods indicates the number of
times a per-source rate limit violation was detected for this source.

The sampling interval length is indicated by the object
tmnxCpmPr…
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.9.64.1.3
The value of tmnxCpmProtExcdSdpBindIpStarted indicates the sysUpTime
at the time of the creation of this row.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.64.1.4
The value of tmnxCpmProtExcdSdpBindIpTime indicates the sysUpTime at
the time of the last update of this row.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.9.64.1.5
.1.3.6.1.4.1.6527.3.1.2.22.12 · 1 row entry · 6 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxSourceIPTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxSourceIPTable'
The tmnxSourceIPEntry has an entry for the source IP to be used by the
specified protocol.
tmnxSourceIPEntry row .1.3.6.1.4.1.6527.3.1.2.22.12.1
tmnxSourceIPEntry is an entry (conceptual row) in the
tmnxSourceIPTable. Each entry represents the source IP address to be
used by the specified application for a particular Virtual Router
instance.

Entries…
Column Syntax OID
The value of tmnxSourceIPProtoApp specifies the application which
should use the source IP address specified by the value of
tmnxSourceIPAddress.

tmnxSourceIPAddressType must be 'ipv6 (2)' when setting th…
Enumeration
Enumerated Values:
1telnet
2ftp
3ssh
4radius
5tacplus
6snmpTrap
7syslog
8icmpPing
9traceRoute
10dns
11sntp
12ntp
13cflowd
14telnet6
15ftp6
16radius6
17tacplus6
18snmpTrap6
19syslog6
20icmpPing6
21traceRoute6
22dns6
23ptp
24mcreporter
25cflowd6
26ntp6
27sFlow
28sFlow6
29icmpError
30icmpError6
31ldap
32ldap6
33reserved33
.1.3.6.1.4.1.6527.3.1.2.22.12.1.2
The value of tmnxSourceIPRowStatus is used to create or destroy
entries in this table.

A row entry for a particular vRtrID with tmnxSourceIPProtoApp set to
any value can be created only if the value of tm…
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.12.1.3
The value of tmnxSourceIPAddressType specifies the address type of
tmnxSourceIPAddress address.

The value of tmnxSourceIPAddressType can be either of InetAddressType
- 'ipv4' or InetAddressType - 'ipv6'.
INET-ADDRESS-MIBInetAddressTyper/w
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.6527.3.1.2.22.12.1.4
The value of tmnxSourceIPAddress specifies the source address that
should be used in all unsolicited packets sent by the application
specified by the value of tmnxSourceIPProtoApp. For the value
specified by tmnxSourceI…
OctetStringr/w
Constraints:
range: 0-0
range: 4-4
range: 16-16
.1.3.6.1.4.1.6527.3.1.2.22.12.1.5
tmnxSourceIPIfIndex specifies the interface index whose IP address
should be used in all unsolicited packets sent by the application
specified by the value of tmnxSourceIPProtoApp. For the value
specified by tmnxSourceI…
IF-MIBInterfaceIndexOrZeror/w
Type Constraints:
range: 0..2147483647
Description:
This textual convention is an extension of the
InterfaceIndex convention. The latter defines a greater
than zero value used to identify an interface or interface
sub-layer in the managed system. This extension permits…
.1.3.6.1.4.1.6527.3.1.2.22.12.1.6
The value of tmnxSourceIPOperStatus indicates the state of
tmnxSourceIPEntry. A value of 'up' indicates that the IP address
specified by tmnxSourceIPAddress will be used for all unsolicited
packets sent by the applicati…
Enumeration
Enumerated Values:
1up
2down
.1.3.6.1.4.1.6527.3.1.2.22.12.1.7
.1.3.6.1.4.1.6527.3.1.2.22.13 · 1 row entry · 6 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxUserTemplateTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxUserTemplateTable'
tmnxUserTemplateTable contains configuration information for the
template of a system user.
tmnxUserTemplateEntry row .1.3.6.1.4.1.6527.3.1.2.22.13.1
tmnxUserTemplateEntry is an entry (conceptual row) in the
tmnxUserTemplateTable. Each entry represents the configuration for the
template of a system user. Entries in this table cannot be created or
deleted.
Column Syntax OID
The value of tmnxTemplateName specifies the name of the template from
which a system user can be derived. This name must be unique amongst
the table entries.
TIMETRA-TC-MIBTNamedItem
Type Constraints:
range: 1..32
.1.3.6.1.4.1.6527.3.1.2.22.13.1.1
The value of tmnxTemplateAccess specifies the type of access
permitted to the user derived from this template. To allow this user
access to the console or FTP, set the corresponding bit in
tmnxTemplateAccess. Reset the…
Bitsr/w
Enumerated Values:
0console
1ftp
2grpc
3li
4netconf
.1.3.6.1.4.1.6527.3.1.2.22.13.1.2
The value of tmnxTemplateHomeDirectory specifies the local home
directory on FTP and console access of the user derived from this
template.
OctetStringr/w
Constraints:
range: 0-200
.1.3.6.1.4.1.6527.3.1.2.22.13.1.3
When the value of tmnxTemplateRestrictedToHome is 'true', the user
derived from this template is not allowed to navigate to directories
above his home directory for file access.

When the value of tmnxTemp…
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.13.1.4
The value of tmnxTemplateConsoleLoginExecFile specifies the file that
should be executed whenever the user derived from this template has
successfully logged in to a console session.
OctetStringr/w
Constraints:
range: 0-200
.1.3.6.1.4.1.6527.3.1.2.22.13.1.5
The value of tmnxTemplateProfile specifies the user profile entry from
the tmnxUserProfileTable that will be applied to the user derived from
this template.

For users authenticated by TACACS+, the profile…
TIMETRA-TC-MIBTNamedItemr/w
Type Constraints:
range: 1..32
.1.3.6.1.4.1.6527.3.1.2.22.13.1.6
.1.3.6.1.4.1.6527.3.1.2.22.14 · 1 row entry · 8 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxKeyChainTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxKeyChainTable'
The tmnxKeyChainEntry has an entry for a particular configured
keychain used by the protocol session.
tmnxKeyChainEntry row .1.3.6.1.4.1.6527.3.1.2.22.14.1
tmnxKeyChainEntry is an entry (conceptual row) in the
tmnxKeyChainTable. Each entry represents the keychain configuration
which will be applied to a protocol session.

Entries in this table can be created an…
Column Syntax OID
The value of tmnxKeyChainName specifies a unique keychain name which
identifies this particular keychain entry.
TIMETRA-TC-MIBTNamedItem
Type Constraints:
range: 1..32
.1.3.6.1.4.1.6527.3.1.2.22.14.1.1
The value of tmnxKeyChainRowStatus is used to create or destroy
entries in this table.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.14.1.2
The value of tmnxKeyChainDescription specifies the description of the
key chain identified by the keychain name tmnxKeyChainName.
TIMETRA-TC-MIBTItemDescriptionr/w
Type Constraints:
range: 0..80
.1.3.6.1.4.1.6527.3.1.2.22.14.1.3
The value of tmnxKeyChainSendTcpOptionNum specifies the TCP option
value to use in the TCP header of packets being sent by the router to
another device.

The value of tmnxKeyChainSendTcpOptionNum is valid …
TmnxKeyChainTcpOptionNumr/w
Type Values:
1value253
2value254
3all
4tcp-ao
.1.3.6.1.4.1.6527.3.1.2.22.14.1.4
The value of tmnxKeyChainReceiveTcpOptionNum specifies the TCP option
value to check for in the TCP header of packets being received by the
router.

The value of tmnxKeyChainReceiveTcpOptionNum is valid on…
TmnxKeyChainTcpOptionNumr/w
Type Values:
1value253
2value254
3all
4tcp-ao
.1.3.6.1.4.1.6527.3.1.2.22.14.1.5
The value of tmnxKeyChainAdminState specifies the desired
administrative state of the keychain. If the value is 'outOfService'
the keychain capabilities are disabled but the keychain configuration
parameters are retaine…
TIMETRA-TC-MIBTmnxAdminStater/w
Type Values:
1noop
2inService
3outOfService
.1.3.6.1.4.1.6527.3.1.2.22.14.1.6
The value of tmnxKeyChainOperState indicates the operational state of
the keychain. A value of 'inService' indicates that the key chain can
be used to sign and/or authenticate protocol streams.
TIMETRA-TC-MIBTmnxOperState
Type Values:
1unknown
2inService
3outOfService
4transition
.1.3.6.1.4.1.6527.3.1.2.22.14.1.7
The value of tmnxKeyChainExpired specifies whether this keychain is
expired or not.
SNMPv2-TCTruthValue
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.14.1.8
.1.3.6.1.4.1.6527.3.1.2.22.15 · 1 row entry · 10 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxKeyChainKeyTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxKeyChainKeyTable'
The tmnxKeyChainKeyEntry has an entry for a particular configured key
that will be used in a particular keychain defined by
tmnxKeyChainEntry in tmnxKeyChainTable.
tmnxKeyChainKeyEntry row .1.3.6.1.4.1.6527.3.1.2.22.15.1
tmnxKeyChainKeyEntry is an entry (conceptual row) in the
tmnxKeyChainKeyTable. Each entry represents the key configuration
which will be applied to a keychain.

Entries in this table can be created and delet…
Column Syntax OID
The value of tmnxKeyChainKeyDirection is used to specify the
protocol-stream direction to encrypt.

A value of 'send' specifies that this key entry will be used to sign
protocol packets that are being sent…
TmnxKeyChainKeyDirection
Type Values:
1send
2receive
3send-receive
.1.3.6.1.4.1.6527.3.1.2.22.15.1.1
The value of tmnxKeyChainKeyID specifies a key id which is used along
with tmnxKeyChainName and tmnxKeyChainKeyDirection to uniquely
identify this particular key entry.

A value of 255 identifies this as a…
Unsigned32
Constraints:
range: 0-63
range: 255-255
.1.3.6.1.4.1.6527.3.1.2.22.15.1.2
The value of tmnxKeyChainKeyRowStatus is used to create or destroy
entries in this table.

tmnxKeyChainAuthenticationKey and tmnxKeyChainKeyAlgorithm must be set
in the same SNMP request PDU as tmnxKeyChai…
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.15.1.3
The value of tmnxKeyChainAuthenticationKey specifies the key that will
be used by the encryption algorithm specified by
tmnxKeyChainKeyAlgorithm. tmnxKeyChainAuthenticationKey is used to
sign and authenticate a protocol…
OctetStringr/w
Constraints:
range: 0-20
.1.3.6.1.4.1.6527.3.1.2.22.15.1.4
The value of tmnxKeyChainKeyAlgorithm specifies the algorithm that
will be used to sign and/or authenticate the protocol stream.

tmnxKeyChainAuthenticationKey and tmnxKeyChainKeyAlgorithm, which
indicates…
TmnxKeyChainKeyAlgorithmr/w
Type Values:
0nullKeyAlgo
1aes128Cmac96
2hmacSha196
3password
4message-digest
5hmacMd5
6hmacSha1
7hmacSha256
8aes128Gcm16
.1.3.6.1.4.1.6527.3.1.2.22.15.1.5
The value of tmnxKeyChainKeyBeginTime specifies the calendar date and
time after which the key specified by tmnxKeyChainAuthenticationKey
will be used to sign and/or authenticate the protocol stream.

If n…
SNMPv2-TCDateAndTimer/w
Type Constraints:
range: 8
range: 11
Description:
A date-time specification.

field octets contents range
----- ------ -------- -----
1 1-2 year* 0..65536
2 3 month …
.1.3.6.1.4.1.6527.3.1.2.22.15.1.6
The value of tmnxKeyChainKeyEndTime specifies the calendar date and
time after which the key specified by tmnxKeyChainAuthenticationKey is
no longer eligible to sign and/or authenticate the protocol stream.
SNMPv2-TCDateAndTimer/w
Type Constraints:
range: 8
range: 11
Description:
A date-time specification.

field octets contents range
----- ------ -------- -----
1 1-2 year* 0..65536
2 3 month …
.1.3.6.1.4.1.6527.3.1.2.22.15.1.7
The value of tmnxKeyChainKeyTolerance specifies the number of seconds
that a eligible receive key should overlap with the active send key.

tmnxKeyChainKeyTolerance is valid only when tmnxKeyChainKeyDirect…
secondsUnsigned32r/w
Constraints:
range: 0-4294967295
.1.3.6.1.4.1.6527.3.1.2.22.15.1.8
The value of tmnxKeyChainKeyAdminState specifies the desired
administrative state of the particular key in the keychain. When the
value is 'outOfService' the keychain capabilities are disabled but the
particular key's …
TIMETRA-TC-MIBTmnxAdminStater/w
Type Values:
1noop
2inService
3outOfService
.1.3.6.1.4.1.6527.3.1.2.22.15.1.9
The value of tmnxKeyChainKeyOption specifies the description of the
key chain identified by the keychain name tmnxKeyChainName.
TmnxKeyChainKeyOptionr/w
Type Values:
0none
1basic
2isis-enhanced
.1.3.6.1.4.1.6527.3.1.2.22.15.1.10
.1.3.6.1.4.1.6527.3.1.2.22.18.3 · 1 row entry · 27 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxPkiCAProfileTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxPkiCAProfileTable'
The tmnxPkiCAProfileTable is the Certificate-Authority profile table.
Entries are created and deleted by the user.
tmnxPkiCAProfileEntry row .1.3.6.1.4.1.6527.3.1.2.22.18.3.1
Information about a single Certificate-Authority profile.
Column Syntax OID
The tmnxPkiCAProfile specifies the name of the Certificate-Authority
profile.
TIMETRA-TC-MIBTNamedItem
Type Constraints:
range: 1..32
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.1
The tmnxPkiCAProfileRowStatus specifies row status for the
Certificate-Authority profile.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.2
The value of tmnxPkiCAProfileLastChanged is the timestamp of last
change to this row in tmnxPkiCAProfileTable.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.3
The value of tmnxPkiCAProfileDescr specifies the description of the
Certificate-Authority profile.
TIMETRA-TC-MIBTItemDescriptionr/w
Type Constraints:
range: 0..80
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.4
The value of tmnxPkiCAProfileCRLFile specifies the name of the
Certificate Revocation List (CRL) file.
OctetStringr/w
Constraints:
range: 0-180
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.5
The value of tmnxPkiCAProfileCertFile specifies the name of the
Certificate file.
OctetStringr/w
Constraints:
range: 0-180
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.6
The value of tmnxPkiCAProfileAdminState specifies the administrative
state of this Certificate-Authority profile.
TIMETRA-TC-MIBTmnxAdminStater/w
Type Values:
1noop
2inService
3outOfService
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.7
The value of tmnxPkiCAProfileOperState indicates the current
operational status of this Certificate-Authority profile.
TIMETRA-TC-MIBTmnxOperState
Type Values:
1unknown
2inService
3outOfService
4transition
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.8
The value of tmnxPkiCAProfileOperFlags indicates the reason that this
Certificate-Authority profile is not in service. I.e.,
tmnxPkiCAProfileOperState has the value 'outOfService':
adminDown - tmnxPkiC…
Bits
Enumerated Values:
0adminDown
1invalidCrl
2invalidCert
3invalidCmpv2SigningCert
4expiredCrl
5expiredCert
6expiredCmpv2SigningCert
7notYetValidCrl
8notYetValidCert
9notYetValidCmpv2SigningCert
10loadingCrl
11loadingCert
12loadingCmpv2SigningCert
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.9
The value of tmnxPkiCAProfOcspRespUrl specifies the URL of the OCSP
(Online Certificate Status Protocol) responder.
OctetStringr/w
Constraints:
range: 0-180
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.10
The value of tmnxPkiCAProfOcspSvcID specifies the IES or VPRN service
router instance in which to reach the OCSP (Online Certificate Status
Protocol) URL (tmnxPkiCAProfOcspUrl).

The value of tmnxPkiCAProf…
TIMETRA-TC-MIBTmnxServIdr/w
Type Constraints:
range: 0..2148278381
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.11
The value of tmnxPkiCAProfOcspVerifyCertFile specifies the location
and name of the certificate file which is used to verify the OCSP
(Online Certificate Status Protocol) response.
OctetStringr/w
Constraints:
range: 0-180
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.12
The value of tmnxPkiCAProfOcspVerifyCertCA specifies whether to use
certificate file configured in CA profile to verify the OCSP (Online
Certificate Status Protocol) response.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.13
The value of tmnxPkiCAProfOcspVerifyCertOvr specifies whether to allow
the system to use the certificate in the OCSP (Online Certificate
Status Protocol) response if present, instead of the certificate
configured by tmn…
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.14
The value of tmnxPkiCAProfCmpHttpTimeout specifies the timeout
interval Certificate Management Protocol version 2 (CMPv2) requests to
the CA server.
secondsUnsigned32r/w
Constraints:
range: 1-3600
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.15
The value of tmnxPkiCAProfCmpUrl specifies the URL of the CA server.
OctetStringr/w
Constraints:
range: 0-180
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.16
The value of tmnxPkiCAProfCmpSvcID specifies the IES or VPRN service
router instance in which to reach the CMP URL (tmnxPkiCAProfCmpUrl).

The value of tmnxPkiCAProfCmpSvcID must be zero when
tmnxPkiCAProf…
TIMETRA-TC-MIBTmnxServIdr/w
Type Constraints:
range: 0..2148278381
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.17
The value of tmnxPkiCAProfCmpRespSignCert specifies the location and
name of the certificate file which is used to verify the signature of
the response.
OctetStringr/w
Constraints:
range: 0-180
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.18
The value of tmnxPkiCAProfCmpAccUnprotErr specifies whether to accept
unprotected error messages in this profile for CMPv2.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.19
The value of tmnxPkiCAProfCmpAccUnprotPki specifies whether to accept
unprotected PKI configuration messages in this profile for CMPv2.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.20
The value of tmnxPkiCAProfCmpSameRecipNonce specifies whether to use
the same recipient nonce for poll requests.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.21
The value of tmnxPkiCAProfCmpAlSetSndrForIr specifies whether to
always set the sender field in CMPv2 header of all Initial
Registration (IR) messages with the subject name for this CA profile.
The subject name is avail…
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.22
The value of tmnxPkiCAProfCmpHttpVersion specifies the HTTP version
used in CMPv2 requests. The system by default uses HTTP version 1.1
unless explicitly specified.
Enumerationr/w
Enumerated Values:
1v10
2v11
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.23
The value of tmnxPkiCAProfRevokeChk specifies the method system uses
to verify the revocation status of certificates issued by the CA.
Enumerationr/w
Enumerated Values:
1crl
2crlOptional
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.24
The value of tmnxPkiCAProfCmpSvcName specifies the IES or VPRN service
name in which to reach the CMP URL (tmnxPkiCAProfCmpUrl).

The value of tmnxPkiCAProfCmpSvcName must be empty when
tmnxPkiCAProfCmpSvc…
TIMETRA-TC-MIBTLNamedItemOrEmptyr/w
Type Constraints:
range: 0..64
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.25
The value of tmnxPkiCAProfOcspSvcName specifies the IES or VPRN
service name in which to reach the OCSP (Online Certificate Status
Protocol) URL (tmnxPkiCAProfOcspUrl).

The value of tmnxPkiCAProfOcspSvcNa…
TIMETRA-TC-MIBTLNamedItemOrEmptyr/w
Type Constraints:
range: 0..64
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.26
The value of tmnxPkiCAProfOcspTransProf specifies the name of the file
transmission profile to be matched.

Transmission profiles are configured using tmnxSysFileTransProfTable.

Managers are…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.18.3.1.27
.1.3.6.1.4.1.6527.3.1.2.22.18.5 · 1 row entry · 4 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxPkiCAProfCmpKeyTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxPkiCAProfCmpKeyTable'
The tmnxPkiCAProfCmpKeyTable contains the CA's initial authentication
keys used for authentication in message exchanges with the CA server.
tmnxPkiCAProfCmpKeyEntry row .1.3.6.1.4.1.6527.3.1.2.22.18.5.1
Information about a single CA initial authentication key.
Column Syntax OID
The value of tmnxPkiCAProfCmpKeyRefnum specifies the reference number
for this CA initial authentication key.
OctetString
Constraints:
range: 1-64
.1.3.6.1.4.1.6527.3.1.2.22.18.5.1.1
The value of tmnxPkiCAProfCmpKeyRowStatus specifies row status for the
Certificate-Authority profile.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.18.5.1.2
The value of tmnxPkiCAProfCmpKeyLastChanged is the timestamp of last
change to this row in tmnxPkiCAProfCmpKeyTable.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.18.5.1.3
The value of tmnxPkiCAProfCmpKeySecret specifies the shared secret for
this CA initial authentication key.

This object will always return an empty string on a read.

The value of tmnxPkiCAPr…
OctetStringr/w
Constraints:
range: 0-64
.1.3.6.1.4.1.6527.3.1.2.22.18.5.1.4
.1.3.6.1.4.1.6527.3.1.2.22.18.13 · 1 row entry · 11 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxPkiCAProfAtCrlUpdTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxPkiCAProfAtCrlUpdTable'
The tmnxPkiCAProfAtCrlUpdTable contains objects used to configure
instances of automated Certificate Revocation List (CRL) updates.
tmnxPkiCAProfAtCrlUpdEntry row .1.3.6.1.4.1.6527.3.1.2.22.18.13.1
Each tmnxPkiCAProfAtCrlUpdEntry contains the configuration for one
automated Certificate Revocation List (CRL) update.

Rows in tmnxPkiCAProfAtCrlUpdTable can only be created and destroyed
via SNMP set opera…
Column Syntax OID
The value of tmnxPkiCAProfAtCrlUpdRowStatus specifies the status of
this row. It is used to create and delete row entries in
tmnxPkiCAProfAtCrlUpdTable.

In order to delete an entry, tmnxPkiCAProfAtCrlUpdA…
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.18.13.1.1
The value of tmnxPkiCAProfAtCrlUpdLastChgd indicates time, since
system startup, that the configuration of this row was created or
modified.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.18.13.1.2
The value of tmnxPkiCAProfAtCrlUpdAdminState specifies the
administrative state of this automated CRL update.

Automated CRL update and manual CRL update are mutually exclusive.

When the val…
TIMETRA-TC-MIBTmnxAdminStater/w
Type Values:
1noop
2inService
3outOfService
.1.3.6.1.4.1.6527.3.1.2.22.18.13.1.3
The value of tmnxPkiCAProfAtCrlUpdScheduleT specifies the type of time
scheduler to update the CRL.

The value of tmnxPkiCAProfAtCrlUpdScheduleT must be either of
'nextUpdateBased (1)' or 'periodic (2)':
Enumerationr/w
Enumerated Values:
1nextUpdateBased
2periodic
.1.3.6.1.4.1.6527.3.1.2.22.18.13.1.4
The value of tmnxPkiCAProfAtCrlUpdPrdcUpdIntv specifies the number of
seconds required between the start time points of two consecutive CRL
update operations.

The value of tmnxPkiCAProfAtCrlUpdPrdcUpdIntv…
secondsUnsigned32r/w
Constraints:
range: 3600-31622400
.1.3.6.1.4.1.6527.3.1.2.22.18.13.1.5
The value of tmnxPkiCAProfAtCrlUpdPreUpdTime specifies the number of
seconds prior to the 'nextUpdate' time of the current CRL that the
system shall download a new CRL.

The value of tmnxPkiCAProfAtCrlUpdP…
secondsUnsigned32r/w
Constraints:
range: 0-31622400
.1.3.6.1.4.1.6527.3.1.2.22.18.13.1.6
The value of tmnxPkiCAProfAtCrlUpdRetryIntv specifies the interval of
time that the system shall wait before attempting to download the CRL
file again, if none of the URLs works.

The value of tmnxPkiCAPro…
secondsUnsigned32r/w
Constraints:
range: 0-31622400
.1.3.6.1.4.1.6527.3.1.2.22.18.13.1.7
The value of tmnxPkiCAProfAtCrlUpdLstSucsEtId indicates the entry ID
of the last successful automated CRL update.

A value of zero is returned if the system never successfully updated a
CRL file since tmnx…
Unsigned32
Constraints:
range: 0-8
.1.3.6.1.4.1.6527.3.1.2.22.18.13.1.8
The value of tmnxPkiCAProfAtCrlUpdLstSucsTmSt indicates the time at
which the last successful automated CRL update was initiated. It is
measured in seconds from 1-Jan-1970 00:00:00 UTC.

A value of zero in…
SNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.18.13.1.9
The value of tmnxPkiCAProfAtCrlUpdLstSucsTmEd indicates the time at
which the last successful automated CRL update was finished. It is
measured in seconds from 1-Jan-1970 00:00:00 UTC.

A value of zero ind…
SNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.18.13.1.10
The value of tmnxPkiCAProfAtCrlUpdNxCrlUpdTm indicates the start time
of the next scheduled update. It is measured in seconds from
1-Jan-1970 00:00:00 UTC. The next scheduled update time depends on the
value of tmnxPkiC…
SNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.18.13.1.11
.1.3.6.1.4.1.6527.3.1.2.22.18.15 · 1 row entry · 5 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxPkiCAProfUrlTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxPkiCAProfUrlTable'
The tmnxPkiCAProfUrlTable contains objects used to configure instances
of URL information, which includes the URL location and the file
transmission profile to use. The URL location indicates where an
updated CRL can be downloaded from.
          
The maximum number of rows in tmnxPkiCAProfUrlTable is 8.
tmnxPkiCAProfUrlEntry row .1.3.6.1.4.1.6527.3.1.2.22.18.15.1
Each tmnxPkiCAProfUrlEntry contains the information for one URL.

Rows in tmnxPkiCAProfUrlTable are created and destroyed via SNMP set
operations to tmnxPkiCAProfUrlRowStatus. When the
tmnxPkiCAProfileEntry …
Column Syntax OID
The value of tmnxPkiCAProfUrlId uniquely specifies one URL configured
on this system.
Unsigned32
Constraints:
range: 1-8
.1.3.6.1.4.1.6527.3.1.2.22.18.15.1.1
The value of tmnxPkiCAProfUrlRowStatus specifies the status of this
row. It is used to create and delete row entries in
tmnxPkiCAProfUrlTable.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.18.15.1.2
The value of tmnxPkiCAProfUrlLastChanged indicates the time, since
system startup, that the configuration of this row was created or
modified.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.18.15.1.3
The value of tmnxPkiCAProfUrl specifies the URL, which specifies the
location, where an updated CRL can be downloaded from.

This object must be configured together with
tmnxPkiCAProfUrlFileTransProf.
TIMETRA-TC-MIBTmnxDisplayStringURLr/w
Type Constraints:
range: 0..180
.1.3.6.1.4.1.6527.3.1.2.22.18.15.1.4
The value of tmnxPkiCAProfUrlFileTransProf specifies the name of the
file transmission profile to be matched.

This object must be configured together with tmnxPkiCAProfUrl.

File transmissio…
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.18.15.1.5
.1.3.6.1.4.1.6527.3.1.2.22.18.16 · 1 row entry · 2 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxPkiCAProfManCrlUpdTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxPkiCAProfManCrlUpdTable'
The tmnxPkiCAProfManCrlUpdTable contains objects used to configure
instances of manual Certificate Revocation List (CRL) update
operation.
tmnxPkiCAProfManCrlUpdEntry row .1.3.6.1.4.1.6527.3.1.2.22.18.16.1
Each tmnxPkiCAProfManCrlUpdEntry contains the configuration for one
manual Certificate Revocation List (CRL) update operation.

Rows in tmnxPkiCAProfManCrlUpdTable are automatically created and
destroyed whe…
Indexes
No indexes recorded
Column Syntax OID
The value of tmnxPkiCAProfManCrlUpdAct specifies whether or not to
trigger the manual CRL update operation.

Manual CRL update and automated CRL update are mutually exclusive.

tmnxPkiCAProfM…
TIMETRA-TC-MIBTmnxActionTyper/w
Type Values:
1doAction
2notApplicable
.1.3.6.1.4.1.6527.3.1.2.22.18.16.1.1
The value of tmnxPkiCAProfManCrlUpdAbort specifies whether or not to
abort the manual CRL update operation.

Manual CRL download and automated CRL update, which is configured via
tmnxPkiCAProfAtCrlUpdTable…
TIMETRA-TC-MIBTmnxActionTyper/w
Type Values:
1doAction
2notApplicable
.1.3.6.1.4.1.6527.3.1.2.22.18.16.1.2
.1.3.6.1.4.1.6527.3.1.2.22.18.17 · 1 row entry · 7 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxPkiCAProfCrlUpdTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxPkiCAProfCrlUpdTable'
The tmnxPkiCAProfCrlUpdTable contains the statistics information of
the automated and manual Certificate Revocation List (CRL) update
operations.
tmnxPkiCAProfCrlUpdEntry row .1.3.6.1.4.1.6527.3.1.2.22.18.17.1
Each tmnxPkiCAProfCrlUpdEntry contains the statistics information for
the automated and manual Certificate Revocation List (CRL) update
operation.

Rows in tmnxPkiCAProfManCrlUpdTable are automatically creat…
Indexes
No indexes recorded
Column Syntax OID
The value of tmnxPkiCAProfCrlCurUpdStatus indicates the CRL update
status of this row.

Values:
notUpdating (0)
The system is not updating the CRL file. This happens when
the foll…
Enumeration
Enumerated Values:
0notUpdating
1autoScheduled
2autoDownloading
3manualDownloading
4stopped
5autoVerifying
6manualVerifying
.1.3.6.1.4.1.6527.3.1.2.22.18.17.1.1
The value of tmnxPkiCAProfCrlCurUpdEtId indicates the entry ID which
is being used in the current update for a CRL file. A value of zero is
returned if the value of tmnxPkiCAProfCrlCurUpdStatus is 'notUpdating
(0)' or '…
Unsigned32
Constraints:
range: 0-8
.1.3.6.1.4.1.6527.3.1.2.22.18.17.1.2
The value of tmnxPkiCAProfCrlCurUpdStartTime indicates the time at
which the current automated CRL update was initiated. It is measured
in seconds from 1-Jan-1970 00:00:00 UTC.

A value of zero indicates t…
SNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.18.17.1.3
The value of tmnxPkiCAProfAtCrlUpdLstFailedId indicates the entry ID
of the last failed automated CRL update.

A value of zero is returned if the system has not failed to update any
CRL file since tmnxPkiC…
Unsigned32
Constraints:
range: 0-8
.1.3.6.1.4.1.6527.3.1.2.22.18.17.1.4
The value of tmnxPkiCAProfAtCrlUpdLstFailTmSt indicates the time at
which the last failed automated CRL update was initiated. It is
measured in seconds from 1-Jan-1970 00:00:00 UTC.

A value of zero indica…
SNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.18.17.1.5
The value of tmnxPkiCAProfAtCrlUpdLstFailTmEd indicates the time at
which the last failed automated CRL update was finished. It is
measured in seconds from 1-Jan-1970 00:00:00 UTC.

A value of zero indicat…
SNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.18.17.1.6
The value of tmnxPkiCAProfAtCrlUpdLstFailReas indicates the reason of
the recent failed automated CRL update.

noFailure (0) -- The system never fails to update the CRL file
downloadFailed (1)…
Enumeration
Enumerated Values:
0noFailure
1downloadFailed
2invalidCRL
.1.3.6.1.4.1.6527.3.1.2.22.18.17.1.7
.1.3.6.1.4.1.6527.3.1.2.22.18.22 · 1 row entry · 21 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxPkiCAProfActnTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxPkiCAProfActnTable'
The tmnxPkiCAProfActnTable allows actions on the Certificate-Authority
profiles.
tmnxPkiCAProfActnEntry row .1.3.6.1.4.1.6527.3.1.2.22.18.22.1
The tmnxPkiCAProfActnEntry allows action on a specific
Certificate-Authority profile.
Column Syntax OID
The tmnxPkiCAProfActnType specifies the action to be performed on the
CA profile.

The tmnxPkiCAProfActnType and tmnxPkiCAProfAction objects must be set
together for the specific action to be performed.
Enumerationr/w
Enumerated Values:
1initialRegistration
2certRequest
3keyUpdate
4poll
5clearRequest
6abortRequest
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.1
The value of tmnxPkiCAProfAction specifies to perform action specified
in the tmnxPkiCAProfActnType object.

The value of tmnxPkiCAProfAction will always be returned as
'notApplicable'.

The …
TIMETRA-TC-MIBTmnxActionTyper/w
Type Values:
1doAction
2notApplicable
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.2
The tmnxPkiCAProfActnKey specifies the key associated with requested
action on the CA profile.
OctetStringr/w
Constraints:
range: 0-95
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.3
The tmnxPkiCAProfActnProtAlgPass specifies the password of the
protection algorithm associated with requested action on the CA
profile.

The value of tmnxPkiCAProfActnProtAlgPass cannot be set to an empty
OctetStringr/w
Constraints:
range: 0-64
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.4
The tmnxPkiCAProfActnProtAlgRef specifies the reference number of the
protection algorithm associated with requested action on the CA
profile.

The value of tmnxPkiCAProfActnProtAlgRef cannot be set to an …
OctetStringr/w
Constraints:
range: 0-64
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.5
The tmnxPkiCAProfActnProtAlgSigCert specifies the signature
certificate file for the protection algorithm associated with
requested action on the CA profile.

The value of tmnxPkiCAProfActnProtAlgSigCert c…
OctetStringr/w
Constraints:
range: 0-95
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.6
The tmnxPkiCAProfActnProtAlgSigHash specifies the signature hash
algorithm for the protection algorithm associated with requested
action on the CA profile.

The value of tmnxPkiCAProfActnProtAlgSigHash can…
Enumerationr/w
Enumerated Values:
1null
2md5
3sha1
4sha256
5sha384
6sha512
7sha224
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.7
The tmnxPkiCAProfActnSubjectDn specifies the domain of the subject
associated with requested action on the CA profile.

The value of tmnxPkiCAProfActnSubjectDn cannot be set to an empty
string if tmnxPkiCA…
SNMPv2-TCDisplayStringr/w
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.8
The tmnxPkiCAProfActnSaveAsFile specifies the file name to which
resultant certificate is saved associated with the requested action on
the CA profile.

The value of tmnxPkiCAProfActnSaveAsFile cannot be s…
OctetStringr/w
Constraints:
range: 0-200
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.9
The tmnxPkiCAProfActnNewKey specifies the new key associated with
requested action on the CA profile.

The value of tmnxPkiCAProfActnNewKey cannot be set to an empty string
if tmnxPkiCAProfAction is set to…
OctetStringr/w
Constraints:
range: 0-95
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.10
The tmnxPkiCAProfActnStatus indicates the status of the last action on
the CA profile.
Enumeration
Enumerated Values:
0processed
1inProgress
2failed
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.11
The tmnxPkiCAProfActnStatusString indicates the detailed status of the
last action on the CA profile.
SNMPv2-TCDisplayString
Type Constraints:
range: 0..255
Description:
Represents textual information taken from the NVT ASCII

character set, as defined in pages 4, 10-11 of RFC 854.

To summarize RFC 854, the NVT ASCII repertoire specifies:

- the use of c…
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.12
The tmnxPkiCAProfActnStatusCode indicates the status of the last
action on the CA profile.
Enumeration
Enumerated Values:
0none
1accepted
2grantedWithMods
3rejection
4waiting
5revocationWarning
6revocationNotification
7keyUpdateWarning
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.13
The tmnxPkiCAProfActnOrigCmdTime indicates the time when original
command request was issued.
SNMPv2-TCDateAndTime
Type Constraints:
range: 8
range: 11
Description:
A date-time specification.

field octets contents range
----- ------ -------- -----
1 1-2 year* 0..65536
2 3 month …
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.14
The tmnxPkiCAProfActnLastCAResp indicates the last response from the
the CA server.
SNMPv2-TCDateAndTime
Type Constraints:
range: 8
range: 11
Description:
A date-time specification.

field octets contents range
----- ------ -------- -----
1 1-2 year* 0..65536
2 3 month …
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.15
The tmnxPkiCAProfActnSendChain specifies whether to send the chain in
the extra certificates.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.16
The tmnxPkiCAProfActnSendChainCA specifies the Certificate Authority
profile to pick the chain in case of multiple chains available.

System will calculate the chain, if the value of this object is set to
TIMETRA-TC-MIBTNamedItemOrEmptyr/w
Type Constraints:
range: 0..32
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.17
The tmnxPkiCAProfActnProtKey specifies the protection key associated
with requested action on the CA profile.
OctetStringr/w
Constraints:
range: 0-95
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.18
The tmnxPkiCAProfActnDomain specifies the comma separated domain names
associated with requested action on the CA profile.

The tmnxPkiCAProfActnDomain may be set non-default when
tmnxPkiCAProfAction is be…
OctetStringr/w
Constraints:
range: 0-512
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.19
The value of the object tmnxPkiCAProfActnInetAddrType specifies the
address type of the 'tmnxPkiCAProfActnInetAddr' object.
INET-ADDRESS-MIBInetAddressTyper/w
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.20
The value of the object tmnxPkiCAProfActnInetAddr specifies the IP
address as 'subjectAltName' in certificate template of CMPv2 initial
registration or certificate-request action.

The tmnxPkiCAProfActnIne…
OctetStringr/w
Constraints:
range: 0-0
range: 4-4
range: 16-16
.1.3.6.1.4.1.6527.3.1.2.22.18.22.1.21
.1.3.6.1.4.1.6527.3.1.2.22.18.24 · 1 row entry · 3 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxPkiCNListTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxPkiCNListTable'
The tmnxPkiCNListTable is the Common Name List table. It contains
lists of supported Common Names. Entries are created and deleted by
the user. Common name is domain name or IP address, which is present
in a certificate in field 'Common Name' (CN) or in the extension
'Subject Alternative Name' (SAN). Certificate is valid, if CN or one
of SANs corresponds to any item in the CN List.
tmnxPkiCNListEntry row .1.3.6.1.4.1.6527.3.1.2.22.18.24.1
The tmnxPkiCNListEntry is an entry (conceptual row) in the
tmnxPkiCNListTable. Each entry represents the configuration for an
ordered list of supported Common Names.
Column Syntax OID
The value of the object tmnxPkiCNListName specifies the name of an
ordered list of supported common names.
TIMETRA-TC-MIBTNamedItem
Type Constraints:
range: 1..32
.1.3.6.1.4.1.6527.3.1.2.22.18.24.1.1
The value of the object tmnxPkiCNListLastChanged indicates the
sysUpTime at the time of the most recent management-initiated change
to this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.18.24.1.2
The value of the object tmnxPkiCNListRowStatus indicates the status of
the conceptual row in tmnxPkiCNListTable. Only values 'createAndGo(4)'
and 'destroy(6)' are supported.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.18.24.1.3
.1.3.6.1.4.1.6527.3.1.2.22.18.26 · 1 row entry · 5 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxPkiCNListParamTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxPkiCNListParamTable'
The tmnxPkiCNListParamTable stores configuration and status
information related to Common Names which belong to ordered lists of
Common Names specified by entries in tmnxPkiCNListTable.
tmnxPkiCNListParamEntry row .1.3.6.1.4.1.6527.3.1.2.22.18.26.1
The tmnxPkiCNListParamEntry is an entry (conceptual row) in the
tmnxPkiCNListParamTable. Each entry contains information pertaining to
a Common Name which belongs to a list specified by tmnxPkiCNListName.
Column Syntax OID
The value of the object tmnxPkiCNListParamIndex specifies the order of
preference of a Common Name within the list specified by
tmnxPkiCNListName.
Unsigned32
Constraints:
range: 1-128
.1.3.6.1.4.1.6527.3.1.2.22.18.26.1.1
The value of tmnxPkiCNListParamLastChanged is the timestamp of last
change to this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.18.26.1.2
The value of the object tmnxPkiCNListParamRowStatus specifies the
status of the conceptual row in tmnxPkiCNListParamTable.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.18.26.1.3
The value of the object tmnxPkiCNListParamCNType specifies the type of
Common Name.
TmnxPkiCNTyper/w
Type Values:
1ip-address
2domain-name
.1.3.6.1.4.1.6527.3.1.2.22.18.26.1.4
The value of the object tmnxPkiCNListParamCNValue specifies value of
Common Name for which a certificate is issued.
TIMETRA-TC-MIBTRegularExpressionr/w .1.3.6.1.4.1.6527.3.1.2.22.18.26.1.5
.1.3.6.1.4.1.6527.3.1.2.22.20.1 · 1 row entry · 5 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxUserPublicKeyTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxUserPublicKeyTable'
The tmnxUserPublicKeyTable has entries for Secure Shell version 2
(SSHv2) RSA public keys configured for the system users.
tmnxUserPublicKeyEntry row .1.3.6.1.4.1.6527.3.1.2.22.20.1.1
Each row entry represents a Secure Shell version 2 (SSHv2) RSA public
key associated with the system user. Entries in this table can be
created and deleted via SNMP SET operations to
tmnxUserPublicKeyRowStatus.
Column Syntax OID
The value of tmnxUserPublicKeyNumber specifies the number of the
Secure Shell version 2 (SSHv2) RSA public key that is associated with
the system user.
Unsigned32
Constraints:
range: 1-32
.1.3.6.1.4.1.6527.3.1.2.22.20.1.1.1
The value of tmnxUserPublicKeyRowStatus specifies the row status of
this entry. It is used for creation and deletion of the Secure Shell
version 2 (SSHv2) RSA public key.

Only values 'active (1)', 'create…
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.20.1.1.2
The value of tmnxUserPublicKeyLastChanged indicates the timestamp of
the last change to this row in tmnxUserPublicKeyTable.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.20.1.1.3
The value of tmnxUserPublicKeyName specifies the value of the Secure
Shell version 2 (SSHv2) RSA public key associated with the system
user.
OctetStringr/w
Constraints:
range: 0-800
.1.3.6.1.4.1.6527.3.1.2.22.20.1.1.4
The value of tmnxUserPublicKeyDescription specifies the user-provided
string describing this RSA public key.
TIMETRA-TC-MIBTItemDescriptionr/w
Type Constraints:
range: 0..80
.1.3.6.1.4.1.6527.3.1.2.22.20.1.1.5
.1.3.6.1.4.1.6527.3.1.2.22.20.3 · 1 row entry · 5 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxUserPubEcdsaKeyTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxUserPubEcdsaKeyTable'
The tmnxUserPubEcdsaKeyTable has entries for Secure Shell version 2
(SSHv2) ECDSA public keys configured for the system users.
tmnxUserPubEcdsaKeyEntry row .1.3.6.1.4.1.6527.3.1.2.22.20.3.1
Each row entry represents a Secure Shell version 2 (SSHv2) ECDSA
public key associated with the system user. Entries in this table can
be created and deleted via SNMP SET operations to
tmnxUserPubEcdsaKeyRowStatus.
Column Syntax OID
The value of tmnxUserPubEcdsaKeyNumber specifies the number of the
Secure Shell version 2 (SSHv2) ECDSA public key that is associated
with the system user.
Unsigned32
Constraints:
range: 1-32
.1.3.6.1.4.1.6527.3.1.2.22.20.3.1.1
The value of tmnxUserPubEcdsaKeyRowStatus specifies the row status of
this entry. It is used for creation and deletion of the Secure Shell
version 2 (SSHv2) ECDSA public key.

Only values 'active (1)', 'cr…
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.20.3.1.2
The value of tmnxUserPubEcdsaKeyLastChanged indicates the timestamp of
the last change to this row in tmnxUserPubEcdsaKeyTable.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.20.3.1.3
The value of tmnxUserPubEcdsaKeyName specifies the value of the Secure
Shell version 2 (SSHv2) ECDSA public key associated with the system
user.
OctetStringr/w
Constraints:
range: 0-255
.1.3.6.1.4.1.6527.3.1.2.22.20.3.1.4
The value of tmnxUserPubEcdsaKeyDescription specifies the
user-provided string describing this ECDSA public key.
TIMETRA-TC-MIBTItemDescriptionr/w
Type Constraints:
range: 0..80
.1.3.6.1.4.1.6527.3.1.2.22.20.3.1.5
.1.3.6.1.4.1.6527.3.1.2.22.22 · 1 row entry · 3 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxTacPlusPrivLvlMapTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxTacPlusPrivLvlMapTable'
Table which maps privilege levels to user profiles.
          
This table is used during TACACS+ authorization to map priv-lvl to a
user profile when tmnxTacPlusAuthorUsePrivLvl is 'true(1)', and it is
also used during the TACACS+ enable request to map
tmnxTacPlusEnableAdminPrivLvl to a user profile.
tmnxTacPlusPrivLvlMapEntry row .1.3.6.1.4.1.6527.3.1.2.22.22.1
Information about a single user profile.
Column Syntax OID
The value of tmnxTacPlusPrivLvlMapPrivLvl specifies the privilege
level for this mapping.
Unsigned32
Constraints:
range: 0-15
.1.3.6.1.4.1.6527.3.1.2.22.22.1.1
The value of tmnxTacPlusPrivLvlRowStatus controls the creation and
deletion of rows in this table.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.22.1.2
The value of tmnxTacPlusPrivLvlMapUserProfile specifies the user
profile for this mapping.

This user profile refers to a profile configured in
tmnxUserProfileTable.
TIMETRA-TC-MIBTNamedItemr/w
Type Constraints:
range: 1..32
.1.3.6.1.4.1.6527.3.1.2.22.22.1.3
.1.3.6.1.4.1.6527.3.1.2.22.23 · 1 row entry · 5 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxOcspCacheTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxOcspCacheTable'
The tmnxOcspCacheTable maintains a cache of OCSP (Online Certificate
Status Protocol) requests.
tmnxOcspCacheEntry row .1.3.6.1.4.1.6527.3.1.2.22.23.1
The tmnxOcspCacheEntry maintains OCSP cache of an OCSP request.
Column Syntax OID
The value of tmnxOcspCacheEntryId indicates the local cache entry
identifier of the certificate that was validated by the OCSP
responder.
SNMPv2-SMIInteger32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.6527.3.1.2.22.23.1.1
The value of tmnxOcspCacheCertSerial indicates the the serial number
of the certificate associated with this OCSP (Online Certificate
Status Protocol) cache entry.
OctetString
Constraints:
range: 1-20
.1.3.6.1.4.1.6527.3.1.2.22.23.1.2
The value of tmnxOcspCacheCertIssuer indicates the issuer of the
certificate that was validated by the OCSP responder.
TIMETRA-TC-MIBTLDisplayString
Type Constraints:
range: 0..1022
.1.3.6.1.4.1.6527.3.1.2.22.23.1.3
The value of tmnxOcspCacheExpiry indicates the time at which this
cache entry will automatically be purged by the system.
secondsSNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.6527.3.1.2.22.23.1.4
The value of tmnxOcspCacheCertStatus indicates status of the
certificate associated with this OCSP (Online Certificate Status
Protocol) cache entry.
Enumeration
Enumerated Values:
0good
1revoked
.1.3.6.1.4.1.6527.3.1.2.22.23.1.5
.1.3.6.1.4.1.6527.3.1.2.22.25 · 1 row entry · 3 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxSSHCipherTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxSSHCipherTable'
This Table indicates the ciphers allowed for SSH protocol version 1
and SSH protocol version 2.
tmnxSSHCipherEntry row .1.3.6.1.4.1.6527.3.1.2.22.25.1
Information about a single cipher.
Column Syntax OID
The value of tmnxSSHCipherProtocolVersion indicates the SSH protocol
version.
Enumeration
Enumerated Values:
1version1
2version2
.1.3.6.1.4.1.6527.3.1.2.22.25.1.1
The value of tmnxSSHCipherNumber indicates the cipher.
TSSHCipherNumber
Type Values:
0none
2des
3threeDes
6blowfish
32threeDesCbc
33blowfishCbc
34cast128Cbc
35arcfour
36aes128Cbc
37aes192Cbc
38aes256Cbc
39rijndaelCbc
40aes128Ctr
41aes192Ctr
42aes256Ctr
.1.3.6.1.4.1.6527.3.1.2.22.25.1.2
The value of tmnxSSHCipherName indicates the name of the cipher.
OctetString
Constraints:
range: 0-32
.1.3.6.1.4.1.6527.3.1.2.22.25.1.3
.1.3.6.1.4.1.6527.3.1.2.22.26 · 1 row entry · 3 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxSSHServerCipherListTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxSSHServerCipherListTable'
Table to configure the ordered list of ciphers allowed for SSH
protocol version 1 and SSH protocol version 2 by the SSH server.
tmnxSSHServerCipherListEntry row .1.3.6.1.4.1.6527.3.1.2.22.26.1
Information about a single cipher in the cipher list.
Column Syntax OID
The value of tmnxSSHServerCipherListIndex specifies the position of
this cipher in the cipher list.
Integer32
Constraints:
range: 1-255
.1.3.6.1.4.1.6527.3.1.2.22.26.1.1
The value of tmnxSSHServerCipherListRowStatus specifies the row status
of this entry.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.26.1.2
The value of tmnxSSHServerCipherListNumber specifies the cipher.
TSSHCipherNumberr/w
Type Values:
0none
2des
3threeDes
6blowfish
32threeDesCbc
33blowfishCbc
34cast128Cbc
35arcfour
36aes128Cbc
37aes192Cbc
38aes256Cbc
39rijndaelCbc
40aes128Ctr
41aes192Ctr
42aes256Ctr
.1.3.6.1.4.1.6527.3.1.2.22.26.1.3
.1.3.6.1.4.1.6527.3.1.2.22.27 · 1 row entry · 3 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxSSHClientCipherListTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxSSHClientCipherListTable'
Table to configure the ordered list of ciphers allowed for SSH
protocol version 1 and SSH protocol version 2 by the SSH client.
tmnxSSHClientCipherListEntry row .1.3.6.1.4.1.6527.3.1.2.22.27.1
Information about a single cipher in the cipher list.
Column Syntax OID
The value of tmnxSSHClientCipherListIndex specifies the position of
this cipher in the cipher list.
Integer32
Constraints:
range: 1-255
.1.3.6.1.4.1.6527.3.1.2.22.27.1.1
The value of tmnxSSHClientCipherListRowStatus specifies the row status
of this entry.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.27.1.2
The value of tmnxSSHClientCipherListNumber specifies the cipher.
TSSHCipherNumberr/w
Type Values:
0none
2des
3threeDes
6blowfish
32threeDesCbc
33blowfishCbc
34cast128Cbc
35arcfour
36aes128Cbc
37aes192Cbc
38aes256Cbc
39rijndaelCbc
40aes128Ctr
41aes192Ctr
42aes256Ctr
.1.3.6.1.4.1.6527.3.1.2.22.27.1.3
.1.3.6.1.4.1.6527.3.1.2.22.29.2 · 1 row entry · 3 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxCliScriptAuthTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxCliScriptAuthTable'
The table tmnxCliScriptAuthTable contains the information pertaining
to authorization of cli script execution. User profile names are
associated with CLI command scripts started by Cron, Event Handling
System (EHS) or VSD.
tmnxCliScriptAuthEntry row .1.3.6.1.4.1.6527.3.1.2.22.29.2.1
Rows in table tmnxCliScriptAuthTable are created and destroyed by SNMP
set operations on the object tmnxCliScriptAuthRowStatus.
Column Syntax OID
The value of the index object tmnxCliScriptAuthUserType specifies the
type of module that will execute a CLI command script. The value 'none
(0)' cannot be used as a table index.
TIMETRA-TC-MIBTmnxScriptAuthType
Type Values:
0none
1cron
2xmpp
3event-script
4vsd
.1.3.6.1.4.1.6527.3.1.2.22.29.2.1.1
The value of the index object tmnxCliScriptAuthUserName specifies user
profile name to be used for command authorization when executing a CLI
command script started by the module specified by the value of
tmnxCliScriptA…
TIMETRA-TC-MIBTNamedItem
Type Constraints:
range: 1..32
.1.3.6.1.4.1.6527.3.1.2.22.29.2.1.2
The value of the object tmnxCliScriptAuthRowStatus
specifies the status of
the conceptual row in tmnxCliScriptAuthTable. Row is created and
destroyed by SNMP SET operations on this object. Only values
'createAndGo(4)' …
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.29.2.1.3
.1.3.6.1.4.1.6527.3.1.2.22.31 · 1 row entry · 7 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxCliSessionGroupTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxCliSessionGroupTable'
Table to store Cli Session Group parameters
tmnxCliSessionGroupEntry row .1.3.6.1.4.1.6527.3.1.2.22.31.1
tmnxCliSessionGroupEntry is an entry in tmnxCliSessionGroupTable.
Entries in this table can be created and deleted via SNMP SET
operations to tmnxCliSessionGroupRowStatus.
Column Syntax OID
The value of the object tmnxCliSessionGroupName specifies the name of
the Cli Session Group.
TIMETRA-TC-MIBTNamedItem
Type Constraints:
range: 1..32
.1.3.6.1.4.1.6527.3.1.2.22.31.1.1
The value of the object tmnxCliSessionGroupLastChanged indicates the
timestamp of the last change of this row in tmnxCliSessionGroupTable.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.31.1.2
The value of the object tmnxCliSessionGroupRowStatus specifies the
status of the conceptual row in tmnxCliSessionGroupTable.

Rows are created and destroyed by SNMP SET operations on this object.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.31.1.3
The value of the object tmnxCliSessionGroupDescription specifies the
user-provided description for given Cli Session Group.
TIMETRA-TC-MIBTItemDescriptionr/w
Type Constraints:
range: 0..80
.1.3.6.1.4.1.6527.3.1.2.22.31.1.4
The value of the object tmnxCliSessionGroupSshLimit specifies the
maximum limit of concurrent SSH sessions for given Cli Session Group.
TmnxSessionLimitr/w
Type Constraints:
range: -1..50
.1.3.6.1.4.1.6527.3.1.2.22.31.1.5
The value of the object tmnxCliSessionGroupTelnetLimit specifies the
maximum limit of concurrent TELNET sessions for given Cli Session
Group.
TmnxSessionLimitr/w
Type Constraints:
range: -1..50
.1.3.6.1.4.1.6527.3.1.2.22.31.1.6
The value of the object tmnxCliSessionGroupTotalLimit specifies the
combined maximum limit of concurrent TELNET and SSH sessions for given
Cli Session Group.
TmnxSessionLimitr/w
Type Constraints:
range: -1..50
.1.3.6.1.4.1.6527.3.1.2.22.31.1.7
.1.3.6.1.4.1.6527.3.1.2.22.32 · 1 row entry · 2 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxSSHMacTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxSSHMacTable'
This Table indicates the MAC algorithms allowed for SSH protocol
version 2.
tmnxSSHMacEntry row .1.3.6.1.4.1.6527.3.1.2.22.32.1
Information about a single MAC algorithm.
Column Syntax OID
The value of tmnxSSHMacNumber indicates the MAC algorithm.
TSSHMacNumber
Type Values:
1hmacSha512
2hmacSha256
3hmacSha1
4hmacSha196
5hmacMd5
6hmacRipemd160
7hmacRipemd160OpensshCom
8hmacMd596
.1.3.6.1.4.1.6527.3.1.2.22.32.1.1
The value of tmnxSSHMacName indicates the name of the MAC algorithm.
OctetString
Constraints:
range: 0-32
.1.3.6.1.4.1.6527.3.1.2.22.32.1.2
.1.3.6.1.4.1.6527.3.1.2.22.34 · 1 row entry · 4 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxSSHServerMacListTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxSSHServerMacListTable'
Table to configure the ordered list of MACs allowed for SSH protocol
version 2 by the SSH server.
tmnxSSHServerMacListEntry row .1.3.6.1.4.1.6527.3.1.2.22.34.1
Information about a single MAC algorithm in the MAC list.
Column Syntax OID
The value of the object tmnxSSHServerMacListIndex specifies the
position of this MAC in the MAC list.
Unsigned32
Constraints:
range: 1-255
.1.3.6.1.4.1.6527.3.1.2.22.34.1.1
The value of the object tmnxSSHServerMacListLastChanged is the
timestamp of last change to this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.34.1.2
The value of the object tmnxSSHServerMacListRowStatus specifies the
row status of this entry. Only values 'active(1)', 'createAndGo(4)'
and 'destroy(6)' are supported.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.34.1.3
The value of the object tmnxSSHServerMacListNumber specifies the MAC
algorithm.
TSSHMacNumberr/w
Type Values:
1hmacSha512
2hmacSha256
3hmacSha1
4hmacSha196
5hmacMd5
6hmacRipemd160
7hmacRipemd160OpensshCom
8hmacMd596
.1.3.6.1.4.1.6527.3.1.2.22.34.1.4
.1.3.6.1.4.1.6527.3.1.2.22.36 · 1 row entry · 4 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxSSHClientMacListTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxSSHClientMacListTable'
Table to configure the ordered list of MACs allowed for SSH protocol
version 2 by the SSH client.
tmnxSSHClientMacListEntry row .1.3.6.1.4.1.6527.3.1.2.22.36.1
Information about a single MAC algorithm in the MAC list.
Column Syntax OID
The value of the object tmnxSSHClientMacListIndex specifies the
position of this MAC in the MAC list.
Unsigned32
Constraints:
range: 1-255
.1.3.6.1.4.1.6527.3.1.2.22.36.1.1
The value of the object tmnxSSHClientMacListLastChanged is the
timestamp of last change to this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.36.1.2
The value of the object tmnxSSHClientMacListRowStatus specifies the
row status of this entry. Only values 'active(1)', 'createAndGo(4)'
and 'destroy(6)' are supported.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.36.1.3
The value of the object tmnxSSHClientMacListNumber specifies the MAC
algorithm.
TSSHMacNumberr/w
Type Values:
1hmacSha512
2hmacSha256
3hmacSha1
4hmacSha196
5hmacMd5
6hmacRipemd160
7hmacRipemd160OpensshCom
8hmacMd596
.1.3.6.1.4.1.6527.3.1.2.22.36.1.4
.1.3.6.1.4.1.6527.3.1.2.22.40 · 1 row entry · 2 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxSSHKexTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxSSHKexTable'
This Table indicates the KEX algorithms allowed for SSH protocol
version 2.
tmnxSSHKexEntry row .1.3.6.1.4.1.6527.3.1.2.22.40.1
Information about a single KEX algorithm.
Column Syntax OID
The value of tmnxSSHKexNumber indicates the KEX algorithm.
TSSHKexNumber
Type Values:
1diffieHellmanGroup1Sha1
2diffieHellmanGroup14Sha1
3diffieHellmanGroupExchangeSha1
4diffieHellmanGroup14Sha256
5diffieHellmanGroup16Sha512
.1.3.6.1.4.1.6527.3.1.2.22.40.1.1
The value of tmnxSSHKexName indicates the name of the KEX algorithm.
OctetString
Constraints:
range: 0-32
.1.3.6.1.4.1.6527.3.1.2.22.40.1.2
.1.3.6.1.4.1.6527.3.1.2.22.42 · 1 row entry · 4 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxSSHServerKexListTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxSSHServerKexListTable'
Table to configure the ordered list of KEXs allowed for SSH protocol
version 2 by the SSH server.
tmnxSSHServerKexListEntry row .1.3.6.1.4.1.6527.3.1.2.22.42.1
Information about a single KEX algorithm in the KEX list.
Column Syntax OID
The value of the object tmnxSSHServerKexListIndex specifies the
position of this KEX in the KEX list.
Unsigned32
Constraints:
range: 1-255
.1.3.6.1.4.1.6527.3.1.2.22.42.1.1
The value of the object tmnxSSHServerKexListLastChanged is the
timestamp of last change to this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.42.1.2
The value of the object tmnxSSHServerKexListRowStatus specifies the
row status of this entry. Only values 'active(1)', 'createAndGo(4)'
and 'destroy(6)' are supported.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.42.1.3
The value of the object tmnxSSHServerKexListNumber specifies the KEX
algorithm.
TSSHKexNumberr/w
Type Values:
1diffieHellmanGroup1Sha1
2diffieHellmanGroup14Sha1
3diffieHellmanGroupExchangeSha1
4diffieHellmanGroup14Sha256
5diffieHellmanGroup16Sha512
.1.3.6.1.4.1.6527.3.1.2.22.42.1.4
.1.3.6.1.4.1.6527.3.1.2.22.44 · 1 row entry · 4 columns
Uses the nokia variant from /opt/observium/mibs/nokia.
Command help
Walk tmnxSSHClientKexListTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'TIMETRA-SECURITY-MIB' -M '/opt/observium/mibs/nokia:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'TIMETRA-SECURITY-MIB::tmnxSSHClientKexListTable'
Table to configure the ordered list of KEXs allowed for SSH protocol
version 2 by the SSH client.
tmnxSSHClientKexListEntry row .1.3.6.1.4.1.6527.3.1.2.22.44.1
Information about a single KEX algorithm in the KEX list.
Column Syntax OID
The value of the object tmnxSSHClientKexListIndex specifies the
position of this KEX in the KEX list.
Unsigned32
Constraints:
range: 1-255
.1.3.6.1.4.1.6527.3.1.2.22.44.1.1
The value of the object tmnxSSHClientKexListLastChanged is the
timestamp of last change to this entry.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.3.6.1.4.1.6527.3.1.2.22.44.1.2
The value of the object tmnxSSHClientKexListRowStatus specifies the
row status of this entry. Only values 'active(1)', 'createAndGo(4)'
and 'destroy(6)' are supported.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.6527.3.1.2.22.44.1.3
The value of the object tmnxSSHClientKexListNumber specifies the KEX
algorithm.
TSSHKexNumberr/w
Type Values:
1diffieHellmanGroup1Sha1
2diffieHellmanGroup14Sha1
3diffieHellmanGroupExchangeSha1
4diffieHellmanGroup14Sha256
5diffieHellmanGroup16Sha512
.1.3.6.1.4.1.6527.3.1.2.22.44.1.4