jnxJsScreenMonSynAttk
JUNIPER-JS-SCREENING-MIB ·
.1.3.6.1.4.1.2636.3.39.1.8.1.1.1.1.3
Object
column SNMPv2-SMICounter64
The SYN (TCP connection request) attack is a common denial
of service (DoS) technique characterized by the following
pattern:
- Using a spoofed IP address not in use on the Internet,
an attacker sends multiple SYN packets to the target machine.
- For each SYN packet received, the target machine allocates
resources and sends an acknowledgement (SYN-ACK) to the source
IP address. This can cause the target machine to allocate
resources for more than 3 minutes to respond to just one i
SYN attack, hence wasting resources.
This attribute records the number of SYN attacks.
Context
- MIB
- JUNIPER-JS-SCREENING-MIB
- OID
.1.3.6.1.4.1.2636.3.39.1.8.1.1.1.1.3- Type
- column
- Access
- readonly
- Status
- current
- Parent
- jnxJsScreenMonEntry
Net-SNMP examples
How SNMP and these commands workWalk the column to discover its indexed instances, or supply every index to read one instance.
Walk the column
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'JUNIPER-JS-SCREENING-MIB' -M '/opt/observium/mibs/juniper:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'JUNIPER-JS-SCREENING-MIB::jnxJsScreenMonSynAttk'
More examples
Read one indexed instance
/usr/bin/snmpget -v2c -c '<community>' -Pud -Ir -OQUv -m 'JUNIPER-JS-SCREENING-MIB' -M '/opt/observium/mibs/juniper:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'JUNIPER-JS-SCREENING-MIB::jnxJsScreenMonSynAttk.<jnxJsScreenZoneName>'
Translate to a numeric OID
/usr/bin/snmptranslate -Pud -Ir -On -m 'JUNIPER-JS-SCREENING-MIB' -M '/opt/observium/mibs/juniper:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'JUNIPER-JS-SCREENING-MIB::jnxJsScreenMonSynAttk'
Syntax
- Source
- SNMPv2-SMICounter64
- Base type
Unsigned64
Values & Constraints
Type Constraints
range: 0..18446744073709551615