vmwNsxTGatewayFirewallTcpHalfOpenFlowCountExceeded
VMWARE-NSX-MIB ·
.1.3.6.1.4.1.6876.120.1.0.39.0.29
Object
notification
Gateway firewall flow table usage for TCP half-open traffic on logical
router vmwNsxTDataCenterEntityId has reached vmwNsxTDataCenterFirewallHalfopenFlowUsage% which is at or above the
high threshold value of vmwNsxTDataCenterSystemUsageThreshold%.
New flows will be dropped by Gateway firewall when usage reaches the maximum limit.
Action required:
Log in as the admin user on Edge node and invoke the NSX CLI command
`get firewall <LR_INT_UUID> interface stats | json` by using
right interface uuid and check flow table usage for TCP half-open flows.
Check traffic flows going through the gateway is not a DOS attack or anomalous burst. If the traffic appears to be within
the normal load but the alarm threshold is hit, consider increasing the alarm threshold or route new traffic to another Edge node.
Context
- MIB
- VMWARE-NSX-MIB
- OID
.1.3.6.1.4.1.6876.120.1.0.39.0.29- Type
- notification
- Status
- current
- Parent
- vmwNsxTGatewayFirewallFeature
- Groups
- 1
Net-SNMP examples
How SNMP and these commands workNotifications are emitted by an agent; they cannot be read with snmpget or walked.
Inspect the notification definition
/usr/bin/snmptranslate -Pud -Ir -Td -m 'VMWARE-NSX-MIB' -M '/opt/observium/mibs/vmware:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'VMWARE-NSX-MIB::vmwNsxTGatewayFirewallTcpHalfOpenFlowCountExceeded'
More examples
Translate to a numeric OID
/usr/bin/snmptranslate -Pud -Ir -On -m 'VMWARE-NSX-MIB' -M '/opt/observium/mibs/vmware:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'VMWARE-NSX-MIB::vmwNsxTGatewayFirewallTcpHalfOpenFlowCountExceeded'
Syntax
No syntax metadata recorded.
Values & Constraints
No enumerated values or constraints recorded.
Conformance
Member of