BAYSTACK-IPV6-FIRST-HOP-SEC-MIB Table View

Table-centric layout grouping table, row, and column objects.

Tables
8
Rows
8
Columns
63
.1.3.6.1.4.1.45.5.45.1.2 · 1 row entry · 7 columns
Table contains the list of
IPv6 Access List used for Frist 
Hop Security Feature.
bsIpv6FHSIpv6AccessListEntry entry .1.3.6.1.4.1.45.5.45.1.2.1
Entry contains the list of
IPv6 Access List used for Frist
Hop Security Feature.
Indexes
bsIpv6FHSIpv6AccessListName bsIpv6FHSIpv6AccessListPrefix bsIpv6FHSIpv6AccessListPrefixMaskLen
Column Syntax OID
bsIpv6FHSIpv6AccessListName
IPv6 Access List Name
FhsListName
Textual Convention: FhsListName OctetString
Type Constraints:
range: 1..64
.1.3.6.1.4.1.45.5.45.1.2.1.1
bsIpv6FHSIpv6AccessListPrefix
IPv6 Prefix attached to this IPv6 access list Id
IPV6-TCIpv6Address
Textual Convention: IPV6-TCIpv6Address OctetString
Type Constraints:
range: 16
.1.3.6.1.4.1.45.5.45.1.2.1.2
bsIpv6FHSIpv6AccessListPrefixMaskLen
IPv6 Prefix mask length attached to this IPv6 access list Id
Integer32
Constraints:
range: 0-128
.1.3.6.1.4.1.45.5.45.1.2.1.3
bsIpv6FHSIpv6AccessListMaskLenFrom
IPv6 Prefix mask length range from
Integer32r/w
Constraints:
range: 0-128
.1.3.6.1.4.1.45.5.45.1.2.1.4
bsIpv6FHSIpv6AccessListMaskLenTo
IPv6 Prefix mask length range to
Integer32r/w
Constraints:
range: 0-128
.1.3.6.1.4.1.45.5.45.1.2.1.5
bsIpv6FHSIpv6AccessListAccessType
IPv6 IP Access Type
Allow or Deny
FhsAccessTyper/w
Textual Convention: FhsAccessType Enumeration
Type Values:
1allow
2deny
.1.3.6.1.4.1.45.5.45.1.2.1.6
bsIpv6FHSIpv6AccessListRowStatus
IPv6 IP Access List row status
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.45.5.45.1.2.1.7
.1.3.6.1.4.1.45.5.45.1.3 · 1 row entry · 4 columns
Table contains the list of
MAC Access List used for Frist 
Hop Security Feature.
bsIpv6FHSMacAccessListEntry entry .1.3.6.1.4.1.45.5.45.1.3.3
Entry contains the list of
MAC Access List used for Frist
Hop Security Feature.
Indexes
bsIpv6FHSMacAccessListName bsIpv6FHSMacAccessListMac
Column Syntax OID
bsIpv6FHSMacAccessListName
MAC Access List Name
FhsListName
Textual Convention: FhsListName OctetString
Type Constraints:
range: 1..64
.1.3.6.1.4.1.45.5.45.1.3.3.1
bsIpv6FHSMacAccessListMac
MAC address attached to this MAC access list Id
SNMPv2-TCMacAddress
Textual Convention: SNMPv2-TCMacAddress OctetString
Type Constraints:
range: 6
.1.3.6.1.4.1.45.5.45.1.3.3.2
bsIpv6FHSMacAccessListAccessType
MAC Access Type
Allow or Deny
FhsAccessTyper/w
Textual Convention: FhsAccessType Enumeration
Type Values:
1allow
2deny
.1.3.6.1.4.1.45.5.45.1.3.3.3
bsIpv6FHSMacAccessListRowStatus
MAC Access List row status
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.45.5.45.1.3.3.4
.1.3.6.1.4.1.45.5.45.1.4 · 1 row entry · 17 columns
Table contains the list of
First Hop security Policies  
attached to the interface.
bsIpv6FHSPolicyPortMapEntry entry .1.3.6.1.4.1.45.5.45.1.4.1
Entry contains the list of
First Hop security Policies
attached to the interface.
Indexes
bsIpv6FHSPolicyPortMapIfIndex
Column Syntax OID
bsIpv6FHSPolicyPortMapIfIndex
Interface index number
IF-MIBInterfaceIndex
Textual Convention: IF-MIBInterfaceIndex Integer32
Type Constraints:
range: 1..2147483647
.1.3.6.1.4.1.45.5.45.1.4.1.1
bsIpv6FHSPolicyPortMapDhcpv6gPolicyName
DHCPv6 guard policy name
FhsListNamer/w
Textual Convention: FhsListName OctetString
Type Constraints:
range: 1..64
.1.3.6.1.4.1.45.5.45.1.4.1.2
bsIpv6FHSPolicyPortMapRagPolicyName
RA guard policy name
FhsListNamer/w
Textual Convention: FhsListName OctetString
Type Constraints:
range: 1..64
.1.3.6.1.4.1.45.5.45.1.4.1.3
bsIpv6FHSPolicyPortMapNDAdmin
Enable/Disable ND-inspection
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.45.5.45.1.4.1.4
bsIpv6FHSPolicyPortMapSbtDynLearnAdmin
Enable/Disable learning dynamic SBT entry
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.45.5.45.1.4.1.5
bsIpv6FHSPolicyPortMapTotDhcpv6PktRcv
Total Number of Dhcpv6
packets Received
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.45.5.45.1.4.1.6
bsIpv6FHSPolicyPortMapTotDhcpv6PktDropped
Total Number of Dhcpv6
packets dropped
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.45.5.45.1.4.1.7
bsIpv6FHSPolicyPortMapTotRaPktRcv
Total Number of RA
packets Received
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.45.5.45.1.4.1.8
bsIpv6FHSPolicyPortMapTotRaPktDropped
Total Number of RA
packets dropped
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.45.5.45.1.4.1.9
bsIpv6FHSPolicyPortMapTotNdPktRcv
Total Number of ND Packets Received
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.45.5.45.1.4.1.10
bsIpv6FHSPolicyPortMapTotNdPktDropped
Total Number of ND Packets Dropped
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.45.5.45.1.4.1.11
bsIpv6FHSPolicyPortMapClearDhcpGuardStats
First Hop security clear stats:
bsIpv6FHSPolicyPortMapTotDhcpv6PktRcv and
bsIpv6FHSPolicyPortMapTotDhcpv6PktDropped
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.45.5.45.1.4.1.12
bsIpv6FHSPolicyPortMapClearRaGuardStats
First Hop security clear stats:
bsIpv6FHSPolicyPortMapTotRaPktRcv and
bsIpv6FHSPolicyPortMapTotRaPktDropped
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.45.5.45.1.4.1.13
bsIpv6FHSPolicyPortMapClearNDInspectStats
First Hop security clear stats:
bsIpv6FHSPolicyPortMapTotNdPktRcv,
bsIpv6FHSPolicyPortMapTotNdPktDropped and
bsIpv6FHSPolicyPortMapTotSbtEntDropped
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.45.5.45.1.4.1.14
bsIpv6FHSPolicyPortMapRowStatus
First Hop security row status
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.45.5.45.1.4.1.15
bsIpv6FHSPolicyPortMapDhcpv6gDeviceRole
This is the device role of the received port. If
the device role is client and if it receives DHCPv6
reply then those packets should be dropped.
This object is currently used in VOSS platforms only
and is equivalent t…
FhsDhcpv6GuardDeviceRoler/w
Textual Convention: FhsDhcpv6GuardDeviceRole Enumeration
Type Values:
1server
2client
3none
.1.3.6.1.4.1.45.5.45.1.4.1.16
bsIpv6FHSPolicyPortMapRagDeviceRole
This is the device role to the received port. If the
device role is host and if it receives RAs then those
packets should be dropped.
This object is currently used in VOSS platforms only
and is equivalent to bsIpv6FHS…
FhsRaGuardDeviceRoler/w
Textual Convention: FhsRaGuardDeviceRole Enumeration
Type Values:
1router
2host
3none
.1.3.6.1.4.1.45.5.45.1.4.1.17
.1.3.6.1.4.1.45.5.45.1.5 · 1 row entry · 7 columns
Table contains the list of
DHCPv6 guard Policies used for 
Hop Security Feature.
bsIpv6FHSDhcpv6gPolicyListEntry entry .1.3.6.1.4.1.45.5.45.1.5.1
Entry contains the list of
DHCPv6 guard Policies used for
Hop Security Feature.
Indexes
bsIpv6FHSDhcpv6gPolicyName
Column Syntax OID
bsIpv6FHSDhcpv6gPolicyName
This is the DHCPv6
guard Policy Name
FhsListName
Textual Convention: FhsListName OctetString
Type Constraints:
range: 1..64
.1.3.6.1.4.1.45.5.45.1.5.1.1
bsIpv6FHSDhcpv6gDeviceRole
This is the device role of
the received port. If the
device role is client and if
it receives DHCPv6 reply then
those packets should be
dropped
FhsDhcpv6GuardDeviceRoler/w
Textual Convention: FhsDhcpv6GuardDeviceRole Enumeration
Type Values:
1server
2client
3none
.1.3.6.1.4.1.45.5.45.1.5.1.2
bsIpv6FHSDhcpv6gServerAccessListName
This is the IPv6 access list which
will be validating source
IPv6 address of the DHCPv6 Reply
packet from the server
FhsListNamer/w
Textual Convention: FhsListName OctetString
Type Constraints:
range: 1..64
.1.3.6.1.4.1.45.5.45.1.5.1.3
bsIpv6FHSDhcpv6gReplyPrefixListName
Validate the prefix
information in the DHCPv6
reply against the configured
reply prefix list.
FhsListNamer/w
Textual Convention: FhsListName OctetString
Type Constraints:
range: 1..64
.1.3.6.1.4.1.45.5.45.1.5.1.4
bsIpv6FHSDhcpv6gPrefLimitMin
This is check against the
DHCPv6 server / relay
router preference. If
the received router
preference is less
than the configured
router preference than
drop the packet
Integer32r/w
Constraints:
range: 0-255
.1.3.6.1.4.1.45.5.45.1.5.1.5
bsIpv6FHSDhcpv6gPrefLimitMax
This is check against the
DHCPv6 server / relay
router preference. If
the received router
preference is greater
than the configured
router preference than
drop the packet
Integer32r/w
Constraints:
range: 0-255
.1.3.6.1.4.1.45.5.45.1.5.1.6
bsIpv6FHSDhcpv6gPolicyListRowStatus
DHCPv6 guard policy row status
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.45.5.45.1.5.1.7
.1.3.6.1.4.1.45.5.45.1.6 · 1 row entry · 10 columns
Table contains the list of
RA guard Policies used for 
Hop Security Feature.
bsIpv6FHSRagPolicyListEntry entry .1.3.6.1.4.1.45.5.45.1.6.1
Entry contains the list of
RA guard Policies used for
Hop Security Feature.
Indexes
bsIpv6FHSRagPolicyName
Column Syntax OID
bsIpv6FHSRagPolicyName
RA guard policy Name
FhsListName
Textual Convention: FhsListName OctetString
Type Constraints:
range: 1..64
.1.3.6.1.4.1.45.5.45.1.6.1.1
bsIpv6FHSRagDeviceRole
This is the device role to
be checked against
FhsRaGuardDeviceRoler/w
Textual Convention: FhsRaGuardDeviceRole Enumeration
Type Values:
1router
2host
3none
.1.3.6.1.4.1.45.5.45.1.6.1.2
bsIpv6FHSRagIpv6AccessListName
This is the IPv6 access list which
will be validating the source
IPv6 address of the RA packet
FhsListNamer/w
Textual Convention: FhsListName OctetString
Type Constraints:
range: 1..64
.1.3.6.1.4.1.45.5.45.1.6.1.3
bsIpv6FHSRagIpv6PrefixListName
This is the IPv6 access list which
will be validating the Prefix
present in the RA packet
FhsListNamer/w
Textual Convention: FhsListName OctetString
Type Constraints:
range: 1..64
.1.3.6.1.4.1.45.5.45.1.6.1.4
bsIpv6FHSRagMacListName
This is the MAC access list which
will be validating the source
MAC of the received RA packet
FhsListNamer/w
Textual Convention: FhsListName OctetString
Type Constraints:
range: 1..64
.1.3.6.1.4.1.45.5.45.1.6.1.5
bsIpv6FHSRagManagedConfigFlag
In the RA packets, there is an M flag
(Managed Address configuration Flag)
which is set indicating that the address
assignments are available via DHCPv6.
This means that DHCPv6 would take care
of the interface address…
FhsRaManagedConfigFlagr/w
Textual Convention: FhsRaManagedConfigFlag Enumeration
Type Values:
1none
2on
3off
.1.3.6.1.4.1.45.5.45.1.6.1.6
bsIpv6FHSRagRouterPrefMax
In the RA packet there is router
preference information is available
in the Flags. This could be HIGH
or LOW or MEDIUM. This filtering
policy option would verify that
the advertised default router
preference parameter …
FhsRaRouterPrefMaxr/w
Textual Convention: FhsRaRouterPrefMax Enumeration
Type Values:
1none
2high
3medium
4low
.1.3.6.1.4.1.45.5.45.1.6.1.7
bsIpv6FHSRagHopLimitMin
This is the minimum value check for
the hop limit value present in the
RA packet. If the value is less
than configured minimum value then drop
the RA packet
Integer32r/w
Constraints:
range: 0-255
.1.3.6.1.4.1.45.5.45.1.6.1.8
bsIpv6FHSRagHopLimitMax
This is the maximum value check for
the hop limit value present in the
RA packet. If the value is greater
than configured maximum value then drop
the RA packet
Integer32r/w
Constraints:
range: 0-255
.1.3.6.1.4.1.45.5.45.1.6.1.9
bsIpv6FHSRagPolicyListRowStatus
RA guard policy row status
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.45.5.45.1.6.1.10
.1.3.6.1.4.1.45.5.45.1.7 · 1 row entry · 9 columns
Table contains the list of
SBT entries learnt 
Dynamically and statically
configure.
bsIpv6FHSSbtListEntry entry .1.3.6.1.4.1.45.5.45.1.7.1
Entry contains the list of
SBT entries.
Indexes
bsIpv6FHSSbtInterfaceIndex bsIpv6FHSSbtVlan bsIpv6FHSSbtSrcIp
Column Syntax OID
bsIpv6FHSSbtInterfaceIndex
Derive unit and port number from this ifindex
IF-MIBInterfaceIndex
Textual Convention: IF-MIBInterfaceIndex Integer32
Type Constraints:
range: 1..2147483647
.1.3.6.1.4.1.45.5.45.1.7.1.1
bsIpv6FHSSbtVlan
VLAN
Integer32
Constraints:
range: 1-4094
.1.3.6.1.4.1.45.5.45.1.7.1.2
bsIpv6FHSSbtSrcIp
Source IPv6 Address
IPV6-TCIpv6Address
Textual Convention: IPV6-TCIpv6Address OctetString
Type Constraints:
range: 16
.1.3.6.1.4.1.45.5.45.1.7.1.3
bsIpv6FHSSbtLinkLayerAddress
Link Layer MAC address
SNMPv2-TCMacAddressr/w
Textual Convention: SNMPv2-TCMacAddress OctetString
Type Constraints:
range: 6
.1.3.6.1.4.1.45.5.45.1.7.1.4
bsIpv6FHSSbtLearnType
SBT Entry Type
FhsSbtType
Textual Convention: FhsSbtType Enumeration
Type Values:
1static
2nd
3dhcp
.1.3.6.1.4.1.45.5.45.1.7.1.5
bsIpv6FHSSbtLearnPriority
SBT Entry priority
SNMPv2-SMIInteger32
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.45.5.45.1.7.1.6
bsIpv6FHSSbtLearnState
SBT Entry state
FhsSbtState
Textual Convention: FhsSbtState Enumeration
Type Values:
1incomplete
2reachable
3stale
4down
.1.3.6.1.4.1.45.5.45.1.7.1.7
bsIpv6FHSSbtLearnAge
Time Elapsed after being in this state
SNMPv2-SMIInteger32
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.45.5.45.1.7.1.8
bsIpv6FHSSbtRowStatus
SBT entry row status
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.45.5.45.1.7.1.9
.1.3.6.1.4.1.45.5.45.1.9 · 1 row entry · 7 columns
IPv6 Source Guard Interface table.
bsIpv6FHSSourceGuardInterfaceConfigEntry entry .1.3.6.1.4.1.45.5.45.1.9.1
An entry of this table.
Indexes
bsIpv6FHSSourceGuardIfIndex
Column Syntax OID
bsIpv6FHSSourceGuardIfIndex
Interface index number.
IF-MIBInterfaceIndex
Textual Convention: IF-MIBInterfaceIndex Integer32
Type Constraints:
range: 1..2147483647
.1.3.6.1.4.1.45.5.45.1.9.1.1
bsIpv6FHSSourceGuardInterfaceState
IPv6 Source Guard Admin state of an interface.
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.45.5.45.1.9.1.2
bsIpv6FHSSourceGuardMaxAddr
Maximum allowed IPv6 Source Addresses on an interface.
Integer32r/w
Constraints:
range: 2-10
.1.3.6.1.4.1.45.5.45.1.9.1.3
bsIpv6FHSSourceGuardOverflowCount
Number of times the SBT entries could not be added
to the allowed list.
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.45.5.45.1.9.1.4
bsIpv6FHSSourceGuardClearOverflowCount
This object clears counter object bsIpv6FHSSourceGuardOverflowCount.
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.45.5.45.1.9.1.5
bsIpv6FHSSourceGuardDropCount
Number of dropped packets per port of source guard.
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.45.5.45.1.9.1.6
bsIpv6FHSSourceGuardClearDropCount
This object clears counter object: bsIpv6FHSSourceGuardDropCount.
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.45.5.45.1.9.1.7
.1.3.6.1.4.1.45.5.45.1.10 · 1 row entry · 2 columns
List of IPv6 Source Guard binding entries for each 
Source Guard enabled interface.
bsIpv6FHSSourceGuardBindingEntry entry .1.3.6.1.4.1.45.5.45.1.10.1
An entry of this table.
Indexes
bsIpv6FHSSourceGuardEntryIfIndex bsIpv6FHSSourceGuardEntryIpv6Addr
Column Syntax OID
bsIpv6FHSSourceGuardEntryIfIndex
Interface index number.
IF-MIBInterfaceIndex
Textual Convention: IF-MIBInterfaceIndex Integer32
Type Constraints:
range: 1..2147483647
.1.3.6.1.4.1.45.5.45.1.10.1.1
bsIpv6FHSSourceGuardEntryIpv6Addr
IPv6 address allowed on the interface.
IPV6-TCIpv6Address
Textual Convention: IPV6-TCIpv6Address OctetString
Type Constraints:
range: 16
.1.3.6.1.4.1.45.5.45.1.10.1.2