BAYSTACK-IPV6-FIRST-HOP-SEC-MIB Table View
Table-centric layout grouping table, row, and column objects.
Tables
8
Rows
8
Columns
63
.1.3.6.1.4.1.45.5.45.1.2
·
1 row entry
·
7 columns
Table contains the list of IPv6 Access List used for Frist Hop Security Feature.
Entry contains the list of
IPv6 Access List used for Frist
Hop Security Feature.
IPv6 Access List used for Frist
Hop Security Feature.
Indexes
bsIpv6FHSIpv6AccessListName bsIpv6FHSIpv6AccessListPrefix bsIpv6FHSIpv6AccessListPrefixMaskLen
| Column | Syntax | OID | ||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
bsIpv6FHSIpv6AccessListName
IPv6 Access List Name
|
FhsListName Textual Convention: FhsListName OctetStringType Constraints: range: 1..64 |
.1.3.6.1.4.1.45.5.45.1.2.1.1 |
||||||||||||
|
bsIpv6FHSIpv6AccessListPrefix
IPv6 Prefix attached to this IPv6 access list Id
|
IPV6-TCIpv6Address Textual Convention: IPV6-TCIpv6Address OctetStringType Constraints: range: 16 |
.1.3.6.1.4.1.45.5.45.1.2.1.2 |
||||||||||||
|
bsIpv6FHSIpv6AccessListPrefixMaskLen
IPv6 Prefix mask length attached to this IPv6 access list Id
|
Integer32 Constraints: range: 0-128 |
.1.3.6.1.4.1.45.5.45.1.2.1.3 |
||||||||||||
|
bsIpv6FHSIpv6AccessListMaskLenFrom
IPv6 Prefix mask length range from
|
Integer32r/w Constraints: range: 0-128 |
.1.3.6.1.4.1.45.5.45.1.2.1.4 |
||||||||||||
|
bsIpv6FHSIpv6AccessListMaskLenTo
IPv6 Prefix mask length range to
|
Integer32r/w Constraints: range: 0-128 |
.1.3.6.1.4.1.45.5.45.1.2.1.5 |
||||||||||||
|
bsIpv6FHSIpv6AccessListAccessType
IPv6 IP Access Type
Allow or Deny |
FhsAccessTyper/w Textual Convention: FhsAccessType EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.2.1.6 |
||||||||||||
|
bsIpv6FHSIpv6AccessListRowStatus
IPv6 IP Access List row status
|
SNMPv2-TCRowStatusr/w Textual Convention: SNMPv2-TCRowStatus EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.2.1.7 |
.1.3.6.1.4.1.45.5.45.1.3
·
1 row entry
·
4 columns
Table contains the list of MAC Access List used for Frist Hop Security Feature.
Entry contains the list of
MAC Access List used for Frist
Hop Security Feature.
MAC Access List used for Frist
Hop Security Feature.
Indexes
bsIpv6FHSMacAccessListName bsIpv6FHSMacAccessListMac
| Column | Syntax | OID | ||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
bsIpv6FHSMacAccessListName
MAC Access List Name
|
FhsListName Textual Convention: FhsListName OctetStringType Constraints: range: 1..64 |
.1.3.6.1.4.1.45.5.45.1.3.3.1 |
||||||||||||
|
bsIpv6FHSMacAccessListMac
MAC address attached to this MAC access list Id
|
SNMPv2-TCMacAddress Textual Convention: SNMPv2-TCMacAddress OctetStringType Constraints: range: 6 |
.1.3.6.1.4.1.45.5.45.1.3.3.2 |
||||||||||||
|
bsIpv6FHSMacAccessListAccessType
MAC Access Type
Allow or Deny |
FhsAccessTyper/w Textual Convention: FhsAccessType EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.3.3.3 |
||||||||||||
|
bsIpv6FHSMacAccessListRowStatus
MAC Access List row status
|
SNMPv2-TCRowStatusr/w Textual Convention: SNMPv2-TCRowStatus EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.3.3.4 |
.1.3.6.1.4.1.45.5.45.1.4
·
1 row entry
·
17 columns
Table contains the list of First Hop security Policies attached to the interface.
Entry contains the list of
First Hop security Policies
attached to the interface.
First Hop security Policies
attached to the interface.
Indexes
bsIpv6FHSPolicyPortMapIfIndex
| Column | Syntax | OID | ||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
bsIpv6FHSPolicyPortMapIfIndex
Interface index number
|
IF-MIBInterfaceIndex Textual Convention: IF-MIBInterfaceIndex Integer32Type Constraints: range: 1..2147483647 |
.1.3.6.1.4.1.45.5.45.1.4.1.1 |
||||||||||||
|
bsIpv6FHSPolicyPortMapDhcpv6gPolicyName
DHCPv6 guard policy name
|
FhsListNamer/w Textual Convention: FhsListName OctetStringType Constraints: range: 1..64 |
.1.3.6.1.4.1.45.5.45.1.4.1.2 |
||||||||||||
|
bsIpv6FHSPolicyPortMapRagPolicyName
RA guard policy name
|
FhsListNamer/w Textual Convention: FhsListName OctetStringType Constraints: range: 1..64 |
.1.3.6.1.4.1.45.5.45.1.4.1.3 |
||||||||||||
|
bsIpv6FHSPolicyPortMapNDAdmin
Enable/Disable ND-inspection
|
SNMPv2-TCTruthValuer/w Textual Convention: SNMPv2-TCTruthValue EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.4.1.4 |
||||||||||||
|
bsIpv6FHSPolicyPortMapSbtDynLearnAdmin
Enable/Disable learning dynamic SBT entry
|
SNMPv2-TCTruthValuer/w Textual Convention: SNMPv2-TCTruthValue EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.4.1.5 |
||||||||||||
|
bsIpv6FHSPolicyPortMapTotDhcpv6PktRcv
Total Number of Dhcpv6
packets Received |
SNMPv2-SMICounter32 Textual Convention: SNMPv2-SMICounter32 Unsigned32Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.45.5.45.1.4.1.6 |
||||||||||||
|
bsIpv6FHSPolicyPortMapTotDhcpv6PktDropped
Total Number of Dhcpv6
packets dropped |
SNMPv2-SMICounter32 Textual Convention: SNMPv2-SMICounter32 Unsigned32Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.45.5.45.1.4.1.7 |
||||||||||||
|
bsIpv6FHSPolicyPortMapTotRaPktRcv
Total Number of RA
packets Received |
SNMPv2-SMICounter32 Textual Convention: SNMPv2-SMICounter32 Unsigned32Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.45.5.45.1.4.1.8 |
||||||||||||
|
bsIpv6FHSPolicyPortMapTotRaPktDropped
Total Number of RA
packets dropped |
SNMPv2-SMICounter32 Textual Convention: SNMPv2-SMICounter32 Unsigned32Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.45.5.45.1.4.1.9 |
||||||||||||
|
bsIpv6FHSPolicyPortMapTotNdPktRcv
Total Number of ND Packets Received
|
SNMPv2-SMICounter32 Textual Convention: SNMPv2-SMICounter32 Unsigned32Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.45.5.45.1.4.1.10 |
||||||||||||
|
bsIpv6FHSPolicyPortMapTotNdPktDropped
Total Number of ND Packets Dropped
|
SNMPv2-SMICounter32 Textual Convention: SNMPv2-SMICounter32 Unsigned32Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.45.5.45.1.4.1.11 |
||||||||||||
|
bsIpv6FHSPolicyPortMapClearDhcpGuardStats
First Hop security clear stats:
bsIpv6FHSPolicyPortMapTotDhcpv6PktRcv and bsIpv6FHSPolicyPortMapTotDhcpv6PktDropped |
SNMPv2-TCTruthValuer/w Textual Convention: SNMPv2-TCTruthValue EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.4.1.12 |
||||||||||||
|
bsIpv6FHSPolicyPortMapClearRaGuardStats
First Hop security clear stats:
bsIpv6FHSPolicyPortMapTotRaPktRcv and bsIpv6FHSPolicyPortMapTotRaPktDropped |
SNMPv2-TCTruthValuer/w Textual Convention: SNMPv2-TCTruthValue EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.4.1.13 |
||||||||||||
|
bsIpv6FHSPolicyPortMapClearNDInspectStats
First Hop security clear stats:
bsIpv6FHSPolicyPortMapTotNdPktRcv, bsIpv6FHSPolicyPortMapTotNdPktDropped and bsIpv6FHSPolicyPortMapTotSbtEntDropped |
SNMPv2-TCTruthValuer/w Textual Convention: SNMPv2-TCTruthValue EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.4.1.14 |
||||||||||||
|
bsIpv6FHSPolicyPortMapRowStatus
First Hop security row status
|
SNMPv2-TCRowStatusr/w Textual Convention: SNMPv2-TCRowStatus EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.4.1.15 |
||||||||||||
|
bsIpv6FHSPolicyPortMapDhcpv6gDeviceRole
This is the device role of the received port. If
the device role is client and if it receives DHCPv6 reply then those packets should be dropped. This object is currently used in VOSS platforms only and is equivalent t… |
FhsDhcpv6GuardDeviceRoler/w Textual Convention: FhsDhcpv6GuardDeviceRole EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.4.1.16 |
||||||||||||
|
bsIpv6FHSPolicyPortMapRagDeviceRole
This is the device role to the received port. If the
device role is host and if it receives RAs then those packets should be dropped. This object is currently used in VOSS platforms only and is equivalent to bsIpv6FHS… |
FhsRaGuardDeviceRoler/w Textual Convention: FhsRaGuardDeviceRole EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.4.1.17 |
.1.3.6.1.4.1.45.5.45.1.5
·
1 row entry
·
7 columns
Table contains the list of DHCPv6 guard Policies used for Hop Security Feature.
Entry contains the list of
DHCPv6 guard Policies used for
Hop Security Feature.
DHCPv6 guard Policies used for
Hop Security Feature.
Indexes
bsIpv6FHSDhcpv6gPolicyName
| Column | Syntax | OID | ||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
bsIpv6FHSDhcpv6gPolicyName
This is the DHCPv6
guard Policy Name |
FhsListName Textual Convention: FhsListName OctetStringType Constraints: range: 1..64 |
.1.3.6.1.4.1.45.5.45.1.5.1.1 |
||||||||||||
|
bsIpv6FHSDhcpv6gDeviceRole
This is the device role of
the received port. If the device role is client and if it receives DHCPv6 reply then those packets should be dropped |
FhsDhcpv6GuardDeviceRoler/w Textual Convention: FhsDhcpv6GuardDeviceRole EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.5.1.2 |
||||||||||||
|
bsIpv6FHSDhcpv6gServerAccessListName
This is the IPv6 access list which
will be validating source IPv6 address of the DHCPv6 Reply packet from the server |
FhsListNamer/w Textual Convention: FhsListName OctetStringType Constraints: range: 1..64 |
.1.3.6.1.4.1.45.5.45.1.5.1.3 |
||||||||||||
|
bsIpv6FHSDhcpv6gReplyPrefixListName
Validate the prefix
information in the DHCPv6 reply against the configured reply prefix list. |
FhsListNamer/w Textual Convention: FhsListName OctetStringType Constraints: range: 1..64 |
.1.3.6.1.4.1.45.5.45.1.5.1.4 |
||||||||||||
|
bsIpv6FHSDhcpv6gPrefLimitMin
This is check against the
DHCPv6 server / relay router preference. If the received router preference is less than the configured router preference than drop the packet |
Integer32r/w Constraints: range: 0-255 |
.1.3.6.1.4.1.45.5.45.1.5.1.5 |
||||||||||||
|
bsIpv6FHSDhcpv6gPrefLimitMax
This is check against the
DHCPv6 server / relay router preference. If the received router preference is greater than the configured router preference than drop the packet |
Integer32r/w Constraints: range: 0-255 |
.1.3.6.1.4.1.45.5.45.1.5.1.6 |
||||||||||||
|
bsIpv6FHSDhcpv6gPolicyListRowStatus
DHCPv6 guard policy row status
|
SNMPv2-TCRowStatusr/w Textual Convention: SNMPv2-TCRowStatus EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.5.1.7 |
.1.3.6.1.4.1.45.5.45.1.6
·
1 row entry
·
10 columns
Table contains the list of RA guard Policies used for Hop Security Feature.
Entry contains the list of
RA guard Policies used for
Hop Security Feature.
RA guard Policies used for
Hop Security Feature.
Indexes
bsIpv6FHSRagPolicyName
| Column | Syntax | OID | ||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
bsIpv6FHSRagPolicyName
RA guard policy Name
|
FhsListName Textual Convention: FhsListName OctetStringType Constraints: range: 1..64 |
.1.3.6.1.4.1.45.5.45.1.6.1.1 |
||||||||||||
|
bsIpv6FHSRagDeviceRole
This is the device role to
be checked against |
FhsRaGuardDeviceRoler/w Textual Convention: FhsRaGuardDeviceRole EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.6.1.2 |
||||||||||||
|
bsIpv6FHSRagIpv6AccessListName
This is the IPv6 access list which
will be validating the source IPv6 address of the RA packet |
FhsListNamer/w Textual Convention: FhsListName OctetStringType Constraints: range: 1..64 |
.1.3.6.1.4.1.45.5.45.1.6.1.3 |
||||||||||||
|
bsIpv6FHSRagIpv6PrefixListName
This is the IPv6 access list which
will be validating the Prefix present in the RA packet |
FhsListNamer/w Textual Convention: FhsListName OctetStringType Constraints: range: 1..64 |
.1.3.6.1.4.1.45.5.45.1.6.1.4 |
||||||||||||
|
bsIpv6FHSRagMacListName
This is the MAC access list which
will be validating the source MAC of the received RA packet |
FhsListNamer/w Textual Convention: FhsListName OctetStringType Constraints: range: 1..64 |
.1.3.6.1.4.1.45.5.45.1.6.1.5 |
||||||||||||
|
bsIpv6FHSRagManagedConfigFlag
In the RA packets, there is an M flag
(Managed Address configuration Flag) which is set indicating that the address assignments are available via DHCPv6. This means that DHCPv6 would take care of the interface address… |
FhsRaManagedConfigFlagr/w Textual Convention: FhsRaManagedConfigFlag EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.6.1.6 |
||||||||||||
|
bsIpv6FHSRagRouterPrefMax
In the RA packet there is router
preference information is available in the Flags. This could be HIGH or LOW or MEDIUM. This filtering policy option would verify that the advertised default router preference parameter … |
FhsRaRouterPrefMaxr/w Textual Convention: FhsRaRouterPrefMax EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.6.1.7 |
||||||||||||
|
bsIpv6FHSRagHopLimitMin
This is the minimum value check for
the hop limit value present in the RA packet. If the value is less than configured minimum value then drop the RA packet |
Integer32r/w Constraints: range: 0-255 |
.1.3.6.1.4.1.45.5.45.1.6.1.8 |
||||||||||||
|
bsIpv6FHSRagHopLimitMax
This is the maximum value check for
the hop limit value present in the RA packet. If the value is greater than configured maximum value then drop the RA packet |
Integer32r/w Constraints: range: 0-255 |
.1.3.6.1.4.1.45.5.45.1.6.1.9 |
||||||||||||
|
bsIpv6FHSRagPolicyListRowStatus
RA guard policy row status
|
SNMPv2-TCRowStatusr/w Textual Convention: SNMPv2-TCRowStatus EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.6.1.10 |
bsIpv6FHSSbtTable
table.1.3.6.1.4.1.45.5.45.1.7
·
1 row entry
·
9 columns
Table contains the list of SBT entries learnt Dynamically and statically configure.
Entry contains the list of
SBT entries.
SBT entries.
Indexes
bsIpv6FHSSbtInterfaceIndex bsIpv6FHSSbtVlan bsIpv6FHSSbtSrcIp
| Column | Syntax | OID | ||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
bsIpv6FHSSbtInterfaceIndex
Derive unit and port number from this ifindex
|
IF-MIBInterfaceIndex Textual Convention: IF-MIBInterfaceIndex Integer32Type Constraints: range: 1..2147483647 |
.1.3.6.1.4.1.45.5.45.1.7.1.1 |
||||||||||||
|
bsIpv6FHSSbtVlan
VLAN
|
Integer32 Constraints: range: 1-4094 |
.1.3.6.1.4.1.45.5.45.1.7.1.2 |
||||||||||||
|
bsIpv6FHSSbtSrcIp
Source IPv6 Address
|
IPV6-TCIpv6Address Textual Convention: IPV6-TCIpv6Address OctetStringType Constraints: range: 16 |
.1.3.6.1.4.1.45.5.45.1.7.1.3 |
||||||||||||
|
bsIpv6FHSSbtLinkLayerAddress
Link Layer MAC address
|
SNMPv2-TCMacAddressr/w Textual Convention: SNMPv2-TCMacAddress OctetStringType Constraints: range: 6 |
.1.3.6.1.4.1.45.5.45.1.7.1.4 |
||||||||||||
|
bsIpv6FHSSbtLearnType
SBT Entry Type
|
FhsSbtType Textual Convention: FhsSbtType EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.7.1.5 |
||||||||||||
|
bsIpv6FHSSbtLearnPriority
SBT Entry priority
|
SNMPv2-SMIInteger32 Textual Convention: SNMPv2-SMIInteger32 Integer32Type Constraints: range: -2147483648..2147483647 |
.1.3.6.1.4.1.45.5.45.1.7.1.6 |
||||||||||||
|
bsIpv6FHSSbtLearnState
SBT Entry state
|
FhsSbtState Textual Convention: FhsSbtState EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.7.1.7 |
||||||||||||
|
bsIpv6FHSSbtLearnAge
Time Elapsed after being in this state
|
SNMPv2-SMIInteger32 Textual Convention: SNMPv2-SMIInteger32 Integer32Type Constraints: range: -2147483648..2147483647 |
.1.3.6.1.4.1.45.5.45.1.7.1.8 |
||||||||||||
|
bsIpv6FHSSbtRowStatus
SBT entry row status
|
SNMPv2-TCRowStatusr/w Textual Convention: SNMPv2-TCRowStatus EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.7.1.9 |
.1.3.6.1.4.1.45.5.45.1.9
·
1 row entry
·
7 columns
IPv6 Source Guard Interface table.
An entry of this table.
Indexes
bsIpv6FHSSourceGuardIfIndex
| Column | Syntax | OID | ||||
|---|---|---|---|---|---|---|
|
bsIpv6FHSSourceGuardIfIndex
Interface index number.
|
IF-MIBInterfaceIndex Textual Convention: IF-MIBInterfaceIndex Integer32Type Constraints: range: 1..2147483647 |
.1.3.6.1.4.1.45.5.45.1.9.1.1 |
||||
|
bsIpv6FHSSourceGuardInterfaceState
IPv6 Source Guard Admin state of an interface.
|
SNMPv2-TCTruthValuer/w Textual Convention: SNMPv2-TCTruthValue EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.9.1.2 |
||||
|
bsIpv6FHSSourceGuardMaxAddr
Maximum allowed IPv6 Source Addresses on an interface.
|
Integer32r/w Constraints: range: 2-10 |
.1.3.6.1.4.1.45.5.45.1.9.1.3 |
||||
|
bsIpv6FHSSourceGuardOverflowCount
Number of times the SBT entries could not be added
to the allowed list. |
SNMPv2-SMICounter32 Textual Convention: SNMPv2-SMICounter32 Unsigned32Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.45.5.45.1.9.1.4 |
||||
|
bsIpv6FHSSourceGuardClearOverflowCount
This object clears counter object bsIpv6FHSSourceGuardOverflowCount.
|
SNMPv2-TCTruthValuer/w Textual Convention: SNMPv2-TCTruthValue EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.9.1.5 |
||||
|
bsIpv6FHSSourceGuardDropCount
Number of dropped packets per port of source guard.
|
SNMPv2-SMICounter32 Textual Convention: SNMPv2-SMICounter32 Unsigned32Type Constraints: range: 0..4294967295 |
.1.3.6.1.4.1.45.5.45.1.9.1.6 |
||||
|
bsIpv6FHSSourceGuardClearDropCount
This object clears counter object: bsIpv6FHSSourceGuardDropCount.
|
SNMPv2-TCTruthValuer/w Textual Convention: SNMPv2-TCTruthValue EnumerationType Values:
|
.1.3.6.1.4.1.45.5.45.1.9.1.7 |
.1.3.6.1.4.1.45.5.45.1.10
·
1 row entry
·
2 columns
List of IPv6 Source Guard binding entries for each Source Guard enabled interface.
An entry of this table.
Indexes
bsIpv6FHSSourceGuardEntryIfIndex bsIpv6FHSSourceGuardEntryIpv6Addr
| Column | Syntax | OID |
|---|---|---|
|
bsIpv6FHSSourceGuardEntryIfIndex
Interface index number.
|
IF-MIBInterfaceIndex Textual Convention: IF-MIBInterfaceIndex Integer32Type Constraints: range: 1..2147483647 |
.1.3.6.1.4.1.45.5.45.1.10.1.1 |
|
bsIpv6FHSSourceGuardEntryIpv6Addr
IPv6 address allowed on the interface.
|
IPV6-TCIpv6Address Textual Convention: IPV6-TCIpv6Address OctetStringType Constraints: range: 16 |
.1.3.6.1.4.1.45.5.45.1.10.1.2 |