ENTERASYS-FIREWALL-MIB Table View

Table-centric layout grouping table, row, and column objects.

Tables
19
Rows
19
Columns
102
.1.3.6.1.4.1.5624.1.2.37.1.11 · 1 row entry · 3 columns
This table defines the state of the firewall on
individual interfaces.  The firewall may be enabled
or disabled for each interface on the device.  The effective
state of the firewall depends on the setting of
etsysFWFirewallEnabled.
          
          
                   |                              | interface
etsysFWFirewallEnabled | etsysFWFirewallOnIntfEnabled | effective
                   |                              |   state
-----------------------------------------------------------------
  true                         true                  enabled
  true                         false                 disabled
  false                        true                  disabled
  false                        false                 disabled
          
If an interface is not represented in this table, then its
effective state is determined by etsysFWFirewallEnabled.
          
The implementation may choose to allow modifications to this
table only under certain SNMP contexts.  The
etsysFWFirewallOnIntfStorageType for a given SNMP context may
be readOnly, meaning the row cannot be modified or deleted. In
another SNMP context, the etsysFWFirewallOnIntfStorageType
value could allow the row to be modified or deleted.
etsysFWFirewallOnIntfEntry entry .1.3.6.1.4.1.5624.1.2.37.1.11.1
A row defining whether firewall is enabled for a particular
interface.
Indexes
IF-MIBifIndex
Column Syntax OID
etsysFWFirewallOnIntfEnabled
The current state of the firewall is returned when
this value is read. This setting is only effective when
etsysFWFirewallEnabled is true. Setting the value to true
causes the firewall to start inspecting packets, if
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.5624.1.2.37.1.11.1.1
etsysFWFirewallOnIntfStorageType
The storage type for this row.
SNMPv2-TCStorageTyper/w
Textual Convention: SNMPv2-TCStorageType Enumeration
Type Values:
1other
2volatile
3nonVolatile
4permanent
5readOnly
.1.3.6.1.4.1.5624.1.2.37.1.11.1.2
etsysFWFirewallOnIntfRowStatus
The status of this conceptual row.

The value of this object has no effect on whether other
objects in this conceptual row can be modified.
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.5624.1.2.37.1.11.1.3
.1.3.6.1.4.1.5624.1.2.37.1.13 · 1 row entry · 4 columns
This table defines the IP filters applied to 
individual interfaces. 
          
The implementation may choose to allow modifications to this
table only under certain SNMP contexts.  The
etsysFWFirewallIntfFilterStorageType for a given SNMP context may
be readOnly, meaning the row cannot be modified or deleted. In
another SNMP context, the etsysFWFirewallIntfFilterStorageType
value could allow the row to be modified or deleted.
etsysFWFirewallIntfFilterEntry entry .1.3.6.1.4.1.5624.1.2.37.1.13.1
A row defining the IP filters applied to individual interfaces.
Indexes
IF-MIBifIndex etsysFWFirewallIntfFilterType
Column Syntax OID
etsysFWFirewallIntfFilterType
The type of IP filter that applies on a particular interface.

ipBroadcast -
This filter type allows incoming/outgoing IP packets
through the firewall with 255.255.255.255 set as the
destination…
Enumeration
Enumerated Values:
1ipBroadcast
2ipMulticast
3ipOptionAll
4ipOptionOther
5ipOptionLooseSourceRoute
6ipOptionRecordRoute
7ipOptionStrictSourceRoute
8ipOptionTimeStamp
.1.3.6.1.4.1.5624.1.2.37.1.13.1.1
etsysFWFirewallIntfFilterDirection
The direction which the filter is applied.
none - Denies the packet that matched the filter type.
in - Allows the packet that matched the filter type
to enter the interface.
out - Allows the packet that match…
Enumerationr/w
Enumerated Values:
1none
2in
3out
4both
.1.3.6.1.4.1.5624.1.2.37.1.13.1.2
etsysFWFirewallIntfFilterStorageType
The storage type for this row.
SNMPv2-TCStorageTyper/w
Textual Convention: SNMPv2-TCStorageType Enumeration
Type Values:
1other
2volatile
3nonVolatile
4permanent
5readOnly
.1.3.6.1.4.1.5624.1.2.37.1.13.1.3
etsysFWFirewallIntfFilterRowStatus
The status of this conceptual row.

The value of this object has no effect on whether other
objects in this conceptual row can be modified.
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.5624.1.2.37.1.13.1.4
.1.3.6.1.4.1.5624.1.2.37.2.1.3 · 1 row entry · 4 columns
This table defines the group of firewall rules applied to
individual interfaces.  Rules for this group will be
applied in the etsysFWGroupPolicyTable.
          
The implementation may choose to allow modifications to this
table only under certain SNMP contexts.  The
etsysFWIntfToGroupStorageType for a given SNMP context may be
readOnly, meaning the row cannot be modified or deleted. In
another SNMP context, the etsysFWIntfToGroupStorageType value
could allow the row to be modified or deleted.
etsysFWIntfToGroupEntry entry .1.3.6.1.4.1.5624.1.2.37.2.1.3.1
A row defining the group name for a particular interface.
Indexes
IF-MIBifIndex etsysFWIntfToGroupIntfDirection etsysFWIntfToGroupName
Column Syntax OID
etsysFWIntfToGroupIntfDirection
Defines the direction of the packets to inspect, incoming
(ingress), or outgoing (egress).
Enumeration
Enumerated Values:
1ingress
2egress
.1.3.6.1.4.1.5624.1.2.37.2.1.3.1.1
etsysFWIntfToGroupName
The group name for this interface. The value of
etsysFWIntfToGroupName should be used as index into the
etsysFWGroupPolicyTable to determine the list of rules that
MUST be applied to this interface.

Sinc…
OctetString
Constraints:
range: 1-32
.1.3.6.1.4.1.5624.1.2.37.2.1.3.1.2
etsysFWIntfToGroupStorageType
The storage type for this row.
SNMPv2-TCStorageTyper/w
Textual Convention: SNMPv2-TCStorageType Enumeration
Type Values:
1other
2volatile
3nonVolatile
4permanent
5readOnly
.1.3.6.1.4.1.5624.1.2.37.2.1.3.1.3
etsysFWIntfToGroupRowStatus
This object indicates the conceptual status of this row.

The value of this object has no effect on whether other
objects in this conceptual row can be modified.
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.5624.1.2.37.2.1.3.1.4
.1.3.6.1.4.1.5624.1.2.37.2.1.5 · 1 row entry · 5 columns
This table defines the firewall rules applied to groups.
          
The implementation may choose to allow modifications to this
table only under certain SNMP contexts.  The
etsysFWGroupPolicyStorageType for a given SNMP context may be
readOnly, meaning the row cannot be modified or deleted. In
another SNMP context, the etsysFWGroupPolicyStorageType value
could allow the row to be modified or deleted.
etsysFWGroupPolicyEntry entry .1.3.6.1.4.1.5624.1.2.37.2.1.5.1
A row defining a particular group policy rule and its priority.
Indexes
etsysFWGroupPolicyName etsysFWGroupPolicyRuleDef
Column Syntax OID
etsysFWGroupPolicyName
The name of the group. These names should be either
the etsysFWSystemPolicyGroupName or the
etsysFWIntfToGroupName from the etsysFWIntfToGroupTable.
OctetString
Constraints:
range: 1-32
.1.3.6.1.4.1.5624.1.2.37.2.1.5.1.1
etsysFWGroupPolicyRuleDef
An etsysFWPolicyRuleDefName from the etsysFWPolicyRuleDefTable.
SNMP-FRAMEWORK-MIBSnmpAdminString
Textual Convention: SNMP-FRAMEWORK-MIBSnmpAdminString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.5624.1.2.37.2.1.5.1.2
etsysFWGroupPolicyPriority
The priority of rule in the group. The firewall applies the
rules from the lowest to the highest priority.
Priority can only be in the range of 0 to the maximum number of
policyRuleDef in the group + 1. i.e. If there …
Integer32r/w
Constraints:
range: 0-65535
.1.3.6.1.4.1.5624.1.2.37.2.1.5.1.3
etsysFWGroupPolicyStorageType
The storage type for this row.
SNMPv2-TCStorageTyper/w
Textual Convention: SNMPv2-TCStorageType Enumeration
Type Values:
1other
2volatile
3nonVolatile
4permanent
5readOnly
.1.3.6.1.4.1.5624.1.2.37.2.1.5.1.4
etsysFWGroupPolicyRowStatus
This object indicates the conceptual status of this row.

The value of this object has no effect on whether other
objects in this conceptual row can be modified.
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.5624.1.2.37.2.1.5.1.5
.1.3.6.1.4.1.5624.1.2.37.2.2.4 · 1 row entry · 10 columns
This table defines a policy rule by associating a network
objects with a filter or a set of filters and an action to take
when the filter is true.
          
The implementation may choose to allow modifications to this
table only under certain SNMP contexts.  The
etsysFWPolicyRuleDefStorageType for a given SNMP context may be
readOnly, meaning the row cannot be modified or deleted.  In
another SNMP context, the etsysFWPolicyRuleDefStorageType value
could allow the row to be modified or deleted.
etsysFWPolicyRuleDefEntry entry .1.3.6.1.4.1.5624.1.2.37.2.2.4.1
A row defining a particular policy definition. A rule
definition binds a filter pointer to an action.
Indexes
etsysFWPolicyRuleDefName
Column Syntax OID
etsysFWPolicyRuleDefName
etsysFWPolicyRuleDefName is the administratively assigned
name of the policy rule.
OctetString
Constraints:
range: 1-32
.1.3.6.1.4.1.5624.1.2.37.2.2.4.1.1
etsysFWPolicyRuleDefSrcNetwork
If the source address of the packet is in the set of
addresses defined by the network object pointed to by
etsysFWPolicyRuleDefSrcNetwork and the destination address
is in the set of addresses defined by the network obj…
SNMPv2-TCVariablePointerr/w
Textual Convention: SNMPv2-TCVariablePointer ObjectIdentifier
.1.3.6.1.4.1.5624.1.2.37.2.2.4.1.2
etsysFWPolicyRuleDefDstNetwork
If the source address of the packet is in the set of
addresses defined by the network object pointed to by
etsysFWPolicyRuleDefSrcNetwork and the destination address
is in the set of addresses defined by the network obj…
SNMPv2-TCVariablePointerr/w
Textual Convention: SNMPv2-TCVariablePointer ObjectIdentifier
.1.3.6.1.4.1.5624.1.2.37.2.2.4.1.3
etsysFWPolicyRuleDefBidirectional
A policy may be specified as bidirectional to mean that it also
operates with the etsysFWPolicyRuleDefSrcNetwork and
etsysFWPolicyRuleDefDstNetwork reversed.
If this column is false, the policy operates only in the
dire…
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.5624.1.2.37.2.2.4.1.4
etsysFWPolicyRuleDefService
etsysFWPolicyRuleDefFilter points to a filter which is used to
evaluate whether the action associated with this row should
be fired or not. The action will only fire if the filter
referenced by this object evaluates to…
SNMPv2-TCVariablePointerr/w
Textual Convention: SNMPv2-TCVariablePointer ObjectIdentifier
.1.3.6.1.4.1.5624.1.2.37.2.2.4.1.5
etsysFWPolicyRuleAuthName
The authentication group name to use.
SNMP-FRAMEWORK-MIBSnmpAdminStringr/w
Textual Convention: SNMP-FRAMEWORK-MIBSnmpAdminString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.5624.1.2.37.2.2.4.1.6
etsysFWPolicyRuleDefAction
The action to take when the filter is true.
allow: the packet should be allowed
drop: the packet should be dropped
allowAuth: the packet is allowed if the source
address has been authenticated to…
Enumerationr/w
Enumerated Values:
1allow
2allowAuth
3drop
.1.3.6.1.4.1.5624.1.2.37.2.2.4.1.7
etsysFWPolicyRuleDefLogging
When the filter is true, log the activity of this rule.
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.5624.1.2.37.2.2.4.1.8
etsysFWPolicyRuleDefStorageType
The storage type for this row.
SNMPv2-TCStorageTyper/w
Textual Convention: SNMPv2-TCStorageType Enumeration
Type Values:
1other
2volatile
3nonVolatile
4permanent
5readOnly
.1.3.6.1.4.1.5624.1.2.37.2.2.4.1.9
etsysFWPolicyRuleDefRowStatus
This object indicates the conceptual status of this row.

The value of this object has no effect on whether other
objects in this conceptual row can be modified.

This object SHOULD NOT be se…
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.5624.1.2.37.2.2.4.1.10
.1.3.6.1.4.1.5624.1.2.37.2.3.4 · 1 row entry · 3 columns
A table defining a group of network objects from the 
etsysFWNetworkTable or a network group in
etsysFWNetworkGroupTable. The networks contained in the group
are defined in the etsysFWNetwkInNetGrpTable.
          
The implementation may choose to allow modifications to this
table only under certain SNMP contexts.  The 
etsysFWNetworkGroupStorageType for a given SNMP context may be
readOnly, meaning the row cannot be modified or deleted. In
another SNMP context, the etsysFWNetworkGroupStorageType value
could allow the row to be modified or deleted.
etsysFWNetworkGroupEntry entry .1.3.6.1.4.1.5624.1.2.37.2.3.4.1
An entry in the etsysFWNetworkGroupTable.
Indexes
etsysFWNetworkGroupName
Column Syntax OID
etsysFWNetworkGroupName
The administratively assigned name of the network group.
OctetString
Constraints:
range: 1-32
.1.3.6.1.4.1.5624.1.2.37.2.3.4.1.1
etsysFWNetworkGroupStorageType
The storage type for this row.
SNMPv2-TCStorageTyper/w
Textual Convention: SNMPv2-TCStorageType Enumeration
Type Values:
1other
2volatile
3nonVolatile
4permanent
5readOnly
.1.3.6.1.4.1.5624.1.2.37.2.3.4.1.2
etsysFWNetworkGroupRowStatus
This object indicates the conceptual status of this row.

The value of this object has no effect on whether other
objects in this conceptual row can be modified.

Once active, it MAY NOT have…
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.5624.1.2.37.2.3.4.1.3
.1.3.6.1.4.1.5624.1.2.37.2.3.7 · 1 row entry · 3 columns
A table defining the networks in a network group.
All etsysFWNetwkInNetGrpSubNetwork objects in a
etsysFWNetworkGroupName must have the same 
etsysFWNetworkIPVersion and etsysFWNetworkRealm.
          
The implementation may choose to allow modifications to this
table only under certain SNMP contexts.  The 
etsysFWNetwkInNetGrpStorageType for a given SNMP context may be
readOnly, meaning the row cannot be modified or deleted. In
another SNMP context, the etsysFWNetwkInNetGrpStorageType value
could allow the row to be modified or deleted.
etsysFWNetwkInNetGrpEntry entry .1.3.6.1.4.1.5624.1.2.37.2.3.7.1
An entry in the etsysFWNetwkInNetGrpTable.
Indexes
etsysFWNetworkGroupName etsysFWNetwkInNetGrpSubNetwork
Column Syntax OID
etsysFWNetwkInNetGrpSubNetwork
The location of the contained network. The MIB defines the
following tables which may be pointed to by this column:

etsysFWNetworkTable

Implementations should prevent recur…
SNMP-FRAMEWORK-MIBSnmpAdminString
Textual Convention: SNMP-FRAMEWORK-MIBSnmpAdminString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.5624.1.2.37.2.3.7.1.1
etsysFWNetwkInNetGrpStorageType
The storage type for this row.
SNMPv2-TCStorageTyper/w
Textual Convention: SNMPv2-TCStorageType Enumeration
Type Values:
1other
2volatile
3nonVolatile
4permanent
5readOnly
.1.3.6.1.4.1.5624.1.2.37.2.3.7.1.2
etsysFWNetwkInNetGrpRowStatus
This object indicates the conceptual status of this row.

The value of this object has no effect on whether other
objects in this conceptual row can be modified.

This object cannot be made a…
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.5624.1.2.37.2.3.7.1.3
.1.3.6.1.4.1.5624.1.2.37.2.3.11 · 1 row entry · 9 columns
A table defining the networks associated with filters to create
the firewall policy rules.  Networks can be defined with a
network IP address and mask, an IP address range, or a single
IP host address.
          
The implementation may choose to allow modifications to this
table only under certain SNMP contexts.  The
etsysFWNetworkStorageType for a given SNMP context may be
readOnly, meaning the row cannot be modified or deleted. In
another SNMP context, the etsysFWNetworkStorageType value could
allow the row to be modified or deleted.
etsysFWNetworkEntry entry .1.3.6.1.4.1.5624.1.2.37.2.3.11.1
An entry in the etsysFWNetworkTable.
Indexes
etsysFWNetworkName
Column Syntax OID
etsysFWNetworkName
The administratively assigned name of the network.
OctetString
Constraints:
range: 1-32
.1.3.6.1.4.1.5624.1.2.37.2.3.11.1.1
etsysFWNetworkRealm
A network is qualified as either an internal or external
address.
Enumerationr/w
Enumerated Values:
1internal
2external
.1.3.6.1.4.1.5624.1.2.37.2.3.11.1.2
etsysFWNetworkRangeOrMask
When set to useIpAddrRange, the etsysFWNetworkIPAddrBegin
and etsysFWNetworkIPAddrEnd define the network object in this
row.
When set to useIpAddrMask, the etsysFWNetworkIPAddrBegin
and etsysFWNetworkIPAddrMask define …
Enumerationr/w
Enumerated Values:
1useIpAddrRange
2useIpAddrMask
.1.3.6.1.4.1.5624.1.2.37.2.3.11.1.3
etsysFWNetworkIPVersion
The Internet Protocol version the addresses are to match
against. The value of this property determines the size and
format of the etsysFWNetworkIPAddressBegin,
etsysFWNetworkIPAddressEnd and etsysFWNetworkIPAddressMas…
INET-ADDRESS-MIBInetAddressTyper/w
Textual Convention: INET-ADDRESS-MIBInetAddressType Enumeration
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.5624.1.2.37.2.3.11.1.4
etsysFWNetworkIPAddressBegin
The IP address that with either the etsysFWNetworkIPAddrEnd
or etsysFWNetworkIPAddrMask define the network object for this
row.
INET-ADDRESS-MIBInetAddressr/w
Textual Convention: INET-ADDRESS-MIBInetAddress OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.5624.1.2.37.2.3.11.1.5
etsysFWNetworkIPAddressEnd
When etsysFWNetworkRangeOrMask is set to useIpAddrRange, this
is the end of the IP address range. To define a single host
set this to the value of etsysFWNetworkIpAddrBegin.
INET-ADDRESS-MIBInetAddressr/w
Textual Convention: INET-ADDRESS-MIBInetAddress OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.5624.1.2.37.2.3.11.1.6
etsysFWNetworkIPAddressMask
When etsysFWNetworkRangeOrMask is set to useIpAddrMask, this
is the mask that define the IP network. To define a single
host set this to all 1's.
INET-ADDRESS-MIBInetAddressr/w
Textual Convention: INET-ADDRESS-MIBInetAddress OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.5624.1.2.37.2.3.11.1.7
etsysFWNetworkStorageType
The storage type for this row.
SNMPv2-TCStorageTyper/w
Textual Convention: SNMPv2-TCStorageType Enumeration
Type Values:
1other
2volatile
3nonVolatile
4permanent
5readOnly
.1.3.6.1.4.1.5624.1.2.37.2.3.11.1.8
etsysFWNetworkRowStatus
This object indicates the conceptual status of this row.

The value of this object has no effect on whether other
objects in this conceptual row can be modified.

Once active, it MAY NOT have…
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.5624.1.2.37.2.3.11.1.9
.1.3.6.1.4.1.5624.1.2.37.2.4.4 · 1 row entry · 3 columns
A table defining a group of service objects from the 
etsysFWServiceTable or a service group in
etsysFWServiceGroupTable. The services contained in the group
are defined in the etsysFWNetwkInNetGrpTable.
          
The implementation may choose to allow modifications to this
table only under certain SNMP contexts.  The 
etsysFWServiceGroupStorageType for a given SNMP context may be
readOnly, meaning the row cannot be modified or deleted. In
another SNMP context, the etsysFWServiceGroupStorageType value
could allow the row to be modified or deleted.
etsysFWServiceGroupEntry entry .1.3.6.1.4.1.5624.1.2.37.2.4.4.1
An entry in the etsysFWServiceGroupTable.
Indexes
etsysFWServiceGroupName
Column Syntax OID
etsysFWServiceGroupName
The administratively assigned name of the service group.
OctetString
Constraints:
range: 1-32
.1.3.6.1.4.1.5624.1.2.37.2.4.4.1.1
etsysFWServiceGroupStorageType
The storage type for this row.
SNMPv2-TCStorageTyper/w
Textual Convention: SNMPv2-TCStorageType Enumeration
Type Values:
1other
2volatile
3nonVolatile
4permanent
5readOnly
.1.3.6.1.4.1.5624.1.2.37.2.4.4.1.2
etsysFWServiceGroupRowStatus
This object indicates the conceptual status of this row.

The value of this object has no effect on whether other
objects in this conceptual row can be modified.

Once active, it MAY NOT have…
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.5624.1.2.37.2.4.4.1.3
.1.3.6.1.4.1.5624.1.2.37.2.4.7 · 1 row entry · 3 columns
A table defining the services in a service group.
          
The implementation may choose to allow modifications to this
table only under certain SNMP contexts.  The 
etsysFWServiceInSvcGrpStorageType for a given SNMP context may be
readOnly, meaning the row cannot be modified or deleted. In
another SNMP context, the etsysFWServiceInSvcGrpStorageType value
could allow the row to be modified or deleted.
etsysFWServiceInSvcGrpEntry entry .1.3.6.1.4.1.5624.1.2.37.2.4.7.1
An entry in the etsysFWServiceInSvcGrpTable.
Indexes
etsysFWServiceGroupName etsysFWServiceInSvcGrpSubService
Column Syntax OID
etsysFWServiceInSvcGrpSubService
The location of the contained service. The MIB defines the
following tables which may be pointed to by this column:

etsysFWServiceTable

Implementations should prevent recur…
SNMP-FRAMEWORK-MIBSnmpAdminString
Textual Convention: SNMP-FRAMEWORK-MIBSnmpAdminString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.5624.1.2.37.2.4.7.1.1
etsysFWServiceInSvcGrpStorageType
The storage type for this row.
SNMPv2-TCStorageTyper/w
Textual Convention: SNMPv2-TCStorageType Enumeration
Type Values:
1other
2volatile
3nonVolatile
4permanent
5readOnly
.1.3.6.1.4.1.5624.1.2.37.2.4.7.1.2
etsysFWServiceInSvcGrpRowStatus
This object indicates the conceptual status of this row.

The value of this object has no effect on whether other
objects in this conceptual row can be modified.

This object cannot be made a…
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.5624.1.2.37.2.4.7.1.3
.1.3.6.1.4.1.5624.1.2.37.2.4.11 · 1 row entry · 8 columns
This table contains a list of service definitions to be used
within the etsysFWPolicyRuleDefTable.
          
The implementation may choose to allow modifications to this
table only under certain SNMP contexts.  The
etsysFWServiceStorageType for a given SNMP context may be
readOnly, meaning the row cannot be modified or deleted. In
another SNMP context, the etsysFWServiceStorageType value
could allow the row to be modified or deleted.
etsysFWServiceEntry entry .1.3.6.1.4.1.5624.1.2.37.2.4.11.1
A definition of a service.
Indexes
etsysFWServiceName
Column Syntax OID
etsysFWServiceName
The administrative name for this filter.
OctetString
Constraints:
range: 1-32
.1.3.6.1.4.1.5624.1.2.37.2.4.11.1.1
etsysFWServiceSrcLowPort
The low port of the port range a packet's source must match
against. To match, the port number must be greater than or
equal to this value.

This object is only used if sourcePort is set in
etsysFWService…
INET-ADDRESS-MIBInetPortNumberr/w
Textual Convention: INET-ADDRESS-MIBInetPortNumber Unsigned32
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.5624.1.2.37.2.4.11.1.2
etsysFWServiceSrcHighPort
The high port of the port range a packet's source must match
against. To match, the port number must be less than or
equal to this value.

This object is only used if sourcePort is set in
etsysFWServiceTy…
INET-ADDRESS-MIBInetPortNumberr/w
Textual Convention: INET-ADDRESS-MIBInetPortNumber Unsigned32
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.5624.1.2.37.2.4.11.1.3
etsysFWServiceDstLowPort
The low port of the port range a packet's destination must
match against. To match, the port number must be greater
than or equal to this value.

This object is only used if destinationPort is set in
etsy…
INET-ADDRESS-MIBInetPortNumberr/w
Textual Convention: INET-ADDRESS-MIBInetPortNumber Unsigned32
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.5624.1.2.37.2.4.11.1.4
etsysFWServiceDstHighPort
The high port of the port range a packet's destination must
match against. To match, the port number must be less than
or equal to this value.

This object is only used if destinationPort is set in
etsysF…
INET-ADDRESS-MIBInetPortNumberr/w
Textual Convention: INET-ADDRESS-MIBInetPortNumber Unsigned32
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.5624.1.2.37.2.4.11.1.5
etsysFWServiceProtocol
The protocol number the incoming packet must match against
for this filter to be evaluated as true.

This object is only used if protocol is set in
etsysFWServiceType.
Enumerationr/w
Enumerated Values:
1tcp
2udp
.1.3.6.1.4.1.5624.1.2.37.2.4.11.1.6
etsysFWServiceStorageType
The storage type for this row.
SNMPv2-TCStorageTyper/w
Textual Convention: SNMPv2-TCStorageType Enumeration
Type Values:
1other
2volatile
3nonVolatile
4permanent
5readOnly
.1.3.6.1.4.1.5624.1.2.37.2.4.11.1.7
etsysFWServiceRowStatus
This object indicates the conceptual status of this row.

The value of this object has no effect on whether other
objects in this conceptual row can be modified.
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.5624.1.2.37.2.4.11.1.8
.1.3.6.1.4.1.5624.1.2.37.2.5.4 · 1 row entry · 9 columns
This table defines a policy rule by associating a network
objects with a filter or a set of filters and an action to take
when the filter is true.
          
The implementation may choose to allow modifications to this
table only under certain SNMP contexts.  The
etsysFWFilterDefStorageType for a given SNMP context may be
readOnly, meaning the row cannot be modified or deleted.  In
another SNMP context, the etsysFWFilterDefStorageType value
could allow the row to be modified or deleted.
etsysFWFilterDefEntry entry .1.3.6.1.4.1.5624.1.2.37.2.5.4.1
A row defining a particular filter definition. A rule
definition binds a filter pointer to an action.
Indexes
etsysFWFilterDefName
Column Syntax OID
etsysFWFilterDefName
etsysFWFilterDefName is the administratively assigned
name of the policy rule.
OctetString
Constraints:
range: 1-32
.1.3.6.1.4.1.5624.1.2.37.2.5.4.1.1
etsysFWFilterDefSrcNetwork
If the source address of the packet is in the set of
addresses defined by the network object pointed to by
etsysFWFilterDefSrcNetwork and the destination address
is in the set of addresses defined by the network object
SNMPv2-TCVariablePointerr/w
Textual Convention: SNMPv2-TCVariablePointer ObjectIdentifier
.1.3.6.1.4.1.5624.1.2.37.2.5.4.1.2
etsysFWFilterDefDstNetwork
If the source address of the packet is in the set of
addresses defined by the network object pointed to by
etsysFWFilterDefSrcNetwork and the destination address
is in the set of addresses defined by the network object
SNMPv2-TCVariablePointerr/w
Textual Convention: SNMPv2-TCVariablePointer ObjectIdentifier
.1.3.6.1.4.1.5624.1.2.37.2.5.4.1.3
etsysFWFilterDefBidirectional
A policy may be specified as bidirectional to mean that it also
operates with the etsysFWFilterDefSrcNetwork and
etsysFWFilterDefDstNetwork reversed.
If this column is false, the policy operates only in the
direction de…
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.5624.1.2.37.2.5.4.1.4
etsysFWFilterDefProtocol
x
SNMPv2-SMIInteger32r/w
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.5624.1.2.37.2.5.4.1.5
etsysFWFilterDefICMPType
x
SNMPv2-SMIInteger32r/w
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.5624.1.2.37.2.5.4.1.6
etsysFWFilterDefLogging
When the filter is true, log the activity of this rule.
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.5624.1.2.37.2.5.4.1.7
etsysFWFilterDefStorageType
The storage type for this row.
SNMPv2-TCStorageTyper/w
Textual Convention: SNMPv2-TCStorageType Enumeration
Type Values:
1other
2volatile
3nonVolatile
4permanent
5readOnly
.1.3.6.1.4.1.5624.1.2.37.2.5.4.1.8
etsysFWFilterDefRowStatus
This object indicates the conceptual status of this row.

The value of this object has no effect on whether other
objects in this conceptual row can be modified.

This object SHOULD NOT be se…
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.5624.1.2.37.2.5.4.1.9
.1.3.6.1.4.1.5624.1.2.37.2.5.7 · 1 row entry · 4 columns
This table defines the command line string filters that can be
applied to a policy rule definition.
          
The implementation may choose to allow modifications to this
table only under certain SNMP contexts.  The
etsysFWGroupPolicyStorageType for a given SNMP context may be
readOnly, meaning the row cannot be modified or deleted. In
another SNMP context, the etsysFWGroupPolicyStorageType value
could allow the row to be modified or deleted.
etsysFWCLSFilterEntry entry .1.3.6.1.4.1.5624.1.2.37.2.5.7.1
A row defining a particular command line string filter.
Indexes
etsysFWPolicyRuleDefName etsysFWCLSFilterIndex
Column Syntax OID
etsysFWCLSFilterIndex
.
Integer32
Constraints:
range: 1-256
.1.3.6.1.4.1.5624.1.2.37.2.5.7.1.1
etsysFWCLSFilterWord
.
SNMP-FRAMEWORK-MIBSnmpAdminStringr/w
Textual Convention: SNMP-FRAMEWORK-MIBSnmpAdminString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.5624.1.2.37.2.5.7.1.2
etsysFWCLSFilterStorageType
The storage type for this row.
SNMPv2-TCStorageTyper/w
Textual Convention: SNMPv2-TCStorageType Enumeration
Type Values:
1other
2volatile
3nonVolatile
4permanent
5readOnly
.1.3.6.1.4.1.5624.1.2.37.2.5.7.1.3
etsysFWCLSFilterRowStatus
This object indicates the conceptual status of this row.

The value of this object has no effect on whether other
objects in this conceptual row can be modified.
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.5624.1.2.37.2.5.7.1.4
.1.3.6.1.4.1.5624.1.2.37.2.5.8 · 1 row entry · 6 columns
This table contains filters that applies to the HTML protocol.
          
The implementation may choose to allow modifications to this
table only under certain SNMP contexts.  The
etsysFWIpOptionsHeadFiltStorageType for a given SNMP context
may be readOnly, meaning the row cannot be modified or
deleted. In another SNMP context, the
etsysFWIpOptionsHeadFiltStorageType value could allow the row
to be modified or deleted.
etsysFWHTMLFilterEntry entry .1.3.6.1.4.1.5624.1.2.37.2.5.8.1
A definition of a particular filter.
Indexes
etsysFWHTMLFilterName
Column Syntax OID
etsysFWHTMLFilterName
The administrative name for this HTML filter.
OctetString
Constraints:
range: 1-32
.1.3.6.1.4.1.5624.1.2.37.2.5.8.1.1
etsysFWHTMLFilterType
.
Enumerationr/w
Enumerated Values:
1none
2selected
3all
.1.3.6.1.4.1.5624.1.2.37.2.5.8.1.2
etsysFWHTMLFilterNetwork
.
SNMP-FRAMEWORK-MIBSnmpAdminStringr/w
Textual Convention: SNMP-FRAMEWORK-MIBSnmpAdminString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.5624.1.2.37.2.5.8.1.3
etsysFWHTMLFilterLogging
.
SNMPv2-TCTruthValuer/w
Textual Convention: SNMPv2-TCTruthValue Enumeration
Type Values:
1true
2false
.1.3.6.1.4.1.5624.1.2.37.2.5.8.1.4
etsysFWHTMLFilterStorageType
The storage type for this row.
SNMPv2-TCStorageTyper/w
Textual Convention: SNMPv2-TCStorageType Enumeration
Type Values:
1other
2volatile
3nonVolatile
4permanent
5readOnly
.1.3.6.1.4.1.5624.1.2.37.2.5.8.1.5
etsysFWHTMLFilterRowStatus
This object indicates the conceptual status of this row.

The value of this object has no effect on whether other
objects in this conceptual row can be modified.
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.5624.1.2.37.2.5.8.1.6
.1.3.6.1.4.1.5624.1.2.37.3.3 · 1 row entry · 4 columns
This table contains a counter for the number of times each
policy rule has been true during packet inspection since the
last restart of the device.
etsysFWPolicyRuleTrueEntry entry .1.3.6.1.4.1.5624.1.2.37.3.3.1
A row in the table for a named policy rule definition.
Indexes
etsysFWPolicyRuleTrueIndex
Column Syntax OID
etsysFWPolicyRuleTrueIndex
A unique index for this row.
Integer32
Constraints:
range: 1-99999
.1.3.6.1.4.1.5624.1.2.37.3.3.1.1
etsysFWPolicyRuleTrueName
The name of the policy rule.
SNMP-FRAMEWORK-MIBSnmpAdminString
Textual Convention: SNMP-FRAMEWORK-MIBSnmpAdminString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.5624.1.2.37.3.3.1.2
etsysFWPolicyRuleTrueEvents
The number of times since the device has restarted that the
rule has been true during packet inspection.
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.5624.1.2.37.3.3.1.3
etsysFWPolicyRuleTrueLastEvent
The date and time when this rule was last true during packet
inspection.
SNMPv2-TCDateAndTime
Textual Convention: SNMPv2-TCDateAndTime OctetString
Type Constraints:
range: 8
range: 11
.1.3.6.1.4.1.5624.1.2.37.3.3.1.4
.1.3.6.1.4.1.5624.1.2.37.3.6 · 1 row entry · 6 columns
The firewall can perform stateful inspection of packets
to allow incoming traffic associated with outgoing packets.
These associations are sessions.  This table returns data
about the total sessions indexed by protocol-id (as defined
by the assigned protocol-numbers of the IANA).
etsysFWSessionTotalsEntry entry .1.3.6.1.4.1.5624.1.2.37.3.6.1
A row with the session counters for a particular protocol-id.
Indexes
etsysFWSessTotIndex
Column Syntax OID
etsysFWSessTotIndex
A unique index for this row.
Integer32
Constraints:
range: 1-999999
.1.3.6.1.4.1.5624.1.2.37.3.6.1.1
etsysFWSessTotProtocolID
The protocol-id for this row.
Unsigned32
Constraints:
range: 0-255
.1.3.6.1.4.1.5624.1.2.37.3.6.1.2
etsysFWSessTotActiveSessions
The total number of active sessions for this protocol.
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.5624.1.2.37.3.6.1.3
etsysFWSessTotPeakSessions
The peak number of sessions for this protocol since the last
restart of the device.
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.5624.1.2.37.3.6.1.4
etsysFWSessTotBlockedSessions
The total number of sessions that have been blocked
for this protocol since the last restart of the device.
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.5624.1.2.37.3.6.1.5
etsysFWSessTotLastBlock
The date and time of the last blocked session for this
protocol.
SNMPv2-TCDateAndTime
Textual Convention: SNMPv2-TCDateAndTime OctetString
Type Constraints:
range: 8
range: 11
.1.3.6.1.4.1.5624.1.2.37.3.6.1.6
.1.3.6.1.4.1.5624.1.2.37.3.9 · 1 row entry · 8 columns
The firewall can perform stateful inspection of packets
to allow incoming traffic associated with outgoing packets.
These associations are sessions.  This table returns data
about the current active sessions.
etsysFWIpSessionEntry entry .1.3.6.1.4.1.5624.1.2.37.3.9.1
A row that defines an active session.
Indexes
etsysFWIpSessionIndex
Column Syntax OID
etsysFWIpSessionIndex
A unique index for this row.
Integer32
Constraints:
range: 1-999999
.1.3.6.1.4.1.5624.1.2.37.3.9.1.1
etsysFWIpSessionIPVersion
The Internet Protocol version. The value of this property
affects the size and format of the etsysFWIpSessionSrcAddress
and etsysFWIpSessionDstAddress objects.
INET-ADDRESS-MIBInetAddressType
Textual Convention: INET-ADDRESS-MIBInetAddressType Enumeration
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.5624.1.2.37.3.9.1.2
etsysFWIpSessionSrcAddress
The source IP address of this session.
INET-ADDRESS-MIBInetAddress
Textual Convention: INET-ADDRESS-MIBInetAddress OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.5624.1.2.37.3.9.1.3
etsysFWIpSessionDstAddress
The destination IP address of this session.
INET-ADDRESS-MIBInetAddress
Textual Convention: INET-ADDRESS-MIBInetAddress OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.5624.1.2.37.3.9.1.4
etsysFWIpSessionSrcPort
The source port of this session.
INET-ADDRESS-MIBInetPortNumber
Textual Convention: INET-ADDRESS-MIBInetPortNumber Unsigned32
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.5624.1.2.37.3.9.1.5
etsysFWIpSessionDstPort
The destination port of this session.
INET-ADDRESS-MIBInetPortNumber
Textual Convention: INET-ADDRESS-MIBInetPortNumber Unsigned32
Type Constraints:
range: 0..65535
.1.3.6.1.4.1.5624.1.2.37.3.9.1.6
etsysFWIpSessionProtocolID
The protocol-id of this session (as defined
by the assigned protocol-numbers of the IANA).
SNMPv2-SMIUnsigned32
Textual Convention: SNMPv2-SMIUnsigned32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.5624.1.2.37.3.9.1.7
etsysFWIpSessionCreation
The date and time this session was created.
SNMPv2-TCDateAndTime
Textual Convention: SNMPv2-TCDateAndTime OctetString
Type Constraints:
range: 8
range: 11
.1.3.6.1.4.1.5624.1.2.37.3.9.1.8
.1.3.6.1.4.1.5624.1.2.37.3.12 · 1 row entry · 5 columns
The firewall has an action to allow traffic only to
IP addresses that have authenticated with the firewall.
After authentication, the authenticated address remains
in a cache as long as there are packets from the address.
This table returns the cached authenticated IP addresses.
The table rows are removed when the IP address is idle
for the number of seconds specified in etsysFWAuthTimeout.
etsysFWAuthAddressEntry entry .1.3.6.1.4.1.5624.1.2.37.3.12.1
A row that defines an authenticated IP address.
Indexes
etsysFWAuthAddressIndex
Column Syntax OID
etsysFWAuthAddressIndex
A unique index for this row.
Integer32
Constraints:
range: 1-999999
.1.3.6.1.4.1.5624.1.2.37.3.12.1.1
etsysFWAuthAddressIPVersion
The Internet Protocol version. The value of this property
affects the size and format of the etsysFWAuthAddressIPAddress
object.
INET-ADDRESS-MIBInetAddressType
Textual Convention: INET-ADDRESS-MIBInetAddressType Enumeration
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.5624.1.2.37.3.12.1.2
etsysFWAuthAddressIPAddress
The authenticated IP address.
INET-ADDRESS-MIBInetAddress
Textual Convention: INET-ADDRESS-MIBInetAddress OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.5624.1.2.37.3.12.1.3
etsysFWAuthAddressGroupName
The group name of the authenticated IP address.
SNMP-FRAMEWORK-MIBSnmpAdminString
Textual Convention: SNMP-FRAMEWORK-MIBSnmpAdminString OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.5624.1.2.37.3.12.1.4
etsysFWAuthAddressIdleTime
The number of seconds this IP address has been idle.
SNMPv2-SMIInteger32
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.5624.1.2.37.3.12.1.5
.1.3.6.1.4.1.5624.1.2.37.3.15 · 1 row entry · 5 columns
Firewalls can provide protection from some common forms of
Denial of Service attacks.  The firewall will return the total
number of times the specific DoS attack has been blocked and
the IP address and time of the last blocked attack.
etsysFWDoSBlockedEntry entry .1.3.6.1.4.1.5624.1.2.37.3.15.1
A row that defines the statistics for a particular DoS attack.
Indexes
etsysFWDoSAttackName
Column Syntax OID
etsysFWDoSAttackName
The name of a DoS attack. Example names are
'SYN Flood', 'Tear Drop', and 'ICMP Flood'.
OctetString
Constraints:
range: 1-32
.1.3.6.1.4.1.5624.1.2.37.3.15.1.1
etsysFWDoSSrcIPVersion
The Internet Protocol version. The value of this property
affects the size and format of the etsysFWDoSScrIPAddress
object.
INET-ADDRESS-MIBInetAddressType
Textual Convention: INET-ADDRESS-MIBInetAddressType Enumeration
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.5624.1.2.37.3.15.1.2
etsysFWDoSSrcIPAddress
The source IP address of the last blocked attack.
INET-ADDRESS-MIBInetAddress
Textual Convention: INET-ADDRESS-MIBInetAddress OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.5624.1.2.37.3.15.1.3
etsysFWDoSAttackTime
The time of the last blocked attack.
SNMPv2-TCDateAndTime
Textual Convention: SNMPv2-TCDateAndTime OctetString
Type Constraints:
range: 8
range: 11
.1.3.6.1.4.1.5624.1.2.37.3.15.1.4
etsysFWDoSBlockedAttacks
The number of times this DoS attack has been blocked since
the last restart of the device.
SNMPv2-SMICounter32
Textual Convention: SNMPv2-SMICounter32 Unsigned32
Type Constraints:
range: 0..4294967295
.1.3.6.1.4.1.5624.1.2.37.3.15.1.5