ZTE-DSL-DEV-SECURITY-ACL-MIB Table View

Table-centric layout grouping table, row, and column objects.

Tables
1
Rows
1
Columns
23
.1.3.6.1.4.1.3902.1004.24.1.2 · 1 row entry · 23 columns
This table is used to define what kind of packets should be 
permitted or denied.
     It can help us to prevent our devices from some vicious attackes, 
such as virus. By default, when the packet isn't coincident with any 
rules, it's permitted.
     We can define all other packets to be permitted or denied by 
setting source IP and source mask to 0.0.0.0.
zxDslDevSecurityAclEntry entry .1.3.6.1.4.1.3902.1004.24.1.2.1
An entry in zxDslDevSecurityAclTable.
Indexes
zxDslDevSecAclIndex
Column Syntax OID
zxDslDevSecAclIndex
The index in the ACL rule table, which is the ACL rule number.
Integer32
Constraints:
range: 1-16
.1.3.6.1.4.1.3902.1004.24.1.2.1.1
zxDslDevSecAclSrcIp
The source Ipv4 IP of the ACL rule.
0.0.0.0 means not configured.
SNMPv2-SMIIpAddressr/w
Textual Convention: SNMPv2-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.3902.1004.24.1.2.1.2
zxDslDevSecAclSrcMask
The source IPv4 mask of the ACL rule.
0.0.0.0 means not configured.
SNMPv2-SMIIpAddressr/w
Textual Convention: SNMPv2-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.3902.1004.24.1.2.1.3
zxDslDevSecAclProtocolType
Protocol type of the packets.
The default value is ALL (0), which means all protocol types.
Enumerationr/w
Enumerated Values:
0all
1icmp
2tcp
3udp
.1.3.6.1.4.1.3902.1004.24.1.2.1.4
zxDslDevSecAclSrcPortStart
Beginning source port of the packets.
The default value is 0, which means all source ports.
Integer32r/w
Constraints:
range: 0-65535
.1.3.6.1.4.1.3902.1004.24.1.2.1.5
zxDslDevSecAclSrcPortEnd
Ending source port of the packets.
The default value is 0, which means all source ports.
Integer32r/w
Constraints:
range: 0-65535
.1.3.6.1.4.1.3902.1004.24.1.2.1.6
zxDslDevSecAclDestPortStart
Beginning destination port of the packets.
The default value is 0, which means all destination ports.
Integer32r/w
Constraints:
range: 0-65535
.1.3.6.1.4.1.3902.1004.24.1.2.1.7
zxDslDevSecAclDestPortEnd
Ending destination port of the packets.
The default value is 0, which means all destination ports.
Integer32r/w
Constraints:
range: 0-65535
.1.3.6.1.4.1.3902.1004.24.1.2.1.8
zxDslDevSecAclAccessLevel
The level of access to DSLAM,
which means permit or deny this kind of packets.
Enumerationr/w
Enumerated Values:
1permit
2deny
.1.3.6.1.4.1.3902.1004.24.1.2.1.9
zxDslDevSecAclRuleMatchTimes
The number of times that packets match this rule.
SNMPv2-SMIInteger32
Textual Convention: SNMPv2-SMIInteger32 Integer32
Type Constraints:
range: -2147483648..2147483647
.1.3.6.1.4.1.3902.1004.24.1.2.1.10
zxDslDevSecAclRowStatus
This object is used to create a new row
or delete an existing row in this table.
Set it 4 to add, and 6 to delete the ACL rule.
SNMPv2-TCRowStatusr/w
Textual Convention: SNMPv2-TCRowStatus Enumeration
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
.1.3.6.1.4.1.3902.1004.24.1.2.1.11
zxDslDevSecAclSrcMac
Source MAC of the packets.
SNMPv2-TCMacAddressr/w
Textual Convention: SNMPv2-TCMacAddress OctetString
Type Constraints:
range: 6
.1.3.6.1.4.1.3902.1004.24.1.2.1.12
zxDslDevSecAclDestMac
Destination MAC of the packets.
SNMPv2-TCMacAddressr/w
Textual Convention: SNMPv2-TCMacAddress OctetString
Type Constraints:
range: 6
.1.3.6.1.4.1.3902.1004.24.1.2.1.13
zxDslDevSecAclSrcIpType
The type of Source IP address.
The value is unknown(0) means that source IP address is not
configured (include IPv4 and IPv6).
INET-ADDRESS-MIBInetAddressTyper/w
Textual Convention: INET-ADDRESS-MIBInetAddressType Enumeration
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.3902.1004.24.1.2.1.14
zxDslDevSecAclSrcIpv6Ip
The source IPv6 IpAddress of the ACL rule.
Zero-length string means not configured.
INET-ADDRESS-MIBInetAddressr/w
Textual Convention: INET-ADDRESS-MIBInetAddress OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.3902.1004.24.1.2.1.15
zxDslDevSecAclSrcIpv6IpPfxLen
The prefix length of the IPv6 IP address.
0 means not configured.
INET-ADDRESS-MIBInetAddressPrefixLengthr/w
Textual Convention: INET-ADDRESS-MIBInetAddressPrefixLength Unsigned32
Type Constraints:
range: 0..2040
.1.3.6.1.4.1.3902.1004.24.1.2.1.16
zxDslDevSecAclDestIpType
The type of destination IP address.
The value is unknown(0) means that destination IP address is not
configured (include IPv4 and IPv6).
INET-ADDRESS-MIBInetAddressTyper/w
Textual Convention: INET-ADDRESS-MIBInetAddressType Enumeration
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.3902.1004.24.1.2.1.17
zxDslDevSecAclDestIp
The destination IP address of the ACL rule.
Zero-length string means not configured.
INET-ADDRESS-MIBInetAddressr/w
Textual Convention: INET-ADDRESS-MIBInetAddress OctetString
Type Constraints:
range: 0..255
.1.3.6.1.4.1.3902.1004.24.1.2.1.18
zxDslDevSecAclDestIpMask
The destination IPv4 mask of the ACL rult.
0.0.0.0 means not configured.
SNMPv2-SMIIpAddressr/w
Textual Convention: SNMPv2-SMIIpAddress OctetString
Type Constraints:
range: 4
.1.3.6.1.4.1.3902.1004.24.1.2.1.19
zxDslDevSecAclDestIpv6PfxLen
The prefix length of the destination IPv6 IP address.
0 means not configured.
INET-ADDRESS-MIBInetAddressPrefixLengthr/w
Textual Convention: INET-ADDRESS-MIBInetAddressPrefixLength Unsigned32
Type Constraints:
range: 0..2040
.1.3.6.1.4.1.3902.1004.24.1.2.1.20
zxDslDevSecAclEtherType
Ethernet type of the ACL rule.
any(1) means that the acl rule filters all packets that ethernet
type is ARP, IPv4 or IPv6.
arp(2) means that the acl rule filters all packets that ethernet
type is ARP.
ipv…
Enumerationr/w
Enumerated Values:
1any
2arp
3ipv4
4ipv6
.1.3.6.1.4.1.3902.1004.24.1.2.1.21
zxDslDevSecAclVlan
VLAN ID of the ACL rule.
0 means not configured.
Integer32r/w
Constraints:
range: 0-4094
.1.3.6.1.4.1.3902.1004.24.1.2.1.22
zxDslDevSecAclPktRateLimit
This object indicates the rate limit of the packet filtered by
the ACL rule.
0 means the packet rate is unlimited.
ppsInteger32r/w
Constraints:
range: 0-2048
.1.3.6.1.4.1.3902.1004.24.1.2.1.23