A10-AX-MIB :: axSwitchStatAnomTCPSynFinDrop

MIB Reference — IPNetwork Monitor

All MIBsA10-AX-MIBaxSwitchStatAnomTCPSynFinDrop

axSwitchStatAnomTCPSynFinDrop

Module: A10-AX-MIB

OID (symbolic): A10-AX-MIB::axSwitchStatAnomTCPSynFinDrop

OID (numeric): 1.3.6.1.4.1.22610.2.4.3.16.31.1.30

Node type: OBJECT-TYPE

Type: Counter32

Access: read-only

Description:

Number of packets dropped by a tcp-syn-fin filter.

What is axSwitchStatAnomTCPSynFinDrop?

This Counter32 logs packets rejected because they set both TCP SYN and FIN flags simultaneously, which is invalid in normal TCP communication. This unusual flag combination typically indicates a craft packet attack or vulnerability exploit attempt. A value of 20 drops per hour suggests low-level scanning or exploitation attempts are being automatically blocked.

Examples

Walk all instances (SNMPv2c):

snmpwalk -v2c -c public <target> 1.3.6.1.4.1.22610.2.4.3.16.31.1.30
snmpwalk -v2c -c public <target> A10-AX-MIB::axSwitchStatAnomTCPSynFinDrop

Get a specific instance (index 1):

snmpget -v2c -c public <target> 1.3.6.1.4.1.22610.2.4.3.16.31.1.30.1
snmpget -v2c -c public <target> A10-AX-MIB::axSwitchStatAnomTCPSynFinDrop.1

OID Breakdown

Numeric OIDNameModule
1isoLANART-AGENT
1.3orgBIANCA-BRICK-PPP-MIB
1.3.6dodBIANCA-BRICK-PPP-MIB
1.3.6.1internetBIANCA-BRICK-PPP-MIB
1.3.6.1.4privateBIANCA-BRICK-PPP-MIB
1.3.6.1.4.1enterprisesANIROOT-MIB
1.3.6.1.4.1.22610a10A10-COMMON-MIB
1.3.6.1.4.1.22610.2a10MgmtA10-COMMON-MIB
1.3.6.1.4.1.22610.2.4axMgmtA10-AX-MIB
1.3.6.1.4.1.22610.2.4.3axAppA10-AX-MIB
1.3.6.1.4.1.22610.2.4.3.16axSwitchStatsA10-AX-MIB
1.3.6.1.4.1.22610.2.4.3.16.31axSwitchStatTableA10-AX-MIB
1.3.6.1.4.1.22610.2.4.3.16.31.1axSwitchStatEntryA10-AX-MIB
1.3.6.1.4.1.22610.2.4.3.16.31.1.30axSwitchStatAnomTCPSynFinDropA10-AX-MIB