All MIBs › A3COM-HUAWEI-ACL-MIB
Organization: Hangzhou H3C Tech. Co., Ltd.
Last Updated: 2004-09-21
Category: VPN and Security, Vendor: H3C/HH3C
Description: Manages Access Control List (ACL) rules, groups, and match statistics on H3C network devices.
Start monitoring vendor-neutral, standards-based MIB, any SNMPv3-capable network device (SNMP engine identity/boot/clock status) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.
What Is A3COM-HUAWEI-ACL-MIB?
A3COM-HUAWEI-ACL-MIB is an H3C (Hangzhou H3C Technologies, the 3Com/Huawei joint venture) proprietary MIB managing Access Control Lists (ACLs) and packet filtering. Its objects cover a global ACL matching mode, a numbered-ACL-group table (ACL number, match order, subitem count, description, counter-clear action, row status), a named-ACL-group table (index, name, type, match order), and a basic-rule table defining rule action, source IP/wildcard mask, and an associated time range. As a configuration MIB it lets an administrator confirm an ACL's match order and rule content before troubleshooting unexpected traffic filtering. It is deployed on H3C (3Com/Huawei) managed switches and routers. Engineers can download the A3COM-HUAWEI-ACL-MIB file directly to load it into their MIB browser.
IPNetwork Monitor allows you to monitor SNMP objects defined in A3COM-HUAWEI-ACL-MIB. Use the built-in SNMP Monitoring Browser to explore available variables, view their current values and descriptions, and select the objects you want to monitor. You can then create SNMP monitors, configure thresholds, and receive alerts when monitored values change.
Supported Devices
- H3C (3Com/Huawei) managed switches and routers
Monitoring Examples
An administrator checks h3cAclNumGroupMatchOrder for an ACL group to confirm rules are being evaluated in the intended order before diagnosing a rule that appears to be silently overridden.
What Can Be Monitored
- ACL group and rule configuration
This MIB depends on
Related MIBs
Imported Objects
From A3COM-HUAWEI-OID-MIB
| h3cCommon | OBJECT-IDENTITY |
From INET-ADDRESS-MIB
| InetAddress | |
| InetAddressPrefixLength | |
| InetAddressType |
From SNMPv2-SMI
| Counter32 | |
| Counter64 | |
| Integer32 | |
| IpAddress | |
| MODULE-IDENTITY | |
| NOTIFICATION-TYPE | |
| OBJECT-TYPE | |
| Unsigned32 |
From SNMPv2-TC
| MacAddress | |
| RowStatus | |
| TEXTUAL-CONVENTION | |
| TruthValue |
How to Use in IPNetwork Monitor
Example using h3cAclBasicCount OID:
OIDs
| OID symbolic | OID numeric | Type | Access | Description |
|---|---|---|---|---|
| h3cAcl | 1.3.6.1.4.1.43.45.1.10.2.8 | ACL management information base for managing devices that support access control list and packet filtering. | ||
| I32 h3cAclActiveAclIndex | 1.3.6.1.4.1.43.45.1.10.2.8.1.9.1.1 | Integer32 | not-accessible | Acl index. |
| INT h3cAclActiveDirection | 1.3.6.1.4.1.43.45.1.10.2.8.1.9.1.4 | INTEGER | not-accessible | Direction. |
| h3cAclActiveEntry | 1.3.6.1.4.1.43.45.1.10.2.8.1.9.1 | not-accessible | The entry of active acl table. | |
| I32 h3cAclActiveIfIndex | 1.3.6.1.4.1.43.45.1.10.2.8.1.9.1.2 | Integer32 | not-accessible | IfIndex. |
| I32 h3cAclActiveIpAclNum | 1.3.6.1.4.1.43.45.1.10.2.8.1.9.1.7 | Integer32 | read-create | The number of the IP acl. |
| I32 h3cAclActiveIpAclSubitem | 1.3.6.1.4.1.43.45.1.10.2.8.1.9.1.8 | Integer32 | read-create | The subitem of the IP acl. |
| I32 h3cAclActiveLinkAclNum | 1.3.6.1.4.1.43.45.1.10.2.8.1.9.1.9 | Integer32 | read-create | The num of the link acl. |
| I32 h3cAclActiveLinkAclSubitem | 1.3.6.1.4.1.43.45.1.10.2.8.1.9.1.10 | Integer32 | read-create | The subitem of the link acl. |
| ROW h3cAclActiveRowStatus | 1.3.6.1.4.1.43.45.1.10.2.8.1.9.1.12 | RowStatus | read-create | RowStatus, now support three state: CreateAndGo, Active, Destroy. |
| T/F h3cAclActiveRuntime | 1.3.6.1.4.1.43.45.1.10.2.8.1.9.1.11 | TruthValue | read-only | Is run or not. |
| h3cAclActiveTable | 1.3.6.1.4.1.43.45.1.10.2.8.1.9 | not-accessible | Active acl. | |
| I32 h3cAclActiveUserAclNum | 1.3.6.1.4.1.43.45.1.10.2.8.1.9.1.5 | Integer32 | read-create | The number of the user acl. |
| I32 h3cAclActiveUserAclSubitem | 1.3.6.1.4.1.43.45.1.10.2.8.1.9.1.6 | Integer32 | read-create | The subitem of the user acl. |
| I32 h3cAclActiveVlanID | 1.3.6.1.4.1.43.45.1.10.2.8.1.9.1.3 | Integer32 | not-accessible | The lower 16 bits is Vlan ID, the higher 16 bits, if not zero, it describes the slot ID of the L3plus board. |
| I32 h3cAclAdvancedAclNum | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.1 | Integer32 | not-accessible | The index of advanced acl group. |
| INT h3cAclAdvancedAct | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.3 | INTEGER | read-create | The action of Advance acl rule. |
| C32 h3cAclAdvancedCount | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.25 | Counter32 | read-only | The count of matched by advanced rule. |
| INT h3cAclAdvancedCountClear | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.26 | INTEGER | read-create | Reset the value of counter. |
| IP h3cAclAdvancedDestIp | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.10 | IpAddress | read-create | Destination IP-address of advanced acl group. |
| INT h3cAclAdvancedDestOp | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.12 | INTEGER | read-create | The destination IP-address's operator of advanced acl group. |
| I32 h3cAclAdvancedDestPort1 | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.13 | Integer32 | read-create | The fourth layer destination port1. |
| I32 h3cAclAdvancedDestPort2 | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.14 | Integer32 | read-create | The fourth layer destination port2. |
| IP h3cAclAdvancedDestWild | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.11 | IpAddress | read-create | Destination IP-address wild of advanced acl group. |
| I32 h3cAclAdvancedDscp | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.17 | Integer32 | read-create | The value of DSCP. Value of DSCP af11 Specify Assured Forwarding 11 service(10) af12 Specify Assured Forwarding 12 service(12) af13 Specify Assured Forwarding 13 service(14) af21 Specify Assured Forwarding 21 service(18) af22 Specify Assured Forwarding 22 service(20) af23 Specify Assured Forwarding 23 service(22) af31 Specify Assured Forwarding 31 service(26) af32 Specify Assured Forwarding 32 service(28) af33 Specify Assured Forwarding 33 service(30) af41 Specify Assured Forwarding 41 service(34) af42 Specify Assured Forwarding 42 service(36) af43 Specify Assured Forwarding 43 service(38) be Specify Best Effort service(0) cs1 Specify Class Selector 1 service(8) cs2 Specify Class Selector 2 service(16) cs3 Specify Class Selector 3 service(24) cs4 Specify Class Selector 4 service(32) cs5 Specify Class Selector 5 service(40) cs6 Specify Class Selector 6 service(48) cs7 Specify Class Selector 7 service(56) ef Specify Expedited Forwarding service(46) |
| T/F h3cAclAdvancedEnable | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.24 | TruthValue | read-only | The rule is active or not. true : active false : inactive |
| T/F h3cAclAdvancedEstablish | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.18 | TruthValue | read-create | Establish flag. |
| T/F h3cAclAdvancedFragments | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.22 | TruthValue | read-create | The flag of matching fragmented packet. |
| I32 h3cAclAdvancedIcmpCode | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.21 | Integer32 | read-create | The code of ICMP packet. |
| I32 h3cAclAdvancedIcmpType | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.20 | Integer32 | read-create | The type of ICMP packet. Integer32 ICMP type echo Type=8, Code=0 echo-reply Type=0, Code=0 fragmentneed-DFset Type=3, Code=4 host-redirect Type=5, Code=1 host-tos-redirect Type=5, Code=3 host-unreachable Type=3, Code=1 information-reply Type=16, Code=0 information-request Type=15, Code=0 net-redirect Type=5, Code=0 net-tos-redirect Type=5, Code=2 net-unreachable Type=3, Code=0 parameter-problem Type=12, Code=0 port-unreachable Type=3, Code=3 protocol-unreachable Type=3, Code=2 reassembly-timeout Type=11, Code=1 source-quench Type=4, Code=0 source-route-failed Type=3, Code=5 timestamp-reply Type=14, Code=0 timestamp-request Type=13, Code=0 ttl-exceeded Type=11, Code=0 |
| T/F h3cAclAdvancedLog | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.23 | TruthValue | read-create | The flag of log. |
| I32 h3cAclAdvancedPrecedence | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.15 | Integer32 | read-create | The value of IP-packet's precedence. Value of precedence routine Specify routine precedence(0) priority Specify priority precedence(1) immediate Specify immediate precedence(2) flash Specify flash precedence(3) flash-override Specify flash-override precedence(4) critical Specify critical precedence(5) internet Specify internetwork control precedence(6) network Specify network control precedence(7) |
| I32 h3cAclAdvancedProtocol | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.4 | Integer32 | read-create | The protocol-type of advanced acl group. Protocol number gre GRE tunneling(47) icmp Internet Control Message Protocol(1) igmp Internet Group Management Protocol(2) ip Any IP protocol ipinip IP in IP tunneling(4) ospf OSPF routing protocol(89) tcp Transmission Control Protocol (6) udp User Datagram Protocol (17) |
| ROW h3cAclAdvancedRowStatus | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.27 | RowStatus | read-create | RowStatus, now support three state: CreateAndGo, Active, Destroy. |
| h3cAclAdvancedRuleEntry | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1 | not-accessible | Define the index of h3cAclAdvancedRuleTable. | |
| h3cAclAdvancedRuleTable | 1.3.6.1.4.1.43.45.1.10.2.8.1.5 | not-accessible | Configure the rule for advanced acl group. | |
| IP h3cAclAdvancedSrcIp | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.5 | IpAddress | read-create | Source IP-address of advanced acl group. |
| INT h3cAclAdvancedSrcOp | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.7 | INTEGER | read-create | The source IP-address's operator of advanced acl group. |
| I32 h3cAclAdvancedSrcPort1 | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.8 | Integer32 | read-create | The fourth layer source port1. |
| I32 h3cAclAdvancedSrcPort2 | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.9 | Integer32 | read-create | The fourth layer source port2. |
| IP h3cAclAdvancedSrcWild | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.6 | IpAddress | read-create | Source IP-address wild of advanced acl group. |
| I32 h3cAclAdvancedSubitem | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.2 | Integer32 | not-accessible | The subindex of advanced acl group. |
| OCT h3cAclAdvancedTimeRangeName | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.19 | OCTET STRING | read-create | The Time-range of advanced acl rule. |
| I32 h3cAclAdvancedTos | 1.3.6.1.4.1.43.45.1.10.2.8.1.5.1.16 | Integer32 | read-create | The value of IP-packet's TOS. Value of TOS(type of service) max-reliability Match packets with max reliable TOS(2) max-throughput Match packets with max throughput TOS(4) min-delay Match packets with min delay TOS(8) min-monetary-cost Match packets with min monetary cost TOS(1) normal Match packets with normal TOS(0) |
| I32 h3cAclBasicAclNum | 1.3.6.1.4.1.43.45.1.10.2.8.1.4.1.1 | Integer32 | not-accessible | The index of basic acl group. |
| INT h3cAclBasicAct | 1.3.6.1.4.1.43.45.1.10.2.8.1.4.1.3 | INTEGER | read-create | The action of basic acl rule. |
| C32 h3cAclBasicCountEx | 1.3.6.1.4.1.43.45.1.10.2.8.1.4.1.10 | Counter32 | read-only | The count of matched by basic rule. |
| INT h3cAclBasicCountClear | 1.3.6.1.4.1.43.45.1.10.2.8.1.4.1.11 | INTEGER | read-create | Reset the value of counter. |
| T/F h3cAclBasicEnable | 1.3.6.1.4.1.43.45.1.10.2.8.1.4.1.9 | TruthValue | read-only | The rule is active or not. true : active false : inactive |
| T/F h3cAclBasicFragments | 1.3.6.1.4.1.43.45.1.10.2.8.1.4.1.7 | TruthValue | read-create | The flag of matching fragmented packet. |
| T/F h3cAclBasicLog | 1.3.6.1.4.1.43.45.1.10.2.8.1.4.1.8 | TruthValue | read-create | The flag of log. |
| ROW h3cAclBasicRowStatus | 1.3.6.1.4.1.43.45.1.10.2.8.1.4.1.12 | RowStatus | read-create | RowStatus, now support three state: CreateAndGo, Active, Destroy. |
| h3cAclBasicRuleEntry | 1.3.6.1.4.1.43.45.1.10.2.8.1.4.1 | not-accessible | Define the index of h3cAclBasicRuleTable. | |
| h3cAclBasicRuleTable | 1.3.6.1.4.1.43.45.1.10.2.8.1.4 | not-accessible | Configure the rule for basic acl group. | |
| IP h3cAclBasicSrcIp | 1.3.6.1.4.1.43.45.1.10.2.8.1.4.1.4 | IpAddress | read-create | Source IP-address of basic acl rule. |
| IP h3cAclBasicSrcWild | 1.3.6.1.4.1.43.45.1.10.2.8.1.4.1.5 | IpAddress | read-create | Source IP-address wild of basic acl rule. |
| I32 h3cAclBasicSubitem | 1.3.6.1.4.1.43.45.1.10.2.8.1.4.1.2 | Integer32 | not-accessible | The subindex of basic acl group. |
| OCT h3cAclBasicTimeRangeName | 1.3.6.1.4.1.43.45.1.10.2.8.1.4.1.6 | OCTET STRING | read-create | The Time-range of basic acl rule. |
| h3cAclEnUserAclGroup | 1.3.6.1.4.1.43.45.1.10.2.8.2.4 | |||
| RUL h3cAclEnUserAct | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3.1.3 | RuleAction | read-create | The action of user defined acl rule. |
| OCT h3cAclEnUserComment | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3.1.15 | OCTET STRING | read-create | The description of ACL rule. Default value is Zero-length String. |
| U32 h3cAclEnUserCount | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3.1.12 | Unsigned32 | read-only | The count of matched by the rule. |
| NUM h3cAclEnUserCountClear | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3.1.13 | CounterClear | read-write | Reset the value of counter. |
| T/F h3cAclEnUserCounting | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3.1.17 | TruthValue | read-create | The packet will be counted when it matches the rule. It is disabled by default. |
| T/F h3cAclEnUserEnable | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3.1.14 | TruthValue | read-only | The rule is active or not. true : active false : inactive |
| h3cAclEnUserEntry | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3.1 | not-accessible | User defined acl group entry. | |
| OCT h3cAclEnUserIPv4String | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3.1.7 | OCTET STRING | read-create | The rule, matching IPv4 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is null. |
| OCT h3cAclEnUserIPv6String | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3.1.8 | OCTET STRING | read-create | The rule, matching IPv6 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is null. |
| OCT h3cAclEnUserL2String | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3.1.5 | OCTET STRING | read-create | The rule, matching layer 2 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is null. |
| OCT h3cAclEnUserL4String | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3.1.9 | OCTET STRING | read-create | The rule, matching layer 4 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is null. |
| OCT h3cAclEnUserL5String | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3.1.10 | OCTET STRING | read-create | The rule, matching layer 5 packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is null. |
| T/F h3cAclEnUserLog | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3.1.16 | TruthValue | read-create | The packet will be logged when it matches the rule. It is disabled by default. |
| OCT h3cAclEnUserMplsString | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3.1.6 | OCTET STRING | read-create | The rule, matching mpls packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value is defined by product and it indicates offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: '10','10af','ffff'. Default value is null. |
| ROW h3cAclEnUserRowStatus | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3.1.2 | RowStatus | read-create | RowStatus. |
| I32 h3cAclEnUserRuleIndex | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3.1.1 | Integer32 | not-accessible | The subitem of the user acl. |
| OCT h3cAclEnUserStartString | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3.1.4 | OCTET STRING | read-create | The rule, matching packets, input like this: 'RuleOffset','RuleString','RuleMask'. RuleOffset: The value of this object is defined by product and it indicates the offset of the rule mask in the packet(unit: byte). RuleString: The length of RuleString is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. RuleMask: The length of RuleMask is defined by product. The string must be hexadecimal. The length of string must be multiple of 2. For example: 10,10af,ffff. Default value is null. |
| h3cAclEnUserTable | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3 | not-accessible | A table of user acl group information. If some objects of this table are not supported by some products, these objects can't be created, changed and applied. Default value of these objects will be returned when they are read. | |
| OCT h3cAclEnUserTimeRangeName | 1.3.6.1.4.1.43.45.1.10.2.8.2.4.3.1.11 | OCTET STRING | read-create | The Time-range of user acl rule. Default value is null. |
| INT h3cAclIDSAct | 1.3.6.1.4.1.43.45.1.10.2.8.1.10.1.12 | INTEGER | read-create | The action of IDS acl rule. |
| U32 h3cAclIDSDenyTime | 1.3.6.1.4.1.43.45.1.10.2.8.1.10.1.11 | Unsigned32 | read-create | The maximum number of seconds which deny for this acl rule. |
| IP h3cAclIDSDestIp | 1.3.6.1.4.1.43.45.1.10.2.8.1.10.1.6 | IpAddress | read-create | Destination IP-address of IDS acl rule. |
| MAC h3cAclIDSDestMac | 1.3.6.1.4.1.43.45.1.10.2.8.1.10.1.3 | MacAddress | read-create | Destination mac of IDS acl rule. |
| I32 h3cAclIDSDestPort | 1.3.6.1.4.1.43.45.1.10.2.8.1.10.1.9 | Integer32 | read-create | The fourth layer destination port. |
| IP h3cAclIDSDestWild | 1.3.6.1.4.1.43.45.1.10.2.8.1.10.1.7 | IpAddress | read-create | Destination IP-address wild of IDS acl rule. |
| h3cAclIDSEntry | 1.3.6.1.4.1.43.45.1.10.2.8.1.10.1 | not-accessible | The entry of acl ids table. | |
| OCT h3cAclIDSName | 1.3.6.1.4.1.43.45.1.10.2.8.1.10.1.1 | OCTET STRING | not-accessible | The name index of the IDS table. |
| I32 h3cAclIDSProtocol | 1.3.6.1.4.1.43.45.1.10.2.8.1.10.1.10 | Integer32 | read-create | The protocol-type of advanced acl group. Protocol number gre GRE tunneling(47) icmp Internet Control Message Protocol(1) igmp Internet Group Management Protocol(2) ip Any IP protocol ipinip IP in IP tunneling(4) ospf OSPF routing protocol(89) tcp Transmission Control Protocol (6) udp User Datagram Protocol (17) |
| ROW h3cAclIDSRowStatus | 1.3.6.1.4.1.43.45.1.10.2.8.1.10.1.13 | RowStatus | read-create | RowStatus, now supports three states: CreateAndGo, Active, and Destroy. |
| IP h3cAclIDSSrcIp | 1.3.6.1.4.1.43.45.1.10.2.8.1.10.1.4 | IpAddress | read-create | Source IP-address of IDS acl rule. |
| MAC h3cAclIDSSrcMac | 1.3.6.1.4.1.43.45.1.10.2.8.1.10.1.2 | MacAddress | read-create | Source mac of IDS acl rule. |
| I32 h3cAclIDSSrcPort | 1.3.6.1.4.1.43.45.1.10.2.8.1.10.1.8 | Integer32 | read-create | The fourth layer source port. |
| IP h3cAclIDSSrcWild | 1.3.6.1.4.1.43.45.1.10.2.8.1.10.1.5 | IpAddress | read-create | Source IP-address wild of IDS acl rule. |
| h3cAclIDSTable | 1.3.6.1.4.1.43.45.1.10.2.8.1.10 | not-accessible | Configure the rule for IDS. | |
| I32 h3cAclIfAclNum | 1.3.6.1.4.1.43.45.1.10.2.8.1.6.1.1 | Integer32 | not-accessible | The index of interface-based acl group. |
| INT h3cAclIfAct | 1.3.6.1.4.1.43.45.1.10.2.8.1.6.1.3 | INTEGER | read-create | The action of interface-based acl group. |
| T/F h3cAclIfAny | 1.3.6.1.4.1.43.45.1.10.2.8.1.6.1.5 | TruthValue | read-create | The flag of matching any interface. |
| C32 h3cAclIfCount | 1.3.6.1.4.1.43.45.1.10.2.8.1.6.1.9 | Counter32 | read-only | The count of matched by basic rule. |
| INT h3cAclIfCountClear | 1.3.6.1.4.1.43.45.1.10.2.8.1.6.1.10 | INTEGER | read-create | Reset the value of the rule's counter. |
| T/F h3cAclIfEnable | 1.3.6.1.4.1.43.45.1.10.2.8.1.6.1.8 | TruthValue | read-only | The rule is active or not. true : active false : inactive |
| I32 h3cAclIfIndex | 1.3.6.1.4.1.43.45.1.10.2.8.1.6.1.4 | Integer32 | read-create | The index of interface. |
| T/F h3cAclIfLog | 1.3.6.1.4.1.43.45.1.10.2.8.1.6.1.7 | TruthValue | read-create | The flag of log. |
| ROW h3cAclIfRowStatus | 1.3.6.1.4.1.43.45.1.10.2.8.1.6.1.11 | RowStatus | read-create | RowStatus, now support three state: CreateAndGo, Active, Destroy. |
| h3cAclIfRuleEntry | 1.3.6.1.4.1.43.45.1.10.2.8.1.6.1 | not-accessible | Define the index of h3cAclIfRuleTable. | |
| h3cAclIfRuleTable | 1.3.6.1.4.1.43.45.1.10.2.8.1.6 | not-accessible | Configure the rule for interface-based acl group. | |
| I32 h3cAclIfSubitem | 1.3.6.1.4.1.43.45.1.10.2.8.1.6.1.2 | Integer32 | not-accessible | The subindex of interface-based acl group. |
| OCT h3cAclIfTimeRangeName | 1.3.6.1.4.1.43.45.1.10.2.8.1.6.1.6 | OCTET STRING | read-create | The Time-range of interface-based acl rule. |
| RUL h3cAclIPAclAdvancedAct | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.3 | RuleAction | read-create | The action of advanced acl rule. |
| ADR h3cAclIPAclAdvancedAddrFlag | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.5 | AddressFlag | read-create | Address flag to select address. |
| OCT h3cAclIPAclAdvancedComment | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.35 | OCTET STRING | read-create | The description of ACL rule. Default value is Zero-length String. |
| U32 h3cAclIPAclAdvancedCount | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.31 | Unsigned32 | read-only | The count of matched by the rule. |
| NUM h3cAclIPAclAdvancedCountClear | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.32 | CounterClear | read-write | Reset the value of counter. |
| T/F h3cAclIPAclAdvancedCounting | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.37 | TruthValue | read-create | The packet will be counted when it matches the rule. It is disabled by default. |
| IP h3cAclIPAclAdvancedDestAddr | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.15 | InetAddress | read-create | The value of a local IP address available for this association. The type of this address is determined by the value of h3cAclIPAclAdvancedDestAddrType. |
| IPt h3cAclIPAclAdvancedDestAddrType | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.14 | InetAddressType | read-create | The IP addresses type of IP pool. |
| T/F h3cAclIPAclAdvancedDestAny | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.17 | TruthValue | read-create | The flag of matching any IP address. |
| POR h3cAclIPAclAdvancedDestOp | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.19 | PortOp | read-create | Destination port operation symbol of advanced acl group. |
| I32 h3cAclIPAclAdvancedDestPort1 | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.20 | Integer32 | read-create | The fourth layer destination port1. |
| I32 h3cAclIPAclAdvancedDestPort2 | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.21 | Integer32 | read-create | The fourth layer destination port2. |
| ADR h3cAclIPAclAdvancedDestPrefix | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.16 | InetAddressPrefixLength | read-create | Denotes the length of a generic Internet network address prefix. A value of n corresponds to an IP address mask which has n contiguous 1-bits from the most significant bit (MSB) and all other bits set to 0. |
| IP h3cAclIPAclAdvancedDestWild | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.18 | IpAddress | read-create | Destination IPv4 address wild. Only IPv4 Advanced Rule supports this object. Default value is '0.0.0.0'. |
| DSC h3cAclIPAclAdvancedDscp | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.26 | DSCPValue | read-create | The value of DSCP of IP packet. |
| T/F h3cAclIPAclAdvancedEnable | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.33 | TruthValue | read-only | The rule is active or not. true : active false : inactive |
| h3cAclIPAclAdvancedEntry | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1 | not-accessible | Advanced acl group information. | |
| U32 h3cAclIPAclAdvancedFlowLabel | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.42 | Unsigned32 | read-create | The value of flow label of IPv6 packet header. |
| FRA h3cAclIPAclAdvancedFragmentFlag | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.29 | FragmentFlag | read-create | The flag of matching fragmented packet, and now support two value: 0 or 2 . |
| I32 h3cAclIPAclAdvancedIcmpCode | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.23 | Integer32 | read-create | The code of ICMP packet. |
| I32 h3cAclIPAclAdvancedIcmpType | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.22 | Integer32 | read-create | The type of ICMP packet. |
| T/F h3cAclIPAclAdvancedLog | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.30 | TruthValue | read-create | Log matched packets. |
| I32 h3cAclIPAclAdvancedPrecedence | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.24 | Integer32 | read-create | The value of IP-packet's precedence. Value of precedence routine Specify routine precedence(0) priority Specify priority precedence(1) immediate Specify immediate precedence(2) flash Specify flash precedence(3) flash-override Specify flash-override precedence(4) critical Specify critical precedence(5) internet Specify internetwork control precedence(6) network Specify network control precedence(7) |
| I32 h3cAclIPAclAdvancedProtocol | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.4 | Integer32 | read-create | The protocol-type of advanced acl group. Protocol number gre GRE tunneling(47) icmp Internet Control Message Protocol(1) icmpv6 Internet Control Message Protocol6(58) igmp Internet Group Management Protocol(2) ip Any IPv4 protocol ipv6 Any IPv6 protocol ipinip IP in IP tunneling(4) ospf OSPF routing protocol(89) tcp Transmission Control Protocol (6) udp User Datagram Protocol (17) ipv6-ah IPv6 Authentication Header(51) ipv6-esp IPv6 Encapsulating Security Payload(50) |
| T/F h3cAclIPAclAdvancedReflective | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.36 | TruthValue | read-create | The flag of reflective. |
| T/F h3cAclIPAclAdvancedRouteTypeAny | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.40 | TruthValue | read-create | The flag of matching any type of routing header of IPv6 packet. |
| I32 h3cAclIPAclAdvancedRouteTypeValue | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.41 | Integer32 | read-create | The type of routing header of IPv6 packet. |
| ROW h3cAclIPAclAdvancedRowStatus | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.2 | RowStatus | read-create | RowStatus. |
| I32 h3cAclIPAclAdvancedRuleIndex | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.1 | Integer32 | not-accessible | The rule index of advanced acl group. As a Simple ACL group, the value of this object must be 0. As an Advanced ACL group, the value of this object is ranging from 0 to 65534. |
| IP h3cAclIPAclAdvancedSrcAddr | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.7 | InetAddress | read-create | The value of a local IP address available for this association. The type of this address is determined by the value of h3cAclIPAclAdvancedSrcAddrType. |
| IPt h3cAclIPAclAdvancedSrcAddrType | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.6 | InetAddressType | read-create | The IP addresses type of IP pool. |
| T/F h3cAclIPAclAdvancedSrcAny | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.9 | TruthValue | read-create | The flag of matching any IP address. |
| POR h3cAclIPAclAdvancedSrcOp | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.11 | PortOp | read-create | Source port operation symbol of advanced acl group. |
| I32 h3cAclIPAclAdvancedSrcPort1 | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.12 | Integer32 | read-create | The fourth layer source port1. |
| I32 h3cAclIPAclAdvancedSrcPort2 | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.13 | Integer32 | read-create | The fourth layer source port2. |
| ADR h3cAclIPAclAdvancedSrcPrefix | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.8 | InetAddressPrefixLength | read-create | Denotes the length of a generic Internet network address prefix. A value of n corresponds to an IP address mask which has n contiguous 1-bits from the most significant bit (MSB) and all other bits set to 0. |
| IP h3cAclIPAclAdvancedSrcWild | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.10 | IpAddress | read-create | Source IPv4 address wild. Only IPv4 Advanced Rule supports this object. Default value is '0.0.0.0'. |
| h3cAclIPAclAdvancedTable | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3 | not-accessible | A table of advanced and simple acl group. If some objects of this table are not supported by some products, these objects can't be created, changed and applied. Default value of these objects will be returned when they are read. | |
| TCP h3cAclIPAclAdvancedTCPFlag | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.28 | TCPFlag | read-create | The packet type of TCP protocol. |
| BIT h3cAclIPAclAdvancedTCPFlagMask | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.38 | Bits | read-create | The TCP Flag Mask. This is a bit-map of possible conditions. The various bit positions are: |0 |tcpack | |1 |tcpfin | |2 |tcppsh | |3 |tcprst | |4 |tcpsyn | |5 |tcpurg | |
| BIT h3cAclIPAclAdvancedTCPFlagValue | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.39 | Bits | read-create | The TCP Flag Value. This is a bit-map of possible conditions. The various bit positions are: |0 |tcpack | |1 |tcpfin | |2 |tcppsh | |3 |tcprst | |4 |tcpsyn | |5 |tcpurg | |
| OCT h3cAclIPAclAdvancedTimeRangeName | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.27 | OCTET STRING | read-create | The Time-range of advanced acl rule. Default value is null. |
| I32 h3cAclIPAclAdvancedTos | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.25 | Integer32 | read-create | The value of IP-packet's TOS. Value of TOS(type of service) max-reliability Match packets with max reliable TOS(2) max-throughput Match packets with max throughput TOS(4) min-delay Match packets with min delay TOS(8) min-monetary-cost Match packets with min monetary cost TOS(1) normal Match packets with normal TOS(0) |
| OCT h3cAclIPAclAdvancedVpnInstanceName | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.3.1.34 | OCTET STRING | read-create | The VPN name that the rule will be applied. Default value is null. |
| RUL h3cAclIPAclBasicAct | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.3 | RuleAction | read-create | The action of basic acl rule. |
| OCT h3cAclIPAclBasicComment | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.16 | OCTET STRING | read-create | The description of ACL rule. Default value is Zero-length String. |
| U32 h3cAclIPAclBasicCount | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.12 | Unsigned32 | read-only | The count of matched by the rule. |
| NUM h3cAclIPAclBasicCountClear | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.13 | CounterClear | read-write | Reset the value of counter. |
| T/F h3cAclIPAclBasicCounting | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.17 | TruthValue | read-create | The packet will be counted when it matches the rule. It is disabled by default. |
| T/F h3cAclIPAclBasicEnable | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.14 | TruthValue | read-only | The rule is active or not. true : active false : inactive |
| h3cAclIPAclBasicEntry | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1 | not-accessible | Basic rule group information. | |
| FRA h3cAclIPAclBasicFragmentFlag | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.10 | FragmentFlag | read-create | The flag of matching fragmented packets. |
| T/F h3cAclIPAclBasicLog | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.11 | TruthValue | read-create | The packet will be logged when it matches the rule. |
| T/F h3cAclIPAclBasicRouteTypeAny | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.18 | TruthValue | read-create | The flag of matching any type of routing header of IPv6 packet. |
| I32 h3cAclIPAclBasicRouteTypeValue | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.19 | Integer32 | read-create | Match specify type of routing header of IPv6 packet. |
| ROW h3cAclIPAclBasicRowStatus | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.2 | RowStatus | read-create | RowStatus. |
| I32 h3cAclIPAclBasicRuleIndex | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.1 | Integer32 | not-accessible | The rule index of basic acl group. |
| IP h3cAclIPAclBasicSrcAddr | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.5 | InetAddress | read-create | The value of a local IP address is available for this association. The type of this address is determined by the value of h3cAclIPAclBasicSrcAddrType. |
| IPt h3cAclIPAclBasicSrcAddrType | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.4 | InetAddressType | read-create | The IP addresses type of IP pool. |
| T/F h3cAclIPAclBasicSrcAny | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.7 | TruthValue | read-create | The flag of matching any IP address. |
| ADR h3cAclIPAclBasicSrcPrefix | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.6 | InetAddressPrefixLength | read-create | Denotes the length of a generic Internet network address prefix. A value of n corresponds to an IP address mask which has n contiguous 1-bits from the most significant bit (MSB) and all other bits set to 0. |
| IP h3cAclIPAclBasicSrcWild | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.8 | IpAddress | read-create | Source IPv4 address wild. Only IPv4 Basic Rule support this object. Default value is '0.0.0.0'. |
| h3cAclIPAclBasicTable | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2 | not-accessible | A table of basic rule group. If some objects of this table are not supported by some products, these objects can't be created, changed and applied. Default value of these objects will be returned when they are read. | |
| OCT h3cAclIPAclBasicTimeRangeName | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.9 | OCTET STRING | read-create | The Time-range of basic acl rule. Default value is null. |
| OCT h3cAclIPAclBasicVpnInstanceName | 1.3.6.1.4.1.43.45.1.10.2.8.2.2.2.1.15 | OCTET STRING | read-create | The VPN name, which the rule will be applied. Default value is null. |
| h3cAclIPAclGroup | 1.3.6.1.4.1.43.45.1.10.2.8.2.2 | |||
| I32 h3cAclLinkAclNum | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.1 | Integer32 | not-accessible | The index of link-based acl group. |
| INT h3cAclLinkAct | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.3 | INTEGER | read-create | The action of link-based acl group. |
| T/F h3cAclLinkDestAny | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.17 | TruthValue | read-create | The flag of matching any destination. |
| I32 h3cAclLinkDestIfIndex | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.16 | Integer32 | read-create | Destination IfIndex of link acl rule. |
| MAC h3cAclLinkDestMac | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.14 | MacAddress | read-create | Destination mac of link acl rule. |
| MAC h3cAclLinkDestMacWild | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.15 | MacAddress | read-create | Destination mac wildzard of link acl rule. |
| I32 h3cAclLinkDestVlanId | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.13 | Integer32 | read-create | Destination vlan ID of link acl rule. |
| T/F h3cAclLinkEnable | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.19 | TruthValue | read-only | The rule is active or not. true : active false : inactive |
| h3cAclLinkEntry | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1 | not-accessible | The entry of the link acl table. | |
| INT h3cAclLinkFormatType | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.5 | INTEGER | read-create | Format type of link acl rule. |
| I32 h3cAclLinkL2LabelRangeBegin | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.26 | Integer32 | read-create | The beginning of VPLS VC label. |
| I32 h3cAclLinkL2LabelRangeEnd | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.27 | Integer32 | read-create | The end of VPLS VC label. |
| INT h3cAclLinkL2LabelRangeOp | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.25 | INTEGER | read-create | Operation symbol of the MPLS label. If the symbol is range(5), the objects h3cAclLinkL2LabelRangeBegin and h3cAclLinkL2LabelRangeEnd should have different values indicating a range. Otherwise, only h3cAclLinkL2LabelRangeBegin counts, object h3cAclLinkL2LabelRangeEnd is ignored. invalid(0) -- unavailable lt(1) -- less than eq(2) -- equal gt(3) -- great than neq(4) -- not equal range(5) -- a range with two ends included |
| OCT h3cAclLinkLsapCode | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.23 | OCTET STRING | read-create | The type of LSAP.0x0000...0xffff. |
| OCT h3cAclLinkLsapMask | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.24 | OCTET STRING | read-create | The mask of LSAP.0x0000...0xffff. |
| I32 h3cAclLinkMplsExp | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.28 | Integer32 | read-create | The value of MPLS-packet's Exp. |
| INT h3cAclLinkProtocol | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.4 | INTEGER | read-create | The layer 2 protocol-type of link acl rule. |
| ROW h3cAclLinkRowStatus | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.20 | RowStatus | read-create | RowStatus, now support three state: CreateAndGo, Active, Destroy. |
| T/F h3cAclLinkSrcAny | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.12 | TruthValue | read-create | The flag of matching any source. |
| I32 h3cAclLinkSrcIfIndex | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.11 | Integer32 | read-create | Source IfIndex of link acl rule. |
| MAC h3cAclLinkSrcMac | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.9 | MacAddress | read-create | Source mac of link acl rule. |
| MAC h3cAclLinkSrcMacWild | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.10 | MacAddress | read-create | Source mac wildzard of link acl rule. |
| I32 h3cAclLinkSrcVlanId | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.8 | Integer32 | read-create | Source vlan ID of link acl rule. |
| I32 h3cAclLinkSubitem | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.2 | Integer32 | not-accessible | The subindex of link-based acl group. |
| h3cAclLinkTable | 1.3.6.1.4.1.43.45.1.10.2.8.1.7 | not-accessible | Create link acl. | |
| OCT h3cAclLinkTimeRangeName | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.18 | OCTET STRING | read-create | The Time-range of link-based acl rule. |
| OCT h3cAclLinkTypeCode | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.21 | OCTET STRING | read-create | The type of layer 2 protocol.0x0000...0xffff. |
| OCT h3cAclLinkTypeMask | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.22 | OCTET STRING | read-create | The mask of layer 2 protocol.0x0000...0xffff. |
| I32 h3cAclLinkVlanPri | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.7 | Integer32 | read-create | Vlan priority of link acl rule. |
| INT h3cAclLinkVlanTag | 1.3.6.1.4.1.43.45.1.10.2.8.1.7.1.6 | INTEGER | read-create | The flag of vlan tag of link acl rule. |
| h3cAclMACAclGroup | 1.3.6.1.4.1.43.45.1.10.2.8.2.3 | |||
| RUL h3cAclMACAct | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.3 | RuleAction | read-create | The action of MAC acl rule. |
| OCT h3cAclMACComment | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.17 | OCTET STRING | read-create | The description of ACL rule. Default value is Zero-length String. |
| I32 h3cAclMACCos | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.12 | Integer32 | read-create | Vlan priority of MAC acl rule. |
| U32 h3cAclMACCount | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.14 | Unsigned32 | read-only | The count of matched frame by the rule. |
| NUM h3cAclMACCountClear | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.15 | CounterClear | read-write | Reset the value of counter. |
| T/F h3cAclMACCounting | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.19 | TruthValue | read-create | The packet will be counted when it matches the rule. It is disabled by default. |
| MAC h3cAclMACDestMac | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.8 | MacAddress | read-create | Destination MAC of MAC acl rule. Default value is '00:00:00:00:00:00'. |
| MAC h3cAclMACDestMacWild | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.9 | MacAddress | read-create | Destination MAC wildzard of MAC acl rule. Default value is '00:00:00:00:00:00' |
| T/F h3cAclMACEnable | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.16 | TruthValue | read-only | The rule is active or not. true : active false : inactive |
| h3cAclMACEntry | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1 | not-accessible | MAC acl group information. | |
| T/F h3cAclMACLog | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.18 | TruthValue | read-create | The packet will be logged when it matches the rule. It is disabled by default. |
| OCT h3cAclMACLsapCode | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.10 | OCTET STRING | read-create | The type of LSAP. |
| OCT h3cAclMACLsapMask | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.11 | OCTET STRING | read-create | The mask of LSAP. |
| ROW h3cAclMACRowStatus | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.2 | RowStatus | read-create | RowStatus. |
| I32 h3cAclMACRuleIndex | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.1 | Integer32 | not-accessible | The rule index of MAC-based acl group. |
| MAC h3cAclMACSrcMac | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.6 | MacAddress | read-create | Source MAC of MAC acl rule. Default value is '00:00:00:00:00:00'. |
| MAC h3cAclMACSrcMacWild | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.7 | MacAddress | read-create | Source MAC wildzard of MAC acl rule. Default value is '00:00:00:00:00:00'. |
| h3cAclMACTable | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1 | not-accessible | A table of MAC acl group. If some objects of this table are not supported by some products, these objects can't be created, changed and applied. Default value of these objects will be returned when they are read. | |
| OCT h3cAclMACTimeRangeName | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.13 | OCTET STRING | read-create | The Time-range of MAC acl rule. Default value is null. |
| OCT h3cAclMACTypeCode | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.4 | OCTET STRING | read-create | The type of protocol. |
| OCT h3cAclMACTypeMask | 1.3.6.1.4.1.43.45.1.10.2.8.2.3.1.1.5 | OCTET STRING | read-create | The mask of protocol. |
| h3cAclMib2CapabilityEntry | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.2.1 | not-accessible | The information of Capability of mib2. | |
| h3cAclMib2CapabilityTable | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.2 | not-accessible | The capability of mib2. | |
| OCT h3cAclMib2CharacteristicsDesc | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.2.1.5 | OCTET STRING | read-only | The description of characteristics. |
| I32 h3cAclMib2CharacteristicsIndex | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.2.1.4 | Integer32 | not-accessible | The characteristics index of mib2. See DESCRIPTION of h3cAclMib2CharacteristicsValue to get detail information about the value of this object. |
| U32 h3cAclMib2CharacteristicsValue | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.2.1.6 | Unsigned32 | read-only | The value of capability of this object. TypeOfRuleStringValue : notSupport(0) and the length of RuleString. TypeOfCodeValue : OnlyOneNotSupport(0), MoreThanOneNotSupport(1) If h3cAclMib2CharacteristicsValue is 'moreThanOneNotSupport', h3cAclMib2CharacteristicsDesc must be used to depict which protocols are not supported. The output value of h3cAclMib2CharacteristicsDesc has the format of 'a,b'. For example, 'ip,rarp'. layer3 Module: Index Characteristics value 1 SourceIPAddress notSupport(0) 2 DestinationIPAddress notSupport(0) 3 SourcePort notSupport(0) 4 DestinationPort notSupport(0) 5 IPPrecedence notSupport(0) 6 TOS notSupport(0) 7 DSCP notSupport(0) 8 TCPFlag notSupport(0) 9 FragmentFlag notSupport(0) 10 Log notSupport(0) 11 RuleMatchCounter notSupport(0) 12 ResetRuleMatchCounter notSupport(0) 13 VPN notSupport(0) 15 protocol notSupport(0) 16 AddressFlag notSupport(0) layer2 Module: Index Characteristics value 1 ProtocolType TypeOfCodeValue 2 SourceMAC notSupport(0) 3 DestinationMAC notSupport(0) 4 LSAPType TypeOfCodeValue 5 CoS notSupport(0) UserDefined Module: Index Characteristics value 1 UserDefaultOffset TypeOfRuleStringValue 2 UserL2RuleOffset TypeOfRuleStringValue 3 UserMplsOffset TypeOfRuleStringValue 4 UserIPv4Offset TypeOfRuleStringValue 5 UserIPv6Offset TypeOfRuleStringValue 6 UserL4Offset TypeOfRuleStringValue 7 UserL5Offset TypeOfRuleStringValue |
| I32 h3cAclMib2EntityIndex | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.2.1.2 | Integer32 | not-accessible | The index of entity. If h3cAclMib2EntityType is system, the value of this object is 0. If h3cAclMib2EntityType is interface, the value of this object is equal to 'ifIndex'. |
| INT h3cAclMib2EntityType | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.2.1.1 | INTEGER | not-accessible | The type of entity . system: The entity is systemic level. interface: The entity is interface level. |
| h3cAclMib2GlobalGroup | 1.3.6.1.4.1.43.45.1.10.2.8.2.1 | |||
| INT h3cAclMib2Mode | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.1.1 | INTEGER | read-write | The applying mode of ACL. |
| INT h3cAclMib2ModuleIndex | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.2.1.3 | INTEGER | not-accessible | The module index of ACL. |
| h3cAclMib2NodesGroup | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.1 | |||
| h3cAclMib2Objects | 1.3.6.1.4.1.43.45.1.10.2.8.2 | |||
| BIT h3cAclMib2ObjectsCapabilities | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.1.3 | Bits | read-only | The objects of h3cAclMib2Objects. |
| INT h3cAclMib2ProcessingStatus | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.1.4 | INTEGER | read-only | The processing status of ACL operation. |
| I32 h3cAclMib2Version | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.1.2 | Integer32 | read-only | The version of this file. The output value has the format of 'xx'or 'xxx'. For example: 10 means 1.0; 125 means 12.5. |
| h3cAclMibObjects | 1.3.6.1.4.1.43.45.1.10.2.8.1 | |||
| INT h3cAclMode | 1.3.6.1.4.1.43.45.1.10.2.8.1.1 | INTEGER | read-write | Access-list mode. |
| OCT h3cAclNameGroupCreateName | 1.3.6.1.4.1.43.45.1.10.2.8.1.3.1.2 | OCTET STRING | read-create | The name of name-acl group. |
| h3cAclNameGroupEntry | 1.3.6.1.4.1.43.45.1.10.2.8.1.3.1 | not-accessible | Define the index of h3cAclNameGroupTable. | |
| I32 h3cAclNameGroupIndex | 1.3.6.1.4.1.43.45.1.10.2.8.1.3.1.1 | Integer32 | not-accessible | The index of name-acl group. |
| INT h3cAclNameGroupMatchOrder | 1.3.6.1.4.1.43.45.1.10.2.8.1.3.1.4 | INTEGER | read-create | The match-order of name-acl group. |
| ROW h3cAclNameGroupRowStatus | 1.3.6.1.4.1.43.45.1.10.2.8.1.3.1.6 | RowStatus | read-create | RowStatus, now support three state: CreateAndGo, Active, Destroy. |
| I32 h3cAclNameGroupSubitemNum | 1.3.6.1.4.1.43.45.1.10.2.8.1.3.1.5 | Integer32 | read-only | The number of name-acl group's node. |
| h3cAclNameGroupTable | 1.3.6.1.4.1.43.45.1.10.2.8.1.3 | not-accessible | Create acl-group that identified by name. | |
| INT h3cAclNameGroupTypes | 1.3.6.1.4.1.43.45.1.10.2.8.1.3.1.3 | INTEGER | read-create | The type of name-acl group. |
| NUM h3cAclNumberGroupCountClear | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.3.1.7 | CounterClear | read-write | Reset the value of counters of this group. |
| OCT h3cAclNumberGroupDescription | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.3.1.6 | OCTET STRING | read-create | Description of this acl group. |
| h3cAclNumberGroupEntry | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.3.1 | not-accessible | Number acl group information entry. | |
| I32 h3cAclNumberGroupIndex | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.3.1.2 | Integer32 | not-accessible | The group index of number acl. Basic type:2000..2999 Advanced type:3000..3999 MAC type:4000..4999 User type:5000..5999 Simple type:10000..42767 |
| INT h3cAclNumberGroupMatchOrder | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.3.1.4 | INTEGER | read-create | The match-order of number acl group. |
| OCT h3cAclNumberGroupName | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.3.1.9 | OCTET STRING | read-create | Name of this acl group. |
| ROW h3cAclNumberGroupRowStatus | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.3.1.3 | RowStatus | read-create | RowStatus. |
| C32 h3cAclNumberGroupRuleCounter | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.3.1.8 | Counter32 | read-only | The rule count of number acl group. |
| I32 h3cAclNumberGroupStep | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.3.1.5 | Integer32 | read-create | The step of rule index. |
| h3cAclNumberGroupTable | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.3 | not-accessible | A table of the number acl group information. | |
| INT h3cAclNumberGroupType | 1.3.6.1.4.1.43.45.1.10.2.8.2.1.3.1.1 | INTEGER | not-accessible | The type of number group. Basic ACL and Advanced ACL support ipv4 and ipv6. The range of Basic ACL is from 2000 to 2999. The range of Advanced ACL is from 3000 to 3999. Simple ACL supports ipv6 only. The range of Simple ACL is from 10000 to 42767. MAC ACL and User ACL support ipv4 only. The range of MAC ACL is from 4000 to 4999. The range of User ACL is from 5000 to 5999. |
| I32 h3cAclNumGroupAclNum | 1.3.6.1.4.1.43.45.1.10.2.8.1.2.1.1 | Integer32 | not-accessible | The index of number-acl group Interface type:1000..1999 Basic type:2000..2999 Advance type:3000..3999 Link type:4000..4999 User type:5000..5999 |
| INT h3cAclNumGroupCountClear | 1.3.6.1.4.1.43.45.1.10.2.8.1.2.1.5 | INTEGER | read-create | Reset the value of rules' counter, which belong to this group. |
| OCT h3cAclNumGroupDescription | 1.3.6.1.4.1.43.45.1.10.2.8.1.2.1.4 | OCTET STRING | read-write | The description of this acl group. |
| h3cAclNumGroupEntry | 1.3.6.1.4.1.43.45.1.10.2.8.1.2.1 | not-accessible | Define the index of h3cAclNumGroupTable. | |
| INT h3cAclNumGroupMatchOrder | 1.3.6.1.4.1.43.45.1.10.2.8.1.2.1.2 | INTEGER | read-create | The match-order of number-acl group. |
| ROW h3cAclNumGroupRowStatus | 1.3.6.1.4.1.43.45.1.10.2.8.1.2.1.6 | RowStatus | read-create | RowStatus, now support three state: CreateAndGo, Active, Destroy. |
| I32 h3cAclNumGroupSubitemNum | 1.3.6.1.4.1.43.45.1.10.2.8.1.2.1.3 | Integer32 | read-only | The number of number-acl group's node. |
| h3cAclNumGroupTable | 1.3.6.1.4.1.43.45.1.10.2.8.1.2 | not-accessible | Configure the match-order of number-acl group. | |
| h3cAclPacketFilterObjects | 1.3.6.1.4.1.43.45.1.10.2.8.3 | |||
| h3cAclPacketfilterTrap | 1.3.6.1.4.1.43.45.1.10.2.8.5 | |||
| h3cAclPacketfilterTrapObjects | 1.3.6.1.4.1.43.45.1.10.2.8.4 | |||
| OCT h3cAclPortRange | 1.3.6.1.4.1.43.45.1.10.2.8.2.5.1.1.5 | OCTET STRING | read-only | The port range associated with the chip. Commas are used to separate multiple port ranges, for example, Ethernet1/2 to Ethernet1/12, Ethernet1/31 to Ethernet1/48. |
| U32 h3cAclResourceChassis | 1.3.6.1.4.1.43.45.1.10.2.8.2.5.1.1.1 | Unsigned32 | not-accessible | The chassis number. On a centralized or distributed device, the value for this node is always zero. |
| U32 h3cAclResourceChip | 1.3.6.1.4.1.43.45.1.10.2.8.2.5.1.1.3 | Unsigned32 | not-accessible | The chip number. On a single chip device, the value for this node is always zero. |
| U32 h3cAclResourceConfigured | 1.3.6.1.4.1.43.45.1.10.2.8.2.5.1.1.8 | Unsigned32 | read-only | The amount of configured TCAM entries of the resource type. |
| h3cAclResourceGroup | 1.3.6.1.4.1.43.45.1.10.2.8.2.5 | |||
| U32 h3cAclResourceReserved | 1.3.6.1.4.1.43.45.1.10.2.8.2.5.1.1.7 | Unsigned32 | read-only | The amount of reserved TCAM entries of the resource type. |
| U32 h3cAclResourceSlot | 1.3.6.1.4.1.43.45.1.10.2.8.2.5.1.1.2 | Unsigned32 | not-accessible | The slot number. On a centralized device, the value for this node is always zero. |
| U32 h3cAclResourceTotal | 1.3.6.1.4.1.43.45.1.10.2.8.2.5.1.1.6 | Unsigned32 | read-only | Total TCAM entries of the resource type. |
| I32 h3cAclResourceType | 1.3.6.1.4.1.43.45.1.10.2.8.2.5.1.1.4 | Integer32 | not-accessible | The resource type. |
| OCT h3cAclResourceTypeDescription | 1.3.6.1.4.1.43.45.1.10.2.8.2.5.1.1.10 | OCTET STRING | read-only | The description of this resource type. |
| h3cAclResourceUsageEntry | 1.3.6.1.4.1.43.45.1.10.2.8.2.5.1.1 | not-accessible | Each row contains a brief description of the resource type, a port range associated with the chip, total, reserved, and configured amount of resource of this type, the percent of resource that has been allocated, and so on. | |
| U32 h3cAclResourceUsagePercent | 1.3.6.1.4.1.43.45.1.10.2.8.2.5.1.1.9 | Unsigned32 | read-only | The percent of TCAM entries that have been used for this resource type. |
| h3cAclResourceUsageTable | 1.3.6.1.4.1.43.45.1.10.2.8.2.5.1 | not-accessible | The table shows ACL resource usage information. Support for resource types that are denoted by h3cAclResourceType object varies with products. If a type is not supported, the corresponding row for the type will not be instantiated in this table. | |
| I32 h3cAclUserAclNum | 1.3.6.1.4.1.43.45.1.10.2.8.1.8.1.1 | Integer32 | not-accessible | The number of the user acl. |
| INT h3cAclUserAct | 1.3.6.1.4.1.43.45.1.10.2.8.1.8.1.3 | INTEGER | read-create | The action of the user acl. |
| T/F h3cAclUserEnable | 1.3.6.1.4.1.43.45.1.10.2.8.1.8.1.9 | TruthValue | read-only | The rule is active or not. true : active false : inactive |
| h3cAclUserEntry | 1.3.6.1.4.1.43.45.1.10.2.8.1.8.1 | not-accessible | The entry of user acl table. | |
| INT h3cAclUserFormatType | 1.3.6.1.4.1.43.45.1.10.2.8.1.8.1.4 | INTEGER | read-create | Format type. |
| ROW h3cAclUserRowStatus | 1.3.6.1.4.1.43.45.1.10.2.8.1.8.1.10 | RowStatus | read-create | RowStatus, now support three state: CreateAndGo, Active, Destroy. |
| OCT h3cAclUserRuleMask | 1.3.6.1.4.1.43.45.1.10.2.8.1.8.1.7 | OCTET STRING | read-create | Rule mask. |
| OCT h3cAclUserRuleStr | 1.3.6.1.4.1.43.45.1.10.2.8.1.8.1.6 | OCTET STRING | read-create | Rule string. |
| I32 h3cAclUserSubitem | 1.3.6.1.4.1.43.45.1.10.2.8.1.8.1.2 | Integer32 | not-accessible | The subitem of the user acl. |
| h3cAclUserTable | 1.3.6.1.4.1.43.45.1.10.2.8.1.8 | not-accessible | Create user acl. | |
| OCT h3cAclUserTimeRangeName | 1.3.6.1.4.1.43.45.1.10.2.8.1.8.1.8 | OCTET STRING | read-create | The Time-range of the user defined acl. |
| INT h3cAclUserVlanTag | 1.3.6.1.4.1.43.45.1.10.2.8.1.8.1.5 | INTEGER | read-create | Vlan tag exits or not. |
| OCT h3cMACfilterDestinationMac | 1.3.6.1.4.1.43.45.1.10.2.8.4.6 | OCTET STRING | accessible-for-notify | Destination MAC address. |
| OCT h3cMACfilterSourceMac | 1.3.6.1.4.1.43.45.1.10.2.8.4.5 | OCTET STRING | accessible-for-notify | Source MAC address. |
| NTF h3cMACfilterTrap | 1.3.6.1.4.1.43.45.1.10.2.8.5.0.1 | This notification is generated when a packet was processed by MAC address filter, but not every packet will generate one notification, the same notification only generate once in 30 seconds. | ||
| INT h3cPfilterAclGroupCountStatus | 1.3.6.1.4.1.43.45.1.10.2.8.3.3.1.2 | INTEGER | read-only | The status of enabling hardware count. If hardware count is not enabled, it returns success. success: enable hardware count successfully on all slots failed: failed to enable hardware count on all slots partialSuccess: failed to enable hardware count on some slots |
| C64 h3cPfilterAclGroupDenyBytes | 1.3.6.1.4.1.43.45.1.10.2.8.3.3.1.6 | Counter64 | read-only | The number of bytes denied. |
| C64 h3cPfilterAclGroupDenyPkts | 1.3.6.1.4.1.43.45.1.10.2.8.3.3.1.5 | Counter64 | read-only | The number of packets denied. |
| C64 h3cPfilterAclGroupPermitBytes | 1.3.6.1.4.1.43.45.1.10.2.8.3.3.1.4 | Counter64 | read-only | The number of bytes permitted. |
| C64 h3cPfilterAclGroupPermitPkts | 1.3.6.1.4.1.43.45.1.10.2.8.3.3.1.3 | Counter64 | read-only | The number of packets permitted. |
| h3cPfilterAclGroupRunInfoEntry | 1.3.6.1.4.1.43.45.1.10.2.8.3.3.1 | not-accessible | ACL group running information entry for packet filtering. | |
| h3cPfilterAclGroupRunInfoTable | 1.3.6.1.4.1.43.45.1.10.2.8.3.3 | not-accessible | A table of group running information of ACLs for packet filtering. If hardware count function is not supported or not enabled to the packet filter application, the statistics entry will be zero. | |
| INT h3cPfilterAclGroupStatus | 1.3.6.1.4.1.43.45.1.10.2.8.3.3.1.1 | INTEGER | read-only | The status of ACL group applied. success: ACL applied successfully on all slots failed: failed to apply ACL on all slots partialSuccess: failed to apply ACL on some slots |
| I32 h3cPfilterACLNumber | 1.3.6.1.4.1.43.45.1.10.2.8.4.3 | Integer32 | accessible-for-notify | ACL number. |
| INT h3cPfilterAclRuleCountStatus | 1.3.6.1.4.1.43.45.1.10.2.8.3.4.1.3 | INTEGER | read-only | The status of enabling rule's hardware count. If hardware count is not enabled, it returns success. success: enable hardware count successfully on all slots failed: failed to enable hardware count on all slots partialSuccess: failed to enable hardware count on some slots |
| I32 h3cPfilterAclRuleIndex | 1.3.6.1.4.1.43.45.1.10.2.8.3.4.1.1 | Integer32 | not-accessible | The ACL rule index. |
| C64 h3cPfilterAclRuleMatchBytes | 1.3.6.1.4.1.43.45.1.10.2.8.3.4.1.5 | Counter64 | read-only | The number of bytes matched. |
| C64 h3cPfilterAclRuleMatchPackets | 1.3.6.1.4.1.43.45.1.10.2.8.3.4.1.4 | Counter64 | read-only | The number of packets matched. |
| h3cPfilterAclRuleRunInfoEntry | 1.3.6.1.4.1.43.45.1.10.2.8.3.4.1 | not-accessible | ACL rule's running information entry. | |
| h3cPfilterAclRuleRunInfoTable | 1.3.6.1.4.1.43.45.1.10.2.8.3.4 | not-accessible | A table of rule's running information of ACLs for packet filtering. If hardware count function is not supported or not enabled to the packet filter application, the h3cPfilterAclRuleMatchPackets and h3cPfilterAclRuleMatchBytes will be zero. | |
| INT h3cPfilterAclRuleStatus | 1.3.6.1.4.1.43.45.1.10.2.8.3.4.1.2 | INTEGER | read-only | The status of rule application. success: rule applied successfully on all slots failed: failed to apply rule on all slots partialSuccess: failed to apply rule on some slots |
| OCT h3cPfilterAction | 1.3.6.1.4.1.43.45.1.10.2.8.4.4 | OCTET STRING | accessible-for-notify | Permit or deny. |
| I32 h3cPfilterApplyAclIndex | 1.3.6.1.4.1.43.45.1.10.2.8.3.2.1.5 | Integer32 | not-accessible | The ACL group index. Basic type: 2000..2999 Advanced type: 3000..3999 MAC type: 4000..4999 User type: 5000..5999 Default action type: 0 |
| INT h3cPfilterApplyAclType | 1.3.6.1.4.1.43.45.1.10.2.8.3.2.1.4 | INTEGER | not-accessible | ACL Type: IPv4, IPv6, default action. Take default action as a special ACL group. |
| NUM h3cPfilterApplyCountClear | 1.3.6.1.4.1.43.45.1.10.2.8.3.2.1.8 | CounterClear | read-write | Clear the value of counters. |
| DIR h3cPfilterApplyDirection | 1.3.6.1.4.1.43.45.1.10.2.8.3.2.1.3 | DirectionType | not-accessible | The direction of packet filter application. |
| h3cPfilterApplyEntry | 1.3.6.1.4.1.43.45.1.10.2.8.3.2.1 | not-accessible | Packet filter application information entry. | |
| T/F h3cPfilterApplyHardCount | 1.3.6.1.4.1.43.45.1.10.2.8.3.2.1.6 | TruthValue | read-create | Hardware count flag. true: enable hardware count false: disable hardware count |
| I32 h3cPfilterApplyObjIndex | 1.3.6.1.4.1.43.45.1.10.2.8.3.2.1.2 | Integer32 | not-accessible | The object ID of packet filter application. Interface: interface index, equal to ifIndex VLAN: VLAN ID, 1..4094 Global: 0 |
| INT h3cPfilterApplyObjType | 1.3.6.1.4.1.43.45.1.10.2.8.3.2.1.1 | INTEGER | not-accessible | The object type of packet filter application. interface: Apply an ACL to the interface to filter packets. vlan: Apply an ACL to the VLAN to filter packets. global: Apply an ACL globally to filter packets. |
| ROW h3cPfilterApplyRowStatus | 1.3.6.1.4.1.43.45.1.10.2.8.3.2.1.9 | RowStatus | read-create | RowStatus. |
| U32 h3cPfilterApplySequence | 1.3.6.1.4.1.43.45.1.10.2.8.3.2.1.7 | Unsigned32 | read-only | The configure sequence of packet filter application. |
| h3cPfilterApplyTable | 1.3.6.1.4.1.43.45.1.10.2.8.3.2 | not-accessible | A table of packet filter application. It's not supported to set default action on an entity, but supported to enable hardware count of default action on an entity. | |
| INT h3cPfilterDefaultAction | 1.3.6.1.4.1.43.45.1.10.2.8.3.1.1 | INTEGER | read-write | The default action of packet filter. By default, the packet filter permits packets that do not match any ACL rule to pass. |
| OCT h3cPfilterDirection | 1.3.6.1.4.1.43.45.1.10.2.8.4.2 | OCTET STRING | accessible-for-notify | Inbound or outbound. |
| OCT h3cPfilterInterface | 1.3.6.1.4.1.43.45.1.10.2.8.4.1 | OCTET STRING | accessible-for-notify | The interface which policy apply. |
| I32 h3cPfilterPacketNumber | 1.3.6.1.4.1.43.45.1.10.2.8.4.7 | Integer32 | accessible-for-notify | The number of packets permitted or denied by ACL. |
| INT h3cPfilterProcessingStatus | 1.3.6.1.4.1.43.45.1.10.2.8.3.1.2 | INTEGER | read-only | This object shows the status of the system when applying packet filter. It is forbidden to set or read in h3cAclPacketFilterObjects MIB module when the value is processing. |
| OCT h3cPfilterReceiveInterface | 1.3.6.1.4.1.43.45.1.10.2.8.4.8 | OCTET STRING | accessible-for-notify | The interface where packet come from. |
| h3cPfilterScalarGroup | 1.3.6.1.4.1.43.45.1.10.2.8.3.1 | |||
| h3cPfilterStatisticSumEntry | 1.3.6.1.4.1.43.45.1.10.2.8.3.5.1 | not-accessible | ACL rule's sum statistics information entry. | |
| h3cPfilterStatisticSumTable | 1.3.6.1.4.1.43.45.1.10.2.8.3.5 | not-accessible | A table of ACL rule's sum statistics information, accumulated by all entity application on all slots. | |
| I32 h3cPfilterSumAclIndex | 1.3.6.1.4.1.43.45.1.10.2.8.3.5.1.3 | Integer32 | not-accessible | The ACL group index. Basic type: 2000..2999 Advanced type: 3000..3999 MAC type: 4000..4999 User type: 5000..5999 |
| INT h3cPfilterSumAclType | 1.3.6.1.4.1.43.45.1.10.2.8.3.5.1.2 | INTEGER | not-accessible | ACL type, IPv4 or IPv6. |
| DIR h3cPfilterSumDirection | 1.3.6.1.4.1.43.45.1.10.2.8.3.5.1.1 | DirectionType | not-accessible | The direction of application. |
| I32 h3cPfilterSumRuleIndex | 1.3.6.1.4.1.43.45.1.10.2.8.3.5.1.4 | Integer32 | not-accessible | The ACL rule index. |
| C64 h3cPfilterSumRuleMatchBytes | 1.3.6.1.4.1.43.45.1.10.2.8.3.5.1.6 | Counter64 | read-only | The sum number of bytes matched the ACL rule. |
| C64 h3cPfilterSumRuleMatchPackets | 1.3.6.1.4.1.43.45.1.10.2.8.3.5.1.5 | Counter64 | read-only | The sum number of packets matched the ACL rule. |
| h3cPfilterTrapPrefix | 1.3.6.1.4.1.43.45.1.10.2.8.5.0 |
RFC description
Manages access control lists (ACLs) on H3C and Huawei network devices including IP, MAC, and advanced filtering rules.
Start monitoring H3C switches and routers with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.