ZXR10-PORTACL-MIB

MIB Reference — IPNetwork Monitor · Updated September 09, 2026

All MIBsZXR10-PORTACL-MIB

Organization: ZTE Corporation

Last Updated: 2016-11-21

Category: ZTE ZXR10 Security and Access Control

Description: Manages ZTE ZXR10 port-level access control lists for Layer 2 and Layer 3 traffic filtering on switch ports.

Start monitoring vendor-neutral, standards-based MIB, any SNMPv3-capable network device (SNMP engine identity/boot/clock status) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

What Is ZXR10-PORTACL-MIB?

This is a ZTE-specific MIB for the ZXR10 switch family, dedicated to port-level Access Control Lists that filter Layer 2 and Layer 3 traffic on individual switch ports. It exposes configuration objects for defining ACL rules and binding them to specific ports, distinct from the router-wide ACL-MIB by focusing on per-port enforcement typical of access-layer switching. Its monitoring value is security policy verification at the port level: administrators confirm which filtering rules are bound to which ports and, where counters are exposed, observe rule match activity to detect unauthorized traffic attempts or a rule that isn't behaving as intended. It works alongside standard bridge and interface MIBs since port ACLs are applied to physical or logical switch ports defined elsewhere. It is typically deployed by network engineers enforcing access-layer security policies on ZXR10 switches, where ZXR10-PORTACL-MIB SNMP monitoring supports enterprise or campus LAN security audits.

IPNetwork Monitor allows you to monitor SNMP objects defined in ZXR10-PORTACL-MIB. Use the built-in SNMP Monitoring Browser to explore available variables, view their current values and descriptions, and select the objects you want to monitor. You can then create SNMP monitors, configure thresholds, and receive alerts when monitored values change.

Supported Devices

  • ZTE ZXR10 switch

Monitoring Examples

An engineer checks the port-ACL binding table to confirm that a rule blocking a specific MAC address or IP range is correctly attached to an access port where a rogue device was detected. If unauthorized traffic continues to pass through that port, verifying the rule's match criteria and port binding in this MIB helps determine whether the ACL was misapplied to the wrong port or VLAN. No sample objects were present in the source extract, so exact object names cannot be confirmed here.

What Can Be Monitored

  • port ACL rule configuration
  • rule-to-port binding
  • rule match/hit counters
  • Layer 2/Layer 3 filter criteria
Imported Objects

From SNMPv2-CONF

MODULE-COMPLIANCE
NOTIFICATION-GROUP
OBJECT-GROUP

From SNMPv2-SMI

Counter32
Counter64
Integer32
MODULE-IDENTITY
NOTIFICATION-TYPE
OBJECT-TYPE
Unsigned32

From SNMPv2-TC

DisplayString
MacAddress
RowStatus
TEXTUAL-CONVENTION

From ZXR10-SMI

zxr10OBJECT-IDENTITY

How to Use in IPNetwork Monitor

Example using zxr10IPv4PortACLlogACLRuleHits OID:

Select a ZTE ZXR10 switch (per-port ACL rule-binding/match-activity status) as the target host to create a monitor — the SNMP service should be up and running on it. Click New Monitor, then check SNMP Custom on the Favorites tab, click Next, and confirm the host. On the next page, click Select... to open the built-in SNMP MIB Browser and type zxr10IPv4PortACLlogACLRuleHits into the Find box to locate it in the OID tree, selecting the specific row/instance you want to monitor since this is a table column, then select it and click OK. It reports the rule hits of matching packets on the interface, Maximum(18446744073709551615): invalid log statistics because of lack of counter resources in PM. On the monitor's Main parameters page you can set the target's SNMP port (default 161), credentials, polling interval, and other settings — see the SNMP Monitor help for details. On the State conditions and Alerting tabs, configure when the monitor should change state and trigger an alert; since this is a Counter64-type OID, Value bounds is the most useful condition here — trigger an alert if the counter increases between polls, since a rising count of errors, failures, or discards often points to a real underlying problem. Click Finish to create the monitor; you can adjust any parameter later.
OIDs

RFC description

Configures and manages Port Access Control Lists (ACLs) on ZTE ZXR10 routing platforms.

Start monitoring ZTE ZXR10 switch (per-port ACL rule-binding/match-activity status) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

Download ZXR10-PORTACL-MIB