EZ5 MIB Catalog

ENTERASYS-ANTI-SPOOF-MIB

2013-01-15

This MIB module defines a portion of the SNMP MIB under the Enterasys Networks enterprise OID pertaining to configuration of the anti-spoofing feature.

Download ENTERASYS-ANTI-SPOOF-MIB.txt Open ENTERASYS-ANTI-SPOOF-MIB.txt in a new tab

SCALARS (9) · TABLES (8) · TRAPS (2)

Scalars (9)

NameOID
etsysAntiSpoofSystemState1.3.6.1.4.1.5624.1.2.96.1.1.1
etsysAntiSpoofMaxClassIndex1.3.6.1.4.1.5624.1.2.96.1.1.2
etsysAntiSpoofMaxClassThresholdIndex1.3.6.1.4.1.5624.1.2.96.1.1.3
etsysAntiSpoofSystemSnmpNotifications1.3.6.1.4.1.5624.1.2.96.1.1.4
etsysAntiSpoofSystemNotificationInterval1.3.6.1.4.1.5624.1.2.96.1.1.5
etsysAntiSpoofDuplicateIpControl1.3.6.1.4.1.5624.1.2.96.1.1.6
etsysAntiSpoofSupportedActionTypes1.3.6.1.4.1.5624.1.2.96.1.1.7
etsysAntiSpoofSupportedThresholdTypes1.3.6.1.4.1.5624.1.2.96.1.1.8
etsysAntiSpoofSupportedBindingTypes1.3.6.1.4.1.5624.1.2.96.1.1.9

Tables (8)

NameOID
etsysAntiSpoofClassTable1.3.6.1.4.1.5624.1.2.96.1.2.1
etsysAntiSpoofThresholdTable1.3.6.1.4.1.5624.1.2.96.1.2.2
etsysAntiSpoofPortConfigTable1.3.6.1.4.1.5624.1.2.96.1.3.1
etsysAntiSpoofPortTypeTable1.3.6.1.4.1.5624.1.2.96.1.3.2
etsysAntiSpoofStationBindingTable1.3.6.1.4.1.5624.1.2.96.1.4.1
etsysAntiSpoofMacBindingTable1.3.6.1.4.1.5624.1.2.96.1.4.2
etsysAntiSpoofIpBindingTable1.3.6.1.4.1.5624.1.2.96.1.4.3
etsysAntiSpoofPortBindingTable1.3.6.1.4.1.5624.1.2.96.1.4.4

Traps (2)

NameOID
etsysAntiSpoofClassNotification1.3.6.1.4.1.5624.1.2.96.1.0.1
etsysAntiSpoofDuplicateIpNotification1.3.6.1.4.1.5624.1.2.96.1.0.2

END OF TOC

Scalar details

etsysAntiSpoofSystemState

1.3.6.1.4.1.5624.1.2.96.1.1.1

EnabledStatus1 = enabled2 = disabledA simple status value for the object. · Integer32

When enabled(1), all objects in this MIB are fully active. When disabled(2), this object overrides all other object settings in this MIB without affecting their values. Maintaining the value of this object across agent reboots is REQUIRED.

etsysAntiSpoofMaxClassIndex

1.3.6.1.4.1.5624.1.2.96.1.1.2

Unsigned32

The maximum number of class indexes available in the system.

etsysAntiSpoofMaxClassThresholdIndex

1.3.6.1.4.1.5624.1.2.96.1.1.3

Unsigned32

The maximum number of threshold indexes able to be associated with a particular class.

etsysAntiSpoofSystemSnmpNotifications

1.3.6.1.4.1.5624.1.2.96.1.1.4

EnabledStatus1 = enabled2 = disabledA simple status value for the object. · Integer32

The current state of the SNMP Notification functionality in the Anti Spoofing feature. enabled (1) - Anti-Spoofing will generate SNMP Notifications for user IP address or port changes that exceed the configured limits. The Anti-Spoofing feature MUST be enabled for SNMP Notifications to be generated. disabled (2) - Anti-Spoofing will not generate SNMP Notifications under any conditions. A notification is generated when a value is first detected above its respective configured limit. That notification SHOULD NOT be generated again until the configured notification timeout period has elapsed. Agents are not required to generate SNMP Notifications for conditions that exist when this object is set to enabled. SNMP Notifications MAY only be generated after additional IP address changes are detected that exceed the configured limits for the user. Maintaining the value of this object across agent reboots is REQUIRED.

etsysAntiSpoofSystemNotificationInterval

1.3.6.1.4.1.5624.1.2.96.1.1.5

Unsigned32 (0..86400) · seconds

The number of seconds to wait before generating another notification of the same type for the same user. This allows notification generation to be throttled in the case of a user who continually changes IP addresses. A value of zero indicates that the entity SHOULD NOT suppress any notifications related to the Anti-Spoofing feature. Maintaining the value of this object across agent reboots is REQUIRED.

etsysAntiSpoofDuplicateIpControl

1.3.6.1.4.1.5624.1.2.96.1.1.6

EnabledStatus1 = enabled2 = disabledA simple status value for the object. · Integer32

When this is set to enabled(1) any IP changes will be checked across the system to ensure that the newly configured IP address is not already present. If the IP is present in the system then a syslog and or trap will be issued. When set to disabled(2) this check will not occur.

etsysAntiSpoofSupportedActionTypes

1.3.6.1.4.1.5624.1.2.96.1.1.7

AntiSpoofPortActionThe possible actions that the anti-spoofing feature can take when a user exceeds the associated threshold limits. generateSyslog(0) Generate the appropriate logging message. generateNotification(1) Generate the respective SNMP notification. quarantineUser(2) Assign user traffic to the quarantine profile as determined by the respective profile-index. · BITS

This object specifies that anti-spoofing action types that the device supports. A bit will be set for each corresponding type that is supported.

etsysAntiSpoofSupportedThresholdTypes

1.3.6.1.4.1.5624.1.2.96.1.1.8

BITS

This object specifies that anti-spoofing threshold types that the device supports. A bit will be set for each corresponding type that is supported.

etsysAntiSpoofSupportedBindingTypes

1.3.6.1.4.1.5624.1.2.96.1.1.9

BITS

This object specifies that anti-spoofing binding types that the device supports. A bit will be set for each corresponding type that is supported.

Table details

etsysAntiSpoofClassTable

1.3.6.1.4.1.5624.1.2.96.1.2.1

Index: etsysAntiSpoofClassIndex

Provides for the configuring of each of the classes present in Anti-Spoofing. Maintaining the value of the objects in this table across agent reboots is REQUIRED.

etsysAntiSpoofClassIndex

1.3.6.1.4.1.5624.1.2.96.1.2.1.1.1

Unsigned32

The index of class that this row represents. This index has a value between one(1) and etsysAntiSpoofMaxClassIndex.

etsysAntiSpoofClassName

1.3.6.1.4.1.5624.1.2.96.1.2.1.1.2

SnmpAdminStringAn octet string containing administrative information, preferably in human-readable form. To facilitate internationalization, this information is represented using the ISO/IEC IS 10646-1 character set, encoded as an octet string using the UTF-8 transformation format described in [RFC2279]. Since additional code points are added by amendments to the 10646 standard from time to time, implementations must be prepared to encounter any code point from 0x00000000 to 0x7fffffff. Byte sequences that do not correspond to the valid UTF-8 encoding of a code point or are outside this range are prohibited. The use of control codes should be avoided. When it is necessary to represent a newline, the control code sequence CR LF should be used. The use of leading or trailing white space should be avoided. For code points not directly supported by user interface hardware or software, an alternative means of entry and display, such as hexadecimal, may be provided. For information encoded in 7-bit US-ASCII, the UTF-8 encoding is identical to the US-ASCII encoding. UTF-8 may require multiple bytes to represent a single character / code point; thus the length of this object in octets may be different from the number of characters encoded. Similarly, size constraints refer to the number of encoded octets, not the number of characters represented by an encoding. Note that when this TC is used for an object that is used or envisioned to be used as an index, then a SIZE restriction MUST be specified so that the number of sub-identifiers for any object instance does not exceed the limit of 128, as defined by [RFC3416]. Note that the size of an SnmpAdminString object is measured in octets, not characters. SIZE (0..32) · OCTET STRING · hint 255t

Administratively assigned textual description of this class.

etsysAntiSpoofClassTimeout

1.3.6.1.4.1.5624.1.2.96.1.2.1.1.3

Unsigned32 · seconds

The number of seconds to wait before administratively resetting the counters of the bindings which are based on this class associated with this class. A value of zero indicates that the counters will not be reset automatically.

etsysAntiSpoofThresholdTable

1.3.6.1.4.1.5624.1.2.96.1.2.2

Index: etsysAntiSpoofClassIndex · etsysAntiSpoofThresholdIndex

Provides for the configuration of the Anti-Spoofing feature's various thresholds. Maintaining the value of the objects in this table across agent reboots is REQUIRED.

etsysAntiSpoofThresholdIndex

1.3.6.1.4.1.5624.1.2.96.1.2.2.1.1

Unsigned32

The index of the threshold that this row represents. This index has a value between one(1) and etsysAntiSpoofMaxClassThresholdIndex.

etsysAntiSpoofThresholdValue

1.3.6.1.4.1.5624.1.2.96.1.2.2.1.2

Unsigned32

The threshold at which the action defined by the class is taken. A value of zero(0) indicates that the threshold actions will never take place.

etsysAntiSpoofThresholdActionMask

1.3.6.1.4.1.5624.1.2.96.1.2.2.1.3

AntiSpoofPortActionThe possible actions that the anti-spoofing feature can take when a user exceeds the associated threshold limits. generateSyslog(0) Generate the appropriate logging message. generateNotification(1) Generate the respective SNMP notification. quarantineUser(2) Assign user traffic to the quarantine profile as determined by the respective profile-index. · BITS

The action(s) that will be taken when the threshold in the class represented by this row is reached.

etsysAntiSpoofThresholdActionQuarantineValue

1.3.6.1.4.1.5624.1.2.96.1.2.2.1.4

Integer32

A value that delineates the policy quarantine index to which the user will be assigned. This value is only used if the quarantineUser(2) bit is set in the etsysAntiSpoofThresholdActionMask.

etsysAntiSpoofThresholdType

1.3.6.1.4.1.5624.1.2.96.1.2.2.1.5

AntiSpoofThresholdType1 = ipv4Change2 = ipv6Change3 = portChangeThe mode the threshold entry will operate in. ipv4Change(1) The threshold action will occur when a user's IPv4 address changes a number of times equal to the threshold value. ipv6Change(2) The threshold action will occur when a user's IPv6 address changes a number of times equal to the threshold value. portChange(3) The threshold action will occur when the port that a user resides on changes a number of times equal to the threshold value. · Integer32

The class type associated with this entry.

etsysAntiSpoofPortConfigTable

1.3.6.1.4.1.5624.1.2.96.1.3.1

Index: ifIndex

A table of per port information and configuration for Anti-Spoofing.

from IF-MIB

ifIndex

InterfaceIndexA unique value, greater than zero, for each interface or interface sub-layer in the managed system. It is recommended that values are assigned contiguously starting from 1. The value for each interface sub-layer must remain constant at least from one re-initialization of the entity's network management system to the next re-initialization. (1..2147483647) · Integer32 · hint d

A unique value, greater than zero, for each interface. It is recommended that values are assigned contiguously starting from 1. The value for each interface sub-layer must remain constant at least from one re-initialization of the entity's network management system to the next re- initialization.

etsysAntiSpoofDHCPMode

1.3.6.1.4.1.5624.1.2.96.1.3.1.1.1

EnabledStatus1 = enabled2 = disabledA simple status value for the object. · Integer32

This object allows for the enabling or disabling of DHCP Snooping functionality on a per-port basis.

etsysAntiSpoofDHCPMacVerify

1.3.6.1.4.1.5624.1.2.96.1.3.1.1.2

EnabledStatus1 = enabled2 = disabledA simple status value for the object. · Integer32

This object allows for the enabling or disabling of DHCP-Snooping to verify the source address MAC with chaddr in DHCP packets on incoming client messages.

etsysAntiSpoofArpInspection

1.3.6.1.4.1.5624.1.2.96.1.3.1.1.3

AntiSpoofInspectionType1 = enabled2 = disabled3 = inspectionOnlyThe possible type of inspection to use on incoming traffic on a given port. enabled(1) Allows dynamic inspection to occur and will create bindings in the binding database based on the inspection. disabled(2) Disable both dynamic inspection and the creation of bindings. inspectionOnly(3) Allows dynamic inspection of packets to occur but will not create any bindings in the binding database. · Integer32

When set to enabled(1), dynamic ARP inspection is allowed on this port. When set to disabled(2), dynamic ARP inspection is not allowed on this port. When set to inspectionOnly(3), dynamic ARP inspection will occur but will not be used to create bindings.

etsysAntiSpoofIpInspection

1.3.6.1.4.1.5624.1.2.96.1.3.1.1.4

AntiSpoofInspectionType1 = enabled2 = disabled3 = inspectionOnlyThe possible type of inspection to use on incoming traffic on a given port. enabled(1) Allows dynamic inspection to occur and will create bindings in the binding database based on the inspection. disabled(2) Disable both dynamic inspection and the creation of bindings. inspectionOnly(3) Allows dynamic inspection of packets to occur but will not create any bindings in the binding database. · Integer32

When set to enabled(1), dynamic IP inspection is allowed on this port. When set to disabled(2), dynamic IP inspection is not allowed on this port. When set to inspectionOnly(3), dynamic IP inspection will occur but will not be used to create bindings.

etsysAntiSpoofPortClassIndex

1.3.6.1.4.1.5624.1.2.96.1.3.1.1.5

Unsigned32

This value represents the class index to be used for the given port. The special case value of zero(0) indicates that no class index will be used for this port.

etsysAntiSpoofUntrustedTrafficPacketCounter

1.3.6.1.4.1.5624.1.2.96.1.3.1.1.6

Counter32

This counter is used to measure the number of DHCP server packets received on this port. This counter will only increment when the etsysAntiSpoofPortType is set to untrusted(3).

etsysAntiSpoofPortTypeTable

1.3.6.1.4.1.5624.1.2.96.1.3.2

Index: ifIndex

A table containing port type information for each port in the system that supports anti-spoofing.

from IF-MIB

ifIndex

InterfaceIndexA unique value, greater than zero, for each interface or interface sub-layer in the managed system. It is recommended that values are assigned contiguously starting from 1. The value for each interface sub-layer must remain constant at least from one re-initialization of the entity's network management system to the next re-initialization. (1..2147483647) · Integer32 · hint d

A unique value, greater than zero, for each interface. It is recommended that values are assigned contiguously starting from 1. The value for each interface sub-layer must remain constant at least from one re-initialization of the entity's network management system to the next re- initialization.

etsysAntiSpoofPortType

1.3.6.1.4.1.5624.1.2.96.1.3.2.1.1

AntiSpoofPortType1 = trusted2 = bypass3 = untrustedThe port type mode determines how DHCP traffic is handled. trusted(1) When a port is set to trusted mode DHCP server traffic is accepted and used to create bindings for the client, with no binding verification for connected clients. bypass(2) When a port is set to bypass mode DHCP server traffic is allowed to pass without any snooping. untrusted(3) When a port is set to untrusted mode client bindings will be verified for all traffic, depending on feature configuration. · Integer32

This object specifies the port type to be used for this port. The port type indicates how DHCP traffic is handled.

etsysAntiSpoofStationBindingTable

1.3.6.1.4.1.5624.1.2.96.1.4.1

Index: etsysAntiSpoofStationBindingEntryIndex

A table containing information pertaining to the current active bindings set up through Anti-Spoofing.

etsysAntiSpoofStationBindingEntryIndex

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.1

EtsysInstanceOIDA partial OBJECT IDENTIFIER suitable for use as instancing for other MIB objects. The definition of an OBJECT IDENTIFIER requires that all OIDs start with zero or one, consequently, the first two sub-ids of a EtsysInstanceOID will always be {0,0}. · OBJECT IDENTIFIER

The unique index for this columnar row.

etsysAntiSpoofStationBindingEntryMacAddr

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.2

MacAddressRepresents an 802 MAC address represented in the `canonical' order defined by IEEE 802.1a, i.e., as if it were transmitted least significant bit first, even though 802.5 (in contrast to other 802.x protocols) requires MAC addresses to be transmitted most significant bit first. SIZE (6) · OCTET STRING · hint 1x:

The MAC address of the binding.

etsysAntiSpoofStationBindingEntryInetAddrType

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.3

InetAddressType0 = unknown1 = ipv42 = ipv63 = ipv4z4 = ipv6z16 = dnsA value that represents a type of Internet address. unknown(0) An unknown address type. This value MUST be used if the value of the corresponding InetAddress object is a zero-length string. It may also be used to indicate an IP address that is not in one of the formats defined below. ipv4(1) An IPv4 address as defined by the InetAddressIPv4 textual convention. ipv6(2) An IPv6 address as defined by the InetAddressIPv6 textual convention. ipv4z(3) A non-global IPv4 address including a zone index as defined by the InetAddressIPv4z textual convention. ipv6z(4) A non-global IPv6 address including a zone index as defined by the InetAddressIPv6z textual convention. dns(16) A DNS domain name as defined by the InetAddressDNS textual convention. Each definition of a concrete InetAddressType value must be accompanied by a definition of a textual convention for use with that InetAddressType. To support future extensions, the InetAddressType textual convention SHOULD NOT be sub-typed in object type definitions. It MAY be sub-typed in compliance statements in order to require only a subset of these address types for a compliant implementation. Implementations must ensure that InetAddressType objects and any dependent objects (e.g., InetAddress objects) are consistent. An inconsistentValue error must be generated if an attempt to change an InetAddressType object would, for example, lead to an undefined InetAddress value. In particular, InetAddressType/InetAddress pairs must be changed together if the address type changes (e.g., from ipv6(2) to ipv4(1)). · Integer32

The IP address type of the binding.

etsysAntiSpoofStationBindingEntryInetAddr

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.4

InetAddressDenotes a generic Internet address. An InetAddress value is always interpreted within the context of an InetAddressType value. Every usage of the InetAddress textual convention is required to specify the InetAddressType object that provides the context. It is suggested that the InetAddressType object be logically registered before the object(s) that use the InetAddress textual convention, if they appear in the same logical row. The value of an InetAddress object must always be consistent with the value of the associated InetAddressType object. Attempts to set an InetAddress object to a value inconsistent with the associated InetAddressType must fail with an inconsistentValue error. When this textual convention is used as the syntax of an index object, there may be issues with the limit of 128 sub-identifiers specified in SMIv2, STD 58. In this case, the object definition MUST include a 'SIZE' clause to limit the number of potential instance sub-identifiers; otherwise the applicable constraints MUST be stated in the appropriate conceptual row DESCRIPTION clauses, or in the surrounding documentation if there is no single DESCRIPTION clause that is appropriate. SIZE (0..255) · OCTET STRING

The IP address of the binding.

etsysAntiSpoofStationBindingEntryIfIndex

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.5

InterfaceIndexA unique value, greater than zero, for each interface or interface sub-layer in the managed system. It is recommended that values are assigned contiguously starting from 1. The value for each interface sub-layer must remain constant at least from one re-initialization of the entity's network management system to the next re-initialization. (1..2147483647) · Integer32 · hint d

The port that this binding currently resides on.

etsysAntiSpoofStationBindingEntryInetCounter

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.6

Counter32

The number of times the IP address has changed for this binding.

etsysAntiSpoofStationBindingEntryClearInetCounter

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.7

TruthValue1 = true2 = falseRepresents a boolean value. · Integer32

When set to true(1), this object will clear the IP counter associated with this binding. Setting this object to a value of false(2) has no effect. This object MUST always return a value of false(2).

etsysAntiSpoofStationBindingEntryPortCounter

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.8

Counter32

The number of times the port has changed for this binding.

etsysAntiSpoofStationBindingEntryClearPortCounter

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.9

TruthValue1 = true2 = falseRepresents a boolean value. · Integer32

When set to true(1), this object will clear the port counter associated with this binding. Setting this object to a value of false(2) has no effect. This object MUST always return a value of false(2).

etsysAntiSpoofStationBindingEntryClearBinding

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.10

TruthValue1 = true2 = falseRepresents a boolean value. · Integer32

When set to true(1), this object will clear the current binding. Allowing a new binding to be created with the same MAC/IP address and clearing all counter information. Setting this object to a value of false(2) has no effect. This object MUST always return a value of false(2).

etsysAntiSpoofStationBindingEntryBindingType

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.11

AntiSpoofBindingType1 = dhcp2 = arp3 = ipThe method by which a given client binding was created. dhcp(1) This indicates that a binding was created by DHCP MAC verification. arp(2) This indicates that a binding was created by dynamic ARP inspection. ip(3) This indicates that the binding was created by dynamic IP inspection. · Integer32

This indicates which binding type (DHCP, ARP, or IP inspection) was used to create the entry.

etsysAntiSpoofStationBindingEntryDurationTime

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.12

Unsigned32 · seconds

The amount of time, in seconds, that this binding has been operational for.

etsysAntiSpoofStationBindingEntryExpirationTime

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.13

Unsigned32 · seconds

The amount of time, in seconds, from its creation, that this binding will be operational for before being destroyed. A value of zero(0) indicates that this binding will not expire.

etsysAntiSpoofMacBindingTable

1.3.6.1.4.1.5624.1.2.96.1.4.2

Index: etsysAntiSpoofStationBindingEntryMacAddr · etsysAntiSpoofStationBindingEntryInetAddrType · etsysAntiSpoofStationBindingEntryInetAddr · etsysAntiSpoofStationBindingInterface

A table indicating whether a given binding is accessible. This table is indexed first by MAC, then by IP, and finally by port. In this way a user may quickly determine which bindings are active for a given station address and look up those entries in the etsysAntiSpoofStationBindingTable.

etsysAntiSpoofStationBindingInterface

1.3.6.1.4.1.5624.1.2.96.1.4.2.1.1

InterfaceIndexOrZeroThis textual convention is an extension of the InterfaceIndex convention. The latter defines a greater than zero value used to identify an interface or interface sub-layer in the managed system. This extension permits the additional value of zero. the value zero is object-specific and must therefore be defined as part of the description of any object which uses this syntax. Examples of the usage of zero might include situations where interface was unknown, or when none or all interfaces need to be referenced. (0..2147483647) · Integer32 · hint d

The current interface index that the IP/MAC binding resides on.

etsysAntiSpoofMacStationBindingIndex

1.3.6.1.4.1.5624.1.2.96.1.4.2.1.2

EtsysInstanceOIDA partial OBJECT IDENTIFIER suitable for use as instancing for other MIB objects. The definition of an OBJECT IDENTIFIER requires that all OIDs start with zero or one, consequently, the first two sub-ids of a EtsysInstanceOID will always be {0,0}. · OBJECT IDENTIFIER

A unique identifier for this entry to be used as indexing in the etsysAntiSpoofStationBindingTable.

etsysAntiSpoofMacBindingClearBinding

1.3.6.1.4.1.5624.1.2.96.1.4.2.1.3

TruthValue1 = true2 = falseRepresents a boolean value. · Integer32

When set to true(1), this object will clear the current binding, allowing a new binding to be created with the same MAC/IP address and clearing all counter information. If the etsysAntiSpoofStationBindingInterface index specified in the SET operation is zero (0) it will remove the MAC/IP binding regardless of the current port it is associated with. Specifying an etsysAntiSpoofStationBindingInterface index value between 1..2147483647 will only remove the binding if it currently resides on that specific interface. Setting this object to a value of false(2) has no effect. This object MUST always return a value of false(2).

etsysAntiSpoofIpBindingTable

1.3.6.1.4.1.5624.1.2.96.1.4.3

Index: etsysAntiSpoofStationBindingEntryInetAddrType · etsysAntiSpoofStationBindingEntryInetAddr · etsysAntiSpoofStationBindingEntryMacAddr · etsysAntiSpoofStationBindingInterface

A table indicating whether a given binding is accessible. This table is indexed first by IP, then by MAC, and finally by port. In this way a user may quickly determine which bindings are active for a given station address and look up those entries in the etsysAntiSpoofStationBindingTable.

etsysAntiSpoofIpStationBindingIndex

1.3.6.1.4.1.5624.1.2.96.1.4.3.1.1

EtsysInstanceOIDA partial OBJECT IDENTIFIER suitable for use as instancing for other MIB objects. The definition of an OBJECT IDENTIFIER requires that all OIDs start with zero or one, consequently, the first two sub-ids of a EtsysInstanceOID will always be {0,0}. · OBJECT IDENTIFIER

A unique identifier for this entry to be used as indexing in the etsysAntiSpoofStationBindingTable.

etsysAntiSpoofIpBindingClearBinding

1.3.6.1.4.1.5624.1.2.96.1.4.3.1.2

TruthValue1 = true2 = falseRepresents a boolean value. · Integer32

When set to true(1), this object will clear the current binding, allowing a new binding to be created with the same MAC/IP address and clearing all counter information. If the etsysAntiSpoofStationBindingInterface index specified in the SET operation is zero (0) it will remove the MAC/IP binding regardless of the current port it is associated with. Specifying an etsysAntiSpoofStationBindingInterface index value between 1..2147483647 will only remove the binding if it currently resides on that specific interface. Setting this object to a value of false(2) has no effect. This object MUST always return a value of false(2).

etsysAntiSpoofPortBindingTable

1.3.6.1.4.1.5624.1.2.96.1.4.4

Index: etsysAntiSpoofStationBindingInterface · etsysAntiSpoofStationBindingEntryMacAddr · etsysAntiSpoofStationBindingEntryInetAddrType · etsysAntiSpoofStationBindingEntryInetAddr

A table indicating whether a given binding is accessible. This table is indexed first by port, then by MAC, and finally by IP. In this way a user may quickly determine which bindings are active for a given station address and look up those entries in the etsysAntiSpoofStationBindingTable.

etsysAntiSpoofPortStationBindingIndex

1.3.6.1.4.1.5624.1.2.96.1.4.4.1.1

EtsysInstanceOIDA partial OBJECT IDENTIFIER suitable for use as instancing for other MIB objects. The definition of an OBJECT IDENTIFIER requires that all OIDs start with zero or one, consequently, the first two sub-ids of a EtsysInstanceOID will always be {0,0}. · OBJECT IDENTIFIER

A unique identifier for this entry to be used as indexing in the etsysAntiSpoofStationBindingTable.

etsysAntiSpoofPortBindingClearBinding

1.3.6.1.4.1.5624.1.2.96.1.4.4.1.2

TruthValue1 = true2 = falseRepresents a boolean value. · Integer32

When set to true(1), this object will clear the current binding, allowing a new binding to be created with the same MAC/IP address and clearing all counter information. If the etsysAntiSpoofStationBindingInterface index specified in the SET operation is zero (0) it will remove the MAC/IP binding regardless of the current port it is associated with. Specifying an etsysAntiSpoofStationBindingInterface index value between 1..2147483647 will only remove the binding if it currently resides on that specific interface. Setting this object to a value of false(2) has no effect. This object MUST always return a value of false(2).

Trap details

etsysAntiSpoofClassNotification

1.3.6.1.4.1.5624.1.2.96.1.0.1

This notification indicates that a Anti Spoof class has reached a threshold limit.

etsysAntiSpoofThresholdValue

1.3.6.1.4.1.5624.1.2.96.1.2.2.1.2

Unsigned32

The threshold at which the action defined by the class is taken. A value of zero(0) indicates that the threshold actions will never take place.

etsysAntiSpoofStationBindingEntryMacAddr

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.2

MacAddressRepresents an 802 MAC address represented in the `canonical' order defined by IEEE 802.1a, i.e., as if it were transmitted least significant bit first, even though 802.5 (in contrast to other 802.x protocols) requires MAC addresses to be transmitted most significant bit first. SIZE (6) · OCTET STRING · hint 1x:

The MAC address of the binding.

etsysAntiSpoofStationBindingEntryInetAddrType

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.3

InetAddressType0 = unknown1 = ipv42 = ipv63 = ipv4z4 = ipv6z16 = dnsA value that represents a type of Internet address. unknown(0) An unknown address type. This value MUST be used if the value of the corresponding InetAddress object is a zero-length string. It may also be used to indicate an IP address that is not in one of the formats defined below. ipv4(1) An IPv4 address as defined by the InetAddressIPv4 textual convention. ipv6(2) An IPv6 address as defined by the InetAddressIPv6 textual convention. ipv4z(3) A non-global IPv4 address including a zone index as defined by the InetAddressIPv4z textual convention. ipv6z(4) A non-global IPv6 address including a zone index as defined by the InetAddressIPv6z textual convention. dns(16) A DNS domain name as defined by the InetAddressDNS textual convention. Each definition of a concrete InetAddressType value must be accompanied by a definition of a textual convention for use with that InetAddressType. To support future extensions, the InetAddressType textual convention SHOULD NOT be sub-typed in object type definitions. It MAY be sub-typed in compliance statements in order to require only a subset of these address types for a compliant implementation. Implementations must ensure that InetAddressType objects and any dependent objects (e.g., InetAddress objects) are consistent. An inconsistentValue error must be generated if an attempt to change an InetAddressType object would, for example, lead to an undefined InetAddress value. In particular, InetAddressType/InetAddress pairs must be changed together if the address type changes (e.g., from ipv6(2) to ipv4(1)). · Integer32

The IP address type of the binding.

etsysAntiSpoofStationBindingEntryInetAddr

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.4

InetAddressDenotes a generic Internet address. An InetAddress value is always interpreted within the context of an InetAddressType value. Every usage of the InetAddress textual convention is required to specify the InetAddressType object that provides the context. It is suggested that the InetAddressType object be logically registered before the object(s) that use the InetAddress textual convention, if they appear in the same logical row. The value of an InetAddress object must always be consistent with the value of the associated InetAddressType object. Attempts to set an InetAddress object to a value inconsistent with the associated InetAddressType must fail with an inconsistentValue error. When this textual convention is used as the syntax of an index object, there may be issues with the limit of 128 sub-identifiers specified in SMIv2, STD 58. In this case, the object definition MUST include a 'SIZE' clause to limit the number of potential instance sub-identifiers; otherwise the applicable constraints MUST be stated in the appropriate conceptual row DESCRIPTION clauses, or in the surrounding documentation if there is no single DESCRIPTION clause that is appropriate. SIZE (0..255) · OCTET STRING

The IP address of the binding.

etsysAntiSpoofStationBindingEntryIfIndex

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.5

InterfaceIndexA unique value, greater than zero, for each interface or interface sub-layer in the managed system. It is recommended that values are assigned contiguously starting from 1. The value for each interface sub-layer must remain constant at least from one re-initialization of the entity's network management system to the next re-initialization. (1..2147483647) · Integer32 · hint d

The port that this binding currently resides on.

etsysAntiSpoofDuplicateIpNotification

1.3.6.1.4.1.5624.1.2.96.1.0.2

This notification indicates that a duplicate IP condition has occurred.

etsysAntiSpoofStationBindingEntryMacAddr

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.2

MacAddressRepresents an 802 MAC address represented in the `canonical' order defined by IEEE 802.1a, i.e., as if it were transmitted least significant bit first, even though 802.5 (in contrast to other 802.x protocols) requires MAC addresses to be transmitted most significant bit first. SIZE (6) · OCTET STRING · hint 1x:

The MAC address of the binding.

etsysAntiSpoofStationBindingEntryIfIndex

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.5

InterfaceIndexA unique value, greater than zero, for each interface or interface sub-layer in the managed system. It is recommended that values are assigned contiguously starting from 1. The value for each interface sub-layer must remain constant at least from one re-initialization of the entity's network management system to the next re-initialization. (1..2147483647) · Integer32 · hint d

The port that this binding currently resides on.

etsysAntiSpoofStationBindingEntryInetAddrType

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.3

InetAddressType0 = unknown1 = ipv42 = ipv63 = ipv4z4 = ipv6z16 = dnsA value that represents a type of Internet address. unknown(0) An unknown address type. This value MUST be used if the value of the corresponding InetAddress object is a zero-length string. It may also be used to indicate an IP address that is not in one of the formats defined below. ipv4(1) An IPv4 address as defined by the InetAddressIPv4 textual convention. ipv6(2) An IPv6 address as defined by the InetAddressIPv6 textual convention. ipv4z(3) A non-global IPv4 address including a zone index as defined by the InetAddressIPv4z textual convention. ipv6z(4) A non-global IPv6 address including a zone index as defined by the InetAddressIPv6z textual convention. dns(16) A DNS domain name as defined by the InetAddressDNS textual convention. Each definition of a concrete InetAddressType value must be accompanied by a definition of a textual convention for use with that InetAddressType. To support future extensions, the InetAddressType textual convention SHOULD NOT be sub-typed in object type definitions. It MAY be sub-typed in compliance statements in order to require only a subset of these address types for a compliant implementation. Implementations must ensure that InetAddressType objects and any dependent objects (e.g., InetAddress objects) are consistent. An inconsistentValue error must be generated if an attempt to change an InetAddressType object would, for example, lead to an undefined InetAddress value. In particular, InetAddressType/InetAddress pairs must be changed together if the address type changes (e.g., from ipv6(2) to ipv4(1)). · Integer32

The IP address type of the binding.

etsysAntiSpoofStationBindingEntryInetAddr

1.3.6.1.4.1.5624.1.2.96.1.4.1.1.4

InetAddressDenotes a generic Internet address. An InetAddress value is always interpreted within the context of an InetAddressType value. Every usage of the InetAddress textual convention is required to specify the InetAddressType object that provides the context. It is suggested that the InetAddressType object be logically registered before the object(s) that use the InetAddress textual convention, if they appear in the same logical row. The value of an InetAddress object must always be consistent with the value of the associated InetAddressType object. Attempts to set an InetAddress object to a value inconsistent with the associated InetAddressType must fail with an inconsistentValue error. When this textual convention is used as the syntax of an index object, there may be issues with the limit of 128 sub-identifiers specified in SMIv2, STD 58. In this case, the object definition MUST include a 'SIZE' clause to limit the number of potential instance sub-identifiers; otherwise the applicable constraints MUST be stated in the appropriate conceptual row DESCRIPTION clauses, or in the surrounding documentation if there is no single DESCRIPTION clause that is appropriate. SIZE (0..255) · OCTET STRING

The IP address of the binding.

↑ To TOC