mibs/MIBS/telco-systems/binox/PRVT-SWITCH-ACCESS-LIST-MIB
2023-12-05 12:25:34 +01:00

2910 lines
105 KiB
Plaintext

-- *********************************************************************
-- **
-- ** BATM Advanced Communications.
-- **
-- *********************************************************************
-- ** Filename: PRVT-SWITCH-ACCESS-LIST-MIB.mib
-- ** Project: T-Metro Switches.
-- ** Purpose: Private MIB
-- *********************************************************************
-- (c) Copyright, 2009, BATM Advanced Communications. All rights reserved.
-- WARNING:
--
-- BY UTILIZING THIS FILE, YOU AGREE TO THE FOLLOWING:
--
-- This file is the property of BATM Advanced Communications and contains
-- proprietary and confidential information. This file is made
-- available to authorized BATM customers on the express
-- condition that neither it, nor any of the information contained
-- therein, shall be disclosed to third parties or be used for any
-- purpose other than to replace, modify or upgrade firmware and/or
-- software components of BATM manufactured equipment within the
-- authorized customer's network, and that such transfer be
-- completed in accordance with the instructions provided by
-- BATM. Any other use is strictly prohibited.
--
-- EXCEPT AS RESTRICTED BY LAW, OR AS PROVIDED IN BATM'S LIMITED
-- WARRANTY, THE SOFTWARE PROGRAMS CONTAINED IN THIS FILE ARE
-- PROVIDED "AS IS" WITHOUT WARRANTY OF ANY KIND, EITHER EXPRESSED
-- OR IMPLIED, INCLUDING BUT NOT LIMITED TO, ANY IMPLIED WARRANTIES
-- OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR PURPOSE.
--
-- IN NO EVENT SHALL BATM BE LIABLE FOR ANY DAMAGES WHATSOEVER
-- INCLUDING WITHOUT LIMITATION, DAMAGES FOR LOSS OF BUSINESS
-- PROFITS, BUSINESS INTERRUPTION, LOSS OF BUSINESS INFORMATION OR
-- OTHER CONSEQUENTIAL DAMAGES ARISING OUT OF THE USE, OR INABILITY
-- TO USE, THE SOFTWARE CONTAINED IN THIS FILE.
--
-- ----------------------------------------------------------------------------
PRVT-SWITCH-ACCESS-LIST-MIB DEFINITIONS ::= BEGIN
IMPORTS
InterfaceIndex
FROM IF-MIB
sapEncapValue, sapPortId, serviceId
FROM PRVT-SERV-MIB
ipSwitch
FROM PRVT-SWITCH-MIB
Counter64, Integer32, MODULE-IDENTITY, NOTIFICATION-TYPE,
OBJECT-TYPE, Unsigned32
FROM SNMPv2-SMI
MacAddress, RowStatus, TEXTUAL-CONVENTION, TruthValue
FROM SNMPv2-TC;
prvtSwitchAccessListMIB MODULE-IDENTITY
LAST-UPDATED "201006250000Z"
ORGANIZATION
"BATM Advanced Communication"
CONTACT-INFO
"BATM/Telco Systems Support team
Email:
For North America: techsupport@telco.com
For North Europe: support@batm.de, info@batm.de
For the rest of the world: techsupport@telco.com"
DESCRIPTION
"The private MIB module that controls switch access-list parameters"
REVISION "201006250000Z"
DESCRIPTION
"Initial version."
::= { ipSwitch 1 }
PrvtSwAclAcgType ::= TEXTUAL-CONVENTION
STATUS current
DESCRIPTION
"Types of access groups."
SYNTAX INTEGER { ipStd(0), ipExt(1), mac(2), etherType(3) }
PrvtSwAclIpv4PrefixType ::= TEXTUAL-CONVENTION
DISPLAY-HINT "1d.1d.1d.1d/1d"
STATUS current
DESCRIPTION
"An IPv4 address prefix defining a subnet.
The value 255.255.255.255/0 will match all IPv4 traffic."
SYNTAX OCTET STRING (SIZE(5))
PrvtSwAclVlanIdTypeOrNone ::= TEXTUAL-CONVENTION
DISPLAY-HINT "d"
STATUS current
DESCRIPTION
"A VLAN identifier.
The value '0' indicates 'no value' and its behavior differs
depending upon the object."
SYNTAX Integer32 (0..4095)
PrvtSwAclDscpTypeOrNone ::= TEXTUAL-CONVENTION
DISPLAY-HINT "d"
STATUS current
DESCRIPTION
"An IPv4 DiffServ Code Point value.
The value '64' indicates 'no value' and its behavior differs
depending upon the object (e.g. could indicate that the DSCP
field is ignored or could indicate that the DSCP field is
unaffected.)"
SYNTAX Unsigned32 (0..64)
PrvtSwAclTosTypeOrNone ::= TEXTUAL-CONVENTION
DISPLAY-HINT "d"
STATUS current
DESCRIPTION
"An IPv4 Type Of Service value.
The value '16' indicates 'no value' (the TOS field is ignored.)"
SYNTAX Unsigned32 (0..16)
PrvtSwAclFcTypeOrNone ::= TEXTUAL-CONVENTION
STATUS current
DESCRIPTION
"A forwarding class value.
The value 'none' indicates 'no value' (the FC field is not affected)."
SYNTAX INTEGER { none(0), be(1), l2(2), af(3), l1(4), h2(5),
ef(6), h1(7), nc(8) }
PrvtSwAclPrecedenceTypeOrNone ::= TEXTUAL-CONVENTION
STATUS current
DESCRIPTION
"An IPv4 precedence value.
The value '8' indicates 'no value' (the Precedence field is ignored.)"
SYNTAX INTEGER { routine(0), priority(1), immediate(2),
flash(3), flashOverride(4), critical(5), internet(6),
network(7), none(8) }
PrvtSwAclVptTypeOrNone ::= TEXTUAL-CONVENTION
DISPLAY-HINT "d"
STATUS current
DESCRIPTION
"A VLAN priority tag value.
The value '8' indicates 'no value' and its behavior differs
depending upon the object (e.g. could indicate that the VPT
field is ignored or could indicate that the VPT field is
unaffected.)"
SYNTAX Unsigned32 (0..8)
PrvtSwAclVlanMaskType ::= TEXTUAL-CONVENTION
DISPLAY-HINT "1x:1x:1x:1x"
STATUS current
DESCRIPTION
"A VLAN mask.
A '1' in a bit position will result in the corresponding bit in the
VLAN ID becoming 'don't care' (i.e. always match)."
SYNTAX OCTET STRING (SIZE(4))
PrvtSwAclEtherType ::= TEXTUAL-CONVENTION
DISPLAY-HINT "1x:1x"
STATUS current
DESCRIPTION
"An EtherType value."
SYNTAX OCTET STRING (SIZE(2))
PrvtSwAclEtherTypeMask ::= TEXTUAL-CONVENTION
DISPLAY-HINT "1x:1x"
STATUS current
DESCRIPTION
"A mask to apply to an EtherType value (PrvtSwAclEtherType).
Currently, only values of '0000' and 'FFFF' are permitted.
The value '0000' represents that no mask is applied (i.e traffic must match
the EtherType value exactly).
The value 'FFFF' represents no restriction by EtherType (i.e. match any value)."
SYNTAX OCTET STRING (SIZE(2))
PrvtSwAclAction ::= TEXTUAL-CONVENTION
STATUS current
DESCRIPTION
"An action to take when an access-list condition is asserted."
SYNTAX INTEGER { permit(0), deny(1) }
PrvtSwAclIpProtocol ::= TEXTUAL-CONVENTION
DISPLAY-HINT "d"
STATUS current
DESCRIPTION
"The protocol number as defined in the IP datagram header."
SYNTAX Integer32 (0..255)
PrvtSwAclPortIdTypeOrNone ::= TEXTUAL-CONVENTION
DISPLAY-HINT "d"
STATUS current
DESCRIPTION
"A UDP/TCP port number.
The value '-1' indicates that the object has no port
ID assigned to it."
SYNTAX Integer32 (-1..65535)
PrvtSwAclExceedAction ::= TEXTUAL-CONVENTION
STATUS current
DESCRIPTION
"An action to take when a limit is exceeded."
SYNTAX INTEGER { noAction(0), markYellow(1), markRed(2),
drop(3) }
PrvtSwAclMatchTrafficType ::= TEXTUAL-CONVENTION
STATUS current
DESCRIPTION
"Types of traffic to match."
SYNTAX INTEGER { any(0), unknownUnicast(1), knownUnicast(2),
unknownMulticast(3), knownMulticast(4), broadcast(5) }
PrvtSwAclGroupType ::= TEXTUAL-CONVENTION
STATUS current
DESCRIPTION
"Access list group types."
SYNTAX INTEGER { in(1), out(2), vlan(3) }
PrvtSwAclDescrType ::= TEXTUAL-CONVENTION
DISPLAY-HINT "30a"
STATUS current
DESCRIPTION
"A description string for an item."
SYNTAX OCTET STRING (SIZE(0..30))
PrvtSwAclNameType ::= TEXTUAL-CONVENTION
DISPLAY-HINT "10a"
STATUS current
DESCRIPTION
"The name of an Access Control List."
SYNTAX OCTET STRING (SIZE(1..10))
PrvtSwAclRuleIdType ::= TEXTUAL-CONVENTION
DISPLAY-HINT "d"
STATUS current
DESCRIPTION
"An Access Control List rule identifier."
SYNTAX Unsigned32 (1..255)
PrvtSwAclStatsType ::= TEXTUAL-CONVENTION
STATUS current
DESCRIPTION
"Types of statistics to monitor."
SYNTAX INTEGER { matchCounterFrames(1), matchCounterBytes(2),
rateLimitRedNotRedFrames(3),
rateLimitRedNotRedBytes(4),
rateLimitGreenNotGreenFrames(5),
rateLimitGreenNotGreenBytes(6),
rateLimitGreenRedFrames(7),
rateLimitGreenRedBytes(8),
rateLimitGreenYellowFrames(9),
rateLimitGreenYellowBytes(10),
rateLimitRedYellowFrames(11),
rateLimitRedYellowBytes(12),
bwMonMatchCounterFrames(13),
bwMonMatchCounterBytes(14), bwMonRedNotRedFrames(15),
bwMonRedNotRedBytes(16),
bwMonGreenNotGreenFrames(17),
bwMonGreenNotGreenBytes(18), bwMonGreenRedFrames(19),
bwMonGreenRedBytes(20), bwMonGreenYellowFrames(21),
bwMonGreenYellowBytes(22), bwMonRedYellowFrames(23),
bwMonRedYellowBytes(24) }
PrvtSwAclFcType ::= TEXTUAL-CONVENTION
STATUS current
DESCRIPTION
"Types of forwarding classes."
SYNTAX INTEGER { be(1), l2(2), af(3), l1(4), h2(5), ef(6),
h1(7), nc(8) }
PrvtSwAclColorType ::= TEXTUAL-CONVENTION
STATUS current
DESCRIPTION
"Traffic color assignments."
SYNTAX INTEGER { green(1), yellow(2), red(3) }
PrvtSwAclProfileIdType ::= TEXTUAL-CONVENTION
DISPLAY-HINT "d"
STATUS current
DESCRIPTION
"A monitoring profile identifier."
SYNTAX Integer32 (0..65535)
PrvtSwAclRateLimitType ::= TEXTUAL-CONVENTION
STATUS current
DESCRIPTION
"Types of rate limiting."
SYNTAX INTEGER { single(1), dual(2) }
PrvtSwAclRateType ::= TEXTUAL-CONVENTION
DISPLAY-HINT "d"
STATUS current
DESCRIPTION
"A rate in kilobits per second (1000 bits/s)."
SYNTAX Unsigned32
PrvtSwAclBurstSizeType ::= TEXTUAL-CONVENTION
DISPLAY-HINT "d"
STATUS current
DESCRIPTION
"A burst size in kilobits (1000 bits)."
SYNTAX Unsigned32
PrvtSwAclTagType ::= TEXTUAL-CONVENTION
STATUS current
DESCRIPTION
"Tag for an interface."
SYNTAX INTEGER { tagged(1), untagged(2) }
prvtSwAclNotifications OBJECT IDENTIFIER
::= { prvtSwitchAccessListMIB 0 }
prvtSwAclObjects OBJECT IDENTIFIER
::= { prvtSwitchAccessListMIB 1 }
prvtSwAclMonProfiles OBJECT IDENTIFIER
::= { prvtSwAclObjects 1 }
prvtSwAclMonPrfTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclMonPrfEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"A list of access group monitoring profiles.
Up to 50 monitoring profiles are supported.
Note that each profile defined in prvtSwAclMonPrfTable must at all times
have in prvtSwAclMonPrfStatsTable at least one type of statistic configured
(created) for monitoring.
This requires that, when creating a new monitoring profile, the SNMP set
operation must contain two createAndGo operations, one for creating the
entry in prvtSwAclMonPrfTable, and one for simultaneously creating the
entry in prvtSwAclMonPrfStatsTable.
Deleting a monitoring profile in prvtSwAclMonPrfTable, also deletes all
entries belonging to this monitoring profile in prvtSwAclMonPrfStatsTable."
::= { prvtSwAclMonProfiles 1 }
prvtSwAclMonPrfEntry OBJECT-TYPE
SYNTAX PrvtSwAclMonPrfEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclMonPrfTable."
INDEX { prvtSwAclMonPrfId }
::= { prvtSwAclMonPrfTable 1 }
PrvtSwAclMonPrfEntry ::= SEQUENCE {
prvtSwAclMonPrfId PrvtSwAclProfileIdType,
prvtSwAclMonPrfIdRowStatus RowStatus
}
prvtSwAclMonPrfId OBJECT-TYPE
SYNTAX PrvtSwAclProfileIdType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Uniquely identifies a monitoring profile."
::= { prvtSwAclMonPrfEntry 1 }
prvtSwAclMonPrfIdRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for the monitoring profile."
::= { prvtSwAclMonPrfEntry 2 }
prvtSwAclMonPrfStatsTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclMonPrfStatsEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"A list of which statistics a monitoring profile should monitor.
Up to a maximum of twenty statistics may be monitored per profile.
Note that each profile defined in prvtSwAclMonPrfTable must at all times
have in prvtSwAclMonPrfStatsTable at least one type of statistic configured
(created) for monitoring.
Thus, when deleting, from prvtSwAclMonPrfStatsTable, the last remaining row
for a particular monitoring profile, the monitoring profile's entry in
prvtSwAclMonPrfTable must also be deleted within the same SNMP set operation.
Alternatively, to delete the last remaining statistic for a particular
monitoring profile, just delete the monitoring profile in prvtSwAclMonPrfTable."
::= { prvtSwAclMonProfiles 2 }
prvtSwAclMonPrfStatsEntry OBJECT-TYPE
SYNTAX PrvtSwAclMonPrfStatsEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclMonPrfStatsTable."
INDEX { prvtSwAclMonPrfId, prvtSwAclMonPrfStatsType }
::= { prvtSwAclMonPrfStatsTable 1 }
PrvtSwAclMonPrfStatsEntry ::= SEQUENCE {
prvtSwAclMonPrfStatsType PrvtSwAclStatsType,
prvtSwAclMonPrfStatsRowStatus RowStatus
}
prvtSwAclMonPrfStatsType OBJECT-TYPE
SYNTAX PrvtSwAclStatsType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"A type of statistic to monitor."
::= { prvtSwAclMonPrfStatsEntry 1 }
prvtSwAclMonPrfStatsRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for prvtSwAclMonPrfStatsTable."
::= { prvtSwAclMonPrfStatsEntry 2 }
prvtSwAclGroups OBJECT IDENTIFIER
::= { prvtSwAclObjects 2 }
prvtSwAclStdTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclStdEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"A list of standard IP Access Control Lists.
Up to 250 entries are supported."
::= { prvtSwAclGroups 1 }
prvtSwAclStdEntry OBJECT-TYPE
SYNTAX PrvtSwAclStdEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclStdTable."
INDEX { prvtSwAclStdName }
::= { prvtSwAclStdTable 1 }
PrvtSwAclStdEntry ::= SEQUENCE {
prvtSwAclStdName PrvtSwAclNameType,
prvtSwAclStdRowStatus RowStatus,
prvtSwAclStdDescr PrvtSwAclDescrType
}
prvtSwAclStdName OBJECT-TYPE
SYNTAX PrvtSwAclNameType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"A string uniquely identifying a standard IP Access Control List."
::= { prvtSwAclStdEntry 1 }
prvtSwAclStdRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for this standard Access Control List."
::= { prvtSwAclStdEntry 2 }
prvtSwAclStdDescr OBJECT-TYPE
SYNTAX PrvtSwAclDescrType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"An arbitrary description to assign to this standard Access Control List."
::= { prvtSwAclStdEntry 3 }
prvtSwAclStdRuleTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclStdRuleEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"A list of rules for standard IP access-lists.
Up to 250 entries are supported per prvtSwAclStdName."
::= { prvtSwAclGroups 2 }
prvtSwAclStdRuleEntry OBJECT-TYPE
SYNTAX PrvtSwAclStdRuleEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclStdRuleTable."
INDEX { prvtSwAclStdName, prvtSwAclStdRuleId }
::= { prvtSwAclStdRuleTable 1 }
PrvtSwAclStdRuleEntry ::= SEQUENCE {
prvtSwAclStdRuleId PrvtSwAclRuleIdType,
prvtSwAclStdRuleRowStatus RowStatus,
prvtSwAclStdRuleAction PrvtSwAclAction,
prvtSwAclStdRuleIpSrcPrefix PrvtSwAclIpv4PrefixType,
prvtSwAclStdRuleVlanId PrvtSwAclVlanIdTypeOrNone,
prvtSwAclStdRuleVlanMask PrvtSwAclVlanMaskType,
prvtSwAclStdRuleInnerVlanId PrvtSwAclVlanIdTypeOrNone,
prvtSwAclStdRuleInnerVlanMask PrvtSwAclVlanMaskType,
prvtSwAclStdRuleVpt PrvtSwAclVptTypeOrNone,
prvtSwAclStdRuleInnerVpt PrvtSwAclVptTypeOrNone,
prvtSwAclStdRuleDscp PrvtSwAclDscpTypeOrNone,
prvtSwAclStdRuleUntaggedMode TruthValue
}
prvtSwAclStdRuleId OBJECT-TYPE
SYNTAX PrvtSwAclRuleIdType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Index of the particular rule within the standard IP access control list."
::= { prvtSwAclStdRuleEntry 1 }
prvtSwAclStdRuleRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for this standard access-list rule."
::= { prvtSwAclStdRuleEntry 2 }
prvtSwAclStdRuleAction OBJECT-TYPE
SYNTAX PrvtSwAclAction
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The action to perform when the condition of this access-list rule is true."
::= { prvtSwAclStdRuleEntry 3 }
prvtSwAclStdRuleIpSrcPrefix OBJECT-TYPE
SYNTAX PrvtSwAclIpv4PrefixType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The IP source address prefix defining a subnet associated with this access-list rule."
::= { prvtSwAclStdRuleEntry 4 }
prvtSwAclStdRuleVlanId OBJECT-TYPE
SYNTAX PrvtSwAclVlanIdTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The VLAN ID associated with this access-list rule.
This must be set to the value '0' (no VLAN ID) when in untagged mode
(i.e. when prvtSwAclStdRuleUntaggedMode equals 'true')."
::= { prvtSwAclStdRuleEntry 5 }
prvtSwAclStdRuleVlanMask OBJECT-TYPE
SYNTAX PrvtSwAclVlanMaskType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The VLAN mask to use with this access-list rule.
This must be set to all ones (0xffff) (always match) when in untagged
mode (i.e. when prvtSwAclStdRuleUntaggedMode equals 'true')."
::= { prvtSwAclStdRuleEntry 6 }
prvtSwAclStdRuleInnerVlanId OBJECT-TYPE
SYNTAX PrvtSwAclVlanIdTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The inner VLAN ID associated with this access-list rule.
This must be set to the value '0' (no VLAN ID) when in untagged mode
(i.e. when prvtSwAclStdRuleUntaggedMode equals 'true')."
::= { prvtSwAclStdRuleEntry 7 }
prvtSwAclStdRuleInnerVlanMask OBJECT-TYPE
SYNTAX PrvtSwAclVlanMaskType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The inner VLAN mask to use with this access-list rule.
This must be set to all ones (0xffff) (always match) when in untagged
mode (i.e. when prvtSwAclStdRuleUntaggedMode equals 'true')."
::= { prvtSwAclStdRuleEntry 8 }
prvtSwAclStdRuleVpt OBJECT-TYPE
SYNTAX PrvtSwAclVptTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The VLAN priority tag associated with this access-list rule.
A value of '8' indicates that the VPT field is ignored.
This must be set to the value '8' (ignore VPT field) when in untagged
mode (i.e. when prvtSwAclStdRuleUntaggedMode equals 'true')."
::= { prvtSwAclStdRuleEntry 9 }
prvtSwAclStdRuleInnerVpt OBJECT-TYPE
SYNTAX PrvtSwAclVptTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The inner VLAN priority tag associated with this access-list rule.
A value of '8' indicates that the VPT field is ignored.
This must be set to the value '8' (ignore VPT field) when in untagged
mode (i.e. when prvtSwAclStdRuleUntaggedMode equals 'true')."
::= { prvtSwAclStdRuleEntry 10 }
prvtSwAclStdRuleDscp OBJECT-TYPE
SYNTAX PrvtSwAclDscpTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The DiffServ Code Point associated with this access-list rule.
A value of '64' indicates that the DSCP field is ignored."
::= { prvtSwAclStdRuleEntry 11 }
prvtSwAclStdRuleUntaggedMode OBJECT-TYPE
SYNTAX TruthValue
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Enables untagged mode.
In untagged mode, only untagged frames are included in the match comparison,
otherwise all tagged and untagged frames are included."
::= { prvtSwAclStdRuleEntry 12 }
prvtSwAclExtTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclExtEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"A list of extended IP Access Control Lists.
Up to 250 entries are supported."
::= { prvtSwAclGroups 3 }
prvtSwAclExtEntry OBJECT-TYPE
SYNTAX PrvtSwAclExtEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclExtTable."
INDEX { prvtSwAclExtName }
::= { prvtSwAclExtTable 1 }
PrvtSwAclExtEntry ::= SEQUENCE {
prvtSwAclExtName PrvtSwAclNameType,
prvtSwAclExtRowStatus RowStatus,
prvtSwAclExtDescr PrvtSwAclDescrType
}
prvtSwAclExtName OBJECT-TYPE
SYNTAX PrvtSwAclNameType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"A string uniquely identifying an extended IP Access Control List."
::= { prvtSwAclExtEntry 1 }
prvtSwAclExtRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for this extended Access Control List."
::= { prvtSwAclExtEntry 2 }
prvtSwAclExtDescr OBJECT-TYPE
SYNTAX PrvtSwAclDescrType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"An arbitrary description to assign to this extended Access Control List."
::= { prvtSwAclExtEntry 3 }
prvtSwAclExtRuleTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclExtRuleEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"A list of rules for extended IP access-lists.
Up to 250 entries are supported per prvtSwAclExtName."
::= { prvtSwAclGroups 4 }
prvtSwAclExtRuleEntry OBJECT-TYPE
SYNTAX PrvtSwAclExtRuleEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclExtRuleTable."
INDEX { prvtSwAclExtName, prvtSwAclExtRuleId }
::= { prvtSwAclExtRuleTable 1 }
PrvtSwAclExtRuleEntry ::= SEQUENCE {
prvtSwAclExtRuleId PrvtSwAclRuleIdType,
prvtSwAclExtRuleRowStatus RowStatus,
prvtSwAclExtRuleAction PrvtSwAclAction,
prvtSwAclExtRuleIpProtocol PrvtSwAclIpProtocol,
prvtSwAclExtRuleIpSrcPrefix PrvtSwAclIpv4PrefixType,
prvtSwAclExtRuleIpDstPrefix PrvtSwAclIpv4PrefixType,
prvtSwAclExtRuleIcmpType Integer32,
prvtSwAclExtRuleIcmpCode Integer32,
prvtSwAclExtRuleEstablished TruthValue,
prvtSwAclExtRuleTcpSrcPort PrvtSwAclPortIdTypeOrNone,
prvtSwAclExtRuleTcpDstPort PrvtSwAclPortIdTypeOrNone,
prvtSwAclExtRuleUdpSrcPort PrvtSwAclPortIdTypeOrNone,
prvtSwAclExtRuleUdpDstPort PrvtSwAclPortIdTypeOrNone,
prvtSwAclExtRuleTos PrvtSwAclTosTypeOrNone,
prvtSwAclExtRulePrecedence PrvtSwAclPrecedenceTypeOrNone,
prvtSwAclExtRuleVlanId PrvtSwAclVlanIdTypeOrNone,
prvtSwAclExtRuleVlanMask PrvtSwAclVlanMaskType,
prvtSwAclExtRuleInnerVlanId PrvtSwAclVlanIdTypeOrNone,
prvtSwAclExtRuleInnerVlanMask PrvtSwAclVlanMaskType,
prvtSwAclExtRuleVpt PrvtSwAclVptTypeOrNone,
prvtSwAclExtRuleInnerVpt PrvtSwAclVptTypeOrNone,
prvtSwAclExtRuleDscp PrvtSwAclDscpTypeOrNone,
prvtSwAclExtRuleUntaggedMode TruthValue
}
prvtSwAclExtRuleId OBJECT-TYPE
SYNTAX PrvtSwAclRuleIdType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Index of the particular rule within the extended IP access control list."
::= { prvtSwAclExtRuleEntry 1 }
prvtSwAclExtRuleRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for this extended access-list rule."
::= { prvtSwAclExtRuleEntry 2 }
prvtSwAclExtRuleAction OBJECT-TYPE
SYNTAX PrvtSwAclAction
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The action to perform when the condition of this access-list rule is true."
::= { prvtSwAclExtRuleEntry 3 }
prvtSwAclExtRuleIpProtocol OBJECT-TYPE
SYNTAX PrvtSwAclIpProtocol
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The IP protocol number associated with this access-list rule."
::= { prvtSwAclExtRuleEntry 4 }
prvtSwAclExtRuleIpSrcPrefix OBJECT-TYPE
SYNTAX PrvtSwAclIpv4PrefixType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The IP source address prefix defining the subnet associated with this flow."
::= { prvtSwAclExtRuleEntry 5 }
prvtSwAclExtRuleIpDstPrefix OBJECT-TYPE
SYNTAX PrvtSwAclIpv4PrefixType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The IP destination address prefix defining the subnet associated with this flow."
::= { prvtSwAclExtRuleEntry 6 }
prvtSwAclExtRuleIcmpType OBJECT-TYPE
SYNTAX Integer32 (-1..255)
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The ICMP message type associated with this access-list rule.
Only used when prvtSwAclExtRuleIpProtocol equals icmp(1).
The value '-1' indicates ignore ICMP message type field."
::= { prvtSwAclExtRuleEntry 7 }
prvtSwAclExtRuleIcmpCode OBJECT-TYPE
SYNTAX Integer32 (-1..255)
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The ICMP message code associated with this access-list rule.
Only used when prvtSwAclExtRuleIpProtocol equals icmp(1).
The value '-1' indicates ignore ICMP message code field."
::= { prvtSwAclExtRuleEntry 8 }
prvtSwAclExtRuleEstablished OBJECT-TYPE
SYNTAX TruthValue
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"When TCP protocol type is chosen, setting this object to 'true' indicates that
established connections will be matched.
Only used when prvtSwAclExtRuleIpProtocol equals tcp(6)."
::= { prvtSwAclExtRuleEntry 9 }
prvtSwAclExtRuleTcpSrcPort OBJECT-TYPE
SYNTAX PrvtSwAclPortIdTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The TCP source port associated with this access-list rule.
Only used when prvtSwAclExtRuleIpProtocol equals tcp(6).
The value '-1' indicates ignore the TCP source port field."
::= { prvtSwAclExtRuleEntry 10 }
prvtSwAclExtRuleTcpDstPort OBJECT-TYPE
SYNTAX PrvtSwAclPortIdTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The TCP destination port associated with this access-list rule.
Only used when prvtSwAclExtRuleIpProtocol equals tcp(6).
The value '-1' indicates ignore the TCP destination port field."
::= { prvtSwAclExtRuleEntry 11 }
prvtSwAclExtRuleUdpSrcPort OBJECT-TYPE
SYNTAX PrvtSwAclPortIdTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The UDP source port associated with this access-list rule.
Only used when prvtSwAclExtRuleIpProtocol equals udp(17).
The value '-1' indicates ignore the UDP source port field."
::= { prvtSwAclExtRuleEntry 12 }
prvtSwAclExtRuleUdpDstPort OBJECT-TYPE
SYNTAX PrvtSwAclPortIdTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The UDP destination port associated with this access-list rule.
Only used when prvtSwAclExtRuleIpProtocol equals udp(17).
The value '-1' indicates ignore the UDP destination port field."
::= { prvtSwAclExtRuleEntry 13 }
prvtSwAclExtRuleTos OBJECT-TYPE
SYNTAX PrvtSwAclTosTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The Type of Service value associated with this access-list rule.
The value '16' indicates that the TOS field is ignored."
::= { prvtSwAclExtRuleEntry 14 }
prvtSwAclExtRulePrecedence OBJECT-TYPE
SYNTAX PrvtSwAclPrecedenceTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The Precedence value associated with this access-list rule.
The value '8' indicates that the Precedence field is ignored."
::= { prvtSwAclExtRuleEntry 15 }
prvtSwAclExtRuleVlanId OBJECT-TYPE
SYNTAX PrvtSwAclVlanIdTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The VLAN ID associated with this access-list rule.
This must be set to the value '0' (no VLAN ID) when in untagged mode
(i.e. when prvtSwAclExtRuleUntaggedMode equals 'true')."
::= { prvtSwAclExtRuleEntry 16 }
prvtSwAclExtRuleVlanMask OBJECT-TYPE
SYNTAX PrvtSwAclVlanMaskType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The VLAN mask to use with this access-list rule.
This must be set to all ones (0xffff) (always match) when in untagged
mode (i.e. when prvtSwAclExtRuleUntaggedMode equals 'true')."
::= { prvtSwAclExtRuleEntry 17 }
prvtSwAclExtRuleInnerVlanId OBJECT-TYPE
SYNTAX PrvtSwAclVlanIdTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The inner VLAN ID associated with this access-list rule.
This must be set to the value '0' (no VLAN ID) when in untagged mode
(i.e. when prvtSwAclExtRuleUntaggedMode equals 'true')."
::= { prvtSwAclExtRuleEntry 18 }
prvtSwAclExtRuleInnerVlanMask OBJECT-TYPE
SYNTAX PrvtSwAclVlanMaskType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The inner VLAN mask to use with this access-list rule.
This must be set to all ones (0xffff) (always match) when in untagged
mode (i.e. when prvtSwAclExtRuleUntaggedMode equals 'true')."
::= { prvtSwAclExtRuleEntry 19 }
prvtSwAclExtRuleVpt OBJECT-TYPE
SYNTAX PrvtSwAclVptTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The VLAN priority tag associated with this access-list rule.
A value of '8' indicates that the VPT field is ignored.
This must be set to the value '8' (ignore VPT field) when in untagged
mode (i.e. when prvtSwAclExtRuleUntaggedMode equals 'true')."
::= { prvtSwAclExtRuleEntry 20 }
prvtSwAclExtRuleInnerVpt OBJECT-TYPE
SYNTAX PrvtSwAclVptTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The inner VLAN priority tag associated with this access-list rule.
A value of '8' indicates that the VPT field is ignored.
This must be set to the value '8' (ignore VPT field) when in untagged
mode (i.e. when prvtSwAclExtRuleUntaggedMode equals 'true')."
::= { prvtSwAclExtRuleEntry 21 }
prvtSwAclExtRuleDscp OBJECT-TYPE
SYNTAX PrvtSwAclDscpTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The DiffServ Code Point associated with this access-list rule.
A value of '64' indicates that the DSCP field is ignored."
::= { prvtSwAclExtRuleEntry 22 }
prvtSwAclExtRuleUntaggedMode OBJECT-TYPE
SYNTAX TruthValue
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Enables untagged mode.
In untagged mode, only untagged frames are included in the match comparison,
otherwise all tagged and untagged frames are included."
::= { prvtSwAclExtRuleEntry 23 }
prvtSwAclMacTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclMacEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"A list of MAC Access Control Lists.
Up to 250 entries are supported."
::= { prvtSwAclGroups 5 }
prvtSwAclMacEntry OBJECT-TYPE
SYNTAX PrvtSwAclMacEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclMacTable."
INDEX { prvtSwAclMacName }
::= { prvtSwAclMacTable 1 }
PrvtSwAclMacEntry ::= SEQUENCE {
prvtSwAclMacName PrvtSwAclNameType,
prvtSwAclMacRowStatus RowStatus,
prvtSwAclMacDescr PrvtSwAclDescrType
}
prvtSwAclMacName OBJECT-TYPE
SYNTAX PrvtSwAclNameType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"A string uniquely identifying a MAC Access Control List."
::= { prvtSwAclMacEntry 1 }
prvtSwAclMacRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for this MAC Access Control List."
::= { prvtSwAclMacEntry 2 }
prvtSwAclMacDescr OBJECT-TYPE
SYNTAX PrvtSwAclDescrType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"An arbitrary description to assign to this MAC Access Control List."
::= { prvtSwAclMacEntry 3 }
prvtSwAclMacRuleTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclMacRuleEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"A list of rules for MAC access-lists.
Up to 250 entries are supported per prvtSwAclMacName."
::= { prvtSwAclGroups 6 }
prvtSwAclMacRuleEntry OBJECT-TYPE
SYNTAX PrvtSwAclMacRuleEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclMacRuleTable."
INDEX { prvtSwAclMacName, prvtSwAclMacRuleId }
::= { prvtSwAclMacRuleTable 1 }
PrvtSwAclMacRuleEntry ::= SEQUENCE {
prvtSwAclMacRuleId PrvtSwAclRuleIdType,
prvtSwAclMacRuleRowStatus RowStatus,
prvtSwAclMacRuleAction PrvtSwAclAction,
prvtSwAclMacRuleMacSrc MacAddress,
prvtSwAclMacRuleMacSrcMask MacAddress,
prvtSwAclMacRuleMacDst MacAddress,
prvtSwAclMacRuleMacDstMask MacAddress,
prvtSwAclMacRuleTos PrvtSwAclTosTypeOrNone,
prvtSwAclMacRulePrecedence PrvtSwAclPrecedenceTypeOrNone,
prvtSwAclMacRuleVlanId PrvtSwAclVlanIdTypeOrNone,
prvtSwAclMacRuleVlanMask PrvtSwAclVlanMaskType,
prvtSwAclMacRuleInnerVlanId PrvtSwAclVlanIdTypeOrNone,
prvtSwAclMacRuleInnerVlanMask PrvtSwAclVlanMaskType,
prvtSwAclMacRuleVpt PrvtSwAclVptTypeOrNone,
prvtSwAclMacRuleInnerVpt PrvtSwAclVptTypeOrNone,
prvtSwAclMacRuleDscp PrvtSwAclDscpTypeOrNone,
prvtSwAclMacRuleUntaggedMode TruthValue,
prvtSwAclMacRuleDstAddrType PrvtSwAclMatchTrafficType
}
prvtSwAclMacRuleId OBJECT-TYPE
SYNTAX PrvtSwAclRuleIdType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Index of the particular rule within the MAC access control list."
::= { prvtSwAclMacRuleEntry 1 }
prvtSwAclMacRuleRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for this MAC access-list rule."
::= { prvtSwAclMacRuleEntry 2 }
prvtSwAclMacRuleAction OBJECT-TYPE
SYNTAX PrvtSwAclAction
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The action to perform when the condition of this access-list rule is true."
::= { prvtSwAclMacRuleEntry 3 }
prvtSwAclMacRuleMacSrc OBJECT-TYPE
SYNTAX MacAddress
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The MAC source address associated with this access-list rule."
::= { prvtSwAclMacRuleEntry 4 }
prvtSwAclMacRuleMacSrcMask OBJECT-TYPE
SYNTAX MacAddress
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The mask to use with the MAC source address associated with this access-list rule.
A '1' in a bit position will result in the corresponding bit in the
source MAC address becoming 'don't care' (i.e. always match).
Thus, a value of all ones will result in any MAC source address matching."
::= { prvtSwAclMacRuleEntry 5 }
prvtSwAclMacRuleMacDst OBJECT-TYPE
SYNTAX MacAddress
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The MAC destination address associated with this access-list rule."
::= { prvtSwAclMacRuleEntry 6 }
prvtSwAclMacRuleMacDstMask OBJECT-TYPE
SYNTAX MacAddress
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The mask to use with the MAC destination address associated with this access-list rule.
A '1' in a bit position will result in the corresponding bit in the
destination MAC address becoming 'don't care' (i.e. always match).
Thus, a value of all ones will result in any MAC destination address matching."
::= { prvtSwAclMacRuleEntry 7 }
prvtSwAclMacRuleTos OBJECT-TYPE
SYNTAX PrvtSwAclTosTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The Type of Service value associated with this access-list rule.
The value '16' indicates that the TOS field is ignored."
::= { prvtSwAclMacRuleEntry 8 }
prvtSwAclMacRulePrecedence OBJECT-TYPE
SYNTAX PrvtSwAclPrecedenceTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The Precedence value associated with this access-list rule.
The value '8' indicates that the Precedence field is ignored."
::= { prvtSwAclMacRuleEntry 9 }
prvtSwAclMacRuleVlanId OBJECT-TYPE
SYNTAX PrvtSwAclVlanIdTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The VLAN ID associated with this access-list rule.
This must be set to the value '0' (no VLAN ID) when in untagged mode
(i.e. when prvtSwAclMacRuleUntaggedMode equals 'true')."
::= { prvtSwAclMacRuleEntry 10 }
prvtSwAclMacRuleVlanMask OBJECT-TYPE
SYNTAX PrvtSwAclVlanMaskType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The VLAN mask to use with this access-list rule.
This must be set to all ones (0xffff) (always match) when in untagged
mode (i.e. when prvtSwAclMacRuleUntaggedMode equals 'true')."
::= { prvtSwAclMacRuleEntry 11 }
prvtSwAclMacRuleInnerVlanId OBJECT-TYPE
SYNTAX PrvtSwAclVlanIdTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The inner VLAN ID associated with this access-list rule.
This must be set to the value '0' (no VLAN ID) when in untagged mode
(i.e. when prvtSwAclMacRuleUntaggedMode equals 'true')."
::= { prvtSwAclMacRuleEntry 12 }
prvtSwAclMacRuleInnerVlanMask OBJECT-TYPE
SYNTAX PrvtSwAclVlanMaskType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The inner VLAN mask to use with this access-list rule.
This must be set to all ones (0xffff) (always match) when in untagged
mode (i.e. when prvtSwAclMAcRuleUntaggedMode equals 'true')."
::= { prvtSwAclMacRuleEntry 13 }
prvtSwAclMacRuleVpt OBJECT-TYPE
SYNTAX PrvtSwAclVptTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The VLAN priority tag associated with this access-list rule.
A value of '8' indicates that the VPT field is ignored.
This must be set to the value '8' (ignore VPT field) when in untagged
mode (i.e. when prvtSwAclMacRuleUntaggedMode equals 'true')."
::= { prvtSwAclMacRuleEntry 14 }
prvtSwAclMacRuleInnerVpt OBJECT-TYPE
SYNTAX PrvtSwAclVptTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The inner VLAN priority tag associated with this access-list rule.
A value of '8' indicates that the VPT field is ignored.
This must be set to the value '8' (ignore VPT field) when in untagged
mode (i.e. when prvtSwAclMacRuleUntaggedMode equals 'true')."
::= { prvtSwAclMacRuleEntry 15 }
prvtSwAclMacRuleDscp OBJECT-TYPE
SYNTAX PrvtSwAclDscpTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The DiffServ Code Point associated with this access-list rule.
A value of '64' indicates that the DSCP field is ignored."
::= { prvtSwAclMacRuleEntry 16 }
prvtSwAclMacRuleUntaggedMode OBJECT-TYPE
SYNTAX TruthValue
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Enables untagged mode.
In untagged mode, only untagged frames are included in the match comparison,
otherwise all tagged and untagged frames are included."
::= { prvtSwAclMacRuleEntry 17 }
prvtSwAclMacRuleDstAddrType OBJECT-TYPE
SYNTAX PrvtSwAclMatchTrafficType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"What type of traffic (based on destination address) to match."
::= { prvtSwAclMacRuleEntry 18 }
prvtSwAclEthTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclEthEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"A list of EtherType Access Control Lists.
Up to 250 entries are supported."
::= { prvtSwAclGroups 7 }
prvtSwAclEthEntry OBJECT-TYPE
SYNTAX PrvtSwAclEthEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclEthTable."
INDEX { prvtSwAclEthName }
::= { prvtSwAclEthTable 1 }
PrvtSwAclEthEntry ::= SEQUENCE {
prvtSwAclEthName PrvtSwAclNameType,
prvtSwAclEthRowStatus RowStatus,
prvtSwAclEthDescr PrvtSwAclDescrType
}
prvtSwAclEthName OBJECT-TYPE
SYNTAX PrvtSwAclNameType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"A string uniquely identifying an EtherType Access Control List."
::= { prvtSwAclEthEntry 1 }
prvtSwAclEthRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for this EtherType Access Control List."
::= { prvtSwAclEthEntry 2 }
prvtSwAclEthDescr OBJECT-TYPE
SYNTAX PrvtSwAclDescrType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"An arbitrary description to assign to this EtherType Access Control List."
::= { prvtSwAclEthEntry 3 }
prvtSwAclEthRuleTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclEthRuleEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"A list of rules for EtherType access-lists.
Up to 250 entries are supported per prvtSwAclEthName."
::= { prvtSwAclGroups 8 }
prvtSwAclEthRuleEntry OBJECT-TYPE
SYNTAX PrvtSwAclEthRuleEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclEthRuleTable."
INDEX { prvtSwAclEthName, prvtSwAclEthRuleId }
::= { prvtSwAclEthRuleTable 1 }
PrvtSwAclEthRuleEntry ::= SEQUENCE {
prvtSwAclEthRuleId PrvtSwAclRuleIdType,
prvtSwAclEthRuleRowStatus RowStatus,
prvtSwAclEthRuleAction PrvtSwAclAction,
prvtSwAclEthRuleEthType PrvtSwAclEtherType,
prvtSwAclEthRuleEthTypeMask PrvtSwAclEtherTypeMask,
prvtSwAclEthRuleTos PrvtSwAclTosTypeOrNone,
prvtSwAclEthRulePrecedence PrvtSwAclPrecedenceTypeOrNone,
prvtSwAclEthRuleVlanId PrvtSwAclVlanIdTypeOrNone,
prvtSwAclEthRuleVlanMask PrvtSwAclVlanMaskType,
prvtSwAclEthRuleInnerVlanId PrvtSwAclVlanIdTypeOrNone,
prvtSwAclEthRuleInnerVlanMask PrvtSwAclVlanMaskType,
prvtSwAclEthRuleVpt PrvtSwAclVptTypeOrNone,
prvtSwAclEthRuleInnerVpt PrvtSwAclVptTypeOrNone,
prvtSwAclEthRuleDscp PrvtSwAclDscpTypeOrNone,
prvtSwAclEthRuleUntaggedMode TruthValue
}
prvtSwAclEthRuleId OBJECT-TYPE
SYNTAX PrvtSwAclRuleIdType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Index of the particular rule within the EtherType IP access control list."
::= { prvtSwAclEthRuleEntry 1 }
prvtSwAclEthRuleRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for EtherType access-list rule."
::= { prvtSwAclEthRuleEntry 2 }
prvtSwAclEthRuleAction OBJECT-TYPE
SYNTAX PrvtSwAclAction
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The action to perform when the condition of this access-list rule is true."
::= { prvtSwAclEthRuleEntry 3 }
prvtSwAclEthRuleEthType OBJECT-TYPE
SYNTAX PrvtSwAclEtherType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The EtherType protocol number associated with this access-list rule."
::= { prvtSwAclEthRuleEntry 4 }
prvtSwAclEthRuleEthTypeMask OBJECT-TYPE
SYNTAX PrvtSwAclEtherTypeMask
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The EtherType protocol mask to use with this access-list rule.
A value of all ones (0xffff) will result in any EtherType protocol number
matching."
::= { prvtSwAclEthRuleEntry 5 }
prvtSwAclEthRuleTos OBJECT-TYPE
SYNTAX PrvtSwAclTosTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The Type of Service value associated with this access-list rule.
The value '16' indicates that the TOS field is ignored."
::= { prvtSwAclEthRuleEntry 6 }
prvtSwAclEthRulePrecedence OBJECT-TYPE
SYNTAX PrvtSwAclPrecedenceTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The Precedence value associated with this access-list rule.
The value '8' indicates that the Precedence field is ignored."
::= { prvtSwAclEthRuleEntry 7 }
prvtSwAclEthRuleVlanId OBJECT-TYPE
SYNTAX PrvtSwAclVlanIdTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The VLAN ID associated with this access-list rule.
This must be set to the value '0' (no VLAN ID) when in untagged mode
(i.e. when prvtSwAclEthRuleUntaggedMode equals 'true')."
::= { prvtSwAclEthRuleEntry 8 }
prvtSwAclEthRuleVlanMask OBJECT-TYPE
SYNTAX PrvtSwAclVlanMaskType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The VLAN mask to use with this access-list rule.
This must be set to all ones (0xffff) (always match) when in untagged
mode (i.e. when prvtSwAclEthRuleUntaggedMode equals 'true')."
::= { prvtSwAclEthRuleEntry 9 }
prvtSwAclEthRuleInnerVlanId OBJECT-TYPE
SYNTAX PrvtSwAclVlanIdTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The inner VLAN ID associated with this access-list rule.
This must be set to the value '0' (no VLAN ID) when in untagged mode
(i.e. when prvtSwAclEthRuleUntaggedMode equals 'true')."
::= { prvtSwAclEthRuleEntry 10 }
prvtSwAclEthRuleInnerVlanMask OBJECT-TYPE
SYNTAX PrvtSwAclVlanMaskType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The inner VLAN mask to use with this access-list rule.
This must be set to all ones (0xffff) (always match) when in untagged
mode (i.e. when prvtSwAclEthRuleUntaggedMode equals 'true')."
::= { prvtSwAclEthRuleEntry 11 }
prvtSwAclEthRuleVpt OBJECT-TYPE
SYNTAX PrvtSwAclVptTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The VLAN priority tag associated with this access-list rule.
A value of '8' indicates that the VPT field is ignored.
This must be set to the value '8' (ignore VPT field) when in untagged
mode (i.e. when prvtSwAclEthRuleUntaggedMode equals 'true')."
::= { prvtSwAclEthRuleEntry 12 }
prvtSwAclEthRuleInnerVpt OBJECT-TYPE
SYNTAX PrvtSwAclVptTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The inner VLAN priority tag associated with this access-list rule.
A value of '8' indicates that the VPT field is ignored.
This must be set to the value '8' (ignore VPT field) when in untagged
mode (i.e. when prvtSwAclEthRuleUntaggedMode equals 'true')."
::= { prvtSwAclEthRuleEntry 13 }
prvtSwAclEthRuleDscp OBJECT-TYPE
SYNTAX PrvtSwAclDscpTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The DiffServ Code Point associated with this access-list rule.
A value of '64' indicates that the DSCP field is ignored."
::= { prvtSwAclEthRuleEntry 14 }
prvtSwAclEthRuleUntaggedMode OBJECT-TYPE
SYNTAX TruthValue
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Enables untagged mode.
In untagged mode, only untagged frames are included in the match comparison,
otherwise all tagged and untagged frames are included."
::= { prvtSwAclEthRuleEntry 15 }
prvtSwAclInterfaces OBJECT IDENTIFIER
::= { prvtSwAclObjects 3 }
prvtSwAclIfAcg OBJECT IDENTIFIER
::= { prvtSwAclInterfaces 2 }
prvtSwAclIfAcgTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclIfAcgEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"This table creates and controls the properties of traffic flows belonging to
physical and LAG interfaces.
Up to 250 entries are supported per interface (prvtSwAclIfAcgIndex).
The key combination (prvtSwAclIfAcgIndex, prvtSwAclIfAcgSeqId) must be unique
(i.e. no more than one entry must exist with the same interface and sequence-id
combination)."
::= { prvtSwAclIfAcg 1 }
prvtSwAclIfAcgEntry OBJECT-TYPE
SYNTAX PrvtSwAclIfAcgEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclIfAcgTable."
INDEX { prvtSwAclIfAcgIndex, prvtSwAclIfAcgSeqId,
prvtSwAclIfAcgType, prvtSwAclIfAcgAclName,
prvtSwAclIfAcgAclType }
::= { prvtSwAclIfAcgTable 1 }
PrvtSwAclIfAcgEntry ::= SEQUENCE {
prvtSwAclIfAcgIndex InterfaceIndex,
prvtSwAclIfAcgSeqId Unsigned32,
prvtSwAclIfAcgType PrvtSwAclAcgType,
prvtSwAclIfAcgAclName PrvtSwAclNameType,
prvtSwAclIfAcgAclType PrvtSwAclGroupType,
prvtSwAclIfAcgRowStatus RowStatus,
prvtSwAclIfAcgVlan PrvtSwAclVlanIdTypeOrNone,
prvtSwAclIfAcgVlanAdd PrvtSwAclVlanIdTypeOrNone,
prvtSwAclIfAcgVpt PrvtSwAclVptTypeOrNone,
prvtSwAclIfAcgInnerVpt PrvtSwAclVptTypeOrNone,
prvtSwAclIfAcgDscp PrvtSwAclDscpTypeOrNone,
prvtSwAclIfAcgColorGreenFc PrvtSwAclFcTypeOrNone,
prvtSwAclIfAcgColorYellowFc PrvtSwAclFcTypeOrNone,
prvtSwAclIfAcgColorRedFc PrvtSwAclFcTypeOrNone,
prvtSwAclIfAcgColorGreenVpt PrvtSwAclVptTypeOrNone,
prvtSwAclIfAcgColorYellowVpt PrvtSwAclVptTypeOrNone,
prvtSwAclIfAcgColorRedVpt PrvtSwAclVptTypeOrNone,
prvtSwAclIfAcgColorGreenDscp PrvtSwAclDscpTypeOrNone,
prvtSwAclIfAcgColorYellowDscp PrvtSwAclDscpTypeOrNone,
prvtSwAclIfAcgColorRedDscp PrvtSwAclDscpTypeOrNone,
prvtSwAclIfAcgResetStats TruthValue
}
prvtSwAclIfAcgIndex OBJECT-TYPE
SYNTAX InterfaceIndex
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"The index of the physical or LAG interface to which this row applies."
::= { prvtSwAclIfAcgEntry 1 }
prvtSwAclIfAcgSeqId OBJECT-TYPE
SYNTAX Unsigned32
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Specifies the sequence (order/priority) in which this access group will be applied."
::= { prvtSwAclIfAcgEntry 2 }
prvtSwAclIfAcgType OBJECT-TYPE
SYNTAX PrvtSwAclAcgType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"The type (e.g. ipStd, ipExt, mac, etherType) of access group that this row applies to."
::= { prvtSwAclIfAcgEntry 3 }
prvtSwAclIfAcgAclName OBJECT-TYPE
SYNTAX PrvtSwAclNameType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"The name of the access list that this row applies to.
This must match the name of an ACL created having the type specified by prvtSwAclIfAcgType.
(i.e. it must match one of prvtSwAclStdName, prvtSwAclExtName, prvtSwAclMacName,
prvtSwAclEthName corresponding to the type specified in prvtSwAclIfAcgType.)"
::= { prvtSwAclIfAcgEntry 4 }
prvtSwAclIfAcgAclType OBJECT-TYPE
SYNTAX PrvtSwAclGroupType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"The type (e.g. in, out, vlan) of access list that this row applies to."
::= { prvtSwAclIfAcgEntry 5 }
prvtSwAclIfAcgRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for this access-control group."
::= { prvtSwAclIfAcgEntry 6 }
prvtSwAclIfAcgVlan OBJECT-TYPE
SYNTAX PrvtSwAclVlanIdTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The ID of the VLAN to which traffic belonging to this access-group will be redirected to.
The value of '0' indicates that redirection is disabled.
Only applicable for VLAN ACL types (when prvtSwAclIfAcgAclType equals 'vlan').
This object and prvtSwAclIfAcgVlanAdd are not permitted to be simultaneously non-zero."
::= { prvtSwAclIfAcgEntry 8 }
prvtSwAclIfAcgVlanAdd OBJECT-TYPE
SYNTAX PrvtSwAclVlanIdTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The ID of the VLAN to which traffic belonging to this access-group will have added to.
The value of '0' indicates that redirection is disabled.
Only applicable for VLAN ACL types (when prvtSwAclIfAcgAclType equals 'vlan').
This object and prvtSwAclIfAcgVlan are not permitted to be simultaneously non-zero."
::= { prvtSwAclIfAcgEntry 9 }
prvtSwAclIfAcgVpt OBJECT-TYPE
SYNTAX PrvtSwAclVptTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The VLAN priority tag to assign to traffic belonging to this access-group.
A value of '8' indicates that the VPT field is unaffected.
Only used for egress ACL types (when prvtSwAclIfAcgGroupType equals 'out')."
::= { prvtSwAclIfAcgEntry 10 }
prvtSwAclIfAcgInnerVpt OBJECT-TYPE
SYNTAX PrvtSwAclVptTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The inner VLAN priority tag to assign to traffic belonging to this access-group.
A value of '8' indicates that the inner VPT field is unaffected.
Only used for egress ACL types (when prvtSwAclIfAcgGroupType equals 'out')."
::= { prvtSwAclIfAcgEntry 11 }
prvtSwAclIfAcgDscp OBJECT-TYPE
SYNTAX PrvtSwAclDscpTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The DSCP value to assign to traffic belonging to this access-group.
A value of '64' indicates that the DSCP field is not affected.
Only used when prvtSwAclIfAcgGroupType equals 'out'."
::= { prvtSwAclIfAcgEntry 12 }
prvtSwAclIfAcgColorGreenFc OBJECT-TYPE
SYNTAX PrvtSwAclFcTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Map traffic marked as green from the ACG rate-limit to a Forwarding Class (FC).
The value 'none' indicates that the FC is not to be affected.
Only used when prvtSwAclIfAcgGroupType equals 'in'."
::= { prvtSwAclIfAcgEntry 13 }
prvtSwAclIfAcgColorYellowFc OBJECT-TYPE
SYNTAX PrvtSwAclFcTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Map traffic marked as yellow from ACG rate-limit to a Forwarding Class (FC).
The value 'none' indicates that the FC is not to be affected.
Only used when prvtSwAclIfAcgGroupType equals 'in'."
::= { prvtSwAclIfAcgEntry 14 }
prvtSwAclIfAcgColorRedFc OBJECT-TYPE
SYNTAX PrvtSwAclFcTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Map traffic marked as red from ACG rate-limit to a Forwarding Class (FC).
The value 'none' indicates that the FC is not to be affected.
Only used when prvtSwAclIfAcgGroupType equals 'in'."
::= { prvtSwAclIfAcgEntry 15 }
prvtSwAclIfAcgColorGreenVpt OBJECT-TYPE
SYNTAX PrvtSwAclVptTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Remark, with the specifed value, the VLAN priority field of frames for traffic
marked as green.
The value '8' indicates that the field should not be re-marked.
Only used for egress ACL types (when prvtSwAclIfAcgGroupType equals 'out')."
::= { prvtSwAclIfAcgEntry 16 }
prvtSwAclIfAcgColorYellowVpt OBJECT-TYPE
SYNTAX PrvtSwAclVptTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Remark, with the specifed value, the VLAN priority field of frames for traffic
marked as yellow.
The value '8' indicates that the field should not be re-marked.
Only used for egress ACL types (when prvtSwAclIfAcgGroupType equals 'out')."
::= { prvtSwAclIfAcgEntry 17 }
prvtSwAclIfAcgColorRedVpt OBJECT-TYPE
SYNTAX PrvtSwAclVptTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Remark, with the specifed value, the VLAN priority field of frames for traffic
marked as green.
The value '8' indicates that the field should not be re-marked.
Only used for egress ACL types (when prvtSwAclIfAcgGroupType equals 'out')."
::= { prvtSwAclIfAcgEntry 18 }
prvtSwAclIfAcgColorGreenDscp OBJECT-TYPE
SYNTAX PrvtSwAclDscpTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Remark, with the specifed value, the DSCP field of frames for traffic
marked as green.
A value of '64' indicates that the DSCP value should not be re-marked.
Only used for egress ACL types (when prvtSwAclIfAcgGroupType equals 'out')."
::= { prvtSwAclIfAcgEntry 19 }
prvtSwAclIfAcgColorYellowDscp OBJECT-TYPE
SYNTAX PrvtSwAclDscpTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Remark, with the specifed value, the DSCP field of frames for traffic
marked as yellow.
Only used for egress ACL types (when prvtSwAclIfAcgGroupType equals 'out')."
::= { prvtSwAclIfAcgEntry 20 }
prvtSwAclIfAcgColorRedDscp OBJECT-TYPE
SYNTAX PrvtSwAclDscpTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Remark, with the specifed value, the DSCP field of frames for traffic
marked as red.
Only used for egress ACL types (when prvtSwAclIfAcgGroupType equals 'out')."
::= { prvtSwAclIfAcgEntry 21 }
prvtSwAclIfAcgResetStats OBJECT-TYPE
SYNTAX TruthValue
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Set to 'true' to reset statistics for this SAP access group.
Reads always return the value 'false'."
::= { prvtSwAclIfAcgEntry 22 }
prvtSwAclIfAcgRLimitTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclIfAcgRLimitEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Used to specify for this traffic flow which type of rate-limiting to use
and the parameters of the rate-limiting method.
Only one entry may exist (i.e. one rate-limiting method may be used) for a
particular traffic flow.
Not available for VLAN ACL types (when prvtSwAclIfAcgAclType equals 'vlan').
For a particular traffic flow, this table and prvtSwAclIfAcgFcTable are
mutually exclusive (i.e. a traffic flow is prohibited from having
an entry in this table and in prvtSwAclIfAcgFcTable concurrently)."
::= { prvtSwAclIfAcg 2 }
prvtSwAclIfAcgRLimitEntry OBJECT-TYPE
SYNTAX PrvtSwAclIfAcgRLimitEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclIfAcgRLimitTable."
INDEX { prvtSwAclIfAcgIndex, prvtSwAclIfAcgSeqId,
prvtSwAclIfAcgType, prvtSwAclIfAcgAclName,
prvtSwAclIfAcgAclType, prvtSwAclIfAcgRLimitType }
::= { prvtSwAclIfAcgRLimitTable 1 }
PrvtSwAclIfAcgRLimitEntry ::= SEQUENCE {
prvtSwAclIfAcgRLimitType PrvtSwAclRateLimitType,
prvtSwAclIfAcgRLimitRowStatus RowStatus,
prvtSwAclIfAcgRLimitCir PrvtSwAclRateType,
prvtSwAclIfAcgRLimitCbs PrvtSwAclBurstSizeType,
prvtSwAclIfAcgRLimitEbs PrvtSwAclBurstSizeType,
prvtSwAclIfAcgRLimitPir PrvtSwAclRateType,
prvtSwAclIfAcgRLimitPbs PrvtSwAclBurstSizeType,
prvtSwAclIfAcgRLimitColorAware TruthValue,
prvtSwAclIfAcgRLimitExceedAct PrvtSwAclExceedAction
}
prvtSwAclIfAcgRLimitType OBJECT-TYPE
SYNTAX PrvtSwAclRateLimitType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Specifies the type (single vs. dual) of rate-limiting to use."
::= { prvtSwAclIfAcgRLimitEntry 1 }
prvtSwAclIfAcgRLimitRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for this rate limit function."
::= { prvtSwAclIfAcgRLimitEntry 2 }
prvtSwAclIfAcgRLimitCir OBJECT-TYPE
SYNTAX PrvtSwAclRateType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The Committed Information Rate."
::= { prvtSwAclIfAcgRLimitEntry 3 }
prvtSwAclIfAcgRLimitCbs OBJECT-TYPE
SYNTAX PrvtSwAclBurstSizeType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The Committed Burst Size."
::= { prvtSwAclIfAcgRLimitEntry 4 }
prvtSwAclIfAcgRLimitEbs OBJECT-TYPE
SYNTAX PrvtSwAclBurstSizeType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The Excess Burst Size.
Only applicable when using single rate limiting (prvtSwAclIfAcgRLimitType
equals 'single')."
::= { prvtSwAclIfAcgRLimitEntry 5 }
prvtSwAclIfAcgRLimitPir OBJECT-TYPE
SYNTAX PrvtSwAclRateType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The Peak Information Rate.
Only applicable when using dual rate limiting (prvtSwAclIfAcgRLimitType
equals 'dual').
When using dual rate limiting, prvtSwAclIfAcgRLimitPir
must be greater than or equal to prvtSwAclIfAcgRLimitCir."
::= { prvtSwAclIfAcgRLimitEntry 6 }
prvtSwAclIfAcgRLimitPbs OBJECT-TYPE
SYNTAX PrvtSwAclBurstSizeType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The Peak Burst Size.
Only applicable when using dual rate limiting (when
prvtSwAclIfAcgRLimitType equals 'dual')."
::= { prvtSwAclIfAcgRLimitEntry 7 }
prvtSwAclIfAcgRLimitColorAware OBJECT-TYPE
SYNTAX TruthValue
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Set to 'true' to enable color aware traffic metering."
::= { prvtSwAclIfAcgRLimitEntry 8 }
prvtSwAclIfAcgRLimitExceedAct OBJECT-TYPE
SYNTAX PrvtSwAclExceedAction
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The action to perform when the condition is true.
'markRed' is not supported for all devices.
'markYellow' is not supported for dual rate-limit."
::= { prvtSwAclIfAcgRLimitEntry 9 }
prvtSwAclIfAcgRedirectTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclIfAcgRedirectEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Used to specify if this traffic flow should be redirected to
another interface.
Only one entry is allowed (i.e. only one redirect is permitted).
Only applicable to ingress ACL types (when prvtSwAclIfAcgAclType equals 'in')."
::= { prvtSwAclIfAcg 3 }
prvtSwAclIfAcgRedirectEntry OBJECT-TYPE
SYNTAX PrvtSwAclIfAcgRedirectEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclIfAcgRedirectTable."
INDEX { prvtSwAclIfAcgIndex, prvtSwAclIfAcgSeqId,
prvtSwAclIfAcgType, prvtSwAclIfAcgAclName,
prvtSwAclIfAcgAclType, prvtSwAclIfAcgRedirectIfIndex }
::= { prvtSwAclIfAcgRedirectTable 1 }
PrvtSwAclIfAcgRedirectEntry ::= SEQUENCE {
prvtSwAclIfAcgRedirectIfIndex InterfaceIndex,
prvtSwAclIfAcgRedirectRowStatus RowStatus
}
prvtSwAclIfAcgRedirectIfIndex OBJECT-TYPE
SYNTAX InterfaceIndex
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"The ifIndex of a physical interface defined in the ifTable to which traffic should be redirected to."
::= { prvtSwAclIfAcgRedirectEntry 1 }
prvtSwAclIfAcgRedirectRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for prvtSwAclIfAcgRedirectTable."
::= { prvtSwAclIfAcgRedirectEntry 2 }
prvtSwAclIfAcgFcTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclIfAcgFcEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Used to assign parameters to a particular forwarding class within a traffic flow.
Only one entry is allowed.
Only applicable to ingress ACL types (when prvtSwAclIfAcgAclType equals 'in').
For a particular traffic flow, this table and prvtSwAclIfAcgRLimitTable are
mutually exclusive (i.e. a traffic flow is prohibited from having
an entry in this table and in prvtSwAclIfAcgFcTable at the same time)."
::= { prvtSwAclIfAcg 4 }
prvtSwAclIfAcgFcEntry OBJECT-TYPE
SYNTAX PrvtSwAclIfAcgFcEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclIfAcgFcTable."
INDEX { prvtSwAclIfAcgIndex, prvtSwAclIfAcgSeqId,
prvtSwAclIfAcgType, prvtSwAclIfAcgAclName,
prvtSwAclIfAcgAclType, prvtSwAclIfAcgFcId }
::= { prvtSwAclIfAcgFcTable 1 }
PrvtSwAclIfAcgFcEntry ::= SEQUENCE {
prvtSwAclIfAcgFcId PrvtSwAclFcType,
prvtSwAclIfAcgFcRowStatus RowStatus,
prvtSwAclIfAcgFcColor PrvtSwAclColorType
}
prvtSwAclIfAcgFcId OBJECT-TYPE
SYNTAX PrvtSwAclFcType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"The forwarding class that this row applies to."
::= { prvtSwAclIfAcgFcEntry 1 }
prvtSwAclIfAcgFcRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for this forwarding class."
::= { prvtSwAclIfAcgFcEntry 2 }
prvtSwAclIfAcgFcColor OBJECT-TYPE
SYNTAX PrvtSwAclColorType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The color to assign to traffic belonging to this forwarding class.
Color red is not supported for all devices"
::= { prvtSwAclIfAcgFcEntry 3 }
prvtSwAclIfAcgMonPrfTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclIfAcgMonPrfEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Used to assign a monitoring profile to a traffic flow.
Only one profile may be assigned per traffic flow.
Only applicable to ingress ACL types (when prvtSwAclIfAcgAclType equals 'in')."
::= { prvtSwAclIfAcg 5 }
prvtSwAclIfAcgMonPrfEntry OBJECT-TYPE
SYNTAX PrvtSwAclIfAcgMonPrfEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclIfAcgMonPrfTable."
INDEX { prvtSwAclIfAcgIndex, prvtSwAclIfAcgSeqId,
prvtSwAclIfAcgType, prvtSwAclIfAcgAclName,
prvtSwAclIfAcgAclType, prvtSwAclMonPrfId }
::= { prvtSwAclIfAcgMonPrfTable 1 }
PrvtSwAclIfAcgMonPrfEntry ::= SEQUENCE {
prvtSwAclIfAcgMonPrfRowStatus RowStatus,
prvtSwAclIfAcgMonPrfMatchF Counter64,
prvtSwAclIfAcgMonPrfMatchB Counter64,
prvtSwAclIfAcgMonPrfGreenF Counter64,
prvtSwAclIfAcgMonPrfGreenB Counter64,
prvtSwAclIfAcgMonPrfNotGreenF Counter64,
prvtSwAclIfAcgMonPrfNotGreenB Counter64,
prvtSwAclIfAcgMonPrfYellowF Counter64,
prvtSwAclIfAcgMonPrfYellowB Counter64,
prvtSwAclIfAcgMonPrfRedF Counter64,
prvtSwAclIfAcgMonPrfRedB Counter64,
prvtSwAclIfAcgMonPrfNotRedF Counter64,
prvtSwAclIfAcgMonPrfNotRedB Counter64,
prvtSwAclIfAcgMonPrfRateMatchF Counter64,
prvtSwAclIfAcgMonPrfRateMatchB Counter64,
prvtSwAclIfAcgMonPrfRateGreenF Counter64,
prvtSwAclIfAcgMonPrfRateGreenB Counter64,
prvtSwAclIfAcgMonPrfRateNotGreenF Counter64,
prvtSwAclIfAcgMonPrfRateNotGreenB Counter64,
prvtSwAclIfAcgMonPrfRateYellowF Counter64,
prvtSwAclIfAcgMonPrfRateYellowB Counter64,
prvtSwAclIfAcgMonPrfRateRedF Counter64,
prvtSwAclIfAcgMonPrfRateRedB Counter64,
prvtSwAclIfAcgMonPrfRateNotRedF Counter64,
prvtSwAclIfAcgMonPrfRateNotRedB Counter64
}
prvtSwAclIfAcgMonPrfRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for this monitoring profile."
::= { prvtSwAclIfAcgMonPrfEntry 1 }
prvtSwAclIfAcgMonPrfMatchF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of frames of traffic matching this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 2 }
prvtSwAclIfAcgMonPrfMatchB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of bytes of traffic matching this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 3 }
prvtSwAclIfAcgMonPrfGreenF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of frames of green traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 4 }
prvtSwAclIfAcgMonPrfGreenB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of bytes of green traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 5 }
prvtSwAclIfAcgMonPrfNotGreenF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of frames of non-green traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 6 }
prvtSwAclIfAcgMonPrfNotGreenB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of bytes of non-green traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 7 }
prvtSwAclIfAcgMonPrfYellowF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of frames of yellow traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 8 }
prvtSwAclIfAcgMonPrfYellowB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of bytes of yellow traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 9 }
prvtSwAclIfAcgMonPrfRedF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of frames of red traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 10 }
prvtSwAclIfAcgMonPrfRedB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of bytes of red traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 11 }
prvtSwAclIfAcgMonPrfNotRedF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of frames of non-red traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 12 }
prvtSwAclIfAcgMonPrfNotRedB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of bytes of non-red traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 13 }
prvtSwAclIfAcgMonPrfRateMatchF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in frames per second, of traffic matching this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 14 }
prvtSwAclIfAcgMonPrfRateMatchB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in bytes per second, of traffic matching this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 15 }
prvtSwAclIfAcgMonPrfRateGreenF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in frames per second, of green traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 16 }
prvtSwAclIfAcgMonPrfRateGreenB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in bytes per second, of green traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 17 }
prvtSwAclIfAcgMonPrfRateNotGreenF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in frames per second, of non-green traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 18 }
prvtSwAclIfAcgMonPrfRateNotGreenB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in bytes per second, of non-green traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 19 }
prvtSwAclIfAcgMonPrfRateYellowF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in frames per second, of yellow traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 20 }
prvtSwAclIfAcgMonPrfRateYellowB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in bytes per second, of yellow traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 21 }
prvtSwAclIfAcgMonPrfRateRedF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in frames per second, of red traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 22 }
prvtSwAclIfAcgMonPrfRateRedB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in bytes per second, of red traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 23 }
prvtSwAclIfAcgMonPrfRateNotRedF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in frames per second, of non-red traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 24 }
prvtSwAclIfAcgMonPrfRateNotRedB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in bytes per second, of non-red traffic belonging to this traffic flow."
::= { prvtSwAclIfAcgMonPrfEntry 25 }
prvtSwAclIfAcgRestrictEgForwardingTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclIfAcgRestrictEgForwardingEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Used to specify if this traffic flow should be forwarded to
another interface.All the other interfaces will be blocked.
Only applicable to ingress ACL types (when prvtSwAclIfAcgAclType equals 'in')."
::= { prvtSwAclIfAcg 6 }
prvtSwAclIfAcgRestrictEgForwardingEntry OBJECT-TYPE
SYNTAX PrvtSwAclIfAcgRestrictEgForwardingEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclIfAcgRestrictEgForwardingTable."
INDEX { prvtSwAclIfAcgIndex, prvtSwAclIfAcgSeqId,
prvtSwAclIfAcgType, prvtSwAclIfAcgAclName,
prvtSwAclIfAcgAclType,
prvtSwAclIfAcgRestrictEgForwIfIndex }
::= { prvtSwAclIfAcgRestrictEgForwardingTable 1 }
PrvtSwAclIfAcgRestrictEgForwardingEntry ::= SEQUENCE {
prvtSwAclIfAcgRestrictEgForwIfIndex InterfaceIndex,
prvtSwAclIfAcgRestrictEgForwRowStatus RowStatus
}
prvtSwAclIfAcgRestrictEgForwIfIndex OBJECT-TYPE
SYNTAX InterfaceIndex
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"The ifIndex of a physical interface defined in the ifTable to which traffic should be forwared to."
::= { prvtSwAclIfAcgRestrictEgForwardingEntry 1 }
prvtSwAclIfAcgRestrictEgForwRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for prvtSwAclIfAcgRestrictEgForwardingTable."
::= { prvtSwAclIfAcgRestrictEgForwardingEntry 2 }
prvtSwAclSaps OBJECT IDENTIFIER
::= { prvtSwAclObjects 4 }
prvtSwAclSapAcgTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclSapAcgEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"This table creates and controls the properties of traffic flows belonging to
SAP interfaces.
Up to 250 entries are supported per SAP (i.e. per prvtSwAclSapServiceId,
prvtSwAclSapIfIndex, prvtSwAclSapEncapValue combination).
The key combination (serviceId, sapPortId, sapEncapValue, prvtSwAclSapAcgSeqId)
must be unique (i.e. no more than one entry can exist with the same SAP
and sequence-id combination).
Notes:
1. access-groups are not supported on VPWS SAPs.
2. Only ingress ACL types (prvtSwAclSapAcgAclType equals 'in') are supported on SAPs."
::= { prvtSwAclSaps 1 }
prvtSwAclSapAcgEntry OBJECT-TYPE
SYNTAX PrvtSwAclSapAcgEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclSapAcgTable."
INDEX { serviceId, sapPortId, sapEncapValue,
prvtSwAclSapAcgSeqId, prvtSwAclSapAcgType,
prvtSwAclSapAcgAclName, prvtSwAclSapAcgAclType }
::= { prvtSwAclSapAcgTable 1 }
PrvtSwAclSapAcgEntry ::= SEQUENCE {
prvtSwAclSapAcgSeqId Unsigned32,
prvtSwAclSapAcgType PrvtSwAclAcgType,
prvtSwAclSapAcgAclName PrvtSwAclNameType,
prvtSwAclSapAcgAclType PrvtSwAclGroupType,
prvtSwAclSapAcgRowStatus RowStatus,
prvtSwAclSapAcgColorGreenFc PrvtSwAclFcTypeOrNone,
prvtSwAclSapAcgColorYellowFc PrvtSwAclFcTypeOrNone,
prvtSwAclSapAcgColorRedFc PrvtSwAclFcTypeOrNone,
prvtSwAclSapAcgResetStats TruthValue
}
prvtSwAclSapAcgSeqId OBJECT-TYPE
SYNTAX Unsigned32
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Specifies the sequence (order/priority) in which this access group will be applied."
::= { prvtSwAclSapAcgEntry 4 }
prvtSwAclSapAcgType OBJECT-TYPE
SYNTAX PrvtSwAclAcgType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"The type (e.g. ipStd, ipExt, mac, etherType) of access group that this row applies to."
::= { prvtSwAclSapAcgEntry 5 }
prvtSwAclSapAcgAclName OBJECT-TYPE
SYNTAX PrvtSwAclNameType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"The name of the access list that this row applies to.
This must match the name of an ACL created with the type specified by prvtSwAclSapAcgType.
(i.e. it must match one of prvtSwAclStdName, prvtSwAclExtName, prvtSwAclMacName,
prvtSwAclEthName corresponding to the type specified in prvtSwAclSapAcgType.)"
::= { prvtSwAclSapAcgEntry 6 }
prvtSwAclSapAcgAclType OBJECT-TYPE
SYNTAX PrvtSwAclGroupType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"The type (e.g. in, out, vlan) of access list that this row applies to."
::= { prvtSwAclSapAcgEntry 7 }
prvtSwAclSapAcgRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for this SAP's access-control group."
::= { prvtSwAclSapAcgEntry 8 }
prvtSwAclSapAcgColorGreenFc OBJECT-TYPE
SYNTAX PrvtSwAclFcTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Map traffic marked as green from the ACG rate-limit to a Forwarding Class (FC).
The value 'none' indicates that the FC is not to be affected.
Only used when prvtSwAclSapAcgGroupType equals 'in'."
::= { prvtSwAclSapAcgEntry 13 }
prvtSwAclSapAcgColorYellowFc OBJECT-TYPE
SYNTAX PrvtSwAclFcTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Map traffic marked as yellow from ACG rate-limit to a Forwarding Class (FC).
The value 'none' indicates that the FC is not to be affected.
Only used when prvtSwAclSapAcgGroupType equals 'in'."
::= { prvtSwAclSapAcgEntry 14 }
prvtSwAclSapAcgColorRedFc OBJECT-TYPE
SYNTAX PrvtSwAclFcTypeOrNone
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Map traffic marked as red from ACG rate-limit to a Forwarding Class (FC).
The value 'none' indicates that the FC is not to be affected.
Only used when prvtSwAclSapAcgGroupType equals 'in'."
::= { prvtSwAclSapAcgEntry 15 }
prvtSwAclSapAcgResetStats OBJECT-TYPE
SYNTAX TruthValue
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Set to 'true' to reset the statistics for this SAP access group.
Reads always return the value 'false'."
::= { prvtSwAclSapAcgEntry 16 }
prvtSwAclSapAcg OBJECT IDENTIFIER
::= { prvtSwAclSaps 2 }
prvtSwAclSapAcgRLimitTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclSapAcgRLimitEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Used to specify for this traffic flow which type of rate-limiting to use
and the parameters of the rate-limiting method.
Only one entry may exist (i.e. one rate-limiting method may be used) for a
particular traffic flow.
Not available for VLAN ACL types (when prvtSwAclSapAcgAclType equals 'vlan').
For a particular traffic flow, this table and prvtSwAclSapAcgFcTable are
mutually exclusive (i.e. a traffic flow is prohibited from having
an entry in this table and in prvtSwAclSapAcgFcTable concurrently)."
::= { prvtSwAclSapAcg 2 }
prvtSwAclSapAcgRLimitEntry OBJECT-TYPE
SYNTAX PrvtSwAclSapAcgRLimitEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclSapAcgRLimitTable."
INDEX { serviceId, sapPortId, sapEncapValue,
prvtSwAclSapAcgSeqId, prvtSwAclSapAcgType,
prvtSwAclSapAcgAclName, prvtSwAclSapAcgAclType,
prvtSwAclSapAcgRLimitType }
::= { prvtSwAclSapAcgRLimitTable 1 }
PrvtSwAclSapAcgRLimitEntry ::= SEQUENCE {
prvtSwAclSapAcgRLimitType PrvtSwAclRateLimitType,
prvtSwAclSapAcgRLimitRowStatus RowStatus,
prvtSwAclSapAcgRLimitCir PrvtSwAclRateType,
prvtSwAclSapAcgRLimitCbs PrvtSwAclBurstSizeType,
prvtSwAclSapAcgRLimitEbs PrvtSwAclBurstSizeType,
prvtSwAclSapAcgRLimitPir PrvtSwAclRateType,
prvtSwAclSapAcgRLimitPbs PrvtSwAclBurstSizeType,
prvtSwAclSapAcgRLimitColorAware TruthValue,
prvtSwAclSapAcgRLimitExceedAct PrvtSwAclExceedAction
}
prvtSwAclSapAcgRLimitType OBJECT-TYPE
SYNTAX PrvtSwAclRateLimitType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Specifies the type (single vs. dual) of rate-limiting to use."
::= { prvtSwAclSapAcgRLimitEntry 1 }
prvtSwAclSapAcgRLimitRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for this rate limit function."
::= { prvtSwAclSapAcgRLimitEntry 2 }
prvtSwAclSapAcgRLimitCir OBJECT-TYPE
SYNTAX PrvtSwAclRateType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The Committed Information Rate."
::= { prvtSwAclSapAcgRLimitEntry 3 }
prvtSwAclSapAcgRLimitCbs OBJECT-TYPE
SYNTAX PrvtSwAclBurstSizeType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The Committed Burst Size."
::= { prvtSwAclSapAcgRLimitEntry 4 }
prvtSwAclSapAcgRLimitEbs OBJECT-TYPE
SYNTAX PrvtSwAclBurstSizeType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The Excess Burst Size.
Only applicable when using single rate limiting (prvtSwAclSapAcgRLimitType
equals 'single')."
::= { prvtSwAclSapAcgRLimitEntry 5 }
prvtSwAclSapAcgRLimitPir OBJECT-TYPE
SYNTAX PrvtSwAclRateType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The Peak Information Rate.
Only applicable when using dual rate limiting (prvtSwAclSapAcgRLimitType
equals 'dual').
When using dual rate limiting, prvtSwAclSapAcgRLimitPir
must be greater than or equal to prvtSwAclSapAcgRLimitCir."
::= { prvtSwAclSapAcgRLimitEntry 6 }
prvtSwAclSapAcgRLimitPbs OBJECT-TYPE
SYNTAX PrvtSwAclBurstSizeType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The Peak Burst Size.
Only applicable when using dual rate limiting (when
prvtSwAclSapAcgRLimitType equals 'dual')."
::= { prvtSwAclSapAcgRLimitEntry 7 }
prvtSwAclSapAcgRLimitColorAware OBJECT-TYPE
SYNTAX TruthValue
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"Set to 'true' to enable color aware traffic metering."
::= { prvtSwAclSapAcgRLimitEntry 8 }
prvtSwAclSapAcgRLimitExceedAct OBJECT-TYPE
SYNTAX PrvtSwAclExceedAction
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The action to perform when the condition is true."
::= { prvtSwAclSapAcgRLimitEntry 9 }
prvtSwAclSapAcgRedirectTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclSapAcgRedirectEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Used to specify if this traffic flow should be redirected to
another interface.
Only one entry is allowed (i.e. only one redirect is permitted).
Only applicable to ingress ACL types (when prvtSwAclSapAcgAclType equals 'in')."
::= { prvtSwAclSapAcg 3 }
prvtSwAclSapAcgRedirectEntry OBJECT-TYPE
SYNTAX PrvtSwAclSapAcgRedirectEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclSapAcgRedirectTable."
INDEX { serviceId, sapPortId, sapEncapValue,
prvtSwAclSapAcgSeqId, prvtSwAclSapAcgType,
prvtSwAclSapAcgAclName, prvtSwAclSapAcgAclType,
prvtSwAclSapAcgRedirectIfIndex }
::= { prvtSwAclSapAcgRedirectTable 1 }
PrvtSwAclSapAcgRedirectEntry ::= SEQUENCE {
prvtSwAclSapAcgRedirectIfIndex InterfaceIndex,
prvtSwAclSapAcgRedirectRowStatus RowStatus
}
prvtSwAclSapAcgRedirectIfIndex OBJECT-TYPE
SYNTAX InterfaceIndex
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"The ifIndex of a physical interface defined in the ifTable to which traffic should be redirected to."
::= { prvtSwAclSapAcgRedirectEntry 1 }
prvtSwAclSapAcgRedirectRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for prvtSwAclSapAcgRedirectTable."
::= { prvtSwAclSapAcgRedirectEntry 2 }
prvtSwAclSapAcgFcTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclSapAcgFcEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Used to assign parameters to a particular forwarding class within a traffic flow.
Only one entry is allowed.
Only applicable to ingress ACL types (when prvtSwAclSapAcgAclType equals 'in').
For a particular traffic flow, this table and prvtSwAclSapAcgRLimitTable are
mutually exclusive (i.e. a traffic flow is prohibited from having
an entry in this table and in prvtSwAclSapAcgFcTable at the same time)."
::= { prvtSwAclSapAcg 4 }
prvtSwAclSapAcgFcEntry OBJECT-TYPE
SYNTAX PrvtSwAclSapAcgFcEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclSapAcgFcTable."
INDEX { serviceId, sapPortId, sapEncapValue,
prvtSwAclSapAcgSeqId, prvtSwAclSapAcgType,
prvtSwAclSapAcgAclName, prvtSwAclSapAcgAclType,
prvtSwAclSapAcgFcId }
::= { prvtSwAclSapAcgFcTable 1 }
PrvtSwAclSapAcgFcEntry ::= SEQUENCE {
prvtSwAclSapAcgFcId PrvtSwAclFcType,
prvtSwAclSapAcgFcRowStatus RowStatus,
prvtSwAclSapAcgFcColor PrvtSwAclColorType
}
prvtSwAclSapAcgFcId OBJECT-TYPE
SYNTAX PrvtSwAclFcType
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"The forwarding class that this row applies to."
::= { prvtSwAclSapAcgFcEntry 1 }
prvtSwAclSapAcgFcRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for this forwarding class."
::= { prvtSwAclSapAcgFcEntry 2 }
prvtSwAclSapAcgFcColor OBJECT-TYPE
SYNTAX PrvtSwAclColorType
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The color to assign to traffic belonging to this forwarding class.
Color red is not supported for all devices"
::= { prvtSwAclSapAcgFcEntry 3 }
prvtSwAclSapAcgMonPrfTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclSapAcgMonPrfEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Used to assign a monitoring profile to a traffic flow.
Only one profile may be assigned per traffic flow.
Only applicable to ingress ACL types (when prvtSwAclSapAcgAclType equals 'in')."
::= { prvtSwAclSapAcg 5 }
prvtSwAclSapAcgMonPrfEntry OBJECT-TYPE
SYNTAX PrvtSwAclSapAcgMonPrfEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclSapAcgMonPrfTable."
INDEX { serviceId, sapPortId, sapEncapValue,
prvtSwAclSapAcgSeqId, prvtSwAclSapAcgType,
prvtSwAclSapAcgAclName, prvtSwAclSapAcgAclType,
prvtSwAclMonPrfId }
::= { prvtSwAclSapAcgMonPrfTable 1 }
PrvtSwAclSapAcgMonPrfEntry ::= SEQUENCE {
prvtSwAclSapAcgMonPrfRowStatus RowStatus,
prvtSwAclSapAcgMonPrfMatchF Counter64,
prvtSwAclSapAcgMonPrfMatchB Counter64,
prvtSwAclSapAcgMonPrfGreenF Counter64,
prvtSwAclSapAcgMonPrfGreenB Counter64,
prvtSwAclSapAcgMonPrfNotGreenF Counter64,
prvtSwAclSapAcgMonPrfNotGreenB Counter64,
prvtSwAclSapAcgMonPrfYellowF Counter64,
prvtSwAclSapAcgMonPrfYellowB Counter64,
prvtSwAclSapAcgMonPrfRedF Counter64,
prvtSwAclSapAcgMonPrfRedB Counter64,
prvtSwAclSapAcgMonPrfNotRedF Counter64,
prvtSwAclSapAcgMonPrfNotRedB Counter64,
prvtSwAclSapAcgMonPrfRateMatchF Counter64,
prvtSwAclSapAcgMonPrfRateMatchB Counter64,
prvtSwAclSapAcgMonPrfRateGreenF Counter64,
prvtSwAclSapAcgMonPrfRateGreenB Counter64,
prvtSwAclSapAcgMonPrfRateNotGreenF Counter64,
prvtSwAclSapAcgMonPrfRateNotGreenB Counter64,
prvtSwAclSapAcgMonPrfRateYellowF Counter64,
prvtSwAclSapAcgMonPrfRateYellowB Counter64,
prvtSwAclSapAcgMonPrfRateRedF Counter64,
prvtSwAclSapAcgMonPrfRateRedB Counter64,
prvtSwAclSapAcgMonPrfRateNotRedF Counter64,
prvtSwAclSapAcgMonPrfRateNotRedB Counter64
}
prvtSwAclSapAcgMonPrfRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for this monitoring profile."
::= { prvtSwAclSapAcgMonPrfEntry 1 }
prvtSwAclSapAcgMonPrfMatchF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of frames of traffic matching this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 2 }
prvtSwAclSapAcgMonPrfMatchB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of bytes of traffic matching this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 3 }
prvtSwAclSapAcgMonPrfGreenF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of frames of green traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 4 }
prvtSwAclSapAcgMonPrfGreenB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of bytes of green traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 5 }
prvtSwAclSapAcgMonPrfNotGreenF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of frames of non-green traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 6 }
prvtSwAclSapAcgMonPrfNotGreenB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of bytes of non-green traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 7 }
prvtSwAclSapAcgMonPrfYellowF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of frames of yellow traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 8 }
prvtSwAclSapAcgMonPrfYellowB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of bytes of yellow traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 9 }
prvtSwAclSapAcgMonPrfRedF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of frames of red traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 10 }
prvtSwAclSapAcgMonPrfRedB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of bytes of red traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 11 }
prvtSwAclSapAcgMonPrfNotRedF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of frames of non-red traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 12 }
prvtSwAclSapAcgMonPrfNotRedB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The number of bytes of non-red traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 13 }
prvtSwAclSapAcgMonPrfRateMatchF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in frames per second, of traffic matching this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 14 }
prvtSwAclSapAcgMonPrfRateMatchB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in bytes per second, of traffic matching this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 15 }
prvtSwAclSapAcgMonPrfRateGreenF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in frames per second, of green traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 16 }
prvtSwAclSapAcgMonPrfRateGreenB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in bytes per second, of green traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 17 }
prvtSwAclSapAcgMonPrfRateNotGreenF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in frames per second, of non-green traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 18 }
prvtSwAclSapAcgMonPrfRateNotGreenB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in bytes per second, of non-green traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 19 }
prvtSwAclSapAcgMonPrfRateYellowF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in frames per second, of yellow traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 20 }
prvtSwAclSapAcgMonPrfRateYellowB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in bytes per second, of yellow traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 21 }
prvtSwAclSapAcgMonPrfRateRedF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in frames per second, of red traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 22 }
prvtSwAclSapAcgMonPrfRateRedB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in bytes per second, of red traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 23 }
prvtSwAclSapAcgMonPrfRateNotRedF OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in frames per second, of non-red traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 24 }
prvtSwAclSapAcgMonPrfRateNotRedB OBJECT-TYPE
SYNTAX Counter64
MAX-ACCESS read-only
STATUS current
DESCRIPTION
"The rate, in bytes per second, of non-red traffic belonging to this traffic flow."
::= { prvtSwAclSapAcgMonPrfEntry 25 }
prvtSwAclSapAcgRestrictEgForwardingTable OBJECT-TYPE
SYNTAX SEQUENCE OF PrvtSwAclSapAcgRestrictEgForwardingEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"Used to specify if this traffic flow should be forwarded to
another interface.All the other interfaces will be blocked.
Only applicable to ingress ACL types (when prvtSwAclSapAcgAclType equals 'in')."
::= { prvtSwAclSapAcg 6 }
prvtSwAclSapAcgRestrictEgForwardingEntry OBJECT-TYPE
SYNTAX PrvtSwAclSapAcgRestrictEgForwardingEntry
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"An entry in prvtSwAclSapAcgRestrictEgForwardingTable."
INDEX { serviceId, sapPortId, sapEncapValue,
prvtSwAclSapAcgSeqId, prvtSwAclSapAcgType,
prvtSwAclSapAcgAclName, prvtSwAclSapAcgAclType,
prvtSwAclSapAcgRestrictEgForwIfIndex }
::= { prvtSwAclSapAcgRestrictEgForwardingTable 1 }
PrvtSwAclSapAcgRestrictEgForwardingEntry ::= SEQUENCE {
prvtSwAclSapAcgRestrictEgForwIfIndex InterfaceIndex,
prvtSwAclSapAcgRestrictEgForwRowStatus RowStatus
}
prvtSwAclSapAcgRestrictEgForwIfIndex OBJECT-TYPE
SYNTAX InterfaceIndex
MAX-ACCESS not-accessible
STATUS current
DESCRIPTION
"The ifIndex of a physical interface defined in the ifTable to which traffic should be forwared to."
::= { prvtSwAclSapAcgRestrictEgForwardingEntry 1 }
prvtSwAclSapAcgRestrictEgForwRowStatus OBJECT-TYPE
SYNTAX RowStatus
MAX-ACCESS read-create
STATUS current
DESCRIPTION
"The RowStatus for prvtSwAclSapAcgRestrictEgForwardingTable."
::= { prvtSwAclSapAcgRestrictEgForwardingEntry 2 }
prvtSwAclIfAcgApplyFailed NOTIFICATION-TYPE
OBJECTS { prvtSwAclIfAcgRowStatus }
STATUS current
DESCRIPTION
"Access group is not properly applied in hardware.
This means that traffic will not be filtered as
expected. User should either remove this access
group or rearrange other access groups."
::= { prvtSwAclNotifications 1 }
prvtSwAclIfAcgRLimitApplyFailed NOTIFICATION-TYPE
OBJECTS { prvtSwAclIfAcgRLimitRowStatus }
STATUS current
DESCRIPTION
"Access group is not properly applied in hardware.
This means that traffic will not be filtered as
expected. User should either remove this access
group or rearrange other access groups."
::= { prvtSwAclNotifications 2 }
prvtSwAclIfAcgRedirectApplyFailed NOTIFICATION-TYPE
OBJECTS { prvtSwAclIfAcgRedirectRowStatus }
STATUS current
DESCRIPTION
"Access group is not properly applied in hardware.
This means that traffic will not be filtered as
expected. User should either remove this access
group or rearrange other access groups."
::= { prvtSwAclNotifications 3 }
prvtSwAclIfAcgFcApplyFailed NOTIFICATION-TYPE
OBJECTS { prvtSwAclIfAcgFcRowStatus }
STATUS current
DESCRIPTION
"Access group is not properly applied in hardware.
This means that traffic will not be filtered as
expected. User should either remove this access
group or rearrange other access groups."
::= { prvtSwAclNotifications 4 }
prvtSwAclIfAcgMonPrfApplyFailed NOTIFICATION-TYPE
OBJECTS { prvtSwAclIfAcgMonPrfRowStatus }
STATUS current
DESCRIPTION
"Access group is not properly applied in hardware.
This means that traffic will not be filtered as
expected. User should either remove this access
group or rearrange other access groups."
::= { prvtSwAclNotifications 5 }
prvtSwAclSapAcgApplyFailed NOTIFICATION-TYPE
OBJECTS { prvtSwAclSapAcgRowStatus }
STATUS current
DESCRIPTION
"Access group is not properly applied in hardware.
This means that traffic will not be filtered as
expected. User should either remove this access
group or rearrange other access groups."
::= { prvtSwAclNotifications 6 }
prvtSwAclSapAcgRLimitApplyFailed NOTIFICATION-TYPE
OBJECTS { prvtSwAclSapAcgRLimitRowStatus }
STATUS current
DESCRIPTION
"Access group is not properly applied in hardware.
This means that traffic will not be filtered as
expected. User should either remove this access
group or rearrange other access groups."
::= { prvtSwAclNotifications 7 }
prvtSwAclSapAcgRedirectApplyFailed NOTIFICATION-TYPE
OBJECTS { prvtSwAclSapAcgRedirectRowStatus }
STATUS current
DESCRIPTION
"Access group is not properly applied in hardware.
This means that traffic will not be filtered as
expected. User should either remove this access
group or rearrange other access groups."
::= { prvtSwAclNotifications 8 }
prvtSwAclSapAcgFcApplyFailed NOTIFICATION-TYPE
OBJECTS { prvtSwAclSapAcgFcRowStatus }
STATUS current
DESCRIPTION
"Access group is not properly applied in hardware.
This means that traffic will not be filtered as
expected. User should either remove this access
group or rearrange other access groups."
::= { prvtSwAclNotifications 9 }
prvtSwAclSapAcgMonPrfApplyFailed NOTIFICATION-TYPE
OBJECTS { prvtSwAclSapAcgMonPrfRowStatus }
STATUS current
DESCRIPTION
"Access group is not properly applied in hardware.
This means that traffic will not be filtered as
expected. User should either remove this access
group or rearrange other access groups."
::= { prvtSwAclNotifications 10 }
END -- end of module PRVT-SWITCH-ACCESS-LIST-MIB.