ACLMGMT-MIB

File: ACLMGMT-MIB.mib (205767 bytes)

Imported modules

SNMPv2-SMI SNMPv2-TC RFC1213-MIB
SNMP-FRAMEWORK-MIB DLINK-ID-REC-MIB

Imported symbols

Counter32 Counter64 TimeTicks
NOTIFICATION-TYPE MODULE-IDENTITY OBJECT-TYPE
IpAddress Unsigned32 MacAddress
RowStatus DisplayString SnmpAdminString
dlink-common-mgmt

Defined Types

PortList  
STRING Size(0..127)    

Ipv6Address  
TEXTUAL-CONVENTION    
  current STRING Size(16)

SwACLEthernetEntry  
SEQUENCE    
  swACLEthernetProfileID INTEGER
  swACLEthernetUsevlan INTEGER
  swACLEthernetMacAddrMaskState INTEGER
  swACLEthernetSrcMacAddrMask MacAddress
  swACLEthernetDstMacAddrMask MacAddress
  swACLEthernetUse8021p INTEGER
  swACLEthernetUseEthernetType INTEGER
  swACLEthernetRowStatus RowStatus
  swACLEthernetOwner INTEGER
  swACLEthernetUnusedRuleEntries INTEGER
  swACLEthernetProfileName DisplayString

SwACLIpEntry  
SEQUENCE    
  swACLIpProfileID INTEGER
  swACLIpUsevlan INTEGER
  swACLIpIpAddrMaskState INTEGER
  swACLIpSrcIpAddrMask IpAddress
  swACLIpDstIpAddrMask IpAddress
  swACLIpUseDSCP INTEGER
  swACLIpUseProtoType INTEGER
  swACLIpIcmpOption INTEGER
  swACLIpIgmpOption INTEGER
  swACLIpTcpOption INTEGER
  swACLIpUdpOption INTEGER
  swACLIpTCPorUDPSrcPortMask STRING
  swACLIpTCPorUDPDstPortMask STRING
  swACLIpTCPFlagBit INTEGER
  swACLIpTCPFlagBitMask INTEGER
  swACLIpProtoIDOption INTEGER
  swACLIpProtoID INTEGER
  swACLIpProtoIDMask STRING
  swACLIpRowStatus RowStatus
  swACLIpOwner INTEGER
  swACLIpUnusedRuleEntries INTEGER
  swACLIpProfileName DisplayString

SwACLPktContMaskEntry  
SEQUENCE    
  swACLPktContMaskProfileID INTEGER
  swACLPktContMaskOffset0to15 STRING
  swACLPktContMaskOffset16to31 STRING
  swACLPktContMaskOffset32to47 STRING
  swACLPktContMaskOffset48to63 STRING
  swACLPktContMaskOffset64to79 STRING
  swACLPktContMaskRowStatus RowStatus
  swACLPktContMaskOwner INTEGER
  swACLPktContMaskUnusedRuleEntries INTEGER
  swACLPktContMaskProfileName DisplayString

SwACLIpv6MaskEntry  
SEQUENCE    
  swACLIpv6MaskProfileID INTEGER
  swACLIpv6MaskClass INTEGER
  swACLIpv6MaskFlowlabel INTEGER
  swACLIpv6IpAddrMaskState INTEGER
  swACLIpv6MaskSrcIpv6Mask Ipv6Address
  swACLIpv6MaskDstIpv6Mask Ipv6Address
  swACLIpv6MaskRowStatus RowStatus
  swACLIpv6MaskOwner INTEGER
  swACLIpv6MaskUnusedRuleEntries INTEGER
  swACLIpv6MaskProfileName DisplayString
  swACLIpv6MaskUseProtoType INTEGER
  swACLIpv6MaskTcpOption INTEGER
  swACLIpv6MaskUdpOption INTEGER
  swACLIpv6MaskTCPorUDPSrcPortMask STRING
  swACLIpv6MaskTCPorUDPDstPortMask STRING

SwIBPACLEthernetEntry  
SEQUENCE    
  swIBPACLEthernetProfileID INTEGER
  swIBPACLEthernetUseEthernetType INTEGER

SwIBPACLIpEntry  
SEQUENCE    
  swIBPACLIpProfileID INTEGER
  swIBPACLIpSrcMacAddrMask MacAddress
  swIBPACLIpSrcIpAddrMask IpAddress

SwACLPktContMaskOptionEntry  
SEQUENCE    
  swACLPktContMaskOptionProfileID INTEGER
  swACLPktContMaskOffsetChunk1State INTEGER
  swACLPktContMaskOffsetChunk1OffsetValue INTEGER
  swACLPktContMaskOffsetChunk1Mask STRING
  swACLPktContMaskOffsetChunk2State INTEGER
  swACLPktContMaskOffsetChunk2OffsetValue INTEGER
  swACLPktContMaskOffsetChunk2Mask STRING
  swACLPktContMaskOffsetChunk3State INTEGER
  swACLPktContMaskOffsetChunk3OffsetValue INTEGER
  swACLPktContMaskOffsetChunk3Mask STRING
  swACLPktContMaskOffsetChunk4State INTEGER
  swACLPktContMaskOffsetChunk4OffsetValue INTEGER
  swACLPktContMaskOffsetChunk4Mask STRING
  swACLPktContMaskOptionRowStatus RowStatus
  swACLPktContMaskOptionOwner INTEGER
  swACLPktContMaskOptionUnusedRuleEntries INTEGER
  swACLPktContMaskOptionProfileName DisplayString

SwACLEtherRuleEntry  
SEQUENCE    
  swACLEtherRuleProfileID INTEGER
  swACLEtherRuleAccessID INTEGER
  swACLEtherRuleVlan SnmpAdminString
  swACLEtherRuleSrcMacAddress MacAddress
  swACLEtherRuleDstMacAddress MacAddress
  swACLEtherRule8021P INTEGER
  swACLEtherRuleEtherType STRING
  swACLEtherRuleEnablePriority INTEGER
  swACLEtherRulePriority INTEGER
  swACLEtherRuleReplacePriority INTEGER
  swACLEtherRuleEnableReplaceDscp INTEGER
  swACLEtherRuleRepDscp INTEGER
  swACLEtherRulePermit INTEGER
  swACLEtherRulePort PortList
  swACLEtherRuleRowStatus RowStatus
  swACLEtherRuleOwner INTEGER
  swACLEtherRuleRxRate INTEGER
  swACLEtherRuleEnableReplaceTosPrecedence INTEGER
  swACLEtherRuleRepTosPrecedence INTEGER
  swACLEtherRuleVID INTEGER

SwACLIpRuleEntry  
SEQUENCE    
  swACLIpRuleProfileID INTEGER
  swACLIpRuleAccessID INTEGER
  swACLIpRuleVlan SnmpAdminString
  swACLIpRuleSrcIpaddress IpAddress
  swACLIpRuleDstIpaddress IpAddress
  swACLIpRuleDscp INTEGER
  swACLIpRuleProtocol INTEGER
  swACLIpRuleType INTEGER
  swACLIpRuleCode INTEGER
  swACLIpRuleSrcPort INTEGER
  swACLIpRuleDstPort INTEGER
  swACLIpRuleFlagBits INTEGER
  swACLIpRuleProtoID INTEGER
  swACLIpRuleUserMask STRING
  swACLIpRuleEnablePriority INTEGER
  swACLIpRulePriority INTEGER
  swACLIpRuleReplacePriority INTEGER
  swACLIpRuleEnableReplaceDscp INTEGER
  swACLIpRuleRepDscp INTEGER
  swACLIpRulePermit INTEGER
  swACLIpRulePort PortList
  swACLIpRuleRowStatus RowStatus
  swACLIpRuleOwner INTEGER
  swACLIpRuleRxRate INTEGER
  swACLIpRuleEnableReplaceTosPrecedence INTEGER
  swACLIpRuleRepTosPrecedence INTEGER
  swACLIpRuleVID INTEGER

SwACLIpv6RuleEntry  
SEQUENCE    
  swACLIpv6RuleProfileID INTEGER
  swACLIpv6RuleAccessID INTEGER
  swACLIpv6RuleClass INTEGER
  swACLIpv6RuleFlowlabel STRING
  swACLIpv6RuleSrcIpv6Addr Ipv6Address
  swACLIpv6RuleDstIpv6Addr Ipv6Address
  swACLIpv6RuleEnablePriority INTEGER
  swACLIpv6RulePriority INTEGER
  swACLIpv6RuleReplacePriority INTEGER
  swACLIpv6RulePermit INTEGER
  swACLIpv6RulePort PortList
  swACLIpv6RuleRowStatus RowStatus
  swACLIpv6RuleOwner INTEGER
  swACLIpv6RuleRxRate INTEGER
  swACLIpv6RuleEnableReplaceDscp INTEGER
  swACLIpv6RuleRepDscp INTEGER
  swACLIpv6RuleEnableReplaceTosPrecedence INTEGER
  swACLIpv6RuleRepTosPrecedence INTEGER
  swACLIpv6RuleVID INTEGER
  swACLIpv6RuleProtocol INTEGER
  swACLIpv6RuleSrcPort INTEGER
  swACLIpv6RuleDstPort INTEGER

SwIBPACLEtherRuleEntry  
SEQUENCE    
  swIBPACLEtherRuleProfileID INTEGER
  swIBPACLEtherRuleAccessID INTEGER
  swIBPACLEtherRuleEtherType STRING
  swIBPACLEtherRulePermit INTEGER
  swIBPACLEtherRulePort PortList

SwIBPACLIpRuleEntry  
SEQUENCE    
  swIBPACLIpRuleProfileID INTEGER
  swIBPACLIpRuleAccessID INTEGER
  swIBPACLIpRuleSrcMacAddress MacAddress
  swIBPACLIpRuleSrcIpaddress IpAddress
  swIBPACLIpRulePermit INTEGER
  swIBPACLIpRulePort PortList

SwACLCounterEntry  
SEQUENCE    
  swACLCounterProfileID INTEGER
  swACLCounterAccessID INTEGER
  swACLCounterState INTEGER
  swACLCounterTotalCounter Counter64
  swACLCounterGreenCounter Counter64
  swACLCounterYellowCounter Counter64
  swACLCounterRedCounter Counter64

SwACLPktContRuleVarOffsetEntry  
SEQUENCE    
  swACLPktContRuleVarOffsetProfileID INTEGER
  swACLPktContRuleVarOffsetAccessID INTEGER
  swACLPktContRuleVarOffsetOffsetIndex1 INTEGER
  swACLPktContRuleVarOffsetMask1 STRING
  swACLPktContRuleVarOffsetData1 STRING
  swACLPktContRuleVarOffsetOffsetIndex2 INTEGER
  swACLPktContRuleVarOffsetMask2 STRING
  swACLPktContRuleVarOffsetData2 STRING
  swACLPktContRuleVarOffsetOffsetIndex3 INTEGER
  swACLPktContRuleVarOffsetMask3 STRING
  swACLPktContRuleVarOffsetData3 STRING
  swACLPktContRuleVarOffsetOffsetIndex4 INTEGER
  swACLPktContRuleVarOffsetMask4 STRING
  swACLPktContRuleVarOffsetData4 STRING
  swACLPktContRuleVarOffsetOffsetIndex5 INTEGER
  swACLPktContRuleVarOffsetMask5 STRING
  swACLPktContRuleVarOffsetData5 STRING
  swACLPktContRuleVarOffsetEnablePriority INTEGER
  swACLPktContRuleVarOffsetPriority INTEGER
  swACLPktContRuleVarOffsetReplacePriority INTEGER
  swACLPktContRuleVarOffsetRxRate INTEGER
  swACLPktContRuleVarOffsetPermit INTEGER
  swACLPktContRuleVarOffsetPort PortList
  swACLPktContRuleVarOffsetRowStatus RowStatus
  swACLPktContRuleVarOffsetReplacePriorityWith INTEGER

SwCpuAclEthernetEntry  
SEQUENCE    
  swCpuAclEthernetProfileID INTEGER
  swCpuAclEthernetUsevlan INTEGER
  swCpuAclEthernetMacAddrMaskState INTEGER
  swCpuAclEthernetSrcMacAddrMask MacAddress
  swCpuAclEthernetDstMacAddrMask MacAddress
  swCpuAclEthernetUse8021p INTEGER
  swCpuAclEthernetUseEthernetType INTEGER
  swCpuAclEthernetRowStatus RowStatus

SwCpuAclIpEntry  
SEQUENCE    
  swCpuAclIpProfileID INTEGER
  swCpuAclIpUsevlan INTEGER
  swCpuAclIpIpAddrMaskState INTEGER
  swCpuAclIpSrcIpAddrMask IpAddress
  swCpuAclIpDstIpAddrMask IpAddress
  swCpuAclIpUseDSCP INTEGER
  swCpuAclIpUseProtoType INTEGER
  swCpuAclIpIcmpOption INTEGER
  swCpuAclIpIgmpOption INTEGER
  swCpuAclIpTcpOption INTEGER
  swCpuAclIpUdpOption INTEGER
  swCpuAclIpTCPorUDPSrcPortMask STRING
  swCpuAclIpTCPorUDPDstPortMask STRING
  swCpuAclIpTCPFlagBit INTEGER
  swCpuAclIpTCPFlagBitMask INTEGER
  swCpuAclIpProtoIDOption INTEGER
  swCpuAclIpProtoID INTEGER
  swCpuAclIpProtoIDMask STRING
  swCpuAclIpRowStatus RowStatus

SwCpuAclPktContMaskEntry  
SEQUENCE    
  swCpuAclPktContMaskProfileID INTEGER
  swCpuAclPktContMaskOffset0to15 STRING
  swCpuAclPktContMaskOffset16to31 STRING
  swCpuAclPktContMaskOffset32to47 STRING
  swCpuAclPktContMaskOffset48to63 STRING
  swCpuAclPktContMaskOffset64to79 STRING
  swCpuAclPktContMaskRowStatus RowStatus

SwCpuAclIpv6MaskEntry  
SEQUENCE    
  swCpuAclIpv6MaskProfileID INTEGER
  swCpuAclIpv6MaskClass INTEGER
  swCpuAclIpv6MaskFlowlabel INTEGER
  swCpuAclIpv6IpAddrMaskState INTEGER
  swCpuAclIpv6MaskSrcIpv6Mask Ipv6Address
  swCpuAclIpv6MaskDstIpv6Mask Ipv6Address
  swCpuAclIpv6MaskRowStatus RowStatus

SwCpuAclEtherRuleEntry  
SEQUENCE    
  swCpuAclEtherRuleProfileID INTEGER
  swCpuAclEtherRuleAccessID INTEGER
  swCpuAclEtherRuleVlan SnmpAdminString
  swCpuAclEtherRuleSrcMacAddress MacAddress
  swCpuAclEtherRuleDstMacAddress MacAddress
  swCpuAclEtherRule8021P INTEGER
  swCpuAclEtherRuleEtherType STRING
  swCpuAclEtherRulePermit INTEGER
  swCpuAclEtherRuleRowStatus RowStatus
  swCpuAclEtherRulePort PortList

SwCpuAclIpRuleEntry  
SEQUENCE    
  swCpuAclIpRuleProfileID INTEGER
  swCpuAclIpRuleAccessID INTEGER
  swCpuAclIpRuleVlan SnmpAdminString
  swCpuAclIpRuleSrcIpaddress IpAddress
  swCpuAclIpRuleDstIpaddress IpAddress
  swCpuAclIpRuleDscp INTEGER
  swCpuAclIpRuleProtocol INTEGER
  swCpuAclIpRuleType INTEGER
  swCpuAclIpRuleCode INTEGER
  swCpuAclIpRuleSrcPort INTEGER
  swCpuAclIpRuleDstPort INTEGER
  swCpuAclIpRuleFlagBits INTEGER
  swCpuAclIpRuleProtoID INTEGER
  swCpuAclIpRuleUserMask STRING
  swCpuAclIpRulePermit INTEGER
  swCpuAclIpRuleRowStatus RowStatus
  swCpuAclIpRulePort PortList

SwCpuAclPktContRuleEntry  
SEQUENCE    
  swCpuAclPktContRuleProfileID INTEGER
  swCpuAclPktContRuleAccessID INTEGER
  swCpuAclPktContRuleOffset0to15 STRING
  swCpuAclPktContRuleOffset16to31 STRING
  swCpuAclPktContRuleOffset32to47 STRING
  swCpuAclPktContRuleOffset48to63 STRING
  swCpuAclPktContRuleOffset64to79 STRING
  swCpuAclPktContRulePermit INTEGER
  swCpuAclPktContRuleRowStatus RowStatus
  swCpuAclPktContRulePort PortList

SwCpuAclIpv6RuleEntry  
SEQUENCE    
  swCpuAclIpv6RuleProfileID INTEGER
  swCpuAclIpv6RuleAccessID INTEGER
  swCpuAclIpv6RuleClass INTEGER
  swCpuAclIpv6RuleFlowlabel STRING
  swCpuAclIpv6RuleSrcIpv6Addr Ipv6Address
  swCpuAclIpv6RuleDstIpv6Addr Ipv6Address
  swCpuAclIpv6RulePermit INTEGER
  swCpuAclIpv6RuleRowStatus RowStatus
  swCpuAclIpv6RulePort PortList

SwAclMeterEntry  
SEQUENCE    
  swAclMeterProfileID INTEGER
  swAclMeterAccessID INTEGER
  swAclMeterRate INTEGER
  swAclMeterActionForRateExceed INTEGER
  swAclMeterRemarkDscp INTEGER
  swAclMeterBurstSize INTEGER
  swAclMeterMode INTEGER
  swAclMeterTrtcmCir INTEGER
  swAclMeterTrtcmCbs INTEGER
  swAclMeterTrtcmPir INTEGER
  swAclMeterTrtcmPbs INTEGER
  swAclMeterTrtcmColorMode INTEGER
  swAclMeterTrtcmConformState INTEGER
  swAclMeterTrtcmConformReplaceDscp INTEGER
  swAclMeterTrtcmConformCounterState INTEGER
  swAclMeterTrtcmExceedState INTEGER
  swAclMeterTrtcmExceedReplaceDscp INTEGER
  swAclMeterTrtcmExceedCounterState INTEGER
  swAclMeterTrtcmViolateState INTEGER
  swAclMeterTrtcmViolateReplaceDscp INTEGER
  swAclMeterTrtcmViolateCounterState INTEGER
  swAclMeterSrtcmCir INTEGER
  swAclMeterSrtcmCbs INTEGER
  swAclMeterSrtcmEbs INTEGER
  swAclMeterSrtcmColorMode INTEGER
  swAclMeterSrtcmConformState INTEGER
  swAclMeterSrtcmConformReplaceDscp INTEGER
  swAclMeterSrtcmConformCounterState INTEGER
  swAclMeterSrtcmExceedState INTEGER
  swAclMeterSrtcmExceedReplaceDscp INTEGER
  swAclMeterSrtcmExceedCounterState INTEGER
  swAclMeterSrtcmViolateState INTEGER
  swAclMeterSrtcmViolateReplaceDscp INTEGER
  swAclMeterSrtcmViolateCounterState INTEGER
  swAclMeterRowStatus RowStatus

Defined Values

swAclMgmtMIB 1.3.6.1.4.1.171.12.9
The structure of Access Control List information for the proprietary enterprise.
MODULE-IDENTITY    

swAclCtrl 1.3.6.1.4.1.171.12.9.1
OBJECT IDENTIFIER    

swAclMaskMgmt 1.3.6.1.4.1.171.12.9.2
OBJECT IDENTIFIER    

swAclRuleMgmt 1.3.6.1.4.1.171.12.9.3
OBJECT IDENTIFIER    

swCpuAclMaskMgmt 1.3.6.1.4.1.171.12.9.4
OBJECT IDENTIFIER    

swCpuAclRuleMgmt 1.3.6.1.4.1.171.12.9.5
OBJECT IDENTIFIER    

swAclMeteringMgmt 1.3.6.1.4.1.171.12.9.6
OBJECT IDENTIFIER    

swCpuInterfacefilterState 1.3.6.1.4.1.171.12.9.1.1
Enable or disable CPU Interface Filtering (also called Software ACL). The default is disabled. If enabled, the filtering entries in the swAclRuleMgmt tables will be set to active if its RuleSwAclState is enabled. If disabled, the software ACL function will be disabled.
OBJECT-TYPE    
  INTEGER enable(1), disable(2)  

swACLTotalUsedRuleEntries 1.3.6.1.4.1.171.12.9.1.2
The total number of used ACL rule entries.
OBJECT-TYPE    
  INTEGER  

swACLTotalUnusedRuleEntries 1.3.6.1.4.1.171.12.9.1.3
The total number of unused ACL rule entries.
OBJECT-TYPE    
  INTEGER  

swACLEthernetTable 1.3.6.1.4.1.171.12.9.2.1
This table contains ACL mask Ethernet information. The access profile will be created on the switch to define which part of each incoming frame's layer 2 header will be examined by the switch. Masks entered will be combined with the values the switch finds in the specified frame header fields.
OBJECT-TYPE    
  SEQUENCE OF  
    SwACLEthernetEntry

swACLEthernetEntry 1.3.6.1.4.1.171.12.9.2.1.1
A list of information about the ACL for Ethernet.
OBJECT-TYPE    
  SwACLEthernetEntry  

swACLEthernetProfileID 1.3.6.1.4.1.171.12.9.2.1.1.1
The ID of the ACL mask entry unique to the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swACLEthernetUsevlan 1.3.6.1.4.1.171.12.9.2.1.1.2
Specifies that the switch will examine the VLAN part of each packet header.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLEthernetMacAddrMaskState 1.3.6.1.4.1.171.12.9.2.1.1.3
This object indicates the status of the MAC address mask. other (1) - Neither source MAC address nor destination MAC address are masked. dst-mac-addr (2) - Destination MAC addresses within received frames are to be filtered when matched with the MAC address entry for the table. src-mac-addr (3) - Source MAC addresses within received frames are to be filtered when matched with the MAC address entry for the table. dst-src-mac-addr (4) - Source or destination MAC addresses within received frames are to be filtered when matched with the MAC address entry of the table.
OBJECT-TYPE    
  INTEGER other(1), dst-mac-addr(2), src-mac-addr(3), dst-src-mac-addr(4)  

swACLEthernetSrcMacAddrMask 1.3.6.1.4.1.171.12.9.2.1.1.4
This object specifies the MAC address mask for the source MAC address.
OBJECT-TYPE    
  MacAddress  

swACLEthernetDstMacAddrMask 1.3.6.1.4.1.171.12.9.2.1.1.5
This object specifies the MAC address mask for the destination MAC address.
OBJECT-TYPE    
  MacAddress  

swACLEthernetUse8021p 1.3.6.1.4.1.171.12.9.2.1.1.6
Specifies if the switch will examine the 802.1p priority value in the frame's header or not.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLEthernetUseEthernetType 1.3.6.1.4.1.171.12.9.2.1.1.7
Specifies if the switch will examine the Ethernet type value in each frame's header or not.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLEthernetRowStatus 1.3.6.1.4.1.171.12.9.2.1.1.8
This object indicates the status of this entry.
OBJECT-TYPE    
  RowStatus  

swACLEthernetOwner 1.3.6.1.4.1.171.12.9.2.1.1.9
The owner of the ACL mask entry. The type of ACL entry created. ACL type entries can only be modified when being configured through the same type command. For example IP-MAC Binding entries can only be modified or deleted through the IP-MAC Binding configurations or commands.
OBJECT-TYPE    
  INTEGER any(1), acl(2), ipbind(3), other(4), dhcp(5), netbios(6), ext-netbios(7)  

swACLEthernetUnusedRuleEntries 1.3.6.1.4.1.171.12.9.2.1.1.10
The number of unused rule entries of this Ethernet profile entry.
OBJECT-TYPE    
  INTEGER  

swACLEthernetProfileName 1.3.6.1.4.1.171.12.9.2.1.1.11
The name of the ACL mask entry unique to the mask list.
OBJECT-TYPE    
  DisplayString Size(1..32)  

swACLIpTable 1.3.6.1.4.1.171.12.9.2.2
This table contains the ACL mask for IP information. Access profiles will be created on the switch to define which part of the incoming frame's IP layer packet header will be examined by the switch. Masks entered will be combined with the values the switch finds in the specified frame header fields.
OBJECT-TYPE    
  SEQUENCE OF  
    SwACLIpEntry

swACLIpEntry 1.3.6.1.4.1.171.12.9.2.2.1
A list of information about the ACL of the IP Layer.
OBJECT-TYPE    
  SwACLIpEntry  

swACLIpProfileID 1.3.6.1.4.1.171.12.9.2.2.1.1
The ID of the ACL mask entry, which is unique to the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swACLIpUsevlan 1.3.6.1.4.1.171.12.9.2.2.1.2
This object indicates if the IP layer VLAN part is examined or not.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLIpIpAddrMaskState 1.3.6.1.4.1.171.12.9.2.2.1.3
This object indicates the status of IP address mask. other (1) - Neither source IP address nor destination IP address are masked. dst-ip-addr (2) - Destination IP addresses within received frames are to be filtered when matched with the IP address entry of the table. src-ip-addr (3) - Source IP addresses within received frames are to be filtered when matched with the IP address entry of the table. dst-src-ip-addr (4) - Destination or source IP addresses within received frames are to be filtered when matched with the IP address entry of the table.
OBJECT-TYPE    
  INTEGER other(1), dst-ip-addr(2), src-ip-addr(3), dst-src-ip-addr(4)  

swACLIpSrcIpAddrMask 1.3.6.1.4.1.171.12.9.2.2.1.4
This object specifies the IP address mask for the source IP address.
OBJECT-TYPE    
  IpAddress  

swACLIpDstIpAddrMask 1.3.6.1.4.1.171.12.9.2.2.1.5
This object specifies the IP address mask for the destination IP address.
OBJECT-TYPE    
  IpAddress  

swACLIpUseDSCP 1.3.6.1.4.1.171.12.9.2.2.1.6
This object indicates if the DSCP protocol in the packet header is to be examined or not.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLIpUseProtoType 1.3.6.1.4.1.171.12.9.2.2.1.7
That object indicates which protocol will be examined.
OBJECT-TYPE    
  INTEGER none(1), icmp(2), igmp(3), tcp(4), udp(5), protocolId(6)  

swACLIpIcmpOption 1.3.6.1.4.1.171.12.9.2.2.1.8
This object indicates which fields are defined for ICMP. none (1)- Both fields are null. type (2)- Type field identified. code (3)- Code field identified. type-code (4)- Both ICMP fields identified.
OBJECT-TYPE    
  INTEGER none(1), type(2), code(3), type-code(4)  

swACLIpIgmpOption 1.3.6.1.4.1.171.12.9.2.2.1.9
Indicates if the IGMP options field is identified or not.
OBJECT-TYPE    
  INTEGER enable(1), disable(2)  

swACLIpTcpOption 1.3.6.1.4.1.171.12.9.2.2.1.10
This object indicates the status of the filtered address of TCP. other (1) - Neither source port nor destination port are masked. dst-addr (2) - Packets will be filtered if this destination port is identified in received frames. src-addr (3) - Packets will be filtered if this source port is identified in received frames. dst-src-addr (4) - Packets will be filtered if this destination or source port is identified in received frames.
OBJECT-TYPE    
  INTEGER other(1), dst-addr(2), src-addr(3), dst-src-addr(4)  

swACLIpUdpOption 1.3.6.1.4.1.171.12.9.2.2.1.11
This object indicates the status of the filtered address of UDP . other (1) - Neither source port nor destination port are masked. dst-addr (2) - Packets will be filtered if this destination port is identified in received frames. src-addr (3) - Packets will be filtered if this source port is identified in received frames. dst-src-addr (4) - Packets will be filtered if this destination or source port is identified in received frames.
OBJECT-TYPE    
  INTEGER other(1), dst-addr(2), src-addr(3), dst-src-addr(4)  

swACLIpTCPorUDPSrcPortMask 1.3.6.1.4.1.171.12.9.2.2.1.12
Specifies a TCP port mask for the source port if swACLIpUseProtoType is TCP Specifies a UDP port mask for the source port if swACLIpUseProtoType is UDP.
OBJECT-TYPE    
  STRING Size(2)  

swACLIpTCPorUDPDstPortMask 1.3.6.1.4.1.171.12.9.2.2.1.13
Specifies a TCP port mask for the destination port if swACLIpUseProtoType is TCP Specifies a UDP port mask for the destination port if swACLIpUseProtoType is UDP.
OBJECT-TYPE    
  STRING Size(2)  

swACLIpTCPFlagBit 1.3.6.1.4.1.171.12.9.2.2.1.14
Specifies a TCP connection flag mask.
OBJECT-TYPE    
  INTEGER enable(1), disable(2)  

swACLIpTCPFlagBitMask 1.3.6.1.4.1.171.12.9.2.2.1.15
A value which indicates the set of TCP flags that this entity may potentially offer. The value is a sum of flag bits. This sum initially takes the value zero. Then, for each flag, L, is added in the range 1 through 6, for which this node performs transactions where 2^(L-1) is added to the sum. Note that values should be calculated accordingly: Flag functionality 6 urg bit 5 ack bit 4 psh bit 3 rst bit 2 syn bit 1 fin bit For example, if you want to enable urg bit and ack bit, you should set value 48{2^(5-1) + 2^(6-1)}.
OBJECT-TYPE    
  INTEGER 0..63  

swACLIpProtoIDOption 1.3.6.1.4.1.171.12.9.2.2.1.16
Specifies if the switch will examine each frame's protocol ID field or not.
OBJECT-TYPE    
  INTEGER enable(1), disable(2)  

swACLIpProtoID 1.3.6.1.4.1.171.12.9.2.2.1.17
Specifies that the rule applies to the IP protocol ID behind the IP header.
OBJECT-TYPE    
  INTEGER 0..255  

swACLIpProtoIDMask 1.3.6.1.4.1.171.12.9.2.2.1.18
Specifies that the rule applies to the IP protocol ID and the mask options behind the IP header.
OBJECT-TYPE    
  STRING Size(20)  

swACLIpRowStatus 1.3.6.1.4.1.171.12.9.2.2.1.19
This object indicates the status of this entry.
OBJECT-TYPE    
  RowStatus  

swACLIpOwner 1.3.6.1.4.1.171.12.9.2.2.1.20
The owner of the ACL mask entry. The type of ACL entry created. ACL type entries can only be modified when being configured through the same type command. For example, IP-MAC Binding entries can only be modified or deleted through the IP-MAC Binding configurations or commands.
OBJECT-TYPE    
  INTEGER any(1), acl(2), ipbind(3), other(4), dhcp(5), netbios(6), ext-netbios(7)  

swACLIpUnusedRuleEntries 1.3.6.1.4.1.171.12.9.2.2.1.22
The number of unused rule entries this IP profile entry.
OBJECT-TYPE    
  INTEGER  

swACLIpProfileName 1.3.6.1.4.1.171.12.9.2.2.1.23
The name of the ACL mask entry unique to the mask list.
OBJECT-TYPE    
  DisplayString Size(1..32)  

swACLPktContMaskTable 1.3.6.1.4.1.171.12.9.2.3
This table contains the ACL mask for user-defined information. An access profile will be created on the switch to define which part of each incoming frame's user-defined part of the packet header will be examined by switch. Masks entered will be combined with the values the switch finds in the specified frame header fields.
OBJECT-TYPE    
  SEQUENCE OF  
    SwACLPktContMaskEntry

swACLPktContMaskEntry 1.3.6.1.4.1.171.12.9.2.3.1
A list of information about user-defined ACLs.
OBJECT-TYPE    
  SwACLPktContMaskEntry  

swACLPktContMaskProfileID 1.3.6.1.4.1.171.12.9.2.3.1.1
The ID of the ACL mask entry, which is unique to the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swACLPktContMaskOffset0to15 1.3.6.1.4.1.171.12.9.2.3.1.2
Specifies that the rule applies to the packet content (Offset0to15) and the mask options.
OBJECT-TYPE    
  STRING Size(16)  

swACLPktContMaskOffset16to31 1.3.6.1.4.1.171.12.9.2.3.1.3
Specifies that the rule applies to the packet content (Offset16to31) and the mask options.
OBJECT-TYPE    
  STRING Size(16)  

swACLPktContMaskOffset32to47 1.3.6.1.4.1.171.12.9.2.3.1.4
Specifies that the rule applies to the packet content (Offset32to47) and the mask options.
OBJECT-TYPE    
  STRING Size(16)  

swACLPktContMaskOffset48to63 1.3.6.1.4.1.171.12.9.2.3.1.5
Specifies that the rule applies to the packet content (Offset48to63) and the mask options.
OBJECT-TYPE    
  STRING Size(16)  

swACLPktContMaskOffset64to79 1.3.6.1.4.1.171.12.9.2.3.1.6
Specifies that the rule applies to the packet content (Offset64to79) and the mask options.
OBJECT-TYPE    
  STRING Size(16)  

swACLPktContMaskRowStatus 1.3.6.1.4.1.171.12.9.2.3.1.7
This object indicates the status of this entry.
OBJECT-TYPE    
  RowStatus  

swACLPktContMaskOwner 1.3.6.1.4.1.171.12.9.2.3.1.8
The owner of the ACL mask entry. The type of ACL entry created. ACL type entries can only be modified when being configured through the same type command. For example, IP-MAC Binding entries can only be modified or deleted through the IP-MAC Binding configurations or commands.
OBJECT-TYPE    
  INTEGER any(1), acl(2), ipbind(3), other(4), dhcp(5), netbios(6), ext-netbios(7)  

swACLPktContMaskUnusedRuleEntries 1.3.6.1.4.1.171.12.9.2.3.1.9
The number of unused rule entries of this IP profile entry.
OBJECT-TYPE    
  INTEGER  

swACLPktContMaskProfileName 1.3.6.1.4.1.171.12.9.2.3.1.10
The name of the ACL mask entry unique to the mask list.
OBJECT-TYPE    
  DisplayString Size(1..32)  

swACLIpv6MaskTable 1.3.6.1.4.1.171.12.9.2.4
This table contains user-defined ACL mask information. An access profile will be created on the switch to define which parts of each incoming frame's IPv6 part of the packet header will be examined by the switch. Masks entered will be combined with the values the switch finds in the specified frame header fields.
OBJECT-TYPE    
  SEQUENCE OF  
    SwACLIpv6MaskEntry

swACLIpv6MaskEntry 1.3.6.1.4.1.171.12.9.2.4.1
A list of information about user-defined ACLs.
OBJECT-TYPE    
  SwACLIpv6MaskEntry  

swACLIpv6MaskProfileID 1.3.6.1.4.1.171.12.9.2.4.1.1
The ID of the ACL mask entry, which is unique to the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swACLIpv6MaskClass 1.3.6.1.4.1.171.12.9.2.4.1.2
Specifies that the rule applies to the IPv6 class field and the mask options.
OBJECT-TYPE    
  INTEGER enable(1), disable(2)  

swACLIpv6MaskFlowlabel 1.3.6.1.4.1.171.12.9.2.4.1.3
Specifies that the rule applies to the IPv6 flowlabel field and the mask options.
OBJECT-TYPE    
  INTEGER enable(1), disable(2)  

swACLIpv6IpAddrMaskState 1.3.6.1.4.1.171.12.9.2.4.1.4
This object indicates the status of the IPv6 address mask. other (1) - Neither source IPv6 address nor destination IPv6 address are masked. dst-ipv6-addr (2) - Received frame destination IPv6 address is currently used to be filtered as it meets with the IPv6 address entry of the table. src-ipv6-addr (3) - Received frame source IPv6 address is currently used to be filtered as it meets with the IPv6 address entry of the table. dst-src-ipv6-addr (4) - Received frame destination IPv6 address or source IPv6 address is currently used to be filtered as it meets with the IPv6 address entry of the table.
OBJECT-TYPE    
  INTEGER other(1), dst-ipv6-addr(2), src-ipv6-addr(3), dst-src-ipv6-addr(4)  

swACLIpv6MaskSrcIpv6Mask 1.3.6.1.4.1.171.12.9.2.4.1.5
Specifies that the rule applies to the Source IPv6 address and the mask options. This should be a 16 byte octet string.
OBJECT-TYPE    
  Ipv6Address  

swACLIpv6MaskDstIpv6Mask 1.3.6.1.4.1.171.12.9.2.4.1.6
Specifies that the rule applies to the Destination IPv6 address and the mask options. This should be a 16 byte octet string.
OBJECT-TYPE    
  Ipv6Address  

swACLIpv6MaskRowStatus 1.3.6.1.4.1.171.12.9.2.4.1.7
This object indicates the status of this entry.
OBJECT-TYPE    
  RowStatus  

swACLIpv6MaskOwner 1.3.6.1.4.1.171.12.9.2.4.1.8
The owner of the ACL mask entry. The type of ACL entry created. ACL type entries can only be modified when being configured through the same type command. For example, IP-MAC Binding entries can only be modified or deleted through the IP-MAC Binding configurations or commands.
OBJECT-TYPE    
  INTEGER any(1), acl(2), ipbind(3), other(4), dhcp(5), netbios(6), ext-netbios(7)  

swACLIpv6MaskUnusedRuleEntries 1.3.6.1.4.1.171.12.9.2.4.1.9
The number of unused rule entries of this IP profile entry.
OBJECT-TYPE    
  INTEGER  

swACLIpv6MaskProfileName 1.3.6.1.4.1.171.12.9.2.4.1.10
The name of the ACL mask entry unique to the mask list.
OBJECT-TYPE    
  DisplayString Size(1..32)  

swACLIpv6MaskUseProtoType 1.3.6.1.4.1.171.12.9.2.4.1.11
That object indicates which protocol will be examined.
OBJECT-TYPE    
  INTEGER none(1), tcp(2), udp(3)  

swACLIpv6MaskTcpOption 1.3.6.1.4.1.171.12.9.2.4.1.12
This object indicates the status of the filtered address of TCP. other (1) - Neither source port nor destination port are masked. dst-addr (2) - Packets will be filtered if this destination port is identified in received frames. src-addr (3) - Packets will be filtered if this source port is identified in received frames. dst-src-addr (4) - Packets will be filtered if this destination or source port is identified in received frames.
OBJECT-TYPE    
  INTEGER other(1), dst-addr(2), src-addr(3), dst-src-addr(4)  

swACLIpv6MaskUdpOption 1.3.6.1.4.1.171.12.9.2.4.1.13
This object indicates the status of the filtered address of UDP. other (1) - Neither source port nor destination port is masked. dst-addr (2) - Packets will be filtered if this destination port is identified in received frames. src-addr (3) - Packets will be filtered if this source port is identified in received frames. dst-src-addr (4) - Packets will be filtered if this destination or source port is identified in received frames.
OBJECT-TYPE    
  INTEGER other(1), dst-addr(2), src-addr(3), dst-src-addr(4)  

swACLIpv6MaskTCPorUDPSrcPortMask 1.3.6.1.4.1.171.12.9.2.4.1.14
Specifies a TCP port mask for the source port if swACLIpv6MaskUseProtoType is TCP Specifies a UDP port mask for the source port if swACLIpv6MaskUseProtoType is UDP.
OBJECT-TYPE    
  STRING Size(2)  

swACLIpv6MaskTCPorUDPDstPortMask 1.3.6.1.4.1.171.12.9.2.4.1.15
Specifies a TCP port mask for the destination port if swACLIpv6MaskUseProtoType is TCP Specifies a UDP port mask for the destination port if swACLIpv6MaskUseProtoType is UDP.
OBJECT-TYPE    
  STRING Size(2)  

swACLMaskDelAllState 1.3.6.1.4.1.171.12.9.2.5
Used to delete all ACL masks.
OBJECT-TYPE    
  INTEGER none(1), start(2)  

swIBPACLEthernetTable 1.3.6.1.4.1.171.12.9.2.6
This table contains IP-MAC-Binding ACL mask Ethernet information. Access profiles will be created on the switch by row creation and to define which parts of each incoming frame's layer 2 header part the switch will examine. Masks can be entered that will be combined with the values the switch finds in the specified frame header fields.
OBJECT-TYPE    
  SEQUENCE OF  
    SwIBPACLEthernetEntry

swIBPACLEthernetEntry 1.3.6.1.4.1.171.12.9.2.6.1
A list of information about the Ethernet ACL.
OBJECT-TYPE    
  SwIBPACLEthernetEntry  

swIBPACLEthernetProfileID 1.3.6.1.4.1.171.12.9.2.6.1.1
The ID of the ACL mask entry, unique in the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swIBPACLEthernetUseEthernetType 1.3.6.1.4.1.171.12.9.2.6.1.2
Specifies if the switch will examine the Ethernet type value in each frame's header or not.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swIBPACLIpTable 1.3.6.1.4.1.171.12.9.2.7
This table contains IP-MAC-Binding IP ACL mask information. Access profiles will be created on the switch by row creation and to define which parts of each incoming frame's IP layer part of the header the switch will examine. Masks can be entered that will be combined with the values the switch finds in the specified frame header fields.
OBJECT-TYPE    
  SEQUENCE OF  
    SwIBPACLIpEntry

swIBPACLIpEntry 1.3.6.1.4.1.171.12.9.2.7.1
A list of information about the IP layer of the ACL.
OBJECT-TYPE    
  SwIBPACLIpEntry  

swIBPACLIpProfileID 1.3.6.1.4.1.171.12.9.2.7.1.1
The ID of the ACL mask entry, unique in the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swIBPACLIpSrcMacAddrMask 1.3.6.1.4.1.171.12.9.2.7.1.2
This object specifies the MAC address mask for the source MAC address.
OBJECT-TYPE    
  MacAddress  

swIBPACLIpSrcIpAddrMask 1.3.6.1.4.1.171.12.9.2.7.1.3
This object specifies IP address masks for the source IP address.
OBJECT-TYPE    
  IpAddress  

swACLPktContMaskOptionTable 1.3.6.1.4.1.171.12.9.2.8
This table contains the ACL mask for user-defined option information. An access profile will be created on the switch to define which part of each incoming frame's user-defined part of the packet header will be examined by switch. Masks entered will be combined with the values the switch finds in the specified frame header fields.
OBJECT-TYPE    
  SEQUENCE OF  
    SwACLPktContMaskOptionEntry

swACLPktContMaskOptionEntry 1.3.6.1.4.1.171.12.9.2.8.1
A list of information about the user-defined ACL.
OBJECT-TYPE    
  SwACLPktContMaskOptionEntry  

swACLPktContMaskOptionProfileID 1.3.6.1.4.1.171.12.9.2.8.1.1
The ID of the ACL mask entry, unique to the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swACLPktContMaskOffsetChunk1State 1.3.6.1.4.1.171.12.9.2.8.1.2
Specifies the state of chunk1.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLPktContMaskOffsetChunk1OffsetValue 1.3.6.1.4.1.171.12.9.2.8.1.3
Specifies the frame content offset of chunk1.
OBJECT-TYPE    
  INTEGER 0..31  

swACLPktContMaskOffsetChunk1Mask 1.3.6.1.4.1.171.12.9.2.8.1.4
Specifies the frame content mask of chunk1.
OBJECT-TYPE    
  STRING Size(4)  

swACLPktContMaskOffsetChunk2State 1.3.6.1.4.1.171.12.9.2.8.1.5
Specifies the state of chunk2.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLPktContMaskOffsetChunk2OffsetValue 1.3.6.1.4.1.171.12.9.2.8.1.6
Specifies the frame content offset of chunk2.
OBJECT-TYPE    
  INTEGER 0..31  

swACLPktContMaskOffsetChunk2Mask 1.3.6.1.4.1.171.12.9.2.8.1.7
Specifies the frame content mask of chunk2.
OBJECT-TYPE    
  STRING Size(4)  

swACLPktContMaskOffsetChunk3State 1.3.6.1.4.1.171.12.9.2.8.1.8
Specifies the state of chunk3.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLPktContMaskOffsetChunk3OffsetValue 1.3.6.1.4.1.171.12.9.2.8.1.9
Specifies the frame content offset of chunk3.
OBJECT-TYPE    
  INTEGER 0..31  

swACLPktContMaskOffsetChunk3Mask 1.3.6.1.4.1.171.12.9.2.8.1.10
Specifies the frame content mask of chunk3.
OBJECT-TYPE    
  STRING Size(4)  

swACLPktContMaskOffsetChunk4State 1.3.6.1.4.1.171.12.9.2.8.1.11
Specifies the state of chunk4.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLPktContMaskOffsetChunk4OffsetValue 1.3.6.1.4.1.171.12.9.2.8.1.12
Specifies the frame content offset of chunk4.
OBJECT-TYPE    
  INTEGER 0..31  

swACLPktContMaskOffsetChunk4Mask 1.3.6.1.4.1.171.12.9.2.8.1.13
Specifies the frame content mask of chunk4.
OBJECT-TYPE    
  STRING Size(4)  

swACLPktContMaskOptionRowStatus 1.3.6.1.4.1.171.12.9.2.8.1.14
This object indicates the status of this entry.
OBJECT-TYPE    
  RowStatus  

swACLPktContMaskOptionOwner 1.3.6.1.4.1.171.12.9.2.8.1.15
The owner of the ACL mask entry. The type of ACL entry created. ACL type entries can only be modified when being configured through the same type command. For example, IP-MAC Binding entries can only be modified or deleted through the IP-MAC Binding configurations or commands.
OBJECT-TYPE    
  INTEGER any(1), acl(2), ipbind(3), other(4), dhcp(5), netbios(6), ext-netbios(7)  

swACLPktContMaskOptionUnusedRuleEntries 1.3.6.1.4.1.171.12.9.2.8.1.16
The number of unused rule entries of this IP profile entry.
OBJECT-TYPE    
  INTEGER  

swACLPktContMaskOptionProfileName 1.3.6.1.4.1.171.12.9.2.8.1.17
The name of the ACL mask entry unique to the mask list.
OBJECT-TYPE    
  DisplayString Size(1..32)  

swACLEtherRuleTable 1.3.6.1.4.1.171.12.9.3.1
This table contains Ethernet ACL information.
OBJECT-TYPE    
  SEQUENCE OF  
    SwACLEtherRuleEntry

swACLEtherRuleEntry 1.3.6.1.4.1.171.12.9.3.1.1
A list of information about the ACL rule of the layer 2 part of each packet.
OBJECT-TYPE    
  SwACLEtherRuleEntry  

swACLEtherRuleProfileID 1.3.6.1.4.1.171.12.9.3.1.1.1
The ID of the ACL rule entry, which is unique to the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swACLEtherRuleAccessID 1.3.6.1.4.1.171.12.9.3.1.1.2
The ID of the the ACL rule entry relates to the swACLEtherRuleProfileID. When row creation is set to 0, assignment of an Access ID for ports is automatic and the swACLEtherRulePort creates Rule entries for the swACLEtherRulePort accordingly. When set from 1 to 65535, an access ID will be created for the swACLEtherRulePort. The swACLEtherRulePort must be set to one port only otherwise the row creation will fail.
OBJECT-TYPE    
  INTEGER 0..65535  

swACLEtherRuleVlan 1.3.6.1.4.1.171.12.9.3.1.1.3
Specifies that the access rule will apply to this VLAN only.
OBJECT-TYPE    
  SnmpAdminString Size(1..32)  

swACLEtherRuleSrcMacAddress 1.3.6.1.4.1.171.12.9.3.1.1.4
Specifies that the access rule will apply to only packets with this source MAC address.
OBJECT-TYPE    
  MacAddress  

swACLEtherRuleDstMacAddress 1.3.6.1.4.1.171.12.9.3.1.1.5
Specifies that the access rule will apply to only packets with this destination MAC address.
OBJECT-TYPE    
  MacAddress  

swACLEtherRule8021P 1.3.6.1.4.1.171.12.9.3.1.1.6
Specifies that the access rule will apply only to packets with this 802.1p priority value. A value of -1 indicates that this node is not actively used.
OBJECT-TYPE    
  INTEGER -1..7  

swACLEtherRuleEtherType 1.3.6.1.4.1.171.12.9.3.1.1.7
Specifies that the access rule will apply only to packets with this hexadecimal 802.1Q Ethernet type value in the packet header.
OBJECT-TYPE    
  STRING Size(2)  

swACLEtherRuleEnablePriority 1.3.6.1.4.1.171.12.9.3.1.1.8
Specifies that the access rule will apply only to packets with priority value.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLEtherRulePriority 1.3.6.1.4.1.171.12.9.3.1.1.9
Specifies that the priority will be changed in packets while the swACLEtherRuleEnablePriority is enabled .
OBJECT-TYPE    
  INTEGER 0..7  

swACLEtherRuleReplacePriority 1.3.6.1.4.1.171.12.9.3.1.1.10
Specifies if the switch will change priorities of packets that match the access profile 802.1p priority tag field or not .
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLEtherRuleEnableReplaceDscp 1.3.6.1.4.1.171.12.9.3.1.1.11
Specifies if the switch will change priorities of packets that match the access profile DSCP field or not. Replace DSCP and replace ToS precedence can not both be supported.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLEtherRuleRepDscp 1.3.6.1.4.1.171.12.9.3.1.1.12
Specifies a value to be written to the DSCP field of an incoming packet that meets the criteria specified in the first part of the command. This value will over-write the value in the DSCP field of the packet.
OBJECT-TYPE    
  INTEGER 0..63  

swACLEtherRulePermit 1.3.6.1.4.1.171.12.9.3.1.1.13
This object indicates if the result of the packet examination is 'permit' or 'deny'. The default is 'permit'. permit - Specifies that packets that match the access profile are permitted to be forwarded by the switch. deny - Specifies that packets that match the access profile are not permitted to be forwarded by the switch and will be filtered.
OBJECT-TYPE    
  INTEGER deny(1), permit(2)  

swACLEtherRulePort 1.3.6.1.4.1.171.12.9.3.1.1.14
Specifies that the access rule will only apply to port(s). This object and swACLEtherRuleVID can not be set together.
OBJECT-TYPE    
  PortList  

swACLEtherRuleRowStatus 1.3.6.1.4.1.171.12.9.3.1.1.15
This object indicates the status of this entry.
OBJECT-TYPE    
  RowStatus  

swACLEtherRuleOwner 1.3.6.1.4.1.171.12.9.3.1.1.16
The owner of the ACL rule entry. Only owners can modify this entry.
OBJECT-TYPE    
  INTEGER any(1), acl(2), ipbind(3), other(4), dhcp(5), netbios(6), ext-netbios(7)  

swACLEtherRuleRxRate 1.3.6.1.4.1.171.12.9.3.1.1.17
Specifies the rx rate, 0 denotes no_limit. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swACLEtherRuleEnableReplaceTosPrecedence 1.3.6.1.4.1.171.12.9.3.1.1.18
Specifies if the switch will change priorities of packets that match the access profile ToS precedence field or not. Replace DSCP and replace ToS precedence can not both be supported.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLEtherRuleRepTosPrecedence 1.3.6.1.4.1.171.12.9.3.1.1.19
Specifies a value to be written to the ToS precedence field of an incoming packet that meets the criteria specified in the first part of the command. This value will over-write the value in the ToS precedence field of the packet.
OBJECT-TYPE    
  INTEGER 0..7  

swACLEtherRuleVID 1.3.6.1.4.1.171.12.9.3.1.1.20
Specifies this rule only applies to the specified VLAN. There are two conditions: 1.only the portlist that belongs to this VLAN will be included; 2.packets must belong to this VLAN. This object and swACLEtherRulePort can not be set together. When you set swACLEtherRulePort, the value of this object will automatically change to 0. And this object can not be set to 0.
OBJECT-TYPE    
  INTEGER 0..4094  

swACLIpRuleTable 1.3.6.1.4.1.171.12.9.3.2
Tok_String
OBJECT-TYPE    
  SEQUENCE OF  
    SwACLIpRuleEntry

swACLIpRuleEntry 1.3.6.1.4.1.171.12.9.3.2.1
Tok_String
OBJECT-TYPE    
  SwACLIpRuleEntry  

swACLIpRuleProfileID 1.3.6.1.4.1.171.12.9.3.2.1.1
The ID of the ACL mask entry, which is unique to the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swACLIpRuleAccessID 1.3.6.1.4.1.171.12.9.3.2.1.2
The ID of the ACL rule entry relates to swACLIPRuleProfileID. Row creation set to 0 indicates automatic assignment of the Access ID for the ports in the swACLIpRulePort to create Rule entries for swACLIpRulePort accordingly. Set to 1-65535 causes creation of an access ID for the swACLIpRulePort. The swACLIpRulePort must be set to one port only otherwise the row creation will fail.
OBJECT-TYPE    
  INTEGER 0..65535  

swACLIpRuleVlan 1.3.6.1.4.1.171.12.9.3.2.1.3
Specifies that the access rule will only apply to this VLAN.
OBJECT-TYPE    
  SnmpAdminString Size(1..32)  

swACLIpRuleSrcIpaddress 1.3.6.1.4.1.171.12.9.3.2.1.4
Specifies an IP source address.
OBJECT-TYPE    
  IpAddress  

swACLIpRuleDstIpaddress 1.3.6.1.4.1.171.12.9.3.2.1.5
Specifies an IP destination address.
OBJECT-TYPE    
  IpAddress  

swACLIpRuleDscp 1.3.6.1.4.1.171.12.9.3.2.1.6
Specifies the value of DSCP. The value can be configured from 0 to 63. A value of -1 indicates that this node is not actively used.
OBJECT-TYPE    
  INTEGER -1..63  

swACLIpRuleProtocol 1.3.6.1.4.1.171.12.9.3.2.1.7
Specifies the IP protocol. For some older chips, this object can not be set. When getting this object, it always returns the type which has been configured in swACLIpEntry. For some newer chips, this object can only set the type which has been configured in swACLIpEntry. The default value is none (1).
OBJECT-TYPE    
  INTEGER none(1), icmp(2), igmp(3), tcp(4), udp(5), protocolId(6)  

swACLIpRuleType 1.3.6.1.4.1.171.12.9.3.2.1.8
Specifies that the rule applies to the value of ICMP type traffic. A value of -1 denotes that this object is not active.
OBJECT-TYPE    
  INTEGER -1..255  

swACLIpRuleCode 1.3.6.1.4.1.171.12.9.3.2.1.9
Specifies that the rule applies to the value of ICMP code traffic. A value of -1 denotes that this object is not active.
OBJECT-TYPE    
  INTEGER -1..255  

swACLIpRuleSrcPort 1.3.6.1.4.1.171.12.9.3.2.1.10
Specifies that the rule applies to the range of the TCP/UDP source ports. A value of -1 indicates that this node is not actively used.
OBJECT-TYPE    
  INTEGER -1..65535  

swACLIpRuleDstPort 1.3.6.1.4.1.171.12.9.3.2.1.11
Specifies the TCP/UDP destination port range. A value of -1 indicates that this node is not actively used.
OBJECT-TYPE    
  INTEGER -1..65535  

swACLIpRuleFlagBits 1.3.6.1.4.1.171.12.9.3.2.1.12
A value which indicates the set of TCP flags that this entity may potentially offer. The value is a sum of flag bits. This sum initially takes the value zero. Then, for each flag, L is added in the range 1 through 6, for which this node performs transactions, where 2^(L - 1) is added to the sum. Note that values should be calculated accordingly: Flag functionality 6 urg bit 5 ack bit 4 psh bit 3 rst bit 2 syn bit 1 fin bit For example, it you want to enable urg bit and ack bit, you should set value 48{2^(5-1) + 2^(6-1)}.
OBJECT-TYPE    
  INTEGER 0..63  

swACLIpRuleProtoID 1.3.6.1.4.1.171.12.9.3.2.1.13
Specifies that the rule applies to the value of IP protocol ID traffic. A value of -1 indicates that this node is not actively used.
OBJECT-TYPE    
  INTEGER -1..255  

swACLIpRuleUserMask 1.3.6.1.4.1.171.12.9.3.2.1.14
Specifies that the rule applies to the IP protocol ID and the range of options behind the IP header.
OBJECT-TYPE    
  STRING Size(20)  

swACLIpRuleEnablePriority 1.3.6.1.4.1.171.12.9.3.2.1.15
Specifies that the access rule will apply only to packets with this priority value.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLIpRulePriority 1.3.6.1.4.1.171.12.9.3.2.1.16
Specifies the priority will change in packets while the swACLIpRuleEnablePriority is enabled.
OBJECT-TYPE    
  INTEGER 0..7  

swACLIpRuleReplacePriority 1.3.6.1.4.1.171.12.9.3.2.1.17
Specifies whether the packets that match the access profile will change the 802.1p priority tag field by the switch or not.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLIpRuleEnableReplaceDscp 1.3.6.1.4.1.171.12.9.3.2.1.18
Specifies if the switch will change priorities of packets that match the access profile DSCP field or not. Replace DSCP and replace ToS precedence can not both be supported.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLIpRuleRepDscp 1.3.6.1.4.1.171.12.9.3.2.1.19
Specifies a value to be written to the DSCP field of an incoming packet that meets the criteria specified in the first part of the command. This value will over-write the value in the DSCP field of the packet.
OBJECT-TYPE    
  INTEGER 0..63  

swACLIpRulePermit 1.3.6.1.4.1.171.12.9.3.2.1.20
This object indicates if the result of the packet examination is to 'permit' or 'deny'. The default is 'permit'. permit - Specifies that packets that match the access profile are permitted to be forwarded by the switch. deny - Specifies that packets that match the access profile are not permitted to be forwarded by the switch and will be filtered.
OBJECT-TYPE    
  INTEGER deny(1), permit(2)  

swACLIpRulePort 1.3.6.1.4.1.171.12.9.3.2.1.21
Specifies that the access rule will only apply to port(s). This object and swACLIpRuleVID can not be set together.
OBJECT-TYPE    
  PortList  

swACLIpRuleRowStatus 1.3.6.1.4.1.171.12.9.3.2.1.22
This object indicates the status of this entry.
OBJECT-TYPE    
  RowStatus  

swACLIpRuleOwner 1.3.6.1.4.1.171.12.9.3.2.1.23
The owner of the ACL rule entry. Only owners can modify this entry.
OBJECT-TYPE    
  INTEGER any(1), acl(2), ipbind(3), other(4), dhcp(5), netbios(6), ext-netbios(7)  

swACLIpRuleRxRate 1.3.6.1.4.1.171.12.9.3.2.1.24
Specifies the rx-rate, 0 denotes no_limit. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swACLIpRuleEnableReplaceTosPrecedence 1.3.6.1.4.1.171.12.9.3.2.1.26
Specifies if the switch will change priorities of packets that match the access profile ToS precedence field or not. Replace DSCP and replace ToS precedence can not both be supported.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLIpRuleRepTosPrecedence 1.3.6.1.4.1.171.12.9.3.2.1.27
Specifies a value to be written to the ToS precedence field of an incoming packet that meets the criteria specified in the first part of the command. This value will over-write the value in the ToS precedence field of the packet.
OBJECT-TYPE    
  INTEGER 0..7  

swACLIpRuleVID 1.3.6.1.4.1.171.12.9.3.2.1.28
Specifies this rule only applies to the specified VLAN. There are two conditions: 1.only the portlist that belongs to this VLAN will be included; 2.packets must belong to this VLAN. This object and swACLIpRulePort can not be set together. When you set swACLIpRulePort, the value of this object will automatically change to 0. And this object can not be set 0.
OBJECT-TYPE    
  INTEGER 0..4094  

swACLIpv6RuleTable 1.3.6.1.4.1.171.12.9.3.4
This table contains the IPv6 ACL rule information.
OBJECT-TYPE    
  SEQUENCE OF  
    SwACLIpv6RuleEntry

swACLIpv6RuleEntry 1.3.6.1.4.1.171.12.9.3.4.1
A list of information about ACL rules regarding the IPv6 part of each packet.
OBJECT-TYPE    
  SwACLIpv6RuleEntry  

swACLIpv6RuleProfileID 1.3.6.1.4.1.171.12.9.3.4.1.1
The ID of the ACL mask entry, which is unique to the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swACLIpv6RuleAccessID 1.3.6.1.4.1.171.12.9.3.4.1.2
The ID of the ACL rule entry relates to swACLIpv6RuleProfileID. When row creation is set to 0, this indicates the access ID will be assigned automatically for the ports in the swACLIpv6RulePort to create rule entries for swACLIpv6RulePort accordingly. Set to 1-65535 indicates creation of an access ID for the swACLIpv6RulePort. The swACLIpv6RulePort must be set to one port only, otherwise the row creation will fail.
OBJECT-TYPE    
  INTEGER 0..65535  

swACLIpv6RuleClass 1.3.6.1.4.1.171.12.9.3.4.1.3
Specifies that the rule applies to the IPv6 class field.
OBJECT-TYPE    
  INTEGER 0..255  

swACLIpv6RuleFlowlabel 1.3.6.1.4.1.171.12.9.3.4.1.4
Specifies that the rule applies to the IPv6 flow label field.
OBJECT-TYPE    
  STRING Size(4)  

swACLIpv6RuleSrcIpv6Addr 1.3.6.1.4.1.171.12.9.3.4.1.5
Specifies that the rule applies to the source IPv6 address. This should be a 16 byte octet string.
OBJECT-TYPE    
  Ipv6Address  

swACLIpv6RuleDstIpv6Addr 1.3.6.1.4.1.171.12.9.3.4.1.6
Specifies that the rule applies to the destination IPv6 address. This should be a 16 byte octet string.
OBJECT-TYPE    
  Ipv6Address  

swACLIpv6RuleEnablePriority 1.3.6.1.4.1.171.12.9.3.4.1.7
Specifies that the access rule will apply only to packets with priority value.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLIpv6RulePriority 1.3.6.1.4.1.171.12.9.3.4.1.8
Specifies the priority will change in packets while the swACLIpv6RuleReplacePriority is enabled.
OBJECT-TYPE    
  INTEGER 0..7  

swACLIpv6RuleReplacePriority 1.3.6.1.4.1.171.12.9.3.4.1.9
Specifies if the switch will change priorities of packets that match the access profile 802.1p priority tag or not.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLIpv6RulePermit 1.3.6.1.4.1.171.12.9.3.4.1.10
This object indicates if the result of packet examination is to 'permit' or 'deny'. The default is 'permit'. permit - Specifies that packets that match the access profile are permitted to be forwarded by the switch. deny - Specifies that packets that match the access profile are not permitted to be forwarded by the switch and will be filtered. mirror - Specifies the packets that match the access profile are copied to the mirror port. Note: The ACL mirror function will work after mirror has been enabled and the mirror port has been configured.
OBJECT-TYPE    
  INTEGER deny(1), permit(2), mirror(3)  

swACLIpv6RulePort 1.3.6.1.4.1.171.12.9.3.4.1.11
Specifies that the access rule will apply only to port(s). This object and swACLIpv6RuleVID can not be set together.
OBJECT-TYPE    
  PortList  

swACLIpv6RuleRowStatus 1.3.6.1.4.1.171.12.9.3.4.1.12
This object indicates the status of this entry.
OBJECT-TYPE    
  RowStatus  

swACLIpv6RuleOwner 1.3.6.1.4.1.171.12.9.3.4.1.13
The owner of the ACL rule entry. Only owners can modify this entry.
OBJECT-TYPE    
  INTEGER any(1), acl(2), ipbind(3), other(4), dhcp(5), netbios(6), ext-netbios(7)  

swACLIpv6RuleRxRate 1.3.6.1.4.1.171.12.9.3.4.1.14
Specifies the rx-rate, 0 denotes no_limit. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swACLIpv6RuleEnableReplaceDscp 1.3.6.1.4.1.171.12.9.3.4.1.15
Specifies if the switch will change priorities of packets that match the access profile DSCP field or not. Replace DSCP and replace ToS precedence can not both be supported.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLIpv6RuleRepDscp 1.3.6.1.4.1.171.12.9.3.4.1.16
Specifies a value to be written to the DSCP field of an incoming packet that meets the criteria specified in the first part of the command. This value will over-write the value in the DSCP field of the packet.
OBJECT-TYPE    
  INTEGER 0..63  

swACLIpv6RuleEnableReplaceTosPrecedence 1.3.6.1.4.1.171.12.9.3.4.1.17
Specifies if the switch will change priorities of packets that match the access profile ToS precedence field or not. Replace DSCP and replace ToS precedence can not both be supported.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLIpv6RuleRepTosPrecedence 1.3.6.1.4.1.171.12.9.3.4.1.18
Specifies a value to be written to the ToS precedence field of an incoming packet that meets the criteria specified in the first part of the command. This value will over-write the value in the ToS precedence field of the packet.
OBJECT-TYPE    
  INTEGER 0..7  

swACLIpv6RuleVID 1.3.6.1.4.1.171.12.9.3.4.1.19
Specifies this rule only applies to the specified VLAN. There are two conditions: 1.only the portlist that belongs to this VLAN will be included; 2.packets must belong to this VLAN. This object and swACLIpv6RulePort can not be set together. When you set swACLIpv6RulePort, the value of this object will automatically change to 0. And this object can not be set 0.
OBJECT-TYPE    
  INTEGER 0..4094  

swACLIpv6RuleProtocol 1.3.6.1.4.1.171.12.9.3.4.1.20
Specifies the IPv6 protocol. For some older chips, this object can not be set. When getting this object, it always returns the type which has been configured in swACLIpv6Entry. For some newer chips, this object can only set the type which has been configured in swACLIpv6Entry. The default value is none (1).
OBJECT-TYPE    
  INTEGER none(1), tcp(2), udp(3)  

swACLIpv6RuleSrcPort 1.3.6.1.4.1.171.12.9.3.4.1.21
Specifies that the rule applies to the range of the TCP/UDP source ports.
OBJECT-TYPE    
  INTEGER 0..65535  

swACLIpv6RuleDstPort 1.3.6.1.4.1.171.12.9.3.4.1.22
Specifies the TCP/UDP destination ports range.
OBJECT-TYPE    
  INTEGER 0..65535  

swIBPACLEtherRuleTable 1.3.6.1.4.1.171.12.9.3.5
This table contains IP-MAC-Binding Ethernet ACL Rule information.
OBJECT-TYPE    
  SEQUENCE OF  
    SwIBPACLEtherRuleEntry

swIBPACLEtherRuleEntry 1.3.6.1.4.1.171.12.9.3.5.1
A list of information about the ACL rule of the layer 2 part of each packet.
OBJECT-TYPE    
  SwIBPACLEtherRuleEntry  

swIBPACLEtherRuleProfileID 1.3.6.1.4.1.171.12.9.3.5.1.1
The ID of the ACL mask entry, unique in the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swIBPACLEtherRuleAccessID 1.3.6.1.4.1.171.12.9.3.5.1.2
The ID of the ACL rule entry in relation to swACLEtherRuleProfileID. When row creation is set to 0, this indicates automatically assigning an Access for the ports in the swACLEtherRulePort to create rule entries for swACLEtherRulePort accordingly. Set to 1-65535 indicates to create the exact access ID for the swACLEtherRulePort and the swACLEtherRulePort must set one port only, otherwise the row creation will fail.
OBJECT-TYPE    
  INTEGER 0..65535  

swIBPACLEtherRuleEtherType 1.3.6.1.4.1.171.12.9.3.5.1.3
Specifies that the access rule will apply only to packets with this 802.1Q Ethernet type value in the packet header.
OBJECT-TYPE    
  STRING Size(2)  

swIBPACLEtherRulePermit 1.3.6.1.4.1.171.12.9.3.5.1.4
This object indicates if the result of the examination is 'permit' or 'deny'. The default is 'permit' (1). permit - Specifies that packets that match the access profile are permitted to be forwarded by the switch. deny - Specifies that packets that match the access profile are not permitted to be forwarded by the switch and will be filtered.
OBJECT-TYPE    
  INTEGER deny(1), permit(2)  

swIBPACLEtherRulePort 1.3.6.1.4.1.171.12.9.3.5.1.5
Specifies that the access rule will only apply to port(s).
OBJECT-TYPE    
  PortList  

swIBPACLIpRuleTable 1.3.6.1.4.1.171.12.9.3.6
Tok_String
OBJECT-TYPE    
  SEQUENCE OF  
    SwIBPACLIpRuleEntry

swIBPACLIpRuleEntry 1.3.6.1.4.1.171.12.9.3.6.1
Tok_String
OBJECT-TYPE    
  SwIBPACLIpRuleEntry  

swIBPACLIpRuleProfileID 1.3.6.1.4.1.171.12.9.3.6.1.1
The ID of the ACL mask entry, unique in the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swIBPACLIpRuleAccessID 1.3.6.1.4.1.171.12.9.3.6.1.2
The ID of the ACL rule entry in relation to swACLIPRuleProfileID. When the row creation is set to 0, this indicates assigning an access ID automatically for the ports in the swACLIpRulePort to create rule entries for swACLIpRulePort accordingly. Set to 1-65535 indicates to create the exact access ID for the swACLIpRulePort and the swACLIpRulePort must be set for one port only, otherwise the row creation will fail.
OBJECT-TYPE    
  INTEGER 0..65535  

swIBPACLIpRuleSrcMacAddress 1.3.6.1.4.1.171.12.9.3.6.1.3
Specifies that the access rule will apply to only packets with this source MAC address.
OBJECT-TYPE    
  MacAddress  

swIBPACLIpRuleSrcIpaddress 1.3.6.1.4.1.171.12.9.3.6.1.4
Specifies an IP source address.
OBJECT-TYPE    
  IpAddress  

swIBPACLIpRulePermit 1.3.6.1.4.1.171.12.9.3.6.1.5
This object indicates if the result of the examination is 'permit' or 'deny'; the default is 'permit' (1) permit - Specifies that packets that match the access profile are permitted to be forwarded by the switch. deny - Specifies that packets that match the access profile are not permitted to be forwarded by the switch and will be filtered.
OBJECT-TYPE    
  INTEGER deny(1), permit(2)  

swIBPACLIpRulePort 1.3.6.1.4.1.171.12.9.3.6.1.6
Specifies that the access rule will only apply to port(s).
OBJECT-TYPE    
  PortList  

swACLCounterTable 1.3.6.1.4.1.171.12.9.3.8
This table maintains counter information associated with a specific rule in the ACL rule table. Please refer to the swACLEtherRuleTable, swACLIpRuleTable, swACLIpv6RuleTable and swACLPktContRuleTable for detailed ACL rule information.
OBJECT-TYPE    
  SEQUENCE OF  
    SwACLCounterEntry

swACLCounterEntry 1.3.6.1.4.1.171.12.9.3.8.1
The entry maintains counter information associated with the ACL rule table.
OBJECT-TYPE    
  SwACLCounterEntry  

swACLCounterProfileID 1.3.6.1.4.1.171.12.9.3.8.1.1
The ID of the ACL mask entry, which is unique in the mask list.
OBJECT-TYPE    
  INTEGER  

swACLCounterAccessID 1.3.6.1.4.1.171.12.9.3.8.1.2
The ID of the ACL rule entry as related to the swACLCounterProfileID.
OBJECT-TYPE    
  INTEGER 1..65535  

swACLCounterState 1.3.6.1.4.1.171.12.9.3.8.1.3
Specifies whether the counter feature will be enabled/disabled. 1. This is optional. The default is disable. 2. If the rule is not bound with flow_meter, then all packets that match will be counted. If the rule is bound with flow_meter, then the 'counter' will be overridden.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLCounterTotalCounter 1.3.6.1.4.1.171.12.9.3.8.1.4
The number of matched packets.
OBJECT-TYPE    
  Counter64  

swACLCounterGreenCounter 1.3.6.1.4.1.171.12.9.3.8.1.5
The number of matched green packets.
OBJECT-TYPE    
  Counter64  

swACLCounterYellowCounter 1.3.6.1.4.1.171.12.9.3.8.1.6
The number of matched yellow packets.
OBJECT-TYPE    
  Counter64  

swACLCounterRedCounter 1.3.6.1.4.1.171.12.9.3.8.1.7
The number of matched red packets.
OBJECT-TYPE    
  Counter64  

swACLPktContRuleVarOffsetTable 1.3.6.1.4.1.171.12.9.3.9
This table is used to configure ACL user defined packet content rules for devices that support limited selection of packet content.
OBJECT-TYPE    
  SEQUENCE OF  
    SwACLPktContRuleVarOffsetEntry

swACLPktContRuleVarOffsetEntry 1.3.6.1.4.1.171.12.9.3.9.1
A list which contains information on the ACL rules for user-defined parts of a packet.
OBJECT-TYPE    
  SwACLPktContRuleVarOffsetEntry  

swACLPktContRuleVarOffsetProfileID 1.3.6.1.4.1.171.12.9.3.9.1.1
The ID of ACL mask entry, which is unique to the mask list.
OBJECT-TYPE    
  INTEGER 1..256  

swACLPktContRuleVarOffsetAccessID 1.3.6.1.4.1.171.12.9.3.9.1.2
The ID of ACL rule entry related to swACLPktContRuleVarOffsetProfileID.
OBJECT-TYPE    
  INTEGER 1..65535  

swACLPktContRuleVarOffsetOffsetIndex1 1.3.6.1.4.1.171.12.9.3.9.1.8
Specifies the first offset will apply in getting the mask for this rule.
OBJECT-TYPE    
  INTEGER 0..76  

swACLPktContRuleVarOffsetMask1 1.3.6.1.4.1.171.12.9.3.9.1.9
Display the mask for this rule. This mask corresponds to swACLPktContRuleVarOffsetOffsetIndex1 and swACLPktContRuleVarOffsetData1.
OBJECT-TYPE    
  STRING Size(4)  

swACLPktContRuleVarOffsetData1 1.3.6.1.4.1.171.12.9.3.9.1.10
Specifies the data for this rule. This rule relates to swACLPktContRuleVarOffsetOffsetIndex1 and swACLPktContRuleVarOffsetMask1.
OBJECT-TYPE    
  STRING Size(4)  

swACLPktContRuleVarOffsetOffsetIndex2 1.3.6.1.4.1.171.12.9.3.9.1.11
Specifies the second offset will apply in getting the mask for this rule.
OBJECT-TYPE    
  INTEGER 0..76  

swACLPktContRuleVarOffsetMask2 1.3.6.1.4.1.171.12.9.3.9.1.12
Display the mask for this rule. This mask corresponds to swACLPktContRuleVarOffsetOffsetIndex2 and swACLPktContRuleVarOffsetData2.
OBJECT-TYPE    
  STRING Size(4)  

swACLPktContRuleVarOffsetData2 1.3.6.1.4.1.171.12.9.3.9.1.13
Specifies the data for this rule. This rule relates to swACLPktContRuleVarOffsetOffsetIndex2 and swACLPktContRuleVarOffsetMask2.
OBJECT-TYPE    
  STRING Size(4)  

swACLPktContRuleVarOffsetOffsetIndex3 1.3.6.1.4.1.171.12.9.3.9.1.14
Specifies the third offset will apply in getting the mask for this rule.
OBJECT-TYPE    
  INTEGER 0..76  

swACLPktContRuleVarOffsetMask3 1.3.6.1.4.1.171.12.9.3.9.1.15
Display the mask for this rule. This mask corresponds to swACLPktContRuleVarOffsetOffsetIndex3 and swACLPktContRuleVarOffsetData3.
OBJECT-TYPE    
  STRING Size(4)  

swACLPktContRuleVarOffsetData3 1.3.6.1.4.1.171.12.9.3.9.1.16
Specifies the data for this rule. This rule relates to swACLPktContRuleVarOffsetOffsetIndex3 and swACLPktContRuleVarOffsetMask3.
OBJECT-TYPE    
  STRING Size(4)  

swACLPktContRuleVarOffsetOffsetIndex4 1.3.6.1.4.1.171.12.9.3.9.1.17
Specifies the fourth offset will apply in getting the mask for this rule.
OBJECT-TYPE    
  INTEGER 0..76  

swACLPktContRuleVarOffsetMask4 1.3.6.1.4.1.171.12.9.3.9.1.18
Display the mask for this rule. This mask corresponds to swACLPktContRuleVarOffsetOffsetIndex4 and swACLPktContRuleVarOffsetData4.
OBJECT-TYPE    
  STRING Size(4)  

swACLPktContRuleVarOffsetData4 1.3.6.1.4.1.171.12.9.3.9.1.19
Specifies the data for this rule. This rule relates to swACLPktContRuleVarOffsetOffsetIndex4 and swACLPktContRuleVarOffsetMask4.
OBJECT-TYPE    
  STRING Size(4)  

swACLPktContRuleVarOffsetOffsetIndex5 1.3.6.1.4.1.171.12.9.3.9.1.20
Specifies the fifth offset will apply in getting the mask for this rule.
OBJECT-TYPE    
  INTEGER 0..76  

swACLPktContRuleVarOffsetMask5 1.3.6.1.4.1.171.12.9.3.9.1.21
Display the mask for this rule. This mask corresponds to swACLPktContRuleVarOffsetOffsetIndex5 and swACLPktContRuleVarOffsetData5.
OBJECT-TYPE    
  STRING Size(4)  

swACLPktContRuleVarOffsetData5 1.3.6.1.4.1.171.12.9.3.9.1.22
Specifies the data for this rule. This rule relates to swACLPktContRuleVarOffsetOffsetIndex5 and swACLPktContRuleVarOffsetMask5.
OBJECT-TYPE    
  STRING Size(4)  

swACLPktContRuleVarOffsetEnablePriority 1.3.6.1.4.1.171.12.9.3.9.1.23
Specifies that the access rule will apply only to packets with this priority value.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLPktContRuleVarOffsetPriority 1.3.6.1.4.1.171.12.9.3.9.1.24
Specifies the priority will change to the packets.
OBJECT-TYPE    
  INTEGER 0..7  

swACLPktContRuleVarOffsetReplacePriority 1.3.6.1.4.1.171.12.9.3.9.1.25
Specifies if the switch will change priorities of packets that match the access profile 802.1p priority tag or not .
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swACLPktContRuleVarOffsetRxRate 1.3.6.1.4.1.171.12.9.3.9.1.28
Specifies that the access rule will apply an RX rate. 0 denotes no limit.
OBJECT-TYPE    
  INTEGER 64..1024000  

swACLPktContRuleVarOffsetPermit 1.3.6.1.4.1.171.12.9.3.9.1.29
This object indicates the result of the packet examination is to permit or deny. The default is permit. permit - Specifies that packets that match the access profile are permitted to be forwarded by the switch. deny - Specifies that packets that do not match the access profile are not permitted to be forwarded by the switch and will be filtered.
OBJECT-TYPE    
  INTEGER deny(1), permit(2)  

swACLPktContRuleVarOffsetPort 1.3.6.1.4.1.171.12.9.3.9.1.30
Specifies that the access rule will apply only to port(s).
OBJECT-TYPE    
  PortList  

swACLPktContRuleVarOffsetRowStatus 1.3.6.1.4.1.171.12.9.3.9.1.33
This object indicates the status of this entry.
OBJECT-TYPE    
  RowStatus  

swACLPktContRuleVarOffsetReplacePriorityWith 1.3.6.1.4.1.171.12.9.3.9.1.34
The value of this node will be used to replace the 802.1p priority tag of the packet that matched the access profile.
OBJECT-TYPE    
  INTEGER 0..7  

swCpuAclEthernetTable 1.3.6.1.4.1.171.12.9.4.1
This table contains software ACL mask Ethernet information. Access profiles will be created on the switch to define which part of each incoming frame's layer 2 header will be examined by the switch. Masks entered will be combined with the values the switch finds in the specified frame header fields.
OBJECT-TYPE    
  SEQUENCE OF  
    SwCpuAclEthernetEntry

swCpuAclEthernetEntry 1.3.6.1.4.1.171.12.9.4.1.1
A list of information about Ethernet ACL masks.
OBJECT-TYPE    
  SwCpuAclEthernetEntry  

swCpuAclEthernetProfileID 1.3.6.1.4.1.171.12.9.4.1.1.1
The ID of the software ACL mask entry, which is unique to the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swCpuAclEthernetUsevlan 1.3.6.1.4.1.171.12.9.4.1.1.2
Specifies that the switch will examine the VLAN part of each packet header.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swCpuAclEthernetMacAddrMaskState 1.3.6.1.4.1.171.12.9.4.1.1.3
This object indicates the status of the MAC address mask. other (1) - Neither source MAC addresses nor destination MAC addresses are masked. dst-mac-addr (2) - Destination MAC addresses within received frames are to be filtered when matched with the MAC address entry of the table. src-mac-addr (3) - Source MAC address within received frames are to be filtered when matched with the MAC address entry of the table. dst-src-mac-addr (4) - Source or destination MAC addresses within received frames are to be filtered when matched with the MAC address entry of this table.
OBJECT-TYPE    
  INTEGER other(1), dst-mac-addr(2), src-mac-addr(3), dst-src-mac-addr(4)  

swCpuAclEthernetSrcMacAddrMask 1.3.6.1.4.1.171.12.9.4.1.1.4
This object specifies the MAC address mask for the source MAC address.
OBJECT-TYPE    
  MacAddress  

swCpuAclEthernetDstMacAddrMask 1.3.6.1.4.1.171.12.9.4.1.1.5
This object specifies the MAC address mask for the destination MAC address.
OBJECT-TYPE    
  MacAddress  

swCpuAclEthernetUse8021p 1.3.6.1.4.1.171.12.9.4.1.1.6
Specifies if the switch will examine the 802.1p priority value in the frame's header or not.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swCpuAclEthernetUseEthernetType 1.3.6.1.4.1.171.12.9.4.1.1.7
Specifies if the switch will examine the Ethernet type value in each frame's header or not.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swCpuAclEthernetRowStatus 1.3.6.1.4.1.171.12.9.4.1.1.8
This object indicates the status of this entry.
OBJECT-TYPE    
  RowStatus  

swCpuAclIpTable 1.3.6.1.4.1.171.12.9.4.2
This table contains software ACL mask IP information. Access profiles will be created on the switch to define which parts of each incoming frame's IP layer 2 header will be examined by the switch. Masks entered will be combined with the values the switch finds in the specified frame header fields.
OBJECT-TYPE    
  SEQUENCE OF  
    SwCpuAclIpEntry

swCpuAclIpEntry 1.3.6.1.4.1.171.12.9.4.2.1
A list of information about the software ACL of the IP Layer.
OBJECT-TYPE    
  SwCpuAclIpEntry  

swCpuAclIpProfileID 1.3.6.1.4.1.171.12.9.4.2.1.1
The ID of the software ACL mask entry, which is unique to the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swCpuAclIpUsevlan 1.3.6.1.4.1.171.12.9.4.2.1.2
This object indicates if the IP layer VLAN part is examined or not.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swCpuAclIpIpAddrMaskState 1.3.6.1.4.1.171.12.9.4.2.1.3
This object indicates the status of IP address mask. other (1) - Neither source IP addresses nor destination IP address are masked. dst-ip-addr (2) - Destination IP addresses within received frames are to be filtered when matched with the IP address entry of this table. src-ip-addr (3) - Source IP addresses within received frames are to be filtered when matched with the IP address entry of this table. dst-src-ip-addr (4) - Destination or source IP addresses within received frames are to be filtered when matched with the IP address entry of the table.
OBJECT-TYPE    
  INTEGER other(1), dst-ip-addr(2), src-ip-addr(3), dst-src-ip-addr(4)  

swCpuAclIpSrcIpAddrMask 1.3.6.1.4.1.171.12.9.4.2.1.4
This object specifies the IP address mask for the source IP address.
OBJECT-TYPE    
  IpAddress  

swCpuAclIpDstIpAddrMask 1.3.6.1.4.1.171.12.9.4.2.1.5
This object specifies the IP address mask for the destination IP address.
OBJECT-TYPE    
  IpAddress  

swCpuAclIpUseDSCP 1.3.6.1.4.1.171.12.9.4.2.1.6
This object indicates if the DSCP protocol in the packet header is to be examined or not.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swCpuAclIpUseProtoType 1.3.6.1.4.1.171.12.9.4.2.1.7
This object indicates which protocol will be examined.
OBJECT-TYPE    
  INTEGER none(1), icmp(2), igmp(3), tcp(4), udp(5), protocolId(6)  

swCpuAclIpIcmpOption 1.3.6.1.4.1.171.12.9.4.2.1.8
This object indicates which fields are identified for ICMP. none (1)- Both fields are null. type (2)- Type field identified. code (3)- Code field identified. type-code (4)- Both ICMP fields identified.
OBJECT-TYPE    
  INTEGER none(1), type(2), code(3), type-code(4)  

swCpuAclIpIgmpOption 1.3.6.1.4.1.171.12.9.4.2.1.9
This object indicates if the IGMP options field is identified or not.
OBJECT-TYPE    
  INTEGER enable(1), disable(2)  

swCpuAclIpTcpOption 1.3.6.1.4.1.171.12.9.4.2.1.10
This object indicates the status of filtered addresses of TCP. other (1) - Neither source port nor destination port are masked. dst-addr (2) - Packets will be filtered if this destination port is identified in received frames. src-addr (3) - Packets will be filtered if this source port is identified in received frames. dst-src-addr (4) - Packets will be filtered is this destination or source port is identified in received frames.
OBJECT-TYPE    
  INTEGER other(1), dst-addr(2), src-addr(3), dst-src-addr(4)  

swCpuAclIpUdpOption 1.3.6.1.4.1.171.12.9.4.2.1.11
This object indicates the status of filtered addresses of UDP. other (1) - Neither source port nor destination port are masked. dst-addr (2) - Packets will be filtered if this destination port is identified in received frames. src-addr (3) - Packets will be filtered if this source port is identified in received frames. dst-src-addr (4) - Packets will be filtered if this destination or source port is identified in received frames.
OBJECT-TYPE    
  INTEGER other(1), dst-addr(2), src-addr(3), dst-src-addr(4)  

swCpuAclIpTCPorUDPSrcPortMask 1.3.6.1.4.1.171.12.9.4.2.1.12
Specifies a TCP port mask for the source port if swCpuAclIpUseProtoType is TCP. Specifies a UDP port mask for the source port if swCpuAclIpUseProtoType is UDP.
OBJECT-TYPE    
  STRING Size(2)  

swCpuAclIpTCPorUDPDstPortMask 1.3.6.1.4.1.171.12.9.4.2.1.13
Specifies a TCP port mask for the destination port if swCpuAclIpUseProtoType is TCP. Specifies a UDP port mask for the destination port if swCpuAclIpUseProtoType is UDP.
OBJECT-TYPE    
  STRING Size(2)  

swCpuAclIpTCPFlagBit 1.3.6.1.4.1.171.12.9.4.2.1.14
Specifies a TCP connection flag mask.
OBJECT-TYPE    
  INTEGER enable(1), disable(2)  

swCpuAclIpTCPFlagBitMask 1.3.6.1.4.1.171.12.9.4.2.1.15
A value which indicates the set of TCP flags that this entity may potentially offer. The value is a sum of flag bits. This sum initially takes the value zero. Then, for each flag, L is added in the range 1 through 6, for which this node performs transactions where 2^(L - 1) is added to the sum. Note that values should be calculated accordingly: Flag functionality 6 urg bit 5 ack bit 4 psh bit 3 rst bit 2 syn bit 1 fin bit For example, if you want to enable urg bit and ack bit, you should set value 48{2^(5-1) + 2^(6-1)}.
OBJECT-TYPE    
  INTEGER 0..63  

swCpuAclIpProtoIDOption 1.3.6.1.4.1.171.12.9.4.2.1.16
Specifies if the switch will examine each frame's Protocol ID field or not.
OBJECT-TYPE    
  INTEGER enable(1), disable(2)  

swCpuAclIpProtoID 1.3.6.1.4.1.171.12.9.4.2.1.17
Tok_String
OBJECT-TYPE    
  INTEGER 0..255  

swCpuAclIpProtoIDMask 1.3.6.1.4.1.171.12.9.4.2.1.18
Specifies that the rule applies to the IP protocol ID and the mask options behind the IP header.
OBJECT-TYPE    
  STRING Size(20)  

swCpuAclIpRowStatus 1.3.6.1.4.1.171.12.9.4.2.1.19
This object indicates the status of this entry.
OBJECT-TYPE    
  RowStatus  

swCpuAclPktContMaskTable 1.3.6.1.4.1.171.12.9.4.3
This table contains user-defined software ACL information. Access profiles will be created on the switch to define which part of each incoming frame's user-defined part of the packet header will be examined by the switch. Masks entered will be combined with the values the switch finds in the specified frame header fields.
OBJECT-TYPE    
  SEQUENCE OF  
    SwCpuAclPktContMaskEntry

swCpuAclPktContMaskEntry 1.3.6.1.4.1.171.12.9.4.3.1
A list of information about user-defined software ACLs.
OBJECT-TYPE    
  SwCpuAclPktContMaskEntry  

swCpuAclPktContMaskProfileID 1.3.6.1.4.1.171.12.9.4.3.1.1
The ID of the software ACL mask entry, which is unique to the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swCpuAclPktContMaskOffset0to15 1.3.6.1.4.1.171.12.9.4.3.1.2
Specifies that the rule applies to the packet content (Offset0to15) and the mask options.
OBJECT-TYPE    
  STRING Size(16)  

swCpuAclPktContMaskOffset16to31 1.3.6.1.4.1.171.12.9.4.3.1.3
Specifies that the rule applies to the packet content (Offset16to31) and the mask options.
OBJECT-TYPE    
  STRING Size(16)  

swCpuAclPktContMaskOffset32to47 1.3.6.1.4.1.171.12.9.4.3.1.4
Specifies that the rule applies to the packet content (Offset32to47) and the mask options.
OBJECT-TYPE    
  STRING Size(16)  

swCpuAclPktContMaskOffset48to63 1.3.6.1.4.1.171.12.9.4.3.1.5
Specifies that the rule applies to the packet content (Offset48to63) and the mask options.
OBJECT-TYPE    
  STRING Size(16)  

swCpuAclPktContMaskOffset64to79 1.3.6.1.4.1.171.12.9.4.3.1.6
Specifies that the rule applies to the packet content (Offset64to79) and the mask options.
OBJECT-TYPE    
  STRING Size(16)  

swCpuAclPktContMaskRowStatus 1.3.6.1.4.1.171.12.9.4.3.1.7
This object indicates the status of this entry.
OBJECT-TYPE    
  RowStatus  

swCpuAclIpv6MaskTable 1.3.6.1.4.1.171.12.9.4.4
This table contains IPv6 software ACL mask information. An access profile will be created on the switch to define which part of each incoming frame's IPv6 part of the packet header will be examined by switch. Masks entered will be combined with the values the switch finds in the specified frame header fields.
OBJECT-TYPE    
  SEQUENCE OF  
    SwCpuAclIpv6MaskEntry

swCpuAclIpv6MaskEntry 1.3.6.1.4.1.171.12.9.4.4.1
A list of information about user-defined software ACLs.
OBJECT-TYPE    
  SwCpuAclIpv6MaskEntry  

swCpuAclIpv6MaskProfileID 1.3.6.1.4.1.171.12.9.4.4.1.1
The ID of the software ACL mask entry, which is unique to the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swCpuAclIpv6MaskClass 1.3.6.1.4.1.171.12.9.4.4.1.2
Specifies that the rule applies to the IPv6 class field and the mask options.
OBJECT-TYPE    
  INTEGER enable(1), disable(2)  

swCpuAclIpv6MaskFlowlabel 1.3.6.1.4.1.171.12.9.4.4.1.3
Specifies that the rule applies to the IPv6 flowlabel field and the mask options.
OBJECT-TYPE    
  INTEGER enable(1), disable(2)  

swCpuAclIpv6IpAddrMaskState 1.3.6.1.4.1.171.12.9.4.4.1.4
This object indicates the status of IPv6 address mask. other (1) - Neither source IPv6 address nor destination IPv6 address are masked. dst-ipv6-addr (2) - Packets will be filtered if this destination IPv6 address is identified as a match in received frames. src-ipv6-addr (3) - Packets will be filtered if this source IPv6 address is identified as a match in received frames. dst-src-ipv6-addr (4) - Packets will be filtered if this destination or source IPv6 address is identified as a match in received frames.
OBJECT-TYPE    
  INTEGER other(1), dst-ipv6-addr(2), src-ipv6-addr(3), dst-src-ipv6-addr(4)  

swCpuAclIpv6MaskSrcIpv6Mask 1.3.6.1.4.1.171.12.9.4.4.1.5
Specifies that the rule applies to the source IPv6 address and the mask options. This should be a 16 byte octet string.
OBJECT-TYPE    
  Ipv6Address  

swCpuAclIpv6MaskDstIpv6Mask 1.3.6.1.4.1.171.12.9.4.4.1.6
Specifies that the rule applies to the destination IPv6 address and the mask options. This should be a 16 byte octet string.
OBJECT-TYPE    
  Ipv6Address  

swCpuAclIpv6MaskRowStatus 1.3.6.1.4.1.171.12.9.4.4.1.7
This object indicates the status of this entry.
OBJECT-TYPE    
  RowStatus  

swCpuACLMaskDelAllState 1.3.6.1.4.1.171.12.9.4.5
Used to delete all software ACL masks.
OBJECT-TYPE    
  INTEGER none(1), start(2)  

swCpuAclEtherRuleTable 1.3.6.1.4.1.171.12.9.5.1
This table contains Ethernet software ACL rule information.
OBJECT-TYPE    
  SEQUENCE OF  
    SwCpuAclEtherRuleEntry

swCpuAclEtherRuleEntry 1.3.6.1.4.1.171.12.9.5.1.1
A list of information about the software ACL rule of the layer 2 part of each packet.
OBJECT-TYPE    
  SwCpuAclEtherRuleEntry  

swCpuAclEtherRuleProfileID 1.3.6.1.4.1.171.12.9.5.1.1.1
The ID of the software ACL mask entry, which is unique to the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swCpuAclEtherRuleAccessID 1.3.6.1.4.1.171.12.9.5.1.1.2
The ID of the software ACL rule entry as it relates to swCpuAclEtherRuleProfileID.
OBJECT-TYPE    
  INTEGER 1..65535  

swCpuAclEtherRuleVlan 1.3.6.1.4.1.171.12.9.5.1.1.3
Specifies that the access rule will only apply to this VLAN.
OBJECT-TYPE    
  SnmpAdminString Size(1..32)  

swCpuAclEtherRuleSrcMacAddress 1.3.6.1.4.1.171.12.9.5.1.1.4
Specifies that the access rule will only apply to the packets with this source MAC address.
OBJECT-TYPE    
  MacAddress  

swCpuAclEtherRuleDstMacAddress 1.3.6.1.4.1.171.12.9.5.1.1.5
Specifies that the access rule will only apply to the packets with this destination MAC address.
OBJECT-TYPE    
  MacAddress  

swCpuAclEtherRule8021P 1.3.6.1.4.1.171.12.9.5.1.1.6
Specifies that the access rule will only apply to packets with this 802.1p priority value. A value of -1 indicates that this node is not actively used.
OBJECT-TYPE    
  INTEGER -1..7  

swCpuAclEtherRuleEtherType 1.3.6.1.4.1.171.12.9.5.1.1.7
Specifies that the access rule will only apply to packets with this 802.1Q Ethernet type value in the packet header.
OBJECT-TYPE    
  STRING Size(2)  

swCpuAclEtherRulePermit 1.3.6.1.4.1.171.12.9.5.1.1.8
This object indicates if the result of the packet examination is to 'permit' or 'deny'. The default is 'permit'. permit - Specifies that packets that match the access profile are permitted to be forwarded by the switch. deny - Specifies that packets that match the access profile are not permitted to be forwarded by the switch and will be filtered.
OBJECT-TYPE    
  INTEGER deny(1), permit(2)  

swCpuAclEtherRuleRowStatus 1.3.6.1.4.1.171.12.9.5.1.1.9
This object indicates the status of this entry.
OBJECT-TYPE    
  RowStatus  

swCpuAclEtherRulePort 1.3.6.1.4.1.171.12.9.5.1.1.10
Specifies that the access rule will only apply to port(s).
OBJECT-TYPE    
  PortList  

swCpuAclIpRuleTable 1.3.6.1.4.1.171.12.9.5.2
This table contains IPv4 software ACL rule information.
OBJECT-TYPE    
  SEQUENCE OF  
    SwCpuAclIpRuleEntry

swCpuAclIpRuleEntry 1.3.6.1.4.1.171.12.9.5.2.1
A list of information about this software ACL rule.
OBJECT-TYPE    
  SwCpuAclIpRuleEntry  

swCpuAclIpRuleProfileID 1.3.6.1.4.1.171.12.9.5.2.1.1
The ID of the software ACL mask entry, which is unique to the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swCpuAclIpRuleAccessID 1.3.6.1.4.1.171.12.9.5.2.1.2
The ID of the software ACL for the IPv4 rule entry.
OBJECT-TYPE    
  INTEGER 1..65535  

swCpuAclIpRuleVlan 1.3.6.1.4.1.171.12.9.5.2.1.3
Specifies that the access rule will apply only to this VLAN.
OBJECT-TYPE    
  SnmpAdminString Size(1..32)  

swCpuAclIpRuleSrcIpaddress 1.3.6.1.4.1.171.12.9.5.2.1.4
Specifies an IP source address.
OBJECT-TYPE    
  IpAddress  

swCpuAclIpRuleDstIpaddress 1.3.6.1.4.1.171.12.9.5.2.1.5
Specifies an IP destination address.
OBJECT-TYPE    
  IpAddress  

swCpuAclIpRuleDscp 1.3.6.1.4.1.171.12.9.5.2.1.6
Specifies the value of DSCP, the value can be configured from 0 to 63. A value of -1 indicates that this node is not actively used.
OBJECT-TYPE    
  INTEGER -1..63  

swCpuAclIpRuleProtocol 1.3.6.1.4.1.171.12.9.5.2.1.7
Specifies the IP protocol which has been configured in swCpuAclIpEntry.
OBJECT-TYPE    
  INTEGER none(1), icmp(2), igmp(3), tcp(4), udp(5), protocolId(6)  

swCpuAclIpRuleType 1.3.6.1.4.1.171.12.9.5.2.1.8
Specifies the rule applies to the value of ICMP type traffic. A value of -1 indicates that this node is not actively used.
OBJECT-TYPE    
  INTEGER -1..255  

swCpuAclIpRuleCode 1.3.6.1.4.1.171.12.9.5.2.1.9
Specifies the rule applies to the value of ICMP code traffic. A value of -1 indicates that this node is not actively used.
OBJECT-TYPE    
  INTEGER -1..255  

swCpuAclIpRuleSrcPort 1.3.6.1.4.1.171.12.9.5.2.1.10
Specifies the rule applies to the range of TCP/UDP source ports. A value of -1 indicates that this node is not actively used.
OBJECT-TYPE    
  INTEGER -1..65535  

swCpuAclIpRuleDstPort 1.3.6.1.4.1.171.12.9.5.2.1.11
Specifies the range of TCP/UDP destination ports. A value of -1 indicates that this node is not actively used.
OBJECT-TYPE    
  INTEGER -1..65535  

swCpuAclIpRuleFlagBits 1.3.6.1.4.1.171.12.9.5.2.1.12
A value which indicates the set of TCP flags that this entity may potentially offer. The value is a sum of flag bits. This sum initially takes the value zero. Then, for each flag, L is added in the range 1 through 6, for which this node performs transactions where, 2^(L - 1) is added to the sum. Note that values should be calculated accordingly: Flag functionality 6 urg bit 5 ack bit 4 psh bit 3 rst bit 2 syn bit 1 fin bit For example, it you want to enable urg bit and ack bit, you should set the value 48{2^(5-1) + 2^(6-1)}.
OBJECT-TYPE    
  INTEGER 0..63  

swCpuAclIpRuleProtoID 1.3.6.1.4.1.171.12.9.5.2.1.13
Specifies the rule applies to the value of IP protocol ID traffic. A value of -1 indicates that this node is not actively used.
OBJECT-TYPE    
  INTEGER -1..255  

swCpuAclIpRuleUserMask 1.3.6.1.4.1.171.12.9.5.2.1.14
Specifies that the rule applies to the IP protocol ID and the range of options behind the IP header.
OBJECT-TYPE    
  STRING Size(20)  

swCpuAclIpRulePermit 1.3.6.1.4.1.171.12.9.5.2.1.15
This object indicates if the result of the packet examination is to 'permit' or 'deny'. The default is 'permit'. permit - Specifies that packets that match the access profile are permitted to be forwarded by the switch. deny - Specifies that packets that match the access profile are not permitted to be forwarded by the switch and will be filtered.
OBJECT-TYPE    
  INTEGER deny(1), permit(2)  

swCpuAclIpRuleRowStatus 1.3.6.1.4.1.171.12.9.5.2.1.16
This object indicates the status of this entry.
OBJECT-TYPE    
  RowStatus  

swCpuAclIpRulePort 1.3.6.1.4.1.171.12.9.5.2.1.17
Specifies that the access rule will only apply to port(s).
OBJECT-TYPE    
  PortList  

swCpuAclPktContRuleTable 1.3.6.1.4.1.171.12.9.5.3
This table contains user-defined software ACL rule information.
OBJECT-TYPE    
  SEQUENCE OF  
    SwCpuAclPktContRuleEntry

swCpuAclPktContRuleEntry 1.3.6.1.4.1.171.12.9.5.3.1
A list of information about the software ACL rule of the user-defined part of each packet.
OBJECT-TYPE    
  SwCpuAclPktContRuleEntry  

swCpuAclPktContRuleProfileID 1.3.6.1.4.1.171.12.9.5.3.1.1
The ID of the software ACL mask entry, which is unique to the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swCpuAclPktContRuleAccessID 1.3.6.1.4.1.171.12.9.5.3.1.2
The ID of the software ACL rule entry related to swCpuAclPktContRuleProfileID.
OBJECT-TYPE    
  INTEGER 1..65535  

swCpuAclPktContRuleOffset0to15 1.3.6.1.4.1.171.12.9.5.3.1.3
Specifies that the rule applies to the user-defined packet.
OBJECT-TYPE    
  STRING Size(16)  

swCpuAclPktContRuleOffset16to31 1.3.6.1.4.1.171.12.9.5.3.1.4
Specifies that the rule applies to the user-defined packet.
OBJECT-TYPE    
  STRING Size(16)  

swCpuAclPktContRuleOffset32to47 1.3.6.1.4.1.171.12.9.5.3.1.5
Specifies that the rule applies to the user-defined packet.
OBJECT-TYPE    
  STRING Size(16)  

swCpuAclPktContRuleOffset48to63 1.3.6.1.4.1.171.12.9.5.3.1.6
Specifies that the rule applies to the user-defined packet.
OBJECT-TYPE    
  STRING Size(16)  

swCpuAclPktContRuleOffset64to79 1.3.6.1.4.1.171.12.9.5.3.1.7
Specifies that the rule applies to the user-defined packet.
OBJECT-TYPE    
  STRING Size(16)  

swCpuAclPktContRulePermit 1.3.6.1.4.1.171.12.9.5.3.1.8
This object indicates if the result of the packet examination is to 'permit' or 'deny'. The default is 'permit'. permit - Specifies that packets that match the access profile are permitted to be forwarded by the switch. deny - Specifies that packets that match the access profile are not permitted to be forwarded by the switch and will be filtered.
OBJECT-TYPE    
  INTEGER deny(1), permit(2)  

swCpuAclPktContRuleRowStatus 1.3.6.1.4.1.171.12.9.5.3.1.9
This object indicates the status of this entry.
OBJECT-TYPE    
  RowStatus  

swCpuAclPktContRulePort 1.3.6.1.4.1.171.12.9.5.3.1.10
Specifies that the access rule will only apply to port(s).
OBJECT-TYPE    
  PortList  

swCpuAclIpv6RuleTable 1.3.6.1.4.1.171.12.9.5.4
This table contains user-defined ACL rule information.
OBJECT-TYPE    
  SEQUENCE OF  
    SwCpuAclIpv6RuleEntry

swCpuAclIpv6RuleEntry 1.3.6.1.4.1.171.12.9.5.4.1
A list of information about the ACL rule of the user-defined part of each packet.
OBJECT-TYPE    
  SwCpuAclIpv6RuleEntry  

swCpuAclIpv6RuleProfileID 1.3.6.1.4.1.171.12.9.5.4.1.1
The ID of the ACL mask entry. This is unique in the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swCpuAclIpv6RuleAccessID 1.3.6.1.4.1.171.12.9.5.4.1.2
The ID of the ACL rule entry in relation to swCpuAclIpv6RuleProfileID.
OBJECT-TYPE    
  INTEGER 1..65535  

swCpuAclIpv6RuleClass 1.3.6.1.4.1.171.12.9.5.4.1.3
Specifies that the rule applies to the IPv6 class field.
OBJECT-TYPE    
  INTEGER 0..255  

swCpuAclIpv6RuleFlowlabel 1.3.6.1.4.1.171.12.9.5.4.1.4
Specifies that the rule applies to the IPv6 flowlabel field.
OBJECT-TYPE    
  STRING Size(4)  

swCpuAclIpv6RuleSrcIpv6Addr 1.3.6.1.4.1.171.12.9.5.4.1.5
Specifies that the rule applies to the source IPv6 address. This should be a 16 byte octet string.
OBJECT-TYPE    
  Ipv6Address  

swCpuAclIpv6RuleDstIpv6Addr 1.3.6.1.4.1.171.12.9.5.4.1.6
Specifies that the rule applies to the destination IPv6 address. This should be a 16 byte octet string.
OBJECT-TYPE    
  Ipv6Address  

swCpuAclIpv6RulePermit 1.3.6.1.4.1.171.12.9.5.4.1.7
This object indicates if the result of the examination is to 'permit' or 'deny'. The default is 'permit' (1). permit - Specifies that packets that match the access profile are permitted to be forwarded by the switch. deny - Specifies that packets that match the access profile are not permitted to be forwarded by the switch and will be filtered.
OBJECT-TYPE    
  INTEGER deny(1), permit(2)  

swCpuAclIpv6RuleRowStatus 1.3.6.1.4.1.171.12.9.5.4.1.8
This object indicates the status of this entry.
OBJECT-TYPE    
  RowStatus  

swCpuAclIpv6RulePort 1.3.6.1.4.1.171.12.9.5.4.1.9
Specifies that the access rule will apply only to port(s).
OBJECT-TYPE    
  PortList  

swAclMeterTable 1.3.6.1.4.1.171.12.9.6.1
This table is used to configure the flow-based metering function. The access rule must first be created before the parameters of this function can be applied. Users may set the preferred bandwidth for this rule, in Kbps; once the bandwidth has been exceeded, overflow packets will be either dropped or set for a drop precedence, depending on user configuration.
OBJECT-TYPE    
  SEQUENCE OF  
    SwAclMeterEntry

swAclMeterEntry 1.3.6.1.4.1.171.12.9.6.1.1
This entry displays parameters and configurations set for the flow metering function.
OBJECT-TYPE    
  SwAclMeterEntry  

swAclMeterProfileID 1.3.6.1.4.1.171.12.9.6.1.1.1
The ID of the ACL mask entry is unique in the mask list. The maximum value of this object depends on the device.
OBJECT-TYPE    
  INTEGER  

swAclMeterAccessID 1.3.6.1.4.1.171.12.9.6.1.1.2
The ID of the ACL rule entry as related to the swAclMeterProfileID.
OBJECT-TYPE    
  INTEGER 1..65535  

swAclMeterRate 1.3.6.1.4.1.171.12.9.6.1.1.3
Specifies the committed bandwidth in Kbps for the flow. NOTE: 1. Specifying 0 will disable this flow meter setting. 2. Users must set the swAclMeterActionForRateExceed object to activate this entry.
OBJECT-TYPE    
  INTEGER  

swAclMeterActionForRateExceed 1.3.6.1.4.1.171.12.9.6.1.1.4
Specifies the action to take for those packets exceeding the committed rate. NOTE: Users must also set the swAclMeterRate to activate this entry.
OBJECT-TYPE    
  INTEGER other(1), drop-packet(2), set-drop-precedence(3), remark-dscp(4)  

swAclMeterRemarkDscp 1.3.6.1.4.1.171.12.9.6.1.1.5
Mark the packet with a specified DSCP. It can be set when swAclMeterActionForRateExceed sets remark-dscp (3).
OBJECT-TYPE    
  INTEGER 0..63  

swAclMeterBurstSize 1.3.6.1.4.1.171.12.9.6.1.1.6
This specifies the burst size for the single rate two color mode. The unit is Kbytes. That is to say, 1 means 1kbytes. The set value range is 0..n, the value n is determined by project, the value of 0 means to delete this flow_meter setting.
OBJECT-TYPE    
  INTEGER  

swAclMeterMode 1.3.6.1.4.1.171.12.9.6.1.1.7
tr-tcm: two rate three color mode; sr-tcm: single rate three color mode.
OBJECT-TYPE    
  INTEGER other(1), tr-tcm(2), sr-tcm(3)  

swAclMeterTrtcmCir 1.3.6.1.4.1.171.12.9.6.1.1.8
Specifies the 'committed information rate' of 'two rate three color mode'. The unit is Kbps.
OBJECT-TYPE    
  INTEGER 1..156249  

swAclMeterTrtcmCbs 1.3.6.1.4.1.171.12.9.6.1.1.9
Specifies the 'committed burst size' of 'two rate three color mode'. 1. The unit is Kbytes. That is to say, 1 means 1Kbytes. 2. This parameter is an optional parameter. The default value is 4*1024. 3. The max set value is 16*1024.
OBJECT-TYPE    
  INTEGER 1..16384  

swAclMeterTrtcmPir 1.3.6.1.4.1.171.12.9.6.1.1.10
Specifies the 'Peak Information Rate' of 'two rate three color mode'. The unit is Kbps.
OBJECT-TYPE    
  INTEGER 1..156249  

swAclMeterTrtcmPbs 1.3.6.1.4.1.171.12.9.6.1.1.11
Specifies the 'peak burst size' of 'two rate three color mode'. 1. The unit is Kbytes. That is to say, 1 means 1kbytes. 2. This parameter is an optional parameter. The default value is 4*1024. 3. The max set value is 16*1024.
OBJECT-TYPE    
  INTEGER 1..16384  

swAclMeterTrtcmColorMode 1.3.6.1.4.1.171.12.9.6.1.1.12
Specifies the meter mode. The default is color-blind mode. The final color of the packet is determined by the initial color of the packet and the metering result.
OBJECT-TYPE    
  INTEGER color-blind(1), color-aware(2)  

swAclMeterTrtcmConformState 1.3.6.1.4.1.171.12.9.6.1.1.13
Specifies the action state when packet is in 'green color'. permit: permit the packet. replace-dscp: change the DSCP value of packet.
OBJECT-TYPE    
  INTEGER other(1), permit(2), replace-dscp(3)  

swAclMeterTrtcmConformReplaceDscp 1.3.6.1.4.1.171.12.9.6.1.1.14
Specifies the DSCP value of the packet when the packet is in 'green color'.
OBJECT-TYPE    
  INTEGER 0..63  

swAclMeterTrtcmConformCounterState 1.3.6.1.4.1.171.12.9.6.1.1.15
Specifies the counter state when the packet is in 'green color'. 1. This is optional. The default is 'disable'. 2. The resource may be limited so that the counter can not be turned on. The limitation is project dependent. 3. counter will be cleared when the function is disabled.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swAclMeterTrtcmExceedState 1.3.6.1.4.1.171.12.9.6.1.1.16
Specifies the action state when packet is in 'yellow color'. permit: permit the packet. replace-dscp: change the DSCP value of the packet. drop: drop the packet.
OBJECT-TYPE    
  INTEGER other(1), permit(2), replace-dscp(3), drop(4)  

swAclMeterTrtcmExceedReplaceDscp 1.3.6.1.4.1.171.12.9.6.1.1.17
Specifies the DSCP value of packet when packet is in 'yellow color'.
OBJECT-TYPE    
  INTEGER 0..63  

swAclMeterTrtcmExceedCounterState 1.3.6.1.4.1.171.12.9.6.1.1.18
Specifies the counter state when packet is in 'yellow color'. 1. This is optional. The default is 'disable'. 2. The resource may be limited so that the counter can not be turned on. The limitation is project dependent. 3. counter will be cleared when the function is disabled.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swAclMeterTrtcmViolateState 1.3.6.1.4.1.171.12.9.6.1.1.19
Specifies the action state when packet is in 'red color'. permit: permit the packet. replace-dscp: change the DSCP value of packet. drop: drop the packet.
OBJECT-TYPE    
  INTEGER other(1), permit(2), replace-dscp(3), drop(4)  

swAclMeterTrtcmViolateReplaceDscp 1.3.6.1.4.1.171.12.9.6.1.1.20
Specifies the DSCP value of the packet when packet is in 'red color'.
OBJECT-TYPE    
  INTEGER 0..63  

swAclMeterTrtcmViolateCounterState 1.3.6.1.4.1.171.12.9.6.1.1.21
Specifies the counter state when packet is in 'red color'. 1. This is optional. The default is 'disable'. 2. The resource may be limited so that the counter can not be turned on. The limitation is project dependent. 3. counter will be cleared when the function is disabled.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swAclMeterSrtcmCir 1.3.6.1.4.1.171.12.9.6.1.1.22
Specifies the 'committed information rate' of 'single rate three color mode'. The unit is Kbps.
OBJECT-TYPE    
  INTEGER 1..156249  

swAclMeterSrtcmCbs 1.3.6.1.4.1.171.12.9.6.1.1.23
Specifies the 'committed burst size' of 'single rate three color mode'. 1. The unit is Kbytes. That is to say, 1 means 1Kbytes. 2. The max set value is 16*1024.
OBJECT-TYPE    
  INTEGER 1..16384  

swAclMeterSrtcmEbs 1.3.6.1.4.1.171.12.9.6.1.1.24
Specifies the 'Excess burst size' of 'single rate three color mode'. 1. The unit is Kbytes. That is to say, 1 means 1kbytes. 2. The max set value is 16*1024.
OBJECT-TYPE    
  INTEGER 1..16384  

swAclMeterSrtcmColorMode 1.3.6.1.4.1.171.12.9.6.1.1.25
Specifies the meter mode. The default is color-blind mode. The final color of packet is determined by the initial color of the packet and the metering result.
OBJECT-TYPE    
  INTEGER color-blind(1), color-aware(2)  

swAclMeterSrtcmConformState 1.3.6.1.4.1.171.12.9.6.1.1.26
Specifies the action state when the packet is in 'green color'. permit: permit the packet. replace-dscp: change the DSCP value of packet.
OBJECT-TYPE    
  INTEGER other(1), permit(2), replace-dscp(3)  

swAclMeterSrtcmConformReplaceDscp 1.3.6.1.4.1.171.12.9.6.1.1.27
Specifies the DSCP value of the packet when packet is in 'green color'.
OBJECT-TYPE    
  INTEGER 0..63  

swAclMeterSrtcmConformCounterState 1.3.6.1.4.1.171.12.9.6.1.1.28
Specifies the counter state when the packet is in 'green color'. 1. This is optional. The default is 'disable'. 2. The resource may be limited such that counter can not be turned on. The limitation is project dependent. 3. counter will be cleared when the function is disabled.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swAclMeterSrtcmExceedState 1.3.6.1.4.1.171.12.9.6.1.1.29
Specifies the action state when the packet is in 'yellow color'. permit: permit the packet. replace-dscp: change the DSCP value of packet. drop: drop the packet.
OBJECT-TYPE    
  INTEGER other(1), permit(2), replace-dscp(3), drop(4)  

swAclMeterSrtcmExceedReplaceDscp 1.3.6.1.4.1.171.12.9.6.1.1.30
Specifies the DSCP value of the packet when packet is in 'yellow color'.
OBJECT-TYPE    
  INTEGER 0..63  

swAclMeterSrtcmExceedCounterState 1.3.6.1.4.1.171.12.9.6.1.1.31
Specifies the counter state when the packet is in 'yellow color'. 1. This is optional. The default is 'disable'. 2. The resource may be limited such that counter can not be turned on. The limitation is project dependent. 3. counter will be cleared when the function is disabled.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swAclMeterSrtcmViolateState 1.3.6.1.4.1.171.12.9.6.1.1.32
Specifies the action state when the packet is in 'red color'. permit: permit the packet. replace-dscp: change the DSCP value of packet. drop: drop the packet.
OBJECT-TYPE    
  INTEGER other(1), permit(2), replace-dscp(3), drop(4)  

swAclMeterSrtcmViolateReplaceDscp 1.3.6.1.4.1.171.12.9.6.1.1.33
Specifies the DSCP value of the packet when packet is in 'red color'.
OBJECT-TYPE    
  INTEGER 0..63  

swAclMeterSrtcmViolateCounterState 1.3.6.1.4.1.171.12.9.6.1.1.34
Specifies the counter state when the packet is in 'red color'. 1. This is optional. The default is 'disable'. 2. The resource may be limited so that the counter can not be turned on. The limitation is project dependent. 3. counter will be cleared when the function is disabled.
OBJECT-TYPE    
  INTEGER enabled(1), disabled(2)  

swAclMeterRowStatus 1.3.6.1.4.1.171.12.9.6.1.1.35
This object indicates the status of this entry.
OBJECT-TYPE    
  RowStatus  

swAclMeteringNumOfEntryInUse 1.3.6.1.4.1.171.12.9.6.2
Used to display total entries of the flow metering.
OBJECT-TYPE    
  INTEGER