HPN-ICF-ACFP-MIB

File: HPN-ICF-ACFP-MIB.mib (38467 bytes)

Imported modules

SNMPv2-SMI SNMPv2-TC IPV6-TC
INET-ADDRESS-MIB HPN-ICF-OID-MIB

Imported symbols

IpAddress Integer32 OBJECT-TYPE
MODULE-IDENTITY NOTIFICATION-TYPE RowStatus
TruthValue MacAddress DisplayString
Ipv6Address InetAddressPrefixLength hpnicfCommon

Defined Types

HpnicfAcfpClientInfoEntry  
SEQUENCE    
  hpnicfAcfpClientID Integer32
  hpnicfAcfpClientDescription DisplayString
  hpnicfAcfpClientHwVersion DisplayString
  hpnicfAcfpClientOSVersion DisplayString
  hpnicfAcfpClientAppVersion DisplayString
  hpnicfAcfpClientIP IpAddress
  hpnicfAcfpClientMode BITS
  hpnicfAcfpClientRowStatus RowStatus

HpnicfAcfpPolicyEntry  
SEQUENCE    
  hpnicfAcfpPolicyIndex Integer32
  hpnicfAcfpPolicyInIfIndex Integer32
  hpnicfAcfpPolicyOutIfIndex Integer32
  hpnicfAcfpPolicyDestIfIndex Integer32
  hpnicfAcfpPolicyContextID Integer32
  hpnicfAcfpPolicyAdminStatus INTEGER
  hpnicfAcfpPolicyLifetime Integer32
  hpnicfAcfpPolicyTimeStart STRING
  hpnicfAcfpPolicyTimeEnd STRING
  hpnicfAcfpPolicyRowStatus RowStatus
  hpnicfAcfpPolicyDestIfFailAction INTEGER
  hpnicfAcfpPolicyPriority INTEGER

HpnicfAcfpRuleEntry  
SEQUENCE    
  hpnicfAcfpRuleIndex Integer32
  hpnicfAcfpRuleOperStatus INTEGER
  hpnicfAcfpRuleAction INTEGER
  hpnicfAcfpRuleAll TruthValue
  hpnicfAcfpRuleSrcMAC MacAddress
  hpnicfAcfpRuleDstMAC MacAddress
  hpnicfAcfpRuleVlanStart Integer32
  hpnicfAcfpRuleVlanEnd Integer32
  hpnicfAcfpRuleProtocol Integer32
  hpnicfAcfpRuleSrcIP IpAddress
  hpnicfAcfpRuleSrcIPMask IpAddress
  hpnicfAcfpRuleSrcOp INTEGER
  hpnicfAcfpRuleSrcStartPort Integer32
  hpnicfAcfpRuleSrcEndPort Integer32
  hpnicfAcfpRuleDstIP IpAddress
  hpnicfAcfpRuleDstIPMask IpAddress
  hpnicfAcfpRuleDstOp INTEGER
  hpnicfAcfpRuleDstStartPort Integer32
  hpnicfAcfpRuleDstEndPort Integer32
  hpnicfAcfpRulePrecedence Integer32
  hpnicfAcfpRuleTos Integer32
  hpnicfAcfpRuleDscp Integer32
  hpnicfAcfpRuleEstablish TruthValue
  hpnicfAcfpRuleFragment TruthValue
  hpnicfAcfpRulePacketRate Integer32
  hpnicfAcfpRuleRowStatus RowStatus
  hpnicfAcfpRuleTCPFlag Integer32
  hpnicfAcfpRuleSrcIPV6Address Ipv6Address
  hpnicfAcfpRuleSrcPrefixLen InetAddressPrefixLength
  hpnicfAcfpRuleDstIPV6Address Ipv6Address
  hpnicfAcfpRuleDstPrefixLen InetAddressPrefixLength
  hpnicfAcfpRuleTrafficType BITS
  hpnicfAcfpRuleTypeOrLen Integer32

Defined Values

hpnicfAcfp 1.3.6.1.4.1.11.2.14.11.15.2.74
This MIB module defines a set of basic objects for configuring switches and routers to enable ACFP.
MODULE-IDENTITY    

hpnicfAcfpObjects 1.3.6.1.4.1.11.2.14.11.15.2.74.1
OBJECT IDENTIFIER    

hpnicfAcfpOAP 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1
OBJECT IDENTIFIER    

hpnicfAcfpServer 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.1
OBJECT IDENTIFIER    

hpnicfAcfpServerInfo 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.1.1
When retrieved, this object returns a set of bits indicating the capabilities (or configuration) of the switch or router. The set bit is indication that a router or switch can support the action for security rule.
OBJECT-TYPE    
  BITS ipserver(0), redirect(1), mirror(2), passThrough(3)  

hpnicfAcfpServerMaxLifetime 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.1.2
When retrieved, this object returns the maximum lifetime in seconds, that this router or switch allows policy rules to have.
OBJECT-TYPE    
  Integer32 0..2147483647  

hpnicfAcfpServerPersistentRules 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.1.3
When retrieved, this object returns true(1) if the ACFP MIB implementation can store policy rules persistently. Otherwise, it returns false(2).
OBJECT-TYPE    
  TruthValue  

hpnicfAcfpServerCurContextType 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.1.4
In some circumstances, it's necessary that packets go to ACFP client with context from ACFP server. However, the context perhaps is different. hpnicfAcfpServerCurContextType is used to distinguish this difference, ACFP client may process distinctively.
OBJECT-TYPE    
  INTEGER no-context(1), context-VLANID(2), context-HG(3), context-FlowID(4), context-HGPlus(5)  

hpnicfAcfpClientInfo 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.2
OBJECT IDENTIFIER    

hpnicfAcfpClientInfoTable 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.2.1
This table contains the basic information about ACFP client.
OBJECT-TYPE    
  SEQUENCE OF  
    HpnicfAcfpClientInfoEntry

hpnicfAcfpClientInfoEntry 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.2.1.1
This list contains the basic information about ACFP client.
OBJECT-TYPE    
  HpnicfAcfpClientInfoEntry  

hpnicfAcfpClientID 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.2.1.1.1
The identifier of ACFP client.
OBJECT-TYPE    
  Integer32 1..2147483647  

hpnicfAcfpClientDescription 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.2.1.1.2
Description of the application that is running on ACFP client, eg. IPS, VCX.
OBJECT-TYPE    
  DisplayString Size(0..64)  

hpnicfAcfpClientHwVersion 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.2.1.1.3
The hardware revision of ACFP client.
OBJECT-TYPE    
  DisplayString Size(0..64)  

hpnicfAcfpClientOSVersion 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.2.1.1.4
The operating system version running ACFP client.
OBJECT-TYPE    
  DisplayString Size(0..64)  

hpnicfAcfpClientAppVersion 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.2.1.1.5
The application version running on ACFP client
OBJECT-TYPE    
  DisplayString Size(0..64)  

hpnicfAcfpClientIP 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.2.1.1.6
IP address of ACFP client.
OBJECT-TYPE    
  IpAddress  

hpnicfAcfpClientMode 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.2.1.1.7
ACFP client informs Router or switch which mode it is operating. Router or switch checks hpnicfAcfpServerInfo to see whether it is capable of fulfilling this function. If not, router or switch generates a trap informing ACFP client such OAP mode is not supported.
OBJECT-TYPE    
  BITS ipserver(0), redirect(1), mirror(2), passThrough(3)  

hpnicfAcfpClientRowStatus 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.2.1.1.8
RowStatus, supports three states: createAndGo, active, destroy. Creation Operation Restriction: Node hpnicfAcfpClientMode must be bound while creating a row. It is optional for other nodes. ACFP module must be enabled for the server while creating a row. The number of rows created must not exceed upper limit. Modification Operation Restriction: Nodes that do not support modification: hpnicfAcfpClientMode. Nodes that support modification: hpnicfAcfpClientDescription, hpnicfAcfpClientHwVersion, hpnicfAcfpClientOSVersion, hpnicfAcfpClientAppVersion and hpnicfAcfpClientIP. If the row to be modified does not exist, error returns directly. Deletion Operation Restriction: If the row to be deleted does not exist, success returns directly.
OBJECT-TYPE    
  RowStatus  

hpnicfAcfpPolicy 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.3
OBJECT IDENTIFIER    

hpnicfAcfpPolicyTable 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.3.1
This table lists all current policies for ACFP client(s). Entries in this table are created or removed implicitly when entries in the hpnicfAcfpRuleTable are created or removed, respectively. A policy entry in this table only exists as long as there is rule of this policy in the hpnicfAcfpRuleTable. The table serves for listing the existing policies and their remaining lifetimes and for changing lifetimes of policies and implicitly of all policy members and all their member policy rules can be deleted by setting hpnicfAcfpPolicyLifetime to 0.
OBJECT-TYPE    
  SEQUENCE OF  
    HpnicfAcfpPolicyEntry

hpnicfAcfpPolicyEntry 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.3.1.1
The list contains basic information of ACFP Policy.
OBJECT-TYPE    
  HpnicfAcfpPolicyEntry  

hpnicfAcfpPolicyIndex 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.3.1.1.1
The identifier of the Policy of ACFP client
OBJECT-TYPE    
  Integer32 1..2147483647  

hpnicfAcfpPolicyInIfIndex 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.3.1.1.2
Packet is received from this interface. The value of this object contains the same value of ifIndex of ifTable.
OBJECT-TYPE    
  Integer32 0..2147483647  

hpnicfAcfpPolicyOutIfIndex 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.3.1.1.3
Packet is sent to this interface. The value of this object contains the same value of ifIndex of ifTable.
OBJECT-TYPE    
  Integer32 0..2147483647  

hpnicfAcfpPolicyDestIfIndex 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.3.1.1.4
Through this interface, packet go to ACFP client from ACFP server. The value of this object contains the same value of ifIndex of ifTable.
OBJECT-TYPE    
  Integer32  

hpnicfAcfpPolicyContextID 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.3.1.1.5
Internal id ACFP server allocated used to map to the interface. ACFP server may send packet with this hpnicfAcfpPolicyContextID to ACFP client, ACFP client can make use of this hpnicfAcfpPolicyContextID and find the policy.
OBJECT-TYPE    
  Integer32 0..2147483647  

hpnicfAcfpPolicyAdminStatus 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.3.1.1.6
The value of this object indicates the desired status of the policy.
OBJECT-TYPE    
  INTEGER enable(1), disable(2)  

hpnicfAcfpPolicyLifetime 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.3.1.1.7
When retrieved, this object delivers the maximum lifetime (seconds) of all the rules of this, i.e., of all the rows in hpnicfAcfpRuleTable that have the same values of hpnicfAcfpRulePolicyIndex and hpnicfAcfpClientID. Successfully writing to this object modifies the lifetime of all the rules of this. Successfully writing a value of 0 terminates all the rules and implicitly deletes this as soon as all member entries are removed from the hpnicfAcfpRuleTable. Note that after a lifetime expired, all the corresponding entry in the hpnicfAcfpRuleTable will be removed and this will be deleted implicitly. Writing to this object is processed by the ACFP MIB implementation by choosing a lifetime value that is greater than or equal to zero and less than or equal to the minimum of the requested value and the value specified by object hpnicfAcfpServerMaxLifetime: 0 <= lt_granted <= MINIMUM(lt_requested, lt_maximum) whereas: lt_granted is the actually granted lifetime by the ACFP MIB implementation. lt_requested is the requested lifetime of the ACFP client. lt_maximum is the value of object hpnicfAcfpServerMaxLifetime. SNMP set requests to this object may be rejected or the value of the object after an accepted set operation may be less than the value that was contained in the SNMP set request.
OBJECT-TYPE    
  Integer32 0..2147483647  

hpnicfAcfpPolicyTimeStart 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.3.1.1.8
Beginning time of this policy every day. Eg. HH:MM:SS
OBJECT-TYPE    
  STRING Size(8)  

hpnicfAcfpPolicyTimeEnd 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.3.1.1.9
Ending time of this policy every day. Eg. HH:MM:SS
OBJECT-TYPE    
  STRING Size(8)  

hpnicfAcfpPolicyRowStatus 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.3.1.1.10
RowStatus, supports three states: createAndGo, active, destroy. Creation Operation Restriction: The client corresponding to the index hpnicfAcfpClientID must exist while creating a row. Nodes hpnicfAcfpPolicyTimeStart and hpnicfAcfpPolicyTimeEnd are bound together, and hpnicfAcfpPolicyTimeEnd must be greater than hpnicfAcfpPolicyTimeStart. The number of rows created on an incoming/outgoing interface cannot exceed the upper limit. The number of rows created cannot exceed the upper limit for each client. A packet matches a policy in the following order: - It first matches the policy with the highest priority. - For two policies with the same priority, it matches the one with the smallest client index. - For two policies with the same client index, it matches the one with the smallest policy index. Modification Operation Restriction: Nodes that do not support modification: hpnicfAcfpPolicyInIfIndex, hpnicfAcfpPolicyOutIfIndex, hpnicfAcfpPolicyDestIfIndex, hpnicfAcfpPolicyDestIfFailAction, hpnicfAcfpPolicyPriority. Nodes that support modification: hpnicfAcfpPolicyAdminStatus, hpnicfAcfpPolicyLifetime, hpnicfAcfpPolicyTimeStart and hpnicfAcfpPolicyTimeEnd. While modifying a row, if the row corresponding to the index configured does not exist, error returns directly. While modifying a node, the restriction over hpnicfAcfpPolicyTimeStart and hpnicfAcfpPolicyTimeEnd is the same as creating a node. Deletion Operation Restriction: If the row to be deleted does not exist, success returns directly.
OBJECT-TYPE    
  RowStatus  

hpnicfAcfpPolicyDestIfFailAction 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.3.1.1.11
The value of this object indicates the action of the policy when the destination interface failed.
OBJECT-TYPE    
  INTEGER delete(1), reserve(2)  

hpnicfAcfpPolicyPriority 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.3.1.1.12
The value of this object indicates the priority of the policy. Priority8 is maximal priority. Priority1 is minimal priority.
OBJECT-TYPE    
  INTEGER priority1(1), priority2(2), priority3(3), priority4(4), priority5(5), priority6(6), priority7(7), priority8(8)  

hpnicfAcfpRule 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4
OBJECT IDENTIFIER    

hpnicfAcfpRuleTable 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1
This table lists all the rules. It is indexed by hpnicfAcfpClientID, hpnicfAcfpRulePolicyIndex and hpnicfAcfpRuleIndex. Entries can be deleted by writing hpnicfAcfpPolicyLifetime to 0.
OBJECT-TYPE    
  SEQUENCE OF  
    HpnicfAcfpRuleEntry

hpnicfAcfpRuleEntry 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1
The list contains basic information of the rule.
OBJECT-TYPE    
  HpnicfAcfpRuleEntry  

hpnicfAcfpRuleIndex 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.1
The identifier of the rules which have the same hpnicfAcfpPolicyIndex and hpnicfAcfpClientID.hpnicfAcfpRuleIndex indicates rule sequence in the same policy.
OBJECT-TYPE    
  Integer32 1..2147483647  

hpnicfAcfpRuleOperStatus 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.2
The value of this object indicates the status of a rule. success : Applied rule to interface successfully. fail : Failed to apply rule to interface.
OBJECT-TYPE    
  INTEGER success(1), fail(2)  

hpnicfAcfpRuleAction 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.3
The action of this rule.
OBJECT-TYPE    
  INTEGER permit(1), deny(2), redirect(3), mirror(4), rate(5)  

hpnicfAcfpRuleAll 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.4
The rule match all packet or does not. true : all false : not all
OBJECT-TYPE    
  TruthValue  

hpnicfAcfpRuleSrcMAC 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.5
Source MAC of this rule.
OBJECT-TYPE    
  MacAddress  

hpnicfAcfpRuleDstMAC 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.6
Destination MAC of this rule.
OBJECT-TYPE    
  MacAddress  

hpnicfAcfpRuleVlanStart 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.7
Starting VLAN id of this rule. 0 : Invalid value
OBJECT-TYPE    
  Integer32 0..4094  

hpnicfAcfpRuleVlanEnd 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.8
Ending VLAN id of this rule. 0 : Invalid value
OBJECT-TYPE    
  Integer32 0..4094  

hpnicfAcfpRuleProtocol 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.9
The protocol-type of this rule. <0-255> Protocol number gre GRE tunneling(47) icmp Internet Control Message Protocol(1) igmp Internet Management Protocol(2) ip Any IP protocol(0) ipinip IP in IP tunneling(4) ospf OSPF routing protocol(89) tcp Transmission Control Protocol (6) udp User Datagram Protocol (17)
OBJECT-TYPE    
  Integer32 0..255  

hpnicfAcfpRuleSrcIP 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.10
Source IP address of this rule.
OBJECT-TYPE    
  IpAddress  

hpnicfAcfpRuleSrcIPMask 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.11
Source IP-address wild of this rule. Eg. 0.0.0.255.
OBJECT-TYPE    
  IpAddress  

hpnicfAcfpRuleSrcOp 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.12
Source Port operation for this rule
OBJECT-TYPE    
  INTEGER equal(1), notEqual(2), lessThan(3), greaterThan(4), range(5), invalid(6)  

hpnicfAcfpRuleSrcStartPort 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.13
Starting UDP/TCP Source Port number of this rule.
OBJECT-TYPE    
  Integer32 0..65535  

hpnicfAcfpRuleSrcEndPort 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.14
Ending UDP/TCP Source Port of this rule.
OBJECT-TYPE    
  Integer32 0..65535  

hpnicfAcfpRuleDstIP 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.15
Destination IP address of this rule.
OBJECT-TYPE    
  IpAddress  

hpnicfAcfpRuleDstIPMask 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.16
Destination IP-address wild of this rule. Eg. 0.0.0.255
OBJECT-TYPE    
  IpAddress  

hpnicfAcfpRuleDstOp 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.17
Destination Port operation for this rule
OBJECT-TYPE    
  INTEGER equal(1), nonEqual(2), lessThan(3), greaterThan(4), range(5), invalid(6)  

hpnicfAcfpRuleDstStartPort 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.18
Starting UDP/TCP Destination Port number of this rule.
OBJECT-TYPE    
  Integer32 0..65535  

hpnicfAcfpRuleDstEndPort 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.19
Ending UDP/TCP Destination Port of this rule.
OBJECT-TYPE    
  Integer32 0..65535  

hpnicfAcfpRulePrecedence 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.20
The value of precedence field in IP header. <255> Invalid value <0-7> value of precedence routine(0) Routine precedence priority(1) Priority precedence immediate(2) Immediate precedence flash(3) Flash precedence flash-override(4) Flash Override precedence critical(5) Critical precedence internet(6) Network Control precedence network(7) Internetwork Control precedence
OBJECT-TYPE    
  Integer32 0..7 | 255  

hpnicfAcfpRuleTos 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.21
The value of TOS field in IP header. <255> Invalid value <0-15> value of ToS (Type of Service) Normal(0) normal service min-monetary-cost(1) minimum monetary cost max-reliability(2) maximum reliability max-throughput(4) maximum throughput min-delay(8) minimum delay
OBJECT-TYPE    
  Integer32 0..15 | 255  

hpnicfAcfpRuleDscp 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.22
The value of DSCP. <255> Invalid value <0-63> value of DSCP Be(0) best effort af11(10) assured forwarding 11 service af12(12) assured forwarding 12 service af13(14) assured forwarding 13 service af21(18) assured forwarding 18 service af22(20) assured forwarding 20 service af23(22) assured forwarding 22 service af31(26) assured forwarding 31 service af32(28) assured forwarding 32 service af33(30) assured forwarding 33 service af41(34) assured forwarding 41 service af42(36) assured forwarding 42 service af43(38) assured forwarding 43 service cs1(8) class selector 1 service cs2(16) class selector 2 service cs3(24) class selector 3 service cs4(32) class selector 4 service cs5(40) class selector 5 service cs6(48) class selector 6 service cs7(56) class selector 7 service ef(46) expedited forwarding service
OBJECT-TYPE    
  Integer32 0..63 | 255  

hpnicfAcfpRuleEstablish 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.23
Establish Flag. Matches the TCP packets with the ACK and/or RST flag, including the TCP packets of these types: SYN+ACK, ACK, FIN+ACK, RST, RST+ACK.
OBJECT-TYPE    
  TruthValue  

hpnicfAcfpRuleFragment 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.24
The flag of matching fragmented packet.
OBJECT-TYPE    
  TruthValue  

hpnicfAcfpRulePacketRate 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.25
Packet rate (Kbps) of this rule.
OBJECT-TYPE    
  Integer32  

hpnicfAcfpRuleRowStatus 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.26
RowStatus, supports three states: createAndGo, active, destroy. Creation Operation Restriction: Node hpnicfAcfpRuleAction must be bound while creating a line. Nodes hpnicfAcfpRuleAll and hpnicfAcfpRuleProtocol, hpnicfAcfpRuleSrcIP, hpnicfAcfpRuleSrcIPMask, hpnicfAcfpRuleDstIP, hpnicfAcfpRuleSrcOp, hpnicfAcfpRuleSrcStartPort, hpnicfAcfpRuleSrcEndPort, hpnicfAcfpRuleDstIP, hpnicfAcfpRuleDstIPMask, hpnicfAcfpRuleDstOp, hpnicfAcfpRuleDstStartPort, hpnicfAcfpRuleDstEndPort, hpnicfAcfpRulePrecedence, hpnicfAcfpRuleTos, hpnicfAcfpRuleDscp, hpnicfAcfpRuleTCPFlag, hpnicfAcfpRuleFragment are mutually exclusive. Nodes hpnicfAcfpRuleSrcIP and hpnicfAcfpRuleSrcIPMask are bound together, otherwise, the source IP address is neglected. The restriction over hpnicfAcfpRuleDstIP and hpnicfAcfpRuleDstIPMask is the same as hpnicfAcfpRuleSrcIP and hpnicfAcfpRuleSrcIPMask. Nodes hpnicfAcfpRuleDscp and hpnicfAcfpRulePrecedence, hpnicfAcfpRuleTos are mutually exclusive. If the node hpnicfAcfpRuleSrcOp is bound to range(5), hpnicfAcfpRuleSrcStartPort and hpnicfAcfpRuleSrcEndPort must be bound together, and hpnicfAcfpRuleSrcEndPort must be greater than hpnicfAcfpRuleSrcStartPort. If the node hpnicfAcfpRuleSrcOp is bound to equal(1), notEqual(2), lessThan(3) or greaterThan(4), hpnicfAcfpRuleSrcStartPort must be bound together, and hpnicfAcfpRuleSrcEndPort is neglected. The restriction over hpnicfAcfpRuleDstOp, hpnicfAcfpRuleDstStartPort and hpnicfAcfpRuleDstEndPort is the same as hpnicfAcfpRuleSrcOp, hpnicfAcfpRuleSrcStartPort and hpnicfAcfpRuleSrcEndPort. If the node hpnicfAcfpRuleAction is bound to redirect(3) or mirror(4), the destination interfaces of the policy the rule belonging to must exist; The number of rows created cannot exceed the upper limit for each policy, each inbound interface and each outbound interface. Modification Operation Restriction: The row does not support modification. Deletion Operation Restriction If the row to be deleted does not exist, success returns directly.
OBJECT-TYPE    
  RowStatus  

hpnicfAcfpRuleTCPFlag 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.27
TCP Flag. <0> don't care for TCP flag to match packets <1-65535> care for TCP flag to match packets, the value is combination of next list. URG_VALID (1 << 13) URG_SET (1 << 5) ACK_VALID (1 << 12) ACK_SET (1 << 4) PSH_VALID (1 << 11) PSH_SET (1 << 3) RST_VALID (1 << 10) RST_SET (1 << 2) SYN_VALID (1 << 9) SYN_SET (1 << 1) FIN_VALID (1 << 8) FIN_SET 1 Matches the TCP packets with the URG and/or ACK and/or PSH and/or RST and/or SYN and/or FIN flag, including the TCP packets of these types: SYN+ACK, ACK, FIN+ACK, RST, RST+ACK.
OBJECT-TYPE    
  Integer32 0..65535  

hpnicfAcfpRuleSrcIPV6Address 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.28
Source IPv6 address of this rule.
OBJECT-TYPE    
  Ipv6Address  

hpnicfAcfpRuleSrcPrefixLen 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.29
Source IPv6 address prefix length of this rule. Eg. 64.
OBJECT-TYPE    
  InetAddressPrefixLength  

hpnicfAcfpRuleDstIPV6Address 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.30
Destination IPv6 address of this rule.
OBJECT-TYPE    
  Ipv6Address  

hpnicfAcfpRuleDstPrefixLen 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.31
Destination IPv6 address prefix length of this rule. Eg. 64.
OBJECT-TYPE    
  InetAddressPrefixLength  

hpnicfAcfpRuleTrafficType 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.32
Traffic type of this rule. When retrieved, this object returns a set of bits indicating the traffic type.
OBJECT-TYPE    
  BITS unicast(0), multicast(1), broadcast(2)  

hpnicfAcfpRuleTypeOrLen 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.4.1.1.33
The type or length of ethernet packet. For Ethernet II encapsulation, it stands for packet type. For 802.3 encapsulation, it stands for packet length.
OBJECT-TYPE    
  Integer32 0..65535  

hpnicfAcfpNotifications 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.5
OBJECT IDENTIFIER    

hpnicfAcfpCurContextChanged 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.5.1
This notification is sent when router or switch changed hpnicfAcfpServerCurContextType.
NOTIFICATION-TYPE    

hpnicfAcfpClientRegister 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.5.2
This notification is sent when the ACFP client is registered.
NOTIFICATION-TYPE    

hpnicfAcfpClientUnRegister 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.5.3
This notification is sent when the ACFP client is unregistered.
NOTIFICATION-TYPE    

hpnicfAcfpClientDead 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.5.4
This notification is sent when the ACFP client is not responding.
NOTIFICATION-TYPE    

hpnicfAcfpNotSupportedOAPMode 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.5.5
This notification is sent when router or switch cannot support OAP mode that ACFP client wants to operate on.
NOTIFICATION-TYPE    

hpnicfAcfpLifetimeChangeEvent 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.5.6
This notification can be generated for indicating that The lifetime of all member rules of the was changed by successfully writing to object hpnicfAcfpPolicyLifetime. Note that this notification is only sent if the lifetime of a policy was changed by successfully writing to object hpnicfAcfpPolicyLifetime.
NOTIFICATION-TYPE    

hpnicfAcfpRuleCreatedEvent 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.5.7
This notification is sent when a new rule is created.
NOTIFICATION-TYPE    

hpnicfAcfpRuleDeletedEvent 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.5.8
This notification is sent when a rule is deleted.
NOTIFICATION-TYPE    

hpnicfAcfpRuleErrorEvent 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.5.9
This notification is sent when rule cannot be applied.
NOTIFICATION-TYPE    

hpnicfAcfpLifetimeExpireEvent 1.3.6.1.4.1.11.2.14.11.15.2.74.1.1.5.10
This notification is sent when the time of the policy existed exceeds its lifetime.
NOTIFICATION-TYPE