HUAWEI-ATK-MIB

File: HUAWEI-ATK-MIB.mib (19661 bytes)

Imported modules

SNMPv2-CONF SNMPv2-SMI SNMPv2-TC
MPLS-VPN-MIB HUAWEI-MIB

Imported symbols

OBJECT-GROUP IpAddress Integer32
OBJECT-TYPE MODULE-IDENTITY TruthValue
RowStatus mplsVpnVrfName hwDatacomm

Defined Types

HwAtkSynFloodIPEntry  
SEQUENCE    
  hwAtkSynFloodIP IpAddress
  hwAtkIPSynFloodSynSpeed Integer32
  hwAtkIPSynFloodHalfMax Integer32
  hwAtkIPSynFloodHalfAge Integer32
  hwAtkIPSynFloodProxy INTEGER
  hwAtkIPSynFloodStatus RowStatus

HwAtkUdpFloodIPEntry  
SEQUENCE    
  hwAtkUdpFloodIP IpAddress
  hwAtkIPUdpFloodSpeed Integer32
  hwAtkIPUdpFloodStatus RowStatus

HwAtkIcmpFloodIPEntry  
SEQUENCE    
  hwAtkIcmpFloodIP IpAddress
  hwAtkIPIcmpFloodSpeed Integer32
  hwAtkIPIcmpFloodStatus RowStatus

Defined Values

hwATKComm 1.3.6.1.4.1.2011.5.25.10.1
V1.00 The HUAWEI-ATK-MIB contains objects to manage the ATCKDF(Attack Defence) configuration for all products.
MODULE-IDENTITY    

hwATK 1.3.6.1.4.1.2011.5.25.10
OBJECT IDENTIFIER    

hwAtkGlobalMibObjects 1.3.6.1.4.1.2011.5.25.10.1.1
OBJECT IDENTIFIER    

hwAtkIpSpoofingSw 1.3.6.1.4.1.2011.5.25.10.1.1.1
The switch indicates whether inspecting IP spoofing attack.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkLandSw 1.3.6.1.4.1.2011.5.25.10.1.1.2
The switch indicates whether inspecting Land attack.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkSmurfSw 1.3.6.1.4.1.2011.5.25.10.1.1.3
The switch indicates whether inspecting Smurf attack.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkFraggleSw 1.3.6.1.4.1.2011.5.25.10.1.1.4
The switch indicates whether inspecting Fraggle attack.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkWinNukeSw 1.3.6.1.4.1.2011.5.25.10.1.1.5
The switch indicates whether inspecting WinNuke attack.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkIcmpRedirectSw 1.3.6.1.4.1.2011.5.25.10.1.1.6
The switch indicates whether blocking ICMP re-direction packets.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkIcmpUnReachSw 1.3.6.1.4.1.2011.5.25.10.1.1.7
The switch indicates whether blocking ICMP unreachable packets.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkSourceRouteSw 1.3.6.1.4.1.2011.5.25.10.1.1.8
The switch indicates whether blocking packets with source route option.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkRouteRecordSw 1.3.6.1.4.1.2011.5.25.10.1.1.9
The switch indicates whether blocking packets with route record option.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkTracertSw 1.3.6.1.4.1.2011.5.25.10.1.1.10
The switch indicates whether blocking packets of tracert.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkTcpFlagSw 1.3.6.1.4.1.2011.5.25.10.1.1.11
The switch indicates whether inspecting the flag of TCP packets.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkPingOfDeathSw 1.3.6.1.4.1.2011.5.25.10.1.1.12
The switch indicates whether inspecting ping-of-death attack.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkTeardropSw 1.3.6.1.4.1.2011.5.25.10.1.1.13
The switch indicates whether inspecting teardrop attack.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkFragFlagSw 1.3.6.1.4.1.2011.5.25.10.1.1.14
The switch indicates whether inspecting the flag for fragment.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkIPSweepSw 1.3.6.1.4.1.2011.5.25.10.1.1.15
The switch indicates whether inspecting IP sweep attack.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkIpSweepSpeed 1.3.6.1.4.1.2011.5.25.10.1.1.16
The maximum speed of IP sweeping.
Status: current Access: read-write
OBJECT-TYPE    
  Integer32 0..10000  

hwAtkIPSweepBlsTime 1.3.6.1.4.1.2011.5.25.10.1.1.17
The time to add a host to blacklist when find it is sweeping.
Status: current Access: read-write
OBJECT-TYPE    
  Integer32 0..1000  

hwAtkPortScanSw 1.3.6.1.4.1.2011.5.25.10.1.1.18
The switch indicates whether inspecting port scan attack.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkPortScanSpeed 1.3.6.1.4.1.2011.5.25.10.1.1.19
The maximum speed of port scanning.
Status: current Access: read-write
OBJECT-TYPE    
  Integer32 0..10000  

hwAtkPortScanBlsTime 1.3.6.1.4.1.2011.5.25.10.1.1.20
The time to add a host to blacklist when find it is scanning port.
Status: current Access: read-write
OBJECT-TYPE    
  Integer32 0..1000  

hwAtkLargeIcmpSw 1.3.6.1.4.1.2011.5.25.10.1.1.21
The switch indicates whether blocking large icmp packets.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkIcmpLength 1.3.6.1.4.1.2011.5.25.10.1.1.22
The maximum length of ICMP packets allowed to pass the system.
Status: current Access: read-write
OBJECT-TYPE    
  Integer32 8..65535  

hwAtkSynFloodSw 1.3.6.1.4.1.2011.5.25.10.1.1.23
The switch indicates whether inspecting SYN flooding attack.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkUdpFloodSw 1.3.6.1.4.1.2011.5.25.10.1.1.24
The switch indicates whether inspecting UDP flooding attack.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkIcmpFloodSw 1.3.6.1.4.1.2011.5.25.10.1.1.25
The switch indicates whether inspecting ICMP flooding attack.
Status: current Access: read-write
OBJECT-TYPE    
  TruthValue  

hwAtkIPMibObjects 1.3.6.1.4.1.2011.5.25.10.1.2
OBJECT IDENTIFIER    

hwAtkSynFloodIPTable 1.3.6.1.4.1.2011.5.25.10.1.2.1
The table define the parameters of SYN flood defence for hosts.
Status: current Access: not-accessible
OBJECT-TYPE    
  SEQUENCE OF  
    HwAtkSynFloodIPEntry

hwAtkSynFloodIPEntry 1.3.6.1.4.1.2011.5.25.10.1.2.1.1
Status: current Access: not-accessible
OBJECT-TYPE    
  HwAtkSynFloodIPEntry  

hwAtkSynFloodIP 1.3.6.1.4.1.2011.5.25.10.1.2.1.1.1
The IP address of host to be protected.
Status: current Access: not-accessible
OBJECT-TYPE    
  IpAddress  

hwAtkIPSynFloodSynSpeed 1.3.6.1.4.1.2011.5.25.10.1.2.1.1.2
The maximum speed of SYN packets to the host. when the speed of SYN packets to the host reach the maximum, system will start the TCP proxy.
Status: current Access: read-create
OBJECT-TYPE    
  Integer32 0..1000000  

hwAtkIPSynFloodHalfMax 1.3.6.1.4.1.2011.5.25.10.1.2.1.1.3
The maximum incomplete connection for the host.
Status: current Access: read-create
OBJECT-TYPE    
  Integer32 0..10000000  

hwAtkIPSynFloodHalfAge 1.3.6.1.4.1.2011.5.25.10.1.2.1.1.4
The age of TCP incomplete connections.
Status: current Access: read-create
OBJECT-TYPE    
  Integer32 0..65535  

hwAtkIPSynFloodProxy 1.3.6.1.4.1.2011.5.25.10.1.2.1.1.5
The switch of TCP proxy, this switch decides the action of proxy. The switch has three status: auto, on, off.
Status: current Access: read-create
OBJECT-TYPE    
  INTEGER auto(1), on(2), off(3)  

hwAtkIPSynFloodStatus 1.3.6.1.4.1.2011.5.25.10.1.2.1.1.6
The status of a row, can be CreateAndGo or Destroy currently.
Status: current Access: read-create
OBJECT-TYPE    
  RowStatus  

hwAtkUdpFloodIPTable 1.3.6.1.4.1.2011.5.25.10.1.2.2
The table define the parameters of UDP flood defence for hosts.
Status: current Access: not-accessible
OBJECT-TYPE    
  SEQUENCE OF  
    HwAtkUdpFloodIPEntry

hwAtkUdpFloodIPEntry 1.3.6.1.4.1.2011.5.25.10.1.2.2.1
Status: current Access: not-accessible
OBJECT-TYPE    
  HwAtkUdpFloodIPEntry  

hwAtkUdpFloodIP 1.3.6.1.4.1.2011.5.25.10.1.2.2.1.1
The IP address of host to be protected.
Status: current Access: not-accessible
OBJECT-TYPE    
  IpAddress  

hwAtkIPUdpFloodSpeed 1.3.6.1.4.1.2011.5.25.10.1.2.2.1.2
The maximum speed of UDP packets to the host. when the speed of UDP packets to the host reach the maximum, system will drop the subsequent UDP packets to this host, until the speed decline to 80 percent of the maximum.
Status: current Access: read-create
OBJECT-TYPE    
  Integer32 0..1000000  

hwAtkIPUdpFloodStatus 1.3.6.1.4.1.2011.5.25.10.1.2.2.1.3
The status of a row, can be CreateAndGo or Destroy currently.
Status: current Access: read-create
OBJECT-TYPE    
  RowStatus  

hwAtkIcmpFloodIPTable 1.3.6.1.4.1.2011.5.25.10.1.2.3
The table define the parameters of ICMP flood defence for hosts.
Status: current Access: not-accessible
OBJECT-TYPE    
  SEQUENCE OF  
    HwAtkIcmpFloodIPEntry

hwAtkIcmpFloodIPEntry 1.3.6.1.4.1.2011.5.25.10.1.2.3.1
Status: current Access: not-accessible
OBJECT-TYPE    
  HwAtkIcmpFloodIPEntry  

hwAtkIcmpFloodIP 1.3.6.1.4.1.2011.5.25.10.1.2.3.1.1
The IP address of host to be protected.
Status: current Access: not-accessible
OBJECT-TYPE    
  IpAddress  

hwAtkIPIcmpFloodSpeed 1.3.6.1.4.1.2011.5.25.10.1.2.3.1.2
The maximum speed of ICMP packets to the host. when the speed of ICMP packets to the host reach the maximum, system will drop the subsequent ICMP packets to this host, until the speed decline to 80 percent of the maximum.
Status: current Access: read-create
OBJECT-TYPE    
  Integer32 0..1000000  

hwAtkIPIcmpFloodStatus 1.3.6.1.4.1.2011.5.25.10.1.2.3.1.3
The status of a row, can be CreateAndGo or Destroy currently.
Status: current Access: read-create
OBJECT-TYPE    
  RowStatus  

hwAtkCommConformance 1.3.6.1.4.1.2011.5.25.10.1.3
OBJECT IDENTIFIER    

hwAtkCommCompliance 1.3.6.1.4.1.2011.5.25.10.1.3.1
OBJECT IDENTIFIER    

hwAtkCommMibGroups 1.3.6.1.4.1.2011.5.25.10.1.3.2
OBJECT IDENTIFIER    

hwAtkGlobalCfgGroup 1.3.6.1.4.1.2011.5.25.10.1.3.2.1
Description.
Status: current Access: read-create
OBJECT-GROUP    

hwAtkCommSynFloodGroup 1.3.6.1.4.1.2011.5.25.10.1.3.2.2
Description.
Status: current Access: read-create
OBJECT-GROUP    

hwAtkCommUdpFloodGroup 1.3.6.1.4.1.2011.5.25.10.1.3.2.3
Description.
Status: current Access: read-create
OBJECT-GROUP    

hwAtkCommIcmpFloodGroup 1.3.6.1.4.1.2011.5.25.10.1.3.2.4
Description.
Status: current Access: read-create
OBJECT-GROUP