PKTC-ES-IPTAP-MIB

File: PKTC-ES-IPTAP-MIB.mib (15794 bytes)

Imported modules

SNMPv2-SMI SNMPv2-CONF INET-ADDRESS-MIB
SNMP-FRAMEWORK-MIB SNMPv2-TC PKTC-ES-TAP-MIB
CLAB-DEF-MIB

Imported symbols

Integer32 MODULE-IDENTITY OBJECT-TYPE
MODULE-COMPLIANCE OBJECT-GROUP InetAddress
InetAddressPrefixLength InetAddressType InetPortNumber
SnmpAdminString RowStatus pktcEScTapMediationContentId
pktcEScTapStreamIndex pktcESSupportMibs

Defined Types

PktcESTapStreamEntry  
SEQUENCE    
  pktcESTapStreamInterface Integer32
  pktcESTapStreamAddrType InetAddressType
  pktcESTapStreamDestinationAddress InetAddress
  pktcESTapStreamDestinationLength InetAddressPrefixLength
  pktcESTapStreamSourceAddress InetAddress
  pktcESTapStreamSourceLength InetAddressPrefixLength
  pktcESTapStreamTosByte Integer32
  pktcESTapStreamTosByteMask Integer32
  pktcESTapStreamFlowId Integer32
  pktcESTapStreamProtocol Integer32
  pktcESTapStreamDestL4PortMin InetPortNumber
  pktcESTapStreamDestL4PortMax InetPortNumber
  pktcESTapStreamSourceL4PortMin InetPortNumber
  pktcESTapStreamSourceL4PortMax InetPortNumber
  pktcESTapStreamVRF SnmpAdminString
  pktcESTapStreamStatus RowStatus

Defined Values

pktcESIpTapMIB 1.3.6.1.4.1.4491.2.2.9.1.2
This module manages intercept feature for IP. This MIB is used along with TAP-MIB to intercept IP traffic. TAP-MIB along with specific filter MIBs like this MIB replace TAP-MIB. To create an IP intercept, an entry pktcESTapStreamEntry is created which contains the filter details. An entry pktcEScpktcESTapStreamEntry of TAP-MIB is created, which is the common stream information for all kinds of intercepts and type of the specific stream is set to ip in this entry.
MODULE-IDENTITY    

pktcESIpTapMIBNotifs 1.3.6.1.4.1.4491.2.2.9.1.2.0
OBJECT IDENTIFIER    

pktcESIpTapMIBObjects 1.3.6.1.4.1.4491.2.2.9.1.2.1
OBJECT IDENTIFIER    

pktcESIpTapMIBConform 1.3.6.1.4.1.4491.2.2.9.1.2.2
OBJECT IDENTIFIER    

pktcESTapStreamEncodePacket 1.3.6.1.4.1.4491.2.2.9.1.2.1.1
OBJECT IDENTIFIER    

pktcESTapStreamCapabilities 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.1
This object displays what types of intercept streams can be configured on this type of device. This may be dependent on hardware capabilities, software capabilities. The following fields may be supported: tapEnable: set if table entries with pktcEScTapStreamInterceptEnable set to 'false' are used to pre-screen packets for intercept; otherwise these entries are ignored. interface: SNMP ifIndex Value may be used to select interception of all data crossing an interface or set of interfaces. ipV4: IPv4 Address or prefix may be used to select traffic to be intercepted. ipV6: IPv6 Address or prefix may be used to select traffic to be intercepted. l4Port: TCP/UDP Ports may be used to select traffic to be intercepted. dscp: DSCP (Differentiated Services Code Point) may be used to select traffic to be intercepted. voip: packets belonging to a voice session may be intercepted using source IPv4 address and source UDP port.
Status: current Access: read-only
OBJECT-TYPE    
  BITS tapEnable(0), interface(1), ipV4(2), ipV6(3), l4Port(4), dscp(5), voip(6)  

pktcESTapStreamTable 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2
The Intercept Stream IP Table lists the IPv4 and IPv6 streams to be intercepted. The same data stream may be required by multiple taps, and one might assume that often the intercepted stream is a small subset of the traffic that could be intercepted. This essentially provides options for packet selection, only some of which might be used. For example, if all traffic to or from a given interface is to be intercepted, one would configure an entry which lists the interface, and wild-card everything else. If all traffic to or from a given IP Address is to be intercepted, one would configure two such entries listing the IP Address as source and destination respectively, and wild-card everything else. If a particular voice on a teleconference is to be intercepted, on the other hand, one would extract the multicast (destination) IP address, the source IP Address, the protocol (UDP), and the source and destination ports from the call control exchange and list all necessary information. The first index indicates which Mediation Device the intercepted traffic will be diverted to. The second index permits multiple classifiers to be used together, such as having an IP address as source or destination. The value of the second index is that of the stream's counter entry in the pktcEScTapStreamTable. Entries are added to this table via pktcESTapStreamStatus in accordance with the RowStatus convention.
Status: current Access: not-accessible
OBJECT-TYPE    
  SEQUENCE OF  
    PktcESTapStreamEntry

pktcESTapStreamEntry 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1
A stream entry indicates a single data stream to be intercepted to a Mediation Device. Many selected data streams may go to the same application interface, and many application interfaces are supported.
Status: current Access: not-accessible
OBJECT-TYPE    
  PktcESTapStreamEntry  

pktcESTapStreamInterface 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.1
The ifIndex value of the interface over which traffic to be intercepted is received or transmitted. The interface may be PKT-SP-ES-INF-I02-061013 PacketCableTM 2.0 54 CableLabs 10/13/06 physical or virtual. If this is the only parameter specified, and it is other than -2, -1 or 0, all traffic on the selected interface will be chosen. If the value is zero, matching traffic may be received or transmitted on any interface. Additional selection parameters must be selected to limit the scope of traffic intercepted. This is most useful on non-routing platforms or on intercepts placed elsewhere than a subscriber interface. If the value is -1, one or both of pktcESTapStreamDestinationAddress and pktcESTapStreamSourceAddress must be specified with prefix length greater than zero. Matching traffic on the interface pointed to by ipRouteIfIndex or ipCidrRouteIfIndex values associated with those values is intercepted, whichever is specified to be more focused than a default route. If routing changes, either by operator action or by routing protocol events, the interface will change with it. This is primarily intended for use on subscriber interfaces and other places where routing is guaranteed to be symmetrical. In both of these cases, it is possible to have the same packet selected for intersection on both its ingress and egress interface. Nonetheless, only one instance of the packet is sent to the Mediation Device. If the value is -2, packets belonging to a Voice over IP (VoIP) session identified by pktcESTapStreamSourceAddress, pktcESTapStreamSourceLen & pktcESTapStreamSourceL4PortMin may be intercepted, as a specific voice session can be identified with source IP address and udp port number. Other selection parameters may be not considered, even if they are set by the Mediation Device. This value must be set when creating a stream entry, either to select an interface, to select all interfaces, or to select the interface that routing chooses. Some platforms may not implement the entire range of options.
Status: current Access: read-create
OBJECT-TYPE    
  Integer32 -2..2147483647  

pktcESTapStreamAddrType 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.2
The type of address, used in packet selection.
Status: current Access: read-create
OBJECT-TYPE    
  InetAddressType  

pktcESTapStreamDestinationAddress 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.3
The Destination address or prefix used in packet selection. This address will be of the type specified in pktcESTapStreamAddrType.
Status: current Access: read-create
OBJECT-TYPE    
  InetAddress  

pktcESTapStreamDestinationLength 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.4
The length of the Destination Prefix. A value of zero causes all addresses to match. This prefix length will be consistent with the type specified in pktcESTapStreamAddrType.
Status: current Access: read-create
OBJECT-TYPE    
  InetAddressPrefixLength  

pktcESTapStreamSourceAddress 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.5
The Source Address used in packet selection. This address will be of the type specified in pktcESTapStreamAddrType.
Status: current Access: read-create
OBJECT-TYPE    
  InetAddress  

pktcESTapStreamSourceLength 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.6
The length of the Source Prefix. A value of zero causes all addresses to match. This prefix length will be consistent with the type specified in pktcESTapStreamAddrType.
Status: current Access: read-create
OBJECT-TYPE    
  InetAddressPrefixLength  

pktcESTapStreamTosByte 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.7
The value of the TOS byte, when masked with pktcESTapStreamTosByteMask, of traffic to be intercepted. If pktcESTapStreamTosByte&(~pktcESTapStreamTosByteMask)!=0, PKT-SP-ES-INF-I02-061013 PacketCableTM 2.0 56 CableLabs 10/13/06 configuration is rejected.
Status: current Access: read-create
OBJECT-TYPE    
  Integer32 0..255  

pktcESTapStreamTosByteMask 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.8
The value of the TOS byte in an IPv4 or IPv6 header is ANDed with pktcESTapStreamTosByteMask and compared with pktcESTapStreamTosByte. If the values are equal, the comparison is equal. If the mask is zero and the TosByte value is zero, the result is to always accept.
Status: current Access: read-create
OBJECT-TYPE    
  Integer32 0..255  

pktcESTapStreamFlowId 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.9
The flow identifier in an IPv6 header. -1 indicates that the Flow Id is unused.
Status: current Access: read-create
OBJECT-TYPE    
  Integer32 -1 | 0..1048575  

pktcESTapStreamProtocol 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.10
The IP protocol to match against the IPv4 protocol number or the IPv6 Next- Header number in the packet. -1 means 'any IP protocol'.
Status: current Access: read-create
OBJECT-TYPE    
  Integer32 -1 | 0..255  

pktcESTapStreamDestL4PortMin 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.11
The minimum value that the layer-4 destination port number in the packet must have in order to match. This value must be equal to or less than the value specified for this entry in pktcESTapStreamDestL4PortMax. If both pktcESTapStreamDestL4PortMin and pktcESTapStreamDestL4PortMax are at their default values, the port number is effectively unused.
Status: current Access: read-create
OBJECT-TYPE    
  InetPortNumber  

pktcESTapStreamDestL4PortMax 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.12
The maximum value that the layer-4 destination port number in the packet must have in order to match this classifier entry. This value must be equal to or greater than the value specified for this entry in pktcESTapStreamDestL4PortMin. If both pktcESTapStreamDestL4PortMin and pktcESTapStreamDestL4PortMax are at their default values, the port number is effectively unused.
Status: current Access: read-create
OBJECT-TYPE    
  InetPortNumber  

pktcESTapStreamSourceL4PortMin 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.13
The minimum value that the layer-4 destination port number in the packet must have in order to match. This value must be equal to or less than the value specified for this entry in pktcESTapStreamSourceL4PortMax. If both pktcESTapStreamSourceL4PortMin and pktcESTapStreamSourceL4PortMax are at their default values, the port number is effectively unused.
Status: current Access: read-create
OBJECT-TYPE    
  InetPortNumber  

pktcESTapStreamSourceL4PortMax 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.14
The maximum value that the layer-4 destination port number in the packet must have in order to match this classifier entry. This value must be equal to or greater than the value specified for this entry in pktcESTapStreamSourceL4PortMin. If both pktcESTapStreamSourceL4PortMin and pktcESTapStreamSourceL4PortMax are at their default values, the port number is effectively unused.
Status: current Access: read-create
OBJECT-TYPE    
  InetPortNumber  

pktcESTapStreamVRF 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.15
An ASCII string, which is the name of a Virtual Routing and Forwarding (VRF) table comprising the routing context of a Virtual Private Network. The interface or set of interfaces on which the packet might be found should be selected from the set of interfaces in the VRF table. A string length of zero implies that global routing table be used for selection of interfaces on which the packet might be found.
Status: current Access: read-create
OBJECT-TYPE    
  SnmpAdminString  

pktcESTapStreamStatus 1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.16
The status of this conceptual row. This object manages creation, modification, and deletion of rows in this table. When any rows must be changed, pktcESTapStreamStatus must be first set to 'notInService'.
Status: current Access: read-create
OBJECT-TYPE    
  RowStatus  

pktcESIpTapMIBCompliances 1.3.6.1.4.1.4491.2.2.9.1.2.2.1
OBJECT IDENTIFIER    

pktcESIpTapMIBGroups 1.3.6.1.4.1.4491.2.2.9.1.2.2.2
OBJECT IDENTIFIER    

pktcESIpTapMIBCompliance 1.3.6.1.4.1.4491.2.2.9.1.2.2.1.1
The compliance statement for entities which implement the Intercept MIB for IP.
Status: current Access: read-create
MODULE-COMPLIANCE    

pktcESIpTapStreamComplianceGroup 1.3.6.1.4.1.4491.2.2.9.1.2.2.2.1
These objects are necessary for a description of IPv4 and IPv6 packets to select for interception.
Status: current Access: read-create
OBJECT-GROUP