PKTC-ES-IPTAP-MIB
File:
PKTC-ES-IPTAP-MIB.mib (15794 bytes)
Imported modules
Imported symbols
Defined Types
PktcESTapStreamEntry |
|
SEQUENCE |
|
|
|
|
pktcESTapStreamInterface |
Integer32 |
|
|
pktcESTapStreamAddrType |
InetAddressType |
|
|
pktcESTapStreamDestinationAddress |
InetAddress |
|
|
pktcESTapStreamDestinationLength |
InetAddressPrefixLength |
|
|
pktcESTapStreamSourceAddress |
InetAddress |
|
|
pktcESTapStreamSourceLength |
InetAddressPrefixLength |
|
|
pktcESTapStreamTosByte |
Integer32 |
|
|
pktcESTapStreamTosByteMask |
Integer32 |
|
|
pktcESTapStreamFlowId |
Integer32 |
|
|
pktcESTapStreamProtocol |
Integer32 |
|
|
pktcESTapStreamDestL4PortMin |
InetPortNumber |
|
|
pktcESTapStreamDestL4PortMax |
InetPortNumber |
|
|
pktcESTapStreamSourceL4PortMin |
InetPortNumber |
|
|
pktcESTapStreamSourceL4PortMax |
InetPortNumber |
|
|
pktcESTapStreamVRF |
SnmpAdminString |
|
|
pktcESTapStreamStatus |
RowStatus |
|
Defined Values
pktcESIpTapMIB |
1.3.6.1.4.1.4491.2.2.9.1.2 |
This module manages intercept feature for IP.
This MIB is used along with TAP-MIB to
intercept IP traffic. TAP-MIB along with
specific filter MIBs like this MIB replace
TAP-MIB.
To create an IP intercept, an entry pktcESTapStreamEntry
is created which contains the filter details. An entry
pktcEScpktcESTapStreamEntry of TAP-MIB is created, which
is the common stream information for all kinds of
intercepts and type of the specific stream is set to
ip in this entry. |
MODULE-IDENTITY |
|
|
|
pktcESTapStreamCapabilities |
1.3.6.1.4.1.4491.2.2.9.1.2.1.1.1 |
This object displays what types of intercept streams can be
configured on this type of device. This may be dependent on
hardware capabilities, software capabilities. The following
fields may be supported:
tapEnable: set if table entries with
pktcEScTapStreamInterceptEnable set to
'false'
are used to pre-screen packets for intercept;
otherwise these entries are ignored.
interface: SNMP ifIndex Value may be used to select
interception of all data crossing an
interface or set of interfaces.
ipV4: IPv4 Address or prefix may be used to select
traffic to be intercepted.
ipV6: IPv6 Address or prefix may be used to select
traffic to be intercepted.
l4Port: TCP/UDP Ports may be used to select traffic
to be intercepted.
dscp: DSCP (Differentiated Services Code Point) may
be used to select traffic to be intercepted.
voip: packets belonging to a voice session may
be intercepted using source IPv4 address and
source UDP port. |
Status: current |
Access: read-only |
OBJECT-TYPE |
|
|
|
|
BITS |
tapEnable(0), interface(1), ipV4(2), ipV6(3), l4Port(4), dscp(5), voip(6) |
|
pktcESTapStreamTable |
1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2 |
The Intercept Stream IP Table lists the IPv4 and IPv6 streams
to be intercepted. The same data stream may be required by
multiple taps, and one might assume that often the intercepted
stream is a small subset of the traffic that could be
intercepted.
This essentially provides options for packet selection, only
some of which might be used. For example, if all traffic to or
from a given interface is to be intercepted, one would
configure an entry which lists the interface, and wild-card
everything else. If all traffic to or from a given IP Address
is to be intercepted, one would configure two such entries
listing the IP Address as source and destination respectively,
and wild-card everything else. If a particular voice on a
teleconference is to be intercepted, on the other hand, one
would extract the multicast (destination) IP address, the
source IP Address, the protocol (UDP), and the source and
destination ports from the call control exchange and list all
necessary information.
The first index indicates which Mediation Device the
intercepted traffic will be diverted to. The second index
permits multiple classifiers to be used together, such as
having an IP address as source or destination. The value of the
second index is that of the stream's counter entry in the
pktcEScTapStreamTable.
Entries are added to this table via pktcESTapStreamStatus in
accordance with the RowStatus convention. |
Status: current |
Access: not-accessible |
OBJECT-TYPE |
|
|
|
|
SEQUENCE OF |
|
|
|
|
PktcESTapStreamEntry |
|
pktcESTapStreamEntry |
1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1 |
A stream entry indicates a single data stream to be
intercepted to a Mediation Device. Many selected data
streams may go to the same application interface, and many
application interfaces are supported. |
Status: current |
Access: not-accessible |
OBJECT-TYPE |
|
|
|
|
PktcESTapStreamEntry |
|
|
pktcESTapStreamInterface |
1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.1 |
The ifIndex value of the interface over which traffic to be
intercepted is received or transmitted. The interface may be
PKT-SP-ES-INF-I02-061013 PacketCableTM 2.0
54 CableLabs 10/13/06
physical or virtual. If this is the only parameter specified,
and it is other than -2, -1 or 0, all traffic on the selected
interface will be chosen.
If the value is zero, matching traffic may be received or
transmitted on any interface. Additional selection parameters
must be selected to limit the scope of traffic intercepted.
This is most useful on non-routing platforms or on intercepts
placed elsewhere than a subscriber interface.
If the value is -1, one or both of
pktcESTapStreamDestinationAddress and
pktcESTapStreamSourceAddress must be specified
with prefix length greater than zero.
Matching traffic on the interface pointed to by ipRouteIfIndex
or ipCidrRouteIfIndex values associated with those values is
intercepted, whichever is specified to be more focused than a
default route. If routing changes, either by operator action
or by routing protocol events, the interface will change with
it. This is primarily intended for use on subscriber interfaces
and other places where routing is guaranteed to be
symmetrical.
In both of these cases, it is possible to have the same packet
selected for intersection on both its ingress and egress
interface. Nonetheless, only one instance of the packet is
sent to the Mediation Device.
If the value is -2, packets belonging to a Voice over IP (VoIP)
session identified by pktcESTapStreamSourceAddress,
pktcESTapStreamSourceLen & pktcESTapStreamSourceL4PortMin may be
intercepted, as a specific voice session can be identified
with source IP address and udp port number. Other selection
parameters may be not considered, even if they are set by
the Mediation Device.
This value must be set when creating a stream entry, either to
select an interface, to select all interfaces, or to select the
interface that routing chooses. Some platforms may not
implement the entire range of options. |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
Integer32 |
-2..2147483647 |
|
pktcESTapStreamDestinationAddress |
1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.3 |
The Destination address or prefix used in packet selection.
This address will be of the type specified in
pktcESTapStreamAddrType. |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
InetAddress |
|
|
pktcESTapStreamDestinationLength |
1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.4 |
The length of the Destination Prefix. A value of zero causes
all addresses to match. This prefix length will be consistent
with the type specified in pktcESTapStreamAddrType. |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
InetAddressPrefixLength |
|
|
pktcESTapStreamSourceAddress |
1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.5 |
The Source Address used in packet selection. This address will
be of the type specified in pktcESTapStreamAddrType. |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
InetAddress |
|
|
pktcESTapStreamSourceLength |
1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.6 |
The length of the Source Prefix. A value of zero causes all
addresses to match. This prefix length will be consistent with
the type specified in pktcESTapStreamAddrType. |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
InetAddressPrefixLength |
|
|
pktcESTapStreamTosByte |
1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.7 |
The value of the TOS byte, when masked with
pktcESTapStreamTosByteMask, of traffic to be intercepted. If
pktcESTapStreamTosByte&(~pktcESTapStreamTosByteMask)!=0,
PKT-SP-ES-INF-I02-061013 PacketCableTM 2.0
56 CableLabs 10/13/06
configuration is rejected. |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
Integer32 |
0..255 |
|
pktcESTapStreamTosByteMask |
1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.8 |
The value of the TOS byte in an IPv4 or IPv6 header is ANDed
with pktcESTapStreamTosByteMask and compared with
pktcESTapStreamTosByte. If the values are equal, the
comparison
is equal. If the mask is zero and the TosByte value is zero,
the result is to always accept. |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
Integer32 |
0..255 |
|
pktcESTapStreamFlowId |
1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.9 |
The flow identifier in an IPv6 header. -1 indicates that the
Flow Id is unused. |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
Integer32 |
-1 | 0..1048575 |
|
pktcESTapStreamProtocol |
1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.10 |
The IP protocol to match against the IPv4 protocol number or
the IPv6 Next- Header number in the packet. -1 means 'any IP
protocol'. |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
Integer32 |
-1 | 0..255 |
|
pktcESTapStreamDestL4PortMin |
1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.11 |
The minimum value that the layer-4 destination port number in
the packet must have in order to match. This value must be
equal to or less than the value specified for this entry in
pktcESTapStreamDestL4PortMax.
If both pktcESTapStreamDestL4PortMin and
pktcESTapStreamDestL4PortMax
are at their default values, the port number is effectively
unused. |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
InetPortNumber |
|
|
pktcESTapStreamDestL4PortMax |
1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.12 |
The maximum value that the layer-4 destination port number in
the packet must have in order to match this classifier entry.
This value must be equal to or greater than the value specified
for this entry in pktcESTapStreamDestL4PortMin.
If both pktcESTapStreamDestL4PortMin and
pktcESTapStreamDestL4PortMax
are at their default values, the port number is effectively
unused. |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
InetPortNumber |
|
|
pktcESTapStreamSourceL4PortMin |
1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.13 |
The minimum value that the layer-4 destination port number in
the packet must have in order to match. This value must be
equal to or less than the value specified for this entry in
pktcESTapStreamSourceL4PortMax.
If both pktcESTapStreamSourceL4PortMin and
pktcESTapStreamSourceL4PortMax are at their default values, the
port number is effectively unused. |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
InetPortNumber |
|
|
pktcESTapStreamSourceL4PortMax |
1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.14 |
The maximum value that the layer-4 destination port number in
the packet must have in order to match this classifier entry.
This value must be equal to or greater than the value specified
for this entry in pktcESTapStreamSourceL4PortMin.
If both pktcESTapStreamSourceL4PortMin and
pktcESTapStreamSourceL4PortMax are at their default values, the
port number is effectively unused. |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
InetPortNumber |
|
|
pktcESTapStreamVRF |
1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.15 |
An ASCII string, which is the name of a Virtual Routing
and Forwarding (VRF) table comprising the routing context
of a Virtual Private Network. The interface or set of
interfaces on which the packet might be found should be
selected from the set of interfaces in the VRF table.
A string length of zero implies that global routing table
be used for selection of interfaces on which the packet
might be found. |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
SnmpAdminString |
|
|
pktcESTapStreamStatus |
1.3.6.1.4.1.4491.2.2.9.1.2.1.1.2.1.16 |
The status of this conceptual row. This object manages
creation, modification, and deletion of rows in this table.
When any rows must be changed, pktcESTapStreamStatus must be
first set to 'notInService'. |
Status: current |
Access: read-create |
OBJECT-TYPE |
|
|
|
|
RowStatus |
|
|
pktcESIpTapMIBCompliance |
1.3.6.1.4.1.4491.2.2.9.1.2.2.1.1 |
The compliance statement for entities which implement the
Intercept MIB for IP. |
Status: current |
Access: read-create |
MODULE-COMPLIANCE |
|
|
|
pktcESIpTapStreamComplianceGroup |
1.3.6.1.4.1.4491.2.2.9.1.2.2.2.1 |
These objects are necessary for a description of IPv4 and IPv6
packets to select for interception. |
Status: current |
Access: read-create |
OBJECT-GROUP |
|
|
|