CipUrpfIfMonEntry |
|
SEQUENCE |
|
|
|
|
cipUrpfIfIpVersion |
INTEGER |
|
|
cipUrpfIfDrops |
Counter32 |
|
|
cipUrpfIfSuppressedDrops |
Counter32 |
|
|
cipUrpfIfDropRate |
Gauge32 |
|
|
cipUrpfIfDiscontinuityTime |
TimeStamp |
|
CipUrpfIfConfEntry |
|
SEQUENCE |
|
|
|
|
cipUrpfIfDropRateNotifyEnable |
TruthValue |
|
|
cipUrpfIfNotifyDropRateThreshold |
Unsigned32 |
|
|
cipUrpfIfNotifyDrHoldDownReset |
TruthValue |
|
|
cipUrpfIfCheckStrict |
INTEGER |
|
|
cipUrpfIfWhichRouteTableID |
INTEGER |
|
|
cipUrpfIfVrfName |
SnmpAdminString |
|
CipUrpfVrfIfEntry |
|
SEQUENCE |
|
|
|
|
cipUrpfVrfIfDrops |
Counter32 |
|
|
cipUrpfVrfIfDiscontinuityTime |
TimeStamp |
|
cipUrpfEntry |
1.3.6.1.4.1.9.9.451.1.2.1.1 |
If the managed device supports URPF dropping,
a row exists for each IP version type (v4 and v6).
A row contains summary information on URPF
dropping over the entire managed device. |
Status: current |
Access: not-accessible |
OBJECT-TYPE |
|
|
|
|
CipUrpfEntry |
|
|
cipUrpfDropRate |
1.3.6.1.4.1.9.9.451.1.2.1.1.3 |
The rate of packet drops of IP version cipUrpfIpVersion
packets due to URPF for the managed device. The
per-interface drop rate notification is issued on rates
exceeding a limit (rising rate). This dropping may indicate
an security attack on the network. To determine whether the
attack/event is over, the NMS must consult the managed
device. This object can be polled to determine the recent
drop rate for the managed device as a whole, in addition to
querying particular interface objects.
This object is the
average rate of dropping over the most recent window of
time. The rate is computed by dividing the number of packets
dropped over a window by the window time in seconds. The
window time is specified by cipUrpfDropRateWindow. Each time
the drop rate is computed, and at system startup, a snapshot
is taken of the latest value of cipUrpfDrops. Subtracting
from this the snapshot of cipUrpfDrops at the start of the
current window of time gives the number of packets dropped.
The drop rate is computed every cipUrpfComputeInterval
seconds. As an example, let cipUrpfDropRateWindow be 300
seconds, and cipUrpfComputeInterval 30 seconds. Every 30
seconds, the drop count five minutes previous is subtracted
from the current drop count, and the result is divided by
300 to arrive at the drop rate.
At device start-up, until
the device has been up more than cipUrpfDropRateWindow, when
drop rate is computed, the value of cipUrpfDrops is divided
by the time the device has been up.
After the device has
been up for cipUrpfDropRateWindow, when drop rate is
computed, the number of packet drops counted from interval
start time to the computation time is divided by
cipUrpfDropRateWindow.
Changes to cipUrpfDropRateWindow are
not reflected in this object until the next computation
time.
The rate from the most recent computation is the
value fetched until the subsequent computation is
performed. |
Status: current |
Access: read-only |
OBJECT-TYPE |
|
|
|
|
Gauge32 |
|
|
cipUrpfIfMonEntry |
1.3.6.1.4.1.9.9.451.1.2.2.1 |
If IPv4 packet forwarding is configured on an interface,
and is configured to perform URPF checking, a row appears
in this table with indices [ifIndex][ipv4]. If IPv4
packet forwarding is deconfigured, or URPF checking
is deconfigured, the row disappears.
If IPv6 packet forwarding is configured on an interface,
and is configured to perform URPF checking, a row appears
in the table with indices [ifIndex][ipv6]. If IPv6
packet forwarding is deconfigured, or URPF checking
is deconfigured, the row disappears. |
Status: current |
Access: not-accessible |
OBJECT-TYPE |
|
|
|
|
CipUrpfIfMonEntry |
|
|
cipUrpfIfConfEntry |
1.3.6.1.4.1.9.9.451.1.3.1.1 |
A row exists in this table if a row exists
in cipUrpfIfMonTable. |
Status: current |
Access: not-accessible |
OBJECT-TYPE |
|
|
|
|
CipUrpfIfConfEntry |
|
|
cipUrpfVrfEntry |
1.3.6.1.4.1.9.9.451.1.4.1.1 |
An entry exists for a VRF if and only if the VRF
is associated with an interface that is configured
to perform IP URPF checking using the routing table
for that VRF. |
Status: current |
Access: not-accessible |
OBJECT-TYPE |
|
|
|
|
CipUrpfVrfEntry |
|
|
cipUrpfVrfIfEntry |
1.3.6.1.4.1.9.9.451.1.2.3.1 |
An entry exists for a VRF and interface if and only
if the VRF associated with the interface is configured
to perform IP URPF checking using the routing
table for the VRF. |
Status: current |
Access: not-accessible |
OBJECT-TYPE |
|
|
|
|
CipUrpfVrfIfEntry |
|
|
ciscoIpUrpfMIBMainObjectGroup |
1.3.6.1.4.1.9.9.451.2.2.1 |
The collection of common counter objects, those
needed by other objects, and the common interface
table. |
Status: current |
Access: read-only |
OBJECT-GROUP |
|
|
|