chivIpVerifyCheckTypeName

  • 1.3.6.1.4.1.9.9.804.1.1.1.2
  • Access noaccess
  • Type addressSrcBroadcast(1), addressSrcMulticast(2), addressDestZero(3), addressIdentical(4), addressSrcReserved(5), addressClassE(6), checksum(7), protocol(8), fragment(9), lengthMinimum(10), lengthConsistent(11), lengthMaximumFragment(12), lengthMaximumUdp(13), lengthMaximumTcp(14), tcpFlags(15), tcpTinyFlags(16), version(17)

This object indicates the IDS packet check type which can be configured on the device. Each check type is a specific criteria. Those IP packets that matches the certain criteria are dropped. addressSrcBroadcast(1) Drop the IPv4 packet if the source address is a broadcast IPv4 address. addressSrcMulticast(2) Drop the IPv4 packet if the source address is a multicast IPv4 address. addressDestZero(3) Drop the IPv4 packet if the destination address is 0.0.0.0. addressIdentical(4) Drop the IPv4 packet if the source IPv4 address is identical to destination IPv4 address. addressSrcReserved(5) Drop the IPv4 packet if the source address is a reserved IPv4 address. addressClassE(6) Drop the IPv4 packet if either the source address or destination address is a class E IPv4 address. checksum(7) Drops the IPv4 packet if its checksum is invalid. protocol(8) Drop the IPv4 packet if the packet fragment has an invalid IP protocol number fragment(9) Drop the IPv4 packet if the packet fragment has a nonzero offset and the DF bit is active. lengthMinimum(10) Drop the IPv4 packet if the Ethernet frame length is less than the IP packet length plus four octets (the CRC length). lengthConsistent(11) Drop the IPv4 or IPv6 packet where the Ethernet frame size is greater than or equal to the IP packet length plus the Ethernet header. lengthMaximumFragment(12) Drop the IPv4 or IPv6 packet if the maximum fragment offset is greater than 65536. lengthMaximumUdp(13) Drop the IPv4 or IPv6 packet if the IP payload length is less than the UDP packet length. lengthMaximumTcp(14) Drop the IPv4 or IPv6 packet if the TCP length is greater than the IP payload length. tcpFlags(15) Drop the IPv4 packet if verification of TCP packet header fails. tcpTinyFlags(16) Drop the IPv4 or IPv6 packet if the IP fragment offset is 1, or if the IP fragment offset is 0 and the IP payload length is less than 16. version(17) Drop the IPv4 packet if the Ethertype is not set to 4 (IPv4); and drops the IPv6 packet if the Ethertype is not set to 6 (IPv6).

This OID is also declared by other modules: CISCO-HARDWARE-IP-VERIFY-MIB

Details

Possible values
1 addressSrcBroadcast
2 addressSrcMulticast
3 addressDestZero
4 addressIdentical
5 addressSrcReserved
6 addressClassE
7 checksum
8 protocol
9 fragment
10 lengthMinimum
11 lengthConsistent
12 lengthMaximumFragment
13 lengthMaximumUdp
14 lengthMaximumTcp
15 tcpFlags
16 tcpTinyFlags
17 version

Table columns

8 objects
Oid Name Access Type
1.3.6.1.4.1.9.9.804.1.1.1.1 chivIpVerifyCheckIpType noaccess ipv4(1), ipv6(2)
1.3.6.1.4.1.9.9.804.1.1.1.1 chivIpVerifyCheckIpType noaccess ipv4(1), ipv6(2)
1.3.6.1.4.1.9.9.804.1.1.1.2 chivIpVerifyCheckTypeName noaccess addressSrcBroadcast(1), addressSrcMulticast(2), addressDestZero(3), addressIdentical(4), addressSrcReserved(5), addressClassE(6), checksum(7), protocol(8), fragment(9), lengthMinimum(10), lengthConsistent(11), lengthMaximumFragment(12), lengthMaximumUdp(13), lengthMaximumTcp(14), tcpFlags(15), tcpTinyFlags(16), version(17)
1.3.6.1.4.1.9.9.804.1.1.1.2 chivIpVerifyCheckTypeName noaccess addressSrcBroadcast(1), addressSrcMulticast(2), addressDestZero(3), addressIdentical(4), addressSrcReserved(5), addressClassE(6), checksum(7), protocol(8), fragment(9), lengthMinimum(10), lengthConsistent(11), lengthMaximumFragment(12), lengthMaximumUdp(13), lengthMaximumTcp(14), tcpFlags(15), tcpTinyFlags(16), version(17)
1.3.6.1.4.1.9.9.804.1.1.1.3 chivIpVerifyCheckStatus readwrite disabled(1), enabled(2)
1.3.6.1.4.1.9.9.804.1.1.1.3 chivIpVerifyCheckStatus readwrite disabled(1), enabled(2)
1.3.6.1.4.1.9.9.804.1.1.1.4 chivIpVerifyPacketsDropped readonly Counter64
1.3.6.1.4.1.9.9.804.1.1.1.4 chivIpVerifyPacketsDropped readonly Counter64

Comments