No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

MIB Reference

AR100-S, AR110-S, AR120-S, AR150-S, AR160-S, AR200-S, AR1200-S, AR2200-S, and AR3200-S V200R009

Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
hwAclIpv6AdvancedRuleTable

hwAclIpv6AdvancedRuleTable

This table is used to create the rule of an advanced ACL. This table uses the index of hwAclIpv6NumGroupTable and the rule ID as the indexes.

The indexes of this table are hwAclIpv6AdvancedAclNum and hwAclIpv6AdvancedSubitem.

The OID prefix of this table is 1.3.6.1.4.1.2011.5.1.1.13.1.

OID

Object Name

Syntax

Description

Access

Status

1.3.6.1.4.1.2011.5.1.1.13.1.1

hwAclIpv6AdvancedAclNum

Integer32

This object indicates the primary index, which corresponds to the index in hwAclNumGroupTable. It indicates the number of an ACL. The value ranges from 3000 to 3999.

Read-only

Current

1.3.6.1.4.1.2011.5.1.1.13.1.2

hwAclIpv6AdvancedSubitem

Unsigned32

This object indicates the secondary index, indicating the rule ID in an ACL. The value ranges from 0 to 4294967294.

Read-only

Current

1.3.6.1.4.1.2011.5.1.1.13.1.3

hwAclIpv6AdvancedAct

INTEGER

This object indicates the action to which the ACL corresponds.
  • 1: permit
  • 2: deny

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.4

hwAclIpv6AdvancedProtocol

Integer32

This object indicates the protocol number. The value ranges from 1 to 255.

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.5

hwAclIpv6AdvancedSrcIp

Ipv6Address

This object indicates the source IPv6 address.

When the Set operation is performed, the value is in hexadecimal notation. For example, if the source IPv6 address is : 2000::2, you need to enter the following value:

# 0x20 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x02

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.6

hwAclIpv6AdvancedSrcPrefix

Integer32

This object indicates the length of the source IPv6 address prefix.The value ranges from 1 to 128.

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.7

hwAclIpv6AdvancedSrcOp

INTEGER

This object indicates the operation characters on the source port.
  • 1: lt
  • 2: eq
  • 3: gt
  • 5: range

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.8

hwAclIpv6AdvancedSrcPort1

Integer32

This object indicates the start number of a source port. (The lower port number)

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.9

hwAclIpv6AdvancedSrcPort2

Integer32

This object indicates the end number of a source port. (The higher port number)

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.10

hwAclIpv6AdvancedDestIp

Ipv6Address

This object indicates the destination IPv6 address.

When the Set operation is performed, the value is in hexadecimal notation. For example, if the destination IPv6 address is : 2000::2, you need to enter the following value:

# 0x20 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x00 0x02

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.11

hwAclIpv6AdvancedDestPrefix

Integer32

This object indicates the length of the destination IPv6 address prefix.The value ranges from 1 to 128.

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.12

hwAclIpv6AdvancedDestOp

INTEGER

This object indicates the operation characters on the destination port.
  • 1: lt
  • 2: eq
  • 3: gt
  • 5: range

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.13

hwAclIpv6AdvancedDestPort1

Integer32

This object indicates the start number of a destination port. (The lower port number)

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.14

hwAclIpv6AdvancedDestPort2

Integer32

This object indicates the end number of a destination port. (The higher port number)

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.15

hwAclIpv6AdvancedPrecedence

Integer32

This object indicates the precedence field, that is, the three leftmost bits of the ToS field in an IP packet. The value ranges from 0 to 7.

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.16

hwAclIpv6AdvancedTos

Integer32

This object indicates the precedence field, that is, four bits after the three leftmost bits of the ToS field in an IP packet. The value ranges from 0 to 15.

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.17

hwAclIpv6AdvancedDscp

Integer32

This object indicates the DSCP value, that is, the seven leftmost bits of the ToS field in an IP header. The value ranges from 0 to 63.

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.19

hwAclIpv6AdvancedTimeRangeIndex

Integer32

This object indicates the time range index used by an ACL rule. The value ranges from 1 to 256.

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.20

hwAclIpv6AdvancedIcmpType

Integer32

This object indicates the ICMP type. The value ranges from 0 to 255.

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.21

hwAclIpv6AdvancedIcmpCode

Integer32

This object indicates the ICMP code. The value ranges from 0 to 255.

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.22

hwAclIpv6AdvancedFragment

INTEGER

This object indicates whether a packet is a fragmented packet:
  • 0: non-first fragment
  • 1: all fragments

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.24

hwAclIpv6AdvancedEnable

EnabledStatus

This object indicates whether the rule is valid. The field can be read only.
  • 1: true
  • 2: false

Read-only

Current

1.3.6.1.4.1.2011.5.1.1.13.1.25

hwAclIpv6AdvancedCount

Counter64

This object indicates the number of times the ACL rule can be matched. A maximum of 32 bits are supported.

Read-only

Current

1.3.6.1.4.1.2011.5.1.1.13.1.27

hwAclIpv6AdvancedRowStatus

RowStatus

This object indicates the row status:

  • 1: Active
  • 4: createandgo
  • 6: destroy

Read-create

Current

1.3.6.1.4.1.2011.5.1.1.13.1.28

hwAclIpv6AdvancedDescription

OCTET STRING

This object indicates the rule description, which is a string of 1 to 127 characters without question mark (?).

Read-create

Current

Creation Restriction

  • Before creating a rule, ensure that the value of the primary index exists in hwAclIpv6NumGroupTable.

  • When creating a rule, ensure that the hwAclIpv6AdvancedAct and hwAclIpv6AdvancedProtocol fields are mandatory.

  • hwAclIpv6AdvancedSrcIp and hwAclIpv6AdvancedSrcWild must be set simultaneously.

  • hwAclIpv6AdvancedSrcOp and (hwAclIpv6AdvancedSrcPort1 | hwAclIpv6AdvancedSrcPort2) must be set simultaneously.

  • hwAclIpv6AdvancedDestIp and hwAclIpv6AdvancedDestWild must be set simultaneously.

  • hwAclIpv6AdvancedDestOp and (hwAclIpv6AdvancedDestPort1| hwAclIpv6AdvancedDestPort2) must be set simultaneously.

  • hwAclIpv6AdvancedIcmpType and hwAclIpv6AdvancedIcmpCode must be set simultaneously.

  • You need to apply an existing time range to the created rule in the MIB.

Modification Restriction

When modifying entries, set the value of hwAclIpv6AdvancedRowStatus to 1 (Active).

When modifying a rule, ensure that hwAclIpv6AdvancedAct and hwAclIpv6AdvancedProtocol are mandatory.

hwAclIpv6AdvancedSrcIp and hwAclIpv6AdvancedSrcWild must be set simultaneously.

hwAclIpv6AdvancedSrcOp and (hwAclIpv6AdvancedSrcPort1 | hwAclIpv6AdvancedSrcPort2) must be set simultaneously.

hwAclIpv6AdvancedDestIp and hwAclIpv6AdvancedDestWild must be set simultaneously.

hwAclIpv6AdvancedDestOp and (hwAclIpv6AdvancedDestPort1| hwAclIpv6AdvancedDestPort2) must be set simultaneously.

hwAclIpv6AdvancedIcmpType and hwAclIpv6AdvancedIcmpCode must be set simultaneously.

You need to apply an existing time range to the modified rule in the MIB.

Deletion Restriction

The entries in this table can be deleted without restriction.

Access Restriction

The value of this table exists only when the value of hwAclIpv6NumGroupTable exists.

Translation
Download
Updated: 2019-07-19

Document ID: EDOC1000174090

Views: 500725

Downloads: 49

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next