-- *****************************************************************
-- CISCO-DHCP-SNOOPING-MIB
--
-- March 2004, Edward Pham
--
-- Copyright (c) 2004, 2005, 2006, 2007 by cisco Systems, Inc.
-- All rights reserved.
-- *****************************************************************CISCO-DHCP-SNOOPING-MIB DEFINITIONS::=BEGINIMPORTSMODULE-IDENTITY,OBJECT-TYPE,Unsigned32,Counter32,Counter64
FROM SNMPv2-SMI
MODULE-COMPLIANCE,OBJECT-GROUPFROM SNMPv2-CONF
TruthValue,MacAddress,RowStatusFROM SNMPv2-TC
SnmpAdminStringFROM SNMP-FRAMEWORK-MIB
ifIndex,InterfaceIndexFROM IF-MIB
InetAddressType,InetAddressFROM INET-ADDRESS-MIB
VlanIndexFROM Q-BRIDGE-MIB
ciscoMgmt
FROM CISCO-SMI;ciscoDhcpSnoopingMIB MODULE-IDENTITYLAST-UPDATED"200707120000Z"ORGANIZATION"Cisco Systems, Inc."CONTACT-INFO
"Cisco Systems
Customer Service
Postal: 170 W Tasman Drive
San Jose, CA 95134
USA
Tel: +1 800 553-NETS
E-mail: cs-lan-switch-snmp@cisco.com"DESCRIPTION"The MIB module is for configuration of DHCP Snooping
feature. DHCP Snooping is a security mechanism which
uses information gleaned from DHCP packets to provide
per-interface security capabilities."REVISION"200707120000Z"DESCRIPTION"Add cdsIfVlanRelayInfoOptCircuitIdGroup,
cdsStatisticsExtGroup
and deprecate cdsRelayAgentRemoteIdGroup with
cdsRelayAgentInfoOptRemoteIdSubGroup."REVISION"200705300000Z"DESCRIPTION"Add cdsBindingsHostnameGroup"REVISION"200603161600Z"DESCRIPTION"Add cdsBindingsLimitGroup,
cdsStaticBindingsGroup,
cdsIfSrcGuardIpFilterGroup,
cdsIfSrcGuardTrafficFilterGroup,
cdsIfSrcGuardExtGroup
and deprecate cdsIfSrcGuardGroup with cdsIfSrcGuardGroupRev1."REVISION"200510260000Z"DESCRIPTION"Add cdsIfFeatureConfigGroup."REVISION"200403040000Z"DESCRIPTION"Initial revision of this MIB module."::={ ciscoMgmt 380}ciscoDhcpSnoopingMIBNotifs OBJECTIDENTIFIER::={ ciscoDhcpSnoopingMIB 0}ciscoDhcpSnoopingMIBObjects OBJECTIDENTIFIER::={ ciscoDhcpSnoopingMIB 1}ciscoDhcpSnoopingMIBConformance OBJECTIDENTIFIER::={ ciscoDhcpSnoopingMIB 2}
cdsGlobal OBJECTIDENTIFIER::={ ciscoDhcpSnoopingMIBObjects 1}cdsVlan OBJECTIDENTIFIER::={ ciscoDhcpSnoopingMIBObjects 2}cdsInterface OBJECTIDENTIFIER::={ ciscoDhcpSnoopingMIBObjects 3}cdsBindings OBJECTIDENTIFIER::={ ciscoDhcpSnoopingMIBObjects 4}cdsStatistics OBJECTIDENTIFIER::={ ciscoDhcpSnoopingMIBObjects 5}cdsSrcGuard OBJECTIDENTIFIER::={ ciscoDhcpSnoopingMIBObjects 6}
-- The Global groupcdsFeatureEnable OBJECT-TYPESYNTAXTruthValueMAX-ACCESSread-writeSTATUScurrentDESCRIPTION"This object indicates whether the DHCP Snooping feature is
enabled at the device level.
Setting this object to 'false' disables the DHCP Snooping
feature globally thus disabling the feature at each VLAN.
Setting this object to 'true' will start the DHCP Snooping
feature running in the device. Once the DHCP Snooping is
enabled, whether the feature is running at each VLAN is
controlled by the cdsVlanConfigTable."::={ cdsGlobal 1}cdsDatabaseFile OBJECT-TYPESYNTAXSnmpAdminStringMAX-ACCESSread-write
STATUScurrentDESCRIPTION"This object indicates the name of the database file used
to store DHCP bindings information."::={ cdsGlobal 2}cdsDatabaseUpdateInterval OBJECT-TYPESYNTAXUnsigned32UNITS"seconds"MAX-ACCESSread-writeSTATUScurrentDESCRIPTION"This object indicates the time interval at which DHCP
bindings information will be written to the database file
denoted by cdsDatabaseFile object. Setting this object
to zero will disable the storage of DHCP bindings."::={ cdsGlobal 3}cdsRelayAgentInfoOptEnable OBJECT-TYPESYNTAXTruthValue
MAX-ACCESSread-writeSTATUScurrentDESCRIPTION"This object indicates if the DHCP relay agent information
option (option 82) will be inserted to DHCP packets by
DHCP Snooping feature.
If this object is set to 'true', DHCP option 82 data will
be inserted to DHCP packets.
If this object is set to 'false', DHCP option 82 data
will not be inserted."REFERENCE"RFC 3046, DHCP Relay Agent Information Option."::={ cdsGlobal 4}cdsRelayAgentInfoOptRemoteId OBJECT-TYPESYNTAXMacAddressMAX-ACCESSread-onlySTATUSdeprecatedDESCRIPTION"This object indicates the Remote ID used as part of the
DHCP relay information option (option 82) data inserted
to DHCP packets by DHCP Snooping feature.
The value of this object is ignored whenever the value
of cdsRelayAgentInfoOptEnable object is 'false'.
This object is deprecated and superceded by
cdsRelayAgentInfoOptRemoteIdSub object."REFERENCE"RFC 3046, DHCP Relay Agent Information Option."::={ cdsGlobal 5}cdsMatchMacAddressEnable OBJECT-TYPESYNTAXTruthValueMAX-ACCESSread-writeSTATUScurrentDESCRIPTION"This object indicates if DHCP Snooping Mac address
matching is enabled.
If this object is set to 'true', DHCP Snooping Mac
address matching is enabled.
If this object is set to 'false', DHCP Snooping Mac
address matching is disabled."::={ cdsGlobal 6}
cdsGlobalMaxBindingsLimit OBJECT-TYPESYNTAXUnsigned32MAX-ACCESSread-writeSTATUScurrentDESCRIPTION"This object specifies the maximum number of DHCP
bindings allowed in the device."::={ cdsGlobal 7}cdsRelayAgentInfoOptRemoteIdSub OBJECT-TYPESYNTAXOCTETSTRING(SIZE(1..64))MAX-ACCESSread-writeSTATUScurrentDESCRIPTION"This object specifies the Remote ID used in Agent Remote ID
sub-option of the DHCP relay information option (option 82)
data inserted to DHCP packets by DHCP Snooping feature.
The value of this object is in a format of a user-defined
string. Its default value is the device's MAC address.
The value of this object is ignored whenever the value
of cdsRelayAgentInfoOptEnable object is 'false'."REFERENCE"RFC 3046, DHCP Relay Agent Information Option."::={ cdsGlobal 8}-- The DHCP Snooping Vlan Group
----
-- The DHCP Snooping VLAN Config TablecdsVlanConfigTable OBJECT-TYPESYNTAXSEQUENCEOF CdsVlanConfigEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"A table provides the mechanism to control DHCP Snooping
per VLAN. When a VLAN is created in a device supporting this
table, a corresponding entry of this table will be added."
::={ cdsVlan 1}cdsVlanConfigEntry OBJECT-TYPESYNTAX CdsVlanConfigEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"A row instance contains the configuration to enable
or disable DHCP Snooping at each existing VLAN."INDEX{ cdsVlanIndex }::={ cdsVlanConfigTable 1}
CdsVlanConfigEntry ::=SEQUENCE{
cdsVlanIndex VlanIndex,
cdsVlanDhcpSnoopingEnable TruthValue}cdsVlanIndex OBJECT-TYPESYNTAXVlanIndexMAX-ACCESSnot-accessible
STATUScurrentDESCRIPTION"This object indicates the VLAN number on which DHCP Snooping
feature is configured."::={ cdsVlanConfigEntry 1}cdsVlanDhcpSnoopingEnable OBJECT-TYPESYNTAXTruthValueMAX-ACCESSread-writeSTATUScurrentDESCRIPTION"This object indicates whether DHCP Snooping is enabled in
this VLAN.
If this object is set to 'true', DHCP Snooping is enabled.
If this object is set to 'false', DHCP Snooping is disabled."::={ cdsVlanConfigEntry 2}-- The DHCP Snooping Interface Group
----
-- The DHCP Snooping Interface Config TablecdsIfConfigTable OBJECT-TYPE
SYNTAXSEQUENCEOF CdsIfConfigEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"A table provides the mechanism to configure the trust
state for DHCP Snooping purpose at each interface
capable of this feature. Some of the interfaces
(but not limited to) for which this feature might be
applicable are: ifType = ethernetCsmacd(6)."::={ cdsInterface 1}cdsIfConfigEntry OBJECT-TYPESYNTAX CdsIfConfigEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"A row instance contains the configuration to enable
or disable trust state for DHCP Snooping at each
interface capable of this feature."INDEX{ ifIndex }::={ cdsIfConfigTable 1}
CdsIfConfigEntry ::=SEQUENCE{
cdsIfTrustEnable TruthValue}cdsIfTrustEnable OBJECT-TYPESYNTAXTruthValueMAX-ACCESSread-writeSTATUScurrentDESCRIPTION"This object indicates whether the interface is trusted for
DHCP Snooping purpose.
If this object is set to 'true', the interface is trusted.
DHCP packets coming to this interface will be forwarded
without checking.
If this object is set to 'false', the interface is not
trusted. DHCP packets coming to this interface will be
subjected to DHCP checks."::={ cdsIfConfigEntry 1}-- The DHCP Snooping Rate Limit Interface Config TablecdsIfRateLimitTable OBJECT-TYPESYNTAXSEQUENCEOF CdsIfRateLimitEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"A table provides the mechanism to configure the rate limit
for DHCP Snooping purpose at each interface capable
of this feature. Some of the interfaces (but not limited to)
for which this feature might be applicable are:
ifType = ethernetCsmacd(6)."::={ cdsInterface 2}cdsIfRateLimitEntry OBJECT-TYPESYNTAX CdsIfRateLimitEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"A row instance contains the configuration of rate limit
DHCP Snooping at each interface capable of this
feature."INDEX{ ifIndex }::={ cdsIfRateLimitTable 1}
CdsIfRateLimitEntry ::=SEQUENCE{
cdsIfRateLimit Unsigned32}cdsIfRateLimit OBJECT-TYPESYNTAXUnsigned32UNITS"packets per second"MAX-ACCESSread-writeSTATUScurrentDESCRIPTION"This object indicates rate limit value for DHCP Snooping
purpose. If the value of this object is 0, no rate limit is
applied for DHCP traffic at this interface."::={ cdsIfRateLimitEntry 1}-- The DHCP Snooping Interface Feature Enable Table
cdsIfFeatureConfigTable OBJECT-TYPESYNTAXSEQUENCEOF CdsIfFeatureConfigEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"A table provides the mechanism to enable or disable
DHCP Snooping feature at each interface capable of this
feature. Some of the interfaces (but not limited to) for
which this configuration might be applicable are:
ifType = ethernetCsmacd(6)."::={ cdsInterface 3}cdsIfFeatureConfigEntry OBJECT-TYPESYNTAX CdsIfFeatureConfigEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"A row instance contains the configuration to enable
or disable DHCP Snooping at each interface capable of this
feature."INDEX{ ifIndex }::={ cdsIfFeatureConfigTable 1}
CdsIfFeatureConfigEntry ::=SEQUENCE{
cdsIfFeatureEnable TruthValue}cdsIfFeatureEnable OBJECT-TYPESYNTAXTruthValueMAX-ACCESSread-writeSTATUScurrentDESCRIPTION"This object indicates whether the DHCP Snooping feature
is enabled at this interface.
If this object is set to 'true', DHCP Snooping is enabled.
If this object is set to 'false', DHCP Snooping is disabled."::={ cdsIfFeatureConfigEntry 1}-- The DHCP Bindings limit tablecdsIfBindingsLimitTable OBJECT-TYPE
SYNTAXSEQUENCEOF CdsIfBindingsLimitEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"A table provides the mechanism to configure the binding limit
for DHCP Snooping purpose at each interface capable of
this feature. Some of the interfaces (but not limited to)
for which this feature might be applicable are:
ifType = ethernetCsmacd(6)."::={ cdsInterface 4}cdsIfBindingsLimitEntry OBJECT-TYPESYNTAX CdsIfBindingsLimitEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"A row instance contains the configuration of binding limit at
each interface capable of this feature."INDEX{ ifIndex }::={ cdsIfBindingsLimitTable 1}
CdsIfBindingsLimitEntry ::=SEQUENCE{
cdsIfBindingsLimit Unsigned32}cdsIfBindingsLimit OBJECT-TYPESYNTAXUnsigned32MAX-ACCESSread-writeSTATUScurrentDESCRIPTION"This object specifies the maximum number of DHCP bindings
allowed on this interface. This objects value will limit
the number of entries in cdsBindingsTable and
cdsStaticBindingsTable. The sum of all instances' value of
cdsIfBindingsLimit in this table should be less than or equal
to the object value of cdsGlobalMaxBindingsLimit."::={ cdsIfBindingsLimitEntry 1}-- DHCP Snooping Option 82 circuit-id tablecdsIfVlanRelayInfoOptCircuitIdTable OBJECT-TYPESYNTAXSEQUENCEOF CdsIfVlanRelayInfoOptCircuitIdEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"Each entry in this table represent circuit-id information,
configured on per port per vlan."::={ cdsInterface 5}cdsIfVlanRelayInfoOptCircuitIdEntry OBJECT-TYPESYNTAX CdsIfVlanRelayInfoOptCircuitIdEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"Entry contains circuit-id information for a particular interface
and VLAN."INDEX{
ifIndex,
cdsIfVlan
}::={ cdsIfVlanRelayInfoOptCircuitIdTable 1}
CdsIfVlanRelayInfoOptCircuitIdEntry ::=SEQUENCE{
cdsIfVlan VlanIndex,
cdsIfVlanRelayInfoOptCircuitId OCTETSTRING,
cdsIfVlanRelayInfoOptCircuitIdStatus RowStatus}cdsIfVlan OBJECT-TYPESYNTAXVlanIndexMAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"This object indicates the VLAN on which circuit-id is
configured."::={ cdsIfVlanRelayInfoOptCircuitIdEntry 1}
cdsIfVlanRelayInfoOptCircuitId OBJECT-TYPESYNTAXOCTETSTRING(SIZE(1..64))MAX-ACCESSread-createSTATUScurrentDESCRIPTION"This object specifies circuit-id used in Agent Circuit ID
sub-option of the DHCP relay information option (option 82)
data inserted to DHCP packets by DHCP Snooping feature.
The value of this object is in a format of a user-defined
string.
The value of this object is ignored whenever the value
of cdsRelayAgentInfoOptEnable object is 'false'."REFERENCE"RFC 3046, DHCP Relay Agent Information Option."::={ cdsIfVlanRelayInfoOptCircuitIdEntry 2}cdsIfVlanRelayInfoOptCircuitIdStatus OBJECT-TYPE
SYNTAXRowStatusMAX-ACCESSread-createSTATUScurrentDESCRIPTION"This object is used to manage the creation and deletion
of rows in this table. It only supports 'active(1)',
'destroy(6)' and 'createAndGo(4)' value.
Entry in this table gets created by setting
cdsIfVlanRelayInfoOptCircuitIdStatus object to 'createAndGo'.
Entry in this table gets deleted by setting
cdsIfVlanRelayInfoOptCircuitIdStatus object to 'destroy'
Value of cdsIfRelayInfoOptCircuitId object can be
modified when the value of this RowStatus object is
'active'."::={ cdsIfVlanRelayInfoOptCircuitIdEntry 3}-- The DHCP Bindings groupcdsBindingsTable OBJECT-TYPESYNTAXSEQUENCEOF CdsBindingsEntry
MAX-ACCESSnot-accessible
STATUScurrentDESCRIPTION"A table provides the DHCP bindings information learnt by
the device."::={ cdsBindings 1}cdsBindingsEntry OBJECT-TYPESYNTAX CdsBindingsEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"A row instance contains the Mac address, IP address type,
IP address, VLAN number, interface number, leased time, and
status of this instance."INDEX{
cdsBindingsVlan,
cdsBindingsMacAddress
}::={ cdsBindingsTable 1}
CdsBindingsEntry ::=SEQUENCE{
cdsBindingsVlan VlanIndex,
cdsBindingsMacAddress MacAddress,
cdsBindingsAddrType InetAddressType,
cdsBindingsIpAddress InetAddress,
cdsBindingsInterface InterfaceIndex,
cdsBindingsLeasedTime Unsigned32,
cdsBindingsStatus RowStatus,
cdsBindingsHostname SnmpAdminString}cdsBindingsVlan OBJECT-TYPESYNTAXVlanIndexMAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"This object indicates the VLAN to which a DHCP client host
belongs."::={ cdsBindingsEntry 1}
cdsBindingsMacAddress OBJECT-TYPESYNTAXMacAddressMAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"This object indicates the MAC address of a DHCP client
host."::={ cdsBindingsEntry 2}cdsBindingsAddrType OBJECT-TYPESYNTAXInetAddressTypeMAX-ACCESSread-onlySTATUScurrentDESCRIPTION"This object indicates the type of IP address denoted
in cdsBindingsIpAddress object."::={ cdsBindingsEntry 3}cdsBindingsIpAddress OBJECT-TYPESYNTAXInetAddress
MAX-ACCESSread-onlySTATUScurrentDESCRIPTION"This object indicates the allocated IP address of
a DHCP client host."::={ cdsBindingsEntry 4}cdsBindingsInterface OBJECT-TYPESYNTAXInterfaceIndexMAX-ACCESSread-onlySTATUScurrentDESCRIPTION"This object indicates the interface where a DHCP client
host connects to."::={ cdsBindingsEntry 5}cdsBindingsLeasedTime OBJECT-TYPESYNTAXUnsigned32UNITS"seconds"
MAX-ACCESSread-onlySTATUScurrentDESCRIPTION"This object indicates the leased time of this DHCP
bindings."::={ cdsBindingsEntry 6}cdsBindingsStatus OBJECT-TYPESYNTAXRowStatusMAX-ACCESSread-createSTATUScurrentDESCRIPTION"This object is used to manage the deletion of rows
in this table. This object only supports active(1) and
destroy(6) value.
Whenever a DHCP binding is learnt by the device, an
entry will be created by the device in this table with
its RowStatus object set to active(1). Setting this
object value to destroy(6) will clear the DHCP bindings
information represented by this row instance."::={ cdsBindingsEntry 7}
cdsBindingsHostname OBJECT-TYPESYNTAXSnmpAdminStringMAX-ACCESSread-onlySTATUScurrentDESCRIPTION"This object indicates the host name of the DHCP client
as denoted by DHCP option 12 field. An empty string
indicates absence of option 12 in DHCP packet."::={ cdsBindingsEntry 8}-- The static bindings tablecdsStaticBindingsTable OBJECT-TYPESYNTAXSEQUENCEOF CdsStaticBindingsEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"A table provides the DHCP bindings information configured
by (local or network) management."
::={ cdsBindings 2}cdsStaticBindingsEntry OBJECT-TYPESYNTAX CdsStaticBindingsEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"A row instance contains the Mac address, IP address type,
IP address, VLAN number, interface number, and status of
this instance."INDEX{
cdsStaticBindingsVlan,
cdsStaticBindingsMacAddress
}::={ cdsStaticBindingsTable 1}
CdsStaticBindingsEntry ::=SEQUENCE{
cdsStaticBindingsVlan VlanIndex,
cdsStaticBindingsMacAddress MacAddress,
cdsStaticBindingsAddrType InetAddressType,
cdsStaticBindingsIpAddress InetAddress,
cdsStaticBindingsInterface InterfaceIndex,
cdsStaticBindingsStatus RowStatus}cdsStaticBindingsVlan OBJECT-TYPESYNTAXVlanIndexMAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"This object indicates the VLAN to which a DHCP client host
belongs."::={ cdsStaticBindingsEntry 1}cdsStaticBindingsMacAddress OBJECT-TYPESYNTAXMacAddressMAX-ACCESSnot-accessibleSTATUScurrent
DESCRIPTION"This object indicates the MAC address of a DHCP client
host."::={ cdsStaticBindingsEntry 2}cdsStaticBindingsAddrType OBJECT-TYPESYNTAXInetAddressTypeMAX-ACCESSread-createSTATUScurrentDESCRIPTION"This object indicates the type of IP address denoted
in cdsStaticBindingsIpAddress object."::={ cdsStaticBindingsEntry 3}cdsStaticBindingsIpAddress OBJECT-TYPESYNTAXInetAddressMAX-ACCESSread-createSTATUScurrentDESCRIPTION"This object indicates the allocated IP address of
a DHCP client host."::={ cdsStaticBindingsEntry 4}cdsStaticBindingsInterface OBJECT-TYPESYNTAXInterfaceIndexMAX-ACCESSread-createSTATUScurrentDESCRIPTION"This object indicates the ifIndex value of the interface
where a DHCP client host connects to."::={ cdsStaticBindingsEntry 5}cdsStaticBindingsStatus OBJECT-TYPESYNTAXRowStatusMAX-ACCESSread-createSTATUScurrentDESCRIPTION"This object is used to manage the creation and deletion
of rows in this table. An entry can be created by setting
the instance value of this object to 'createAndGo', and
deleted by setting the instance value of this object to
'destroy'. The value of cdsStaticBindingsAddrType,
cdsStaticBindingsIpAddress, cdsStaticBindingsInterface
object can be modified when the value of this RowStatus
object is 'active'."::={ cdsStaticBindingsEntry 6}-- The DHCP Snooping Statistics groupcdsTotalForwardedPkts OBJECT-TYPESYNTAXCounter64UNITS"packets"MAX-ACCESSread-onlySTATUScurrentDESCRIPTION"Indicates the total number of packets subjected to
DHCP Snooping is forwarded."::={ cdsStatistics 1}cdsTotalDroppedPkts OBJECT-TYPESYNTAXCounter64
UNITS"packets"MAX-ACCESSread-onlySTATUScurrentDESCRIPTION"Indicates the total number of packets subjected to
DHCP Snooping is dropped."::={ cdsStatistics 2}cdsUntrustedPortDroppedPkts OBJECT-TYPESYNTAXCounter64UNITS"packets"MAX-ACCESSread-onlySTATUScurrentDESCRIPTION"Indicates the number of packets subjected to DHCP Snooping
is dropped because they come from untrusted interface."::={ cdsStatistics 3}cdsForwardedWithoutOption82Pkts OBJECT-TYPE
SYNTAXCounter32UNITS"packets"MAX-ACCESSread-onlySTATUScurrentDESCRIPTION"Indicates the number of packets subjected to DHCP Snooping
is forwarded without insertion of DHCP relay agent information
option (option 82) data."::={ cdsStatistics 4}-- The IP Source Guard GroupcdsIfSrcGuardConfigTable OBJECT-TYPESYNTAXSEQUENCEOF CdsIfSrcGuardConfigEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"A table provides the mechanism to enable or disable
IP Source Guard at each physical interface capable of
this feature. Some of the interfaces (but not limited to)
for which this feature might be applicable are:
ifType = ethernetCsmacd(6).
When DHCP Snooping is enabled at an interface, a list of
IP addresses is obtained through DHCP Snooping for this
particular interface. If IP Source Guard is enabled, only
traffic from these IP addresses is allowed to pass through
the interface."::={ cdsSrcGuard 1}cdsIfSrcGuardConfigEntry OBJECT-TYPESYNTAX CdsIfSrcGuardConfigEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"A row instance contains the configuration to enable
or disable IP Source Guard as well as the configuration
of the filter type at each physical interface capable
of IP Source Guard feature."INDEX{ ifIndex }::={ cdsIfSrcGuardConfigTable 1}
CdsIfSrcGuardConfigEntry ::=SEQUENCE{
cdsIfSrcGuardEnable TruthValue,
cdsIfSrcGuardFilterType INTEGER}cdsIfSrcGuardEnable OBJECT-TYPESYNTAXTruthValueMAX-ACCESSread-writeSTATUSdeprecatedDESCRIPTION"This object indicates whether IP Source Guard is enabled
at this interface.
If this object is set to 'true', IP Source Guard is
enabled. Traffic coming to this interface will be forwarded
if it is from the list of IP addresses obtained through
DHCP Snooping. Otherwise, it is denied.
If this object is set to 'false', IP Source Guard is
disabled.
This object is deprecated and superceded by
cdsIfSrcGuardFilterType object."::={ cdsIfSrcGuardConfigEntry 1}
cdsIfSrcGuardFilterType OBJECT-TYPESYNTAXINTEGER{disable(1),ip(2),ipMac(3)}MAX-ACCESSread-writeSTATUScurrentDESCRIPTION"This object indicates the traffic filter type applied
at this interface.
'disable' indicates that Source Guard feature is disabled.
'ip' indicates that Source Guard feature is enabled and
only applied to IP traffic.
'ipMac' indicates that Source Guard feature is enabled and
applied to both IP and MAC traffic."::={ cdsIfSrcGuardConfigEntry 2}
-- cdsIfSrcGuardAddrTablecdsIfSrcGuardAddrTable OBJECT-TYPESYNTAXSEQUENCEOF CdsIfSrcGuardAddrEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"A table provides the information on IP addresses used
for IP Source Guard purpose at each physical interface
capable of this feature. Some of the interfaces
(but not limited to) for which this feature might be
applicable are: ifType = ethernetCsmacd(6)."::={ cdsSrcGuard 2}cdsIfSrcGuardAddrEntry OBJECT-TYPESYNTAX CdsIfSrcGuardAddrEntry
MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION
"A row instance contains the IP address type and IP
address used for IP Source Guard purpose at each
physical interface capable of this feature."INDEX{
ifIndex,
cdsIfSrcGuardIndex
}::={ cdsIfSrcGuardAddrTable 1}
CdsIfSrcGuardAddrEntry ::=SEQUENCE{
cdsIfSrcGuardIndex Unsigned32,
cdsIfSrcGuardAddrType InetAddressType,
cdsIfSrcGuardAddress InetAddress,
cdsIfSrcGuardIpFilterAction INTEGER,
cdsIfSrcGuardFilterMode INTEGER,
cdsIfSrcGuardMacAddress MacAddress,
cdsIfSrcGuardMacFilterAction INTEGER,
cdsIfSrcGuardVlansLow OCTETSTRING,
cdsIfSrcGuardVlansHigh OCTETSTRING}cdsIfSrcGuardIndex OBJECT-TYPESYNTAXUnsigned32MAX-ACCESSnot-accessibleSTATUScurrentDESCRIPTION"This object indicates the index of this entry."::={ cdsIfSrcGuardAddrEntry 1}cdsIfSrcGuardAddrType OBJECT-TYPESYNTAXInetAddressTypeMAX-ACCESSread-onlySTATUScurrentDESCRIPTION"This object indicates the type of IP address denoted
in cdsIfSrcGuardAddress object."::={ cdsIfSrcGuardAddrEntry 2}cdsIfSrcGuardAddress OBJECT-TYPESYNTAXInetAddressMAX-ACCESSread-onlySTATUScurrentDESCRIPTION"This object indicates the IP address obtained at
this interface through DHCP Snooping or statically
configured."::={ cdsIfSrcGuardAddrEntry 3}cdsIfSrcGuardIpFilterAction OBJECT-TYPESYNTAXINTEGER{permitIpAddress(1),denyAllIpAddress(2)}MAX-ACCESSread-only
STATUScurrentDESCRIPTION"This object indicates the IP Source Guard action
applied at this interface with respect to IP traffic.
permitIpAddress(1) indicates that IP traffic coming
from the IP address denoted by cdsIfSrcGuardAddress
object will be allowed to go through.
denyAllIpAdress(2) indicates that all IP traffic
coming to this interface will be dropped. The value
of cdsIfSrcGuardAddress object will be ignored in
this case."::={ cdsIfSrcGuardAddrEntry 4}cdsIfSrcGuardFilterMode OBJECT-TYPESYNTAXINTEGER{active(1),inactiveTrustPort(2),inactiveNoSnoopingVlan(3)
}MAX-ACCESSread-onlySTATUScurrentDESCRIPTION"This object indicates the Source Guard filter mode at
this interface.
active(1) indicates that the Source Guard feature is
active at this interface.
inactiveTrustPort(2) indicates that the Source Guard
feature is inactive because this interface is a DHCP
Snooping trust interface.
inactiveNoSnoopingVlan(3) indicates that the Source
Guard feature is inactive because this interface
does not have a VLAN which has DHCP Snooping enabled."::={ cdsIfSrcGuardAddrEntry 5}cdsIfSrcGuardMacAddress OBJECT-TYPESYNTAXMacAddressMAX-ACCESSread-onlySTATUScurrentDESCRIPTION
"This object indicates the MAC address for Source Guard
purpose."::={ cdsIfSrcGuardAddrEntry 6}cdsIfSrcGuardMacFilterAction OBJECT-TYPESYNTAXINTEGER{allowMacAddress(1),denyAllMacAddresses(2),permitAllMacAddresses(3)}MAX-ACCESSread-onlySTATUScurrentDESCRIPTION"This object indicates the Source Guard action
applied at this interface with respect to MAC traffic.
allowMacAddress(1) indicates that MAC traffic coming
from the MAC address denoted by cdsIfSrcGuardMacAddress
object will be allowed to go through.
denyAllMacAddresses(2) indicates that all MAC traffic
coming to this interface will be dropped. The value
of cdsIfSrcGuardMacAddress object will be ignored in
this case.
permitAllMacAddresses(3) indicates that all MAC traffic
coming to this interface will be allowed. The value
of cdsIfSrcGuardMacAddress object will be ignored in
this case."::={ cdsIfSrcGuardAddrEntry 7}cdsIfSrcGuardVlansLow OBJECT-TYPESYNTAXOCTETSTRING(SIZE(0..256))MAX-ACCESSread-onlySTATUScurrentDESCRIPTION"A string of octets containing one bit per VLAN for
VLANs with VlanIndex value of 0 to 2047. The first
octet corresponds to VLANs with VlanIndex values
of 0 through 7; the second octet to VLANs 8 through
15; etc. The most significant bit of each octet
corresponds to the lowest value VlanIndex in that octet.
For each VLAN, if Source Guard feature is enabled then
the bit corresponding to that VLAN is set to '1'.
Note that if the length of this string is less than
256 octets, any 'missing' octets are assumed to contain
the value zero. A NMS may omit any zero-valued octets
from the end of this string in order to reduce SetPDU size,
and the agent may also omit zero-valued trailing octets,
to reduce the size of GetResponse PDUs."::={ cdsIfSrcGuardAddrEntry 8}cdsIfSrcGuardVlansHigh OBJECT-TYPESYNTAXOCTETSTRING(SIZE(0..256))MAX-ACCESSread-only
STATUScurrentDESCRIPTION"A string of octets containing one bit per VLAN for
VLANs with VlanIndex value of 2048 to 4095. The first
octet corresponds to VLANs with VlanIndex values
of 2048 through 2055; the second octet to VLANs 2056
through 2063; etc. The most significant bit of each
octet corresponds to the lowest value VlanIndex in that
octet.
For each VLAN, if Source Guard feature is enabled then
the bit corresponding to that VLAN is set to '1'.
Note that if the length of this string is less than
256 octets, any 'missing' octets are assumed to contain
the value zero. A NMS may omit any zero-valued octets
from the end of this string in order to reduce SetPDU size,
and the agent may also omit zero-valued trailing octets,
to reduce the size of GetResponse PDUs."::={ cdsIfSrcGuardAddrEntry 9}-- ConformancecdsMIBCompliances OBJECTIDENTIFIER
::={ ciscoDhcpSnoopingMIBConformance 1}cdsMIBGroups OBJECTIDENTIFIER::={ ciscoDhcpSnoopingMIBConformance 2}cdsMIBCompliance MODULE-COMPLIANCESTATUSdeprecatedDESCRIPTION"The compliance statement for the CISCO-DHCP-SNOOPING-MIB"MODULE-- this moduleMANDATORY-GROUPS{
cdsIfConfigGroup,
cdsBindingsGroup
}GROUP cdsGlobalEnableGroup
DESCRIPTION"This group is mandatory only for the platform which supports
enabling the DHCP Snooping feature at device level."GROUP cdsDatabaseGroup
DESCRIPTION
"This group is mandatory only for the platform which supports
storage of DHCP bindings information."GROUP cdsVlanConfigGroup
DESCRIPTION"This group is mandatory only for the platform which supports
controlling DHCP Snooping per VLAN."GROUP cdsIfRateLimitGroup
DESCRIPTION"This group is mandatory only for the platform which supports
DHCP Snooping rate limit per interface."GROUP cdsStatisticsGroup
DESCRIPTION"This group is mandatory only for the platform which supports
DHCP Snooping statistics information."GROUP cdsRelayAgentInfoOptGroup
DESCRIPTION"This group is mandatory only for the platform which supports
DHCP Snooping option 82 insertion information."GROUP cdsIfSrcGuardGroup
DESCRIPTION"This group is mandatory only for the platform which supports
IP Source Guard."GROUP cdsMatchMacAddressGroup
DESCRIPTION"This group is mandatory only for the platform which supports
DHCP Snooping Mac address matching."::={ cdsMIBCompliances 1}cdsMIBCompliance2 MODULE-COMPLIANCESTATUSdeprecatedDESCRIPTION"The compliance statement for the CISCO-DHCP-SNOOPING-MIB"MODULE-- this moduleMANDATORY-GROUPS{
cdsIfConfigGroup,
cdsBindingsGroup
}GROUP cdsGlobalEnableGroup
DESCRIPTION"This group is mandatory only for the platform which supports
enabling the DHCP Snooping feature at device level."
GROUP cdsDatabaseGroup
DESCRIPTION"This group is mandatory only for the platform which supports
storage of DHCP bindings information."GROUP cdsVlanConfigGroup
DESCRIPTION"This group is mandatory only for the platform which supports
controlling DHCP Snooping per VLAN."GROUP cdsIfRateLimitGroup
DESCRIPTION"This group is mandatory only for the platform which supports
DHCP Snooping rate limit per interface."GROUP cdsStatisticsGroup
DESCRIPTION"This group is mandatory only for the platform which supports
DHCP Snooping statistics information."GROUP cdsRelayAgentInfoOptGroup
DESCRIPTION"This group is mandatory only for the platform which supports
DHCP Snooping option 82 insertion information."GROUP cdsIfSrcGuardGroupRev1
DESCRIPTION"This group is mandatory only for the platform which supports
IP Source Guard."GROUP cdsMatchMacAddressGroup
DESCRIPTION"This group is mandatory only for the platform which supports
DHCP Snooping Mac address matching."GROUP cdsRelayAgentRemoteIdGroup
DESCRIPTION"This group is mandatory only for platforms which support
DHCP Option 82 remote ID relay agent."GROUP cdsIfFeatureConfigGroup
DESCRIPTION"This group is mandatory only for platforms which support
enable or disable of DHCP Snooping feature at the interface."GROUP cdsBindingsLimitGroup
DESCRIPTION"This group is mandatory only for platforms which support
binding limit for DHCP Snooping feature."GROUP cdsStaticBindingsGroup
DESCRIPTION"This group is mandatory only for platforms which support
the DHCP bindings data statically configured by (local
or network) management."GROUP cdsIfSrcGuardIpFilterGroup
DESCRIPTION"This group is mandatory only for platforms which support
interface IP source guard feature."GROUP cdsIfSrcGuardExtGroup
DESCRIPTION"This group is mandatory only for platforms which support
interface IP and MAC source guard feature."GROUP cdsIfSrcGuardTrafficFilterGroup
DESCRIPTION"This group is mandatory only for platforms which support
interface IP source guard feature."OBJECT cdsStaticBindingsStatus
SYNTAXINTEGER{
active(1),
createAndGo(4),
destroy(6)}DESCRIPTION"Support for 'createAndWait' is not required."::={ cdsMIBCompliances 2}cdsMIBCompliance3 MODULE-COMPLIANCESTATUSdeprecatedDESCRIPTION"The compliance statement for the CISCO-DHCP-SNOOPING-MIB"MODULE-- this moduleMANDATORY-GROUPS{
cdsIfConfigGroup,
cdsBindingsGroup
}GROUP cdsGlobalEnableGroup
DESCRIPTION"This group is mandatory only for the platform which supports
enabling the DHCP Snooping feature at device level."GROUP cdsDatabaseGroup
DESCRIPTION"This group is mandatory only for the platform which supports
storage of DHCP bindings information."GROUP cdsVlanConfigGroup
DESCRIPTION"This group is mandatory only for the platform which supports
controlling DHCP Snooping per VLAN."GROUP cdsIfRateLimitGroup
DESCRIPTION"This group is mandatory only for the platform which supports
DHCP Snooping rate limit per interface."GROUP cdsStatisticsGroup
DESCRIPTION"This group is mandatory only for the platform which supports
DHCP Snooping statistics information."GROUP cdsRelayAgentInfoOptGroup
DESCRIPTION"This group is mandatory only for the platform which supports
DHCP Snooping option 82 insertion information."GROUP cdsIfSrcGuardGroupRev1
DESCRIPTION
"This group is mandatory only for the platform which supports
IP Source Guard."GROUP cdsMatchMacAddressGroup
DESCRIPTION"This group is mandatory only for the platform which supports
DHCP Snooping Mac address matching."GROUP cdsRelayAgentRemoteIdGroup
DESCRIPTION"This group is mandatory only for platforms which support
DHCP Option 82 remote ID relay agent."GROUP cdsIfFeatureConfigGroup
DESCRIPTION"This group is mandatory only for platforms which support
enable or disable of DHCP Snooping feature at the interface."GROUP cdsBindingsLimitGroup
DESCRIPTION"This group is mandatory only for platforms which support
binding limit for DHCP Snooping feature."GROUP cdsStaticBindingsGroup
DESCRIPTION"This group is mandatory only for platforms which support
the DHCP bindings data statically configured by (local
or network) management."GROUP cdsIfSrcGuardIpFilterGroup
DESCRIPTION"This group is mandatory only for platforms which support
interface IP source guard feature."GROUP cdsIfSrcGuardExtGroup
DESCRIPTION"This group is mandatory only for platforms which support
interface IP and MAC source guard feature."GROUP cdsIfSrcGuardTrafficFilterGroup
DESCRIPTION"This group is mandatory only for platforms which support
interface IP source guard feature."GROUP cdsBindingsHostnameGroup
DESCRIPTION"This group is mandatory only for platforms where the host
name of DHCP client in DHCP bindings data is available."OBJECT cdsStaticBindingsStatus
SYNTAXINTEGER{
active(1),
createAndGo(4),
destroy(6)}DESCRIPTION"Support for 'createAndWait' is not required."::={ cdsMIBCompliances 3}cdsMIBCompliance4 MODULE-COMPLIANCESTATUScurrentDESCRIPTION"The compliance statement for the CISCO-DHCP-SNOOPING-MIB"MODULE-- this moduleMANDATORY-GROUPS{
cdsIfConfigGroup,
cdsBindingsGroup
}GROUP cdsGlobalEnableGroup
DESCRIPTION
"This group is mandatory only for the platform which supports
enabling the DHCP Snooping feature at device level."GROUP cdsDatabaseGroup
DESCRIPTION"This group is mandatory only for the platform which supports
storage of DHCP bindings information."GROUP cdsVlanConfigGroup
DESCRIPTION"This group is mandatory only for the platform which supports
controlling DHCP Snooping per VLAN."GROUP cdsIfRateLimitGroup
DESCRIPTION"This group is mandatory only for the platform which supports
DHCP Snooping rate limit per interface."GROUP cdsStatisticsGroup
DESCRIPTION"This group is mandatory only for the platform which supports
DHCP Snooping statistics information."GROUP cdsRelayAgentInfoOptGroup
DESCRIPTION"This group is mandatory only for the platform which supports
DHCP Snooping option 82 insertion information."GROUP cdsIfSrcGuardGroupRev1
DESCRIPTION"This group is mandatory only for the platform which supports
IP Source Guard."GROUP cdsMatchMacAddressGroup
DESCRIPTION"This group is mandatory only for the platform which supports
DHCP Snooping Mac address matching."GROUP cdsIfFeatureConfigGroup
DESCRIPTION"This group is mandatory only for platforms which support
enable or disable of DHCP Snooping feature at the interface."GROUP cdsBindingsLimitGroup
DESCRIPTION"This group is mandatory only for platforms which support
binding limit for DHCP Snooping feature."GROUP cdsStaticBindingsGroup
DESCRIPTION"This group is mandatory only for platforms which support
the DHCP bindings data statically configured by (local
or network) management."GROUP cdsIfSrcGuardIpFilterGroup
DESCRIPTION"This group is mandatory only for platforms which support
interface IP source guard feature."GROUP cdsIfSrcGuardExtGroup
DESCRIPTION"This group is mandatory only for platforms which support
interface IP and MAC source guard feature."GROUP cdsIfSrcGuardTrafficFilterGroup
DESCRIPTION"This group is mandatory only for platforms which support
interface IP source guard feature."GROUP cdsBindingsHostnameGroup
DESCRIPTION"This group is mandatory only for platforms where the host
name of DHCP client in DHCP bindings data is available."GROUP cdsRelayAgentInfoOptRemoteIdSubGroup
DESCRIPTION"This group is mandatory only for platforms which support
configuration of remote-id sub-option for Option 82 DHCP
Snooping feature."GROUP cdsIfVlanRelayInfoOptCircuitIdGroup
DESCRIPTION"This group is mandatory only for platforms which support
configuration of circuit-id sub-option for Option 82 DHCP
Snooping feature."GROUP cdsStatisticsExtGroup
DESCRIPTION"This group is mandatory only for platforms which support
the counter indicating the number of packets forwarded
without insertion of option 82 data."OBJECT cdsStaticBindingsStatus
SYNTAXINTEGER{
active(1),
createAndGo(4),
destroy(6)}DESCRIPTION"Support for 'createAndWait' is not required."
::={ cdsMIBCompliances 4}-- Units of Conformance
--
-- cdsGlobalGroupcdsGlobalEnableGroup OBJECT-GROUPOBJECTS{ cdsFeatureEnable }STATUScurrentDESCRIPTION"A collection of object which are used to configure as
well as show information regarding the feature enabling."::={ cdsMIBGroups 1}cdsDatabaseGroup OBJECT-GROUPOBJECTS{
cdsDatabaseFile,
cdsDatabaseUpdateInterval
}STATUScurrentDESCRIPTION"A collection of objects which are used to configure as
well as show information regarding the DHCP Snooping
database filename and update interval."::={ cdsMIBGroups 2}cdsVlanConfigGroup OBJECT-GROUPOBJECTS{ cdsVlanDhcpSnoopingEnable }STATUScurrentDESCRIPTION"A collection of object which are used to configure as
well as show information regarding the DHCP Snooping
feature per VLAN."::={ cdsMIBGroups 3}cdsIfConfigGroup OBJECT-GROUPOBJECTS{ cdsIfTrustEnable }STATUScurrentDESCRIPTION"A collection of object which are used to configure as
well as show information regarding the interface trust
state for DHCP Snooping purpose."::={ cdsMIBGroups 4}cdsIfRateLimitGroup OBJECT-GROUPOBJECTS{ cdsIfRateLimit }STATUScurrentDESCRIPTION"A collection of object which are used to configure as
well as show information regarding the rate limit per
interface for DHCP Snooping purpose."::={ cdsMIBGroups 5}cdsBindingsGroup OBJECT-GROUPOBJECTS{
cdsBindingsAddrType,
cdsBindingsIpAddress,
cdsBindingsInterface,
cdsBindingsLeasedTime,
cdsBindingsStatus
}STATUScurrentDESCRIPTION"A collection of object which are used to configure as
well as show information regarding the DHCP bindings
data."::={ cdsMIBGroups 6}cdsStatisticsGroup OBJECT-GROUPOBJECTS{
cdsTotalForwardedPkts,
cdsTotalDroppedPkts,
cdsUntrustedPortDroppedPkts
}STATUScurrentDESCRIPTION"A collection of object which are used to show statistics
information regarding DHCP Snooping feature."::={ cdsMIBGroups 7}cdsRelayAgentInfoOptGroup OBJECT-GROUPOBJECTS{ cdsRelayAgentInfoOptEnable }
STATUScurrentDESCRIPTION"A collection of objects which are used to configure as
well as show information regarding DHCP Option 82
insertion."::={ cdsMIBGroups 8}cdsIfSrcGuardGroup OBJECT-GROUPOBJECTS{
cdsIfSrcGuardEnable,
cdsIfSrcGuardAddrType,
cdsIfSrcGuardAddress
}STATUSdeprecatedDESCRIPTION"A collection of objects which are used to configure as
well as show information regarding IP Source Guard
purpose."::={ cdsMIBGroups 9}cdsRelayAgentRemoteIdGroup OBJECT-GROUPOBJECTS{ cdsRelayAgentInfoOptRemoteId }STATUSdeprecatedDESCRIPTION"A collection of objects which are used to indicate information
regarding DHCP Option 82 remote ID relay agent."::={ cdsMIBGroups 10}cdsMatchMacAddressGroup OBJECT-GROUPOBJECTS{ cdsMatchMacAddressEnable }STATUScurrentDESCRIPTION"A collection of objects which are used to configure as
well as show information regarding DHCP Snooping Mac
address matching."::={ cdsMIBGroups 11}cdsIfFeatureConfigGroup OBJECT-GROUPOBJECTS{ cdsIfFeatureEnable }
STATUScurrentDESCRIPTION"A collection of object which are used to configure as
well as show information regarding enable or disable of
DHCP Snooping feature at the interface."::={ cdsMIBGroups 12}cdsBindingsLimitGroup OBJECT-GROUPOBJECTS{
cdsGlobalMaxBindingsLimit,
cdsIfBindingsLimit
}STATUScurrentDESCRIPTION"A collection of objects which provides information regarding
binding limit for DHCP Snooping purpose."::={ cdsMIBGroups 13}cdsStaticBindingsGroup OBJECT-GROUP
OBJECTS{
cdsStaticBindingsAddrType,
cdsStaticBindingsIpAddress,
cdsStaticBindingsInterface,
cdsStaticBindingsStatus
}STATUScurrentDESCRIPTION"A collection of objects which is used to configure
as well as show information regarding the DHCP bindings data
configured by users."::={ cdsMIBGroups 14}cdsIfSrcGuardIpFilterGroup OBJECT-GROUPOBJECTS{
cdsIfSrcGuardIpFilterAction,
cdsIfSrcGuardFilterMode
}STATUScurrentDESCRIPTION"A collection of objects which is used to show information
regarding interface IP source guard purpose."::={ cdsMIBGroups 15}cdsIfSrcGuardExtGroup OBJECT-GROUPOBJECTS{
cdsIfSrcGuardMacAddress,
cdsIfSrcGuardMacFilterAction,
cdsIfSrcGuardVlansLow,
cdsIfSrcGuardVlansHigh
}STATUScurrentDESCRIPTION"A collection of objects which is used to show additional
information regarding the IP source guard feature."::={ cdsMIBGroups 16}cdsIfSrcGuardTrafficFilterGroup OBJECT-GROUPOBJECTS{ cdsIfSrcGuardFilterType }STATUScurrent
DESCRIPTION"A collection of objects which is used to configure the
type of traffic to be filtered by IP source guard feature."::={ cdsMIBGroups 17}cdsIfSrcGuardGroupRev1 OBJECT-GROUPOBJECTS{
cdsIfSrcGuardAddrType,
cdsIfSrcGuardAddress
}STATUScurrentDESCRIPTION"A collection of objects which are used to configure as
well as show information regarding IP Source Guard
purpose."::={ cdsMIBGroups 18}cdsBindingsHostnameGroup OBJECT-GROUPOBJECTS{ cdsBindingsHostname }STATUScurrent
DESCRIPTION"A collection of objects which indicates the host name
of DHCP client in DHCP bindings data."::={ cdsMIBGroups 19}cdsRelayAgentInfoOptRemoteIdSubGroup OBJECT-GROUPOBJECTS{ cdsRelayAgentInfoOptRemoteIdSub }STATUScurrentDESCRIPTION"A collection of objects which are used to configure
as well as show remote-id of option 82 DHCP Snooping."::={ cdsMIBGroups 20}cdsIfVlanRelayInfoOptCircuitIdGroup OBJECT-GROUPOBJECTS{
cdsIfVlanRelayInfoOptCircuitId,
cdsIfVlanRelayInfoOptCircuitIdStatus
}
STATUScurrentDESCRIPTION"A collection of objects which are used to configure
as well as show circuit-id of option 82 DHCP Snooping."::={ cdsMIBGroups 21}cdsStatisticsExtGroup OBJECT-GROUPOBJECTS{ cdsForwardedWithoutOption82Pkts }STATUScurrentDESCRIPTION"A collection of objects which are used to show
additional DHCP snooping statistics information."::={ cdsMIBGroups 22}END