DOS attack statistics

The following objects provide denial of service (DOS) attack statistics through SNMP.

Name, OID, and syntax

Access

Description

snDosAttackICMPDropCount

1.3.6.1.4.1.1991.1.1.3.14.3.1.1

Syntax: Counter32

Read-only

Provides the contents of the ICMP drop counter.

snDosAttackICMPBlockCount

1.3.6.1.4.1.1991.1.1.3.14.3.1.2

Syntax: Counter32

Read-only

Provides the contents of the ICMP block counter.

snDosAttackSYNDropCount

1.3.6.1.4.1.1991.1.1.3.14.3.1.3

Syntax: Counter32

Read-only

Provides the contents of the SYN drop counter.

snDosAttackSYNBlockCount

1.3.6.1.4.1.1991.1.1.3.14.3.1.4

Syntax: Counter32

Read-only

Provides the contents of the SYN block counter.

The following table provide the port-level denial of service (DOS) objects.

Name, OID, and syntax

Access

Description

snDosAttackPortICMPDropCount

1.3.6.1.4.1.1991.1.1.3.14.3.2.1.2

Syntax: Counter32

Read-only

Provides the contents of the ICMP drop counter at port level.

snDosAttackPortICMPBlockCount

1.3.6.1.4.1.1991.1.1.3.14.3.2.1.3

Syntax: Counter32

Read-only

Provides the contents of the ICMP block counter at port level.

snDosAttackPortSYNDropCount

1.3.6.1.4.1.1991.1.1.3.14.3.2.1.4

Syntax: Counter32

Read-only

Provides the contents of the SYN drop counter at port level.

snDosAttackPortSYNBlockCount

1.3.6.1.4.1.1991.1.1.3.14.3.2.1.5

Syntax: Counter32

Read-only

Provides the contents of the SYN block counter at port level.

The following table provide the details of distributed denial of service (DDoS) objects.

Name, OID, and syntax

Access

Description

snDosAttackARPDrop

1.3.6.1.4.1.1991.1.1.3.14.3.1.5

Syntax: Integer

Read-write To enable or disable the DDoS guard ARP drop feature.
snDosAttackARPDropCount

1.3.6.1.4.1.1991.1.1.3.14.3.1.6

Syntax: Counter64

Read-only

Provides statistics on dropped GARP features from hardware counters or the number of dropped malformed packets.
snDosAttackUDPDropCount

1.3.6.1.4.1.1991.1.1.3.14.3.1.7

Syntax: Counter64

Read-only

Provides statistics of UDP rate limiting feature. It fetches the number of packets dropped based on the user-configured threshold value.