Reset Search
 

 

Article

how to read multiple ACL counters via SNMP

« Go Back

Information

 
Titlehow to read multiple ACL counters via SNMP
Symptoms
When an ACL is applied in both ingress and egress direction,we are not able to see egress direction via SNMP.
When a policy has more than one counter, via SNMP, we are able to check only the updates from the first counter and subsequent counters are not shown.
Environment
EXOS all
Cause
This was an issue in EXOS, which has been addressed as part of xos0054714.
Resolution
Upgrade to a version that contains fix for xos0054714. Check section "Resolved Issues" in Release Notes of latest patch of recommended EXOS release. (What Is The Recommended SW Release For My Platform?, Where to get release notes?)

The OID to gather the counter output via SNMP is 1.3.6.1.4.1.1916.1.48.1.1 with the following explanation:
 
extremeAclStatsVlanIfIndex (1.3.6.1.4.1.1916.1.48.1.1.1.1)The IfIndex of the VLAN in which this policy/rule is applied
extremeAclStatsPortIfIndex (1.3.6.1.4.1.1916.1.48.1.1.1.2)The IfIndex of the port in which this policy/rule is applied
extremeAclDirection
(1.3.6.1.4.1.1916.1.48.1.1.1.3)
The ingress/egress direction to which this policy/rule is applied (0 for ingress and 1 for Egress)
extremeAclStatsCounterName
(1.3.6.1.4.1.1916.1.48.1.1.1.4)
Name of the counter for which the stats is requested
extremeAclStatsPktCount
(1.3.6.1.4.1.1916.1.48.1.1.1.5)
The total number of packets that matches this rule
extremeAclStatsByteCount
(1.3.6.1.4.1.1916.1.48.1.1.1.6)
The total number of bytes that matches this rule

The OIDs 1-4 that are index variables, and they are not accessible.
The user can only view the values of the counters of the respective indices.
OID 5 represents packet count, and 6 represents byte count. 

Here an example:
 
.1.3.6.1.4.1.1916.1.48.1.1.1.5.0.65543.0.5.99.110.116.52.48 = Counter64: 0
 
.1.3.6.1.4.1.1916.1.48.1.1.1.5.0  à This represents the vlan instance to which the rule is applied. (Here, this rule is not applied to a vlan)
.1.3.6.1.4.1.1916.1.48.1.1.1.5.0.65543 -> The port instance (This rule is applied to a port)
.1.3.6.1.4.1.1916.1.48.1.1.1.5.0.65543.0  -> The direction in which the acl is applied (0 indicates ingress, and 1 indicates egress). (Rule is applied in ingress direction)
.1.3.6.1.4.1.1916.1.48.1.1.1.5.0.65543.0.5 -> Number of characters in the counter name.
.1.3.6.1.4.1.1916.1.48.1.1.1.5.0.65543.0.5.99.110.116.52.48 -->  ASCII value of counter name (Here it is "cnt40")

 
Additional notes
Objects in provided table are of type Counter64 and cannot be polled using SNMPv1. Please use SNMPv2 and SNMPv3 to poll these objects.

Feedback

 

Was this article helpful?


   

Feedback

Please tell us how we can make this article more useful.

Characters Remaining: 255