📄 rfc3019.txt
字号:
语法:MldCacheEntry
最大权限:不可访问
状态:现行
描述
“mldCacheTable中的一个条目(概念上是一行) ”
索引{ mldCacheAddress,mldCacheIfIndex }
::= { mldCacheTable 1 }
MldCacheEntry ::=序列 {
mldCacheAddressInetAddressIPv6,
mldCacheIfIndexInterfaceIndex,
mldCacheSelfTruthValue,
mldCacheLastReporterInetAddressIPv6,
mldCacheUpTime TimeTicks,
mldCacheExpiryTimeTimeTicks,
mldCacheStatus RowStatus
}
mldCacheAddress 对象类型
语法:InetAddressIPv6 (SIZE (16))
最大权限:不可访问
状态:现行
描述
“条目中包含信息的IPv6多播组地址”
::= { mldCacheEntry 1 }
mldCacheIfIndex 对象类型
语法:InterfaceIndex
最大权限:不可访问
状态:现行
描述
“包含IPv6多播组地址信息的条目的互联网络层接口”
::= { mldCacheEntry 2 }
mldCacheSelf 对象类型
语法:TruthValue
最大权限:只读
状态:现行
描述
“指示本地系统是否是接口组地址中成员”
DEFVAL { true }
::= { mldCacheEntry 3 }
mldCacheLastReporter 对象类型
语法:InetAddressIPv6 (SIZE (16))
最大权限:只读
状态:现行
描述
“Ipv6多播组地址接口上接收的最后成员关系报告源的Ipv6地址。如果没有接收到
报告,那么此对象的值为0::0”
::= { mldCacheEntry 4 }
mldCacheUpTime 对象类型
语法:TimeTicks
最大权限:只读
状态:现行
描述
“条目已创建的时间”
::= { mldCacheEntry 5 }
mldCacheExpiryTime 对象类型
语法:Time Ticks
最大权限:只读
状态:现行
描述
“条目超时前剩余的最短时间总量。0值表示此条目只是由于mldCacheSelf为真值
才出现,如果路由器离开了此组,那么这个条目就回立即超时。注意一些实现用和来自其它
主机一样的方式处理在本地系统成员关系报告,因此0值不是必须的。”
::= { mldCacheEntry 6 }
mldCacheStatus 对象类型
语法:RowStatus
最大权限:只读
状态:现行
描述
“行的状况,如创建新的条目,或从表中删除已存在的条目”
::= { mldCacheEntry 7 }
-- 一致性信息
mldMIBConformance
对象标识符 ::= { mldMIB 2 }
mldMIBCompliances
对象标识符 ::= { mldMIBConformance 1 }
mldMIBGroups
对象标识符 ::= { mldMIBConformance 2 }
-- 一致性状态
mldHostMIBCompliance MODULE-COMPLIANCE
状态:现行
描述
“运行MLD和实现MLD MIB的主机遵从的状态”
MODULE -- this module
MANDATORY-GROUPS { mldBaseMIBGroup,mldHostMIBGroup}
对象mldInterfaceStatus
最小权限:只读
描述
“写访问不是必须的”
::= { mldMIBCompliances 1 }
mldRouterMIBCompliance MODULE-COMPLIANCE
状态:现行
描述
“运行MLD和实现MLD MIB的路由器遵从的状态”
MODULE -- this module
MANDATORY-GROUPS { mldBaseMIBGroup,mldRouterMIBGroup}
对象mldInterfaceStatus
最小权限:只读
描述
“写访问不是必须的”
::= { mldMIBCompliances 2 }
--适应性单位
mldBaseMIBGroup对象类
对象{ mldCacheSelf,mldCacheStatus,mldInterfaceStatus}
状态:现行
描述
“提供MLD管理的对象基本集合。MldBaseMIBGroup允许管理者创建和删除MLD
缓冲条目”
::= { mldMIBGroups 1 }
mldRouterMIBGroup对象类
对象{ mldCacheUpTime,mldCacheExpiryTime,
mldInterfaceQueryInterval,
mldInterfaceJoins,mldInterfaceGroups,
mldCacheLastReporter,
mldInterfaceQuerierUpTime,
mldInterfaceQuerierExpiryTime,
mldInterfaceQuerier,
mldInterfaceVersion,
mldInterfaceQueryMaxResponseDelay,
mldInterfaceRobustness,
mldInterfaceLastListenQueryIntvl
}
状态:现行
描述
“路由器中MLD管理的其它对象的集合”
::= { mldMIBGroups 2 }
mldHostMIBGroup对象类
对象{ mldInterfaceQuerier}
状态:现行
描述
“主机中MLD管理的其它对象的集合”
::= { mldMIBGroups 3 }
mldProxyMIBGroup对象类
对象{ mldInterfaceProxyIfIndex }
状态:现行
描述
“用于MLD代理设备管理的其它对象的集合”
::= { mldMIBGroups 4 }
END
需要考虑的安全问题
本MIB包含可读的对象,它们的值提供了和多播会话相关的信息。一些对象可能包含敏
感信息。尤其是mldCacheSelf and mldCacheLastReporter可被用来标识监听特定组地址的
机器。也有很多对象具有读写和/或读、创建的MAX-ACCESS子句,管理员用这些子句来在
路由器上配置MLD。虽然未经授权的对可读对象的访问相对来说没有多大关系,但是未经授
权对可写对象的访问就可能导致致命的服务。因此, 在没有适当保护的不安全环境下对SET
操作的支持可能对网络操作有消极的影响。
SNMPv1本身是这样一个不安全的环境。即使网络本身安全(例如使用IP Sec),然而
对诸如安全网络中谁允许访问和SET(改变/创建/删除)MIB中的对象也是没有控制的。
建议实施者考虑SNMPv3框架提供的安全属性。特别推荐使用RFC2574基于用户的安
全模型和RFC2575基于视图的访问控制模型。使用这些安全特性,可以只对那些有合法权
利GET或SET的用户提供对象的访问。
致谢
本MIB模块基于由Keith McCloghrie、Dino Farinacci和Dave Thaler创作的IGMP MIB。
它是基于IPNGWG工作组、Bert Wijnen、Peder Norgaard和Juergen Schoenwaelder等提
出的建议的更新。
参考文献
[RFC2710] Deering,S.,Fenner,W. and B. Haberman,"Multicast Listener Discovery
(MLD) for IPv6",RFC 2710,October 1999.
[RFC2119] Bradner,S.,"Key words for use in RFCs to Indicate Requirement Levels",
BCP 14,RFC 2119,March 1997.
[RFC2571] Harrington,D.,Presuhn,R. and B. Wijnen,"An Architecture for Describing
SNMP Management Frameworks",RFC 2571,April 1999.
[RFC1155] Rose,M. and K. McCloghrie,"Structure and Identification of Management
Information for TCP/IP-based Internets",STD 16,RFC 1155,May 1990.
[RFC1212] Rose,M. and K. McCloghrie,"Concise MIB Definitions",STD 16,RFC
1212,March 1991.
[RFC1215] Rose,M.,"A Convention for Defining Traps for use with the SNMP",RFC
1215,March 1991.
[RFC2578] McCloghrie,K.,Perkins,D.,Schoenwaelder,J.,Case,J.,Rose,
M. and S. Waldbusser,"Structure of Management Information Version 2 (SMIv2)",STD 58,
RFC 2578,April 1999.
[RFC2579] McCloghrie,K.,Perkins,D.,Schoenwaelder,J.,Case,J.,Rose,
M. and S. Waldbusser,"Textual Conventions for SMIv2",STD 58,RFC 2579,April 1999.
[RFC2580] McCloghrie,K.,Perkins,D.,Schoenwaelder,J.,Case,J.,Rose,
M. and S. Waldbusser,"Conformance Statements for SMIv2",STD 58,RFC 2580,April
1999.
[RFC1157] Case,J.,Fedor,M.,Schoffstall,M. and J. Davin,"Simple Network
Management Protocol",STD 15,RFC 1157,May 1990.
[RFC1901] Case,J.,McCloghrie,K.,Rose,M. and S. Waldbusser,"Introduction to
Community-based SNMPv2",RFC 1901,January 1996.
[RFC1906] Case,J.,McCloghrie,K.,Rose,M. and S. Waldbusser,"Transport
Mappings for Version 2 of the Simple Network Management Protocol (SNMPv2)",RFC
1906,January 1996.
[RFC2572] Case,J.,Harrington D.,Presuhn R. and B. Wijnen,"Message Processing
and Dispatching for the Simple Network Management Protocol (SNMP)",RFC 2572,April
1999.
[RFC2574] Blumenthal,U. and B. Wijnen,"User-based Security Model (USM) for
version 3 of the Simple Network Management Protocol (SNMPv3)",RFC 2574,April 1999.
[RFC1905] Case,J.,McCloghrie,K.,Rose,M. and S. Waldbusser,"Protocol
Operations for Version 2 of the Simple Network Management Protocol (SNMPv2)",RFC
1905,January 1996.
[RFC2573] Levi,D.,Meyer,P. and B. Stewart,"SNMPv3 Applications",RFC 2573,
April 1999.
[RFC2575] Wijnen,B.,Presuhn,R. and K. McCloghrie,"View-based Access Control
Model (VACM) for the Simple Network Management Protocol (SNMP)",RFC 2575,April
1999.
[RFC2570] Case,J.,Mundy,R.,Partain,D. and B. Stewart,"Introduction to Version
3 of the Internet-standard Network Management Framework",RFC 2570,April 1999.
作者地址
Brian Haberman
Nortel Networks
4309 Emperor Blvd.
Suite 200
Durham,NC 27703
USA
Phone: +1-919-992-4439
EMail: haberman@nortelnetworks.com
Randy Worzella
IBM Corporation
800 Park Office Drive
Research Triangle Park,NC 27709
USA
Phone: +1-919-254-2202
EMail: worzella@us.ibm.com
完整的版权声明
Copyright (C) The Internet Society (2001)。版权所有。
This document and translations of it may be copied and furnished to others,and
derivative works that comment on or otherwise explain it or assist in its implementation
may be prepared,copied,published and distributed,in whole or in part,without restriction
of any kind,provided that the above copyright notice and this paragraph are included on all
such copies and derivative works. However,this document itself may not be modified in
any way,such as by removing the copyright notice or references to the Internet Society or
other Internet organizations,except as needed for the purpose of developing Internet
standards in which case the procedures for copyrights defined in the Internet Standards
process must be followed,or as required to translate it into languages other than English.
The limited permissions granted above are perpetual and will not be revoked by the
Internet Society or its successors or assigns.
This document and the information contained herein is provided on an "AS IS" basis
and THE INTERNET SOCIETY AND THE INTERNET ENGINEERING TASK FORCE
DISCLAIMS ALL WARRANTIES,EXPRESS OR IMPLIED,INCLUDING BUT NOT
LIMITED TO ANY WARRANTY THAT THE USE OF THE INFORMATION HEREIN WILL
NOT INFRINGE ANY RIGHTS OR ANY IMPLIED WARRANTIES OF MERCHANTABILITY
OR FITNESS FOR A PARTICULAR PURPOSE.
致谢
目前,RFC编者的活动基金由Internet社团提供。
RFC3019——IP Version 6 Management Information Base for The Multicast Listener Discovery Protocol
多播监听发现协议的Ipv6 MIB
1
RFC文档中文翻译计划
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -