Home/Catalog/AT-DHCPSN-MIB

AT-DHCPSN-MIB

AI MIB Summary

The AT-DHCPSN-MIB module monitors DHCP Snooping security violations on Allied Telesis network switches, specifically tracking the count of packets dropped due to the two newly defined violation types. This MIB enables administrators to audit and manage the integrity of the DHCP binding table by exposing specific security event counters for network traffic analysis.

Added two more violation types for DHCP Snooping.
Main OID:
atDhcpsn.1.3.6.1.4.1.207.8.4.4.4.537
23
Objects
Active
Status
3
Dependencies

Imported Objects

Objects

23 total
Object Name
atDhcpsnAdded two more violation types for DHCP Snooping.
MODULE-IDENTITY
.1.3.6.1.4.1.207.8.4.4.4.537
atDhcpsnEvents
OBJECT IDENTIFIER
.1.3.6.1.4.1.207.8.4.4.4.537.0
atDhcpsnTrapDHCP Snooping violation trap.
NOTIFICATION-TYPE
.1.3.6.1.4.1.207.8.4.4.4.537.0.1
atArpsecTrapDHCP Snooping ARP Security violation trap.
NOTIFICATION-TYPE
.1.3.6.1.4.1.207.8.4.4.4.537.0.2
atDhcpsnVariablesTableThis table contains rows of DHCP Snooping information.
SEQUENCE OF AtDhcpsnVariablesEntry
.1.3.6.1.4.1.207.8.4.4.4.537.1
atDhcpsnVariablesEntryA set of parameters that describe the DHCP Snooping features.
AtDhcpsnVariablesEntry
.1.3.6.1.4.1.207.8.4.4.4.537.1.1
atDhcpsnIfIndexIfindex of the port that the packet was received on.ro
INTEGER
.1.3.6.1.4.1.207.8.4.4.4.537.1.1.1
atDhcpsnVidVLAN ID of the port that the packet was received on.ro
INTEGER
.1.3.6.1.4.1.207.8.4.4.4.537.1.1.2
atDhcpsnSmacSource MAC address of the packet that caused the trap.ro
DisplayString (SNMPv2-TC)
.1.3.6.1.4.1.207.8.4.4.4.537.1.1.3
atDhcpsnOpcodeOpcode value of the BOOTP packet that caused the trap. Only bootpRequest(1) or bootpReply(2) is valid.ro
Enumeration
.1.3.6.1.4.1.207.8.4.4.4.537.1.1.4
atDhcpsnCiaddrCiaddr value of the BOOTP packet that caused the trap.ro
IpAddress
.1.3.6.1.4.1.207.8.4.4.4.537.1.1.5
atDhcpsnYiaddrYiaddr value of the BOOTP packet that caused the trap.ro
IpAddress
.1.3.6.1.4.1.207.8.4.4.4.537.1.1.6
atDhcpsnGiaddrGiaddr value of the BOOTP packet that caused the trap.ro
IpAddress
.1.3.6.1.4.1.207.8.4.4.4.537.1.1.7
atDhcpsnSiaddrSiaddr value of the BOOTP packet that caused the trap.ro
IpAddress
.1.3.6.1.4.1.207.8.4.4.4.537.1.1.8
atDhcpsnChaddrChaddr value of the BOOTP packet that caused the trap.ro
DisplayString (SNMPv2-TC)
.1.3.6.1.4.1.207.8.4.4.4.537.1.1.9
atDhcpsnVioTypeThe reason that the trap was generated. invalidBootp(1) indicates that the received BOOTP packet was invalid. For example, it is neither BootpRequest nor BootpReply. invalidDhcpAck(2) indicates that the received DHCP ACK was invalid. invalidDhcpRelDec(3) indicates the DHCP Release or Decline was invalid. invalidIp(4) indicates that the received IP packet was invalid. maxBindExceeded(5) indicates that if the entry was added, the maximum bindings configured for the port would be exceeded. opt82InsertErr(6) indicates that the insertion of Option 82 failed. opt82RxInvalid(7) indicates that the received Option 82 information was invalid. opt82RxUntrusted(8) indicates that Option 82 information was received on an untrusted port. opt82TxUntrusted(9) indicates that Option 82 would have been transmitted out an untrusted port. replyRxUntrusted(10) indicates that a BOOTP Reply was received on an untrusted port. srcMacChaddrMismatch(11) indicates that the source MAC address of the packet did not match the BOOTP CHADDR of the packet. staticEntryExisted(12) indicates that the static entry to be added already exists. dbAddErr(13) indicates that adding an entry to the database failed.ro
Enumeration
.1.3.6.1.4.1.207.8.4.4.4.537.1.1.10
atArpsecVariablesTableThis table contains rows of DHCP Snooping ARP Security information.
SEQUENCE OF AtArpsecVariablesEntry
.1.3.6.1.4.1.207.8.4.4.4.537.2
atArpsecVariablesEntryA set of parameters that describe the DHCP Snooping ARP Security features.
AtArpsecVariablesEntry
.1.3.6.1.4.1.207.8.4.4.4.537.2.1
atArpsecIfIndexIfindex of the port that the ARP packet was received on.ro
INTEGER
.1.3.6.1.4.1.207.8.4.4.4.537.2.1.1
atArpsecClientIPSource IP address of the ARP packet.ro
IpAddress
.1.3.6.1.4.1.207.8.4.4.4.537.2.1.2
atArpsecSrcMacSource MAC address of the ARP packet.ro
DisplayString (SNMPv2-TC)
.1.3.6.1.4.1.207.8.4.4.4.537.2.1.3
atArpsecVidVLAN ID of the port that the ARP packet was received on.ro
INTEGER
.1.3.6.1.4.1.207.8.4.4.4.537.2.1.4
atArpsecVioTypeThe reason that the trap was generated. srcIpNotFound(1) indicates that the Sender IP address of the ARP packet was not found in the DHCP Snooping database. badVLAN(2) indicates that the VLAN of the DHCP Snooping binding entry associated with the Sender IP address of the ARP packet does not match the VLAN that the ARP packet was received on. badPort(3) indicates that the port of the DHCP Snooping binding entry associated with the Sender IP address of the ARP packet does not match the port that the ARP packet was received on. srcIpNotAllocated(4) indicates that the CHADDR of the DHCP Snooping binding entry associated with the Sender IP address of the ARP packet does not match the Source MAC and/or the ARP source MAC of the ARP packet.ro
Enumeration
.1.3.6.1.4.1.207.8.4.4.4.537.2.1.5
AT-DHCPSN-MIB - SNMP MIB Reference | MIBs Explorer