FDRY-DAI-MIB
AI MIB Summary
The FDRY-DAI-MIB module enables SNMP-based configuration and monitoring of the Dynamic ARP Inspection (DAI) security feature on Brocade (formerly Foundry) network switches to validate ARP packet integrity. It facilitates the management of IP-to-MAC address binding policies and the enforcement of packet discard actions for invalid bindings within defined subnets.
Management Information for configuration of Dynamic ARP Inspection feature. Dynamic ARP Inspection is a security mechanism which validates all ARP packets in a subnet and discard those packets with invalid IP to MAC address bindings.
Copyright 1996-2010 Brocade Communications Systems, Inc. All rights reserved. This Brocade Communications Systems SNMP Management Information Base Specification embodies Brocade Communications Systems' confidential and proprietary intellectual property. Brocade Communications Systems retains all title and ownership in the Specification, including any revisions.
This Specification is supplied AS IS, and Brocade Communications Systems makes no warranty, either express or implied, as to the use, operation, condition, or performance of the specification, and any unintended consequence it may on the user environment.
Main OID:
fdryDaiMIB.1.3.6.1.4.1.6321.1.2.3.2.10.3.35
20
Objects
Active
Status
6
Dependencies
Imported Objects
Objects
20 total| Object Name |
|---|
fdryDaiMIBManagement Information for configuration of Dynamic ARP Inspection feature.
Dynamic ARP Inspection is a security mechanism which validates all ARP packets
in a subnet and discard those packets with invalid IP to MAC address bindings.
Copyright 1996-2010 Brocade Communications Systems, Inc.
All rights reserved.
This Brocade Communications Systems SNMP Management Information Base Specification
embodies Brocade Communications Systems' confidential and proprietary
intellectual property. Brocade Communications Systems retains all
title and ownership in the Specification, including any revisions.
This Specification is supplied AS IS, and Brocade Communications Systems makes
no warranty, either express or implied, as to the use,
operation, condition, or performance of the specification, and any unintended
consequence it may on the user environment. MODULE-IDENTITY .1.3.6.1.4.1.6321.1.2.3.2.10.3.35 |
fdryDaiVlan OBJECT IDENTIFIER .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.1 |
fdryDaiVlanConfigTableA table provides the mechanism to control Dynamic ARP
Inspection per VLAN. When a VLAN is created in a device
supporting this table, a corresponding entry of this table
will be added. SEQUENCE OF FdryDaiVlanConfigEntry .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.1.1 |
fdryDaiVlanConfigEntryA row instance contains the configuration to enable
or disable Dynamic ARP Inspection at the existing VLAN. FdryDaiVlanConfigEntry .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.1.1.1 |
fdryDaiVlanVLanIdThis object indicates the VLAN number on which Dynamic ARP
Inspection feature is configured. VlanIndex (Q-BRIDGE-MIB) .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.1.1.1.1 |
fdryDaiVlanDynArpInspEnableThis object indicates whether Dynamic ARP Inspection is
enabled in this VLAN.
If this object is set to 'true', Dynamic ARP Inspection is enabled.
If this object is set to 'false', Dynamic ARP Inspection is disabled.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.1.1.1.2 |
fdryDaiInterface OBJECT IDENTIFIER .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.2 |
fdryDaiIfConfigTableA table provides the mechanism to configure the trust
state for Dynamic ARP Inspection purpose at each physical
interface. SEQUENCE OF FdryDaiIfConfigEntry .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.2.1 |
fdryDaiIfConfigEntryA row instance contains the configuration to enable or
disable trust state for Dynamic ARP Inspection at each
physical interface capable of this feature. FdryDaiIfConfigEntry .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.2.1.1 |
fdryDaiIfTrustValueThis object indicates whether the interface is trusted for
Dynamic ARP Inspection.
If this object is set to 'true', the interface is trusted.
ARP packets coming to this interface will be forwarded
without checking.
If this object is set to 'false', the interface is not trusted.
ARP packets received on this interface will be subjected
to ARP inspection.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.2.1.1.1 |
fdryDaiArpInspect OBJECT IDENTIFIER .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.3 |
fdryDaiArpInspectTableA table provides the mechanism to control Dynamic ARP
Inspection entries. When an IP-MAC mapping entry is created
in a device supporting this table, a corresponding entry of this
table will be added. SEQUENCE OF FdryDaiArpInspectEntry .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.3.1 |
fdryDaiArpInspectEntryA row instance contains the configuration to map a device
IP address with its MAC address. FdryDaiArpInspectEntry .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.3.1.1 |
fdryDaiArpInspectIpAddrThe device IP address. IpAddress .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.3.1.1.1 |
fdryDaiArpInspectMacAddrThe device MAC address.rw MacAddress (SNMPv2-TC) .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.3.1.1.2 |
fdryDaiArpInspectRowStatusThis variable is used to create, or
delete a row in this table. When a row in this
table is in active(1) state, no objects in that row
can be modified except this object.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.3.1.1.3 |
fdryDaiArpInspectTypeThe type of the ARP entryro ArpType .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.3.1.1.4 |
fdryDaiArpInspectStateThe state of the ARP entryro ArpState .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.3.1.1.5 |
fdryDaiArpInspectAgeThe timer of the ARP entryro Unsigned32 .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.3.1.1.6 |
fdryDaiArpInspectPortThe port of the ARP entryro DisplayString (FOUNDRY-SN-AGENT-MIB) .1.3.6.1.4.1.6321.1.2.3.2.10.3.35.3.1.1.7 |