HPN-ICF-ARP-RATELIMIT-MIB
AI MIB Summary
The HPN-ICF-ARP-RATELIMIT-MIB monitors and configures the CPU-targeted ARP packet rate limits on HP Network (HPN) devices to mitigate ARP flood attacks. While the current implementation exposes only monitoring metrics for the ARP rate limit status, the module is designed to enforce thresholds that prevent CPU saturation from excessive Address Resolution Protocol traffic.
This MIB file defines the ARP packet rate limit configuration. The ARP packet rate limit feature monitors and controls the rate of ARP packets delivered to the CPU on a device. The current version supports the monitoring feature only.
Main OID:
hpnicfARPRatelimit.1.3.6.1.4.1.11.2.14.11.15.2.110
13
Objects
Active
Status
3
Dependencies
Imported Objects
Objects
13 total| Object Name |
|---|
hpnicfARPRatelimitThis MIB file defines the ARP packet rate limit configuration. The ARP packet rate limit feature monitors and controls the rate of ARP packets delivered to the CPU on a device. The current version supports the monitoring feature only. MODULE-IDENTITY .1.3.6.1.4.1.11.2.14.11.15.2.110 |
hpnicfARPRatelimitObjects OBJECT IDENTIFIER .1.3.6.1.4.1.11.2.14.11.15.2.110.1 |
hpnicfARPRatelimitTrap OBJECT IDENTIFIER .1.3.6.1.4.1.11.2.14.11.15.2.110.1.1 |
hpnicfARPRatelimitTraps OBJECT IDENTIFIER .1.3.6.1.4.1.11.2.14.11.15.2.110.1.1.0 |
hpnicfARPRatelimitOverspeedTrapIf the rate of ARP packets delivered to the CPU on a device exceeds the threshold, a trap message is generated and sent to the remote monitoring device. NOTIFICATION-TYPE .1.3.6.1.4.1.11.2.14.11.15.2.110.1.1.0.1 |
hpnicfARPRatelimitTrapObjects OBJECT IDENTIFIER .1.3.6.1.4.1.11.2.14.11.15.2.110.1.1.1 |
hpnicfARPRatelimitTrapVerThe version of trap information.ro Unsigned32 .1.3.6.1.4.1.11.2.14.11.15.2.110.1.1.1.1 |
hpnicfARPRatelimitTrapCountNumber of cells in the trap message. A trap message may contain multiple cells, each of which indicates that the rate information of ARP packets exceeds the threshold.ro Unsigned32 .1.3.6.1.4.1.11.2.14.11.15.2.110.1.1.1.2 |
hpnicfARPRatelimitTrapMsgThis object is the cell section in a trap message sent from a monitored device. This object can contain multiple cells. This object is in the format of '<cell1><cell2>...'. Each cell consists of 17 octets in the format of '<TrapOrigin><IfIndex><OverSpeedValue><Threshold><Interval>'. <TrapOrigin> indicates the source of the trap message and has size of 1 octet. It only supports the following values. 1 - Global. 2 - Interface. <IfIndex> is the index of the interface where the rate of ARP packet exceeds the threshold and has size of 4 octets. It is 0xFFFFFFFF when <TrapOrigin> is 1(Global). <OverSpeedValue> indicates the rate that ARP packets are actually delivered and has size of 4 octets. <Threshold> indicates the threshold that ARP packets can be delivered to CPU and has size of 4 octets. <Interval> indicates the interval that a trap message is sent out and has size of 4 octets.ro OCTET STRING .1.3.6.1.4.1.11.2.14.11.15.2.110.1.1.1.3 |
hpnicfARPRatelimitConfig OBJECT IDENTIFIER .1.3.6.1.4.1.11.2.14.11.15.2.110.1.2 |
hpnicfARPRatelimitConfigTableThe table is used to configure ARP packet rate limit on interfaces. SEQUENCE OF HpnicfARPRatelimitConfigEntry .1.3.6.1.4.1.11.2.14.11.15.2.110.1.2.1 |
hpnicfARPRatelimitConfigEntryThe entry of hpnicfARPRatelimitConfigTable. HpnicfARPRatelimitConfigEntry .1.3.6.1.4.1.11.2.14.11.15.2.110.1.2.1.1 |
hpnicfARPRatelimitValueConfigure ARP packet rate limit. Support for the value range depends on the device model. If the object is set to 0, the ARP packet rate limit will be disabled.rw Unsigned32 .1.3.6.1.4.1.11.2.14.11.15.2.110.1.2.1.1.1 |