Home/Catalog/ZYXEL-ARP-INSPECTION-MIB

ZYXEL-ARP-INSPECTION-MIB

AI MIB Summary

The ZYXEL-ARP-INSPECTION-MIB provides management access to ARP inspection configuration parameters and operational counters on ZyXEL network switches, specifically monitoring the status of dynamic ARP inspection sessions, dropped packets due to validation failures, and interface-level enforcement states.

The subtree for arp inspection
Main OID:
zyxelArpInspection.1.3.6.1.4.1.890.1.15.3.12
49
Objects
Active
Status
14
Dependencies

Imported Objects

Objects

49 total
Object Name
zyxelArpInspectionThe subtree for arp inspection
MODULE-IDENTITY
.1.3.6.1.4.1.890.1.15.3.12
RFC1155-SMIThe subtree for arp inspection
Unknown
.1.3.6.1.4.1.890.1.15.3.12
IF-MIBThe subtree for arp inspection
NOTIFICATION-TYPE
.1.3.6.1.4.1.890.1.15.3.12
zyxelArpInspectSetup
OBJECT IDENTIFIER
.1.3.6.1.4.1.890.1.15.3.12.1
zyArpInspectStateEnable/Disable ARP inspection on the switch.rw
EnabledStatus (P-BRIDGE-MIB)
.1.3.6.1.4.1.890.1.15.3.12.1.1
zyArpInspectFilterAgingTimeEnter how long (1-2147483647 seconds) the MAC address filter remains in the switch after the switch identifies an unauthorized ARP packet. The switch automatically deletes the MAC address filter afterwards. Type 0 if you want the MAC address filter to be permanent.rw
INTEGER
.1.3.6.1.4.1.890.1.15.3.12.1.2
zyxelArpInspectLog
OBJECT IDENTIFIER
.1.3.6.1.4.1.890.1.15.3.12.1.3
zyArpInspectLogEntriesEnter the maximum number (1-1024) of log messages that were generated by ARP packets and have not been sent to the syslog server yet. Make sure this number is appropriate for the specified syslog rate and Log interval. If the number of log messages in the switch exceeds this number, the switch stops recording log messages and simply starts counting the number of entries that were dropped due to unavailable buffer.rw
INTEGER
.1.3.6.1.4.1.890.1.15.3.12.1.3.1
zyArpInspectLogRateEnter the maximum number of syslog messages the switch can send to the syslog server in one batch. This number is expressed as a rate because the batch frequency is determined by the Log Interval. You must configure the syslog server to use this. Enter 0 if you do not want the switch to send log messages generated by ARP packets to the syslog server.rw
INTEGER
.1.3.6.1.4.1.890.1.15.3.12.1.3.2
zyArpInspectLogIntervalEnter how often (1-86400 seconds) the switch sends a batch of syslog messages to the syslog server. Enter 0 if you want the switch to send syslog messages immediately.rw
INTEGER
.1.3.6.1.4.1.890.1.15.3.12.1.3.3
zyxelArpInspectVlanTableThe table contains ARP inspection VLAN configuration.
SEQUENCE OF ZyxelArpInspectVlanEntry
.1.3.6.1.4.1.890.1.15.3.12.1.4
zyxelArpInspectVlanEntryAn entry contains ARP inspection VLAN configuration.
ZyxelArpInspectVlanEntry
.1.3.6.1.4.1.890.1.15.3.12.1.4.1
zyArpInspectVlanVidThe VLAN ID of each VLAN.
INTEGER
.1.3.6.1.4.1.890.1.15.3.12.1.4.1.1
zyArpInspectVlanStateEnable/Disable ARP inspection on the VLAN.rw
EnabledStatus (P-BRIDGE-MIB)
.1.3.6.1.4.1.890.1.15.3.12.1.4.1.2
zyArpInspectVlanLogSpecify when the switch generates log messages for receiving ARP packets from the VLAN. None: The switch does not generate any log messages when it receives an ARP packet from the VLAN. Deny: The switch generates log messages when it discards an ARP packet from the VLAN. Permit: The switch generates log messages when it forwards an ARP packet from the VLAN. All: The switch generates log messages every time it receives an ARP packet from the VLAN.rw
Enumeration
.1.3.6.1.4.1.890.1.15.3.12.1.4.1.3
zyxelArpInspectPortTableThe table contains ARP inspection port configuration.
SEQUENCE OF ZyxelArpInspectPortEntry
.1.3.6.1.4.1.890.1.15.3.12.1.5
zyxelArpInspectPortEntryAn entry contains ARP inspection port configuration.
ZyxelArpInspectPortEntry
.1.3.6.1.4.1.890.1.15.3.12.1.5.1
zyArpInspectPortTrustStateEnable/Disable this port to be a trusted port (enable) or an untrusted port (disable). The switch does not discard ARP packets on trusted ports for any reason.rw
EnabledStatus { trusted(1), untrusted(2) }
.1.3.6.1.4.1.890.1.15.3.12.1.5.1.1
zyArpInspectPortRateSpecify the maximum rate (1-2048 packets per second) at which the switch receives ARP packets from each port. The switch discards any additional ARP packets. Enter 0 to disable this limit.rw
INTEGER
.1.3.6.1.4.1.890.1.15.3.12.1.5.1.2
zyArpInspectPortIntervalEnter the length (1-15 seconds) of the burst interval. The burst interval is the length of time over which the rate of ARP packets is monitored for each port. For example, if the Rate is 15 pps and the burst interval is 1 second, then the switch accepts a maximum of 15 ARP packets in every one-second interval. If the burst interval is 5 seconds, then the switch accepts a maximum of 75 ARP packets in every five-second interval.rw
INTEGER
.1.3.6.1.4.1.890.1.15.3.12.1.5.1.3
zyxelArpInspectStatus
OBJECT IDENTIFIER
.1.3.6.1.4.1.890.1.15.3.12.2
zyArpInspectFilterClearAllDelete all ARP inspection filters from the switch.rw
EnabledStatus (P-BRIDGE-MIB)
.1.3.6.1.4.1.890.1.15.3.12.2.1
zyArpInspectLogClearDelete all ARP inspection log from the switch.rw
EnabledStatus (P-BRIDGE-MIB)
.1.3.6.1.4.1.890.1.15.3.12.2.2
zyxelArpInspectFilterTableThe table contains ARP inspection filter information.
SEQUENCE OF ZyxelArpInspectFilterEntry
.1.3.6.1.4.1.890.1.15.3.12.2.3
zyxelArpInspectFilterEntryAn entry contains ARP inspection filter information.
ZyxelArpInspectFilterEntry
.1.3.6.1.4.1.890.1.15.3.12.2.3.1
zyArpInspectFilterMacAddressThis field displays the source MAC address in ARP inspection filter.
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.890.1.15.3.12.2.3.1.1
zyArpInspectFilterVidThis field displays the source VLAN ID in ARP inspection filter.
INTEGER
.1.3.6.1.4.1.890.1.15.3.12.2.3.1.2
zyArpInspectFilterPortThis field displays the source port of the discarded ARP packet.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.12.2.3.1.3
zyArpInspectFilterExpiryThis field displays how long (in seconds) the ARP inspection filter remains in the switch.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.12.2.3.1.4
zyArpInspectFilterReasonTypeThis field displays the reason the ARP packet was discarded. MAC+VLAN: The MAC address and VLAN ID were not in the binding table. IP: The MAC address and VLAN ID were in the binding table, but the IP address was not valid. Port: The MAC address, VLAN ID, and IP address were in the binding table, but the port number was not valid.ro
Enumeration
.1.3.6.1.4.1.890.1.15.3.12.2.3.1.5
zyArpInspectFilterClearThis object allow entry to be deleted an ARP inspect filter entry.rw
EnabledStatus (P-BRIDGE-MIB)
.1.3.6.1.4.1.890.1.15.3.12.2.3.1.6
zyxelArpInspectLogTableThe table contains ARP inspection log information.
SEQUENCE OF ZyxelArpInspectLogEntry
.1.3.6.1.4.1.890.1.15.3.12.2.4
zyxelArpInspectLogEntryAn entry contains ARP inspection log information.
ZyxelArpInspectLogEntry
.1.3.6.1.4.1.890.1.15.3.12.2.4.1
zyArpInspectLogMacAdderssThis field displays the source MAC address of the ARP packet.
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.890.1.15.3.12.2.4.1.1
zyArpInspectLogVidThis field displays the source VLAN ID of the ARP packet.
INTEGER
.1.3.6.1.4.1.890.1.15.3.12.2.4.1.2
zyArpInspectLogPortThis field displays the source port of the ARP packet.
INTEGER
.1.3.6.1.4.1.890.1.15.3.12.2.4.1.3
zyArpInspectLogIpAddressThis field displays the source IP address of the ARP packet.
IpAddress
.1.3.6.1.4.1.890.1.15.3.12.2.4.1.4
zyArpInspectLogNumberPacketThis field displays the number of ARP packets that were consolidated into this log message. The switch consolidates identical log messages generated by ARP packets in the log consolidation interval into one log message.ro
INTEGER
.1.3.6.1.4.1.890.1.15.3.12.2.4.1.5
zyArpInspectLogReasonTypeThis field displays the reason the log message was generated. dhcp deny: An ARP packet was discarded because it violated a dynamic binding with the same MAC address and VLAN ID. static deny: An ARP packet was discarded because it violated a static binding with the same MAC address and VLAN ID. deny: An ARP packet was discarded because there were no bindings with the same MAC address and VLAN ID. dhcp permit: An ARP packet was forwarded because it matched a dynamic binding. static permit: An ARP packet was forwarded because it matched a static binding.
Enumeration
.1.3.6.1.4.1.890.1.15.3.12.2.4.1.6
zyArpInspectLogTimeThis field displays when the log message was generated.ro
DateAndTime (SNMPv2-TC)
.1.3.6.1.4.1.890.1.15.3.12.2.4.1.7
zyxelArpInspectStatisticsTableThe table contains ARP inspection statistics information.
SEQUENCE OF ZyxelArpInspectStatisticsEntry
.1.3.6.1.4.1.890.1.15.3.12.2.5
zyxelArpInspectStatisticsEntryAn entry contains ARP inspection statistics information.
ZyxelArpInspectStatisticsEntry
.1.3.6.1.4.1.890.1.15.3.12.2.5.1
zyArpInspectStatisticsVidThe VLAN ID of each VLAN.
INTEGER
.1.3.6.1.4.1.890.1.15.3.12.2.5.1.1
zyArpInspectStatisticsReceivedThis field displays the total number of ARP packets received from the VLAN since the switch last restarted.ro
Counter32
.1.3.6.1.4.1.890.1.15.3.12.2.5.1.2
zyArpInspectStatisticsRequestThis field displays the total number of ARP Request packets received from the VLAN since the switch last restarted.ro
Counter32
.1.3.6.1.4.1.890.1.15.3.12.2.5.1.3
zyArpInspectStatisticsReplyThis field displays the total number of ARP Reply packets received from the VLAN since the switch last restarted.ro
Counter32
.1.3.6.1.4.1.890.1.15.3.12.2.5.1.4
zyArpInspectStatisticsForwardThis field displays the total number of ARP packets the switch forwarded for the VLAN since the switch last restarted.ro
Counter32
.1.3.6.1.4.1.890.1.15.3.12.2.5.1.5
zyArpInspectStatisticsDropThis field displays the total number of ARP packets the switch discarded for the VLAN since the switch last restarted.ro
Counter32
.1.3.6.1.4.1.890.1.15.3.12.2.5.1.6
zyArpInspectStatisticsClearRemoves ARP inspection statistics for the specified VLAN.rw
EnabledStatus (P-BRIDGE-MIB)
.1.3.6.1.4.1.890.1.15.3.12.2.5.1.7
ZYXEL-ARP-INSPECTION-MIB - SNMP MIB Reference | MIBs Explorer