ZYXEL-ARP-INSPECTION-MIB
AI MIB Summary
The ZYXEL-ARP-INSPECTION-MIB provides management access to ARP inspection configuration parameters and operational counters on ZyXEL network switches, specifically monitoring the status of dynamic ARP inspection sessions, dropped packets due to validation failures, and interface-level enforcement states.
The subtree for arp inspection
Main OID:
zyxelArpInspection.1.3.6.1.4.1.890.1.15.3.12
49
Objects
Active
Status
14
Dependencies
Imported Objects
Objects
49 total| Object Name |
|---|
zyxelArpInspectionThe subtree for arp inspection MODULE-IDENTITY .1.3.6.1.4.1.890.1.15.3.12 |
RFC1155-SMIThe subtree for arp inspection Unknown .1.3.6.1.4.1.890.1.15.3.12 |
IF-MIBThe subtree for arp inspection NOTIFICATION-TYPE .1.3.6.1.4.1.890.1.15.3.12 |
zyxelArpInspectSetup OBJECT IDENTIFIER .1.3.6.1.4.1.890.1.15.3.12.1 |
zyArpInspectStateEnable/Disable ARP inspection on the switch.rw EnabledStatus (P-BRIDGE-MIB) .1.3.6.1.4.1.890.1.15.3.12.1.1 |
zyArpInspectFilterAgingTimeEnter how long (1-2147483647 seconds) the MAC address filter remains in the switch after
the switch identifies an unauthorized ARP packet. The switch automatically deletes the
MAC address filter afterwards. Type 0 if you want the MAC address filter to be permanent.rw INTEGER .1.3.6.1.4.1.890.1.15.3.12.1.2 |
zyxelArpInspectLog OBJECT IDENTIFIER .1.3.6.1.4.1.890.1.15.3.12.1.3 |
zyArpInspectLogEntriesEnter the maximum number (1-1024) of log messages that were generated by ARP packets and
have not been sent to the syslog server yet. Make sure this number is appropriate for
the specified syslog rate and Log interval. If the number of log messages in the switch
exceeds this number, the switch stops recording log messages and simply starts counting
the number of entries that were dropped due to unavailable buffer.rw INTEGER .1.3.6.1.4.1.890.1.15.3.12.1.3.1 |
zyArpInspectLogRateEnter the maximum number of syslog messages the switch can send to the syslog server in one batch.
This number is expressed as a rate because the batch frequency is determined by the Log Interval.
You must configure the syslog server to use this. Enter 0 if you do not want the switch to send
log messages generated by ARP packets to the syslog server.rw INTEGER .1.3.6.1.4.1.890.1.15.3.12.1.3.2 |
zyArpInspectLogIntervalEnter how often (1-86400 seconds) the switch sends a batch of syslog messages to the syslog server.
Enter 0 if you want the switch to send syslog messages immediately.rw INTEGER .1.3.6.1.4.1.890.1.15.3.12.1.3.3 |
zyxelArpInspectVlanTableThe table contains ARP inspection VLAN configuration. SEQUENCE OF ZyxelArpInspectVlanEntry .1.3.6.1.4.1.890.1.15.3.12.1.4 |
zyxelArpInspectVlanEntryAn entry contains ARP inspection VLAN configuration. ZyxelArpInspectVlanEntry .1.3.6.1.4.1.890.1.15.3.12.1.4.1 |
zyArpInspectVlanVidThe VLAN ID of each VLAN. INTEGER .1.3.6.1.4.1.890.1.15.3.12.1.4.1.1 |
zyArpInspectVlanStateEnable/Disable ARP inspection on the VLAN.rw EnabledStatus (P-BRIDGE-MIB) .1.3.6.1.4.1.890.1.15.3.12.1.4.1.2 |
zyArpInspectVlanLogSpecify when the switch generates log messages for receiving ARP packets from the VLAN.
None: The switch does not generate any log messages when it receives an ARP packet from the VLAN.
Deny: The switch generates log messages when it discards an ARP packet from the VLAN.
Permit: The switch generates log messages when it forwards an ARP packet from the VLAN.
All: The switch generates log messages every time it receives an ARP packet from the VLAN.rw Enumeration .1.3.6.1.4.1.890.1.15.3.12.1.4.1.3 |
zyxelArpInspectPortTableThe table contains ARP inspection port configuration. SEQUENCE OF ZyxelArpInspectPortEntry .1.3.6.1.4.1.890.1.15.3.12.1.5 |
zyxelArpInspectPortEntryAn entry contains ARP inspection port configuration. ZyxelArpInspectPortEntry .1.3.6.1.4.1.890.1.15.3.12.1.5.1 |
zyArpInspectPortTrustStateEnable/Disable this port to be a trusted port (enable) or an untrusted port (disable).
The switch does not discard ARP packets on trusted ports for any reason.rw EnabledStatus { trusted(1), untrusted(2) } .1.3.6.1.4.1.890.1.15.3.12.1.5.1.1 |
zyArpInspectPortRateSpecify the maximum rate (1-2048 packets per second) at which the switch receives ARP packets
from each port. The switch discards any additional ARP packets. Enter 0 to disable this limit.rw INTEGER .1.3.6.1.4.1.890.1.15.3.12.1.5.1.2 |
zyArpInspectPortIntervalEnter the length (1-15 seconds) of the burst interval. The burst interval is the length of time
over which the rate of ARP packets is monitored for each port. For example, if the Rate is 15 pps
and the burst interval is 1 second, then the switch accepts a maximum of 15 ARP packets in every
one-second interval. If the burst interval is 5 seconds, then the switch accepts a maximum of
75 ARP packets in every five-second interval.rw INTEGER .1.3.6.1.4.1.890.1.15.3.12.1.5.1.3 |
zyxelArpInspectStatus OBJECT IDENTIFIER .1.3.6.1.4.1.890.1.15.3.12.2 |
zyArpInspectFilterClearAllDelete all ARP inspection filters from the switch.rw EnabledStatus (P-BRIDGE-MIB) .1.3.6.1.4.1.890.1.15.3.12.2.1 |
zyArpInspectLogClearDelete all ARP inspection log from the switch.rw EnabledStatus (P-BRIDGE-MIB) .1.3.6.1.4.1.890.1.15.3.12.2.2 |
zyxelArpInspectFilterTableThe table contains ARP inspection filter information. SEQUENCE OF ZyxelArpInspectFilterEntry .1.3.6.1.4.1.890.1.15.3.12.2.3 |
zyxelArpInspectFilterEntryAn entry contains ARP inspection filter information. ZyxelArpInspectFilterEntry .1.3.6.1.4.1.890.1.15.3.12.2.3.1 |
zyArpInspectFilterMacAddressThis field displays the source MAC address in ARP inspection filter. MacAddress (SNMPv2-TC) .1.3.6.1.4.1.890.1.15.3.12.2.3.1.1 |
zyArpInspectFilterVidThis field displays the source VLAN ID in ARP inspection filter. INTEGER .1.3.6.1.4.1.890.1.15.3.12.2.3.1.2 |
zyArpInspectFilterPortThis field displays the source port of the discarded ARP packet.ro INTEGER .1.3.6.1.4.1.890.1.15.3.12.2.3.1.3 |
zyArpInspectFilterExpiryThis field displays how long (in seconds) the ARP inspection filter remains in the switch.ro INTEGER .1.3.6.1.4.1.890.1.15.3.12.2.3.1.4 |
zyArpInspectFilterReasonTypeThis field displays the reason the ARP packet was discarded.
MAC+VLAN: The MAC address and VLAN ID were not in the binding table.
IP: The MAC address and VLAN ID were in the binding table, but the IP address was not valid.
Port: The MAC address, VLAN ID, and IP address were in the binding table, but the port number was not valid.ro Enumeration .1.3.6.1.4.1.890.1.15.3.12.2.3.1.5 |
zyArpInspectFilterClearThis object allow entry to be deleted an ARP inspect filter entry.rw EnabledStatus (P-BRIDGE-MIB) .1.3.6.1.4.1.890.1.15.3.12.2.3.1.6 |
zyxelArpInspectLogTableThe table contains ARP inspection log information. SEQUENCE OF ZyxelArpInspectLogEntry .1.3.6.1.4.1.890.1.15.3.12.2.4 |
zyxelArpInspectLogEntryAn entry contains ARP inspection log information. ZyxelArpInspectLogEntry .1.3.6.1.4.1.890.1.15.3.12.2.4.1 |
zyArpInspectLogMacAdderssThis field displays the source MAC address of the ARP packet. MacAddress (SNMPv2-TC) .1.3.6.1.4.1.890.1.15.3.12.2.4.1.1 |
zyArpInspectLogVidThis field displays the source VLAN ID of the ARP packet. INTEGER .1.3.6.1.4.1.890.1.15.3.12.2.4.1.2 |
zyArpInspectLogPortThis field displays the source port of the ARP packet. INTEGER .1.3.6.1.4.1.890.1.15.3.12.2.4.1.3 |
zyArpInspectLogIpAddressThis field displays the source IP address of the ARP packet. IpAddress .1.3.6.1.4.1.890.1.15.3.12.2.4.1.4 |
zyArpInspectLogNumberPacketThis field displays the number of ARP packets that were consolidated into this log message.
The switch consolidates identical log messages generated by ARP packets in the log consolidation interval into one log message.ro INTEGER .1.3.6.1.4.1.890.1.15.3.12.2.4.1.5 |
zyArpInspectLogReasonTypeThis field displays the reason the log message was generated.
dhcp deny: An ARP packet was discarded because it violated a dynamic binding with the same MAC address and VLAN ID.
static deny: An ARP packet was discarded because it violated a static binding with the same MAC address and VLAN ID.
deny: An ARP packet was discarded because there were no bindings with the same MAC address and VLAN ID.
dhcp permit: An ARP packet was forwarded because it matched a dynamic binding.
static permit: An ARP packet was forwarded because it matched a static binding. Enumeration .1.3.6.1.4.1.890.1.15.3.12.2.4.1.6 |
zyArpInspectLogTimeThis field displays when the log message was generated.ro DateAndTime (SNMPv2-TC) .1.3.6.1.4.1.890.1.15.3.12.2.4.1.7 |
zyxelArpInspectStatisticsTableThe table contains ARP inspection statistics information. SEQUENCE OF ZyxelArpInspectStatisticsEntry .1.3.6.1.4.1.890.1.15.3.12.2.5 |
zyxelArpInspectStatisticsEntryAn entry contains ARP inspection statistics information. ZyxelArpInspectStatisticsEntry .1.3.6.1.4.1.890.1.15.3.12.2.5.1 |
zyArpInspectStatisticsVidThe VLAN ID of each VLAN. INTEGER .1.3.6.1.4.1.890.1.15.3.12.2.5.1.1 |
zyArpInspectStatisticsReceivedThis field displays the total number of ARP packets received from the VLAN since the switch last restarted.ro Counter32 .1.3.6.1.4.1.890.1.15.3.12.2.5.1.2 |
zyArpInspectStatisticsRequestThis field displays the total number of ARP Request packets received from the VLAN since the switch last restarted.ro Counter32 .1.3.6.1.4.1.890.1.15.3.12.2.5.1.3 |
zyArpInspectStatisticsReplyThis field displays the total number of ARP Reply packets received from the VLAN since the switch last restarted.ro Counter32 .1.3.6.1.4.1.890.1.15.3.12.2.5.1.4 |
zyArpInspectStatisticsForwardThis field displays the total number of ARP packets the switch forwarded for the VLAN since the switch last restarted.ro Counter32 .1.3.6.1.4.1.890.1.15.3.12.2.5.1.5 |
zyArpInspectStatisticsDropThis field displays the total number of ARP packets the switch discarded for the VLAN since the switch last restarted.ro Counter32 .1.3.6.1.4.1.890.1.15.3.12.2.5.1.6 |
zyArpInspectStatisticsClearRemoves ARP inspection statistics for the specified VLAN.rw EnabledStatus (P-BRIDGE-MIB) .1.3.6.1.4.1.890.1.15.3.12.2.5.1.7 |