CISCOSB-IPV6FHS-MIB :: rlNdInspectionPolicyDropUnsecured

MIB Reference — IPNetwork Monitor · Updated September 14, 2026

All MIBsCISCOSB-IPV6FHS-MIBrlNdInspectionPolicyDropUnsecured

rlNdInspectionPolicyDropUnsecured

Module: CISCOSB-IPV6FHS-MIB

OID (symbolic): CISCOSB-IPV6FHS-MIB::rlNdInspectionPolicyDropUnsecured

OID (numeric): 1.3.6.1.4.1.9.6.1.101.215.2.1.1.3

Node type: OBJECT-TYPE

Type: RlIpv6FhsSettingStatusType

Access: read-write

Description: Enable/disable of dropping unsecured messages.

What is rlNdInspectionPolicyDropUnsecured?

This read-write RlIpv6FhsSettingStatusType object in the ND inspection policy table enables or disables dropping of "unsecured" neighbor discovery messages -- those without valid CGA and RSA Signature options. An admin cares because turning this on is what actually makes ND inspection enforce cryptographic protection of neighbor discovery, rather than merely inspecting and passing everything through. For example, enabling this on policy "ndi-access" means any Neighbor Solicitation/Advertisement lacking a valid signature on ports using that policy will be dropped instead of forwarded.

Examples

Walk all instances (SNMPv2c):

snmpwalk -v2c -c public <target> 1.3.6.1.4.1.9.6.1.101.215.2.1.1.3
snmpwalk -v2c -c public <target> CISCOSB-IPV6FHS-MIB::rlNdInspectionPolicyDropUnsecured

Get a specific instance (index 1):

snmpget -v2c -c public <target> 1.3.6.1.4.1.9.6.1.101.215.2.1.1.3.1
snmpget -v2c -c public <target> CISCOSB-IPV6FHS-MIB::rlNdInspectionPolicyDropUnsecured.1

Set instance 1 (SNMPv2c):

snmpset -v2c -c private <target> 1.3.6.1.4.1.9.6.1.101.215.2.1.1.3.1 s <value>

Start monitoring Cisco Small Business switch with a free 30-day trial of IPNetwork Monitor. Create custom SNMP monitor using the CISCOSB-IPV6FHS-MIB::rlNdInspectionPolicyDropUnsecured OID value, configure state conditions and alerts, and monitor any Cisco Small Business switch from a single console.

OID Breakdown

Upper-level ancestors (10 from the standard OID tree / other modules)
Numeric OIDNameModule
1isoLANART-AGENT
1.3orgAirPair-MIB
1.3.6dodAirPair-MIB
1.3.6.1internetAirPair-MIB
1.3.6.1.4privateAirPair-MIB
1.3.6.1.4.1enterprisesAirPair-MIB
1.3.6.1.4.1.9ciscoCAT2600-MIB
1.3.6.1.4.1.9.6otherEnterprisesCISCO-SMI
1.3.6.1.4.1.9.6.1ciscoSBCISCO-SMI
1.3.6.1.4.1.9.6.1.101switch001CISCOSB-MIB
Numeric OIDNameModule
1.3.6.1.4.1.9.6.1.101.215rlIpv6FhsCISCOSB-IPV6FHS-MIB
1.3.6.1.4.1.9.6.1.101.215.2rlNdInspectionCISCOSB-IPV6FHS-MIB
1.3.6.1.4.1.9.6.1.101.215.2.1rlNdInspectionPolicyTableCISCOSB-IPV6FHS-MIB
1.3.6.1.4.1.9.6.1.101.215.2.1.1rlNdInspectionPolicyEntryCISCOSB-IPV6FHS-MIB
1.3.6.1.4.1.9.6.1.101.215.2.1.1.3rlNdInspectionPolicyDropUnsecuredCISCOSB-IPV6FHS-MIB