All MIBs › CISCOSB-IPV6FHS-MIB › rlNdInspectionPolicyDropUnsecured
rlNdInspectionPolicyDropUnsecured
Module: CISCOSB-IPV6FHS-MIB
OID (symbolic): CISCOSB-IPV6FHS-MIB::rlNdInspectionPolicyDropUnsecured
OID (numeric): 1.3.6.1.4.1.9.6.1.101.215.2.1.1.3
Node type: OBJECT-TYPE
Type: RlIpv6FhsSettingStatusType
Access: read-write
Description: Enable/disable of dropping unsecured messages.
What is rlNdInspectionPolicyDropUnsecured?
This read-write RlIpv6FhsSettingStatusType object in the ND inspection policy table enables or disables dropping of "unsecured" neighbor discovery messages -- those without valid CGA and RSA Signature options. An admin cares because turning this on is what actually makes ND inspection enforce cryptographic protection of neighbor discovery, rather than merely inspecting and passing everything through. For example, enabling this on policy "ndi-access" means any Neighbor Solicitation/Advertisement lacking a valid signature on ports using that policy will be dropped instead of forwarded.
Examples
Walk all instances (SNMPv2c):
snmpwalk -v2c -c public <target> 1.3.6.1.4.1.9.6.1.101.215.2.1.1.3 snmpwalk -v2c -c public <target> CISCOSB-IPV6FHS-MIB::rlNdInspectionPolicyDropUnsecured
Get a specific instance (index 1):
snmpget -v2c -c public <target> 1.3.6.1.4.1.9.6.1.101.215.2.1.1.3.1 snmpget -v2c -c public <target> CISCOSB-IPV6FHS-MIB::rlNdInspectionPolicyDropUnsecured.1
Set instance 1 (SNMPv2c):
snmpset -v2c -c private <target> 1.3.6.1.4.1.9.6.1.101.215.2.1.1.3.1 s <value>
Start monitoring Cisco Small Business switch with a free 30-day trial of IPNetwork Monitor. Create custom SNMP monitor using the CISCOSB-IPV6FHS-MIB::rlNdInspectionPolicyDropUnsecured OID value, configure state conditions and alerts, and monitor any Cisco Small Business switch from a single console.
OID Breakdown
Upper-level ancestors (10 from the standard OID tree / other modules)
| Numeric OID | Name | Module |
|---|---|---|
| 1 | iso | LANART-AGENT |
| 1.3 | org | AirPair-MIB |
| 1.3.6 | dod | AirPair-MIB |
| 1.3.6.1 | internet | AirPair-MIB |
| 1.3.6.1.4 | private | AirPair-MIB |
| 1.3.6.1.4.1 | enterprises | AirPair-MIB |
| 1.3.6.1.4.1.9 | cisco | CAT2600-MIB |
| 1.3.6.1.4.1.9.6 | otherEnterprises | CISCO-SMI |
| 1.3.6.1.4.1.9.6.1 | ciscoSB | CISCO-SMI |
| 1.3.6.1.4.1.9.6.1.101 | switch001 | CISCOSB-MIB |
| Numeric OID | Name | Module |
|---|---|---|
| 1.3.6.1.4.1.9.6.1.101.215 | rlIpv6Fhs | CISCOSB-IPV6FHS-MIB |
| 1.3.6.1.4.1.9.6.1.101.215.2 | rlNdInspection | CISCOSB-IPV6FHS-MIB |
| 1.3.6.1.4.1.9.6.1.101.215.2.1 | rlNdInspectionPolicyTable | CISCOSB-IPV6FHS-MIB |
| 1.3.6.1.4.1.9.6.1.101.215.2.1.1 | rlNdInspectionPolicyEntry | CISCOSB-IPV6FHS-MIB |
| 1.3.6.1.4.1.9.6.1.101.215.2.1.1.3 | rlNdInspectionPolicyDropUnsecured | CISCOSB-IPV6FHS-MIB |