All MIBs › CROUTE-MIB › ipInterfaceIcmpRedirects
ipInterfaceIcmpRedirects
Module: CROUTE-MIB
OID (symbolic): CROUTE-MIB::ipInterfaceIcmpRedirects
OID (numeric): 1.3.6.1.4.1.81.31.1.2.1.13
Node type: OBJECT-TYPE
Type: INTEGER
Access: read-write
Description: enable - enable the sending of redirect messages if the router is forced to re-send a packet through the same interface on which it was received. disable - disable the sending of redirect messages on this interface.
What is ipInterfaceIcmpRedirects?
This read-write enumerated integer controls whether the router sends ICMP redirect messages on this interface when it has to resend a packet back out the same interface it arrived on. An admin disables this on interfaces facing untrusted networks since ICMP redirects can be abused to manipulate a host's routing table. For example, disabling ipInterfaceIcmpRedirects on an interface facing the public internet prevents an attacker from injecting bogus redirect messages to reroute traffic.
Examples
Walk all instances (SNMPv2c):
snmpwalk -v2c -c public <target> 1.3.6.1.4.1.81.31.1.2.1.13 snmpwalk -v2c -c public <target> CROUTE-MIB::ipInterfaceIcmpRedirects
Get a specific instance (index 1):
snmpget -v2c -c public <target> 1.3.6.1.4.1.81.31.1.2.1.13.1 snmpget -v2c -c public <target> CROUTE-MIB::ipInterfaceIcmpRedirects.1
Set instance 1 (SNMPv2c):
snmpset -v2c -c private <target> 1.3.6.1.4.1.81.31.1.2.1.13.1 i <value>
SNMPv3 example:
snmpget -v3 -l authPriv -u snmpv3-user -a SHA -A "AuthPassword1" -x AES -X "PrivPassword1" <target> ipInterfaceIcmpRedirects.1
Start monitoring Layer 3 switch platform (vendor unclear, BOOTP/RIP) with a free 30-day trial of IPNetwork Monitor. Create custom SNMP monitor using the CROUTE-MIB::ipInterfaceIcmpRedirects OID value, configure state conditions and alerts, and monitor any Layer 3 switch platform (vendor unclear, BOOTP/RIP) from a single console.
OID Breakdown
Upper-level ancestors (7 from the standard OID tree / other modules)
| Numeric OID | Name | Module |
|---|---|---|
| 1 | iso | LANART-AGENT |
| 1.3 | org | AirPair-MIB |
| 1.3.6 | dod | AirPair-MIB |
| 1.3.6.1 | internet | AirPair-MIB |
| 1.3.6.1.4 | private | AirPair-MIB |
| 1.3.6.1.4.1 | enterprises | AirPair-MIB |
| 1.3.6.1.4.1.81 | lannet | GEN-MIB |
| Numeric OID | Name | Module |
|---|---|---|
| 1.3.6.1.4.1.81.31 | croute | CROUTE-MIB |
| 1.3.6.1.4.1.81.31.1 | ipRoute | CROUTE-MIB |
| 1.3.6.1.4.1.81.31.1.2 | ipInterfaceTable | CROUTE-MIB |
| 1.3.6.1.4.1.81.31.1.2.1 | ipInterfaceEntry | CROUTE-MIB |
| 1.3.6.1.4.1.81.31.1.2.1.13 | ipInterfaceIcmpRedirects | CROUTE-MIB |