All MIBs › ELTEX-MES-BRIDGE-SECURITY
Category: Domain: Security, Vendor: Eltex
Description: Eltex MES bridge security MIB for managing port-based security features including dynamic ARP inspection and IP source guard.
Start monitoring vendor-neutral, standards-based MIB, any SNMPv3-capable network device (SNMP engine identity/boot/clock status) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.
What Is ELTEX-MES-BRIDGE-SECURITY?
ELTEX-MES-BRIDGE-SECURITY is an Eltex vendor-private MIB that manages Layer 2 bridge security features on Eltex MES-series Carrier Ethernet switches, organized under the eltMesBridgeSecurity subtree with dedicated branches for eltMesIpDhcpSnoop, eltMesPppoeIa, eltMesIpv6DhcpGuard, eltMesIpv6RaGuard, and eltMesIpArpInspect. It defines DHCP Snooping / PPPoE Intermediate Agent option-82 configuration objects such as eltIpDhcpOpt82CircuitIdSuboptionsCombination and eltIpDhcpOpt82PortCircuitId/RemoteId in the eltIpDhcpOpt82PortTable, plus per-port DHCP snooping rate-limit objects (using the EltDHCPSnoopRateLimitType convention) in eltIpDhcpSnoopPortTable, alongside separate control branches for IPv6 DHCP Guard, IPv6 RA Guard, and dynamic ARP inspection. This is a security-configuration MIB rather than a traffic-counter MIB, so monitoring it verifies that anti-spoofing and access-control features (DHCP snooping, ARP inspection, RA/DHCPv6 guard) remain enabled and correctly parameterized on each access port. It depends on IF-MIB for ifIndex/InterfaceIndex references, Q-BRIDGE-MIB for VlanId/PortList types, and the RADLAN-BRIDGE-SECURITY MIB for shared ARP-inspection objects, and is deployed on Eltex MES access/aggregation switches; administrators can download the ELTEX-MES-BRIDGE-SECURITY file to configure and audit these Layer 2 security controls.
IPNetwork Monitor allows you to monitor SNMP objects defined in ELTEX-MES-BRIDGE-SECURITY. Use the built-in SNMP Monitoring Browser to explore available variables, view their current values and descriptions, and select the objects you want to monitor. You can then create SNMP monitors, configure thresholds, and receive alerts when monitored values change.
Supported Devices
- Eltex MES series Carrier Ethernet switches
Monitoring Examples
An operator polls eltIpDhcpOpt82PortTable to confirm eltIpDhcpOpt82PortRowStatus is active(1) and the configured eltIpDhcpOpt82PortCircuitId matches provisioning records on subscriber-facing ports; a port unexpectedly showing a rate-limit value of 0 in the DHCP snooping table alongside eltMesIpArpInspect disabled would indicate the port has lost its anti-spoofing protections.
What Can Be Monitored
- DHCP snooping per-port rate limit
- PPPoE Intermediate Agent option-82 circuit/remote ID config
- DHCPv6 Guard and RA Guard state
- dynamic ARP inspection settings
- option-82 suboption format/type
- per-port DHCP snooping row status
Imported Objects
From ELTEX-MES
| eltMes | MODULE-IDENTITY |
| eltMesBridgeSecurity | OBJECT-IDENTITY |
From IF-MIB
| InterfaceIndex | |
| ifIndex | OBJECT-TYPE |
From Q-BRIDGE-MIB
| PortList | |
| VlanId |
| rlIpArpInspectEnableVlanEntry | OBJECT-TYPE |
From SNMPv2-SMI
| Counter32 | |
| IpAddress | |
| MODULE-IDENTITY | |
| NOTIFICATION-TYPE | |
| OBJECT-TYPE | |
| TimeTicks | |
| Unsigned32 |
From SNMPv2-TC
| DisplayString | |
| MacAddress | |
| RowStatus | |
| TEXTUAL-CONVENTION | |
| TruthValue |
How to Use in IPNetwork Monitor
Example using eltPppoeIaPortStatsRxPADI OID:
OIDs
RFC description
Manages bridge security features: DHCP snooping, IPv6 DHCP guard, IPv6 RA guard, PPPoE IA, and ARP inspect.
Start monitoring Eltex MES-series Carrier Ethernet switch (DHCP snooping/PPPoE IA/ARP inspection/RA guard) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.