< Home

arp anti-attack log-trap-timer

Function

The arp anti-attack log-trap-timer command sets an interval at which alarms are sent.

The undo arp anti-attack log-trap-timer command restores the default interval.

By default, the default interval is 0s. That is, the device sends no alarm.

Format

arp anti-attack log-trap-timer time

undo arp anti-attack log-trap-timer

Parameters

Parameter Description Value
time Specifies the interval between alarms. The value ranges from 0s to 1200s.

Views

System view

Default Level

2: Configuration level

Usage Guidelines

Usage Scenario

Devices send alarms indicating potential Address Resolution Protocol (ARP) attacks and logs of ARP events to the NMS. This allows the administrator to learn the ARP operation in real time and take measures to protect devices from potential ARP attacks. To avoid excessive alarms in the case of ARP attacks, run the arp anti-attack log-trap-timer command to set the interval at which alarms are sent to reduce the number of alarms.

Precautions

On an insecure network, setting the interval at which alarms are sent to a large value is recommended. This can avoid excessive alarms and facilitate the fault rectification. On a secure network, setting the interval at which alarms are sent to a small value is recommended. This ensures alarms to be processed in time, helping users rectify the fault on the device.

Configuration Impact

The device discards alarms generated between two sending intervals. As a result, some abnormalities cannot be processed in time.

Example

# Set the interval for logging ARP events and sending an alarm to 20s.

<sysname> system-view
[sysname] arp anti-attack log-trap-timer 20
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
Next topic >