Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 3 Jan 2013 12:00:31 -0800
From:      Kurt Buff <kurt.buff@gmail.com>
To:        freebsd-net@freebsd.org
Subject:   arpwatch questions appropriate here?
Message-ID:  <CADy1Ce4Q3WxdsAp8Q5c6VsKX_ejL6id%2Be5zM08fW_wp6JD72nQ@mail.gmail.com>

next in thread | raw e-mail | index | archive | help
All,

It's been a while since I tried arpwatch on FreeBSD, and it looks as
if it still has some important limitations.

Most important to me, it doesn't seem to like to run on an unnumbered
interface - I'd like to use it to listen on a mirror port on my
switch(es), and can't see how to do that.

Also, I don't see a facility for something like an arpwatch.conf file
(in particular, I'd like to specify known networks, so I can watch for
bogons), though I am able to specify arpwatch_enable and
arpwatch_interfaces in rc.conf, which is nice.

Has anyone here been able to work through these problems?

If there's a better place I should be asking, please let me know.

Thanks,

Kurt



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?CADy1Ce4Q3WxdsAp8Q5c6VsKX_ejL6id%2Be5zM08fW_wp6JD72nQ>