SNMP Network Discovery Attribute Reference
Focus
Focus
Device Security

SNMP Network Discovery Attribute Reference

Table of Contents

SNMP Network Discovery Attribute Reference

This reference lists the attributes that Device Security collects from SNMP Network Discovery, their names as stored in Device Security, and the Device Security fields they map to.
When Device Security uses SNMP to discover network topology from switches, it learns device and network details that enrich the inventory. The attributes in this reference cover SNMP endpoints, IP/MAC binding records, neighbor discovery data, network interfaces, and subnet information.
The third-party attribute name in Device Security refers to the attribute name as it appears in the Assets Inventory table and in Query Engine. This follows the format of third-party-name.attribute-name. When viewing the attribute name in the Assets Inventory table column selector or on a Device Details page, where the third-party name can be found as a header for the attributes section, then the third-party name is removed from the attribute name.
For example, micrsoft_defender_xdr.macAddress would appear in the Query Builder and in the Assets Inventory table, but under Device DetailsAttributesIntegration Specific AttributesMicrosoft Defender, the attribute would appear as macAddress.

Snmp Neighbor Discovery Endpoints Attributes

Device Security collects snmp neighbor discovery endpoints attributes from SNMP Network Discovery. The following table lists each SNMP Network Discovery attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
SNMP Network Discovery Attribute
Device Security Attribute Name
Device Security Common Attribute*
Description
mac_address
snmp_nd.endpoint_list.mac_address
id; MAC
Mac address
ipv4_address
snmp_nd.endpoint_list.ipv4_address
IP Address
Ipv4 address
site_name
—
network_segment_id; site_name
Site name
switch_ip
snmp_nd.endpoint_list.switch_ip
Switch IP
Switch ip
switch_mac
snmp_nd.endpoint_list.switch_mac
Switch MAC
MAC address of the switch
switch_port
snmp_nd.endpoint_list.switch_port
Switch Port
Switch port
switch_name
snmp_nd.endpoint_list.switch_name
switch_name
Switch name
last_vlan_id
snmp_nd.endpoint_list.last_vlan_id
VLAN ID
Last vlan ID
current_depth
snmp_nd.endpoint_list.current_depth
—
Current depth
discovery_scope
snmp_nd.endpoint_list.discovery_scope
—
Discovery scope
discovery_source
snmp_nd.endpoint_list.discovery_source
—
Discovery source
discovery_time
snmp_nd.endpoint_list.discovery_time
—
Discovery time
instance_name
snmp_nd.endpoint_list.instance_name
—
Instance name
discovery_depth
snmp_nd.endpoint_list.max_discovery_depth
—
Discovery depth
port_index
snmp_nd.endpoint_list.port_index
—
Port index
port_status
snmp_nd.endpoint_list.port_status
—
Port status
snmp_version
snmp_nd.endpoint_list.snmp_version
—
Snmp version
vlan_ids
snmp_nd.endpoint_list.vlan_ids
—
Vlan ids

Snmp Neighbor Discovery Ip Mac Bindings Attributes

Device Security collects snmp neighbor discovery ip mac bindings attributes from SNMP Network Discovery. The following table lists each SNMP Network Discovery attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
SNMP Network Discovery Attribute
Device Security Attribute Name
Device Security Common Attribute*
Description
mac_address
—
id; MAC
Mac address
ipv4_address
—
IP Address
Ipv4 address

Snmp Neighbor Discovery Neighbors Attributes

Device Security collects snmp neighbor discovery neighbors attributes from SNMP Network Discovery. The following table lists each SNMP Network Discovery attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
SNMP Network Discovery Attribute
Device Security Attribute Name
Device Security Common Attribute*
Description
mac_address
snmp_nd.neighbor_list.mac_address
id; MAC
Mac address
ipv4_address
snmp_nd.neighbor_list.ipv4_address
IP Address
Ipv4 address
site_name
snmp_nd.neighbor_list.site_name
network_segment_id
Site name
switch_ip
snmp_nd.neighbor_list_switch_ip
Switch IP
Switch ip
switch_mac
snmp_nd.neighbor_list.switch_mac
Switch MAC
MAC address of the switch
switch_port
snmp_nd.neighbor_list_switch_port
Switch Port
Switch port
switch_name
snmp_nd.neighbor_list.switch_name
switch_name
Switch name
vendor
—
Vendor
Device vendor
address_type
snmp_nd.neighbor_list.address_type
—
Address type
cache_version
snmp_nd.neighbor_list.cache_version
—
Cache version
capabilities_enabled
snmp_nd.neighbor_list.capabilities_enabled
—
Capabilities enabled
capabilities_supported
snmp_nd.neighbor_list.capabilities_supported
—
Capabilities supported
chassis_subtype
snmp_nd.neighbor_list.chassis_subtype
—
Chassis subtype
current_depth
snmp_nd.neighbor_list.current_depth
—
Current depth
device_category
snmp_nd.neighbor_list.device_category
—
Device category
device_id
snmp_nd.neighbor_list.device_id
—
Device ID
device_platform
snmp_nd.neighbor_list.device_platform
—
Device platform
device_type
snmp_nd.neighbor_list.device_type
—
Device type
discovery_scope
snmp_nd.neighbor_list.discovery_scope
—
Discovery scope
discovery_source
snmp_nd.neighbor_list.discovery_source
—
Discovery source
discovery_time
snmp_nd.neighbor_list.discovery_time
—
Discovery time
duplex
snmp_nd.neighbor_list.duplex
—
Duplex
instance_name
snmp_nd.neighbor_list.instance_name
—
Instance name
is_virtual_machine
snmp_nd.neighbor_list.is_virtual_machine
—
Is virtual machine
last_change
snmp_nd.neighbor_list.last_change
—
Last change
discovery_depth
snmp_nd.neighbor_list.max_discovery_depth
—
Discovery depth
native_vlan
snmp_nd.neighbor_list.native_vlan
—
Native vlan
port_description
snmp_nd.neighbor_list.port_description
—
Port description
port_id
snmp_nd.neighbor_list.port_id
—
Port ID
port_id_subtype
snmp_nd.neighbor_list.port_id_subtype
—
Port id subtype
rem_man_addr_ifid
snmp_nd.neighbor_list.rem_man_addr_ifid
—
Rem man addr ifid
snmp_version
snmp_nd.neighbor_list.snmp_version
—
Snmp version
vtp_domain
snmp_nd.neighbor_list.vtp_domain
—
Vtp domain

Snmp Neighbor Discovery Interfaces Attributes

Device Security collects snmp neighbor discovery interfaces attributes from SNMP Network Discovery. The following table lists each SNMP Network Discovery attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
SNMP Network Discovery Attribute
Device Security Attribute Name
Device Security Common Attribute*
Description
switch_mac
—
id; MAC
MAC address of the switch
switch_ip
—
IP Address
Switch ip
interface_list
—
third_party_learned_network_interfaces
Interface list

Snmp Neighbor Discovery Subnets Attributes

Device Security collects snmp neighbor discovery subnets attributes from SNMP Network Discovery. The following table lists each SNMP Network Discovery attribute, its name as stored in Device Security, and the Device Security field it maps to (if applicable).
SNMP Network Discovery Attribute
Device Security Attribute Name
Device Security Common Attribute*
Description
prefix
—
id
Prefix
site
—
Site
Site where the device is located
type
—
Type
Type
* Only some attributes map to a Device Security Common Attribute.