Created on
08-19-2024
04:43 AM
Edited on
08-28-2024
12:52 AM
By
Jean-Philippe_P
Description | This article describes how to check ARP entries on an ARP table in FortiGate. |
Scope | FortiGate. |
Solution |
The get system arp command in FortiGate displays the ARP (Address Resolution Protocol) table, which maps IP addresses to MAC addresses, indicating which devices are connected to each interface.
Below is an explanation of the output:
Explanation:
Key Points:
Some use cases of the 'get system arp' command:
When a device is unreachable, checking the ARP table can help determine if the FortiGate has learned the correct MAC address for the device's IP.
The ARP table helps track which devices are communicating through each interface and at what time. It shows which IP addresses are actively in use and what MAC addresses are associated with them.
If there are duplicate IP or MAC addresses on the network, detect them by identifying inconsistent or rapidly changing ARP entries, which could signal network problems or malicious activity.
When configuring static routes, VLANs, or firewall policies, verifying the correct IP-MAC associations in the ARP table ensures configurations align with actual network conditions. |