MIB Viewer

ALCATEL-ENT1-IPSEC-MIB

113 objects
This module describes an authoritative enterprise-specific Simple Network Management Protocol (SNMP) Management Information Base (MIB): Proprietary IPsec MIB definitions The right to make changes in specification and other information contained in this document without prior notice is reserved. No liability shall be assumed for any incidental, indirect, special, or consequential damages whatsoever arising from or related to this document or the information contained herein. Vendors, end-users, and other interested parties are granted non-exclusive license to use this specification in connection with management of the products for which it is intended to be used. Copyright (C) 1995-2010 Alcatel-Lucent ALL RIGHTS RESERVED WORLDWIDE
OIDNameAccessStatusDescription
1.3.6.1.4.1.6486.801.1.2.1.43.1IdentityalcatelIND1IPsecMIBThis module describes an authoritative enterprise-specific Simple Network Management Protocol (SNMP) Management Information Base (MIB): Proprietary IPsec MIB d…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1NodealcatelIND1IPsecMIBObjects
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1NodealaIPsecConfig
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.1TablealaIPsecSecurityKeyTablenot-accessiblecurrentTable allowing the configuration of the switch's IPsec security key. The security key is used to encrypt and IPsec related information retained in permanent st…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.1.1RowalaIPsecSecurityKeyEntrynot-accessiblecurrentThe security key entry.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.1.1.1ColumnalaIPsecSecurityKeyIDnot-accessiblecurrentThe row's identifier. Only one entry is ever present, with an ID value of 1.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.1.1.2ColumnalaIPsecSecurityKeyCurrentread-writecurrentThe current value of the 16-byte IPsec security key. If an attempt is made to read the value of this object, a zero-length octet string will be returned.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.1.1.3ColumnalaIPsecSecurityKeyNewread-writecurrentUsed to set a new 16-byte value for the IPsec security key. Both alaIPsecSecurityKeyCurrent (with its correct value) and alaIPsecSecurityKeyNew must be specifi…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2TablealaIPsecStatisticsTablenot-accessibledeprecatedTable allowing the IPv6 statistics to be retrieved.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1RowalaIPsecStatisticsEntrynot-accessibledeprecatedThe statistics entry.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.1ColumnalaIPsecStatisticsProtocolnot-accessibledeprecatedIP protocol version covered by the IPsec statistics.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.2ColumnalaIPsecStatisticsInSuccessfulread-onlydeprecatedNumber of incoming packets requiring IPsec processing that were successfully handled.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.3ColumnalaIPsecStatisticsInPolicyViolationread-onlydeprecatedNumber of incoming packets that were dropped because of policy violations.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.4ColumnalaIPsecStatisticsInNoSAread-onlydeprecatedNumber of incoming packets dropped because no matching SA was found.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.5ColumnalaIPsecStatisticsInUnknownSPIread-onlydeprecatedNumber of incoming packets dropped because the SPI was unknown.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.6ColumnalaIPsecStatisticsInAHReplayread-onlydeprecatedNumber of incoming packets that failed the AH replay check.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.7ColumnalaIPsecStatisticsInESPReplayread-onlydeprecatedNumber of incoming packets taht failed the ESP replay check.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.8ColumnalaIPsecStatisticsInAHAuthenticationSuccessread-onlydeprecatedNumber of incoming packets that successfully passed AH authentication.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.9ColumnalaIPsecStatisticsInAHAuthenticationFailread-onlydeprecatedNumber of incoming packets that failed AH authentication.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.10ColumnalaIPsecStatisticsInESPAuthenticationSuccessread-onlydeprecatedNumber of incoming packets that successfully passed ESP authentication.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.11ColumnalaIPsecStatisticsInESPAuthenticationFailread-onlydeprecatedNumber of incoming packets that failed ESP authentication.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.12ColumnalaIPsecStatisticsInBadPacketread-onlydeprecatedNumber of incoming packets requiring IPsec processing that were not valid.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.13ColumnalaIPsecStatisticsInNoMemoryread-onlydeprecatedNumber of incoming IPsec packets dropped because no memory was available.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.14ColumnalaIPsecStatisticsOutSuccessfulread-onlydeprecatedNumber of outgoing packets requiring IPsec processing that were successfully handled.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.15ColumnalaIPsecStatisticsOutPolicyViolationread-onlydeprecatedNumber of outgoing packets dropped because of a policy violation.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.16ColumnalaIPsecStatisticsOutNoSAread-onlydeprecatedNumber of outgoing packets dropped because no matching SA was found.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.17ColumnalaIPsecStatisticsOutBadPacketread-onlydeprecatedNumber of outgoing packets requiring IPsec processing that were not valid.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.18ColumnalaIPsecStatisticsOutNoMemoryread-onlydeprecatedNumber of outgoing IPsec packets dropped because no memory was available.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.19ColumnalaIPsecStatisticsInDiscardedread-onlydeprecatedNumber of incoming packets dropped because they matched a discard policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.20ColumnalaIPsecStatisticsOutDiscardedread-onlydeprecatedNumber of outgoing packets dropped because they matched a discard policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2TablealaIPsecSecurityPolicyTablenot-accessiblecurrentTable allowing the configuration of IPsec security policies.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1RowalaIPsecSecurityPolicyEntrynot-accessiblecurrentA security policy entry.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.1ColumnalaIPsecSecurityPolicyIDnot-accessiblecurrentA unique identifier for this security policy. When creating a new policy, a zero value must be specified. An available policy ID will then be automatically ass…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.2ColumnalaIPsecSecurityPolicySourceTyperead-createcurrentThe type of source address specified. Currently only ipv6(2) is allowed.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.3ColumnalaIPsecSecurityPolicySourceread-createcurrentThe source of packets covered by this policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.4ColumnalaIPsecSecurityPolicySourcePrefixLengthread-createcurrentThe number of bits of the source address used to determine which packets are covered by this policy. The default value varies depending upon the type of source…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.5ColumnalaIPsecSecurityPolicySourcePortread-createcurrentThe source port of packets covered by this policy. To match packets from any port, specify the 0 wildcard value. A wildcard policy will only be used when there…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.6ColumnalaIPsecSecurityPolicyDestinationTyperead-createcurrentThe type of destination address specified. Currently only ipv6(2) is allowed.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.7ColumnalaIPsecSecurityPolicyDestinationread-createcurrentThe destination of packets covered by this policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.8ColumnalaIPsecSecurityPolicyDestinationPrefixLengthread-createcurrentThe number of bits of the destination prefix used to determine which packets are covered by this policy. The default value varies depending upon the type of de…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.9ColumnalaIPsecSecurityPolicyDestinationPortread-createcurrentThe destination port of packets covered by this policy. To match packets from any port, specify the 0 wildcard value. A wildcard policy will only be used when …
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.10ColumnalaIPsecSecurityPolicyULProtocolread-createcurrentThe upper-layer protocol of packets covered by this policy. To match all protocols, specify the 255 wildcard value. A wildcard policy will only be used when th…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.11ColumnalaIPsecSecurityPolicyICMPv6Typeread-createcurrentIf the upper-layer protocol is ICMPv6, an ICMPv6 type value may be specified to restrict the policy to a specific packet type. To match all ICMPv6 packets, the…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.12ColumnalaIPsecSecurityPolicyDirectionread-createcurrentThe direction of traffic covered by this policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.13ColumnalaIPsecSecurityPolicyNameread-createcurrentA name for this policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.14ColumnalaIPsecSecurityPolicyDescriptionread-createcurrentA detailed description of this policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.15ColumnalaIPsecSecurityPolicyActionread-createcurrentThe action to take on traffic covered by this policy. discard(0) means that all traffic covered by the policy will be discarded. none(1) means that no IPsec pr…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.16ColumnalaIPsecSecurityPolicyAdminStateread-createcurrentAllows a policy to be administratively enabled or disabled.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.17ColumnalaIPsecSecurityPolicyOperationalStateread-onlycurrentThe operational state of this policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.18ColumnalaIPsecSecurityPolicyPriorityread-createcurrentThe priority for this policy. When traffic would be covered by multiple policies the policy with the highest priority value is used. If two policies have the s…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.19ColumnalaIPsecSecurityPolicyRowStatusread-createcurrentUsed to control the addition and removal of security policy entries.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.3TablealaIPsecSecurityPolicyRuleTablenot-accessiblecurrentTable allowing the configuration of the IPsec rules for a security policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.3.1RowalaIPsecSecurityPolicyRuleEntrynot-accessiblecurrentA security policy entry.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.3.1.1ColumnalaIPsecSecurityPolicyRuleIndexnot-accessiblecurrentIndex specifying the order in which multiple rules for the same security policy will be applied. Rules are indexed by the order in which they are applied to th…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.3.1.2ColumnalaIPsecSecurityPolicyRuleProtocolread-createcurrentIndicates the type of header required by the rule.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.3.1.3ColumnalaIPsecSecurityPolicyRuleModeread-createcurrentThe mode in which the rule's protocol is running. At present, only transport(1) is allowed. Until tunnel mode is supported, transport(1) will be treated as the…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.3.1.4ColumnalaIPsecSecurityPolicyRuleRowStatusread-createcurrentUsed to control the addition and removal of security policy IPsec rule entries.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4TablealaIPsecSAConfigTablenot-accessiblecurrentTable allowing the manual configuration of Security Associations in the Security Association Database (SAD).
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1RowalaIPsecSAConfigEntrynot-accessiblecurrentManually configured security association (SA) parameters.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.1ColumnalaIPsecSAConfigIDnot-accessiblecurrentA unique identifier for this manually configured SA. When creating a new SA, a zero value must be specified. An available ID will then be automatically assigne…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.2ColumnalaIPsecSAConfigTyperead-createcurrentThe type of this SA: AH or ESP. Once set, the type may not be changed.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.3ColumnalaIPsecSAConfigSourceTyperead-createcurrentThe type of source address specified. Currently only ipv6(2) is allowed.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.4ColumnalaIPsecSAConfigSourceread-createcurrentThe source of packets covered by this SA.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.5ColumnalaIPsecSAConfigDestinationTyperead-createcurrentThe type of destination address specified. Currently only ipv6(2) is allowed.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.6ColumnalaIPsecSAConfigDestinationread-createcurrentThe destination of packets covered by this SA.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.7ColumnalaIPsecSAConfigSPIread-createcurrentThe Security Parameters Index (SPI) of this SA.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.8ColumnalaIPsecSAConfigNameread-createcurrentThe name of this manually configured SA.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.9ColumnalaIPsecSAConfigDescriptionread-createcurrentA detailed description for the manually created IPsec SA.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.10ColumnalaIPsecSAConfigEncryptionAlgorithmread-createcurrentFor an ESP SA, defines the encryption algorithm to be used. null(11) should be specified if ESP is being used for integrity only. If null(11) is specified, ala…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.11ColumnalaIPsecSAConfigEncryptionKeyLengthread-createcurrentFor those algorithms where multiple key lengths are supported, specifies the key length to be used. Zero may be specified to use the default key length.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.12ColumnalaIPsecSAConfigAuthenticationAlgorithmread-createcurrentDefines the authentication algorithm to be used. For ESP SAs, none(0) may be specified for encryption-only ESP. For ESP integrity-only, ESP integrity and encry…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.13ColumnalaIPsecSAConfigAdminStateread-createcurrentAllows a manually configured SA to be administratively enabled or disabled.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.14ColumnalaIPsecSAConfigOperationalStateread-onlycurrentThe operational state of the manually configured SA.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.15ColumnalaIPsecSAConfigRowStatusread-createcurrentUsed to control the addition and removal of manually configured IPsec SAs.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5TablealaIPsecKeyTablenot-accessiblecurrentTable used to configure the keys used by manually configured Security Associations in the IPsec Security Association Configuration table.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1RowalaIPsecKeyEntrynot-accessiblecurrentAn IPsec key. Keys in the table must be uniquely identified by the combination of key type and key name. However, since the key name can be up to 255 character…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1.1ColumnalaIPsecKeyIDnot-accessiblecurrentA unique identifier for this key. When creating a new key, a zero value must be specified. An available ID will then be automatically assigned to the key.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1.2ColumnalaIPsecKeyTyperead-createcurrentIndicates if the key is to be used for encryption or authentication by a SA. Once a key is created, its type may not be changed.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1.3ColumnalaIPsecKeyNameread-createcurrentThe name of the key. For manually-configured SA keys, the name is limited to a maximum length of 20 characters and should correspond to an entry in the alaIPse…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1.4ColumnalaIPsecKeyread-createcurrentThe key value. The value specified must match the required key length for the algorithm using the key. If an attempt is made to read the value of this object a…
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1.5ColumnalaIPsecKeyEncryptedread-createcurrentIf true, the key value is specified in AOS encrypted form. For example, keys being restored from the configuration file.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1.6ColumnalaIPsecKeyRowStatusread-createcurrentUsed to control the addition and removal of keys.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6TablealaIPsecErrorsTablenot-accessiblecurrentTable allowing retrieval of the IPsec error counters.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1RowalaIPsecErrorsEntrynot-accessiblecurrentThe error counters entry.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.1ColumnalaIPsecErrorsProtocolnot-accessiblecurrentIP protocol version covered by the IPsec error counters.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.2ColumnalaIPsecErrorsInPolicyViolationread-onlycurrentNumber of incoming packets that were dropped because of policy violations.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.3ColumnalaIPsecErrorsInNoSAread-onlycurrentNumber of incoming packets dropped because no matching SA was found.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.4ColumnalaIPsecErrorsInReplayread-onlycurrentNumber of incoming packets that failed a replay check.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.5ColumnalaIPsecErrorsInAuthenticationFailread-onlycurrentNumber of incoming packets that failed authentication.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.6ColumnalaIPsecErrorsInDiscardedread-onlycurrentNumber of incoming packets dropped because they matched a discard policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.7ColumnalaIPsecErrorsInOtherread-onlycurrentNumber of incoming packets dropped for a reason not otherwise counted.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.8ColumnalaIPsecErrorsOutNoSAread-onlycurrentNumber of outgoing packets dropped because no matching SA was found.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.9ColumnalaIPsecErrorsOutDiscardedread-onlycurrentNumber of outgoing packets dropped because they matched a discard policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.10ColumnalaIPsecErrorsOutOtherread-onlycurrentNumber of outgoing packets dropped for a reason not otherwise counted.
1.3.6.1.4.1.6486.801.1.2.1.43.1.2NodealcatelIND1IPsecMIBConformance
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.1NodealcatelIND1IPsecMIBCompliances
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.1.1CompliancealaIPsecCompliancecurrentThe compliance statement for Alcatel switches implementing ALCATEL-ENT1-IPSEC-MIB.
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2NodealcatelIND1IPsecMIBGroups
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.1GroupalaIPsecConfigGroupcurrentA collection of objects to support global configuration of IPsec.
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.2GroupalaIPsecSecurityPolicyGroupcurrentA collection of objects to support management of IPsec security policies.
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.3GroupalaIPsecSAConfigGroupcurrentA collection of objects to support management of manually configured IPsec SAs.
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.4GroupalaIPsecKeyGroupcurrentA collection of objects to support management of keys.
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.5GroupalaIPsecCountersGroupcurrentA collection of objects to support management of IPsec counters.
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.6GroupalaIPsecStatisticsGroupdeprecatedA collection of objects to support management of IPsec statistics.
Type Definitions
NameSyntaxStatusDescription
IPsecAdminStateINTEGER { enabled(1), disabled(2) }currentAdministrative state.
IPsecAHAlgorithmINTEGER { none(0), hmacmd5(2), hmacsha1(3), aesxcbcmac(9) }currentAH algorithms.
IPsecDescriptionOCTET STRING (SIZE(0..200))currentOptional description of a table entry.
IPsecESPAlgorithmINTEGER { none(0), descbc(2), des3cbc(3), null(11), aescbc(12), aesctr(13) }currentESP algorithms.
IPsecOperationalStateINTEGER { enabled(1), disabled(2), dnspending(3) }currentOperational state. enabled(1) - The entry is enabled. disabled(2) - The entry is administratively disabled or DNS resolution has experienced a permanent failure. dnspending(3) - Awaiting DNS resolution before making the…
IPsecPortNumberInteger32 (0..65535)currentA port number value. 0 is the wildcard value to match any port.
IPsecPrefixLengthInteger32 (0..128)currentSignificant bits in an IPv6 address prefix. 0..32 is the valid range for IPv4 addresses. 0..128 is valid for IPv6 addresses
IPsecSATypeINTEGER { ah(2), esp(3) }currentSA type.
IPsecULProtocolInteger32 (0..255)currentAn upper-layer protocol number. 255 is the wildcard value to match any protocol.