MIBs Depot

ALCATEL-IND1-IPSEC-MIB

Registered at
1.3.6.1.4.1.6486.801.1.2.1.43.1
Last updated
2019-11-27 00:00
Organization
ALE USA Inc
Revisions
2019-11-27 00:00, 2019-11-11 00:00, 2016-09-12 00:00, 2010-07-20 00:00
Namespace
alcatel-aos7
Source file
ALCATEL-IND1-IPSEC-MIB
Digest
sha256:896594254f560735cac72ba0ecccdf7389ba1e06ad0b548119a83e6351999c0a

Description

This module describes an authoritative enterprise-specific Simple Network Management Protocol (SNMP) Management Information Base (MIB): Proprietary IPsec MIB definitions The right to make changes in specification and other information contained in this document without prior notice is reserved. No liability shall be assumed for any incidental, indirect, special, or consequential damages whatsoever arising from or related to this document or the information contained herein. Vendors, end-users, and other interested parties are granted non-exclusive license to use this specification in connection with management of the products for which it is intended to be used. Copyright (C) ALE USA Inc. 2014-2019 Copyright (C) 1995-2013 Alcatel-Lucent ALL RIGHTS RESERVED WORLDWIDE

Contact

Please consult with Customer Service to ensure the most appropriate version of this document is used with the products in question: ALE USA Inc. Enterprise 26801 West Agoura Road Agoura Hills, CA 91301-5122 United States Of America Telephone: +1 800 995 2696 Electronic Mail: ebg_global_supportcenter@al-enterprise.com World Wide Web: https://www.al-enterprise.com

Imports

FromSymbols
ALCATEL-IND1-BASEsoftentIND1IPsec
INET-ADDRESS-MIBInetAddress, InetAddressType
SNMP-FRAMEWORK-MIBSnmpAdminString
SNMPv2-CONFMODULE-COMPLIANCE, NOTIFICATION-GROUP, OBJECT-GROUP
SNMPv2-SMICounter32, Integer32, MODULE-IDENTITY, NOTIFICATION-TYPE, OBJECT-IDENTITY, OBJECT-TYPE, Unsigned32, iso
SNMPv2-TCDisplayString, RowStatus, TEXTUAL-CONVENTION, TruthValue

Imported by

Nothing in this corpus imports this module.

Load order

Every file a consumer needs in order to load this module, dependencies first.

ALCATEL-IND1-BASE
ALCATEL-IND1-IPSEC-MIB
INET-ADDRESS-MIB
SNMP-FRAMEWORK-MIB
SNMPv2-CONF
SNMPv2-SMI
SNMPv2-TC

Textual conventions

NameOIDSyntaxAccessStatus
IPsecAHAlgorithm
TEXTUAL-CONVENTION
AH algorithms.
current
IPsecAdminState
TEXTUAL-CONVENTION
Administrative state.
current
IPsecDescription
TEXTUAL-CONVENTION
Optional description of a table entry.
current
IPsecESPAlgorithm
TEXTUAL-CONVENTION
ESP algorithms.
current
IPsecOperationalState
TEXTUAL-CONVENTION
Operational state. enabled(1) - The entry is enabled. disabled(2) - The entry is administratively disabled or DNS resolution has experienced a permanent failure. dnspending(3) - Awaiting DNS resolution before making the entry active.
current
IPsecPortNumber
TEXTUAL-CONVENTION
A port number value. 0 is the wildcard value to match any port.
current
IPsecPrefixLength
TEXTUAL-CONVENTION
Significant bits in an IPv6 address prefix. 0..32 is the valid range for IPv4 addresses. 0..128 is valid for IPv6 addresses
current
IPsecSAType
TEXTUAL-CONVENTION
SA type.
current
IPsecULProtocol
TEXTUAL-CONVENTION
An upper-layer protocol number. 255 is the wildcard value to match any protocol.
current

Objects

NameOIDSyntaxAccessStatus
alcatelIND1IPsecMIBObjects
OBJECT-IDENTITY
1.3.6.1.4.1.6486.801.1.2.1.43.1.1
alaIPsecConfig
OBJECT-IDENTITY
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1
alaIPsecSecurityKeyTable
OBJECT-TYPE
Table allowing the configuration of the switch's IPsec security key. The security key is used to encrypt and IPsec related information retained in permanent storage. There is always a single row in this table with an index value of 1.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.1not-accessiblecurrent
alaIPsecSecurityKeyEntry
OBJECT-TYPE
The security key entry.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.1.1not-accessiblecurrent
alaIPsecSecurityKeyID
OBJECT-TYPE
The row's identifier. Only one entry is ever present, with an ID value of 1.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.1.1.1Unsigned32not-accessiblecurrent
alaIPsecSecurityKeyCurrent
OBJECT-TYPE
The current value of the 16-byte IPsec security key. If an attempt is made to read the value of this object, a zero-length octet string will be returned.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.1.1.2OCTET STRING (SIZE(0..16))read-writecurrent
alaIPsecSecurityKeyNew
OBJECT-TYPE
Used to set a new 16-byte value for the IPsec security key. Both alaIPsecSecurityKeyCurrent (with its correct value) and alaIPsecSecurityKeyNew must be specified in the same SNMP SET message. If alaIPsecSecurityKeyCurrent is not present, or if its value is incorrect, the attempt to set a new key will fail. If an attempt is made to read the value of this object, a zero-length octet string will be returned.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.1.1.3OCTET STRING (SIZE(0..16))read-writecurrent
alaIPsecStatisticsTable
OBJECT-TYPE
Table allowing the IPv6 statistics to be retrieved.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2not-accessibledeprecated
alaIPsecStatisticsEntry
OBJECT-TYPE
The statistics entry.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1not-accessibledeprecated
alaIPsecStatisticsProtocol
OBJECT-TYPE
IP protocol version covered by the IPsec statistics.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.1INTEGER {ipv6(6)}not-accessibledeprecated
alaIPsecStatisticsInSuccessful
OBJECT-TYPE
Number of incoming packets requiring IPsec processing that were successfully handled.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.2Counter32read-onlydeprecated
alaIPsecStatisticsInPolicyViolation
OBJECT-TYPE
Number of incoming packets that were dropped because of policy violations.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.3Counter32read-onlydeprecated
alaIPsecStatisticsInNoSA
OBJECT-TYPE
Number of incoming packets dropped because no matching SA was found.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.4Counter32read-onlydeprecated
alaIPsecStatisticsInUnknownSPI
OBJECT-TYPE
Number of incoming packets dropped because the SPI was unknown.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.5Counter32read-onlydeprecated
alaIPsecStatisticsInAHReplay
OBJECT-TYPE
Number of incoming packets that failed the AH replay check.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.6Counter32read-onlydeprecated
alaIPsecStatisticsInESPReplay
OBJECT-TYPE
Number of incoming packets taht failed the ESP replay check.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.7Counter32read-onlydeprecated
alaIPsecStatisticsInAHAuthenticationSuccess
OBJECT-TYPE
Number of incoming packets that successfully passed AH authentication.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.8Counter32read-onlydeprecated
alaIPsecStatisticsInAHAuthenticationFail
OBJECT-TYPE
Number of incoming packets that failed AH authentication.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.9Counter32read-onlydeprecated
alaIPsecStatisticsInESPAuthenticationSuccess
OBJECT-TYPE
Number of incoming packets that successfully passed ESP authentication.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.10Counter32read-onlydeprecated
alaIPsecStatisticsInESPAuthenticationFail
OBJECT-TYPE
Number of incoming packets that failed ESP authentication.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.11Counter32read-onlydeprecated
alaIPsecStatisticsInBadPacket
OBJECT-TYPE
Number of incoming packets requiring IPsec processing that were not valid.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.12Counter32read-onlydeprecated
alaIPsecStatisticsInNoMemory
OBJECT-TYPE
Number of incoming IPsec packets dropped because no memory was available.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.13Counter32read-onlydeprecated
alaIPsecStatisticsOutSuccessful
OBJECT-TYPE
Number of outgoing packets requiring IPsec processing that were successfully handled.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.14Counter32read-onlydeprecated
alaIPsecStatisticsOutPolicyViolation
OBJECT-TYPE
Number of outgoing packets dropped because of a policy violation.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.15Counter32read-onlydeprecated
alaIPsecStatisticsOutNoSA
OBJECT-TYPE
Number of outgoing packets dropped because no matching SA was found.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.16Counter32read-onlydeprecated
alaIPsecStatisticsOutBadPacket
OBJECT-TYPE
Number of outgoing packets requiring IPsec processing that were not valid.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.17Counter32read-onlydeprecated
alaIPsecStatisticsOutNoMemory
OBJECT-TYPE
Number of outgoing IPsec packets dropped because no memory was available.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.18Counter32read-onlydeprecated
alaIPsecStatisticsInDiscarded
OBJECT-TYPE
Number of incoming packets dropped because they matched a discard policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.19Counter32read-onlydeprecated
alaIPsecStatisticsOutDiscarded
OBJECT-TYPE
Number of outgoing packets dropped because they matched a discard policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.20Counter32read-onlydeprecated
alaIPsecDefaultDiscardPolicy
OBJECT-TYPE
Enable or disable the default discard policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.3IPsecAdminStateread-writedeprecated
alaIPsecDefaultDiscardPolicyTable
OBJECT-TYPE
Table allowing to modify default discard policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.4not-accessiblecurrent
alaIPsecDefaultDiscardPolicyEntry
OBJECT-TYPE
The default discard policy table entry.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.4.1not-accessiblecurrent
alaIPsecDefaultDiscardPolicyType
OBJECT-TYPE
A unique identifier for default discard policy, represent for IP address type.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.4.1.1INTEGER {ipv4(1), ipv6(2)}not-accessiblecurrent
alaIPsecDefaultDiscardPolicyState
OBJECT-TYPE
Status of a default discard policy for an IP address type.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.4.1.2IPsecAdminStateread-writecurrent
alaIPsecSecurityPolicyTable
OBJECT-TYPE
Table allowing the configuration of IPsec security policies.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2not-accessiblecurrent
alaIPsecSecurityPolicyEntry
OBJECT-TYPE
A security policy entry.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1not-accessiblecurrent
alaIPsecSecurityPolicyID
OBJECT-TYPE
A unique identifier for this security policy. When creating a new policy, a zero value must be specified. An available policy ID will then be automatically assigned to the policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.1Unsigned32not-accessiblecurrent
alaIPsecSecurityPolicySourceType
OBJECT-TYPE
The type of source address specified. Currently only ipv6(2) is allowed.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.2InetAddressTyperead-createcurrent
alaIPsecSecurityPolicySource
OBJECT-TYPE
The source of packets covered by this policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.3InetAddressread-createcurrent
alaIPsecSecurityPolicySourcePrefixLength
OBJECT-TYPE
The number of bits of the source address used to determine which packets are covered by this policy. The default value varies depending upon the type of source address specified: IPv4 - 32 IPv6 - 128 DNS name - 0 (any other value is ignored)
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.4IPsecPrefixLengthread-createcurrent
alaIPsecSecurityPolicySourcePort
OBJECT-TYPE
The source port of packets covered by this policy. To match packets from any port, specify the 0 wildcard value. A wildcard policy will only be used when there is no exact match to a destination port in another entry.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.5IPsecPortNumberread-createcurrent
alaIPsecSecurityPolicyDestinationType
OBJECT-TYPE
The type of destination address specified. Currently only ipv6(2) is allowed.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.6InetAddressTyperead-createcurrent
alaIPsecSecurityPolicyDestination
OBJECT-TYPE
The destination of packets covered by this policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.7InetAddressread-createcurrent
alaIPsecSecurityPolicyDestinationPrefixLength
OBJECT-TYPE
The number of bits of the destination prefix used to determine which packets are covered by this policy. The default value varies depending upon the type of destination address specified: IPv4 - 32 IPv6 - 128 DNS name - 0 (any other value is ignored)
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.8IPsecPrefixLengthread-createcurrent
alaIPsecSecurityPolicyDestinationPort
OBJECT-TYPE
The destination port of packets covered by this policy. To match packets from any port, specify the 0 wildcard value. A wildcard policy will only be used when there is no exact match to a destination port in another entry.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.9IPsecPortNumberread-createcurrent
alaIPsecSecurityPolicyULProtocol
OBJECT-TYPE
The upper-layer protocol of packets covered by this policy. To match all protocols, specify the 255 wildcard value. A wildcard policy will only be used when there is no exact match to the protocol value specified in another entry.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.10IPsecULProtocolread-createcurrent
alaIPsecSecurityPolicyICMPv6Type
OBJECT-TYPE
If the upper-layer protocol is ICMPv6, an ICMPv6 type value may be specified to restrict the policy to a specific packet type. To match all ICMPv6 packets, the 0 wildcard value should be specified.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.11Integer32 (0..255)read-createcurrent
alaIPsecSecurityPolicyDirection
OBJECT-TYPE
The direction of traffic covered by this policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.12INTEGER {in(1), out(2)}read-createcurrent
alaIPsecSecurityPolicyName
OBJECT-TYPE
A name for this policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.13SnmpAdminString (SIZE(1..20))read-createcurrent
alaIPsecSecurityPolicyDescription
OBJECT-TYPE
A detailed description of this policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.14IPsecDescriptionread-createcurrent
alaIPsecSecurityPolicyAction
OBJECT-TYPE
The action to take on traffic covered by this policy. discard(0) means that all traffic covered by the policy will be discarded. none(1) means that no IPsec processing will be done on the traffic covered by this policy. ipsec(2) means that IPsec processing will take place on the traffic. One or more rules should be defined in the IPsec Rule Table. If no rules are defined processing is identical to none(0) being specified.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.15INTEGER {discard(0), none(1), ipsec(2)}read-createcurrent
alaIPsecSecurityPolicyAdminState
OBJECT-TYPE
Allows a policy to be administratively enabled or disabled.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.16IPsecAdminStateread-createcurrent
alaIPsecSecurityPolicyOperationalState
OBJECT-TYPE
The operational state of this policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.17IPsecOperationalStateread-onlycurrent
alaIPsecSecurityPolicyPriority
OBJECT-TYPE
The priority for this policy. When traffic would be covered by multiple policies the policy with the highest priority value is used. If two policies have the same priority, the one configured first has precedence.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.18Integer32 (1..1000)read-createcurrent
alaIPsecSecurityPolicyRowStatus
OBJECT-TYPE
Used to control the addition and removal of security policy entries.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.19RowStatusread-createcurrent
alaIPsecSecurityPolicyRuleTable
OBJECT-TYPE
Table allowing the configuration of the IPsec rules for a security policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.3not-accessiblecurrent
alaIPsecSecurityPolicyRuleEntry
OBJECT-TYPE
A security policy entry.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.3.1not-accessiblecurrent
alaIPsecSecurityPolicyRuleIndex
OBJECT-TYPE
Index specifying the order in which multiple rules for the same security policy will be applied. Rules are indexed by the order in which they are applied to the original payload. For example, for a security policy where an IPv6 payload should be protected by an ESP header, which should be protected by an AH header, there would be two Rule Table entries. The ESP entry would have an index of 1 (first rule applied to the payload). The AH entry would have an index of 2 (second rule applied).
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.3.1.1Unsigned32 (1..10)not-accessiblecurrent
alaIPsecSecurityPolicyRuleProtocol
OBJECT-TYPE
Indicates the type of header required by the rule.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.3.1.2INTEGER {ah(1), esp(2)}read-createcurrent
alaIPsecSecurityPolicyRuleMode
OBJECT-TYPE
The mode in which the rule's protocol is running. At present, only transport(1) is allowed. Until tunnel mode is supported, transport(1) will be treated as the default value.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.3.1.3INTEGER {transport(1)}read-createcurrent
alaIPsecSecurityPolicyRuleRowStatus
OBJECT-TYPE
Used to control the addition and removal of security policy IPsec rule entries.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.3.1.4RowStatusread-createcurrent
alaIPsecSAConfigTable
OBJECT-TYPE
Table allowing the manual configuration of Security Associations in the Security Association Database (SAD).
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4not-accessiblecurrent
alaIPsecSAConfigEntry
OBJECT-TYPE
Manually configured security association (SA) parameters.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1not-accessiblecurrent
alaIPsecSAConfigID
OBJECT-TYPE
A unique identifier for this manually configured SA. When creating a new SA, a zero value must be specified. An available ID will then be automatically assigned to the SA.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.1Unsigned32not-accessiblecurrent
alaIPsecSAConfigType
OBJECT-TYPE
The type of this SA: AH or ESP. Once set, the type may not be changed.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.2IPsecSATyperead-createcurrent
alaIPsecSAConfigSourceType
OBJECT-TYPE
The type of source address specified.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.3InetAddressTyperead-createcurrent
alaIPsecSAConfigSource
OBJECT-TYPE
The source of packets covered by this SA.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.4InetAddressread-createcurrent
alaIPsecSAConfigDestinationType
OBJECT-TYPE
The type of destination address specified.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.5InetAddressTyperead-createcurrent
alaIPsecSAConfigDestination
OBJECT-TYPE
The destination of packets covered by this SA.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.6InetAddressread-createcurrent
alaIPsecSAConfigSPI
OBJECT-TYPE
The Security Parameters Index (SPI) of this SA.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.7Unsigned32read-createcurrent
alaIPsecSAConfigName
OBJECT-TYPE
The name of this manually configured SA.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.8SnmpAdminString (SIZE(1..20))read-createcurrent
alaIPsecSAConfigDescription
OBJECT-TYPE
A detailed description for the manually created IPsec SA.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.9IPsecDescriptionread-createcurrent
alaIPsecSAConfigEncryptionAlgorithm
OBJECT-TYPE
For an ESP SA, defines the encryption algorithm to be used. null(11) should be specified if ESP is being used for integrity only. If null(11) is specified, alaIPsecSAConfigAuthenticationAlgorithm may not be none(0). aesctr(13) is not valid for manually configured SAs. The value of this object is none(0) for AH SAs.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.10IPsecESPAlgorithmread-createcurrent
alaIPsecSAConfigEncryptionKeyLength
OBJECT-TYPE
For those algorithms where multiple key lengths are supported, specifies the key length to be used. Zero may be specified to use the default key length.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.11Unsigned32read-createcurrent
alaIPsecSAConfigAuthenticationAlgorithm
OBJECT-TYPE
Defines the authentication algorithm to be used. For ESP SAs, none(0) may be specified for encryption-only ESP. For ESP integrity-only, ESP integrity and encryption, or for AH SAs, hmacmd5(2), hmacsha1(3), or aesxcbcmac(9) must be specified.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.12IPsecAHAlgorithmread-createcurrent
alaIPsecSAConfigAdminState
OBJECT-TYPE
Allows a manually configured SA to be administratively enabled or disabled.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.13IPsecAdminStateread-createcurrent
alaIPsecSAConfigOperationalState
OBJECT-TYPE
The operational state of the manually configured SA.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.14IPsecOperationalStateread-onlycurrent
alaIPsecSAConfigRowStatus
OBJECT-TYPE
Used to control the addition and removal of manually configured IPsec SAs.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.15RowStatusread-createcurrent
alaIPsecKeyTable
OBJECT-TYPE
Table used to configure the keys used by manually configured Security Associations in the IPsec Security Association Configuration table.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5not-accessiblecurrent
alaIPsecKeyEntry
OBJECT-TYPE
An IPsec key. Keys in the table must be uniquely identified by the combination of key type and key name. However, since the key name can be up to 255 characters, beyond the 128-element size limit for SNMP index objects, the key ID is used to uniquely identify a key for SNMP access.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1not-accessiblecurrent
alaIPsecKeyID
OBJECT-TYPE
A unique identifier for this key. When creating a new key, a zero value must be specified. An available ID will then be automatically assigned to the key.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1.1Unsigned32not-accessiblecurrent
alaIPsecKeyType
OBJECT-TYPE
Indicates if the key is to be used for encryption or authentication by a SA. Once a key is created, its type may not be changed.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1.2INTEGER {saAuthentication(1), saEncryption(2)}read-createcurrent
alaIPsecKeyName
OBJECT-TYPE
The name of the key. For manually-configured SA keys, the name is limited to a maximum length of 20 characters and should correspond to an entry in the alaIPsecSAConfigTable. The key name may not be changed once a key is created.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1.3OCTET STRING (SIZE(1..255))read-createcurrent
alaIPsecKey
OBJECT-TYPE
The key value. The value specified must match the required key length for the algorithm using the key. If an attempt is made to read the value of this object a zero-length octet string will be returned.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1.4OCTET STRINGread-createcurrent
alaIPsecKeyEncrypted
OBJECT-TYPE
If true, the key value is specified in AOS encrypted form. For example, keys being restored from the configuration file.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1.5TruthValueread-createcurrent
alaIPsecKeyRowStatus
OBJECT-TYPE
Used to control the addition and removal of keys.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1.6RowStatusread-createcurrent
alaIPsecErrorsTable
OBJECT-TYPE
Table allowing retrieval of the IPsec error counters.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6not-accessiblecurrent
alaIPsecErrorsEntry
OBJECT-TYPE
The error counters entry.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1not-accessiblecurrent
alaIPsecErrorsProtocol
OBJECT-TYPE
IP protocol version covered by the IPsec error counters.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.1INTEGER {ipv6(6)}not-accessiblecurrent
alaIPsecErrorsInPolicyViolation
OBJECT-TYPE
Number of incoming packets that were dropped because of policy violations.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.2Counter32read-onlycurrent
alaIPsecErrorsInNoSA
OBJECT-TYPE
Number of incoming packets dropped because no matching SA was found.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.3Counter32read-onlycurrent
alaIPsecErrorsInReplay
OBJECT-TYPE
Number of incoming packets that failed a replay check.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.4Counter32read-onlycurrent
alaIPsecErrorsInAuthenticationFail
OBJECT-TYPE
Number of incoming packets that failed authentication.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.5Counter32read-onlycurrent
alaIPsecErrorsInDiscarded
OBJECT-TYPE
Number of incoming packets dropped because they matched a discard policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.6Counter32read-onlycurrent
alaIPsecErrorsInOther
OBJECT-TYPE
Number of incoming packets dropped for a reason not otherwise counted.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.7Counter32read-onlycurrent
alaIPsecErrorsOutNoSA
OBJECT-TYPE
Number of outgoing packets dropped because no matching SA was found.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.8Counter32read-onlycurrent
alaIPsecErrorsOutDiscarded
OBJECT-TYPE
Number of outgoing packets dropped because they matched a discard policy.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.9Counter32read-onlycurrent
alaIPsecErrorsOutOther
OBJECT-TYPE
Number of outgoing packets dropped for a reason not otherwise counted.
1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.10Counter32read-onlycurrent
alcatelIND1IPsecMIBConformance
OBJECT-IDENTITY
1.3.6.1.4.1.6486.801.1.2.1.43.1.2
alcatelIND1IPsecMIBCompliances
OBJECT-IDENTITY
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.1
alcatelIND1IPsecMIBGroups
OBJECT-IDENTITY
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2

Conformance

NameOIDStatus
alaIPsecCompliance
MODULE-COMPLIANCE
The compliance statement for Alcatel switches implementing ALCATEL-IND1-IPSEC-MIB.
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.1.1current
alaIPsecConfigGroup
OBJECT-GROUP
A collection of objects to support global configuration of IPsec.
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.1current
alaIPsecSecurityPolicyGroup
OBJECT-GROUP
A collection of objects to support management of IPsec security policies.
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.2current
alaIPsecSAConfigGroup
OBJECT-GROUP
A collection of objects to support management of manually configured IPsec SAs.
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.3current
alaIPsecKeyGroup
OBJECT-GROUP
A collection of objects to support management of keys.
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.4current
alaIPsecCountersGroup
OBJECT-GROUP
A collection of objects to support management of IPsec counters.
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.5current
alaIPsecStatisticsGroup
OBJECT-GROUP
A collection of objects to support management of IPsec statistics.
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.6deprecated
alaIPsecDefaultDiscardPolicyGroup
OBJECT-GROUP
A collection of objects to support management of default discard policy table.
1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.7current