ALCATEL-IND1-IPSEC-MIB
- Registered at
- 1.3.6.1.4.1.6486.801.1.2.1.43.1
- Last updated
- 2019-11-27 00:00
- Organization
- ALE USA Inc
- Revisions
- 2019-11-27 00:00, 2019-11-11 00:00, 2016-09-12 00:00, 2010-07-20 00:00
- Namespace
- alcatel-aos7
- Source file
ALCATEL-IND1-IPSEC-MIB- Digest
sha256:896594254f560735cac72ba0ecccdf7389ba1e06ad0b548119a83e6351999c0a
Description
This module describes an authoritative enterprise-specific Simple Network Management Protocol (SNMP) Management Information Base (MIB): Proprietary IPsec MIB definitions The right to make changes in specification and other information contained in this document without prior notice is reserved. No liability shall be assumed for any incidental, indirect, special, or consequential damages whatsoever arising from or related to this document or the information contained herein. Vendors, end-users, and other interested parties are granted non-exclusive license to use this specification in connection with management of the products for which it is intended to be used. Copyright (C) ALE USA Inc. 2014-2019 Copyright (C) 1995-2013 Alcatel-Lucent ALL RIGHTS RESERVED WORLDWIDE
Contact
Please consult with Customer Service to ensure the most appropriate version of this document is used with the products in question: ALE USA Inc. Enterprise 26801 West Agoura Road Agoura Hills, CA 91301-5122 United States Of America Telephone: +1 800 995 2696 Electronic Mail: ebg_global_supportcenter@al-enterprise.com World Wide Web: https://www.al-enterprise.com
Imports
| From | Symbols |
|---|---|
| ALCATEL-IND1-BASE | softentIND1IPsec |
| INET-ADDRESS-MIB | InetAddress, InetAddressType |
| SNMP-FRAMEWORK-MIB | SnmpAdminString |
| SNMPv2-CONF | MODULE-COMPLIANCE, NOTIFICATION-GROUP, OBJECT-GROUP |
| SNMPv2-SMI | Counter32, Integer32, MODULE-IDENTITY, NOTIFICATION-TYPE, OBJECT-IDENTITY, OBJECT-TYPE, Unsigned32, iso |
| SNMPv2-TC | DisplayString, RowStatus, TEXTUAL-CONVENTION, TruthValue |
Imported by
Nothing in this corpus imports this module.
Load order
Every file a consumer needs in order to load this module, dependencies first.
ALCATEL-IND1-BASE ALCATEL-IND1-IPSEC-MIB INET-ADDRESS-MIB SNMP-FRAMEWORK-MIB SNMPv2-CONF SNMPv2-SMI SNMPv2-TC
Textual conventions
| Name | OID | Syntax | Access | Status |
|---|---|---|---|---|
| IPsecAHAlgorithm TEXTUAL-CONVENTION AH algorithms. | current | |||
| IPsecAdminState TEXTUAL-CONVENTION Administrative state. | current | |||
| IPsecDescription TEXTUAL-CONVENTION Optional description of a table entry. | current | |||
| IPsecESPAlgorithm TEXTUAL-CONVENTION ESP algorithms. | current | |||
| IPsecOperationalState TEXTUAL-CONVENTION Operational state. enabled(1) - The entry is enabled. disabled(2) - The entry is administratively disabled or DNS resolution has experienced a permanent failure. dnspending(3) - Awaiting DNS resolution before making the entry active. | current | |||
| IPsecPortNumber TEXTUAL-CONVENTION A port number value. 0 is the wildcard value to match any port. | current | |||
| IPsecPrefixLength TEXTUAL-CONVENTION Significant bits in an IPv6 address prefix. 0..32 is the valid range for IPv4 addresses. 0..128 is valid for IPv6 addresses | current | |||
| IPsecSAType TEXTUAL-CONVENTION SA type. | current | |||
| IPsecULProtocol TEXTUAL-CONVENTION An upper-layer protocol number. 255 is the wildcard value to match any protocol. | current |
Objects
| Name | OID | Syntax | Access | Status |
|---|---|---|---|---|
| alcatelIND1IPsecMIBObjects OBJECT-IDENTITY | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1 | |||
| alaIPsecConfig OBJECT-IDENTITY | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1 | |||
| alaIPsecSecurityKeyTable OBJECT-TYPE Table allowing the configuration of the switch's IPsec security key. The security key is used to encrypt and IPsec related information retained in permanent storage. There is always a single row in this table with an index value of 1. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.1 | not-accessible | current | |
| alaIPsecSecurityKeyEntry OBJECT-TYPE The security key entry. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.1.1 | not-accessible | current | |
| alaIPsecSecurityKeyID OBJECT-TYPE The row's identifier. Only one entry is ever present, with an ID value of 1. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.1.1.1 | Unsigned32 | not-accessible | current |
| alaIPsecSecurityKeyCurrent OBJECT-TYPE The current value of the 16-byte IPsec security key. If an attempt is made to read the value of this object, a zero-length octet string will be returned. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.1.1.2 | OCTET STRING (SIZE(0..16)) | read-write | current |
| alaIPsecSecurityKeyNew OBJECT-TYPE Used to set a new 16-byte value for the IPsec security key. Both alaIPsecSecurityKeyCurrent (with its correct value) and alaIPsecSecurityKeyNew must be specified in the same SNMP SET message. If alaIPsecSecurityKeyCurrent is not present, or if its value is incorrect, the attempt to set a new key will fail. If an attempt is made to read the value of this object, a zero-length octet string will be returned. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.1.1.3 | OCTET STRING (SIZE(0..16)) | read-write | current |
| alaIPsecStatisticsTable OBJECT-TYPE Table allowing the IPv6 statistics to be retrieved. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2 | not-accessible | deprecated | |
| alaIPsecStatisticsEntry OBJECT-TYPE The statistics entry. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1 | not-accessible | deprecated | |
| alaIPsecStatisticsProtocol OBJECT-TYPE IP protocol version covered by the IPsec statistics. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.1 | INTEGER {ipv6(6)} | not-accessible | deprecated |
| alaIPsecStatisticsInSuccessful OBJECT-TYPE Number of incoming packets requiring IPsec processing that were successfully handled. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.2 | Counter32 | read-only | deprecated |
| alaIPsecStatisticsInPolicyViolation OBJECT-TYPE Number of incoming packets that were dropped because of policy violations. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.3 | Counter32 | read-only | deprecated |
| alaIPsecStatisticsInNoSA OBJECT-TYPE Number of incoming packets dropped because no matching SA was found. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.4 | Counter32 | read-only | deprecated |
| alaIPsecStatisticsInUnknownSPI OBJECT-TYPE Number of incoming packets dropped because the SPI was unknown. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.5 | Counter32 | read-only | deprecated |
| alaIPsecStatisticsInAHReplay OBJECT-TYPE Number of incoming packets that failed the AH replay check. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.6 | Counter32 | read-only | deprecated |
| alaIPsecStatisticsInESPReplay OBJECT-TYPE Number of incoming packets taht failed the ESP replay check. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.7 | Counter32 | read-only | deprecated |
| alaIPsecStatisticsInAHAuthenticationSuccess OBJECT-TYPE Number of incoming packets that successfully passed AH authentication. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.8 | Counter32 | read-only | deprecated |
| alaIPsecStatisticsInAHAuthenticationFail OBJECT-TYPE Number of incoming packets that failed AH authentication. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.9 | Counter32 | read-only | deprecated |
| alaIPsecStatisticsInESPAuthenticationSuccess OBJECT-TYPE Number of incoming packets that successfully passed ESP authentication. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.10 | Counter32 | read-only | deprecated |
| alaIPsecStatisticsInESPAuthenticationFail OBJECT-TYPE Number of incoming packets that failed ESP authentication. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.11 | Counter32 | read-only | deprecated |
| alaIPsecStatisticsInBadPacket OBJECT-TYPE Number of incoming packets requiring IPsec processing that were not valid. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.12 | Counter32 | read-only | deprecated |
| alaIPsecStatisticsInNoMemory OBJECT-TYPE Number of incoming IPsec packets dropped because no memory was available. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.13 | Counter32 | read-only | deprecated |
| alaIPsecStatisticsOutSuccessful OBJECT-TYPE Number of outgoing packets requiring IPsec processing that were successfully handled. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.14 | Counter32 | read-only | deprecated |
| alaIPsecStatisticsOutPolicyViolation OBJECT-TYPE Number of outgoing packets dropped because of a policy violation. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.15 | Counter32 | read-only | deprecated |
| alaIPsecStatisticsOutNoSA OBJECT-TYPE Number of outgoing packets dropped because no matching SA was found. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.16 | Counter32 | read-only | deprecated |
| alaIPsecStatisticsOutBadPacket OBJECT-TYPE Number of outgoing packets requiring IPsec processing that were not valid. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.17 | Counter32 | read-only | deprecated |
| alaIPsecStatisticsOutNoMemory OBJECT-TYPE Number of outgoing IPsec packets dropped because no memory was available. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.18 | Counter32 | read-only | deprecated |
| alaIPsecStatisticsInDiscarded OBJECT-TYPE Number of incoming packets dropped because they matched a discard policy. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.19 | Counter32 | read-only | deprecated |
| alaIPsecStatisticsOutDiscarded OBJECT-TYPE Number of outgoing packets dropped because they matched a discard policy. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.2.1.20 | Counter32 | read-only | deprecated |
| alaIPsecDefaultDiscardPolicy OBJECT-TYPE Enable or disable the default discard policy. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.3 | IPsecAdminState | read-write | deprecated |
| alaIPsecDefaultDiscardPolicyTable OBJECT-TYPE Table allowing to modify default discard policy. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.4 | not-accessible | current | |
| alaIPsecDefaultDiscardPolicyEntry OBJECT-TYPE The default discard policy table entry. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.4.1 | not-accessible | current | |
| alaIPsecDefaultDiscardPolicyType OBJECT-TYPE A unique identifier for default discard policy, represent for IP address type. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.4.1.1 | INTEGER {ipv4(1), ipv6(2)} | not-accessible | current |
| alaIPsecDefaultDiscardPolicyState OBJECT-TYPE Status of a default discard policy for an IP address type. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.1.4.1.2 | IPsecAdminState | read-write | current |
| alaIPsecSecurityPolicyTable OBJECT-TYPE Table allowing the configuration of IPsec security policies. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2 | not-accessible | current | |
| alaIPsecSecurityPolicyEntry OBJECT-TYPE A security policy entry. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1 | not-accessible | current | |
| alaIPsecSecurityPolicyID OBJECT-TYPE A unique identifier for this security policy. When creating a new policy, a zero value must be specified. An available policy ID will then be automatically assigned to the policy. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.1 | Unsigned32 | not-accessible | current |
| alaIPsecSecurityPolicySourceType OBJECT-TYPE The type of source address specified. Currently only ipv6(2) is allowed. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.2 | InetAddressType | read-create | current |
| alaIPsecSecurityPolicySource OBJECT-TYPE The source of packets covered by this policy. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.3 | InetAddress | read-create | current |
| alaIPsecSecurityPolicySourcePrefixLength OBJECT-TYPE The number of bits of the source address used to determine which packets are covered by this policy. The default value varies depending upon the type of source address specified: IPv4 - 32 IPv6 - 128 DNS name - 0 (any other value is ignored) | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.4 | IPsecPrefixLength | read-create | current |
| alaIPsecSecurityPolicySourcePort OBJECT-TYPE The source port of packets covered by this policy. To match packets from any port, specify the 0 wildcard value. A wildcard policy will only be used when there is no exact match to a destination port in another entry. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.5 | IPsecPortNumber | read-create | current |
| alaIPsecSecurityPolicyDestinationType OBJECT-TYPE The type of destination address specified. Currently only ipv6(2) is allowed. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.6 | InetAddressType | read-create | current |
| alaIPsecSecurityPolicyDestination OBJECT-TYPE The destination of packets covered by this policy. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.7 | InetAddress | read-create | current |
| alaIPsecSecurityPolicyDestinationPrefixLength OBJECT-TYPE The number of bits of the destination prefix used to determine which packets are covered by this policy. The default value varies depending upon the type of destination address specified: IPv4 - 32 IPv6 - 128 DNS name - 0 (any other value is ignored) | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.8 | IPsecPrefixLength | read-create | current |
| alaIPsecSecurityPolicyDestinationPort OBJECT-TYPE The destination port of packets covered by this policy. To match packets from any port, specify the 0 wildcard value. A wildcard policy will only be used when there is no exact match to a destination port in another entry. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.9 | IPsecPortNumber | read-create | current |
| alaIPsecSecurityPolicyULProtocol OBJECT-TYPE The upper-layer protocol of packets covered by this policy. To match all protocols, specify the 255 wildcard value. A wildcard policy will only be used when there is no exact match to the protocol value specified in another entry. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.10 | IPsecULProtocol | read-create | current |
| alaIPsecSecurityPolicyICMPv6Type OBJECT-TYPE If the upper-layer protocol is ICMPv6, an ICMPv6 type value may be specified to restrict the policy to a specific packet type. To match all ICMPv6 packets, the 0 wildcard value should be specified. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.11 | Integer32 (0..255) | read-create | current |
| alaIPsecSecurityPolicyDirection OBJECT-TYPE The direction of traffic covered by this policy. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.12 | INTEGER {in(1), out(2)} | read-create | current |
| alaIPsecSecurityPolicyName OBJECT-TYPE A name for this policy. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.13 | SnmpAdminString (SIZE(1..20)) | read-create | current |
| alaIPsecSecurityPolicyDescription OBJECT-TYPE A detailed description of this policy. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.14 | IPsecDescription | read-create | current |
| alaIPsecSecurityPolicyAction OBJECT-TYPE The action to take on traffic covered by this policy. discard(0) means that all traffic covered by the policy will be discarded. none(1) means that no IPsec processing will be done on the traffic covered by this policy. ipsec(2) means that IPsec processing will take place on the traffic. One or more rules should be defined in the IPsec Rule Table. If no rules are defined processing is identical to none(0) being specified. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.15 | INTEGER {discard(0), none(1), ipsec(2)} | read-create | current |
| alaIPsecSecurityPolicyAdminState OBJECT-TYPE Allows a policy to be administratively enabled or disabled. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.16 | IPsecAdminState | read-create | current |
| alaIPsecSecurityPolicyOperationalState OBJECT-TYPE The operational state of this policy. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.17 | IPsecOperationalState | read-only | current |
| alaIPsecSecurityPolicyPriority OBJECT-TYPE The priority for this policy. When traffic would be covered by multiple policies the policy with the highest priority value is used. If two policies have the same priority, the one configured first has precedence. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.18 | Integer32 (1..1000) | read-create | current |
| alaIPsecSecurityPolicyRowStatus OBJECT-TYPE Used to control the addition and removal of security policy entries. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.2.1.19 | RowStatus | read-create | current |
| alaIPsecSecurityPolicyRuleTable OBJECT-TYPE Table allowing the configuration of the IPsec rules for a security policy. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.3 | not-accessible | current | |
| alaIPsecSecurityPolicyRuleEntry OBJECT-TYPE A security policy entry. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.3.1 | not-accessible | current | |
| alaIPsecSecurityPolicyRuleIndex OBJECT-TYPE Index specifying the order in which multiple rules for the same security policy will be applied. Rules are indexed by the order in which they are applied to the original payload. For example, for a security policy where an IPv6 payload should be protected by an ESP header, which should be protected by an AH header, there would be two Rule Table entries. The ESP entry would have an index of 1 (first rule applied to the payload). The AH entry would have an index of 2 (second rule applied). | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.3.1.1 | Unsigned32 (1..10) | not-accessible | current |
| alaIPsecSecurityPolicyRuleProtocol OBJECT-TYPE Indicates the type of header required by the rule. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.3.1.2 | INTEGER {ah(1), esp(2)} | read-create | current |
| alaIPsecSecurityPolicyRuleMode OBJECT-TYPE The mode in which the rule's protocol is running. At present, only transport(1) is allowed. Until tunnel mode is supported, transport(1) will be treated as the default value. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.3.1.3 | INTEGER {transport(1)} | read-create | current |
| alaIPsecSecurityPolicyRuleRowStatus OBJECT-TYPE Used to control the addition and removal of security policy IPsec rule entries. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.3.1.4 | RowStatus | read-create | current |
| alaIPsecSAConfigTable OBJECT-TYPE Table allowing the manual configuration of Security Associations in the Security Association Database (SAD). | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4 | not-accessible | current | |
| alaIPsecSAConfigEntry OBJECT-TYPE Manually configured security association (SA) parameters. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1 | not-accessible | current | |
| alaIPsecSAConfigID OBJECT-TYPE A unique identifier for this manually configured SA. When creating a new SA, a zero value must be specified. An available ID will then be automatically assigned to the SA. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.1 | Unsigned32 | not-accessible | current |
| alaIPsecSAConfigType OBJECT-TYPE The type of this SA: AH or ESP. Once set, the type may not be changed. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.2 | IPsecSAType | read-create | current |
| alaIPsecSAConfigSourceType OBJECT-TYPE The type of source address specified. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.3 | InetAddressType | read-create | current |
| alaIPsecSAConfigSource OBJECT-TYPE The source of packets covered by this SA. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.4 | InetAddress | read-create | current |
| alaIPsecSAConfigDestinationType OBJECT-TYPE The type of destination address specified. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.5 | InetAddressType | read-create | current |
| alaIPsecSAConfigDestination OBJECT-TYPE The destination of packets covered by this SA. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.6 | InetAddress | read-create | current |
| alaIPsecSAConfigSPI OBJECT-TYPE The Security Parameters Index (SPI) of this SA. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.7 | Unsigned32 | read-create | current |
| alaIPsecSAConfigName OBJECT-TYPE The name of this manually configured SA. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.8 | SnmpAdminString (SIZE(1..20)) | read-create | current |
| alaIPsecSAConfigDescription OBJECT-TYPE A detailed description for the manually created IPsec SA. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.9 | IPsecDescription | read-create | current |
| alaIPsecSAConfigEncryptionAlgorithm OBJECT-TYPE For an ESP SA, defines the encryption algorithm to be used. null(11) should be specified if ESP is being used for integrity only. If null(11) is specified, alaIPsecSAConfigAuthenticationAlgorithm may not be none(0). aesctr(13) is not valid for manually configured SAs. The value of this object is none(0) for AH SAs. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.10 | IPsecESPAlgorithm | read-create | current |
| alaIPsecSAConfigEncryptionKeyLength OBJECT-TYPE For those algorithms where multiple key lengths are supported, specifies the key length to be used. Zero may be specified to use the default key length. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.11 | Unsigned32 | read-create | current |
| alaIPsecSAConfigAuthenticationAlgorithm OBJECT-TYPE Defines the authentication algorithm to be used. For ESP SAs, none(0) may be specified for encryption-only ESP. For ESP integrity-only, ESP integrity and encryption, or for AH SAs, hmacmd5(2), hmacsha1(3), or aesxcbcmac(9) must be specified. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.12 | IPsecAHAlgorithm | read-create | current |
| alaIPsecSAConfigAdminState OBJECT-TYPE Allows a manually configured SA to be administratively enabled or disabled. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.13 | IPsecAdminState | read-create | current |
| alaIPsecSAConfigOperationalState OBJECT-TYPE The operational state of the manually configured SA. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.14 | IPsecOperationalState | read-only | current |
| alaIPsecSAConfigRowStatus OBJECT-TYPE Used to control the addition and removal of manually configured IPsec SAs. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.4.1.15 | RowStatus | read-create | current |
| alaIPsecKeyTable OBJECT-TYPE Table used to configure the keys used by manually configured Security Associations in the IPsec Security Association Configuration table. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5 | not-accessible | current | |
| alaIPsecKeyEntry OBJECT-TYPE An IPsec key. Keys in the table must be uniquely identified by the combination of key type and key name. However, since the key name can be up to 255 characters, beyond the 128-element size limit for SNMP index objects, the key ID is used to uniquely identify a key for SNMP access. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1 | not-accessible | current | |
| alaIPsecKeyID OBJECT-TYPE A unique identifier for this key. When creating a new key, a zero value must be specified. An available ID will then be automatically assigned to the key. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1.1 | Unsigned32 | not-accessible | current |
| alaIPsecKeyType OBJECT-TYPE Indicates if the key is to be used for encryption or authentication by a SA. Once a key is created, its type may not be changed. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1.2 | INTEGER {saAuthentication(1), saEncryption(2)} | read-create | current |
| alaIPsecKeyName OBJECT-TYPE The name of the key. For manually-configured SA keys, the name is limited to a maximum length of 20 characters and should correspond to an entry in the alaIPsecSAConfigTable. The key name may not be changed once a key is created. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1.3 | OCTET STRING (SIZE(1..255)) | read-create | current |
| alaIPsecKey OBJECT-TYPE The key value. The value specified must match the required key length for the algorithm using the key. If an attempt is made to read the value of this object a zero-length octet string will be returned. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1.4 | OCTET STRING | read-create | current |
| alaIPsecKeyEncrypted OBJECT-TYPE If true, the key value is specified in AOS encrypted form. For example, keys being restored from the configuration file. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1.5 | TruthValue | read-create | current |
| alaIPsecKeyRowStatus OBJECT-TYPE Used to control the addition and removal of keys. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.5.1.6 | RowStatus | read-create | current |
| alaIPsecErrorsTable OBJECT-TYPE Table allowing retrieval of the IPsec error counters. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6 | not-accessible | current | |
| alaIPsecErrorsEntry OBJECT-TYPE The error counters entry. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1 | not-accessible | current | |
| alaIPsecErrorsProtocol OBJECT-TYPE IP protocol version covered by the IPsec error counters. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.1 | INTEGER {ipv6(6)} | not-accessible | current |
| alaIPsecErrorsInPolicyViolation OBJECT-TYPE Number of incoming packets that were dropped because of policy violations. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.2 | Counter32 | read-only | current |
| alaIPsecErrorsInNoSA OBJECT-TYPE Number of incoming packets dropped because no matching SA was found. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.3 | Counter32 | read-only | current |
| alaIPsecErrorsInReplay OBJECT-TYPE Number of incoming packets that failed a replay check. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.4 | Counter32 | read-only | current |
| alaIPsecErrorsInAuthenticationFail OBJECT-TYPE Number of incoming packets that failed authentication. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.5 | Counter32 | read-only | current |
| alaIPsecErrorsInDiscarded OBJECT-TYPE Number of incoming packets dropped because they matched a discard policy. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.6 | Counter32 | read-only | current |
| alaIPsecErrorsInOther OBJECT-TYPE Number of incoming packets dropped for a reason not otherwise counted. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.7 | Counter32 | read-only | current |
| alaIPsecErrorsOutNoSA OBJECT-TYPE Number of outgoing packets dropped because no matching SA was found. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.8 | Counter32 | read-only | current |
| alaIPsecErrorsOutDiscarded OBJECT-TYPE Number of outgoing packets dropped because they matched a discard policy. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.9 | Counter32 | read-only | current |
| alaIPsecErrorsOutOther OBJECT-TYPE Number of outgoing packets dropped for a reason not otherwise counted. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.1.6.1.10 | Counter32 | read-only | current |
| alcatelIND1IPsecMIBConformance OBJECT-IDENTITY | 1.3.6.1.4.1.6486.801.1.2.1.43.1.2 | |||
| alcatelIND1IPsecMIBCompliances OBJECT-IDENTITY | 1.3.6.1.4.1.6486.801.1.2.1.43.1.2.1 | |||
| alcatelIND1IPsecMIBGroups OBJECT-IDENTITY | 1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2 |
Conformance
| Name | OID | Status |
|---|---|---|
| alaIPsecCompliance MODULE-COMPLIANCE The compliance statement for Alcatel switches implementing ALCATEL-IND1-IPSEC-MIB. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.2.1.1 | current |
| alaIPsecConfigGroup OBJECT-GROUP A collection of objects to support global configuration of IPsec. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.1 | current |
| alaIPsecSecurityPolicyGroup OBJECT-GROUP A collection of objects to support management of IPsec security policies. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.2 | current |
| alaIPsecSAConfigGroup OBJECT-GROUP A collection of objects to support management of manually configured IPsec SAs. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.3 | current |
| alaIPsecKeyGroup OBJECT-GROUP A collection of objects to support management of keys. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.4 | current |
| alaIPsecCountersGroup OBJECT-GROUP A collection of objects to support management of IPsec counters. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.5 | current |
| alaIPsecStatisticsGroup OBJECT-GROUP A collection of objects to support management of IPsec statistics. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.6 | deprecated |
| alaIPsecDefaultDiscardPolicyGroup OBJECT-GROUP A collection of objects to support management of default discard policy table. | 1.3.6.1.4.1.6486.801.1.2.1.43.1.2.2.7 | current |