- Table of Contents
-
- 17-User Access and Authentication
- 01-HH3C-8021X-EXT2-MIB
- 02-HH3C-AAA-MIB
- 03-HH3C-DOMAIN-MIB
- 04-HH3C-LOCAL-AAA-SERVER-MIB
- 05-HH3C-PORT-SECURITY-MIB
- 06-HH3C-PORTAL-MIB
- 07-HH3C-RADIUS-MIB
- 08-HH3C-USER-MIB
- 09-IEEE8021-PAE-MIB
- 10-IEEE8021-SECY-MIB
- 11-IEEE8021X-PAE-MIB
- 12-RADIUS-ACC-CLIENT-MIB
- 13-RADIUS-AUTH-CLIENT-MIB
- Related Documents
-
Title | Size | Download |
---|---|---|
11-IEEE8021X-PAE-MIB | 76.01 KB |
Contents
IEEE8021X-PAE-MIB
About this MIB
This MIB manages the Port Access Entity (PAE) functions of IEEE 802.1X.
MIB file name
ieee8021x-pae.mib
Root object
iso(1).std(0).iso8802(8802).ieee802dot1(1).ieee802dot1mibs(1).ieee8021XPaeMIB(15)
Tabular objects
ieee8021XPaePortTable
About this table
Use this table to configure or obtain system level information about each port supported by 802.1X PAE.
Support for operations
Create:Not supported
Edit/Modify:Supported
Delete:Not supported
Read:Supported
Columns
The table index is ieee8021XPaePortNumber.
Object (OID) |
Access |
Syntax |
Value range |
Description |
Implementation |
ieee8021XPaePortNumber (1.3.111.2.802.1.1.15.1.1.5.1.1) |
not-accessible |
InterfaceIndex |
Integer32 (1..2147483647) |
Port number. |
As per the MIB. |
ieee8021XPaePortCapabilities (1.3.111.2.802.1.1.15.1.1.5.1.7) |
read-only |
BITS |
suppImplemented(0), authImplemented(1), mkaImplemented(2), macsecImplemented(3), announcementsImplemented(4), listenerImplemented(5), virtualPortsImplemented(6) |
Capabilities of the PAE port. |
As per the MIB. |
ieee8021XKayMkaTable
About this table
Use this table to manage or obtain information about each port supported by the Key Agreement Entity (KaY), a PAE entity responsible for MKA.
Support for operations
Create:Not supported
Edit/Modify:Supported
Delete:Not supported
Read:Supported
Columns
The table index is ieee8021XPaePortNumber.
Object (OID) |
Access |
Syntax |
Value range |
Description |
Implementation |
ieee8021XKayMkaActive (1.3.111.2.802.1.1.15.1.6.1.1.1) |
read-only |
TruthValue |
true(1), false(2) |
Whether an MKA active actor exists to transmit MKPDUs. |
As per the MIB. |
ieee8021XKayMkaAuthenticated (1.3.111.2.802.1.1.15.1.6.1.1.2) |
read-only |
TruthValue |
true(1), false(2) |
Whether the principal actor has determined that Controlled Port communication should proceed with MACsec. |
As per the MIB. |
ieee8021XKayMkaSecured (1.3.111.2.802.1.1.15.1.6.1.1.3) |
read-only |
TruthValue |
true(1), false(2) |
Whether the principal actor has determined that communication should use MACsec. |
As per the MIB. |
ieee8021XKayMkaFailed (1.3.111.2.802.1.1.15.1.6.1.1.4) |
read-only |
TruthValue |
true(1), false(2) |
Whether the MKA lifetime has elapsed. |
As per the MIB. |
ieee8021XKayMkaActorSCI (1.3.111.2.802.1.1.15.1.6.1.1.5) |
read-only |
SecySCI |
OCTET STRING (0..65535) |
Secure channel identifier (SCI) assigned by the system to the port. |
As per the MIB. |
ieee8021XKayMkaActorsPriority (1.3.111.2.802.1.1.15.1.6.1.1.6) |
read-write |
Ieee8021XMkaKeyServerPriority |
OCTET STRING (SIZE (1)) |
Key server priority for all MKA actors on the port. |
As per the MIB. |
ieee8021XKayMkaKeyServerPriority (1.3.111.2.802.1.1.15.1.6.1.1.7) |
read-only |
Ieee8021XMkaKeyServerPriority |
OCTET STRING (SIZE (1)) |
Priority of the elected key server. |
Not supported. |
ieee8021XKayMkaKeyServerSCI (1.3.111.2.802.1.1.15.1.6.1.1.8) |
read-only |
SecySCI |
OCTET STRING (0..65535) |
Key server SCI for the MKA principal actor. |
As per the MIB. |
ieee8021XKayAllowedJoinGroup (1.3.111.2.802.1.1.15.1.6.1.1.9) |
read-only |
TruthValue |
true(1), false(2) |
Whether the KaY accepts group connectivity association keys (CAKs) distributed by the MKA protocol. |
Not supported. |
ieee8021XKayAllowedFormGroup (1.3.111.2.802.1.1.15.1.6.1.1.10) |
read-only |
TruthValue |
true(1), false(2) |
Whether the KaY attempts to use point-to-point connectivity associations (CAs) to distribute a group CAK if the KaY's MKA principal actor is the key server for all the point-to-point CAs. |
Not supported. |
ieee8021XKayCreateNewGroup (1.3.111.2.802.1.1.15.1.6.1.1.11) |
read-write |
TruthValue |
true(1), false(2) |
Whether the KaY will distribute a new group CAK if the KaY's MKA principal actor is the key server for all the point-to-point CAs. |
Not supported. |
ieee8021XKayMacSecCapability (1.3.111.2.802.1.1.15.1.6.1.1.12) |
read-only |
INTEGER |
noMACsec(0), macSecCapability1(1), macSecCapability2(2), macSecCapability3(3) |
Whether to implement MACsec and the MACsec capabilities. |
As per the MIB. |
ieee8021XKayMacSecDesired (1.3.111.2.802.1.1.15.1.6.1.1.13) |
read-write |
TruthValue |
true(1), false(2) |
Whether the MKA participants desire the use of MACsec to protect frames with this KaY. |
As per the MIB. |
ieee8021XKayMacSecProtect (1.3.111.2.802.1.1.15.1.6.1.1.14) |
read-only |
TruthValue |
true(1), false(2) |
Status of the MACsec protection function for this KaY. |
Not supported. |
ieee8021XKayMacSecReplayProtect (1.3.111.2.802.1.1.15.1.6.1.1.15) |
read-only |
TruthValue |
true(1), false(2) |
Status of the MACsec replay protection function for this KaY. |
Not supported. |
ieee8021XKayMacSecValidate (1.3.111.2.802.1.1.15.1.6.1.1.16) |
read-only |
TruthValue |
true(1), false(2) |
Status of the MACsec validation function for this KaY. |
Not supported. |
ieee8021XKayMacSecConfidentialityOffset (1.3.111.2.802.1.1.15.1.6.1.1.17) |
read-write |
Integer32 |
Integer32 (0 | 30 | 50) |
Confidentiality protection offset options for the selected cipher suite in the MACsec. |
Not supported. |
ieee8021XKayMkaTxKN (1.3.111.2.802.1.1.15.1.6.1.1.18) |
read-only |
Ieee8021XMkaKN |
Unsigned32 (1..2147483648) |
Key number assigned by the key server to the SAK currently being used for transmission. |
Not supported. |
ieee8021XKayMkaTxAN (1.3.111.2.802.1.1.15.1.6.1.1.19) |
read-only |
RowPointer |
Standard MIB values. |
SC AN assigned by the key server for use with the key number for transmission. |
Not supported. |
ieee8021XKayMkaRxKN (1.3.111.2.802.1.1.15.1.6.1.1.20) |
read-only |
Ieee8021XMkaKN |
Unsigned32 (1..2147483648) |
Key number assigned by the key server to the oldest secure association key (SAK) currently being used for reception. |
Not supported. |
ieee8021XKayMkaRxAN (1.3.111.2.802.1.1.15.1.6.1.1.21) |
read-only |
RowPointer |
Standard MIB values. |
Secure channel (SC) SA number (AN) assigned by the key server for use with the key number for reception. |
Not supported. |
ieee8021XKayMkaPeerListTable
About this table
Use this table to obtain information about the MKA peer list for a KaY.
Support for operations
Create:Not supported
Edit/Modify:Not supported
Delete:Not supported
Read:Supported
Columns
The table index is ieee8021XPaePortNumber.
Object (OID) |
Access |
Syntax |
Value range |
Description |
Implementation |
ieee8021XKayMkaPeerListMI (1.3.111.2.802.1.1.15.1.6.3.1.1) |
not-accessible |
Ieee8021XMkaMI |
OCTET STRING (SIZE (12)) |
MI information of a peer entry in the peer list of this active participant in the MKA protocol. |
As per the MIB. |
ieee8021XKayMkaPeerListMN (1.3.111.2.802.1.1.15.1.6.3.1.2) |
read-only |
Ieee8021XMkaMN |
Unsigned32 (1..2147483648) |
Latest MN information of the peer entry in the peer list of this active participant in the MKA protocol. |
As per the MIB. |
ieee8021XKayMkaPeerListType (1.3.111.2.802.1.1.15.1.6.3.1.3) |
read-only |
INTEGER |
livePeerList(1), potentialPeerList(2) |
Type of the peer entry in the peer list of this active participant in MKA protocol. |
As per the MIB. |
ieee8021XKayMkaPeerListSCI (1.3.111.2.802.1.1.15.1.6.3.1.4) |
read-only |
SecySCI |
OCTET STRING (0..65535) |
SCI information of the peer entry in the peer list of this active participant in the MKA protocol. |
As per the MIB. |