DOCS-BPI2-MIB Table View

Table-centric layout grouping table, row, and column objects.

Tables
12
Rows
12
Columns
140
.1.3.6.1.2.1.10.127.6.1.1.1 · 1 row entry · 25 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk docsBpi2CmBaseTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'DOCS-BPI2-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'DOCS-BPI2-MIB::docsBpi2CmBaseTable'
This table describes the basic and authorization
related   Baseline Privacy Plus attributes of each CM MAC
interface.
docsBpi2CmBaseEntry row .1.3.6.1.2.1.10.127.6.1.1.1.1
Each entry contains objects describing attributes of
one CM MAC interface. An entry in this table exists for each
ifEntry with an ifType of docsCableMaclayer(127).
Indexes
Column Syntax OID
This object identifies whether this CM is
provisioned to run Baseline Privacy Plus.
SNMPv2-TCTruthValue
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.2.1.10.127.6.1.1.1.1.1
The value of this object is a DER-encoded
RSAPublicKey ASN.1 type string, as defined in the RSA
Encryption Standard (PKCS #1) [10], corresponding to the
public key of the CM. The 74, 106, 140, 204, and 270 byte key
enco…
OctetString
Constraints:
range: 106-106
range: 140-140
range: 204-204
range: 270-270
range: 74-74
.1.3.6.1.2.1.10.127.6.1.1.1.1.2
The value of this object is the state of the CM
authorization FSM. The start state indicates that FSM is in
its initial state.
Enumeration
Enumerated Values:
1start
2authWait
3authorized
4reauthWait
5authRejectWait
6silent
.1.3.6.1.2.1.10.127.6.1.1.1.1.3
The value of this object is the most recent
authorization key sequence number for this FSM.
Integer32
Constraints:
range: 0-15
.1.3.6.1.2.1.10.127.6.1.1.1.1.4
The value of this object is the actual clock time for
expiration of the immediate predecessor of the most recent
authorization key for this FSM. If this FSM has only one
authorization key, then the value is the time of…
SNMPv2-TCDateAndTime
Type Constraints:
range: 8
range: 11
Description:
A date-time specification.

field octets contents range
----- ------ -------- -----
1 1-2 year* 0..65536
2 3 month …
.1.3.6.1.2.1.10.127.6.1.1.1.1.5
The value of this object is the actual clock time for
expiration of the most recent authorization key for this FSM.
SNMPv2-TCDateAndTime
Type Constraints:
range: 8
range: 11
Description:
A date-time specification.

field octets contents range
----- ------ -------- -----
1 1-2 year* 0..65536
2 3 month …
.1.3.6.1.2.1.10.127.6.1.1.1.1.6
Setting this object to TRUE generates a Reauthorize
event in the authorization FSM. Reading this object always
returns FALSE.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.2.1.10.127.6.1.1.1.1.7
The value of this object is the grace time for an
authorization key. A CM is expected to start trying to get a
new authorization key beginning AuthGraceTime seconds before
the authorization key actually expires.
secondsInteger32
Constraints:
range: 1-6047999
.1.3.6.1.2.1.10.127.6.1.1.1.1.8
The value of this object is the grace time for
the TEK in seconds. The CM is expected to start trying to
acquire a new TEK beginning TEK GraceTime seconds before
the expiration of the most recent TEK.
secondsInteger32
Constraints:
range: 1-302399
.1.3.6.1.2.1.10.127.6.1.1.1.1.9
The value of this object is the Authorize Wait
Timeout.
secondsInteger32
Constraints:
range: 1-30
.1.3.6.1.2.1.10.127.6.1.1.1.1.10
The value of this object is the Reauthorize Wait
Timeout in seconds.
secondsInteger32
Constraints:
range: 1-30
.1.3.6.1.2.1.10.127.6.1.1.1.1.11
The value of this object is the Operational Wait
Timeout in seconds.
secondsInteger32
Constraints:
range: 1-10
.1.3.6.1.2.1.10.127.6.1.1.1.1.12
The value of this object is the Rekey Wait Timeout
in seconds.
secondsInteger32
Constraints:
range: 1-10
.1.3.6.1.2.1.10.127.6.1.1.1.1.13
The value of this object is the Authorization Reject
Wait Timeout in seconds.
secondsInteger32
Constraints:
range: 1-600
.1.3.6.1.2.1.10.127.6.1.1.1.1.14
The value of this object is the retransmission
interval, in seconds, of SA Map Requests from the MAP Wait
state.
secondsInteger32
Constraints:
range: 1-10
.1.3.6.1.2.1.10.127.6.1.1.1.1.15
The value of this object is the maximum number of
Map Request retries allowed.
countInteger32
Constraints:
range: 0-10
.1.3.6.1.2.1.10.127.6.1.1.1.1.16
The value of this object is the count of times the CM
has transmitted an Authentication Information message.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.1.1.1.17
The value of this object is the count of times the CM
has transmitted an Authorization Request message.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.1.1.1.18
The value of this object is the count of times the CM
has received an Authorization Reply message.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.1.1.1.19
The value of this object is the count of times the CM
has received an Authorization Reject message.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.1.1.1.20
The value of this object is the count of times the CM
has received an Authorization Invalid message.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.1.1.1.21
The value of this object is the enumerated
description of the Error-Code in most recent Authorization
Reject message received by the CM. This has value unknown(2)
if the last Error-Code value was 0, and none(1) if no
A…
Enumeration
Enumerated Values:
1none
2unknown
3unauthorizedCm
4unauthorizedSaid
8permanentAuthorizationFailure
11timeOfDayNotAcquired
.1.3.6.1.2.1.10.127.6.1.1.1.1.22
The value of this object is the Display-String in
most recent Authorization Reject message received by the CM.
This is a zero length string if no Authorization Reject
message has been received since reboot.
OctetString
Constraints:
range: 0-128
.1.3.6.1.2.1.10.127.6.1.1.1.1.23
The value of this object is the enumerated
description of the Error-Code in most recent Authorization
Invalid message received by the CM. This has value unknown(2)
if the last Error-Code value was 0, and none(1) if no
Enumeration
Enumerated Values:
1none
2unknown
3unauthorizedCm
5unsolicited
6invalidKeySequence
7keyRequestAuthenticationFailure
.1.3.6.1.2.1.10.127.6.1.1.1.1.24
The value of this object is the Display-String in
most recent Authorization Invalid message received by the CM.
This is a zero length string if no Authorization Invalid
message has been received since reboot.
OctetString
Constraints:
range: 0-128
.1.3.6.1.2.1.10.127.6.1.1.1.1.25
.1.3.6.1.2.1.10.127.6.1.1.2 · 1 row entry · 17 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk docsBpi2CmTEKTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'DOCS-BPI2-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'DOCS-BPI2-MIB::docsBpi2CmTEKTable'
This table describes the attributes of each CM
Traffic Encryption Key(TEK) association. The CM maintains (no
more than) one TEK association per SAID per CM MAC interface.
docsBpi2CmTEKEntry row .1.3.6.1.2.1.10.127.6.1.1.2.1
Each entry contains objects describing the TEK
association attributes of one SAID. The CM MUST create one
entry per SAID, regardless of whether the SAID was obtained
from a Registration Response message, from an Authori…
Column Syntax OID
The value of this object is the DOCSIS Security
Association ID (SAID).
Integer32
Constraints:
range: 1-16383
.1.3.6.1.2.1.10.127.6.1.1.2.1.1
The value of this object is the type of security
association.
Enumeration
Enumerated Values:
0none
1primary
2static
3dynamic
.1.3.6.1.2.1.10.127.6.1.1.2.1.2
The value of this object is the data encryption
algorithm being utilized.
Enumeration
Enumerated Values:
0none
1des56CbcMode
2des40CbcMode
.1.3.6.1.2.1.10.127.6.1.1.2.1.3
The value of this object is the data authentication
algorithm being utilized.
Enumeration
Enumerated Values:
0none
.1.3.6.1.2.1.10.127.6.1.1.2.1.4
The value of this object is the state of the
indicated TEK FSM. The start(1) state indicates that FSM is
in its initial state.
Enumeration
Enumerated Values:
1start
2opWait
3opReauthWait
4operational
5rekeyWait
6rekeyReauthWait
.1.3.6.1.2.1.10.127.6.1.1.2.1.5
The value of this object is the most recent TEK
key sequence number for this TEK FSM.
Integer32
Constraints:
range: 0-15
.1.3.6.1.2.1.10.127.6.1.1.2.1.6
The value of this object is the actual clock time for
expiration of the immediate predecessor of the most recent TEK
for this FSM. If this FSM has only one TEK, then the value is
the time of activation of this FSM.
SNMPv2-TCDateAndTime
Type Constraints:
range: 8
range: 11
Description:
A date-time specification.

field octets contents range
----- ------ -------- -----
1 1-2 year* 0..65536
2 3 month …
.1.3.6.1.2.1.10.127.6.1.1.2.1.7
The value of this object is the actual clock time for
expiration of the most recent TEK for this FSM.
SNMPv2-TCDateAndTime
Type Constraints:
range: 8
range: 11
Description:
A date-time specification.

field octets contents range
----- ------ -------- -----
1 1-2 year* 0..65536
2 3 month …
.1.3.6.1.2.1.10.127.6.1.1.2.1.8
The value of this object is the count of times the CM
has transmitted a Key Request message.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.1.2.1.9
The value of this object is the count of times the CM
has received a Key Reply message, including a message whose
authentication failed.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.1.2.1.10
The value of this object is the count of times the CM
has received a Key Reject message, including a message whose
authentication failed.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.1.2.1.11
The value of this object is the count of times the CM
has received a TEK Invalid message, including a message whose
authentication failed.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.1.2.1.12
The value of this object is the count of times an
Authorization Pending (Auth Pend) event occurred in this FSM.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.1.2.1.13
The value of this object is the enumerated
description of the Error-Code in most recent Key Reject
message received by the CM. This has value unknown(2) if the
last Error-Code value was 0, and none(1) if no Key Reject
m…
Enumeration
Enumerated Values:
1none
2unknown
4unauthorizedSaid
.1.3.6.1.2.1.10.127.6.1.1.2.1.14
The value of this object is the Display-String in
most recent Key Reject message received by the CM. This is a
zero length string if no Key Reject message has been received
since reboot.
OctetString
Constraints:
range: 0-128
.1.3.6.1.2.1.10.127.6.1.1.2.1.15
The value of this object is the enumerated
description of the Error-Code in most recent TEK Invalid
message received by the CM. This has value unknown(2) if the
last Error-Code value was 0, and none(1) if no TEK Inval…
Enumeration
Enumerated Values:
1none
2unknown
6invalidKeySequence
.1.3.6.1.2.1.10.127.6.1.1.2.1.16
The value of this object is the Display-String in
most recent TEK Invalid message received by the CM. This is a
zero length string if no TEK Invalid message has been received
since reboot.
OctetString
Constraints:
range: 0-128
.1.3.6.1.2.1.10.127.6.1.1.2.1.17
.1.3.6.1.2.1.10.127.6.1.1.3.1 · 1 row entry · 10 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk docsBpi2CmIpMulticastMapTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'DOCS-BPI2-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'DOCS-BPI2-MIB::docsBpi2CmIpMulticastMapTable'
This table maps multicast IP addresses to SAIDs.
It is intended to map multicast IP addresses associated
with SA MAP Request messages.
docsBpi2CmIpMulticastMapEntry row .1.3.6.1.2.1.10.127.6.1.1.3.1.1
Each entry contains objects describing the mapping of
one multicast IP address to one SAID, as well as
associated state, message counters, and error information.
Column Syntax OID
The index of this row.
Integer32
Constraints:
range: 1-1000
.1.3.6.1.2.1.10.127.6.1.1.3.1.1.1
The type of internet address for
docsBpi2CmIpMulticastAddress.
INET-ADDRESS-MIBInetAddressType
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.2.1.10.127.6.1.1.3.1.1.2
This object represents the IP multicast address
to be mapped.
INET-ADDRESS-MIBInetAddress
Type Constraints:
range: 0..255
.1.3.6.1.2.1.10.127.6.1.1.3.1.1.3
This object represents the SAID to which the IP
multicast address has been mapped. If no SA Map Reply has
been received for the IP address, this object should have the
value 0.
Integer32
Constraints:
range: 0-16383
.1.3.6.1.2.1.10.127.6.1.1.3.1.1.4
The value of this object is the state of the SA
Mapping FSM for this IP.
Enumeration
Enumerated Values:
1start
2mapWait
3mapped
.1.3.6.1.2.1.10.127.6.1.1.3.1.1.5
The value of this object is the count of times the
CM has transmitted an SA Map Request message for this IP.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.1.3.1.1.6
The value of this object is the count of times the
CM has received an SA Map Reply message for this IP.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.1.3.1.1.7
The value of this object is the count of times the
CM has received an SA MAP Reject message for this IP.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.1.3.1.1.8
The value of this object is the enumerated
description of the Error-Code in the most recent SA Map
Reject message sent in response to an SA Map Request for this
IP. It has value unknown(2) if the last Error-Code value
Enumeration
Enumerated Values:
1none
2unknown
9noAuthForRequestedDSFlow
10dsFlowNotMappedToSA
.1.3.6.1.2.1.10.127.6.1.1.3.1.1.9
The value of this object is the Display-String in
the most recent SA Map Reject message sent in response to an
SA Map Request for this IP. It is a zero length string if
no SA Map Reject message has been received since …
OctetString
Constraints:
range: 0-128
.1.3.6.1.2.1.10.127.6.1.1.3.1.1.10
.1.3.6.1.2.1.10.127.6.1.1.4.1 · 1 row entry · 2 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk docsBpi2CmDeviceCertTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'DOCS-BPI2-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'DOCS-BPI2-MIB::docsBpi2CmDeviceCertTable'
This table describes the Baseline Privacy Plus
device certificates for each CM MAC interface.
docsBpi2CmDeviceCertEntry row .1.3.6.1.2.1.10.127.6.1.1.4.1.1
Each entry contains the device certificates of
one CM MAC interface. An entry in this table exists for each
ifEntry with an ifType of docsCableMaclayer(127).
Indexes
Column Syntax OID
The X509 DER-encoded cable modem certificate.
Note: This object can be set only when the value is the null
string. Once the object contains the certificate, its access
MUST be read-only.
X509Certificater/w
Type Constraints:
range: 0..1400
.1.3.6.1.2.1.10.127.6.1.1.4.1.1.1
The X509 DER-encoded manufacturer certificate which
signed the cable modem certificate.
X509Certificate
Type Constraints:
range: 0..1400
.1.3.6.1.2.1.10.127.6.1.1.4.1.1.2
.1.3.6.1.2.1.10.127.6.1.1.5 · 1 row entry · 3 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk docsBpi2CmCryptoSuiteTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'DOCS-BPI2-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'DOCS-BPI2-MIB::docsBpi2CmCryptoSuiteTable'
This table describes the Baseline Privacy Plus
cryptographic suite capabilites for each CM MAC interface.
docsBpi2CmCryptoSuiteEntry row .1.3.6.1.2.1.10.127.6.1.1.5.1
Each entry contains a cryptographic suite pair
which this CM MAC supports.
Column Syntax OID
The index for a cryptographic suite row.
Integer32
Constraints:
range: 1-1000
.1.3.6.1.2.1.10.127.6.1.1.5.1.1
The value of this object is the data encryption
algorithm for this cryptographic suite capability.
Enumeration
Enumerated Values:
0none
1des56CbcMode
2des40CbcMode
.1.3.6.1.2.1.10.127.6.1.1.5.1.2
The value of this object is the data authentication
algorithm for this cryptographic suite capability.
Enumeration
Enumerated Values:
0none
.1.3.6.1.2.1.10.127.6.1.1.5.1.3
.1.3.6.1.2.1.10.127.6.1.2.1 · 1 row entry · 12 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk docsBpi2CmtsBaseTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'DOCS-BPI2-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'DOCS-BPI2-MIB::docsBpi2CmtsBaseTable'
This table describes the basic Baseline Privacy
attributes of each CMTS MAC interface.
docsBpi2CmtsBaseEntry row .1.3.6.1.2.1.10.127.6.1.2.1.1
Each entry contains objects describing attributes of
one CMTS MAC interface. An entry in this table exists for
each ifEntry with an ifType of docsCableMaclayer(127).
Indexes
Column Syntax OID
The value of this object is the default lifetime, in
seconds, the CMTS assigns to a new authorization key.
secondsInteger32r/w
Constraints:
range: 1-6048000
.1.3.6.1.2.1.10.127.6.1.2.1.1.1
The value of this object is the default lifetime, in
seconds, the CMTS assigns to a new Traffic Encryption Key
(TEK).
secondsInteger32r/w
Constraints:
range: 1-604800
.1.3.6.1.2.1.10.127.6.1.2.1.1.2
This object determines the default trust of all (new)
self-signed manufacturer certificates obtained after setting
the object.
Enumerationr/w
Enumerated Values:
1trusted
2untrusted
.1.3.6.1.2.1.10.127.6.1.2.1.1.3
Setting this object to TRUE causes all certificates
obtained thereafter to have their validity periods (and their
chain's validity periods) checked against the current time of
day. A FALSE setting will cause all certif…
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.2.1.10.127.6.1.2.1.1.4
The value of this object is the count of times the
CMTS has received an Authentication Information message from
any CM.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.1.1.5
The value of this object is the count of times the
CMTS has received an Authorization Request message from any
CM.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.1.1.6
The value of this object is the count of times the
CMTS has transmitted an Authorization Reply message to any
CM.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.1.1.7
The value of this object is the count of times the
CMTS has transmitted an Authorization Reject message to any
CM.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.1.1.8
The value of this object is the count of times the
CMTS has transmitted an Authorization Invalid message to any
CM.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.1.1.9
The value of this object is the count of times the
CMTS has received an SA Map Request message from any CM.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.1.1.10
The value of this object is the count of times the
CMTS has transmitted an SA Map Reply message to any CM.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.1.1.11
The value of this object is the count of times the
CMTS has transmitted an SA Map Reject message to any CM.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.1.1.12
.1.3.6.1.2.1.10.127.6.1.2.2 · 1 row entry · 21 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk docsBpi2CmtsAuthTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'DOCS-BPI2-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'DOCS-BPI2-MIB::docsBpi2CmtsAuthTable'
This table describes the attributes of each CM
authorization association. The CMTS maintains one
authorization association with each Baseline Privacy-enabled
CM on each CMTS MAC interface.
docsBpi2CmtsAuthEntry row .1.3.6.1.2.1.10.127.6.1.2.2.1
Each entry contains objects describing attributes of
one authorization association. The CMTS MUST create one entry
per CM per MAC interface, based on the receipt of an
Authorization Request message, and MUST not delete …
Column Syntax OID
The value of this object is the physical address of
the CM to which the authorization association applies.
SNMPv2-TCMacAddress
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.2.1.10.127.6.1.2.2.1.1
The value of this object is the version of Baseline
Privacy for which this CM has registered.
Enumeration
Enumerated Values:
0bpi
1bpiPlus
.1.3.6.1.2.1.10.127.6.1.2.2.1.2
The value of this object is a DER-encoded
RSAPublicKey ASN.1 type string, as defined in the RSA
Encryption Standard (PKCS #1) [10], corresponding to the
public key of the CM. The 74, 106, 140, 204, and 270 byte key
enco…
OctetString
Constraints:
range: 0-0
range: 74-74
range: 106-106
range: 140-140
range: 204-204
range: 270-270
.1.3.6.1.2.1.10.127.6.1.2.2.1.3
The value of this object is the most recent
authorization key sequence number for this CM.
Integer32
Constraints:
range: 0-15
.1.3.6.1.2.1.10.127.6.1.2.2.1.4
The value of this object is the actual clock time
for expiration of the immediate predecessor of the most
recent authorization key for this FSM. If this FSM has only
one authorization key, then the value is the time of
SNMPv2-TCDateAndTime
Type Constraints:
range: 8
range: 11
Description:
A date-time specification.

field octets contents range
----- ------ -------- -----
1 1-2 year* 0..65536
2 3 month …
.1.3.6.1.2.1.10.127.6.1.2.2.1.5
The value of this object is the actual clock time
for expiration of the most recent authorization key for this
FSM.
SNMPv2-TCDateAndTime
Type Constraints:
range: 8
range: 11
Description:
A date-time specification.

field octets contents range
----- ------ -------- -----
1 1-2 year* 0..65536
2 3 month …
.1.3.6.1.2.1.10.127.6.1.2.2.1.6
The value of this object is the lifetime, in seconds,
the CMTS assigns to an authorization key for this CM.
secondsInteger32r/w
Constraints:
range: 1-6048000
.1.3.6.1.2.1.10.127.6.1.2.2.1.7
The value of this object is the grace time for the
authorization key in seconds. The CM is expected to start
trying to get a new authorization key beginning AuthGraceTime
seconds before the authorization key actually e…
secondsInteger32
Constraints:
range: 1-6047999
.1.3.6.1.2.1.10.127.6.1.2.2.1.8
Setting this object to invalidateAuth(2) causes the
CMTS to invalidate the current CM authorization key(s), but
not to transmit an Authorization Invalid message nor to
invalidate unicast TEKs. Setting this object to
se…
Enumerationr/w
Enumerated Values:
1noResetRequested
2invalidateAuth
3sendAuthInvalid
4invalidateTeks
.1.3.6.1.2.1.10.127.6.1.2.2.1.9
The value of this object is the count of times the
CMTS has received an Authentication Information message from
this CM.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.2.1.10
The value of this object is the count of times the
CMTS has received an Authorization Request message from this
CM.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.2.1.11
The value of this object is the count of times the
CMTS has transmitted an Authorization Reply message to this
CM.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.2.1.12
The value of this object is the count of times the
CMTS has transmitted an Authorization Reject message to this
CM.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.2.1.13
The value of this object is the count of times the
CMTS has transmitted an Authorization Invalid message to this
CM.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.2.1.14
The value of this object is the enumerated
description of the Error-Code in most recent Authorization
Reject message transmitted to the CM. This has value
unknown(2) if the last Error-Code value was 0, and none(1) if
n…
Enumeration
Enumerated Values:
1none
2unknown
3unauthorizedCm
4unauthorizedSaid
8permanentAuthorizationFailure
11timeOfDayNotAcquired
.1.3.6.1.2.1.10.127.6.1.2.2.1.15
The value of this object is the Display-String in
most recent Authorization Reject message transmitted to the
CM. This is a zero length string if no Authorization Reject
message has been transmitted to the CM.
OctetString
Constraints:
range: 0-128
.1.3.6.1.2.1.10.127.6.1.2.2.1.16
The value of this object is the enumerated
description of the Error-Code in most recent Authorization
Invalid message transmitted to the CM. This has value
unknown(2) if the last Error-Code value was 0, and none(1) if
Enumeration
Enumerated Values:
1none
2unknown
3unauthorizedCm
5unsolicited
6invalidKeySequence
7keyRequestAuthenticationFailure
.1.3.6.1.2.1.10.127.6.1.2.2.1.17
The value of this object is the Display-String in
most recent Authorization Invalid message transmitted to the
CM. This is a zero length string if no Authorization Invalid
message has been transmitted to the CM.
OctetString
Constraints:
range: 0-128
.1.3.6.1.2.1.10.127.6.1.2.2.1.18
The value of this object is the Primary Security
Association identifier.
Integer32
Constraints:
range: 0-16383
.1.3.6.1.2.1.10.127.6.1.2.2.1.19
Contains the reason why a CM's certificate is deemed
valid or invalid.
Return unknown if the CM is running BPI mode.
ValidCmChained means the certificate is valid because
it chains to a valid certificate.
Enumeration
Enumerated Values:
0unknown
1validCmChained
2validCmTrusted
3invalidCmUntrusted
4invalidCAUntrusted
5invalidCmOther
6invalidCAOther
.1.3.6.1.2.1.10.127.6.1.2.2.1.20
The X509 CM Certificate sent as part of a BPKM
Authorization Request.
Note: The NULL string must be returned if the entire
certificate is not retained in the CMTS.
X509Certificate
Type Constraints:
range: 0..1400
.1.3.6.1.2.1.10.127.6.1.2.2.1.21
.1.3.6.1.2.1.10.127.6.1.2.3 · 1 row entry · 18 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk docsBpi2CmtsTEKTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'DOCS-BPI2-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'DOCS-BPI2-MIB::docsBpi2CmtsTEKTable'
This table describes the attributes of each
Traffic Encryption Key (TEK) association. The CMTS maintains
one TEK association per SAID on each CMTS MAC interface.
docsBpi2CmtsTEKEntry row .1.3.6.1.2.1.10.127.6.1.2.3.1
Each entry contains objects describing attributes of
one TEK association on a particular CMTS MAC interface. The
CMTS MUST create one entry per SAID per MAC interface,
based on the receipt of a Key Request message, and …
Column Syntax OID
The value of this object is the DOCSIS Security
Association ID (SAID).
Integer32
Constraints:
range: 1-16383
.1.3.6.1.2.1.10.127.6.1.2.3.1.1
The value of this object is the type of security
association. Dynamic does not apply to CMs running in
BPI mode.
Enumeration
Enumerated Values:
0none
1primary
2static
3dynamic
.1.3.6.1.2.1.10.127.6.1.2.3.1.2
The value of this object is the data encryption
algorithm being utilized.
Enumeration
Enumerated Values:
0none
1des56CbcMode
2des40CbcMode
.1.3.6.1.2.1.10.127.6.1.2.3.1.3
The value of this object is the data authentication
algorithm being utilized.
Enumeration
Enumerated Values:
0none
.1.3.6.1.2.1.10.127.6.1.2.3.1.4
The value of this object is the lifetime, in
seconds, the CMTS assigns to keys for this TEK association.
secondsInteger32r/w
Constraints:
range: 1-604800
.1.3.6.1.2.1.10.127.6.1.2.3.1.5
The value of this object is the grace time for
the TEK in seconds. The CM is expected to start trying to
acquire a new TEK beginning TEK GraceTime seconds before
the TEK actually expires.
Note: The value of this object…
secondsInteger32
Constraints:
range: 1-302399
.1.3.6.1.2.1.10.127.6.1.2.3.1.6
The value of this object is the most recent TEK
key sequence number for this SAID.
Integer32
Constraints:
range: 0-15
.1.3.6.1.2.1.10.127.6.1.2.3.1.7
The value of this object is the actual clock time
for expiration of the immediate predecessor of the most
recent TEK for this FSM. If this FSM has only one TEK, then
the value is the time of activation of this FSM.
SNMPv2-TCDateAndTime
Type Constraints:
range: 8
range: 11
Description:
A date-time specification.

field octets contents range
----- ------ -------- -----
1 1-2 year* 0..65536
2 3 month …
.1.3.6.1.2.1.10.127.6.1.2.3.1.8
The value of this object is the actual clock time
for expiration of the most recent TEK for this FSM.
SNMPv2-TCDateAndTime
Type Constraints:
range: 8
range: 11
Description:
A date-time specification.

field octets contents range
----- ------ -------- -----
1 1-2 year* 0..65536
2 3 month …
.1.3.6.1.2.1.10.127.6.1.2.3.1.9
Setting this object to TRUE causes the CMTS to
invalidate the current active TEK(s) (plural due to key
transition periods), and to generate a new TEK for the
associated SAID; the CMTS MAY also generate an unsolicited
TE…
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.2.1.10.127.6.1.2.3.1.10
The value of this object is the count of times the
CMTS has received a Key Request message.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.3.1.11
The value of this object is the count of times the
CMTS has transmitted a Key Reply message.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.3.1.12
The value of this object is the count of times the
CMTS has transmitted a Key Reject message.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.3.1.13
The value of this object is the count of times the
CMTS has transmitted a TEK Invalid message.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.3.1.14
The value of this object is the enumerated

description of the Error-Code in the most recent Key Reject
message sent in response to a Key Request for this SAID.
This has value unknown(2) if the last Error-…
Enumeration
Enumerated Values:
1none
2unknown
4unauthorizedSaid
.1.3.6.1.2.1.10.127.6.1.2.3.1.15
The value of this object is the Display-String in
the most recent Key Reject message sent in response to a Key
Request for this SAID. This is a zero length string if no
Key Reject message has been received since reboot.
OctetString
Constraints:
range: 0-128
.1.3.6.1.2.1.10.127.6.1.2.3.1.16
The value of this object is the enumerated
description of the Error-Code in the most recent TEK Invalid
message sent in association with this SAID. This has value
unknown(2) if the last Error-Code value was 0, and none…
Enumeration
Enumerated Values:
1none
2unknown
6invalidKeySequence
.1.3.6.1.2.1.10.127.6.1.2.3.1.17
The value of this object is the Display-String in
the most recent TEK Invalid message sent in association with
this SAID. This is a zero length string if no TEK Invalid
message has been received since reboot.
OctetString
Constraints:
range: 0-128
.1.3.6.1.2.1.10.127.6.1.2.3.1.18
.1.3.6.1.2.1.10.127.6.1.2.4.1 · 1 row entry · 15 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk docsBpi2CmtsIpMulticastMapTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'DOCS-BPI2-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'DOCS-BPI2-MIB::docsBpi2CmtsIpMulticastMapTable'
This table maps multicast IP addresses to SAIDs.
docsBpi2CmtsIpMulticastMapEntry row .1.3.6.1.2.1.10.127.6.1.2.4.1.1
Each entry contains objects describing the mapping of
a set of multicast IP address and mask to one SAID, as well as
associated message counters and error information.
Column Syntax OID
The index of this row.
Integer32
Constraints:
range: 1-10000
.1.3.6.1.2.1.10.127.6.1.2.4.1.1.1
The type of internet address for
docsBpi2CmtsIpMulticastAddress.
INET-ADDRESS-MIBInetAddressTyper/w
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.2.1.10.127.6.1.2.4.1.1.2
This object represents the IP multicast address
to be mapped, in conjunction with
docsBpi2CmtsIpMulticastMask.
INET-ADDRESS-MIBInetAddressr/w
Type Constraints:
range: 0..255
.1.3.6.1.2.1.10.127.6.1.2.4.1.1.3
The type of internet address for
docsBpi2CmtsIpMulticastMask.
INET-ADDRESS-MIBInetAddressTyper/w
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.2.1.10.127.6.1.2.4.1.1.4
This object represents the IP multicast address mask
for this row.
An IP multicast address matches this row if it is
equivalent to the logical AND of
docsBpi2CmtsIpMulticastAddr with
docsBpi2CmtsIpMulticastMask.
INET-ADDRESS-MIBInetAddressr/w
Type Constraints:
range: 0..255
.1.3.6.1.2.1.10.127.6.1.2.4.1.1.5
This object represents the multicast SAID to be
used in this IP multicast address mapping entry.
Integer32r/w
Constraints:
range: 0-16383
.1.3.6.1.2.1.10.127.6.1.2.4.1.1.6
The value of this object is the type of security
association. Dynamic does not apply to CMs running in
BPI mode.
Enumerationr/w
Enumerated Values:
0none
1primary
2static
3dynamic
.1.3.6.1.2.1.10.127.6.1.2.4.1.1.7
The value of this object is the data encryption
algorithm being utilized.
Enumerationr/w
Enumerated Values:
0none
1des56CbcMode
2des40CbcMode
.1.3.6.1.2.1.10.127.6.1.2.4.1.1.8
The value of this object is the data authentication
algorithm being utilized.
Enumerationr/w
Enumerated Values:
0none
.1.3.6.1.2.1.10.127.6.1.2.4.1.1.9
The value of this object is the count of times the
CMTS has received an SA Map Request message for this IP.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.4.1.1.10
The value of this object is the count of times the
CMTS has transmitted an SA Map Reply message for this IP.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.4.1.1.11
The value of this object is the count of times the
CMTS has transmitted an SA Map Reject message for this IP.
SNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.3.6.1.2.1.10.127.6.1.2.4.1.1.12
The value of this object is the enumerated

description of the Error-Code in the most recent SA Map
Reject message sent in response to a SA Map Request for this
IP. It has value unknown(2) if the last Err…
Enumeration
Enumerated Values:
1none
2unknown
9noAuthForRequestedDSFlow
10dsFlowNotMappedToSA
.1.3.6.1.2.1.10.127.6.1.2.4.1.1.13
The value of this object is the Display-String in
the most recent SA Map Reject message sent in response to an
SA Map Request for this IP. It is a zero length string if
no SA Map Reject message has been received since …
OctetString
Constraints:
range: 0-128
.1.3.6.1.2.1.10.127.6.1.2.4.1.1.14
This object controls and reflects the IP multicast
address mapping entry. There is no restriction on the ability
to change values in this row while the row is active.
Inactive rows need not be timed out.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.2.1.10.127.6.1.2.4.1.1.15
.1.3.6.1.2.1.10.127.6.1.2.4.2 · 1 row entry · 3 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk docsBpi2CmtsMulticastAuthTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'DOCS-BPI2-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'DOCS-BPI2-MIB::docsBpi2CmtsMulticastAuthTable'
This table describes the multicast SAID
authorization for each CM on each CMTS MAC interface.
docsBpi2CmtsMulticastAuthEntry row .1.3.6.1.2.1.10.127.6.1.2.4.2.1
Each entry contains objects describing the key
authorization of one cable modem for one multicast SAID
for one CMTS MAC interface.
Column Syntax OID
This object represents the multicast SAID for
authorization.
Integer32
Constraints:
range: 1-16383
.1.3.6.1.2.1.10.127.6.1.2.4.2.1.1
This object represents the MAC address of the CM
to which the multicast SAID authorization applies.
SNMPv2-TCMacAddress
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.2.1.10.127.6.1.2.4.2.1.2
This object controls and reflects the CM
authorization for each multicast SAID. There is no
restriction on the ability to change values in this row
while the row is active. Inactive rows need not be
timed out.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.2.1.10.127.6.1.2.4.2.1.3
.1.3.6.1.2.1.10.127.6.1.2.5.1 · 1 row entry · 5 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk docsBpi2CmtsProvisionedCmCertTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'DOCS-BPI2-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'DOCS-BPI2-MIB::docsBpi2CmtsProvisionedCmCertTable'
A table of CM certificate trust entries provisioned
to the CMTS.  The trust object for a certificate in this table
has an overriding effect on the validity object of a
certificate in the authorization table, as long as the
entire contents of the two certificates are identical.
docsBpi2CmtsProvisionedCmCertEntry row .1.3.6.1.2.1.10.127.6.1.2.5.1.1
An entry in the CMTS' provisioned CM certificate
table.
Column Syntax OID
The index of this row.
SNMPv2-TCMacAddress
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.2.1.10.127.6.1.2.5.1.1.1
Trust state for the provisioned CM certificate entry.
Note: Setting this object need only override the validity of
CM certificates sent in future authorization requests;
instantaneous effect need not occur.
Enumerationr/w
Enumerated Values:
1trusted
2untrusted
.1.3.6.1.2.1.10.127.6.1.2.5.1.1.2
This object indicates how the certificate reached the
CMTS. Other means it originated from a source not identified
above.
Enumeration
Enumerated Values:
1snmp
2configurationFile
3externalDatabase
4other
.1.3.6.1.2.1.10.127.6.1.2.5.1.1.3
Standard RowStatus object except:
a) if a row has ever been activated,
a set to docsBpi2CmtsProvisionedCmCert need not succeed,
b) inactive rows need not be timed out.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.2.1.10.127.6.1.2.5.1.1.4
An X509 DER-encoded certificate authority
certificate.
Note: The NULL string must be returned, on reads, if the
entire certificate is not retained in the CMTS.
X509Certificater/w
Type Constraints:
range: 0..1400
.1.3.6.1.2.1.10.127.6.1.2.5.1.1.5
.1.3.6.1.2.1.10.127.6.1.2.5.2 · 1 row entry · 9 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk docsBpi2CmtsCACertTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'DOCS-BPI2-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'DOCS-BPI2-MIB::docsBpi2CmtsCACertTable'
The table of known certificate authority certificates
acquired by this device.
docsBpi2CmtsCACertEntry row .1.3.6.1.2.1.10.127.6.1.2.5.2.1
A row in the Certificate Authority certificate
table.
Column Syntax OID
The index for this row.
Integer32
Constraints:
range: 1-10000
.1.3.6.1.2.1.10.127.6.1.2.5.2.1.1
The subject name exactly as it is encoded in the
X509 certificate.
The organizationName portion of the certificate's subject
name must be present. All other fields are optional. Any
optional field present must be prep…
SNMP-FRAMEWORK-MIBSnmpAdminString
Type Constraints:
range: 0..255
.1.3.6.1.2.1.10.127.6.1.2.5.2.1.2
The issuer name exactly as it is encoded in the
X509 certificate.
The commonName portion of the certificate's issuer
name must be present. All other fields are optional. Any
optional field present must be prepended wi…
SNMP-FRAMEWORK-MIBSnmpAdminString
Type Constraints:
range: 0..255
.1.3.6.1.2.1.10.127.6.1.2.5.2.1.3
This CA certificate's serial number represented as
an octet string.
OctetString
Constraints:
range: 1-32
.1.3.6.1.2.1.10.127.6.1.2.5.2.1.4
This object controls the trust status of this
certificate. Root certificates must be given root trust;
manufacturer certificates must not be given root trust.
Trust on root certificates must not change.
Note: Setting t…
Enumerationr/w
Enumerated Values:
1trusted
2untrusted
3chained
4root
.1.3.6.1.2.1.10.127.6.1.2.5.2.1.5
This object indicates how the certificate reached
the CMTS. Other means it originated from a source not
identified above.
Enumeration
Enumerated Values:
1snmp
2configurationFile
3externalDatabase
4other
5authentInfo
6compiledIntoCode
.1.3.6.1.2.1.10.127.6.1.2.5.2.1.6
Standard RowStatus objects except:
a) if a row has ever been activated,
a set to docsBpi2CmtsCACert need not succeed,
b) inactive rows need not be timed out,
c) if a row has ever been activated, a destroy setting need
n…
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.2.1.10.127.6.1.2.5.2.1.7
An X509 DER-encoded certificate authority
certificate.
To help identify certificates, either this object or
docsBpi2CmtsCACertThumbprint must be returned by a CMTS for
self-signed CA certificates.

Note: T…
X509Certificater/w
Type Constraints:
range: 0..1400
.1.3.6.1.2.1.10.127.6.1.2.5.2.1.8
The SHA-1 hash of a CA certificate.
To help identify certificates, either this object or
docsBpi2CmtsCACert must be returned by a CMTS for
self-signed CA certificates.

Note: The NULL string must be return…
OctetString
Constraints:
range: 20-20
.1.3.6.1.2.1.10.127.6.1.2.5.2.1.9