IEEE8021-SECY-MIB Table View

Table-centric layout grouping table, row, and column objects.

Tables
17
Rows
17
Columns
117

secyIfTable

table
.1.0.8802.1.1.3.1.1.1 · 1 row entry · 17 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk secyIfTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'IEEE8021-SECY-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'IEEE8021-SECY-MIB::secyIfTable'
A table with an entry for each service interface in this system
with MAC Security capability, i.e. for each SecY.
          
The configured value of writable objects in each table entry
shall be stored in persistent memory and remain unchanged across
a re-initialization of the system's management entity.
secyIfEntry row .1.0.8802.1.1.3.1.1.1.1
A table entry with service information for a particular SecY.
Column Syntax OID
An interface index, aligned with ifIndex in the
ifTable, pointing to the SecY's Controlled Port.
IF-MIBInterfaceIndex
Type Constraints:
range: 1..2147483647
Description:
A unique value, greater than zero, for each interface or
interface sub-layer in the managed system. It is
recommended that values are assigned contiguously starting
from 1. The value for each interface sub-layer must …
.1.0.8802.1.1.3.1.1.1.1.1
The maximum number of peer SCs for this SecY.
security connectionsSNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.0.8802.1.1.3.1.1.1.1.2
The maximum number of keys in simultaneous use for
reception for this SecY.
keysSNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.0.8802.1.1.3.1.1.1.1.3
The maximum number of keys in simultaneous use for
transmission for this SecY.
keysSNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.0.8802.1.1.3.1.1.1.1.4
Enables or disables protection of transmitted frames.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.0.8802.1.1.3.1.1.1.1.5
Controls validation of received frames.

disabled(1) : disable validation, remove SecTAGs and ICVs (if
present) from received frames.
check(2) : enable validation, do not discard invalid …
Enumerationr/w
Enumerated Values:
1disabled
2check
3strict
4null
.1.0.8802.1.1.3.1.1.1.1.6
Enables or disables replay protection.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.0.8802.1.1.3.1.1.1.1.7
The replay protection window size.
PacketsSNMPv2-SMIUnsigned32r/w
Type Constraints:
range: 0..4294967295
.1.0.8802.1.1.3.1.1.1.1.8
The Cipher Suite currently used by this SecY,
identified by the secyCipherSuiteTable entry index.
Should be read-only if secyIfCipherTable implemented.
SNMPv2-SMIUnsigned32r/w
Type Constraints:
range: 0..4294967295
.1.0.8802.1.1.3.1.1.1.1.9
Controls the value of operPointToPointMAC (secyOperPt2PtMAC)
reported to the user(s) of this SecY's Controlled Port.

forceTrue(1) : operPointToPointMAC is True, regardless of the
configu…
Enumerationr/w
Enumerated Values:
1forceTrue
2forceFalse
3auto
.1.0.8802.1.1.3.1.1.1.1.10
Reflects the current service connectivity to be assumed by the
user(s) of the SecY's Controlled Port.

true(1) : connectivity is to at most one other system.
false(2) : connectivity is to one or more oth…
SNMPv2-TCTruthValue
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.0.8802.1.1.3.1.1.1.1.11
Mandates inclusion of an explicit SCI in the SecTAG
when transmitting protected frames.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.0.8802.1.1.3.1.1.1.1.12
Enables use of the ES bit in the SecTAG when
transmitting protected frames.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.0.8802.1.1.3.1.1.1.1.13
Enables use of the SCB bit in the SecTAG when
transmitting protected frames.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.0.8802.1.1.3.1.1.1.1.14
The SCI for the SecY's default traffic class.
SecySCI
Type Constraints:
range: 8
.1.0.8802.1.1.3.1.1.1.1.15
True if an explicit SCI is included in the SecTAG when
transmitting protected frames.
SNMPv2-TCTruthValue
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.0.8802.1.1.3.1.1.1.1.16
The maximum number of transmit SCs for this SecY.
security connectionsSNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.0.8802.1.1.3.1.1.1.1.17
.1.0.8802.1.1.3.1.1.2 · 1 row entry · 7 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk secyTxSCTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'IEEE8021-SECY-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'IEEE8021-SECY-MIB::secyTxSCTable'
A table with an entry for each SecY's transmit SC.
secyTxSCEntry row .1.0.8802.1.1.3.1.1.2.1
An entry with transmit SC information for a SecY.
Column Syntax OID
The SCI for the SecY's transmit SC.
SecySCI
Type Constraints:
range: 8
.1.0.8802.1.1.3.1.1.2.1.1
The transmitting state of the SecY's transmit SC.
inUse(1) : one or more SAs are in use.
notInUse(2) : no SAs are in use.
Enumeration
Enumerated Values:
1inUse
2notInUse
.1.0.8802.1.1.3.1.1.2.1.2
The SA currently used to encode the SecTAG for frames awaiting
transmission. The row pointer will point to an entry in the
secyTxSATable. If no such information is available, the value shall
be the OBJECT IDENTIFIER …
SNMPv2-TCRowPointer
Description:
Represents a pointer to a conceptual row. The value is the
name of the instance of the first accessible columnar object
in the conceptual row.

For example, ifIndex.3 would point to the 3rd row in the
ifTable…
.1.0.8802.1.1.3.1.1.2.1.3
The SA currently used to encipher frames for transmission.
The row pointer will point to an entry in the secyTxSATable.
If no such information is available, the value shall be the
OBJECT IDENTIFIER { 0 0 }.
SNMPv2-TCRowPointer
Description:
Represents a pointer to a conceptual row. The value is the
name of the instance of the first accessible columnar object
in the conceptual row.

For example, ifIndex.3 would point to the 3rd row in the
ifTable…
.1.0.8802.1.1.3.1.1.2.1.4
The system time when this transmitting SC was created.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.0.8802.1.1.3.1.1.2.1.5
The system time when this transmitting SC last started
transmitting MACsec frames.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.0.8802.1.1.3.1.1.2.1.6
The system time when this transmitting SC last stopped
transmitting MACsec frames.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.0.8802.1.1.3.1.1.2.1.7
.1.0.8802.1.1.3.1.1.3 · 1 row entry · 8 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk secyTxSATable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'IEEE8021-SECY-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'IEEE8021-SECY-MIB::secyTxSATable'
A table with an entry for each transmit SA for each of 
the system's SecYs.
secyTxSAEntry row .1.0.8802.1.1.3.1.1.3.1
An entry for a transmit SA.
Column Syntax OID
The association number (AN) for this transmit SA.
SecyAN
Type Constraints:
range: 0..3
.1.0.8802.1.1.3.1.1.3.1.1
The current status of the transmitting SA.

inUse(1) : this SA is in use.
notInUse(2) : this SA is not in use.
Enumeration
Enumerated Values:
1inUse
2notInUse
.1.0.8802.1.1.3.1.1.3.1.2
The next packet number (PN) for this SA.
SNMPv2-SMIUnsigned32
Type Constraints:
range: 0..4294967295
.1.0.8802.1.1.3.1.1.3.1.3
True if the SA provides confidentiality as well as
integrity for transmitted frames.
SNMPv2-TCTruthValue
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.0.8802.1.1.3.1.1.3.1.4
A reference to an SAK that is unchanged for the life
of the transmitting SA.
SNMPv2-TCTruthValue
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.0.8802.1.1.3.1.1.3.1.5
The system time when this transmit SA was created.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.0.8802.1.1.3.1.1.3.1.6
The system time when this transmit SA last started
transmitting MACsec frames.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.0.8802.1.1.3.1.1.3.1.7
The system time when this transmit SA last stopped
transmitting MACsec frames.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.0.8802.1.1.3.1.1.3.1.8
.1.0.8802.1.1.3.1.1.4 · 1 row entry · 6 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk secyRxSCTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'IEEE8021-SECY-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'IEEE8021-SECY-MIB::secyRxSCTable'
A table for the system's SecY's receive SCs.
secyRxSCEntry row .1.0.8802.1.1.3.1.1.4.1
An entry for one of the SCs used by one of the system's
SecY's to receive protected frames.
Column Syntax OID
The SCI for the receive SC.
SecySCI
Type Constraints:
range: 8
.1.0.8802.1.1.3.1.1.4.1.1
The state of the receive SC.

inUse(1) : one or more SAs for this SC are in use.
notInUse(2) : no SAs for this SC is in use.
Enumeration
Enumerated Values:
1inUse
2notInUse
.1.0.8802.1.1.3.1.1.4.1.2
The current receiving association number of the SC in use.
The row pointer will point to an entry in the secyRxSATable. If no
such information can be identified, the value of this object shall
be the OBJECT IDENTIFIE…
SNMPv2-TCRowPointer
Description:
Represents a pointer to a conceptual row. The value is the
name of the instance of the first accessible columnar object
in the conceptual row.

For example, ifIndex.3 would point to the 3rd row in the
ifTable…
.1.0.8802.1.1.3.1.1.4.1.3
The system time when this receiving SC was created.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.0.8802.1.1.3.1.1.4.1.4
The system time when this receiving SC last started
receiving MACsec frames.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.0.8802.1.1.3.1.1.4.1.5
The system time when this receiving SC last stopped
receiving MACsec frames.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.0.8802.1.1.3.1.1.4.1.6
.1.0.8802.1.1.3.1.1.5 · 1 row entry · 11 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk secyRxSATable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'IEEE8021-SECY-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'IEEE8021-SECY-MIB::secyRxSATable'
A table with entries for the system's receive SAs.
secyRxSAEntry row .1.0.8802.1.1.3.1.1.5.1
An entry for one of the SAs used by one of the system's
SecY's to receive protected frames.
Column Syntax OID
The association number (AN) for this receive SA.
SecyAN
Type Constraints:
range: 0..3
.1.0.8802.1.1.3.1.1.5.1.1
The current state for this receive SA.
Enumeration
Enumerated Values:
1inUse
2notInUse
.1.0.8802.1.1.3.1.1.5.1.2
secyRxSANextPNdeprecated
One more than the highest PN conveyed in the SecTAG of a frame
received on this SA that has been successfully validated (if
validateFrames has not been disabled). Deprecated: use
secyRxSANextXPN for both 32-bit PN an…
SNMPv2-SMIUnsigned32r/w
Type Constraints:
range: 0..4294967295
.1.0.8802.1.1.3.1.1.5.1.3
A reference to an SAK that is unchanged for the life
of the receiving SA.
SNMPv2-TCTruthValue
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.0.8802.1.1.3.1.1.5.1.4
The system time when this receiving SA was created.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.0.8802.1.1.3.1.1.5.1.5
The system time when this receiving SA last started
receiving MACsec frames.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.0.8802.1.1.3.1.1.5.1.6
The system time when this receiving SA last stopped
receiving MACsec frames.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.0.8802.1.1.3.1.1.5.1.7
One more than the highest PN conveyed in the SecTAG of
successfully validates frames received on this SA.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.1.5.1.8
The lowest acceptable packet number. A received frame
with a lower PN is discarded if
secyIfReplayProtectEnable is enabled.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.1.5.1.9
The Key Identifier (KI) for the SAK for this SA.
OctetString
Constraints:
range: 1-32
.1.0.8802.1.1.3.1.1.5.1.10
The SSCI for this SA, 0 if an XPN Cipher Suite is not
being used.
SNMPv2-SMIInteger32
Type Constraints:
range: -2147483648..2147483647
.1.0.8802.1.1.3.1.1.5.1.11
.1.0.8802.1.1.3.1.1.6 · 1 row entry · 9 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk secyCipherSuiteTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'IEEE8021-SECY-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'IEEE8021-SECY-MIB::secyCipherSuiteTable'
A table of the system's Cipher Suite capabilities, which can differ
by Cipher Suite implementation, so there can be more than one entry 
with the same secyCipherSuiteId. The secyIfCipherTable lists 
available entries by SecY, avoiding the need for remote network 
management to  write objects or create rows in this table. Any 
configured values shall be stored in persistent memory and remain 
unchanged across a re-initialization of the management system.
secyCipherSuiteEntry row .1.0.8802.1.1.3.1.1.6.1
An entry for a Cipher Suite implementation.
Column Syntax OID
The CipherSuiteTable entry index.
Unsigned32
Constraints:
range: 1-4294967295
.1.0.8802.1.1.3.1.1.6.1.1
A unique 64-bit (EUI-64) identifier for the Cipher
Suite.
OctetStringr/w
Constraints:
range: 8-8
.1.0.8802.1.1.3.1.1.6.1.2
The Cipher Suite Name, 128 octets or fewer.
OctetStringr/w
Constraints:
range: 1-128
.1.0.8802.1.1.3.1.1.6.1.3
Cipher Suite implementation capability information.

integrity(0) : integrity protection.
confidentiality(1) : confidentiality protection.
offsetConfidentiality(2) : offset confidentialit…
Bitsr/w
Enumerated Values:
0integrity
1confidentiality
2offsetConfidentiality
.1.0.8802.1.1.3.1.1.6.1.4
The secyIfCipherSuite table should be used instead of this object
to allow per SecY Cipher Suite configuration.

The options provided by this control are a subset of those
defined by the object secyCipher…
Bitsr/w
Enumerated Values:
0integrity
1confidentiality
2offsetConfidentiality
.1.0.8802.1.1.3.1.1.6.1.5
The confidentiality protection offset options of this cipher suite.
Options should depend on the choice of secyCipherSuiteProtection.
If the value of secyCipherSuiteProtection only turns on integrity
bit, users can o…
bytesInteger32r/w
Constraints:
range: 0-0
range: 30-30
range: 50-50
.1.0.8802.1.1.3.1.1.6.1.6
True if cipher suite changes the length of the data.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.0.8802.1.1.3.1.1.6.1.7
The length of the integrity check value (ICV) field.
octetsUnsigned32r/w
Constraints:
range: 8-16
.1.0.8802.1.1.3.1.1.6.1.8
The secyIfCipherTable (if implemented) avoids the need for
network manager creation of entries in the secyCipherSuiteTable,
and RowStatus should always be valid(1), with any per SecY
unavailability indicated by an abse…
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.0.8802.1.1.3.1.1.6.1.9
.1.0.8802.1.1.3.1.1.7 · 1 row entry · 3 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk secyIfCipherTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'IEEE8021-SECY-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'IEEE8021-SECY-MIB::secyIfCipherTable'
A table with an entry for the Cipher Suite capabilities
implemented for each SecY in this system, providing per SecY
control of Cipher Suite use.
          
The configured value of writable objects in each table entry
shall be stored in persistent memory and remain unchanged across
a re-initialization of the system's management entity.
secyIfCipherEntry row .1.0.8802.1.1.3.1.1.7.1
A table entry with Cipher Suite control for a SecY.
Column Syntax OID
True if the Cipher Suite implementation can be used by
this SecY (if secIfCipherEnablUse is true).
SNMPv2-TCTruthValue
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.0.8802.1.1.3.1.1.7.1.1
Enables use of the Cipher Suite by this SecY.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.0.8802.1.1.3.1.1.7.1.2
True if confidentiality protection (without an offset)
is required if this Cipher Suite is used.
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.0.8802.1.1.3.1.1.7.1.3
.1.0.8802.1.1.3.1.1.8 · 1 row entry · 2 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk secyIfTCTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'IEEE8021-SECY-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'IEEE8021-SECY-MIB::secyIfTCTable'
The Traffic Class Table for each SecY in this system.
          
The configured value of writable objects in each table entry
shall be stored in persistent memory and remain unchanged across
a re-initialization of the system's management entity.
secyIfTCEntry row .1.0.8802.1.1.3.1.1.8.1
A table entry providing Traffic Class selection for a
given SecY and User Priority.
Column Syntax OID
One of the possible User Priority values for a frame.
Integer32
Constraints:
range: 0-7
.1.0.8802.1.1.3.1.1.8.1.1
The Traffic Class for this SecY and User Priority, as
transmitted in the four most significant bits of the Port
Identifier component of the SCI of protected frames.
Integer32r/w
Constraints:
range: 0-7
.1.0.8802.1.1.3.1.1.8.1.2
.1.0.8802.1.1.3.1.1.9 · 1 row entry · 2 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk secyIfAPTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'IEEE8021-SECY-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'IEEE8021-SECY-MIB::secyIfAPTable'
The Access Priority Table for each SecY in this system.
          
The configured value of writable objects in each table entry
shall be stored in persistent memory and remain unchanged across
a re-initialization of the system's management entity.
secyIfAPEntry row .1.0.8802.1.1.3.1.1.9.1
A table entry selecting the Access Priority Code Point
for a given SecY and User Priority Code Point.
Column Syntax OID
A User Priority Code Point.
Integer32
Constraints:
range: 0-15
.1.0.8802.1.1.3.1.1.9.1.1
The Access Priority Code Point for this SecY and User
PCP. Defaults to the User PCP value.
Integer32r/w
Constraints:
range: 0-15
.1.0.8802.1.1.3.1.1.9.1.2

secyTSCTable

table
.1.0.8802.1.1.3.1.1.10 · 1 row entry · 6 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk secyTSCTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'IEEE8021-SECY-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'IEEE8021-SECY-MIB::secyTSCTable'
A table of entries for each SecY's traffic class SCs.
secyTSCEntry row .1.0.8802.1.1.3.1.1.10.1
An entry with transmit SC information for one of the
system's SecYs and one of its traffic classes.
Column Syntax OID
The SCI for the transmit SC for this SecY and
traffic class.
SecySCI
Type Constraints:
range: 8
.1.0.8802.1.1.3.1.1.10.1.1
The state of the transmit SC for this SecY and traffic class.

inUse(1) : one or more SAs for the traffic class SC are in use.
notInUse(2) : no SAs for the traffic class SC are in use.
Enumeration
Enumerated Values:
1inUse
2notInUse
.1.0.8802.1.1.3.1.1.10.1.2
The SA currently used to encode the SecTAG for frames awaiting
transmission. The row pointer will point to an entry in the
secyTxSATable. If no such information is available, the value shall
be the OBJECT IDENTIFIER …
SNMPv2-TCRowPointer
Description:
Represents a pointer to a conceptual row. The value is the
name of the instance of the first accessible columnar object
in the conceptual row.

For example, ifIndex.3 would point to the 3rd row in the
ifTable…
.1.0.8802.1.1.3.1.1.10.1.3
The system time when this transmitting SC was created.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.0.8802.1.1.3.1.1.10.1.4
The system time when this transmitting SC last started
transmitting MACsec frames.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.0.8802.1.1.3.1.1.10.1.5
The system time when this transmitting SC last stopped
transmitting MACsec frames.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.0.8802.1.1.3.1.1.10.1.6

secyTSATable

table
.1.0.8802.1.1.3.1.1.11 · 1 row entry · 9 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk secyTSATable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'IEEE8021-SECY-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'IEEE8021-SECY-MIB::secyTSATable'
A table with an entry for each transmit SA for each of 
the system's SecYs.
secyTSAEntry row .1.0.8802.1.1.3.1.1.11.1
An entry for a transmit SA.
Column Syntax OID
The association number (AN) for this transmit SA.
SecyAN
Type Constraints:
range: 0..3
.1.0.8802.1.1.3.1.1.11.1.1
The current status of the transmit SA.

inUse(1) : this SA is in use.
notInUse(2) : this SA is not in use.
Enumeration
Enumerated Values:
1inUse
2notInUse
.1.0.8802.1.1.3.1.1.11.1.2
The next packet number (PN) for this SA.
SNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.1.11.1.3
True if the SA provides confidentiality as well as
integrity for transmitted frames.
SNMPv2-TCTruthValue
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.0.8802.1.1.3.1.1.11.1.4
The Key Identifier (KI) for the SAK for this SA.
OctetString
Constraints:
range: 1-32
.1.0.8802.1.1.3.1.1.11.1.5
The SSCI for this SA, 0 if an XPN Cipher Suite is not
being used.
SNMPv2-SMIInteger32
Type Constraints:
range: -2147483648..2147483647
.1.0.8802.1.1.3.1.1.11.1.6
The system time when this transmit SA was created.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.0.8802.1.1.3.1.1.11.1.7
The system time when this transmit SA last started
transmitting MACsec frames.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.0.8802.1.1.3.1.1.11.1.8
The system time when this transmit SA last stopped
transmitting MACsec frames.
SNMPv2-TCTimeStamp
Based On: SNMPv2-SMITimeTicks
Description:
The value of the sysUpTime object at which a specific
occurrence happened. The specific occurrence must be

defined in the description of any object defined using this
type.

If sysUpTime is reset t…
.1.0.8802.1.1.3.1.1.11.1.9

secyTxSAStatsTable

table deprecated
.1.0.8802.1.1.3.1.2.1 · 1 row entry · 2 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk secyTxSAStatsTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'IEEE8021-SECY-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'IEEE8021-SECY-MIB::secyTxSAStatsTable'
A table of statistics for each transmit SA for each of 
the system's SecYs.
secyTxSAStatsEntry row .1.0.8802.1.1.3.1.2.1.1
An entry with statistics for a transmit SA. The AN that
identifies an SA (for a given SC) and this corresponding entry
can be reused. When creating the SA and before (re)using the
entry, the SA counters are (re)set to…
Indexes
No indexes recorded
Column Syntax OID
The number of integrity protected but not encrypted
packets for this transmit SA. Zero if
secyTxSAConfidentiality is True, and one less than
secyTxSANextPN otherwise.
PacketsSNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.0.8802.1.1.3.1.2.1.1.1
The number of integrity protected and encrypted packets
for this transmit SA. Zero if secyTxSAConfidentiality
is False, and one less than secyTxSANextPN otherwise.
PacketsSNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.0.8802.1.1.3.1.2.1.1.2
.1.0.8802.1.1.3.1.2.2 · 1 row entry · 4 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk secyTxSCStatsTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'IEEE8021-SECY-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'IEEE8021-SECY-MIB::secyTxSCStatsTable'
A table of statistics for each SecY's transmit SC.
secyTxSCStatsEntry row .1.0.8802.1.1.3.1.2.2.1
An entry containing counts for a transmit SC. SA counters are
reset when the SA's AN is reused, so these SC counts are
a summation for all current and prior SAs belonging to the SC.
Indexes
No indexes recorded
Column Syntax OID
The number of integrity protected but not encrypted
packets for this transmit SC.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.2.1.1
The number of integrity protected and encrypted packets
for this transmit SC.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.2.1.4
The number of plain text octets that are integrity
protected but not encrypted for this transmit SC.
OctetsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.2.1.10
The number of plain text octets that are integrity protected
and encrypted on the transmit SC.
OctetsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.2.1.11

secyRxSAStatsTable

table deprecated
.1.0.8802.1.1.3.1.2.3 · 1 row entry · 5 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk secyRxSAStatsTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'IEEE8021-SECY-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'IEEE8021-SECY-MIB::secyRxSAStatsTable'
A table that contains the statistics objects for each
receiving SA in the MAC security entity.
secyRxSAStatsEntry row .1.0.8802.1.1.3.1.2.3.1
An entry with statistics for a receive SA. The AN that
identifies an SA (for a given SC) and this corresponding entry
can be reused. When creating the SA and before (re)using the
entry, the SA counters are (re)set to …
Indexes
No indexes recorded
Column Syntax OID
For this SA which is not currently in use, the number of
received, unencrypted, packets with secyValidateFrames
not in the strict mode.
PacketsSNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.0.8802.1.1.3.1.2.3.1.1
For this SA which is not currently in use, the number of
received packets that have been discarded, and have
either the packets encrypted or secyValidateFrames set to
strict mode.
PacketsSNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.0.8802.1.1.3.1.2.3.1.4
For this SA, the number discarded packets with the
condition that the packets are not valid and one of the
following conditions are true: either secyValidateFrames in
strict mode or the packets encrypted.
PacketsSNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.0.8802.1.1.3.1.2.3.1.13
For this SA, the number of packets with the condition
that the packets are not valid and secyValidateFrames is in
check mode.
PacketsSNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.0.8802.1.1.3.1.2.3.1.16
For this SA, the number of validated packets.
PacketsSNMPv2-SMICounter32
Type Constraints:
range: 0..4294967295
.1.0.8802.1.1.3.1.2.3.1.25
.1.0.8802.1.1.3.1.2.4 · 1 row entry · 10 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk secyRxSCStatsTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'IEEE8021-SECY-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'IEEE8021-SECY-MIB::secyRxSCStatsTable'
A table of statistics for each receive SC for each of
the system's SecYs.
secyRxSCStatsEntry row .1.0.8802.1.1.3.1.2.4.1
An entry containing counts for a receive SC. SA counters are
reset when the SA's AN is reused, so these SC counts are a
summation for all current and prior SAs belonging to the SC.
Indexes
No indexes recorded
Column Syntax OID
The sum of secyRxSAStatsUnusedSAPkts counts for all
current and prior SAs belonging to this SC.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.4.1.1
The sum of secyRxSAStatsNoUsingSAPkts counts for all
current and prior SAs belonging to this SC.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.4.1.2
The number of packets discarded, for this SC, because the
the received PN was lower than the lowest acceptable PN
(secyRxSALowestXPN) and secyIfReplayProtectEnable was true.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.4.1.3
The number of packets discarded, for this SC, because validation
failed and secyIfvalidateFrames was 'strict' or the data was
encrypted (so the original frame could not be recovered).
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.4.1.4
The number of packets, for this SC, that failed validation but
could be received because secyIfvalidateFrames was 'check' and
the data was not encrypted (so the original frame could be
recovered).
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.4.1.5
The number of received packets, for this SC, with PN lower
than the lowest acceptable PN (secyRxSALowestXPN) and
secyIfReplayProtectEnable false.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.4.1.6
The number of packets received for this SC, while
secyValidateFrames was 'disabled'.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.4.1.7
The number of packets received for this SC
successfully validated and within the replay window.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.4.1.8
The number of plaintext octets recovered from packets
that were integrity protected but not encrypted.
OctetsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.4.1.9
The number of plaintext octets recovered from packets
that were integrity protected and encrypted.
OctetsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.4.1.10
.1.0.8802.1.1.3.1.2.5 · 1 row entry · 14 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk secyStatsTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'IEEE8021-SECY-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'IEEE8021-SECY-MIB::secyStatsTable'
A table of statistics for each of the system's SecYs.
secyStatsEntry row .1.0.8802.1.1.3.1.2.5.1
An entry containing counts for a SecY.
Indexes
No indexes recorded
Column Syntax OID
The number of packets transmitted without a SecTAG
because secyProtectFramesEnable is configured false.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.5.1.1
The number of transmit packets discarded because their
length is greater than the ifMtu of the Common Port.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.5.1.2
The number of packets without the MACsec tag (SecTAG)
received while secyValidateFrames was not 'strict'.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.5.1.3
The number of received packets without a SecTAG
discarded because secyValidateFrames was 'strict'.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.5.1.4
The number of received packets discarded with an
invalid SecTAG, zero value PN, or invalid ICV.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.5.1.5
The number of received packets with an unknown SCI.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.5.1.6
The number of discarded packets with an unknown SCI.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.5.1.7
The number of packets discarded because they exceeded
cryptographic performance capabilities.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.5.1.8
The number of received packets with an unknown SCI
or for an unused SA.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.5.1.9
The number of packets discarded because the received
SCI is unknown or the SA is not in use.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.5.1.10
The number of plain text octets integrity protected
but not encrypted in transmitted frames.
OctetsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.5.1.11
The number of plain text octets integrity protected
and encrypted in transmitted frames.
OctetsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.5.1.12
The number of plaintext octets recovered from packets
that were integrity protected but not encrypted.
OctetsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.5.1.13
The number of plaintext octets recovered from packets
that were integrity protected and encrypted.
OctetsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.5.1.14
.1.0.8802.1.1.3.1.2.12 · 1 row entry · 2 columns
Uses the rfc variant from /opt/observium/mibs/rfc.
Command help
Walk secyTSCStatsTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'IEEE8021-SECY-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'IEEE8021-SECY-MIB::secyTSCStatsTable'
A table of statistics for each SecY's transmit SCs.
secyTSCStatsEntry row .1.0.8802.1.1.3.1.2.12.1
A entry containing counts for a transmit SC, since SA counters
are reset when the SA's AN is reused these are a summation for
all current and prior SAs belonging to the SC.
Indexes
No indexes recorded
Column Syntax OID
The number of integrity protected but not encrypted packets
for this transmit SC.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.12.1.1
The number of integrity protected and encrypted packets for
this transmit SC.
PacketsSNMPv2-SMICounter64
Type Constraints:
range: 0..18446744073709551615
.1.0.8802.1.1.3.1.2.12.1.2