IEEE8021X-PAE-MIB

        The MIB module for managing the Port Access Entity (PAE)
functions of IEEE 802.1X (Revision of 802.1X-2004).
The PAE functions managed are summarized in Figure 12-3 of
IEEE 802.1X and include EAPOL PACP support for authentication
(EAP Supplicant and/or Authenticator), MACsec Key Agreement
(MKA), EAPOL, and transmission and reception of network
announcements.
        
The following acronyms and definitions are used in this MIB.
        
AN : Association Number, a number that is concatenated with a
    MACsec Secure Channel Identifier to identify a Secure
    Association (SA).
        
Announcer : EAPOL-Announcement transmission functionality.
        
Authenticator : An entity that facilitates authentication of
    other entities attached to the same LAN.
        
CA : secure Connectivity Association: A security relationship,
    established and maintained by key agreement protocols, that
    comprises a fully connected subset of the service access
    points in stations attached to a single LAN that are to be
    supported by MACsec.
        
CAK : secure Connectivity Association Key, a secret key
    possessed by members of a given CA.
        
CKN : secure Connectivity Association Key Name (CKN), a text
    that identifies a CAK.
        
Common Port : An instance of the MAC Internal Sublayer Service
    used by the SecY or PAC to provide transmission and
    reception of frames for both the Controlled and
    Uncontrolled Ports.
        
Controlled Port : The access point used to provide the secure
    MAC Service to a client of a PAC or SecY.
        
CP state machine : Controlled Port state machine is capable of
    controlling a SecY or a PAC.  The CP supports
    interoperability with unauthenticated systems that are not
    port-based network access control capable, or that lack 
    MKA.  When the access controlled port is supported by a
    SecY, the CP is capable of controlling the SecY so as to
    provide unsecured connectivity to systems that implement a
    PAC.
        
EAP : Extensible Authentication Protocol, RFC3748.
        
EAPOL : EAP over LANs.
        
KaY : Key Agreement Entity, a PAE entity responsible for MKA.
        
Key Server : Elected by MKA, to transport a succession of SAKs,
    for use by MACsec, to the other member(s) of a CA.
        
KMD : Key Management Domain, a string identifying systems that
     share cached CAKs.
        
Listener : The role is to receive the network announcement
    parameters in the authentication process.
        
Logon Process : The Logon Process is responsible for the
    managing the use of authentication credentials, for
    initiating use of the PAE's Supplicant and or Authenticator
    functionality, for deriving CAK, CKN tuples from PAE
    results, for maintaining PSKs (Pre-Sharing Keys), and for
    managing MKA instances.  In the absence of successful
    authentication, key agreement, or support for MAC Security,
    the Logon Process determines whether the CP state machine
    should provide unauthenticated connectivity or
    authenticated but unsecured connectivity.
        
MKA : MACsec Key Agreement protocol allows PAEs, each
    associated with a port that is an authenticated member of a
    secure connectivity association (CA) or a potential CA, to
    discover other PAEs attached to the same LAN, to confirm
    mutual possession of a CAK and hence to prove a past mutual
    authentication, to agree the secret keys (SAKs) used by
    MACsec for symmetric shared key cryptography, and to ensure
    that the data protected by MACsec has not been delayed.
        
MKPDU : MACsec Key Agreement Protocol Data Unit.
        
MPDU : MAC Protocol Data Unit.
        
NID : Network Identity, a UTF-8 string identifying an network
     or network service.
        
PAE : Port Access Entity, the protocol entity associated with a
     Port.  It can support the protocol functionality
     associated with the Authenticator, the Supplicant, or
     both.
        
PAC : Port Access Controller, a protocol-less shim that
     provides control over frame transmission and reception by
     clients attached to its Controlled Port, and uses the MAC
     Service provided by a Common Port.  The access control
     decision is made by the PAE, typically taking into
     account the success or failure of mutual authentication
     and authorization of the PAE's peer(s), and is
     communicated by the PAE using the LMI to set the PAC's
     Controlled Port enabled/disable.  Two different interfaces
     'Controlled Port' and 'Uncontrolled Port', are associated
     with a PAC, and that for each instance of a PAC, two
     ifTable rows (one for each interface) run on top of an
     ifTable row representing the 'Common Port' interface,
     such as a row with ifType = 'ethernetCsmacd(6)'.
        
     For example :
    -----------------------------------------------------------
    |                            |                            |
    |   Controlled Port          |   Uncontrolled Port        |
    |      Interface             |      Interface             |
    |    (ifEntry = j)           |     (ifEntry = k)          |
    | (ifType =                  | (ifType =                  |
    |  macSecControlledIF(231))  |  macSecUncontrolledIF(232))|
    |                            |                            |
    |---------------------------------------------------------|
    |                                                         |
    |                    Physical Interface                   |
    |                      (ifEntry = i)                      |
    |                (ifType = ethernetCsmacd(6))             |
    |_________________________________________________________|
                i, j, k are ifIndex to indicate
               an interface stack in the ifTable.
                Figure : PAC Interface Stack
        
     The 'Controlled Port' is the service point to provide one
     instance of the secure MAC service in a PAC.  The
     'Uncontrolled Port' is the service point to provide one
     instance of the insecure MAC service in a PAC.
        
PACP : Port Access Controller Protocol.
        
Port Identifier : A 16-bit number that is unique within the
    scope of the address of the port.
        
Real Port : Indicates the PAE is for a real port.  A port that
    is not created on demand by the mechanisms specified in
    this standard, but that can transmit and receive frames for
    one or more virtual ports.
        
SC : Secure Channel, a security relationship used to provide
    security guarantees for frames transmitted from one member
    of a CA to the others.  An SC is supported by a sequence of
    SAs thus allowing the periodic use of fresh keys without
    terminating the relationship.
        
SA : Secure Association, a security relationship that provides
    security guarantees for frames transmitted from one member
    of a CA to the others. Each SA is supported by a single
    secret key, or a single set of keys where the cryptographic
    operations used to protect one frame require more than one
    key. 
        
SAK : Secure Association key, the secret key used by an SA.
        
SCI : Secure Channel Identifier, a globally unique identifier
    for a secure channel, comprising a globally unique MAC
    Address and a Port Identifier, unique within the system
    allocated that address.
        
secured connectivity : Data transfer between two or 'Controlled
    Ports' that is protected by MACsec.
        
SecY : MAC Security Entity, the entity that operates the MAC
    Security protocol within a system.
        
Supplicant : An entity at one end of a point-to-point LAN
    segment that seeks to be authenticated by an Authenticator
    attached to the other end of that link.
            
Suspension: Temporary suspension of MKA operation to facilitate
    in-service control plane software upgrades without
    disrupting existing secure connectivity.
        
Uncontrolled Port : The access point used to provide the
    insecure MAC Service to a client of a SecY or PAC.
        
Virtual Port : Indicates the PAE is for a virtual port.  A MAC
    Service or Internal Sublayer service access point that is
    created on demand.  Virtual ports can be used to provide
    separate secure connectivity associations over the same
    LAN.
    
Source file
IEEE8021X-PAE-MIB
Last revised
Identity
ieee8021XPaeMIB
Base OID
1.3.111.2.802.1.1.15
Imported Objects
IEEE8021-SECY-MIB SecySCI
IF-MIB InterfaceIndex
SNMP-FRAMEWORK-MIB SnmpAdminString
SNMPv2-CONF MODULE-COMPLIANCE (no object page) OBJECT-GROUP (no object page)
SNMPv2-SMI Counter32 Counter64 Gauge32 Integer32 MODULE-IDENTITY (no object page) OBJECT-TYPE (no object page) Unsigned32
SNMPv2-TC MacAddress RowPointer RowStatus TEXTUAL-CONVENTION (no object page) TimeInterval TimeStamp TruthValue
Net-SNMP examples using the rfc MIB directory Show commands

These commands use the standard Observium installation path and load the selected MIB variant before the RFC and Net-SNMP directories.

Translate the module identity
/usr/bin/snmptranslate -Pud -Ir -On -m 'IEEE8021X-PAE-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'IEEE8021X-PAE-MIB::ieee8021XPaeMIB'
Walk the MIB subtree
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'IEEE8021X-PAE-MIB' -M '/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'IEEE8021X-PAE-MIB::ieee8021XPaeMIB'
How SNMP, Net-SNMP, MIB paths, and variants work
Objects (173)
.1.3.111.2.802.1.1.15
.1.3.111.2.802.1.1.15.0
.1.3.111.2.802.1.1.15.1
.1.3.111.2.802.1.1.15.1.1
.1.3.111.2.802.1.1.15.1.1.1
.1.3.111.2.802.1.1.15.1.1.2
.1.3.111.2.802.1.1.15.1.1.3
.1.3.111.2.802.1.1.15.1.1.4
.1.3.111.2.802.1.1.15.1.1.5
.1.3.111.2.802.1.1.15.1.1.5.1
.1.3.111.2.802.1.1.15.1.1.5.1.1
.1.3.111.2.802.1.1.15.1.1.5.1.10
.1.3.111.2.802.1.1.15.1.1.5.1.11
.1.3.111.2.802.1.1.15.1.1.5.1.12
.1.3.111.2.802.1.1.15.1.1.5.1.13
.1.3.111.2.802.1.1.15.1.1.5.1.14
.1.3.111.2.802.1.1.15.1.1.5.1.15
.1.3.111.2.802.1.1.15.1.1.5.1.16
.1.3.111.2.802.1.1.15.1.1.5.1.17
.1.3.111.2.802.1.1.15.1.1.5.1.18
Enumeration
.1.3.111.2.802.1.1.15.1.1.5.1.2
.1.3.111.2.802.1.1.15.1.1.5.1.3
.1.3.111.2.802.1.1.15.1.1.5.1.4
.1.3.111.2.802.1.1.15.1.1.5.1.5
.1.3.111.2.802.1.1.15.1.1.5.1.6
Bits
.1.3.111.2.802.1.1.15.1.1.5.1.7
.1.3.111.2.802.1.1.15.1.1.5.1.8
.1.3.111.2.802.1.1.15.1.1.5.1.9
.1.3.111.2.802.1.1.15.1.1.6
.1.3.111.2.802.1.1.15.1.1.6.1
.1.3.111.2.802.1.1.15.1.1.6.1.1
Enumeration
.1.3.111.2.802.1.1.15.1.1.6.1.2
.1.3.111.2.802.1.1.15.1.1.6.1.3
.1.3.111.2.802.1.1.15.1.2
.1.3.111.2.802.1.1.15.1.2.1
.1.3.111.2.802.1.1.15.1.2.1.1
Enumeration
.1.3.111.2.802.1.1.15.1.2.1.1.1
.1.3.111.2.802.1.1.15.1.2.1.1.2
.1.3.111.2.802.1.1.15.1.2.2
.1.3.111.2.802.1.1.15.1.2.2.1
.1.3.111.2.802.1.1.15.1.2.2.1.1
OctetString
.1.3.111.2.802.1.1.15.1.2.2.1.10
.1.3.111.2.802.1.1.15.1.2.2.1.2
.1.3.111.2.802.1.1.15.1.2.2.1.3
.1.3.111.2.802.1.1.15.1.2.2.1.4
.1.3.111.2.802.1.1.15.1.2.2.1.5
OctetString
.1.3.111.2.802.1.1.15.1.2.2.1.6
.1.3.111.2.802.1.1.15.1.2.2.1.7
.1.3.111.2.802.1.1.15.1.2.2.1.8
Enumeration
.1.3.111.2.802.1.1.15.1.2.2.1.9
.1.3.111.2.802.1.1.15.1.2.3
.1.3.111.2.802.1.1.15.1.2.3.1
.1.3.111.2.802.1.1.15.1.2.3.1.1
.1.3.111.2.802.1.1.15.1.2.3.1.2
.1.3.111.2.802.1.1.15.1.2.3.1.3
.1.3.111.2.802.1.1.15.1.3
.1.3.111.2.802.1.1.15.1.3.1
.1.3.111.2.802.1.1.15.1.3.1.1
.1.3.111.2.802.1.1.15.1.3.1.1.1
.1.3.111.2.802.1.1.15.1.3.1.1.2
.1.3.111.2.802.1.1.15.1.3.1.1.3
.1.3.111.2.802.1.1.15.1.3.1.1.4
secondsUnsigned32
.1.3.111.2.802.1.1.15.1.3.1.1.5
secondsUnsigned32
.1.3.111.2.802.1.1.15.1.3.1.1.6
.1.3.111.2.802.1.1.15.1.3.1.1.7
.1.3.111.2.802.1.1.15.1.3.1.1.8
.1.3.111.2.802.1.1.15.1.4
.1.3.111.2.802.1.1.15.1.4.1
.1.3.111.2.802.1.1.15.1.4.1.1
.1.3.111.2.802.1.1.15.1.4.1.1.1
.1.3.111.2.802.1.1.15.1.4.1.1.2
.1.3.111.2.802.1.1.15.1.4.1.1.3
secondsUnsigned32
.1.3.111.2.802.1.1.15.1.4.1.1.4
.1.3.111.2.802.1.1.15.1.4.1.1.5
.1.3.111.2.802.1.1.15.1.4.1.1.6
.1.3.111.2.802.1.1.15.1.5
.1.3.111.2.802.1.1.15.1.5.1
.1.3.111.2.802.1.1.15.1.5.1.1
.1.3.111.2.802.1.1.15.1.5.1.1.1
.1.3.111.2.802.1.1.15.1.5.1.1.10
.1.3.111.2.802.1.1.15.1.5.1.1.11
.1.3.111.2.802.1.1.15.1.5.1.1.12
.1.3.111.2.802.1.1.15.1.5.1.1.13
.1.3.111.2.802.1.1.15.1.5.1.1.14
.1.3.111.2.802.1.1.15.1.5.1.1.15
.1.3.111.2.802.1.1.15.1.5.1.1.16
.1.3.111.2.802.1.1.15.1.5.1.1.17
.1.3.111.2.802.1.1.15.1.5.1.1.18
.1.3.111.2.802.1.1.15.1.5.1.1.19
.1.3.111.2.802.1.1.15.1.5.1.1.2
.1.3.111.2.802.1.1.15.1.5.1.1.3
.1.3.111.2.802.1.1.15.1.5.1.1.4
.1.3.111.2.802.1.1.15.1.5.1.1.5
.1.3.111.2.802.1.1.15.1.5.1.1.6
.1.3.111.2.802.1.1.15.1.5.1.1.7
.1.3.111.2.802.1.1.15.1.5.1.1.8
.1.3.111.2.802.1.1.15.1.5.1.1.9
.1.3.111.2.802.1.1.15.1.6
.1.3.111.2.802.1.1.15.1.6.1
.1.3.111.2.802.1.1.15.1.6.1.1
.1.3.111.2.802.1.1.15.1.6.1.1.1
.1.3.111.2.802.1.1.15.1.6.1.1.10
.1.3.111.2.802.1.1.15.1.6.1.1.11
Enumeration
.1.3.111.2.802.1.1.15.1.6.1.1.12
.1.3.111.2.802.1.1.15.1.6.1.1.13
.1.3.111.2.802.1.1.15.1.6.1.1.14
.1.3.111.2.802.1.1.15.1.6.1.1.15
.1.3.111.2.802.1.1.15.1.6.1.1.16
bytesInteger32
.1.3.111.2.802.1.1.15.1.6.1.1.17
.1.3.111.2.802.1.1.15.1.6.1.1.18
.1.3.111.2.802.1.1.15.1.6.1.1.19
.1.3.111.2.802.1.1.15.1.6.1.1.2
.1.3.111.2.802.1.1.15.1.6.1.1.20
.1.3.111.2.802.1.1.15.1.6.1.1.21
Integer32
.1.3.111.2.802.1.1.15.1.6.1.1.22
.1.3.111.2.802.1.1.15.1.6.1.1.23
Integer32
.1.3.111.2.802.1.1.15.1.6.1.1.24
.1.3.111.2.802.1.1.15.1.6.1.1.3
.1.3.111.2.802.1.1.15.1.6.1.1.4
.1.3.111.2.802.1.1.15.1.6.1.1.5
.1.3.111.2.802.1.1.15.1.6.1.1.6
.1.3.111.2.802.1.1.15.1.6.1.1.7
.1.3.111.2.802.1.1.15.1.6.1.1.8
.1.3.111.2.802.1.1.15.1.6.1.1.9
.1.3.111.2.802.1.1.15.1.6.2
.1.3.111.2.802.1.1.15.1.6.2.1
.1.3.111.2.802.1.1.15.1.6.2.1.1
.1.3.111.2.802.1.1.15.1.6.2.1.10
.1.3.111.2.802.1.1.15.1.6.2.1.2
.1.3.111.2.802.1.1.15.1.6.2.1.3
.1.3.111.2.802.1.1.15.1.6.2.1.4
.1.3.111.2.802.1.1.15.1.6.2.1.5
.1.3.111.2.802.1.1.15.1.6.2.1.6
Enumeration
.1.3.111.2.802.1.1.15.1.6.2.1.7
.1.3.111.2.802.1.1.15.1.6.2.1.8
.1.3.111.2.802.1.1.15.1.6.2.1.9
.1.3.111.2.802.1.1.15.1.6.3
.1.3.111.2.802.1.1.15.1.6.3.1
.1.3.111.2.802.1.1.15.1.6.3.1.1
.1.3.111.2.802.1.1.15.1.6.3.1.2
Enumeration
.1.3.111.2.802.1.1.15.1.6.3.1.3
.1.3.111.2.802.1.1.15.1.6.3.1.4
.1.3.111.2.802.1.1.15.1.7
.1.3.111.2.802.1.1.15.1.7.1
.1.3.111.2.802.1.1.15.1.7.1.1
.1.3.111.2.802.1.1.15.1.7.1.1.1
Enumeration
.1.3.111.2.802.1.1.15.1.7.1.1.2
Enumeration
.1.3.111.2.802.1.1.15.1.7.1.1.3
Enumeration
.1.3.111.2.802.1.1.15.1.7.1.1.4
.1.3.111.2.802.1.1.15.1.7.1.1.5
.1.3.111.2.802.1.1.15.1.7.1.1.6
.1.3.111.2.802.1.1.15.1.7.1.1.7
.1.3.111.2.802.1.1.15.1.7.1.1.8
.1.3.111.2.802.1.1.15.1.7.2
.1.3.111.2.802.1.1.15.1.7.2.1
.1.3.111.2.802.1.1.15.1.7.2.1.1
.1.3.111.2.802.1.1.15.1.7.2.1.2
.1.3.111.2.802.1.1.15.1.7.3
.1.3.111.2.802.1.1.15.1.7.3.1
.1.3.111.2.802.1.1.15.1.7.3.1.1
.1.3.111.2.802.1.1.15.1.7.3.1.2
.1.3.111.2.802.1.1.15.1.7.3.1.3
.1.3.111.2.802.1.1.15.1.7.3.1.4
.1.3.111.2.802.1.1.15.1.7.3.1.5
.1.3.111.2.802.1.1.15.1.7.3.1.6
.1.3.111.2.802.1.1.15.1.7.3.1.7
.1.3.111.2.802.1.1.15.1.7.4
.1.3.111.2.802.1.1.15.1.7.4.1
OctetString
.1.3.111.2.802.1.1.15.1.7.4.1.1
Unsigned32
.1.3.111.2.802.1.1.15.1.7.4.1.2
.1.3.111.2.802.1.1.15.2
.1.3.111.2.802.1.1.15.2.1
.1.3.111.2.802.1.1.15.2.2
Dependencies (8) 6 direct · 2 transitive Show tree and compile order Hide dependency details

Each imported module is resolved in the importing module's source directory first, then through the normal default-variant rules.

Dependency tree
Type Definitions (12)
Unsigned32 range: 1..2147483648
OctetString range: 1
OctetString range: 12
Unsigned32 range: 1..2147483648
OctetString range: 1..16
OctetString range: 0..16
OctetString range: 0..253
OctetString range: 1..100
Enumeration
noAccess(0)
remedialAccess(1)
restrictedAccess(2)
expectedAccess(3)
Bits
eap(0)
eapMka(1)
eapMkaMacSec(2)
mka(3)
mkaMacSec(4)
higherLayer(5)
higherLayerFallback(6)
vendorSpecific(7)
OctetString range: 0..100
Enumeration
noAccess(0)
fallbackAccess(1)
limitedAccess(2)
openAccess(3)
Conformance Groups (11)
A collection of objects providing system information for a PAE
system and a PAE port status and control information.
.1.3.111.2.802.1.1.15.2.2.1
A collection of objects providing information of a PAC in the
system.
.1.3.111.2.802.1.1.15.2.2.2
A collection of objects providing information of a Logon
Process in the system.
.1.3.111.2.802.1.1.15.2.2.3
A collection of objects providing configuration information of
an Authenticator in the system.
.1.3.111.2.802.1.1.15.2.2.4
A collection of objects providing configuration information of
a Supplicant in the system.
.1.3.111.2.802.1.1.15.2.2.5
A collection of objects providing counters and diagnostic
information for the EAPOL in the system.
.1.3.111.2.802.1.1.15.2.2.6
A collection of objects providing monitoring and controlling
information of a KaY MKA in the system.
.1.3.111.2.802.1.1.15.2.2.7
A collection of objects providing monitoring and controlling
information of an NID in the system.
.1.3.111.2.802.1.1.15.2.2.8
A collection of objects providing status information for
an Announcer in the system.
.1.3.111.2.802.1.1.15.2.2.9
A collection of objects providing status information for
a Listener in the system.
.1.3.111.2.802.1.1.15.2.2.10
A collection of objects providing monitoring and control
for MKA support of in-service upgrades.
.1.3.111.2.802.1.1.15.2.2.11
Compliance Statements (2)

OID .1.3.111.2.802.1.1.15.2.1.1
The compliance statement for device support of
Port Access Control.
Required groups
mandatory ieee8021XPaeSystemGroup
mandatory ieee8021XPaeLogonGroup
mandatory ieee8021XPaeEapolStatsGroup
optional ieee8021XPacGroup This group is mandatory for systems that does not support
the MACsec functions of the PAE.
optional ieee8021XPaeAuthConfigGroup This group is mandatory for systems that support the
Authenticator functions of the PAE.
optional ieee8021XPaeSuppConfigGroup This group is mandatory for systems that support the
Supplicant functions of the PAE.
optional ieee8021XPaeKaYMkaGroup This group is mandatory for systems that support the KaY
MKA functions of the PAE.
optional ieee8021XPaeNetworkIdentifierGroup This group is mandatory for systems that support the
network announcement functions of the PAE.
optional ieee8021XPaeAnnouncerGroup This group is mandatory for systems that support the
network announcement and the Announcer functions of the
PAE.
optional ieee8021XPaeListenerGroup This group is mandatory for systems that support
the network announcement and the Listener functions of the
PAE.
Object refinements
ObjectAccessSyntaxDescription
ieee8021XKayMacSecConfidentialityOffset readonly
read-write access is not required. This may be read-only.
ieee8021XNidUseEap readonly
read-create access is not required. This may be
read-only.
ieee8021XNidUnauthAllowed readonly
read-create access is not required. This may be
read-only.
ieee8021XNidUnsecuredAllowed readonly
read-create access is not required. This may be
read-only.
ieee8021XNidUnauthenticatedAccess readonly
read-create access is not required. This may be
read-only.
ieee8021XNidAccessCapabilities readonly
read-create access is not required. This may be
read-only.
ieee8021XNidKMD readonly
read-create access is not required. This may be
read-only.
ieee8021XNidRowStatus readonly
read-create access is not required. This may be
read-only.

OID .1.3.111.2.802.1.1.15.2.1.2
The compliance statement for device support of
Port Access Control as specified in 802.1X-2010
amended by 802.1Xbx.
Required groups
mandatory ieee8021XPaeSystemGroup
mandatory ieee8021XPaeLogonGroup
mandatory ieee8021XPaeEapolStatsGroup
optional ieee8021XPacGroup This group is mandatory for systems that does not support
the MACsec functions of the PAE.
optional ieee8021XPaeAuthConfigGroup This group is mandatory for systems that support the
Authenticator functions of the PAE.
optional ieee8021XPaeSuppConfigGroup This group is mandatory for systems that support the
Supplicant functions of the PAE.
optional ieee8021XPaeKaYMkaGroup This group is mandatory for systems that support the KaY
MKA functions of the PAE.
optional ieee8021XPaeNetworkIdentifierGroup This group is mandatory for systems that support the
network announcement functions of the PAE.
optional ieee8021XPaeAnnouncerGroup This group is mandatory for systems that support the
network announcement and the Announcer functions of the
PAE.
optional ieee8021XPaeListenerGroup This group is mandatory for systems that support
the network announcement and the Listener functions of the
PAE.
optional ieee8021XPaeKaYIsupgradeGroup This group is mandatory for systems that support KaY MKA
in-service upgrades.
Object refinements
ObjectAccessSyntaxDescription
ieee8021XKayMacSecConfidentialityOffset readonly
read-write access is not required. This may be read-only.
ieee8021XNidUseEap readonly
read-create access is not required. This may be
read-only.
ieee8021XNidUnauthAllowed readonly
read-create access is not required. This may be
read-only.
ieee8021XNidUnsecuredAllowed readonly
read-create access is not required. This may be
read-only.
ieee8021XNidUnauthenticatedAccess readonly
read-create access is not required. This may be
read-only.
ieee8021XNidAccessCapabilities readonly
read-create access is not required. This may be
read-only.
ieee8021XNidKMD readonly
read-create access is not required. This may be
read-only.
ieee8021XNidRowStatus readonly
read-create access is not required. This may be
read-only.