ACC-IPSEC

MIB Reference — IPNetwork Monitor · Updated September 09, 2026

All MIBsACC-IPSEC

Category: VPN and Security, Vendor: ACC/Ericsson

Description: Manages IPsec VPN tunnel configuration on ACC/Ericsson routers, including IKE policy, transform sets, and security association parameters.

Start monitoring vendor-neutral, standards-based MIB, any SNMPv3-capable network device (SNMP engine identity/boot/clock status) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

What Is ACC-IPSEC?

ACC-IPSEC is a private MIB from ACC Corp (later acquired into Ericsson) for managing IPsec VPN tunnels on ACC/Ericsson routers, covering IKE policy, transform sets, and security-association parameters. It exposes both configuration objects (message/debug logging level, number of security associations, allowed authentication methods, encryption key length) and performance/fault counters (packets processed OK inbound and outbound, illegal SPIs, illegal protocols, unsupported AH lengths and options, undersized packets). Its monitoring value is squarely software/protocol-plane health: rising OK-packet counters confirm the IPsec engine is actively processing tunnel traffic, while error counters such as illegal SPIs, illegal protocols, and unsupported AH lengths surface tunnel misconfiguration, peer interoperability problems, or potential attack/replay traffic. As a private MIB it does not formally import a standard IPsec MIB, though it implements concepts standardized in the IPsec/IKE RFCs (ESP, AH, IKE). It is deployed on ACC/Ericsson router and VPN gateway platforms terminating site-to-site or remote-access IPsec tunnels. Engineers can download the ACC-IPSEC file directly to load it into their MIB browser.

IPNetwork Monitor allows you to monitor SNMP objects defined in ACC-IPSEC. Use the built-in SNMP Monitoring Browser to explore available variables, view their current values and descriptions, and select the objects you want to monitor. You can then create SNMP monitors, configure thresholds, and receive alerts when monitored values change.

Supported Devices

  • ACC/Ericsson routers and VPN gateways

Monitoring Examples

An admin polls accIpsecStatsInOkPackets and accIpsecStatsOutOkPackets to confirm a tunnel is actively passing traffic, and watches accIpsecStatsIllegalInSpis or accIpsecStatsUnsuppAHLens for a rising count, which would indicate a peer misconfiguration, mismatched security association, or a possible spoofing attempt. accIpsecConfigSANumber and accIpsecConfigEncryptionKeyLength let the operator confirm the configured SA count and cipher strength match policy ahead of a security audit.

What Can Be Monitored

  • IPsec tunnel packet counters (in/out)
  • IKE authentication method configuration
  • encryption key length
  • illegal SPI / illegal protocol error counts
  • unsupported AH length/option errors
  • malformed/undersized packet counts
Imported Objects

From ACC-MIB

DisplayString
IfIndex
RowStatus
SmdsAddress
accBRGOBJECT-IDENTITY

From ACC-SYSTEM

accTrapLogSeqNumOBJECT-TYPE

From RFC-1215

TRAP-TYPE

From RFC1155-SMI

Counter
Gauge
IpAddress
OBJECT-TYPE
TimeTicks
OIDs

RFC description

Manages IPSec encryption and authentication configuration including SAs and packet statistics.

Start monitoring ACC/Ericsson WAN access routers (legacy) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

Download ACC-IPSEC