ALCATEL-IND1-IPSEC-MIB

MIB Reference — IPNetwork Monitor · Updated September 14, 2026

All MIBsALCATEL-IND1-IPSEC-MIB

Organization: Alcatel - Architects Of An Internet World

Last Updated: 2010-07-20

Category: VPN and Security, Vendor: Alcatel-Lucent

Description: Alcatel OmniSwitch IPsec MIB for managing security associations, transform sets, and encryption policy configuration.

Start monitoring vendor-neutral, standards-based MIB, any SNMPv3-capable network device (SNMP engine identity/boot/clock status) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

What Is ALCATEL-IND1-IPSEC-MIB?

ALCATEL-IND1-IPSEC-MIB is an Alcatel-Lucent Enterprise proprietary MIB for the OmniSwitch "Birds Of Prey" product line, providing configuration and statistics for IPsec security associations, including manual security keys and per-protocol traffic counters. It exposes a security key table with current and new key values per key ID, and a statistics table tracking successful, policy-violation, missing-SA, and unknown-SPI packet counts per IPsec protocol. For device status/health monitoring it lets an administrator confirm IPsec traffic is being processed successfully versus dropped due to policy violations or missing security associations, which reveals misconfigured or expired IPsec tunnels. It implements management for the standard IPsec protocol suite (RFC 4301 etc.) though as a proprietary Alcatel MIB rather than the IETF IPsec-related MIBs. It is typically deployed on Alcatel-Lucent OmniSwitch devices used to secure inter-switch or WAN traffic with IPsec encryption. Engineers can download the ALCATEL-IND1-IPSEC-MIB file directly to load it into their MIB browser.

IPNetwork Monitor allows you to monitor SNMP objects defined in ALCATEL-IND1-IPSEC-MIB. Use the built-in SNMP Monitoring Browser to explore available variables, view their current values and descriptions, and select the objects you want to monitor. You can then create SNMP monitors, configure thresholds, and receive alerts when monitored values change.

Supported Devices

  • Alcatel-Lucent OmniSwitch (Birds Of Prey product line) with IPsec

Monitoring Examples

An operator would poll alaIPsecStatisticsTable/alaIPsecStatisticsEntry to check alaIPsecStatisticsInPolicyViolation and alaIPsecStatisticsInNoSA counters per alaIPsecStatisticsProtocol, and compare against alaIPsecStatisticsInSuccessful. A rising alaIPsecStatisticsInUnknownSPI or alaIPsecStatisticsInNoSA count would indicate that the IPsec peer is using a different or expired security association, pointing to a key mismatch (checked via alaIPsecSecurityKeyCurrent/alaIPsecSecurityKeyNew in alaIPsecSecurityKeyTable).

What Can Be Monitored

  • IPsec successful packet count
  • policy violation count
  • missing security association count
  • unknown SPI count
  • security key configuration per key ID
Imported Objects

From ALCATEL-IND1-BASE

softentIND1IPsecOBJECT-IDENTITY

From INET-ADDRESS-MIB

InetAddress
InetAddressType

From SNMP-FRAMEWORK-MIB

SnmpAdminString

From SNMPv2-CONF

MODULE-COMPLIANCE
OBJECT-GROUP

From SNMPv2-SMI

Counter32
Integer32
MODULE-IDENTITY
OBJECT-TYPE
Unsigned32

From SNMPv2-TC

RowStatus
TEXTUAL-CONVENTION
TruthValue

How to Use in IPNetwork Monitor

Example using alaIPsecErrorsInPolicyViolation OID:

Select an Alcatel-Lucent Enterprise OmniSwitch switch as the target host to create a monitor — the SNMP service should be up and running on it. Click New Monitor, then check SNMP Custom on the Favorites tab, click Next, and confirm the host. On the next page, click Select... to open the built-in SNMP MIB Browser and type alaIPsecErrorsInPolicyViolation into the Find box to locate it in the OID tree, selecting the specific row/instance you want to monitor since this is a table column, then select it and click OK. It reports the number of incoming packets that were dropped because of policy violations. On the monitor's Main parameters page you can set the target's SNMP port (default 161), credentials, polling interval, and other settings — see the SNMP Monitor help for details. On the State conditions and Alerting tabs, configure when the monitor should change state and trigger an alert; since this is a Counter32-type OID, Value bounds is the most useful condition here — trigger an alert if the counter increases between polls, since a rising count of errors, failures, or discards often points to a real underlying problem. Click Finish to create the monitor; you can adjust any parameter later.
OIDs

RFC description

Alcatel-Lucent IPSec VPN tunnel management MIB for monitoring encryption and key exchange parameters.

Start monitoring Alcatel-Lucent Enterprise OmniSwitch switches with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

Download ALCATEL-IND1-IPSEC-MIB