All MIBs › CIENA-CES-RADIUS-CLIENT-MIB › cienaCesRadiusDot1xAuthBadAuthenticators
cienaCesRadiusDot1xAuthBadAuthenticators
Module: CIENA-CES-RADIUS-CLIENT-MIB
OID (symbolic): CIENA-CES-RADIUS-CLIENT-MIB::cienaCesRadiusDot1xAuthBadAuthenticators
OID (numeric): 1.3.6.1.4.1.1271.2.3.3.1.1.4.2.1.17
Node type: OBJECT-TYPE
Type: Counter32
Access: read-only
Description: The number of RADIUS Access-Response packets containing invalid authenticators or signature attributes received from this server.
What is cienaCesRadiusDot1xAuthBadAuthenticators?
This counts RADIUS responses from this server whose authenticator or message-signature attribute failed validation, the specific symptom of a shared-secret mismatch between the switch and the server. Because this is checked against the shared secret configured in the AuthKey or AuthSecret objects, this counter climbing on just one server entry while others stay at zero is close to conclusive evidence that this particular server's secret was rotated on one side but not the other. For example, if a security team rotates the RADIUS secret on the AAA server for compliance but the switch team doesn't push the matching update, every 802.1X login against this server will increment this counter even though the server is reachable and responding.
Examples
Walk all instances (SNMPv2c):
snmpwalk -v2c -c public <target> 1.3.6.1.4.1.1271.2.3.3.1.1.4.2.1.17 snmpwalk -v2c -c public <target> CIENA-CES-RADIUS-CLIENT-MIB::cienaCesRadiusDot1xAuthBadAuthenticators
Get a specific instance (index 1):
snmpget -v2c -c public <target> 1.3.6.1.4.1.1271.2.3.3.1.1.4.2.1.17.1 snmpget -v2c -c public <target> CIENA-CES-RADIUS-CLIENT-MIB::cienaCesRadiusDot1xAuthBadAuthenticators.1
Start monitoring Ciena CES (Carrier Ethernet Switch) platforms with a free 30-day trial of IPNetwork Monitor. Create custom SNMP monitor using the CIENA-CES-RADIUS-CLIENT-MIB::cienaCesRadiusDot1xAuthBadAuthenticators OID value, configure state conditions and alerts, and monitor any Ciena CES (Carrier Ethernet Switch) platforms from a single console.
OID Breakdown
Upper-level ancestors (9 from the standard OID tree / other modules)
| Numeric OID | Name | Module |
|---|---|---|
| 1 | iso | LANART-AGENT |
| 1.3 | org | AirPair-MIB |
| 1.3.6 | dod | AirPair-MIB |
| 1.3.6.1 | internet | AirPair-MIB |
| 1.3.6.1.4 | private | AirPair-MIB |
| 1.3.6.1.4.1 | enterprises | AirPair-MIB |
| 1.3.6.1.4.1.1271 | ciena | CIENA-SMI |
| 1.3.6.1.4.1.1271.2 | cienaCes | CIENA-SMI |
| 1.3.6.1.4.1.1271.2.3 | cienaCesStatistics | CIENA-SMI |
| Numeric OID | Name | Module |
|---|---|---|
| 1.3.6.1.4.1.1271.2.3.3 | cienaCesRadiusClientMIB | CIENA-CES-RADIUS-CLIENT-MIB |
| 1.3.6.1.4.1.1271.2.3.3.1 | cienaCesRadiusClientMIBObjects | CIENA-CES-RADIUS-CLIENT-MIB |
| 1.3.6.1.4.1.1271.2.3.3.1.1 | cienaCesRadiusClient | CIENA-CES-RADIUS-CLIENT-MIB |
| 1.3.6.1.4.1.1271.2.3.3.1.1.4 | cienaCesRadiusDot1xAuth | CIENA-CES-RADIUS-CLIENT-MIB |
| 1.3.6.1.4.1.1271.2.3.3.1.1.4.2 | cienaCesRadiusDot1xAuthTable | CIENA-CES-RADIUS-CLIENT-MIB |
| 1.3.6.1.4.1.1271.2.3.3.1.1.4.2.1 | cienaCesRadiusDot1xAuthEntry | CIENA-CES-RADIUS-CLIENT-MIB |
| 1.3.6.1.4.1.1271.2.3.3.1.1.4.2.1.17 | cienaCesRadiusDot1xAuthBadAuthenticators | CIENA-CES-RADIUS-CLIENT-MIB |