CIENA-CES-TACACS-CLIENT-MIB :: cienaCesTacacsClientGlobalAuthenticationBadAuthenticators

MIB Reference — IPNetwork Monitor · Updated September 14, 2026

All MIBsCIENA-CES-TACACS-CLIENT-MIBcienaCesTacacsClientGlobalAuthenticationBadAuthenticators

cienaCesTacacsClientGlobalAuthenticationBadAuthenticators

Module: CIENA-CES-TACACS-CLIENT-MIB

OID (symbolic): CIENA-CES-TACACS-CLIENT-MIB::cienaCesTacacsClientGlobalAuthenticationBadAuthenticators

OID (numeric): 1.3.6.1.4.1.1271.2.3.2.1.1.3.1.1.6

Node type: OBJECT-TYPE

Type: Counter32

Access: read-only

Description: The number of TACACS Access-Response packets containing invalid authenticators or signature attributes received from this server.

What is cienaCesTacacsClientGlobalAuthenticationBadAuthenticators?

This counter increments when the switch receives an authentication response whose authenticator or signature doesn't match what it computed, which in TACACS+ almost always means the shared secret key configured on the switch doesn't match the one configured on the server. This is one of the most actionable counters in the whole table for an admin, since a nonzero and climbing value points straight at a misconfigured or recently-rotated shared secret rather than a network or credentials issue. For example, this counter jumping to match every login attempt right after someone updates the TACACS+ key on the server (but forgets the switch) is a textbook signature of this exact fault.

Examples

Walk all instances (SNMPv2c):

snmpwalk -v2c -c public <target> 1.3.6.1.4.1.1271.2.3.2.1.1.3.1.1.6
snmpwalk -v2c -c public <target> CIENA-CES-TACACS-CLIENT-MIB::cienaCesTacacsClientGlobalAuthenticationBadAuthenticators

Get a specific instance (index 1):

snmpget -v2c -c public <target> 1.3.6.1.4.1.1271.2.3.2.1.1.3.1.1.6.1
snmpget -v2c -c public <target> CIENA-CES-TACACS-CLIENT-MIB::cienaCesTacacsClientGlobalAuthenticationBadAuthenticators.1

Start monitoring Ciena CES (Carrier Ethernet Switch) platforms with a free 30-day trial of IPNetwork Monitor. Create custom SNMP monitor using the CIENA-CES-TACACS-CLIENT-MIB::cienaCesTacacsClientGlobalAuthenticationBadAuthenticators OID value, configure state conditions and alerts, and monitor any Ciena CES (Carrier Ethernet Switch) platforms from a single console.

OID Breakdown

Upper-level ancestors (9 from the standard OID tree / other modules)
Numeric OIDNameModule
1isoLANART-AGENT
1.3orgAirPair-MIB
1.3.6dodAirPair-MIB
1.3.6.1internetAirPair-MIB
1.3.6.1.4privateAirPair-MIB
1.3.6.1.4.1enterprisesAirPair-MIB
1.3.6.1.4.1.1271cienaCIENA-SMI
1.3.6.1.4.1.1271.2cienaCesCIENA-SMI
1.3.6.1.4.1.1271.2.3cienaCesStatisticsCIENA-SMI
Numeric OIDNameModule
1.3.6.1.4.1.1271.2.3.2cienaCesTacacsClientMIBCIENA-CES-TACACS-CLIENT-MIB
1.3.6.1.4.1.1271.2.3.2.1cienaCesTacacsClientMIBObjectsCIENA-CES-TACACS-CLIENT-MIB
1.3.6.1.4.1.1271.2.3.2.1.1cienaCesTacacsClientCIENA-CES-TACACS-CLIENT-MIB
1.3.6.1.4.1.1271.2.3.2.1.1.3cienaCesTacacsClientGlobalStatisticsCIENA-CES-TACACS-CLIENT-MIB
1.3.6.1.4.1.1271.2.3.2.1.1.3.1cienaCesTacacsClientGlobalStatisticsTableCIENA-CES-TACACS-CLIENT-MIB
1.3.6.1.4.1.1271.2.3.2.1.1.3.1.1cienaCesTacacsClientGlobalStatisticsEntryCIENA-CES-TACACS-CLIENT-MIB
1.3.6.1.4.1.1271.2.3.2.1.1.3.1.1.6cienaCesTacacsClientGlobalAuthenticationBadAuthenticatorsCIENA-CES-TACACS-CLIENT-MIB