DOCS-BPI-MIB

MIB Reference — IPNetwork Monitor · Updated September 14, 2026

All MIBsDOCS-BPI-MIB

Organization: IETF IPCDN Working Group

Last Updated: 2001-03-13

Category: DOCSIS and Cable, Network Interfaces

Description: Defines managed objects for the DOCSIS 1.0 Baseline Privacy Interface (BPI) on cable modems and cable modem termination systems.

IPNetwork Monitor uses several OIDs from this MIB in network discovery and polling the applicable devices. Start monitoring DOCS-BPI-MIB with a free 30-day trial of IPNetwork Monitor.

What Is DOCS-BPI-MIB?

DOCS-BPI-MIB is the CableLabs/IETF standard MIB for DOCSIS 1.0 Baseline Privacy Interface (BPI), the encryption/authentication mechanism used between cable modems (CMs) and cable modem termination systems (CMTSs); implementing it is a mandatory prerequisite for DOCSIS 1.0 certification, making it a vendor-neutral cable-industry standard rather than a proprietary module. It exposes per-cable-modem BPI configuration and state in docsBpiCmBaseTable, including whether privacy is enabled, the modem's public key, and detailed authentication state such as docsBpiCmAuthState, key sequence number, and expiration/grace timers. For monitoring, this is fundamentally a security/software-state MIB: docsBpiCmAuthState reveals whether a modem's authorization with the CMTS has succeeded, is pending, or has failed/expired, and docsBpiCmAuthExpires/docsBpiCmTEKGraceTime let an operator track when re-authentication or key renewal is due, which surfaces as service-interruption risk if authentication lapses. It depends on the broader DOCSIS cable device framework for general modem/CMTS identity and registration context that BPI authentication builds on top of. It is deployed by cable operators (MSOs) managing HFC networks to ensure only authorized, encrypted cable modems remain in service. Engineers implementing or auditing this functionality typically reference the DOCS-BPI-MIB RFC/standard documentation for the authoritative specification.

IPNetwork Monitor allows you to monitor SNMP objects defined in DOCS-BPI-MIB. Use the built-in SNMP Monitoring Browser to explore available variables, view their current values and descriptions, and select the objects you want to monitor. You can then create SNMP monitors, configure thresholds, and receive alerts when monitored values change.

Supported Devices

  • cable modem (CM)
  • cable modem termination system (CMTS)
  • vendor-neutral, standards-based DOCSIS MIB

Monitoring Examples

An operator polling docsBpiCmBaseTable/docsBpiCmBaseEntry can check docsBpiCmAuthState and docsBpiCmAuthKeySequenceNumber to confirm a modem is authorized and its key sequence is current, and watch docsBpiCmAuthExpires to anticipate an upcoming re-authorization cycle. If docsBpiCmAuthState shows a modem stuck in an unauthorized or reject state while docsBpiCmPrivacyEnable is set, that flags an authentication failure likely to knock the modem's data service offline. docsBpiCmAuthReset lets an admin force re-authentication to recover a modem stuck in that state, and docsBpiCmAuthWaitTimeout/docsBpiCmAuthGraceTime govern how long the CMTS waits before escalating.

What Can Be Monitored

  • BPI privacy enable status
  • cable modem authorization state
  • auth key sequence number and expiration
  • TEK grace time
  • auth wait timeout
Imported Objects

From DOCS-IF-MIB

docsIfCmServiceIdOBJECT-TYPE
docsIfCmtsServiceIdOBJECT-TYPE
docsIfMibMODULE-IDENTITY

From IF-MIB

ifIndexOBJECT-TYPE

From SNMPv2-CONF

MODULE-COMPLIANCE
OBJECT-GROUP

From SNMPv2-SMI

Counter32
Integer32
IpAddress
MODULE-IDENTITY
OBJECT-TYPE

From SNMPv2-TC

DateAndTime
DisplayString
MacAddress
RowStatus
TruthValue

How to Use in IPNetwork Monitor

Example using docsBpiCmAuthRequests OID:

Select a Cable modem/CMTS implementing DOCSIS 1.0 Baseline Privacy (vendor-neutral, CableLabs/IETF standard) as the target host to create a monitor — the SNMP service should be up and running on it. Click New Monitor, then check SNMP Custom on the Favorites tab, click Next, and confirm the host. On the next page, click Select... to open the built-in SNMP MIB Browser and type docsBpiCmAuthRequests into the Find box to locate it in the OID tree, selecting the specific row/instance you want to monitor since this is a table column, then select it and click OK. The value of this object is the count of times the CM has transmitted an Authorization Request message. On the monitor's Main parameters page you can set the target's SNMP port (default 161), credentials, polling interval, and other settings — see the SNMP Monitor help for details. On the State conditions and Alerting tabs, configure when the monitor should change state and trigger an alert; since this is a Counter32-type OID, Value bounds is the most useful condition here — trigger an alert if the counter increases sharply between polls relative to its normal baseline, since an unexpected spike often reflects a real change in traffic or activity. Click Finish to create the monitor; you can adjust any parameter later.
OIDs

RFC description

DOCSIS Baseline Privacy Interface MIB for cable modems and CMTSs managing encryption and security.

Start monitoring Cable modem/CMTS implementing DOCSIS 1.0 Baseline Privacy (vendor-neutral, CableLabs/IETF standard) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

Download DOCS-BPI-MIB