IEEE8021-SECY-MIB :: secyRxSAStatsNotValidPkts

MIB Reference — IPNetwork Monitor

All MIBsIEEE8021-SECY-MIBsecyRxSAStatsNotValidPkts

secyRxSAStatsNotValidPkts

Module: IEEE8021-SECY-MIB

OID (symbolic): IEEE8021-SECY-MIB::secyRxSAStatsNotValidPkts

OID (numeric): 1.0.8802.1.1.3.1.2.3.1.13

Node type: OBJECT-TYPE

Type: Counter32

Access: read-only

Description:

For this SA, the number discarded packets with the condition that the packets are not valid and one of the following conditions are true: either secyValidateFrames in strict mode or the packets encrypted.

What is secyRxSAStatsNotValidPkts?

This counter tracks packets received on a MAC Security (MACsec) Security Association that are discarded because they fail validation checks, either due to being encrypted when they shouldn't be or due to strict frame validation policies. High counts indicate security policy violations or tampering attempts on the MACsec-protected link. Network security administrators monitor this counter to detect potential attacks and verify MACsec enforcement is working correctly.

Examples

Walk all instances (SNMPv2c):

snmpwalk -v2c -c public <target> 1.0.8802.1.1.3.1.2.3.1.13
snmpwalk -v2c -c public <target> IEEE8021-SECY-MIB::secyRxSAStatsNotValidPkts

Get a specific instance (index 1):

snmpget -v2c -c public <target> 1.0.8802.1.1.3.1.2.3.1.13.1
snmpget -v2c -c public <target> IEEE8021-SECY-MIB::secyRxSAStatsNotValidPkts.1

OID Breakdown

Numeric OIDNameModule
1isoLANART-AGENT
1.0stdSTART-MIB
1.0.8802iso8802START-MIB
1.0.8802.1ieee802dot1START-MIB
1.0.8802.1.1ieee802dot1mibsSTART-MIB
1.0.8802.1.1.3ieee8021SecyMIBIEEE8021-SECY-MIB
1.0.8802.1.1.3.1secyMIBObjectsIEEE8021-SECY-MIB
1.0.8802.1.1.3.1.2secyStatsMIBObjectsIEEE8021-SECY-MIB
1.0.8802.1.1.3.1.2.3secyRxSAStatsTableIEEE8021-SECY-MIB
1.0.8802.1.1.3.1.2.3.1secyRxSAStatsEntryIEEE8021-SECY-MIB
1.0.8802.1.1.3.1.2.3.1.13secyRxSAStatsNotValidPktsIEEE8021-SECY-MIB