Juniper-IP-POLICY-MIB

MIB Reference — IPNetwork Monitor · Updated September 09, 2026

All MIBsJuniper-IP-POLICY-MIB

Organization: Juniper Networks, Inc.

Last Updated: 2007-01-25

Category: Technology: Routing, Vendor: Juniper

Description: Provides managed objects for IP route policy configuration, filter lists, and policy statistics on Juniper Networks E-series routers.

Start monitoring vendor-neutral, standards-based MIB, any SNMPv3-capable network device (SNMP engine identity/boot/clock status) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

What Is Juniper-IP-POLICY-MIB?

Juniper-IP-POLICY-MIB is a vendor-specific SNMP module for Juniper Networks E-series (ERX) routers, defining objects to configure and inspect IP route/access policies such as numbered and named IP access lists used for traffic filtering and route-map-style policy application. Each access-list entry specifies match criteria (source/destination address and mask, protocol) and an action, with RowStatus-controlled entries for dynamic creation and deletion via SNMP. Because it is a configuration/policy MIB rather than a hardware-sensor MIB, its monitoring value lies in verifying that route-filtering policy state matches intent -- confirming an access-list entry's RowStatus is active and its match criteria/action are correctly applied is essential to diagnosing traffic being unexpectedly permitted or denied. It depends on Juniper's broader enterprise MIB tree and general IP addressing conventions rather than a standard IETF policy MIB. It is deployed on Juniper E-series edge/aggregation routers used by service providers for subscriber and route-policy enforcement. Engineers can download the Juniper-IP-POLICY-MIB file directly to load it into their MIB browser.

IPNetwork Monitor allows you to monitor SNMP objects defined in Juniper-IP-POLICY-MIB. Use the built-in SNMP Monitoring Browser to explore available variables, view their current values and descriptions, and select the objects you want to monitor. You can then create SNMP monitors, configure thresholds, and receive alerts when monitored values change.

Supported Devices

  • Juniper Networks E-series (ERX) router

Monitoring Examples

An operator troubleshooting unexpected packet drops would inspect juniIpAccessListTable/juniIpAccessListEntry for a given juniIpAccessListId and juniIpAccessListElemId, checking juniIpAccessListAction against the configured juniIpAccessListSrc/SrcMask and juniIpAccessListDst/DstMask to confirm the filter matches the intended traffic. An entry stuck with juniIpAccessListRowStatus not "active" would explain why a policy rule isn't being enforced, while juniIpNamedAccessListTable would be checked when policies are referenced by name rather than numeric ID.

What Can Be Monitored

  • IP access list entry status
  • access list match criteria (src/dst/protocol)
  • access list action (permit/deny)
  • named access list configuration
  • policy rule row status
Imported Objects

From Juniper-MIBs

juniMibsMODULE-IDENTITY

From SNMPv2-CONF

MODULE-COMPLIANCE
OBJECT-GROUP

From SNMPv2-SMI

Counter32
Integer32
IpAddress
MODULE-IDENTITY
OBJECT-TYPE

From SNMPv2-TC

DisplayString
RowStatus
TEXTUAL-CONVENTION
TruthValue

How to Use in IPNetwork Monitor

Example using juniIpPrefixListHitCount OID:

Select a Juniper Networks E-series (ERX) router (IP access-list/route policy) as the target host to create a monitor — the SNMP service should be up and running on it. Click New Monitor, then check SNMP Custom on the Favorites tab, click Next, and confirm the host. On the next page, click Select... to open the built-in SNMP MIB Browser and type juniIpPrefixListHitCount into the Find box to locate it in the OID tree, selecting the specific row/instance you want to monitor since this is a table column, then select it and click OK. The number of hits for this entry. On the monitor's Main parameters page you can set the target's SNMP port (default 161), credentials, polling interval, and other settings — see the SNMP Monitor help for details. On the State conditions and Alerting tabs, configure when the monitor should change state and trigger an alert; since this is a Counter32-type OID, Value bounds is the most useful condition here — trigger an alert if the counter increases sharply between polls relative to its normal baseline, since an unexpected spike often reflects a real change in traffic or activity. Click Finish to create the monitor; you can adjust any parameter later.
OIDs

RFC description

Manages IP routing policies including access lists, prefix lists, and route maps for traffic engineering.

Start monitoring Juniper Networks E-series (ERX) router (IP access-list/route policy) with a free 30-day trial of IPNetwork Monitor. Import MIBs, browse SNMP OIDs, create custom SNMP monitors, configure alerts, and monitor any SNMP-enabled network device from a single console.

Download Juniper-IP-POLICY-MIB