Home/Catalog/JUNIPER-PAE-EXTENSION-MIB

JUNIPER-PAE-EXTENSION-MIB

Updated Jun 7, 2007
AI MIB Summary

The JUNIPER-PAE-EXTENSION-MIB monitors IEEE 802.1x Port Access Entity (PAE) states and Static MAC Authentication configurations on Juniper Networks devices. It provides specific counters and status indicators for managing static MAC-based authentication sessions and associated port access control events.

This is Juniper Networks' implementation of enterprise specific MIB for IEEE802.1x PAE Extension MIB. This MIB Module supports Static MAC Authetication.
Main OID:
jnxPaeExtensionMIB.1.3.6.1.4.1.2636.3.40.1.3.1
26
Objects
Active
Status
5
Dependencies

Imported Objects

Objects

26 total
Object Name
jnxPaeExtensionMIBThis is Juniper Networks' implementation of enterprise specific MIB for IEEE802.1x PAE Extension MIB. This MIB Module supports Static MAC Authetication.
MODULE-IDENTITY
.1.3.6.1.4.1.2636.3.40.1.3.1
jnxPaeExtensionMIBNotification
OBJECT IDENTIFIER
.1.3.6.1.4.1.2636.3.40.1.3.1.0
jnxPaeExtensionMIBObjects
OBJECT IDENTIFIER
.1.3.6.1.4.1.2636.3.40.1.3.1.1
jnxAuthProfileNameThe Authentication Profile Name is given by this object. The access profile with this name is already defined with the radius server ip address, port and secret key.ro
DisplayString
.1.3.6.1.4.1.2636.3.40.1.3.1.1.1
jnxPaeAuthConfigTableA table that contains the configuration objects for the Authenticator PAE associated with each port.
SEQUENCE OF JnxPaeAuthConfigEntry
.1.3.6.1.4.1.2636.3.40.1.3.1.1.2
jnxPaeAuthConfigEntryAn Entry appears in the table for each PAE Authenticator Port.
JnxPaeAuthConfigEntry
.1.3.6.1.4.1.2636.3.40.1.3.1.1.2.1
jnxPaeAuthConfigMacAuthStatusThis object specifies whether MAC Authentication is enabled on the specified PAE port.ro
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.2636.3.40.1.3.1.1.2.1.1
jnxPaeAuthConfigGuestVlanThis object specifies the Vlan to which the unauthenticated client moves to. The Vlan should exist on the switch and is user cofigurable per port.ro
DisplayString
.1.3.6.1.4.1.2636.3.40.1.3.1.1.2.1.2
jnxPaeAuthConfigNumberRetriesThis sets the number of failed authentications on an interface before invoking the quiet period, during which no one can be authenticated on that interface.ro
Unsigned32
.1.3.6.1.4.1.2636.3.40.1.3.1.1.2.1.3
jnxPaeAuthConfigSupplicantModeThis object specifies the supplicant mode of MAC Authentication enabled on the specified PAE port.ro
Enumeration
.1.3.6.1.4.1.2636.3.40.1.3.1.1.2.1.4
jnxPaeAuthConfigMacRadiusThis object specifies the Mac-Radius mode of MAC Authentication enabled on the specified PAE port.ro
Enumeration
.1.3.6.1.4.1.2636.3.40.1.3.1.1.2.1.5
jnxPaeAuthConfigMacRadiusRestrictThis object specifies the Mac-Radius mode of MAC Authentication enabled on the specified PAE port.ro
Enumeration
.1.3.6.1.4.1.2636.3.40.1.3.1.1.2.1.6
jnxPaeAuthConfigReAuthenticateThis object specifies Re-Authentication is enabled or not on the specified PAE port.ro
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.2636.3.40.1.3.1.1.2.1.7
jnxPaeAuthConfigQuietPeriodThis object specifies Time to wait after an authentication failure on the specified PAE port.ro
Unsigned32 UNITS "seconds"
.1.3.6.1.4.1.2636.3.40.1.3.1.1.2.1.8
jnxPaeAuthConfigMaxRequestsThis object specifies Number of EAPOL RequestIDs to send before timing out on the specified PAE port.ro
Unsigned32
.1.3.6.1.4.1.2636.3.40.1.3.1.1.2.1.9
jnxPaeAuthConfigClientsRejectedThis object specifies VLAN name or 802.1q tag for authentication rejected clients on the specified PAE port.ro
DisplayString
.1.3.6.1.4.1.2636.3.40.1.3.1.1.2.1.10
jnxPaeAuthConfigServerTimeoutThis object specifies Authentication server timeout interval on the specified PAE port.ro
Unsigned32
.1.3.6.1.4.1.2636.3.40.1.3.1.1.2.1.11
jnxPaeAuthConfigSuppTimeoutThis object specifies Time to wait for a client response on the specified PAE port.ro
Unsigned32
.1.3.6.1.4.1.2636.3.40.1.3.1.1.2.1.12
jnxPaeAuthConfigTransmitPeriodThis object specifies Interval before retransmitting initial EAPOL PDUs on the specified PAE port.ro
Unsigned32
.1.3.6.1.4.1.2636.3.40.1.3.1.1.2.1.13
jnxStaticMacAuthBypassTableThe static MAC list provides an authentication bypass mechanism for clients connected to a port. The MAC address of the clients is first checked in a local database which is a user specified static list of MAC addresses and if a match is found, the client is assumed to be successfully authenticated and the port is opened up for it. No further authentication is done for that client. The VLAN that the client should be moved to or the interfaces on which the MAC address should be allowed from can also be optionally stored in this table. This will enable devices like printers, which do not support 802.1X, to be connected on 802.1X enabled ports. If a match is not found in the static list, 802.1X or MAC authentication is initiated. This table contains the static list of MAC addresses specified by the user.
SEQUENCE OF JnxStaticMacAuthBypassEntry
.1.3.6.1.4.1.2636.3.40.1.3.1.1.3
jnxStaticMacAuthBypassEntryA table entry specifies the MacAddress of the client and the Vlan the client is to be moved.
JnxStaticMacAuthBypassEntry
.1.3.6.1.4.1.2636.3.40.1.3.1.1.3.1
jnxStaticMacAddressThis object specifies the MAC Address of the client connected to the particular PAE port.
MacAddress (SNMPv2-TC)
.1.3.6.1.4.1.2636.3.40.1.3.1.1.3.1.1
jnxStaticMacVlanNameThis object specifies the Vlan to which the client is assigned to.ro
DisplayString
.1.3.6.1.4.1.2636.3.40.1.3.1.1.3.1.2
jnxStaticMacAuthBypassIfTableThis table provides the list of interfaces on which each MAC Address in the jnxStaticMacAuthBypassTable can be allowed from. If it is detected on any other interface, the authentication is not bypassed.
SEQUENCE OF JnxStaticMacAuthBypassIfEntry
.1.3.6.1.4.1.2636.3.40.1.3.1.1.4
jnxStaticMacAuthBypassIfEntryFor each MAC Address in the jnxStaticMacAuthBypassTable an entry is present in this table.It specifies the list of interfaces from which the specified MAC Address is allowed from.
JnxStaticMacAuthBypassIfEntry
.1.3.6.1.4.1.2636.3.40.1.3.1.1.4.1
jnxStaticMacIfIndexThis object specifies the list of interfaces from which the MAC Address is allowed from. If it is detected on any other interface, the authentication is bypassed.ro
InterfaceIndex (IF-MIB)
.1.3.6.1.4.1.2636.3.40.1.3.1.1.4.1.1
JUNIPER-PAE-EXTENSION-MIB - SNMP MIB Reference | MIBs Explorer