One document matched: draft-dhody-pce-pcep-pathkey-mib-04.xml


<?xml version="1.0" encoding="us-ascii"?>
<!DOCTYPE rfc SYSTEM "rfc2629.dtd"[]>
<?rfc toc="yes" ?>
<?rfc tocompact="yes"?>
<?rfc tocdepth="4"?>
<?rfc tocindent="yes"?>
<?rfc symrefs="yes" ?>
<?rfc sortrefs="no"?>
<?rfc rfcedstyle="yes"?>
<?rfc subcompact="no"?>
<?rfc compact="yes" ?>
<?rfc iprnotified="Yes" ?>
<?rfc strict="no" ?>
<rfc ipr="trust200902" category="std" docName="draft-dhody-pce-pcep-pathkey-mib-04" obsoletes="" updates="" submissionType="IETF" xml:lang="en">
  <front>
    <title abbrev="PCE-PCEP-PATHKEY-DRAFT-MIB"> Management Information Base (MIB) for the PCE Communications Protocol (PCEP) for Path-Key based Confidentiality in Inter-Domain Path Computation.</title>
    <author initials="D" surname="Dhody" fullname="Dhruv Dhody">
      <organization>Huawei Technology</organization>
      <address>
        <postal>
          <street>Leela Palace</street>
          <city>Bangalore</city>
          <region>Karnataka</region>
          <code>560008</code>
          <country>INDIA</country>
        </postal>
        <email>dhruv.dhody@huawei.com</email>
      </address>
    </author>
    <author initials="U" surname="Palle" fullname="Udayasree Palle">
      <organization>Huawei Technology</organization>
      <address>
        <postal>
          <street>Leela Palace</street>
          <city>Bangalore</city>
          <region>Karnataka</region>
          <code>560008</code>
          <country>INDIA</country>
        </postal>
        <email>udayasree.palle@huawei.com</email>
      </address>
    </author>
    <author initials="Q" surname="Zhao" fullname="Quintin Zhao">
      <organization>Huawei Technology</organization>
      <address>
        <postal>
          <street>125 Nagog Technology Park</street>
          <city>Acton</city>
          <region>MA</region>
          <code>01719</code>
          <country>US</country>
        </postal>
        <email>quintin.zhao@huawei.com</email>
      </address>
    </author>
    <author initials="D" surname="King" fullname="Daniel King">
      <organization>Old Dog Consulting</organization>
      <address>
        <postal>
          <street></street>
          <city></city>
          <region></region>
          <code></code>
          <country>UK</country>
        </postal>
        <email>daniel@olddog.co.uk</email>
      </address>
    </author>
    <date month="August" year="2012" />
    <area>Routing</area>
    <workgroup>PCE Working Group</workgroup>
    <abstract>
      <t>This memo defines an experimental portion of the Management Information Base for use with network management protocols in the Internet community.  In particular, it describes managed objects for modeling of the Path Computation Element communication Protocol (PCEP)for communications between a Path Computation Client (PCC)and a Path Computation Element (PCE), or between two PCEs when path-key-based confidentiality in inter-domain path computation is requested.</t>
    </abstract>
  </front>
  <middle>
    <section title="Introduction" toc="default">
      <t>The Path Computation Element (PCE) defined in <xref target="RFC4655"/> is an entity that is capable of computing a network path or route based on a network graph, and applying computational constraints.  A Path Computation Client (PCC) may make requests to a PCE for paths to be computed.</t>
      <t>The PCE communication protocol (PCEP) is designed as a communication protocol between PCCs and PCEs for point-to-point (P2P) path computations and is defined in <xref target="RFC5440"/>.</t>
      <t>If confidentiality is required between domains, Path-Key-Based mechanism is described in <xref target="RFC5520"/>. For preserving the confidentiality of the "Confidential Path Segment (CPS)"; the PCE returns a path containing a loose hop in place of the segment that must be kept confidential.</t>
      <t><xref target="PCE-PCEP-DRAFT-MIB"/> defines a portion of the Management Information Base (MIB) for use with network management protocols in the Internet community for P2P path computations.</t>
      <t>This memo defines an experimental portion of the Management Information Base for use with network management protocols in the Internet community.  In particular, it describes managed objects for modeling of Path Computation Element communication Protocol (PCEP)<xref target="RFC5440"/> for communications between a Path Computation Client (PCC)and a Path Computation Element (PCE), or between two PCEs in path-key-based confidentiality in inter-domain path computations.</t>
      <t>Some objects maybe moved to <xref target="PCE-PCEP-DRAFT-MIB"/> after consensus with the authors and working group, these are defined in <xref target="SEC_OBJ_INC"/>.</t>
    </section>
    <section title="Terminology" toc="default">
      <t>The following terminology is used in this document.</t>
      <t>
        <list style="hanging">
          <t hangText="CPS:">Confidential Path Segment.  A segment of a path that contains nodes and links that the AS policy requires to not be disclosed outside the AS.</t>
          <t hangText="Domain:">Any collection of network elements within a common sphere of address management or path computational responsibility.  Examples of domains include Interior Gateway Protocol (IGP) areas and Autonomous Systems (ASs).</t>
          <t hangText="IGP:">Interior Gateway Protocol.  Either of the two routing protocols, Open Shortest Path First (OSPF) or Intermediate System to Intermediate System (IS-IS).</t>
          <t hangText="Path-Key:">A Key used to replace or retreieve the Confidential Path Segment (CPS).</t>
          <t hangText="PCC:">Path Computation Client: any client application requesting a path computation to be performed by a Path Computation Element.</t>
          <t hangText="PCE:">Path Computation Element.  An entity (component, application, or network node) that is capable of computing a network path or route based on a network graph and applying computational constraints.</t>
          <t hangText="P2P:">Point-to-Point</t>
        </list>
      </t>
    </section>
    <section title="The Internet-Standard Management Framework" toc="default">
      <t>For a detailed overview of the documents that describe the current Internet-Standard Management Framework, please refer to section 7 of <xref target="RFC3410"/>.</t>
      <t>Managed objects are accessed via a virtual information store, termed the Management Information Base or MIB.  MIB objects are generally accessed through the Simple Network Management Protocol (SNMP). Objects in the MIB are defined using the mechanisms defined in the Structure of Management Information (SMI).  This memo specifies a MIB module that is compliant to the SMIv2, which is described in STD 58, RFC 2578 <xref target="RFC2578"/> and STD 58, RFC 2580 <xref target="RFC2580"/>.</t>
    </section>
    <section title="PCEP Pathkey MIB Module Architecture" toc="default">
      <t>The PCEP Pathkey MIB will contain the following information:</t>
      <t>
        <list style="symbols">
          <t>PCEP Pathkey counters, timers and configurations</t>
          <t>PCEP Pathkey table of CPS related information.</t>
        </list>
      </t>
    </section>
    <section title="Example of the PCEP PathKey MIB module usage" toc="default">
      <t>In this section we provide an example (pcePcepPathKeyTable 1) of using the MIB objects described in <xref target="SEC_OBJ_DEF"/> to monitor.  While this example is not meant to illustrate every permutation of the MIB, it is intended as an aid to understanding some of the key concepts.  It is meant to be read after going through the MIB itself.</t>
      <t>
        <figure title="" suppress-title="false" align="left" alt="" width="" height="">
          <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[   pcePcepPathKeyTable 1 of the PCE-PCEP-PATHKEY-DRAFT-MIB module :
   {
               pcePcepPathKey                 (4512),
               pcePcepPathKeyCPSIndex         (1),
               pcePcepPathKeyRequestSource    (x.x.x.x),
               pcePcepPathKeyRequestId        (10),
               pcePcepPathKeyRetrieved        (1),
               pcePcepPathKeyRetrieveSource   (y.y.y.y),
               pcePcepPathKeyDiscardTime      (10),
               pcePcepPathKeyReuseTime        (30)
   }

   pcePcepPathKeyHopTable 1 of the PCE-PCEP-PATHKEY-DRAFT-MIB module :
   {
               pcePcepPathKeyHopListIndex     1,
               pcePcepPathKeyHopIndex         1,
               pcePcepPathKeyHopAddrType      ipv4 (1),
               pcePcepPathKeyHopIpAddr        "192.168.100.1",
               pcePcepPathKeyHopIpPrefixLen   32,
               pcePcepPathKeyHopType          strict (2)
   }
   {
               pcePcepPathKeyHopListIndex     1,
               pcePcepPathKeyHopIndex         2,
               pcePcepPathKeyHopAddrType      ipv4 (1),
               pcePcepPathKeyHopIpAddr        "192.168.100.2",
               pcePcepPathKeyHopIpPrefixLen   32,
               pcePcepPathKeyHopType          strict (2)
   }]]></artwork>
        </figure>
      </t>
    </section>
    <section title="Object definitions" toc="default" anchor="SEC_OBJ_DEF">
      <section title="PCE-PCEP-PATHKEY-DRAFT-MIB" toc="default">
        <t>This MIB module makes references to the following documents.</t>
        <t><xref target="RFC2578"/>, <xref target="RFC2580"/>, <xref target="RFC3411"/>, <xref target="RFC2863"/>, <xref target="RFC3813"/>.</t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[PCE-PCEP-PATHKEY-DRAFT-MIB DEFINITIONS ::= BEGIN

IMPORTS
       MODULE-IDENTITY, OBJECT-TYPE, NOTIFICATION-TYPE,
       Unsigned32,
       Counter32,
       OCTET STRING,
       experimental
             FROM SNMPv2-SMI             --  [RFC2578]

       TimeStamp
             FROM SNMPv2-TC              --  [RFC2579]

       PcePcepIdentifier,
             FROM PCE-TC-STD-MIB
             
       MplsLSPID, MplsPathIndex, TeHopAddressType,
       TeHopAddress, TeHopAddressUnnum
             FROM MPLS-TC-STD-MIB        -- [RFC3811]

       MODULE-COMPLIANCE,
       OBJECT-GROUP,
       NOTIFICATION-GROUP
            FROM SNMPv2-CONF;            --  [RFC2580]
]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathkeyDraftMIB MODULE-IDENTITY
        LAST-UPDATED "201208171200Z" -- Aug 17, 2012
        ORGANIZATION "Path Computation Element (PCE) Working Group"
        CONTACT-INFO "


           Dhruv Dhody
           Udayasree Palle
           Quintin Zhao
           Huawei Technology
           Daniel King
           OldDog Consulting

      EMail: dhruv.dhody@huawei.com
      EMail: udayasree.palle@huawei.com
      EMail: quintin.zhao@huawei.com
      EMail: daniel@oldog.co.uk
      EMail comments directly to the PCE WG Mailing List at pce@ietf.org
      WG-URL: http://www.ietf.org/html.charters/pce-charter.html
      "]]></artwork>
          </figure>
        </t>
        <t>DESCRIPTION</t>
        <t>"This MIB module defines a collection of objects for managing PCE communication protocol(PCEP) for Path-Key-Based Inter-Domain Path Computation"</t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[      -- Revision history
         REVISION
                 "201208171200Z"  -- 17 Aug 2012 12:00:00 EST
                 DESCRIPTION
                 "
                 Main Changes from -03 draft :
                 1. Adding of DEFVAL for some objects.
                 2. Editorial Changes.
                 
                 
         REVISION
                 "201202221200Z"  -- 22 Feb 2012 12:00:00 EST
                 DESCRIPTION
                 "
                 Main Changes from -02 draft :
                 1. Editorial Changes.
                 2. Updated Contact Information.
                          
         REVISION
              "201109051200Z"  -- 05 Sept 2011 12:00:00 EST
              DESCRIPTION
              "
              Main Changes from -01 draft :
              1. Added pcePcepPathKeyCPSIndex.
              2. Added pcePcepPathKeyHopListIndex.
              3. Removed pcePcepPathKeyHopNum. 
              4. Updated Contact Information.

         REVISION
              "201103081200Z"  -- 08 Mar 2011 12:00:00 EST
              DESCRIPTION
              "
              Main Changes from -00 draft :
              1. Added HopTable to store the CPS hops.
              2. Added Path Key Creation Time.

         REVISION
              "201009171200Z"  -- 17 Sep 2010 12:00:00 EST
          DESCRIPTION

              "draft-00 version"
         ::= { experimental 9999 } --
]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[-- Notifications --

pcePcepPathKeyNotifications OBJECT IDENTIFIER ::= 
                        { pcePcepPathKeyDraftMIB 0 }

pcePcepPathKeyMIBObjects OBJECT IDENTIFIER ::= 
                        { pcePcepPathKeyDraftMIB 1 }
pcePcepPathKeyConformance   OBJECT IDENTIFIER ::= 
                        { pcePcepPathKeyDraftMIB 2 }

pcePcepPathKeyObjects OBJECT IDENTIFIER ::= 
                        { pcePcepPathKeyMIBObjects 1 }]]></artwork>
          </figure>
        </t>
        <t>   --</t>
        <t>   -- PCE Pathkey Objects</t>
        <t>   --</t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyDiscardTimer OBJECT-TYPE
            SYNTAX  Unsigned32
            UNITS   "minutes"
            MAX-ACCESS read-write
            STATUS mandatory
            DESCRIPTION
            "The value which indicates a period of time after the 
            expiration of which a PCE discard unwanted path-keys."
            DEFVAL {10}
            ::= {  pcePcepPathKeyObjects 1 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyReUseTimer OBJECT-TYPE
            SYNTAX  Unsigned32
            UNITS   "minutes"
            MAX-ACCESS read-write
            STATUS mandatory
            DESCRIPTION
                "The value which indicates a period of time which 
                 should expire before an old path-key could be 
                 reused for a new CPS."
            DEFVAL {30}     
            ::= {  pcePcepPathKeyObjects 2 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyRetainStatus OBJECT-TYPE
            SYNTAX      INTEGER {
                       enabled(1),
                       disabled(2)
                     }
            MAX-ACCESS  read-write
            STATUS      optional
            DESCRIPTION
             "The path-key retain status of this PCE to retain the 
             path-key and CPS for debugging purposes."
            DEFVAL {disabled(2)}    
            ::= {  pcePcepPathKeyObjects 3 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeysGenerated OBJECT-TYPE
               SYNTAX  Counter32
               MAX-ACCESS read-only
               STATUS mandatory
               DESCRIPTION
                   "The number of path-keys generated by this PCE."
               ::= {  pcePcepPathKeyObjects 4 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyExpandUnknown OBJECT-TYPE
             SYNTAX  Counter32
             MAX-ACCESS read-only
             STATUS mandatory
             DESCRIPTION
                 "The number of attempts to expand an unknown 
                  path-key."
             ::= {  pcePcepPathKeyObjects 5 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyExpandExpired OBJECT-TYPE
             SYNTAX  Counter32
             MAX-ACCESS read-only
             STATUS mandatory
             DESCRIPTION
                 "The number of attempts to expand an expired 
                  path-key."
             ::= {  pcePcepPathKeyObjects 6 }
]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyExpandSame OBJECT-TYPE
               SYNTAX  Counter32
               MAX-ACCESS read-only
               STATUS optional
               DESCRIPTION
                   "The number of attempts to expand the same 
                    path-key."
               ::= {  pcePcepPathKeyObjects 7 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyExpiredNoExpansion OBJECT-TYPE
               SYNTAX  Counter32
               MAX-ACCESS read-only
               STATUS optional
               DESCRIPTION
                   "The number of path-keys expired without any attempt
                    to expand it."
               ::= {  pcePcepPathKeyObjects 8 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyExpansionSuccess OBJECT-TYPE
               SYNTAX  Counter32
               MAX-ACCESS read-only
               STATUS optional
               DESCRIPTION
                   "The number of path-key expansion requests (PCReq) 
                    which had successful retrieval."
               ::= {  pcePcepPathKeyObjects 9 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyExpansionFailures OBJECT-TYPE
               SYNTAX  Counter32
               MAX-ACCESS read-only
               STATUS optional
               DESCRIPTION
                   "The number of path-key expansion requests (PCReq) 
                    which had failed retrieval."
               ::= {  pcePcepPathKeyObjects 10 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyConfig OBJECT-TYPE
               SYNTAX      INTEGER {
                       enabled(1),
                       disabled(2)
                     }
               MAX-ACCESS  read-write
               STATUS      mandatory
               DESCRIPTION
                   "The path-key based inter domain computation 
                    configuration."
               DEFVAL {disabled(2)}     
               ::= {  pcePcepPathKeyObjects 11 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyTable  OBJECT-TYPE
            SYNTAX      SEQUENCE OF pcePcepPathKeyEntry
            MAX-ACCESS  not-accessible
            STATUS      current
            DESCRIPTION
                "This table contains information about the
                  Pathkey CPS of PCE."
             ::= { pcePcepPathKeyObjects 12 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyEntry OBJECT-TYPE
             SYNTAX      pcePcepPathKeyEntry
             MAX-ACCESS  not-accessible
             STATUS      current
             DESCRIPTION
                 "An entry in this table represents a path-key and CPS.
                  An entry is only created when a path-key generated by 
                  PCE during inter-domain computation."

             INDEX       { pcePcepPathKey }

             ::= { pcePcepPathKeyTable 1 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyEntry ::= SEQUENCE {
            pcePcepPathKey                 Unsigned32,
            pcePcepPathKeyCPSIndex         MplsPathIndex,
            pcePcepPathKeyRequestSource    PcePcepIdentifier,
            pcePcepPathKeyRequestId        Unsigned32,
            pcePcepPathKeyRetrieved        INTEGER,
            pcePcepPathKeyRetrieveSource   PcePcepIdentifier,
            pcePcepPathKeyCreationTime     TimeStamp,
            pcePcepPathKeyDiscardTime      Unsigned32,
            pcePcepPathKeyReuseTime        Unsigned32,
}]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKey OBJECT-TYPE
               SYNTAX  Unsigned32
               MAX-ACCESS read-only
               STATUS mandatory
               DESCRIPTION
                   "The path-key value to identify a CPS."
               ::= {  pcePcepPathKeyEntry 1 }   ]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyCPSIndex    OBJECT-TYPE
                  SYNTAX  MplsPathIndex
                  MAX-ACCESS read-only
                  STATUS mandatory
                  DESCRIPTION
                      "The HopList index of the CPS. This index
                       is used to expand Hops in 
                       pcePcepPathKeyHopTable."
                  ::= {  pcePcepPathKeyEntry 2 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyRequestSource OBJECT-TYPE
               SYNTAX  PcePcepIdentifier
               MAX-ACCESS read-only
               STATUS mandatory
               DESCRIPTION
                   "Source that issued the original request that led
                    to the creation of the path-key."
               ::= {  pcePcepPathKeyEntry 3 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyRequestId OBJECT-TYPE
               SYNTAX  Unsigned32
               MAX-ACCESS read-only
               STATUS mandatory
               DESCRIPTION
                   "The request ID of the original PCReq that led
                    to the creation of the path-key."
               ::= {  pcePcepPathKeyEntry 4 }  ]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyRetrieved OBJECT-TYPE
            SYNTAX      INTEGER {
                       TRUE(1),
                       FALSE(2)
                     }
            MAX-ACCESS read-only
            STATUS mandatory
            DESCRIPTION
               "It specifies whether the path-key is retrieved 
                or not."
            ::= {  pcePcepPathKeyEntry 5 }  ]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyRetrieveSource OBJECT-TYPE
               SYNTAX  PcePcepIdentifier
               MAX-ACCESS read-only
               STATUS mandatory
               DESCRIPTION
                   "If the path-key is retrieved then by which 
                    PCC."
               ::= {  pcePcepPathKeyEntry 6 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyCreationTime OBJECT-TYPE
               SYNTAX  TimeStamp
               MAX-ACCESS read-only
               STATUS mandatory
               DESCRIPTION
                   "The value of sysUpTime at which Path Key 
                   was generated by PCE."
               ::= {  pcePcepPathKeyEntry 7 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyDiscardTime OBJECT-TYPE
               SYNTAX  Unsigned32
               MAX-ACCESS read-only
               STATUS mandatory
               DESCRIPTION
                   "The time after which the path segment associated 
                    with the path-key will be discarded."
               ::= {  pcePcepPathKeyEntry 8 }   ]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyReuseTime OBJECT-TYPE
               SYNTAX  Unsigned32
               MAX-ACCESS read-only
               STATUS mandatory
               DESCRIPTION
                   "The time after which the path-key will be available 
                    for re-use."
               ::= {  pcePcepPathKeyEntry 9 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyHopTable  OBJECT-TYPE
               SYNTAX      SEQUENCE OF pcePcepPathKeyHopEntry
               MAX-ACCESS  not-accessible
               STATUS      current
               DESCRIPTION
                   "This table contains information about the
                     Pathkey Hop in the CPS of PCE."
                ::= { pcePcepPathKeyObjects 13 }          ]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyHopEntry OBJECT-TYPE
              SYNTAX      pcePcepPathKeyHopEntry
              MAX-ACCESS  not-accessible
              STATUS      current
              DESCRIPTION
                  "An entry in this table represents a Hop in the CPS.
                   An entry is only created when a path-key generated by
                   PCE during inter-domain computation."

              INDEX       { pcePcepPathKeyHopListIndex,
                            pcePcepPathKeyHopIndex }

              ::= { pcePcepPathKeyHopTable 1 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyHopEntry ::= SEQUENCE {
            pcePcepPathKeyHopListIndex     MplsPathIndex,
            pcePcepPathKeyHopIndex         MplsPathIndex,
            pcePcepPathKeyHopAddrType      TeHopAddressType,
            pcePcepPathKeyHopIpAddr        TeHopAddress,
            pcePcepPathKeyHopIpPrefixLen   InetAddressPrefixLength,
            pcePcepPathKeyHopAddrUnnum     TeHopAddressUnnum,
            pcePcepPathKeyHopLspId         MplsLSPID,
            pcePcepPathKeyHopType          INTEGER,
   }                ]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyHopListIndex OBJECT-TYPE
               SYNTAX  MplsPathIndex
               MAX-ACCESS read-only
               STATUS mandatory
               DESCRIPTION
                   "The primary index into this table identifying a 
                   particular CPS. All hops in the CPS will have the
                   same ListIndex. This corresponds to 
                   pcePcepPathKeyCPSIndex in pcePcepPathKeyEntry."

               ::= {  pcePcepPathKeyHopEntry 1 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyHopIndex OBJECT-TYPE
               SYNTAX  MplsPathIndex
               MAX-ACCESS read-only
               STATUS mandatory
               DESCRIPTION
                   "The secondry index into this table identifying a 
                   particular Hop."

               ::= {  pcePcepPathKeyHopEntry 2 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyHopAddrType OBJECT-TYPE
            SYNTAX TeHopAddressType
            MAX-ACCESS read-only
            STATUS mandatory
            DESCRIPTION 
                "The Hop Address Type of this CPS hop.
                 Note that lspid(5) is a valid option only
                 for tunnels signaled via CRLDP."
            DEFVAL { ipv4 }
            ::= { pcePcepPathKeyHopEntry 2 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyHopIpAddr OBJECT-TYPE
            SYNTAX TeHopAddress
            MAX-ACCESS read-only
            STATUS mandatory
            DESCRIPTION 
                "The Hop Address for this CPS hop.
                 The type of this address is determined by the
                 value of the corresponding pcePcepPathKeyHopAddrType."
            DEFVAL { '00000000'h } -- IPv4 address 0.0.0.0
            ::= { pcePcepPathKeyHopEntry 4 }	    ]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyHopIpPrefixLen OBJECT-TYPE
            SYNTAX InetAddressPrefixLength
            MAX-ACCESS read-only
            STATUS current
            DESCRIPTION 
                "If pcePcepPathKeyHopAddrType is set to ipv4(1) or
                 ipv6(2), then this value will contain an
                 appropriate prefix length for the IP address in
                 object pcePcepPathKeyHopIpAddr. Otherwise this value
                 is irrelevant and should be ignored."
            DEFVAL { 32 }
            ::= { pcePcepPathKeyHopEntry 5 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyHopAddrUnnum OBJECT-TYPE
            SYNTAX TeHopAddressUnnum
            MAX-ACCESS read-only
            STATUS current
            DESCRIPTION
                "If pcePcepPathKeyHopAddrType is set to unnum(4), 
                 then this value will contain the interface 
                 identifier of the unnumbered interface for this
                 hop. This object should be used in conjunction 
                 with pcePcepPathKeyHopIpAddr which would contain
                 the LSR Router ID in this case."
            ::= { pcePcepPathKeyHopEntry 6 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyHopLspId OBJECT-TYPE
            SYNTAX MplsLSPID
            MAX-ACCESS read-only
            STATUS current
            DESCRIPTION
                "If pcePcepPathKeyHopAddrType is set to lspid(5), 
                 then this value will contain the LSPID of a tunnel
                 of this hop. The present tunnel being configured is
                 tunneled through this hop (using label stacking).
                 This object is otherwise insignificant and should	      
                 contain a value of 0 to indicate this fact."
            ::= { pcePcepPathKeyHopEntry 7 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyHopType OBJECT-TYPE
            SYNTAX INTEGER {\
                        strict(1),
                        loose(2)
                        }
            MAX-ACCESS read-only
            STATUS mandatory
            DESCRIPTION
                "Denotes whether this hop is routed in a
                 strict or loose fashion. "
            DEFVAL { strict }		 
            ::= { pcePcepPathKeyHopEntry 8 }]]></artwork>
          </figure>
        </t>
        <t>---</t>
        <t>--- Notifications</t>
        <t>---</t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyExpandUnknownNtf NOTIFICATION-TYPE
          OBJECTS     {
                         pcePcepPathKeyExpandUnknown
                      }
          STATUS      mandatory
          DESCRIPTION
             "This notification is sent when an attempt to expand an 
              unknown path-key is made. The value of the counter 
              pcePcepPathKeyExpandUnknown is also increased at this 
              time."
          ::= { pcePcepPathKeyNotifications 1 }
]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyExpandExpiredNtf NOTIFICATION-TYPE
          OBJECTS     {
                         pcePcepPathKeyExpandExpired
                      }
          STATUS      mandatory
          DESCRIPTION
             "This notification is sent when an attempt to expand an 
              expired path-key is made. The value of the counter 
              pcePcepPathKeyExpandExpired is also increased at this 
              time."
          ::= { pcePcepPathKeyNotifications 2 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyExpandSameNtf NOTIFICATION-TYPE
          OBJECTS     {
                         pcePcepPathKeyExpandSame
                      }
          STATUS      optional
          DESCRIPTION
             "This notification is sent when a duplicate attempt to 
              expand the same path-key is made. The value of the 
              counter pcePcepPathKeyExpandSame is also increased at 
              this time."
          ::= { pcePcepPathKeyNotifications 3 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[pcePcepPathKeyExpiredNoExpansionNtf NOTIFICATION-TYPE
          OBJECTS     {
                         pcePcepPathKeyExpiredNoExpansion
                      }
          STATUS      optional
          DESCRIPTION
             "This notification is sent when path-key expires without 
              any attempt to expand it. The value of the counter 
              pcePcepPathKeyExpiredNoExpansion is also increased at 
              this time."
          ::= { pcePcepPathKeyNotifications 4 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[--****************************************************************
-- Module Conformance Statement
--****************************************************************

pcePcepPathKeyGroups
        OBJECT IDENTIFIER ::= { pcePcepPathKeyConformance 1 }

pcePcepPathKeyCompliances
        OBJECT IDENTIFIER ::= { pcePcepPathKeyConformance 2 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[--
-- Full Compliance
--

pcePcepPathKeyModuleFullCompliance MODULE-COMPLIANCE
        STATUS current
        DESCRIPTION
             "The Module is implemented with support
             for read-create and read-write.  In other
             words, both monitoring and configuration
             are available when using this MODULE-COMPLIANCE."

        MODULE -- this module
           MANDATORY-GROUPS    { pcePcepPathKeyGeneralGroup,
               		         pcePcepPathKeyNotificationsGroup
                               }

        ::= { pcePcepPathKeyCompliances 1 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[--
-- Read-Only Compliance
--

pcePcepPathKeyModuleReadOnlyCompliance MODULE-COMPLIANCE
            STATUS current
            DESCRIPTION
                "The Module is implemented with support
                for read-only.  In other words, only monitoring
                is available by implementing this MODULE-COMPLIANCE."

            MODULE -- this module
                MANDATORY-GROUPS    { pcePcepPathKeyGeneralGroup,
                                      pcePcepPathKeyNotificationsGroup
                                    }
            ::= { pcePcepPathKeyCompliances 2 }]]></artwork>
          </figure>
        </t>
        <t>-- units of conformance</t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[           pcePcepPathKeyGeneralGroup OBJECT-GROUP
                  OBJECTS {
                      pcePcepPathKeyDiscardTimer,
                      pcePcepPathKeyReUseTimer,
                      pcePcepPathKeysGenerated,
                      pcePcepPathKeyExpandUnknown,
                      pcePcepPathKeyExpandExpired,
                      pcePcepPathKeyConfig,
                      pcePcepPathKey,
                      pcePcepPathKeyCPSIndex,
                      pcePcepPathKeyRequestSource,
                      pcePcepPathKeyRequestId,
                      pcePcepPathKeyRetrieved,
                      pcePcepPathKeyRetrieveSource,
                      pcePcepPathKeyCreationTime,
                      pcePcepPathKeyDiscardTime,
                      pcePcepPathKeyReuseTime,
                      pcePcepPathKeyHopListIndex,
                      pcePcepPathKeyHopIndex,
                      pcePcepPathKeyHopAddrType,
                      pcePcepPathKeyHopIpAddr,
                      pcePcepPathKeyHopIpPrefixLen,
                      pcePcepPathKeyHopType
                 }
                  STATUS    current
                  DESCRIPTION
                      "Objects that apply to all PCEP Pathkey MIB
                       implementations."

                  ::= { pcePcepPathKeyGroups 1 }]]></artwork>
          </figure>
        </t>
        <t>
          <figure title="" suppress-title="false" align="left" alt="" width="" height="">
            <artwork xml:space="preserve" name="" type="" align="left" alt="" width="" height=""><![CDATA[     pcePcepPathKeyNotificationsGroup NOTIFICATION-GROUP
         NOTIFICATIONS { pcePcepPathKeyExpandUnknownNtf,
                         pcePcepPathKeyExpandExpiredNtf
                            }
         STATUS   current


         DESCRIPTION
             "The notifications for a PCEP Pathkey MIB implementation."
         ::= { pcePcepPathKeyGroups 2 }
         
         END]]></artwork>
          </figure>
        </t>
      </section>
      <section title="Objects for inclusion in module PCE-PCEP-DRAFT-MIB" toc="default" anchor="SEC_OBJ_INC">
        <t>Following object maybe moved to <xref target="PCE-PCEP-DRAFT-MIB"/> after consensus with the authors and working group.</t>
        <t>pcePcepPathKeyConfig</t>
      </section>
    </section>
    <section title="IANA Considerations" toc="default">
      <t>TBD</t>
    </section>
    <section title="Security Considerations" toc="default">
      <t>This MIB module can be used for configuration of certain objects, and anything that can be configured can be incorrectly configured, with potentially disastrous results.</t>
      <t>There are a number of management objects defined in this MIB module with a MAX-ACCESS clause of read-create. Such objects may be considered sensitive or vulnerable in some network environments. The support for SET operations in a non-secure environment without proper protection can have a negatie effect on network operations. These are the tables and objects and their sensitivity/vulnerability:</t>
      <t>
        <list style="symbols">
          <t>pcePcepPathKeyDiscardTimer: Setting this value incorrectly may cause the expiration of Pathkey before attempt to retrieve the CPS.</t>
          <t>pcePcepPathKeyReUseTimer: Setting this value incorrectly may cause the re-use of pathkey which may not guarantee the uniqueness of path-key values.</t>
        </list>
      </t>
      <t>The user of the PCE-PCEP-PATHKEY-DRAFT-MIB module must therefore be aware that support for SET operations in a non-secure environment without proper protection can have a negative effect on network operations.
</t>
      <t>The readable objects in the PCE-PCEP-PATHKEY-DRAFT-MIB module (i.e., those with MAX-ACCESS other than not-accessible) may be considered sensitive in some environments since, collectively, they provide information about the amount and frequency of path computation requests and responses within the network and can reveal some aspects of their configuration.</t>
      <t>In such environments it is important to control also GET and NOTIFY access to these objects and possibly even to encrypt their values when sending them over the network via SNMP.</t>
      <t>SNMP versions prior to SNMPv3 did not include adequate security. Even if the network itself is secure (for example by using IPsec), even then, there is no control as to who on the secure network is allowed to access and GET/SET (read/change/create/delete) the objects in this MIB module.</t>
      <t>It is RECOMMENDED that implementers consider the security features as provided by the SNMPv3 framework (see <xref target="RFC3410"/>, section 8), including full support for the SNMPv3 cryptographic mechanisms (for authentication and privacy).</t>
      <t>Further, deployment of SNMP versions prior to SNMPv3 is NOT RECOMMENDED.  Instead, it is RECOMMENDED to deploy SNMPv3 and to enable cryptographic security.  It is then a customer/operator responsibility to ensure that the SNMP entity giving access to an instance of this MIB module is properly configured to give access to the objects only to those principals (users) that have legitimate rights to indeed GET or SET (change/create/delete) them.</t> 
    </section>
  </middle>
  <back>
    <references title="Normative References">
    <?rfc include="reference.RFC.2578.xml" ?>
    <?rfc include="reference.RFC.2579.xml" ?>
    <?rfc include="reference.RFC.2580.xml" ?>
    <?rfc include="reference.RFC.2863.xml" ?>  
    <?rfc include="reference.RFC.3411.xml" ?>  
    <?rfc include="reference.RFC.3811.xml" ?>    
    <?rfc include="reference.RFC.3813.xml" ?>    
    <?rfc include="reference.RFC.5440.xml" ?> 
    </references>   
    <references title="Informative References">
    <?rfc include="reference.RFC.3410.xml" ?>
    <?rfc include="reference.RFC.4655.xml" ?>
    <?rfc include="reference.RFC.5520.xml" ?>
      <!--PCE-PCEP-DRAFT-MIB-->
      <reference anchor="PCE-PCEP-DRAFT-MIB">
        <front>
          <title>PCE communication protocol(PCEP) Management Information Base (draft-ietf-pce-pcep-mib-03)</title>
          <author initials="A S" surname="Kiran Koushik" fullname="Kiran Koushik A S">
            <organization />
          </author>
          <author initials="E" surname="Stephan" fullname="Stephan E">
            <organization />
          </author>
          <author initials="Q" surname="Zhao" fullname="Quintin Zhao">
            <organization />
          </author>
          <author initials="D" surname="King" fullname="Daniel King">
            <organization />
          </author>
	  <author initials="J" surname="Hardwick" fullname="Jon Hardwick">
            <organization />
          </author>          
          <date month="July" year="2012" />
        </front>
      </reference>
    </references>
  </back>
</rfc>

PAFTECH AB 2003-20262026-04-24 02:42:21