View Secure Channel Inbound Statistics

Use this procedure to view the secure channel (SC) inbound statistics using EDM.

Procedure

  1. In the Device Physical View tab, select one or more ports for which to view the SC inbound statistics.

    The switch supports MACsec on specific ports. For more information, see your hardware documentation.

  2. In the navigation pane, expand Edit > Port > General.
  3. Select the SC Inbound Stats tab.
    Note

    Note

    Use the Clear Stats button to the clear single-port secure channel inbound statistics. The Clear Stats button is not available to clear multiple-port secure channel inbound statistics.

SC Inbound Stats Field Descriptions

The following table describes the fields in the SC Inbound Stats tab.

Field

Description

UnusedSAPkts

Specifies the summary of received unencrypted packets on all SAs of this secure channel, with MACsec not in strict mode.

NoUsingSAPkts

Specifies the summary of received packets that were discarded along with either encrypted packets or packets that were received with MACsec operating in strict mode.

LatePkts

Specifies the number of packets received that have been discarded for this secure channel (SC) with Replay Protect enabled.

Note:

Replay Protect is supported only by MACsec configurations using MACsec Key Agreement (MKA) protocol.

NotValidPkts

Specifies the summary of packets that were discarded in all SAs of the SC because they were not valid with one of the following conditions:

  • MACsec was operating in strict mode.

  • The packets received were encrypted but contained erroneous fields.

InvalidPkts

Specifies the summary of all packets received that were not valid for this SC, with MACsec operating in check mode.

DelayedPkts

Specifies the summary of packets for this SC, with the packet number (PN) of the packets lower than the lower bound replay protection PN.

Note:

Replay Protect is supported only by MACsec configurations using MACsec Key Agreement (MKA) protocol.

UncheckedPkts

The total number of packets for this SC that:

  • Were encrypted and failed the integrity check.

  • Were not encrypted and failed the integrity check.

  • Were received when MACsec validation was not enabled.

AcceptedPkts

Specifies the total number of Integrity Check Validated (ICV) packets for all SAs of this Secure Channel. The number of octets of User Data recovered from received frames that were integrity protected but not encrypted.

OctetsValidated

Specifies the number of octets of plain text recovered from received packets that were integrity protected but not encrypted.

OctetsDecrypted

Specifies the number of octets of plain text recovered from received packets that were integrity protected and encrypted.