CISCO-DOT11-SSID-SECURITY-MIB Table View

Table-centric layout grouping table, row, and column objects.

Tables
7
Rows
7
Columns
37
.1.3.6.1.4.1.9.9.413.1.1.1 · 1 row entry · 21 columns
Uses the cisco variant from /opt/observium/mibs/cisco.
Command help
Walk cdot11SecAuxSsidTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-DOT11-SSID-SECURITY-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-DOT11-SSID-SECURITY-MIB::cdot11SecAuxSsidTable'
This table contains the list of SSIDs that all 
radio interfaces of this device should install
and use for client associations.
cdot11SecAuxSsidEntry row .1.3.6.1.4.1.9.9.413.1.1.1.1
A collection of attributes defining an auxiliary
service set ID which client stations can use for
association for the device. Entries can be
installed on multiple radio interfaces.
Column Syntax OID
This object specifies a SSID defined on this
IEEE 802.11 wireless LAN device. The SSID will
be installed on the radio interfaces for client
associations. The radio interface shall respond
to probe requests using th…
CDot11SsidString
Type Constraints:
range: 1..32
.1.3.6.1.4.1.9.9.413.1.1.1.1.1
This object indicates if an auxiliary SSID
is a Broadcast SSID. There should only be one
Broadcast SSID installed on any IEEE 802.11
radio interface if Multiple BSSID feature is
not enabled. To enable this SSID for…
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.9.9.413.1.1.1.1.2
This object indicates if an auxiliary SSID
is an infra-structure SSID. There should only be
one infra-structure SSID installed on any IEEE
802.11 radio interface. The infra-structure
SSID is used for uplink associa…
Enumerationr/w
Enumerated Values:
1infraStructure
2nonInfraStructure
3optional
.1.3.6.1.4.1.9.9.413.1.1.1.1.3
This object indicates if an auxiliary SSID
is enabled for Proxy Mobile-IP support. If
Proxy Mobile-IP is not supported in VLAN
network environment, cdot11SecAuxSsidVlan should
be '0' when Proxy Mobile-IP is enabled v…
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.9.9.413.1.1.1.1.4
This object defines the maximum number of IEEE
802.11 stations which may associate to a radio
interface through this SSID. If the value
is '0', the maximum number is limited only by the
IEEE 802.11 standard and any …
Unsigned32r/w
Constraints:
range: 0-2007
.1.3.6.1.4.1.9.9.413.1.1.1.1.5
This object defines the VLAN trunk at which the
traffic will be used when a client is associating
with this SSID. The default value is '0', no
VLAN is configured or used for this SSID.
CISCO-DOT11-IF-MIBCDot11IfVlanIdOrZeror/w
Type Constraints:
range: 0..4095
.1.3.6.1.4.1.9.9.413.1.1.1.1.6
This object configures Wi-Fi Protected Access
Pre-shared Key for this SSID. This key is used
for association authentication and dynamic
encryption key generation. The default value
is ''H if this shared key feature …
CDot11WiFiPaPreSharedKeyr/w
Type Constraints:
range: 0..128
.1.3.6.1.4.1.9.9.413.1.1.1.1.7
This object defines the name of the AAA accounting
list to be used for association accounting. The
default value is an empty string if AAA accounting
is not enabled.
SNMP-FRAMEWORK-MIBSnmpAdminStringr/w
Type Constraints:
range: 0..255
.1.3.6.1.4.1.9.9.413.1.1.1.1.8
This object specifies the username used for
LEAP authentication and association to an uplink
AP while this SSID is in infra-structure mode, i.e.
cdot11SecAuxSsidInfraStruct is 'true'. The default
value is an empty s…
SNMP-FRAMEWORK-MIBSnmpAdminStringr/w
Type Constraints:
range: 0..255
.1.3.6.1.4.1.9.9.413.1.1.1.1.9
This object specifies the password used for
LEAP authentication association to an uplink
AP while this SSID is in infra-structure mode, i.e.
cdot11SecAuxSsidInfraStruct is 'true'. The default
value is an empty string i…
SNMP-FRAMEWORK-MIBSnmpAdminStringr/w
Type Constraints:
range: 0..255
.1.3.6.1.4.1.9.9.413.1.1.1.1.10
This object specifies the type of key management
employed for encryption keys defined for the VLAN
in cdot11SecAuxSsidVlan.

WPA key management('wpa') should only be selected
when encryption is TKIP or AES…
CDot11SecAuthKeyMgmtTyper/w
Type Values:
0cckm
1wpa
2wpa1
3wpa2
.1.3.6.1.4.1.9.9.413.1.1.1.1.11
This object specifies if the type of key
management, cdot11SecAuxSsidAuthKeyMgmt,
selected is optional. If it is 'true' and
cdot11SecAuxSsidAuthKeyMgmt is not 'none',
the key management is optional. If it is
'false…
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.9.9.413.1.1.1.1.12
This is used to create a new SSID entry on this
device, and modify or delete an existing SSID
entry.

Creation of rows must be done via 'createAndGo'
with or without optional objects. This object will
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.9.9.413.1.1.1.1.13
This object sets the Wireless Network ID of this
SSID. This ID is used for Cisco GRE tunneling in
layer 3 switching. The valid range for the ID is
'1' to '4096' and the default value is '0' and it
indicates no ID is …
Integer32r/w
Constraints:
range: 0-4096
.1.3.6.1.4.1.9.9.413.1.1.1.1.14
This is the address type of for the
cdot11SecSsidRedirectDestAddr.
INET-ADDRESS-MIBInetAddressTyper/w
Type Values:
0unknown
1ipv4
2ipv6
3ipv4z
4ipv6z
16dns
25l2vpn
.1.3.6.1.4.1.9.9.413.1.1.1.1.15
This is the destination address set to all packets
received from wireless clients associated to this
wireless station using the cdot11SecAuxSsid. The
cdot11SecSsidRedirectAddrType specifies the type
of this address.…
INET-ADDRESS-MIBInetAddressr/w
Type Constraints:
range: 0..255
.1.3.6.1.4.1.9.9.413.1.1.1.1.16
When the packet redirection feature is enable
(i.e., cdot11SecSsidRedirectAddrType is 'ipv4'
and cdot11SecSsidRedirectDestAddr value is not
'00000000'H), this is the Cisco IP extended
access list number or name used f…
SNMP-FRAMEWORK-MIBSnmpAdminStringr/w
Type Constraints:
range: 0..255
.1.3.6.1.4.1.9.9.413.1.1.1.1.17
This is the set of Information Elements and
extended capabilities embedded in the SSID
broadcasted in beacons and probe responses.
The extended capabilities 'advertisement' and 'wps'
are allowed only if 'ssidl' is set.
CDot11InformationElementTyper/w
Type Values:
0ssidl
1advertisement
2wps
.1.3.6.1.4.1.9.9.413.1.1.1.1.18
This is the name of the cdot11SecAuxSsidVlan. Either
cdot11SecAuxSsidVlan or cdot11SecAuxSsidVlanName can
be used to set the VLAN trunk for client traffic of
this SSID. If both cdot11SecAuxSsidVlanName and
cdot11Sec…
CDot11VlanNamer/w
Type Constraints:
range: 1..32
.1.3.6.1.4.1.9.9.413.1.1.1.1.19
This object controls if this SSID shall be
broadcasted if MBSSID is enabled at the interface
which this SSID is attached, i.e.
if both cd11IfMultipleBssidEnable and
cdot11SecAuxSsidMbssidBroadcastis are 'true', then
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.9.9.413.1.1.1.1.20
This is the DTIM period for this MBSSID enabled SSID.
It is the number of beacon intervals that shall elapse
between transmission of Beacons frames containing a
TIM element whose DTIM Count field is 0.

Th…
beaconsInteger32r/w
Constraints:
range: 0-255
.1.3.6.1.4.1.9.9.413.1.1.1.1.21
.1.3.6.1.4.1.9.9.413.1.1.2 · 1 row entry · 6 columns
Uses the cisco variant from /opt/observium/mibs/cisco.
Command help
Walk cdot11SecAuxSsidAuthTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-DOT11-SSID-SECURITY-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-DOT11-SSID-SECURITY-MIB::cdot11SecAuxSsidAuthTable'
This table contains attributes to configure
authentication parameters for SSIDs listed in the 
cdot11SecAuxSsidTable.  This table extends the 
IEEE802dot11-MIB dot11AuthenticationAlgorithmsTable 
to defines additional attributes authentication
procedures for multiple SSIDs.  Multiple 
authentication algorithms can apply to a single 
auxiliary SSID.
          
This table has an expansion dependent relationship
on the cdot11SecAuxSsidTable.  For each entry in 
this table, there exists at least an entry in the  
cdot11SecAuxSsidTable.
cdot11SecAuxSsidAuthEntry row .1.3.6.1.4.1.9.9.413.1.1.2.1
Each entry specifies a pre-defined
authentication algorithms and additional
authentication procedures for clients of an
auxiliary SSID. The three pre-defined
authentication algorithms are:
openSystem(1),
sh…
Column Syntax OID
If the value is 'true', this device may
authenticate an association using SSID (specified
by cdot11SecAuxSsid) with the corresponding
pre-defined algorithm (identified by the
dot11AuthenticationAlgorithmsIndex). The…
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.9.9.413.1.1.2.1.1
If both the values of this object and
cdot11SecAuxSsidAuthEnabled are 'true', the
association authentication must complete additional
network-level EAP authentication before client
stations will be unblocked from th…
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.9.9.413.1.1.2.1.2
If both the values of this object and
cdot11SecAuxSsidAuthEnabled are 'true', the
association authentication must complete additional
MAC address authentication before client stations
will be unblocked from their associ…
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.9.9.413.1.1.2.1.3
If the value of cdot11SecAuxSsidAuthPlusEap
is 'true' or dot11AuthenticationAlgorithm is
Network-EAP, this is the EAP method list to use
for the EAP authentication. The default is an
empty string if EAP is not used.
SNMP-FRAMEWORK-MIBSnmpAdminStringr/w
Type Constraints:
range: 0..255
.1.3.6.1.4.1.9.9.413.1.1.2.1.4
If the value of cdot11SecAuxSsidAuthPlusMac
is 'true', this is the MAC address method list to
use for the MAC authentication. The default is
an empty string if MAC address authentication
is not used.
SNMP-FRAMEWORK-MIBSnmpAdminStringr/w
Type Constraints:
range: 0..255
.1.3.6.1.4.1.9.9.413.1.1.2.1.5
If the values of this object,
cdot11SecAuxSsidAuthEnabled,
cdot11SecAuxSsidAuthPlusMac, and
cdot11SecAuxSsidAuthPlusEap are all 'true' and
the dot11AuthenticationAlgorithm is 'openSystem'
the, the association authen…
SNMPv2-TCTruthValuer/w
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.9.9.413.1.1.2.1.6
.1.3.6.1.4.1.9.9.413.1.1.3 · 1 row entry · 1 columns
Uses the cisco variant from /opt/observium/mibs/cisco.
Command help
Walk cdot11SecInterfSsidTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-DOT11-SSID-SECURITY-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-DOT11-SSID-SECURITY-MIB::cdot11SecInterfSsidTable'
This table contains the list of SSIDs installed 
on radio interfaces of this device and are used 
for client association.
          
This table has an expansion dependent relationship
on the ifTable.  For each entry in this table, 
there exists at least an entry in the ifTable of 
ifType ieee80211(71).
cdot11SecInterfSsidEntry row .1.3.6.1.4.1.9.9.413.1.1.3.1
A collection of attributes for an auxiliary
service set ID installed on a IEEE 802.11 radio
interface. An interface can have multiple
auxiliary service set ID installed and the
current maximum for each radio interfac…
Column Syntax OID
This is used to install a new SSID configuration,
and modify or delete an existing SSID configuration
on a radio interface.

Creation of rows must be done via 'createAndGo' and
with an existing ifIndex of …
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.9.9.413.1.1.3.1.1
.1.3.6.1.4.1.9.9.413.1.1.4 · 1 row entry · 2 columns
Uses the cisco variant from /opt/observium/mibs/cisco.
Command help
Walk cdot11MbssidMacAddrSupportTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-DOT11-SSID-SECURITY-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-DOT11-SSID-SECURITY-MIB::cdot11MbssidMacAddrSupportTable'
This table contains the list of available radio MAC
addresses for supporting MBSSID on the IEEE 802.11 
radio. 
          
This table has an expansion dependent relationship
on the ifTable.  For each entry in this table, there
exists at least an entry in the ifTable of ifType
ieee80211(71).
cdot11MbssidMacAddrSupportEntry row .1.3.6.1.4.1.9.9.413.1.1.4.1
Each entry is a MAC address assigned to the IEEE
802.11 radio available to be used as a BSSID and
broadcasted in the radio beacon when MBSSID feature
is enabled.
Column Syntax OID
This is an unique index identifying the
MAC address assigned on the radio. If MBSSID
is not supported on this device, the only
available index number is 1. Currently, if MBSSID
is supported, the index numbers are 1 t…
Integer32
Constraints:
range: 1-256
.1.3.6.1.4.1.9.9.413.1.1.4.1.1
This MAC address can be used as BSSID and
broadcasted in the beacon with a SSID when
cd11IfMultipleBssidEnable is 'true'.
SNMPv2-TCMacAddress
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.9.9.413.1.1.4.1.2
.1.3.6.1.4.1.9.9.413.1.1.5 · 1 row entry · 2 columns
Uses the cisco variant from /opt/observium/mibs/cisco.
Command help
Walk cdot11MbssidInterfaceTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-DOT11-SSID-SECURITY-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-DOT11-SSID-SECURITY-MIB::cdot11MbssidInterfaceTable'
This table displays the list of SSIDs and their
corresponding BSSIDs configured on the IEEE 
802.11 radios.
          
This table has an expansion dependent relationship
on the ifTable.  For each entry in this table, there
exists at least an entry in the ifTable of ifType
ieee80211(71).
cdot11MbssidInterfaceEntry row .1.3.6.1.4.1.9.9.413.1.1.5.1
Each entry defines an SSID being configured on
the radio and the corresponding BSSID.
Column Syntax OID
This is the BSSID to be sent with the radio SSID.
If MBSSID feature is not enabled (i.e.
cd11IfMultipleBssidEnable is 'false'), all SSIDs
will be sent by the radio with the same BSSID and
that is the radio hardware M…
SNMPv2-TCMacAddress
Type Constraints:
range: 6
Description:
Represents an 802 MAC address represented in the
`canonical' order defined by IEEE 802.1a, i.e., as if it
were transmitted least significant bit first, even though
802.5 (in contrast to other 802.x protocols) requires M…
.1.3.6.1.4.1.9.9.413.1.1.5.1.1
If d11IfMultipleBssidEnable is 'true', MBSSID
is enabled for the radio and this SSID is a
broadcast SSID as follows
'true' - This SSID is a broadcast SSID and
being broadcasted in the radio beacon.
SNMPv2-TCTruthValue
Type Values:
1true
2false
Description:
Represents a boolean value.
.1.3.6.1.4.1.9.9.413.1.1.5.1.2
.1.3.6.1.4.1.9.9.413.1.1.7 · 1 row entry · 2 columns
Uses the cisco variant from /opt/observium/mibs/cisco.
Command help
Walk cdot11SecSsidBackupVlanTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-DOT11-SSID-SECURITY-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-DOT11-SSID-SECURITY-MIB::cdot11SecSsidBackupVlanTable'
This table lists the backup VLANs configured
on a SSID.
          
The number of backup VLANs that can be configured 
for each SSID identified by cdot11SecAuxSsid is 
limited by the value of dot11SecSsidMaxBackupVlans.
          
This table has an expansion depedent relationship with
cdot11SecAuxSsidTable. The value of cdot11SecAuxSsid
for the entries in this table must exist in
cdot11SecAuxSsidTable. 
          
When an entry in  cdot11SecAuxSsidTable is deleted,
all the backup VLANs configured for the corresponding
SSID get deleted from this table.
cdot11SecSsidBackupVlanEntry row .1.3.6.1.4.1.9.9.413.1.1.7.1
Each entry defines a backup VLAN configured on an
SSID.
Column Syntax OID
The backup VLAN configured on a SSID identified
by the instance identifier value of cdot11SecAuxSsid.
Unsigned32
Constraints:
range: 1-4095
.1.3.6.1.4.1.9.9.413.1.1.7.1.1
The status of this conceptual row.
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.9.9.413.1.1.7.1.2
.1.3.6.1.4.1.9.9.413.1.4.1 · 1 row entry · 3 columns
Uses the cisco variant from /opt/observium/mibs/cisco.
Command help
Walk cdot11SecVlanNameTable
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-DOT11-SSID-SECURITY-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-DOT11-SSID-SECURITY-MIB::cdot11SecVlanNameTable'
This table contains the mapping of VLAN names to 
IDs.  A RADIUS server servering this wireless 
station can assign wireless clients associating 
to this station to a particular VLAN by either 
a VLAN name or an ID.
          
When the VLAN assign of a client is via VLAN name,
this table is used to look up for the corresponding
VLAN ID and VLAN configured on this wireless
station.  Each VLAN name uniquely identifies a 
VLAN on a wireless station, and  a VLAN ID can 
associate to multiple VLAN names in this table.
cdot11SecVlanNameEntry row .1.3.6.1.4.1.9.9.413.1.4.1.1
A collection of attributes defining the properties
of a VLAN name and the corresponding VLAN ID.
Column Syntax OID
This object defines the VLAN name assigned to
wireless clients by the RADIUS server serving
this wireless station.
CDot11VlanName
Type Constraints:
range: 1..32
.1.3.6.1.4.1.9.9.413.1.4.1.1.1
This object defines the VLAN trunk to which
a client associating to this wireless station
will be on. The value is '0' is not valid.
CISCO-DOT11-IF-MIBCDot11IfVlanIdOrZeror/w
Type Constraints:
range: 0..4095
.1.3.6.1.4.1.9.9.413.1.4.1.1.2
This is used to create a new VLAN name to ID
mapping entry on this device, and modify or delete
an existing mapping entry.

Creation of rows must be done via 'createAndGo'
with all other mandatory objects…
SNMPv2-TCRowStatusr/w
Type Values:
1active
2notInService
3notReady
4createAndGo
5createAndWait
6destroy
Description:
The RowStatus textual convention is used to manage the
creation and deletion of conceptual rows, and is used as the
value of the SYNTAX clause for the status column of a
conceptual row (as described in Section 7.7.1 of …
.1.3.6.1.4.1.9.9.413.1.4.1.1.3