CISCO-LWAPP-WEBAUTH-MIB

        This MIB is intended to be implemented on all those
devices operating as Central controllers, that
terminate the Light Weight Access Point Protocol
tunnel from Cisco Light-weight LWAPP Access Points.
        
This MIB is used to configure web authentication
parameters in the controller to manage clients'
authentication.  The mobile nodes are 
web-authenticated if they select the WLAN that
has web security enabled.
        
        
The relationship between CC and the LWAPP APs
can be depicted as follows:
        
+......+     +......+     +......+           +......+
+      +     +      +     +      +           +      +
+  CC  +     +  CC  +     +  CC  +           +  CC  +
+      +     +      +     +      +           +      +
+......+     +......+     +......+           +......+
..            .             .                 .
..            .             .                 .
.  .            .             .                 .
.    .            .             .                 .
.      .            .             .                 .
.        .            .             .                 .
+......+ +......+     +......+      +......+          +......+
+      + +      +     +      +      +      +          +      +
+  AP  + +  AP  +     +  AP  +      +  AP  +          +  AP  +
+      + +      +     +      +      +      +          +      +
+......+ +......+     +......+      +......+          +......+
.              .             .                 .
.  .              .             .                 .
.    .              .             .                 .
.      .              .             .                 .
.        .              .             .                 .
+......+ +......+     +......+      +......+          +......+
+      + +      +     +      +      +      +          +      +
+  MN  + +  MN  +     +  MN  +      +  MN  +          +  MN  +
+      + +      +     +      +      +      +          +      +
+......+ +......+     +......+      +......+          +......+
        
        
The LWAPP tunnel exists between the controller and
the APs.  The MNs communicate with the APs through
the protocol defined by the 802.11 standard.
        
LWAPP APs, upon bootup, discover and join one of the
controllers and the controller pushes the configuration,
that includes the WLAN parameters, to the LWAPP APs.
The APs then encapsulate all the 802.11 frames from
wireless clients inside LWAPP frames and forward
the LWAPP frames to the controller.
        
                   GLOSSARY
        
Access Point ( AP )
        
An entity that contains an 802.11 medium access
control ( MAC ) and physical layer ( PHY ) interface
and provides access to the distribution services via
the wireless medium for associated clients.  
        
LWAPP APs encapsulate all the 802.11 frames in
LWAPP frames and sends them to the controller to which
it is logically connected.
        
Central Controller ( CC )
        
The central entity that terminates the LWAPP protocol
tunnel from the LWAPP APs.  Throughout this MIB,
this entity also referred to as 'controller'. 
        
Guest User
        
A guest user is a temporary user with access
privileges for configuring the wireless network
for a finite life time.  The wireless networks 
are configured on the controller. The method of
authentication to the controller can be configured
using this MIB instrumentation.
        
Light Weight Access Point Protocol ( LWAPP ) 
        
This is a generic protocol that defines the 
communication between the Access Points and the
Central Controller.
        
Mobile Node ( MN )
        
A roaming 802.11 wireless device in a wireless
network associated with an access point. Mobile Node,
Mobile Station(Ms) and client are used interchangeably. 
        
Web-Authentication 
        
Clients are web authenticated, when clients open the 
web-browser and send HTTP packets. Then user is asked
to enter login and password. This is known as Web 
Authentication. 
        
REFERENCE
        
[1] Wireless LAN Medium Access Control ( MAC ) and
Physical Layer ( PHY ) Specifications.
        
[2] Draft-obara-capwap-lwapp-00.txt, IETF Light 
Weight Access Point Protocol
    
Source file
CISCO-LWAPP-WEBAUTH-MIB
Last revised
Identity
ciscoLwappWebAuthMIB
Base OID
1.3.6.1.4.1.9.9.515
Imported Objects
CISCO-LWAPP-AP-MIB cLApName
CISCO-LWAPP-TC-MIB CLWebAuthType
CISCO-LWAPP-WLAN-MIB cLWlanIndex (no object page)
CISCO-SMI ciscoMgmt
CISCO-TC CiscoURLString
INET-ADDRESS-MIB InetAddress InetAddressType
SNMP-FRAMEWORK-MIB SnmpAdminString
SNMPv2-CONF MODULE-COMPLIANCE (no object page) NOTIFICATION-GROUP (no object page) OBJECT-GROUP (no object page)
SNMPv2-SMI Counter32 Counter64 Gauge32 Integer32 MODULE-IDENTITY (no object page) NOTIFICATION-TYPE (no object page) OBJECT-TYPE (no object page) TimeTicks Unsigned32
SNMPv2-TC MacAddress RowStatus TimeStamp TruthValue
Net-SNMP examples using the cisco MIB directory Show commands

These commands use the standard Observium installation path and load the selected MIB variant before the RFC and Net-SNMP directories.

Translate the module identity
/usr/bin/snmptranslate -Pud -Ir -On -m 'CISCO-LWAPP-WEBAUTH-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'CISCO-LWAPP-WEBAUTH-MIB::ciscoLwappWebAuthMIB'
Walk the MIB subtree
/usr/bin/snmpbulkwalk -v2c -c '<community>' -Pud -Ir -OQUs -m 'CISCO-LWAPP-WEBAUTH-MIB' -M '/opt/observium/mibs/cisco:/opt/observium/mibs/rfc:/opt/observium/mibs/net-snmp' 'udp:<hostname>:161' 'CISCO-LWAPP-WEBAUTH-MIB::ciscoLwappWebAuthMIB'
How SNMP, Net-SNMP, MIB paths, and variants work
Objects (106)
.1.3.6.1.4.1.9.9.515
.1.3.6.1.4.1.9.9.515.0
.1.3.6.1.4.1.9.9.515.1
OctetString
.1.3.6.1.4.1.9.9.515.1.1
.1.3.6.1.4.1.9.9.515.2
.1.3.6.1.4.1.9.9.515.2.1
Enumeration
.1.3.6.1.4.1.9.9.515.2.1.1
.1.3.6.1.4.1.9.9.515.2.1.10
.1.3.6.1.4.1.9.9.515.2.1.11
.1.3.6.1.4.1.9.9.515.2.1.12
Enumeration
.1.3.6.1.4.1.9.9.515.2.1.13
.1.3.6.1.4.1.9.9.515.2.1.14
.1.3.6.1.4.1.9.9.515.2.1.2
.1.3.6.1.4.1.9.9.515.2.1.3
OctetString
.1.3.6.1.4.1.9.9.515.2.1.4
cLWACustomWebMessage deprecated r/w
.1.3.6.1.4.1.9.9.515.2.1.5
.1.3.6.1.4.1.9.9.515.2.1.6
.1.3.6.1.4.1.9.9.515.2.1.7
.1.3.6.1.4.1.9.9.515.2.1.8
.1.3.6.1.4.1.9.9.515.2.1.8.1
.1.3.6.1.4.1.9.9.515.2.1.8.1.1
.1.3.6.1.4.1.9.9.515.2.1.8.1.2
.1.3.6.1.4.1.9.9.515.2.1.8.1.3
.1.3.6.1.4.1.9.9.515.2.1.8.1.4
.1.3.6.1.4.1.9.9.515.2.1.8.1.5
.1.3.6.1.4.1.9.9.515.2.1.8.1.6
OctetString
.1.3.6.1.4.1.9.9.515.2.1.8.1.7
Enumeration
.1.3.6.1.4.1.9.9.515.2.1.8.1.8
OctetString
.1.3.6.1.4.1.9.9.515.2.1.9
.1.3.6.1.4.1.9.9.515.2.2
.1.3.6.1.4.1.9.9.515.2.2.1
.1.3.6.1.4.1.9.9.515.2.2.1.1
Unsigned32
.1.3.6.1.4.1.9.9.515.2.2.1.1.1
.1.3.6.1.4.1.9.9.515.2.2.1.1.2
.1.3.6.1.4.1.9.9.515.2.2.1.1.3
.1.3.6.1.4.1.9.9.515.2.2.1.1.4
.1.3.6.1.4.1.9.9.515.2.3
.1.3.6.1.4.1.9.9.515.2.3.1
.1.3.6.1.4.1.9.9.515.2.3.1.1
.1.3.6.1.4.1.9.9.515.2.3.1.1.1
.1.3.6.1.4.1.9.9.515.2.3.1.1.2
OctetString
.1.3.6.1.4.1.9.9.515.2.3.1.1.3
.1.3.6.1.4.1.9.9.515.2.3.1.1.4
.1.3.6.1.4.1.9.9.515.2.3.1.1.5
.1.3.6.1.4.1.9.9.515.2.3.1.1.6
Unsigned32
.1.3.6.1.4.1.9.9.515.2.3.2
Unsigned32
.1.3.6.1.4.1.9.9.515.2.3.3
.1.3.6.1.4.1.9.9.515.2.3.4
.1.3.6.1.4.1.9.9.515.2.3.4.1
.1.3.6.1.4.1.9.9.515.2.3.4.1.1
KbpsUnsigned32
.1.3.6.1.4.1.9.9.515.2.3.4.1.2
KbpsUnsigned32
.1.3.6.1.4.1.9.9.515.2.3.4.1.3
KbpsUnsigned32
.1.3.6.1.4.1.9.9.515.2.3.4.1.4
KbpsUnsigned32
.1.3.6.1.4.1.9.9.515.2.3.4.1.5
.1.3.6.1.4.1.9.9.515.2.3.4.1.6
.1.3.6.1.4.1.9.9.515.2.4
.1.3.6.1.4.1.9.9.515.2.4.1
.1.3.6.1.4.1.9.9.515.2.4.1.1
.1.3.6.1.4.1.9.9.515.2.4.1.1.1
.1.3.6.1.4.1.9.9.515.2.5
.1.3.6.1.4.1.9.9.515.2.5.1
.1.3.6.1.4.1.9.9.515.2.5.1.1
OctetString
.1.3.6.1.4.1.9.9.515.2.5.1.1.1
.1.3.6.1.4.1.9.9.515.2.5.1.1.10
.1.3.6.1.4.1.9.9.515.2.5.1.1.2
.1.3.6.1.4.1.9.9.515.2.5.1.1.3
.1.3.6.1.4.1.9.9.515.2.5.1.1.4
.1.3.6.1.4.1.9.9.515.2.5.1.1.5
.1.3.6.1.4.1.9.9.515.2.5.1.1.6
.1.3.6.1.4.1.9.9.515.2.5.1.1.7
.1.3.6.1.4.1.9.9.515.2.5.1.1.8
.1.3.6.1.4.1.9.9.515.2.5.1.1.9
.1.3.6.1.4.1.9.9.515.2.6
.1.3.6.1.4.1.9.9.515.2.6.1
.1.3.6.1.4.1.9.9.515.2.6.1.1
.1.3.6.1.4.1.9.9.515.2.6.1.1.1
.1.3.6.1.4.1.9.9.515.2.6.1.1.2
.1.3.6.1.4.1.9.9.515.2.6.1.1.3
.1.3.6.1.4.1.9.9.515.2.6.1.1.4
.1.3.6.1.4.1.9.9.515.2.7
.1.3.6.1.4.1.9.9.515.2.7.1
.1.3.6.1.4.1.9.9.515.2.7.1.1
.1.3.6.1.4.1.9.9.515.2.7.1.1.1
.1.3.6.1.4.1.9.9.515.2.7.1.1.10
.1.3.6.1.4.1.9.9.515.2.7.1.1.11
.1.3.6.1.4.1.9.9.515.2.7.1.1.12
.1.3.6.1.4.1.9.9.515.2.7.1.1.13
.1.3.6.1.4.1.9.9.515.2.7.1.1.14
.1.3.6.1.4.1.9.9.515.2.7.1.1.2
.1.3.6.1.4.1.9.9.515.2.7.1.1.3
.1.3.6.1.4.1.9.9.515.2.7.1.1.4
.1.3.6.1.4.1.9.9.515.2.7.1.1.5
.1.3.6.1.4.1.9.9.515.2.7.1.1.6
.1.3.6.1.4.1.9.9.515.2.7.1.1.7
.1.3.6.1.4.1.9.9.515.2.7.1.1.8
.1.3.6.1.4.1.9.9.515.2.7.1.1.9
.1.3.6.1.4.1.9.9.515.2.8
.1.3.6.1.4.1.9.9.515.2.8.1
.1.3.6.1.4.1.9.9.515.2.8.2
.1.3.6.1.4.1.9.9.515.2.8.3
.1.3.6.1.4.1.9.9.515.2.8.4
.1.3.6.1.4.1.9.9.515.2.8.5
.1.3.6.1.4.1.9.9.515.2.8.6
.1.3.6.1.4.1.9.9.515.3
.1.3.6.1.4.1.9.9.515.3.1
.1.3.6.1.4.1.9.9.515.3.2
Dependencies (16) 10 direct · 6 transitive 1 circular Show tree and compile order Hide dependency details

Each imported module is resolved in the importing module's source directory first, then through the normal default-variant rules.

Circular imports detected
CISCO-LWAPP-AP-MIB → CISCO-LWAPP-DOT11-MIB → CISCO-LWAPP-AP-MIB
Dependency tree
Conformance Groups (12)
This collection of objects is used for internal-
default and internal-custom web-authentication.
cLWACustomWebAuthGroup object is superseded by
cLWACustomWebAuthGroupRev1.
.1.3.6.1.4.1.9.9.515.3.2.1
This collection of objects is used for configuring
Web servers for external web-authentication.
.1.3.6.1.4.1.9.9.515.3.2.2
This collection of objects are part of the Guest
Access related notifications by the controller.
.1.3.6.1.4.1.9.9.515.3.2.3
These notifications are sent to the network
management station to indicate the access status
of guest users.
.1.3.6.1.4.1.9.9.515.3.2.4
This collection of objects is used for configuring
guest user's parameters.
.1.3.6.1.4.1.9.9.515.3.2.5
This collection of objects is used for configuring WebAuth
Proxy Redirection parameters.
.1.3.6.1.4.1.9.9.515.3.2.6
This collection of objects represents the status of guest
user.
.1.3.6.1.4.1.9.9.515.3.2.7
This collection of objects is used for configuring local net
user's parameters.
.1.3.6.1.4.1.9.9.515.3.2.8
These notifications are sent to the network management station
to indicate the access status of guest users.
.1.3.6.1.4.1.9.9.515.3.2.9
This collection of objects is used for configuring Web servers
for web-authentication.
.1.3.6.1.4.1.9.9.515.3.2.10
This collection of objects is used for internal-
default and internal-custom web-authentication.
.1.3.6.1.4.1.9.9.515.3.2.11
This collection of objects provides the statistics of portal
server about web-authentication.
.1.3.6.1.4.1.9.9.515.3.2.12
Compliance Statements (3)

OID .1.3.6.1.4.1.9.9.515.3.1.1
The compliance statement for the SNMP entities that
implement the ciscoLwappWebAuthMIB module.
Required groups
Object refinements
ObjectAccessSyntaxDescription
cLWAExternalWebServerRowStatus
active(1), createAndGo(4), destroy(6)
An implementation is only required to support
three of the six enumerated values of the
RowStatus textual convention, specifically,
'active', 'createAndGo' and 'destroy'.

OID .1.3.6.1.4.1.9.9.515.3.1.2
The compliance statement for the SNMP entities that
implement the ciscoLwappWebAuthMIB module.
Required groups
Object refinements
ObjectAccessSyntaxDescription
cLWAExternalWebServerRowStatus
active(1), createAndGo(4), destroy(6)
An implementation is only required to support
three of the six enumerated values of the
RowStatus textual convention, specifically,
'active', 'createAndGo' and 'destroy'.

OID .1.3.6.1.4.1.9.9.515.3.1.3
The compliance statement for the SNMP entities that
implement the ciscoLwappWebAuthMIB module.
Required groups
Object refinements
ObjectAccessSyntaxDescription
cLWAExternalWebServerRowStatus
active(1), createAndGo(4), destroy(6)
An implementation is only required to support
three of the six enumerated values of the
RowStatus textual convention, specifically,
'active', 'createAndGo' and 'destroy'.
Notifications / Traps (5)
NameOIDDescription
.1.3.6.1.4.1.9.9.515.0.1
This notification is generated when the lifetime of the
guest-user expires and the guest-user's accounts are
removed.
.1.3.6.1.4.1.9.9.515.0.2
This notification is generated when the guest user is added.
.1.3.6.1.4.1.9.9.515.0.3
This notification is generated when the guest user is
logged in.
.1.3.6.1.4.1.9.9.515.0.4
This notification is generated when the guest user is logged
out.
.1.3.6.1.4.1.9.9.515.0.5
This notification is generated when portal server is
unreachable/recovered.