MIBs Depot

CISCO-LWAPP-WLAN-POLICY-MIB

Registered at
1.3.6.1.4.1.9.9.853
Last updated
2019-11-20 00:00
Organization
Cisco Systems Inc.
Revisions
2019-11-20 00:00, 2019-07-23 00:00, 2019-03-15 00:00, 2019-01-18 00:00, 2018-08-20 00:00, 2018-03-19 00:00
Namespace
cisco
Source file
CISCO-LWAPP-WLAN-POLICY-MIB
Digest
sha256:e1f1f23f0f0a7803f3a3a5a3304d82994b370a2a80743f7a8593ef9836da7ea2

Description

This MIB is intended to be implemented on all those devices operating as Central Controllers (CC) that terminate the Light Weight Access Point Protocol tunnel from Cisco Light-weight LWAPP Access Points. This MIB helps to manage the WLANs on the controller. The relationship between CC and the LWAPP APs can be depicted as follows: +......+ +......+ +......+ +......+ + + + + + + + + + CC + + CC + + CC + + CC + + + + + + + + + +......+ +......+ +......+ +......+ .. . . . .. . . . . . . . . . . . . . . . . . . . . . . . +......+ +......+ +......+ +......+ +......+ + + + + + + + + + + + AP + + AP + + AP + + AP + + AP + + + + + + + + + + + +......+ +......+ +......+ +......+ +......+ . . . . . . . . . . . . . . . . . . . . . . . . +......+ +......+ +......+ +......+ +......+ + + + + + + + + + + + MN + + MN + + MN + + MN + + MN + + + + + + + + + + + +......+ +......+ +......+ +......+ +......+ The LWAPP tunnel exists between the controller and the APs. The MNs communicate with the APs through the protocol defined by the 802.11 standard. LWAPP APs, upon bootup, discover and join one of the controllers and the controller pushes the configuration, that includes the WLAN parameters, to the LWAPP APs. The APs then encapsulate all the 802.11 frames from wireless clients inside LWAPP frames and forward the LWAPP frames to the controller. GLOSSARY Access Point ( AP ) An entity that contains an 802.11 medium access control ( MAC ) and physical layer ( PHY ) interface and provides access to the distribution services via the wireless medium for associated clients. LWAPP APs encapsulate all the 802.11 frames in LWAPP frames and sends it to the controller to which it is logically connected to. Central Controller ( CC ) The central entity that terminates the LWAPP protocol tunnel from the LWAPP APs. Throughout this MIB, this entity also referred to as 'controller'. Light Weight Access Point Protocol ( LWAPP ) This is a generic protocol that defines the communication between the Access Points and the controllers. Mobile Node ( MN ) A roaming 802.11 wireless device in a wireless network associated with an access point. Access Control List ( ACL ) A list of rules used to restrict the traffic reaching an interface or the CPU or WLAN. Each ACL is an ordered set of rules and actions. If a rule matches then the action for that rule is applied to the packet. 802.1x The IEEE ratified standard for enforcing port based access control. This was originally intended for use on wired LANs and later extended for use in 802.11 WLAN environments. This defines an architecture with three main parts - a supplicant (Ex. an 802.11 wireless client), an authenticator (the AP) and an authentication server(a Radius server). The authenticator passes messages back and forth between the supplicant and the authentication server to enable the supplicant get authenticated to the network. Temporal Key Integrity Protocol ( TKIP ) A security protocol defined to enhance the limitations of WEP. Message Integrity Check and per-packet keying on all WEP-encrypted frames are two significant enhancements provided by TKIP to WEP. Cisco Key Integrity Protocol ( CKIP ) A proprietary implementation similar to TKIP. CKIP implements key permutation for protecting the CKIP key against attacks. Other features of CKIP include expansion of encryption key to 16 bytes of length for key protection and MIC to ensure data integrity. Wired Equivalent Privacy ( WEP ) A security method defined by 802.11. WEP uses a symmetric key stream cipher called RC4 to encrypt the data packets. Wi-Fi Protected Access ( WPA ) Wi-Fi Protected Access (WPA and WPA2) are security systems created in response to several serious weaknesses found in Wired Equivalent Privacy (WEP). WPA implements the majority of the IEEE 802.11i standard, and was intended as an intermediate measure to take the place of WEP while 802.11i was prepared. WPA is designed to work with all wireless network interface cards, but not necessarily with first generation wireless access points. WLAN Layer 2 Security WLAN layer 2 (MAC) security defines the encryption and authentication approaches such as 802.1x, WPA, WPA2, CKIP and WEP. Delivery Traffic Indication Map ( DTIM ) DTIM is measured in beacon intervals and is the time period during which multicast/broadcast packets are sent to clients. This helps client to go in Power Saving mode and helps to save battery power. Network Admission Control (NAC) Cisco NAC uses the network infrastructure to enforce security policy compliance on all devices that seek to access network computing resources. With the Cisco NAC appliance, network administrators can authenticate, authorize, evaluate, and remediate wired, wireless, and remote users and their machines prior to network access. The Cisco NAC appliance identifies whether networked devices such as laptops, IP phones, or game consoles are compliant with network security policies, and repairs any vulnerabilities before it permits access to the network. Out of Band (OOB) Out-of-band deployments require user traffic to traverse through the NAC appliance only within authentication, posture assessment, and remediation. When a user is authenticated and passes all policy checks, the traffic is switched normally through the network and bypasses the NAC server. Band Select The 2.4 GHz band is congested and clients have to contend with numerous performance challenges. These consist of interference from Bluetooth, microwave ovens, cordless phones, etc.; protection mechanisms from 802.11b legacy clients; and co-channel interference from other access points due to 802.11bg?s limit of three non-overlapping channels. Allowing client Wi-Fi radios capable of dual band (2.4 and 5 GHz) operation move to the less congested 5 GHz radios would improve the overall performance of the network. The Band Select algorithm is based on probe response suppression on clients 2.4G radio. The feature is OFF by default and has to be manually switched ON globally for a WLC. It can be optionally over-ridden per-SSID to disallow it. Network Access Identifier ( NAI ) In order to provide roaming services, it is necessary to have a standardized method for identifying users. NAI is actually the user identity submitted by the client during network authentication. KTS (Key Telephone System) Key Telephone System is an alternative to a private branch exchange (PBX) phone system. A KTS is equipped with several buttons that allow a caller to directly select outgoing lines or incoming calls, and use intercom and conference facilities. NAS-ID (Network Access Server Identifier) NAS-ID string is sent to Radius server by WLC (as radius client) via authentication request, which can be used to classify users to different groups then radius server can reply a customized authentication response. Quality of Service (QoS) The quality of service (QoS) refers to several related aspects of telephony and computer networks that allow the transport of traffic with special requirements. In particular, much technology has been developed to allow computer networks to become as useful as telephone networks for audio conversations, as well as supporting new applications with even stricter service demands. Virtual LAN (VLAN) In computer networking, virtual local area network, virtual LAN or VLAN is a concept of partitioning a physical network, so that distinct broadcast domains are created. This is usually achieved on switch or router devices. Application Visibility and Control (AVC) Application visibility and control (AVC) refers to the capability of a network to identify which layer 7 applications are producing the flows traversing the network. This information is typically presented as packet or byte statistics. Netflow is used to specify which information is to be collected for each flow. Multicast Domain Name System (mDNS) This is the underlying protocol that is used for Service advertisement and discovery in technologies like Bonjour, Zero Touch Configuration REFERENCE [1] Wireless LAN Medium Access Control ( MAC ) and Physical Layer ( PHY ) Specifications. [2] Draft-obara-capwap-lwapp-00.txt, IETF Light Weight Access Point Protocol [3] IEEE 802.11 - The original 1 Mbit/s and 2 Mbit/s, 2.4 GHz RF and IR standard.

Contact

Cisco Systems, Customer Service Postal: 170 West Tasman Drive San Jose, CA 95134 USA Tel: +1 800 553-NETS E-mail: cs-wnbu-snmp@cisco.com

Imports

FromSymbols
CISCO-SMIciscoMgmt
SNMP-FRAMEWORK-MIBSnmpAdminString
SNMPv2-CONFMODULE-COMPLIANCE, NOTIFICATION-GROUP, OBJECT-GROUP
SNMPv2-SMIIpAddress, MODULE-IDENTITY, NOTIFICATION-TYPE, OBJECT-IDENTITY, OBJECT-TYPE, Unsigned32, iso
SNMPv2-TCDisplayString, RowStatus, TEXTUAL-CONVENTION, TruthValue

Imported by

2 module(s) in this corpus import this one.

Load order

Every file a consumer needs in order to load this module, dependencies first.

CISCO-LWAPP-WLAN-POLICY-MIB
CISCO-SMI
SNMP-FRAMEWORK-MIB
SNMPv2-CONF
SNMPv2-SMI
SNMPv2-TC

Objects

NameOIDSyntaxAccessStatus
ciscoLwappWlanPolicyMIBNotifs
OBJECT-IDENTITY
1.3.6.1.4.1.9.9.853.0
ciscoLwappWlanPolicyMIBObjects
OBJECT-IDENTITY
1.3.6.1.4.1.9.9.853.1
ciscoLwappWlanPolicyConfig
OBJECT-IDENTITY
1.3.6.1.4.1.9.9.853.1.2
cLWlanPolicyConfigTable
OBJECT-TYPE
This table represents the WLAN policy configuration sent by the controller to the LWAPP APs for their operation. LWAPP APs exchange configuration messages with the controller and get the required configuration for their 802.11 related operations. As part of these messages, the WLAN configuration is pushed by the controller to the LWAPP APs. Rows are added or deleted by explicit management actions initiated by the user from a network management station through the cLWlanPlcyRowStatus object.
1.3.6.1.4.1.9.9.853.1.2.1not-accessiblecurrent
cLWlanPolicyConfigEntry
OBJECT-TYPE
Each entry in this table represents the WLAN policy configuration sent by the controller to LWAPP APs for use during their operations. Entries can be added/deleted by explicit management actions by NMS or by user console.
1.3.6.1.4.1.9.9.853.1.2.1.1not-accessiblecurrent
cLWlanWlanPolicyName
OBJECT-TYPE
This object specifies one instance of a WLAN policy on the controller.
1.3.6.1.4.1.9.9.853.1.2.1.1.1SnmpAdminString (SIZE(1..64))not-accessiblecurrent
cLWlanPlcyRowStatus
OBJECT-TYPE
This object specifies the status column for this row and used to create, modify and delete specific instances of rows in this table. This table supports modification of writable objects when the RowStatus is 'active'. The following objects are mandatory for successful creation of an entry: cLWlanPolicyName.
1.3.6.1.4.1.9.9.853.1.2.1.1.2RowStatusread-createcurrent
cLWlanPolicyDescription
OBJECT-TYPE
This object specifies the description associated to this WLAN policy.This can be any user defined string.
1.3.6.1.4.1.9.9.853.1.2.1.1.3SnmpAdminString (SIZE(0..64))read-writecurrent
cLWlanPolicyInterfaceName
OBJECT-TYPE
This object represents the interface attached to the wireless lan.
1.3.6.1.4.1.9.9.853.1.2.1.1.4SnmpAdminString (SIZE(0..32))read-writecurrent
cLWlanPolicyCentralSwitchMode
OBJECT-TYPE
This object allows the user to enable or disable Central switching for wlan. A value of 'true' indicates Central Switching is enabled and Local Switching is disabled. A value of 'false' indicates Cental Switching is disabled and Local Switching is enabled.
1.3.6.1.4.1.9.9.853.1.2.1.1.5TruthValueread-writecurrent
cLWlanPolicyCentralAuthMode
OBJECT-TYPE
This object allows the user to enable or disable central authentication for the wlan. A value of 'true' indicates central authentication is enabled. A value of 'false' indicates local authentication is disabled.
1.3.6.1.4.1.9.9.853.1.2.1.1.6TruthValueread-writecurrent
cLWlanPolicyDhcpCentral
OBJECT-TYPE
This object indicates the behavior of the Access Point when switching the data frames of the clients associated to it through the WLAN policy identified by policy profile name. A value of 'true' indicates dhcp central is enabled. A value of 'false' indicates dhcp central is disabled. Note that the value of 'true' will be effective only if the WLAN is configured on a Access Point.
1.3.6.1.4.1.9.9.853.1.2.1.1.7TruthValueread-writecurrent
cLWlanPolicyNatPatEnabled
OBJECT-TYPE
This object specifies whether Network Address Translation (NAT) and Port Address Translation (PAT) are enabled on this WLAN. This can be enabled only when cLReapWlanDhcpCentral is set to 'true'. A value of 'true' indicates NATPAT is enabled. A value of 'false' indicates NATPAT is disabled. Note that the value of 'true' will be effective only if the WLAN is configured as Locally Switched.
1.3.6.1.4.1.9.9.853.1.2.1.1.9TruthValueread-writecurrent
cLWlanPolicyAssocCentral
OBJECT-TYPE
This object indicates the behavior of the REAP when handling the (re-)association management frames from associated to it through the WLAN policy identified by policy profile name. A value of 'true' indicates AssocCentral is enabled. A value of 'false' indicates AssocCentral is disabled. Note that the value of 'true' will be effective only if the WLAN is configured on a REAP.
1.3.6.1.4.1.9.9.853.1.2.1.1.10TruthValueread-writecurrent
cLWlanPolicyIPv4AclName
OBJECT-TYPE
This object specifies the IPV4 ACL Name for wlan.
1.3.6.1.4.1.9.9.853.1.2.1.1.11SnmpAdminString (SIZE(0..64))read-writecurrent
cLWlanPolicyIPv6AclName
OBJECT-TYPE
This object specifies the IPV6 ACL Name for wlan.
1.3.6.1.4.1.9.9.853.1.2.1.1.12SnmpAdminString (SIZE(0..64))read-writecurrent
cLWlanPolicyL2AclName
OBJECT-TYPE
This object specifies the name of the L2ACL applied to this WLAN. If it is required to remove the ACL name for a WLAN, it should be set to 'none'.
1.3.6.1.4.1.9.9.853.1.2.1.1.13SnmpAdminString (SIZE(0..64))read-writecurrent
cLWlanPolicySessionTimeout
OBJECT-TYPE
This object specifies the session timeout to be applied on client using a Policy.
1.3.6.1.4.1.9.9.853.1.2.1.1.14Unsigned32 (20..86400)read-writecurrent
cLWlanPolicyUserIdleTimeout
OBJECT-TYPE
This object specifies the timeout value of user for a WLAN.
1.3.6.1.4.1.9.9.853.1.2.1.1.15Unsigned32 (15..100000)read-writecurrent
cLWlanPolicyClientExclTimeout
OBJECT-TYPE
This object specifies the client exclusiontimeout value of user for a WLAN. Modifying the timeout to zero (0) means the client will be excluded indefinitely until it is manually removed from the exclusion list
1.3.6.1.4.1.9.9.853.1.2.1.1.16Unsigned32 (0..2147483647)read-writecurrent
cLWlanPolicyNativeProfiling
OBJECT-TYPE
This object specfies to enable or disable client device classification. A value of 'true' indicates native profiling is enabled. A value of 'false' indicates native profiling is disabled.
1.3.6.1.4.1.9.9.853.1.2.1.1.17TruthValueread-writecurrent
cLWlanPolicySubscriberPolicyName
OBJECT-TYPE
This object specifies a native profiling classification policy configured on the Wireless LAN Controller.
1.3.6.1.4.1.9.9.853.1.2.1.1.18SnmpAdminString (SIZE(0..64))read-writecurrent
cLWlanPolicyHttpDeviceProfiling
OBJECT-TYPE
This object specfies the client local profiling on a wlan. A value of 'true' indicates http device profiling is enabled. A value of 'false' indicate http device profiling is disabled.
1.3.6.1.4.1.9.9.853.1.2.1.1.19TruthValueread-writecurrent
cLWlanPolicyDHCPDeviceProfiling
OBJECT-TYPE
This object specfies the client dhcp profiling on a wlan. A value of 'true' indicates dhcp device profiling is enabled. A value of 'false' indicates dhcp device profiling is disabled.
1.3.6.1.4.1.9.9.853.1.2.1.1.20TruthValueread-writecurrent
cLWlanPolicyNetflowIPv4InputMonitorName
OBJECT-TYPE
This object specifies the input IPv4 Netflow Monitor name assigned to this WLAN. An empty string specifies no flow monitor is being associated to WLAN policy profile. An empty flow monitor name should be used to de-associate the monitor from the profile.
1.3.6.1.4.1.9.9.853.1.2.1.1.21SnmpAdminString (SIZE(0..64))read-writedeprecated
cLWlanPolicyNetflowIPv4OutputMonitorName
OBJECT-TYPE
This object specifies the output IPv4 Netflow Monitor name assigned to this WLAN. An empty string specifies no flow monitor is being associated to WLAN policy profile. An empty flow monitor name should be used to de-associate the monitor from the profile.
1.3.6.1.4.1.9.9.853.1.2.1.1.22SnmpAdminString (SIZE(0..64))read-writedeprecated
cLWlanPolicyNetflowIPv6InputMonitorName
OBJECT-TYPE
This object specifies the input IPv6 Netflow Monitor name assigned to this WLAN. An empty string specifies no flow monitor is being associated to WLAN policy profile. An empty flow monitor name should be used to de-associate the monitor from the profile.
1.3.6.1.4.1.9.9.853.1.2.1.1.23SnmpAdminString (SIZE(0..64))read-writedeprecated
cLWlanPolicyNetflowIPv6OutputMonitorName
OBJECT-TYPE
This object specifies the output IPv6 Netflow Monitor name assigned to this WLAN. An empty string specifies no flow monitor is being associated to WLAN policy profile. An empty flow monitor name should be used to de-associate the monitor from the profile.
1.3.6.1.4.1.9.9.853.1.2.1.1.24SnmpAdminString (SIZE(0..64))read-writedeprecated
cLWlanPolicyQosPerSSIDInput
OBJECT-TYPE
This object specifies the per ssid ingress service name.
1.3.6.1.4.1.9.9.853.1.2.1.1.25SnmpAdminString (SIZE(0..64))read-writecurrent
cLWlanPolicyQosPerSSIDOutput
OBJECT-TYPE
This object specifies the per ssid egress service name.
1.3.6.1.4.1.9.9.853.1.2.1.1.26SnmpAdminString (SIZE(0..64))read-writecurrent
cLWlanPolicyQosPerBSSIDInput
OBJECT-TYPE
This object specifies the per client ingress service name.
1.3.6.1.4.1.9.9.853.1.2.1.1.27SnmpAdminString (SIZE(0..64))read-writecurrent
cLWlanPolicyQosPerBSSIDOutput
OBJECT-TYPE
This object specifies the per client egress service name.
1.3.6.1.4.1.9.9.853.1.2.1.1.28SnmpAdminString (SIZE(0..64))read-writecurrent
cLWlanPolicyBlacklistTimeout
OBJECT-TYPE
This object specifies the timeout for blacklisted Mobile Stations after which the mobile station will be automatically de-authenticated. Mobile Station are blacklisted by MAC address and their status can be obtained from bsnMobileStationStatus. A timeout setting of 0 indicates no blacklist timeout is set and administrative control ( bsnMobileStationDeleteAction ) is required to deauthenticate the station.
1.3.6.1.4.1.9.9.853.1.2.1.1.29Unsigned32 (0..2147483647)read-writecurrent
cLWlanPolicyBlacklistingCapability
OBJECT-TYPE
This object specifies that one can enable or disable the client backlisting feature for a WLAN. A value of 'true' indicates that the clients can be blacklisted by the controller in case of repetitive auth failure and other reasons like it. A value of 'false' indicates that the clients cannot be blacklisted by the controller. The blacklist timeout value will only be effective if this feature is turned on.
1.3.6.1.4.1.9.9.853.1.2.1.1.30TruthValueread-writecurrent
cLWlanPolicyDhcpRequired
OBJECT-TYPE
This object specifies the DHCP requirement for all clients on this WLAN.
1.3.6.1.4.1.9.9.853.1.2.1.1.31INTEGER {disable(0), enable(1)}read-writecurrent
cLWlanPolicyDhcpServerIpAddress
OBJECT-TYPE
This object specifies the IP Address of the DHCP Server. Make it 0.0.0.0 or 0:0:0:0:0:0:0:0 to disable DHCP Relay. Any value other than 0.0.0.0 or 0:0:0:0:0:0:0:0 it will be assumed that DHCP Relay is turned on.
1.3.6.1.4.1.9.9.853.1.2.1.1.32IpAddressread-writecurrent
cLWlanPolicyAaaOverride
OBJECT-TYPE
This object specifies to set when aaa override is enabled. A value of 'true' indicates aaa override is enabled. A value of 'false' indicates aaa override is disabled.
1.3.6.1.4.1.9.9.853.1.2.1.1.33TruthValueread-writecurrent
cLWlanPolicyNac
OBJECT-TYPE
This object specifies to enabling/disabling NAC.
1.3.6.1.4.1.9.9.853.1.2.1.1.34TruthValueread-writecurrent
cLWlanPolicyStatus
OBJECT-TYPE
This object specifies whether the policy profile is shutdown or active. A value of 'true' indicates Wlan policy is active. A value of 'false' indicates Wlan policy is shutdown.
1.3.6.1.4.1.9.9.853.1.2.1.1.35TruthValueread-writecurrent
cLWlanPolicyRadiusHttpProfiling
OBJECT-TYPE
This object specifies the Radius http profiling.
1.3.6.1.4.1.9.9.853.1.2.1.1.36TruthValueread-writecurrent
cLWlanPolicyUserIdleThreshold
OBJECT-TYPE
This object specifies a threshold triggered timeout where if a client has not sent a threshold quota of data within the specified user idle timeout, the client is considered to be inactive and is deauthenticated. If the data sent by the client is more than the threshold quota specified within the user idle timeout, the client is considered to be active and the controller refreshes for another timeout period. If the threshold quota is exhausted within the timeout period, the timeout period is refreshed.
1.3.6.1.4.1.9.9.853.1.2.1.1.37Unsigned32 (0..4294967295)read-writecurrent
cLWlanPolicyQosFastlane
OBJECT-TYPE
This object specifies the user to enable or disable Auto Qos mode in wireless policy profile. disable - Disable of AutoQos Wireless Enterprise Policy. enterprise - Enable AutoQos Wireless Enterprise Policy. voice - Enabling Auto QoS Voice will enable call-snooping. guest - Enable AutoQos Wireless Guest Policy. fastlane - Enable AutoQos Wireless Fastlane Policy
1.3.6.1.4.1.9.9.853.1.2.1.1.38INTEGER {disable(0), enterprise(1), voice(2), guest(3), fastlane(4)}read-writecurrent
cLWlanPolicyDHCPOption82Ascii
OBJECT-TYPE
This object specifies the DHCP Option82 Ascii option. A value of 'true' enable DHCP 82 Ascii option. A value of 'false' disable DHCP 82 Ascii option.
1.3.6.1.4.1.9.9.853.1.2.1.1.39TruthValueread-writecurrent
cLWlanPolicyDHCPOption82Rid
OBJECT-TYPE
This object specifies the DHCP Option82 Rid option. A value of 'true' enable DHCP 82 option RID. A value of 'false' disable DHCP 82 option RID.
1.3.6.1.4.1.9.9.853.1.2.1.1.40TruthValueread-writecurrent
cLWlanPolicyDHCPOption82Enable
OBJECT-TYPE
This object specifies the DHCP Option82 state. A value of 'true' enable DHCP 82 option . A value of 'false' disable DHCP 82 option.
1.3.6.1.4.1.9.9.853.1.2.1.1.41TruthValueread-writecurrent
cLWlanPolicyDHCPOption82Apmac
OBJECT-TYPE
This object specifies the DHCP Option82 format Ap mac option. A value of 'true' enable DHCP 82 option based on AP radio mac. A value of 'false' disable DHCP 82 option based on AP radio mac.
1.3.6.1.4.1.9.9.853.1.2.1.1.42TruthValueread-writecurrent
cLWlanPolicyDHCPOption82Apethmac
OBJECT-TYPE
This object specifies the DHCP Option82 format Ap ethmac option. A value of 'true' enable DHCP 82 option based on AP eth mac. A value of 'false' disable DHCP 82 option based on AP eth mac.
1.3.6.1.4.1.9.9.853.1.2.1.1.43TruthValueread-writecurrent
cLWlanPolicyDHCPOption82Apname
OBJECT-TYPE
This object specifies the DHCP Option82 format Ap name option. A value of 'true' enable DHCP 82 option based on AP name. A value of 'false' disable DHCP 82 option based on AP name.
1.3.6.1.4.1.9.9.853.1.2.1.1.44TruthValueread-writecurrent
cLWlanPolicyDHCPOption82Policytag
OBJECT-TYPE
This object specifies the DHCP Option82 format Policy tag option A value of 'true' enable DHCP 82 option based on policy tag. A value of 'false' disable DHCP 82 option based on policy tag.
1.3.6.1.4.1.9.9.853.1.2.1.1.45TruthValueread-writecurrent
cLWlanPolicyDHCPOption82Aplocation
OBJECT-TYPE
This specifies represents the DHCP Option82 format Ap location option A value of 'true' enable DHCP 82 option based on Ap Location. A value of 'false' disable DHCP 82 option based on Ap Location.
1.3.6.1.4.1.9.9.853.1.2.1.1.46TruthValueread-writecurrent
cLWlanPolicyDHCPOption82Vlanid
OBJECT-TYPE
This object specifies the DHCP Option82 format Vlan_id option. A value of 'true' enable DHCP 82 option based on vlanid A value of 'false' disable DHCP 82 option based on vlanid.
1.3.6.1.4.1.9.9.853.1.2.1.1.47TruthValueread-writecurrent
cLWlanPolicyDHCPOption82Ssid
OBJECT-TYPE
This object specifies the DHCP Option82 format SSID option. A value of 'true' enable DHCP 82 option based on ssid. A value of 'false' disable DHCP 82 option based on ssid. Folowing are the combination for dhcp option82 format- AP MAC alone AP ethernet MAC alone SSID alone Policy tag alone AP location alone AP name and SSID together AP MAC and Vlan-ID together AP name and Vlan-ID together Ethernet MAC and SSID together.
1.3.6.1.4.1.9.9.853.1.2.1.1.48TruthValueread-writecurrent
cLWlanPolicySplitMacAcl
OBJECT-TYPE
This object specifies the ACL name for the split tunnel.
1.3.6.1.4.1.9.9.853.1.2.1.1.49SnmpAdminString (SIZE(0..33))read-writecurrent
cLWlanPolicyVlanCentralSwitching
OBJECT-TYPE
This object specifies whether switching will be local or central when the flag is set. A value of 'true' enable vlan based central switching. A value of 'false' disable vlan based central switching.
1.3.6.1.4.1.9.9.853.1.2.1.1.50TruthValueread-writecurrent
cLWlanPolicyPassiveClient
OBJECT-TYPE
This object specifies whether passive-client support is enabled or not on a policy.
1.3.6.1.4.1.9.9.853.1.2.1.1.54TruthValueread-writecurrent
cLWlanPolicyNBARProtocolDiscovery
OBJECT-TYPE
This object allows the user to enable or disable NBAR Protocol discovery for a wlan. A value of 'true' indicates NBAR protocol discovery is active, A value of 'false' indicates NBAR protocol discovery is disabled.
1.3.6.1.4.1.9.9.853.1.2.1.1.55TruthValueread-writecurrent
cLWlanPolicyStaticIPMobility
OBJECT-TYPE
This object specifies whether static ip mobility support is enabled or not on a policy.
1.3.6.1.4.1.9.9.853.1.2.1.1.56TruthValueread-writecurrent
clWlanPolicyMobilityAnchor
OBJECT-TYPE
This object specifies the user to enable or disable mobility anchor for a policy profile. A value of 'true' indicates mobility anchor is active. A Value of 'false' indicates mobility anchor is disabled.
1.3.6.1.4.1.9.9.853.1.2.1.1.57TruthValueread-writecurrent
cLWlanPolicyBroadcastTagging
OBJECT-TYPE
This object specifies to set when broadcast tagging is enabled. A value of 'true' indicates broadcast tagging is enabled. A value of 'false' indicates broadcast tagging is disabled.
1.3.6.1.4.1.9.9.853.1.2.1.1.58TruthValueread-writecurrent
cLWlanPolicyWgbVlan
OBJECT-TYPE
This object specifies to enabling/disabling Client VLAN. A value of 'true' indicates Client Vlan is enabled. A value of 'false' indicates Client Vlan is disabled.
1.3.6.1.4.1.9.9.853.1.2.1.1.59TruthValueread-writecurrent
cLWlanPolicyReanchorClassmap
OBJECT-TYPE
This object specifies the classmap containing the real-time protocols, identified by AVC, to monitor to decide whether a wireless client has to be reanchored to its foreign WLC.
1.3.6.1.4.1.9.9.853.1.2.1.1.60SnmpAdminString (SIZE(0..64))read-writecurrent
cLWlanUmbrellaParamMapName
OBJECT-TYPE
This object specifies a the umbrella parameter map name configured on the Wireless LAN Controller.
1.3.6.1.4.1.9.9.853.1.2.1.1.61SnmpAdminString (SIZE(0..64))read-writecurrent
cLWlanPolicyAccountingList
OBJECT-TYPE
This object specifies the Accounting List for Policy Profile.
1.3.6.1.4.1.9.9.853.1.2.1.1.62SnmpAdminString (SIZE(0..64))read-writecurrent
cLWlanPolicyAAAPolicyName
OBJECT-TYPE
This object specifies the Wireless AAA Policy Name
1.3.6.1.4.1.9.9.853.1.2.1.1.63SnmpAdminString (SIZE(0..64))read-writecurrent
cLWlanPolicyQosCallSnooping
OBJECT-TYPE
This object specifies if QoS call snooping is enabled A value of 'true' indicates call snoop is enabled. A value of 'false' indicates call snoop is disabled.
1.3.6.1.4.1.9.9.853.1.2.1.1.64TruthValueread-writecurrent
cLWlanPolicyDefaultSgt
OBJECT-TYPE
This object specifies the default security group tag.
1.3.6.1.4.1.9.9.853.1.2.1.1.65Unsigned32 (2..65519)read-writecurrent
cLWlanPolicyInlineTagging
OBJECT-TYPE
This object specifies whether inline tagging flag is enabled on a particular policy profile. A value of 'true' indicates inline tagging is enabled. A value of 'false' indicates inline tagging is disabled.
1.3.6.1.4.1.9.9.853.1.2.1.1.66TruthValueread-writecurrent
cLWlanPolicySgaclEnforcement
OBJECT-TYPE
This object specifies the security group access control lists enforcement for a policy profile
1.3.6.1.4.1.9.9.853.1.2.1.1.67TruthValueread-writecurrent
cLWlanPolicyMdnsPolicy
OBJECT-TYPE
This object specifies the mDNS service policy configured under WLAN policy.
1.3.6.1.4.1.9.9.853.1.2.1.1.68SnmpAdminString (SIZE(0..64))read-writecurrent
cLWlanPolicyHotspotAnqpServer
OBJECT-TYPE
This object specifies the Hotspot 2.0 ANQP Server
1.3.6.1.4.1.9.9.853.1.2.1.1.69SnmpAdminString (SIZE(0..255))read-writecurrent
cLWlanPolicyNacType
OBJECT-TYPE
This object specifies the type of NAC configured radius - Identity Service Engine NAC configured xwf - Express Wi-Fi NAC configured.
1.3.6.1.4.1.9.9.853.1.2.1.1.70INTEGER {radius(0), xwf(1)}read-writecurrent
cLWlanPolicyARPProxy
OBJECT-TYPE
This object specifies whether ARP proxy is enabled on a particular policy profile. A value of 'true' indicates ARP proxy is enabled. A value of 'false' indicates ARP proxy is disabled.
1.3.6.1.4.1.9.9.853.1.2.1.1.71TruthValueread-writecurrent
cLWlanPolicyIPv6proxy
OBJECT-TYPE
This object specifies the type of IPV6 proxy mode configured noproxy - no ipv6 proxy configured dadproxy - DAD proxy is configured. fullproxy - DAD and ND proxy is configured.
1.3.6.1.4.1.9.9.853.1.2.1.1.72INTEGER {noproxy(1), dadproxy(2), fullproxy(3)}read-writecurrent
cLWlanPolicyMulticastFilter
OBJECT-TYPE
This object specifies whether multicast filter is enabled on a particular policy profile. A value of 'true' indicates multicast filter is enabled. A value of 'false' indicates multicast filter is disabled.
1.3.6.1.4.1.9.9.853.1.2.1.1.73TruthValueread-writecurrent
cLWlanPolicyQBSSLoad
OBJECT-TYPE
This object specifies whether QBSSload is enabled on a particular policy profile. A value of 'true' indicates QBSSload is enabled. A value of 'false' indicates QBSSload is disabled.
1.3.6.1.4.1.9.9.853.1.2.1.1.74TruthValueread-writecurrent
cLWlanPolicyATFPolicyNameConfigTable
OBJECT-TYPE
This table represents the ATF policy name configuration for 2.4ghz and 5ghz radio interface based on band id.
1.3.6.1.4.1.9.9.853.1.2.2not-accessiblecurrent
cLWlanPolicyATFPolicyNameConfigEntry
OBJECT-TYPE
An entry into the cLWlanPolicyATFPolicyNameTable represents ATF policy name for 2.4ghz and 5ghz based on band id corresponding to WLAN policy. Entries can be added/deleted by explicit management actions by NMS or by user console.
1.3.6.1.4.1.9.9.853.1.2.2.1not-accessiblecurrent
cLWlanPolicyBandId
OBJECT-TYPE
This object uniquely identifies the ATF policy name for 24ghz and 5ghz attached to the policy profile.
1.3.6.1.4.1.9.9.853.1.2.2.1.1Unsigned32 (0..1)not-accessiblecurrent
cLWlanPolicyATFRowStatus
OBJECT-TYPE
This object specifies the row Status of the ATF policy map table.
1.3.6.1.4.1.9.9.853.1.2.2.1.2RowStatusread-createcurrent
cLWlanPolicyATFPolicyName
OBJECT-TYPE
This object represents the AirTime Fairness policy name for 24ghz and 5ghz attached to the policy profile.
1.3.6.1.4.1.9.9.853.1.2.2.1.3SnmpAdminString (SIZE(0..32))read-writecurrent
cLWlanAaaPolicyConfigTable
OBJECT-TYPE
This table represents the WLAN AAA policy configuration.
1.3.6.1.4.1.9.9.853.1.2.3not-accessiblecurrent
cLWlanAaaPolicyConfigEntry
OBJECT-TYPE
Each entry in this table represents the WLAN AAA policy configuration.
1.3.6.1.4.1.9.9.853.1.2.3.1not-accessiblecurrent
cLWlanAaaPolicyName
OBJECT-TYPE
This object specifies an AAA policy on a policy profile in a controller.
1.3.6.1.4.1.9.9.853.1.2.3.1.1SnmpAdminString (SIZE(1..64))not-accessiblecurrent
cLWlanAaaPolicyRowStatus
OBJECT-TYPE
This object specifies the status column for this row and used to create, modify and delete specific instances of rows in this table. This table supports modification of writable objects when the RowStatus is 'active'. The following objects are mandatory for successful creation of an entry: cLWlanAaaPolicyName.
1.3.6.1.4.1.9.9.853.1.2.3.1.2RowStatusread-createcurrent
cLWlanAaaPolicyNasId1
OBJECT-TYPE
This object specifies the NasId option 1. notconfigured - Not Configured sysname - System Name sysip - System IP Address sysmac - System MAC Address apip - AP's IP Address apname - AP's Name apmac - AP's MAC Address apethmac - AP's Ethernet MAC Address appolicytag - AP's Policy Tag apsitetag - AP's Site Tag ssid - SSID Name aplocation - AP's Location .
1.3.6.1.4.1.9.9.853.1.2.3.1.3INTEGER {notconfigured(0), sysname(1), sysip(2), sysmac(3), apip(4), apname(5), apmac(6), apethmac(7), appolicytag(8), apsitetag(9), ssid(10), aplocation(11)}read-writecurrent
cLWlanAaaPolicyNasId2
OBJECT-TYPE
This object specifies the NasId option 2. notconfigured - Not Configured sysname - System Name sysip - System IP Address sysmac - System MAC Address apip - AP's IP Address apname - AP's Name apmac - AP's MAC Address apethmac - AP's Ethernet MAC Address appolicytag - AP's Policy Tag apsitetag - AP's Site Tag ssid - SSID Name aplocation - AP's Location .
1.3.6.1.4.1.9.9.853.1.2.3.1.4INTEGER {notconfigured(0), sysname(1), sysip(2), sysmac(3), apip(4), apname(5), apmac(6), apethmac(7), appolicytag(8), apsitetag(9), ssid(10), aplocation(11)}read-writecurrent
cLWlanAaaPolicyNasId3
OBJECT-TYPE
This object specifies the NasId option 3. notconfigured - Not Configured sysname - System Name sysip - System IP Address sysmac - System MAC Address apip - AP's IP Address apname - AP's Name apmac - AP's MAC Address apethmac - AP's Ethernet MAC Address appolicytag - AP's Policy Tag apsitetag - AP's Site Tag ssid - SSID Name aplocation - AP's Location .
1.3.6.1.4.1.9.9.853.1.2.3.1.5INTEGER {notconfigured(0), sysname(1), sysip(2), sysmac(3), apip(4), apname(5), apmac(6), apethmac(7), appolicytag(8), apsitetag(9), ssid(10), aplocation(11)}read-writecurrent
cLWlanAaaPolicyRealm
OBJECT-TYPE
This object specifies the user to enable or disable realm. TRUE means realm enable FALSE measn realm disable
1.3.6.1.4.1.9.9.853.1.2.3.1.6TruthValueread-writecurrent
cLWlanPolicyMonitorIPv4InConfigTable
OBJECT-TYPE
This table contains the list of IPv4 flow monitors configured for AVC in the input (or ingress) direction. Rows are added or deleted by explicit management actions initiated by the user from a network management station through the cLWlanMonitorIPv4InRowStatus object.
1.3.6.1.4.1.9.9.853.1.2.4not-accessiblecurrent
cLWlanPolicyMonitorIPv4InConfigEntry
OBJECT-TYPE
Each entry in this table represents an IPv4 input flow monitor configured for AVC.
1.3.6.1.4.1.9.9.853.1.2.4.1not-accessiblecurrent
cLWlanMonitorIPv4InName
OBJECT-TYPE
This object represents an IPv4 input flow monitor name configured for the policy profile.
1.3.6.1.4.1.9.9.853.1.2.4.1.1SnmpAdminString (SIZE(0..32))not-accessiblecurrent
cLWlanMonitorIPv4InRowStatus
OBJECT-TYPE
This object specifies the status column for this row and is used to create and delete specific instances of rows in this table. This table does not contain writable objects: once the row is created, the only further actions allowed are read or delete. The dynamically created rows should not change across SNMP agent restarts The following objects are mandatory for successful creation of an entry: cLWlanWlanPolicyName, cLWlanMonitorIPv4InName.
1.3.6.1.4.1.9.9.853.1.2.4.1.2RowStatusread-createcurrent
cLWlanPolicyMonitorIPv4OutConfigTable
OBJECT-TYPE
This table contains the list of IPv4 flow monitors configured for AVC in the output (or egress) direction. Rows are added or deleted by explicit management actions initiated by the user from a network management station through the cLWlanMonitorIPv4OutRowStatus object.
1.3.6.1.4.1.9.9.853.1.2.5not-accessiblecurrent
cLWlanPolicyMonitorIPv4OutConfigEntry
OBJECT-TYPE
Each entry in this table represents an IPv4 output flow monitor configured for AVC.
1.3.6.1.4.1.9.9.853.1.2.5.1not-accessiblecurrent
cLWlanMonitorIPv4OutName
OBJECT-TYPE
This object represents an IPv4 output flow monitor name configured for the policy profile.
1.3.6.1.4.1.9.9.853.1.2.5.1.1SnmpAdminString (SIZE(0..32))not-accessiblecurrent
cLWlanMonitorIPv4OutRowStatus
OBJECT-TYPE
This object specifies the status column for this row and is used to create and delete specific instances of rows in this table. This table does not contain writable objects: once the row is created, the only further actions allowed are read or delete. The dynamically created rows should not change across SNMP agent restarts The following objects are mandatory for successful creation of an entry: cLWlanWlanPolicyName, cLWlanMonitorIPv4OutName.
1.3.6.1.4.1.9.9.853.1.2.5.1.2RowStatusread-createcurrent
cLWlanPolicyMonitorIPv6InConfigTable
OBJECT-TYPE
This table contains the list of IPv6 flow monitors configured for AVC in the input (or ingress) direction. Rows are added or deleted by explicit management actions initiated by the user from a network management station through the cLWlanMonitorIPv6InRowStatus object.
1.3.6.1.4.1.9.9.853.1.2.6not-accessiblecurrent
cLWlanPolicyMonitorIPv6InConfigEntry
OBJECT-TYPE
Each entry in this table represents an IPv6 input flow monitor configured for AVC.
1.3.6.1.4.1.9.9.853.1.2.6.1not-accessiblecurrent
cLWlanMonitorIPv6InName
OBJECT-TYPE
This object represents an IPv6 input flow monitor name configured for the policy profile.
1.3.6.1.4.1.9.9.853.1.2.6.1.1SnmpAdminString (SIZE(0..32))not-accessiblecurrent
cLWlanMonitorIPv6InRowStatus
OBJECT-TYPE
This object specifies the status column for this row and is used to create and delete specific instances of rows in this table. This table does not contain writable objects: once the row is created, the only further actions allowed are read or delete. The dynamically created rows should not change across SNMP agent restarts The following objects are mandatory for successful creation of an entry: cLWlanWlanPolicyName, cLWlanMonitorIPv6InName.
1.3.6.1.4.1.9.9.853.1.2.6.1.2RowStatusread-createcurrent
cLWlanPolicyMonitorIPv6OutConfigTable
OBJECT-TYPE
This table contains the list of IPv6 flow monitors configured for AVC in the output (or egress) direction. Rows are added or deleted by explicit management actions initiated by the user from a network management station through the cLWlanMonitorIPv6OutRowStatus object.
1.3.6.1.4.1.9.9.853.1.2.7not-accessiblecurrent
cLWlanPolicyMonitorIPv6OutConfigEntry
OBJECT-TYPE
Each entry in this table represents an IPv6 output flow monitor configured for AVC.
1.3.6.1.4.1.9.9.853.1.2.7.1not-accessiblecurrent
cLWlanMonitorIPv6OutName
OBJECT-TYPE
This object represents an IPv6 output flow monitor name configured for the policy profile.
1.3.6.1.4.1.9.9.853.1.2.7.1.1SnmpAdminString (SIZE(0..32))not-accessiblecurrent
cLWlanMonitorIPv6OutRowStatus
OBJECT-TYPE
This object specifies the status column for this row and is used to create and delete specific instances of rows in this table. This table does not contain writable objects: once the row is created, the only further actions allowed are read or delete. The dynamically created rows should not change across SNMP agent restarts The following objects are mandatory for successful creation of an entry: cLWlanWlanPolicyName, cLWlanMonitorIPv6OutName.
1.3.6.1.4.1.9.9.853.1.2.7.1.2RowStatusread-createcurrent
cLWlanPolicyCalendarProfileTable
OBJECT-TYPE
This table represent calendar profile configuration under WLAN policy
1.3.6.1.4.1.9.9.853.1.2.8not-accessiblecurrent
cLWlanPolicyCalendarProfileEntry
OBJECT-TYPE
Each entry in this table represents the information about action under calender profile for a given policy
1.3.6.1.4.1.9.9.853.1.2.8.1not-accessiblecurrent
cLWlanPolicyCalendarProfileName
OBJECT-TYPE
This object specifies unique instance of calendar profile
1.3.6.1.4.1.9.9.853.1.2.8.1.1SnmpAdminString (SIZE(1..32))not-accessiblecurrent
cLWlanPolicyCalendarProfileRowStatus
OBJECT-TYPE
This is the status column for this row and is used to create and delete specific instances of rows in this table.
1.3.6.1.4.1.9.9.853.1.2.8.1.2RowStatusread-createcurrent
cLWlanPolicyCalendarProfileWlan
OBJECT-TYPE
This object enables or disable wlan action on calender profile for a given policy profile invalid - No action is configured on calender profile enable - enables wlan action on calender profile.
1.3.6.1.4.1.9.9.853.1.2.8.1.3INTEGER {invalid(0), enable(1)}read-writecurrent
cLWlanPolicyCalendarProfileClientSession
OBJECT-TYPE
This object enables or disable client session on calender profile. invalid - No action is configured on calender profile for a client sesion block - denies client association on calender profile.
1.3.6.1.4.1.9.9.853.1.2.8.1.4INTEGER {invalid(0), block(2)}read-writecurrent
ciscoLwappWlanPolicyConform
OBJECT-IDENTITY
1.3.6.1.4.1.9.9.853.3
ciscoLwappWlanPolicyCompliances
OBJECT-IDENTITY
1.3.6.1.4.1.9.9.853.3.1
ciscoLwappWlanPolicyGroups
OBJECT-IDENTITY
1.3.6.1.4.1.9.9.853.3.2

Conformance

NameOIDStatus
ciscoLwappWlanPolicyCompliance
MODULE-COMPLIANCE
The compliance statement for the SNMP entities that implement the ciscoCapwapWlanPolicyMIB module.
1.3.6.1.4.1.9.9.853.3.1.1deprecated
ciscoLwappWlanPolicyComplianceR01
MODULE-COMPLIANCE
The compliance statement for the SNMP entities that implement the ciscoLwappWlanPolicyMIB module. This deprecates ciscoLwappWlanPolicyCompliance.
1.3.6.1.4.1.9.9.853.3.1.2deprecated
ciscoLwappWlanPolicyComplianceR02
MODULE-COMPLIANCE
The compliance statement for the SNMP entities that implement the ciscoLwappWlanPolicyMIB module. This deprecates ciscoLwappWlanPolicyComplianceR01.
1.3.6.1.4.1.9.9.853.3.1.3deprecated
ciscoLwappWlanPolicyComplianceR03
MODULE-COMPLIANCE
The compliance statement for the SNMP entities that implement the ciscoLwappWlanPolicyMIB module. This adds ciscoLwappWlanPolicyConfigGroupFlowMonitor, and deprecates ciscoLwappWlanPolicyComplianceR02.
1.3.6.1.4.1.9.9.853.3.1.4deprecated
ciscoLwappWlanPolicyComplianceR04
MODULE-COMPLIANCE
The compliance statement for the SNMP entities that implement the ciscoLwappWlanPolicyMIB module. This adds ciscoLwappWlanPolicyConfigGroupRev3, ciscoLwappWlanPolicyConfigGroupCalenderProfile and deprecates ciscoLwappWlanPolicyComplianceR03.
1.3.6.1.4.1.9.9.853.3.1.5deprecated
ciscoLwappWlanPolicyComplianceR05
MODULE-COMPLIANCE
The compliance statement for the SNMP entities that implement the ciscoLwappWlanPolicyMIB module. This adds ciscoLwappWlanPolicyConfigGroupRev4 and deprecates ciscoLwappWlanPolicyComplianceR04.
1.3.6.1.4.1.9.9.853.3.1.6current
ciscoLwappWlanPolicyConfigGroup
OBJECT-GROUP
This collection of objects represent the Policy configuration of WLAN to be passed to LWAPP AP
1.3.6.1.4.1.9.9.853.3.2.1deprecated
ciscoLwappWlanPolicyConfigGroupRev1
OBJECT-GROUP
This collection of objects represent the Policy configuration of WLAN to be passed to LWAPP AP
1.3.6.1.4.1.9.9.853.3.2.2deprecated
ciscoLwappWlanPolicyATFConfigGroup
OBJECT-GROUP
This collection of objects represent the ATF Policy name for 2.4ghz and 5ghz based on band id corresponding to WLAN policy.
1.3.6.1.4.1.9.9.853.3.2.3current
ciscoLwappWlanAaaPolicyConfigGroup
OBJECT-GROUP
This collection of objects represent the AAA Policy configuration of WLAN.
1.3.6.1.4.1.9.9.853.3.2.4current
ciscoLwappWlanPolicyConfigGroupRev2
OBJECT-GROUP
This collection of objects represents the Policy configuration of WLAN to be passed to LWAPP AP. This deprecates ciscoLwappWlanPolicyConfigGroupRev1
1.3.6.1.4.1.9.9.853.3.2.5deprecated
ciscoLwappWlanPolicyConfigGroupFlowMonitor
OBJECT-GROUP
This collection of objects represents flow monitors configured for the wireless profile policy.
1.3.6.1.4.1.9.9.853.3.2.6current
ciscoLwappWlanPolicyConfigGroupRev3
OBJECT-GROUP
This collection of objects represents the Policy configuration of WLAN to be passed to LWAPP AP. This deprecates ciscoLwappWlanPolicyConfigGroupRev2
1.3.6.1.4.1.9.9.853.3.2.7deprecated
ciscoLwappWlanPolicyConfigGroupCalenderProfile
OBJECT-GROUP
This collection of objects represents calender profile configured for the wireless profile policy.
1.3.6.1.4.1.9.9.853.3.2.8current
ciscoLwappWlanPolicyConfigGroupRev4
OBJECT-GROUP
This collection of objects represents the Policy configuration of WLAN to be passed to LWAPP AP. This deprecates ciscoLwappWlanPolicyConfigGroupRev3
1.3.6.1.4.1.9.9.853.3.2.9current