MIBs Depot

HH3C-DOT11-WIDS-MIB

Registered at
1.3.6.1.4.1.25506.2.75.5
Last updated
2010-05-31 18:00
Organization
New H3C Technologies Co., Ltd.
Revisions
2010-05-31 18:00, 2009-07-29 18:00, 2009-05-07 20:00, 2008-07-25 19:00, 2007-06-19 19:00, 2007-05-16 19:00, 2006-08-20 19:00
Namespace
comware
Source file
HH3C-DOT11-WIDS-MIB
Digest
sha256:34fee0b0f42fa4c912e8fc7f03e141f0fb4d91cb4f81a0923bfebe852b48417d

Description

This MIB provides information about WIDS feature. GLOSSARY Wireless Intrusion Detection Sensor (WIDS) WIDS is designed to be employed in an area that is serviced by an existing wireless network. It aids in the early detection of malicious outsider attacks and intrusions via wireless networks. Rogue AP A rogue access point is any Wi-Fi access point connected to the network without authorization. As it is not authorized, if there is any weakness in the AP, the hacker will have chance to compromise the network. Rogue Station It is similiar to Rogue AP, while it is a station. Monitor AP An AP will scan or listen to the air, and try to detect wireless attack in the network. Some AP products will work only in monitor role, while some AP products could switch between normal AP role (only provide wireless access service)and monitor AP role. Ad Hoc Mode Station could work under Ad hoc mode, then they could directly do peer-to-peer communication without other device support.

Contact

Platform Team New H3C Technologies Co., Ltd. Hai-Dian District Beijing P.R. China http://www.h3c.com Zip: 100085

Imports

FromSymbols
HH3C-DOT11-REF-MIBHh3cDot11ChannelScopeType, Hh3cDot11ObjectIDType, Hh3cDot11RadioScopeType, Hh3cDot11RadioType, Hh3cDot11SSIDStringType, hh3cDot11
SNMPv2-CONFMODULE-COMPLIANCE, NOTIFICATION-GROUP
SNMPv2-SMIInteger32, MODULE-IDENTITY, NOTIFICATION-TYPE, OBJECT-IDENTITY, OBJECT-TYPE, TimeTicks, Unsigned32, iso
SNMPv2-TCDateAndTime, DisplayString, MacAddress, RowStatus, TEXTUAL-CONVENTION, TruthValue

Imported by

Nothing in this corpus imports this module.

Load order

Every file a consumer needs in order to load this module, dependencies first.

HH3C-DOT11-REF-MIB
HH3C-DOT11-WIDS-MIB
HH3C-OID-MIB
SNMPv2-CONF
SNMPv2-SMI
SNMPv2-TC

Textual conventions

NameOIDSyntaxAccessStatus
Hh3cDot11WIDSAtkType
TEXTUAL-CONVENTION
The type of attack. This object has following defined values: 'act': Action Frame 'asr': Association Request 'aur': Authentication Request 'daf': Deauthentication Frame 'dar': Disassociation Request 'ndf': Null Data Frame 'pbr': Probe Request 'rar': Reassociation Request 'saf': Spoofed Disassociation Frame 'sdf': Spoofed Deauthentication Frame 'wiv': Weak IV Detected
current
Hh3cDot11WIDSDevPermitType
TEXTUAL-CONVENTION
Represents whether the detected device is permitted or a rogue.
current
Hh3cDot11WIDSDevType
TEXTUAL-CONVENTION
The type of device detected.
current

Objects

NameOIDSyntaxAccessStatus
hh3cDot11WIDSConfigGroup
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.75.5.1
hh3cDot11WIDSGlobalConfigGroup
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.75.5.1.1
hh3cDot11WIDSScanMode
OBJECT-TYPE
Represents the scope of channels to be scanned. The following value are supported all(1) - Do scan on all the channels. auto(2) - Do scan for the channels that automatically selected by WIDS.
1.3.6.1.4.1.25506.2.75.5.1.1.1INTEGER {all(1), auto(2)}read-writecurrent
hh3cDot11WIDSScanChannelList
OBJECT-TYPE
Represents the channel scope to be scanned when hh3cDot11WIDSScanMode is configurated as channelSpec mode. Each channel value will be separated by comma character.
1.3.6.1.4.1.25506.2.75.5.1.1.2OCTET STRING (SIZE(0..128))read-writeobsolete
hh3cDot11CntMsrMode
OBJECT-TYPE
Represents the countermeasures mode.
1.3.6.1.4.1.25506.2.75.5.1.1.3Bits {rogue(0), adhoc(1), config(2)}read-writecurrent
hh3cDot11DevAgingTime
OBJECT-TYPE
Represents the age time for entries in the detected device table. If an entry is not detected within the interval, it is deleted from the detected device table. If the deleted entry is that of a rogue, it is added into the rogue history table.
1.3.6.1.4.1.25506.2.75.5.1.1.4Integer32 (300..1800)read-writecurrent
hh3cDot11DynBlkListEnable
OBJECT-TYPE
Represents whether the dynamic blacklist feature is enabled or not. 'true' : Enable the dynamic blacklist feature to filter out unwanted clients, which will not get associated. 'false' : Disable the dynamic blacklist feature.
1.3.6.1.4.1.25506.2.75.5.1.1.5TruthValueread-writecurrent
hh3cDot11DynBlkListLifeTime
OBJECT-TYPE
Represents the lifetime for dynamic blacklist entries. If a dynamic blacklist entry is not detected within the lifetime, the entry will be removed from the dynamic blacklist. The lifetime becomes active only if dynamic blacklist feature is enabled.
1.3.6.1.4.1.25506.2.75.5.1.1.6Integer32 (60..3600)read-writecurrent
hh3cDot11FloodAtkDctEnable
OBJECT-TYPE
Represents whether detection of flood attack is enabled or not. 'true' : Enable the detection of flood attack. 'false' : Disable the detection of flood attack.
1.3.6.1.4.1.25506.2.75.5.1.1.7TruthValueread-writecurrent
hh3cDot11SpoofAtkDctEnable
OBJECT-TYPE
Represents whether detection of Spoof attack is enabled or not. 'true' : Enable the detection of Spoof attack. 'false' : Disable the detection of Spoof attack.
1.3.6.1.4.1.25506.2.75.5.1.1.8TruthValueread-writecurrent
hh3cDot11WeakIVAtkDctEnable
OBJECT-TYPE
Represents whether detection of weak-iv attack is enabled or not. 'true' : Enable the detection of weak-iv attack. 'false' : Disable the detection of weak-iv attack.
1.3.6.1.4.1.25506.2.75.5.1.1.9TruthValueread-writecurrent
hh3cDot11ResetWIDSRogueHistory
OBJECT-TYPE
This object is used to clear all entries from the rogue history table. It will return false for get operation.
1.3.6.1.4.1.25506.2.75.5.1.1.10TruthValueread-writecurrent
hh3cDot11ResetWIDSHistroy
OBJECT-TYPE
This object is used to clear the history information of attacks detected in the WLAN system. It will return false for get operation.
1.3.6.1.4.1.25506.2.75.5.1.1.11TruthValueread-writecurrent
hh3cDot11ResetWIDSStatistics
OBJECT-TYPE
This object is used to clear the statistics of attacks detected in the WLAN system. It will return false for get operation.
1.3.6.1.4.1.25506.2.75.5.1.1.12TruthValueread-writecurrent
hh3cDot11ResetAllDynBlkList
OBJECT-TYPE
This object is used to remove all entries from the dynamic blacklist. It will return false for get operation.
1.3.6.1.4.1.25506.2.75.5.1.1.13TruthValueread-writecurrent
hh3cDot11ResetAllStcBlkList
OBJECT-TYPE
This object is used to remove all entries from the static blacklist. It will return false for get operation.
1.3.6.1.4.1.25506.2.75.5.1.1.14TruthValueread-writecurrent
hh3cDot11ResetAllWhtBlkList
OBJECT-TYPE
This object is used to remove all entries from the static whitelist. It will return false for get operation.
1.3.6.1.4.1.25506.2.75.5.1.1.15TruthValueread-writecurrent
hh3cDot11ResetAllDctRogueAP
OBJECT-TYPE
This object is used to clear the information of all detected rogue APs. It will return false for get operation.
1.3.6.1.4.1.25506.2.75.5.1.1.16TruthValueread-writecurrent
hh3cDot11ResetAllDctRogueSta
OBJECT-TYPE
This object is used to clear the information of all detected rogue clients. It will return false for get operation.
1.3.6.1.4.1.25506.2.75.5.1.1.17TruthValueread-writecurrent
hh3cDot11ResetAllDctAdhoc
OBJECT-TYPE
This object is used to clear the information of all detected ad hoc devices. It will return false for get operation.
1.3.6.1.4.1.25506.2.75.5.1.1.18TruthValueread-writecurrent
hh3cDot11ResetAllDctDevice
OBJECT-TYPE
This object is used to clear the information of all detected devices. It will return false for get operation.
1.3.6.1.4.1.25506.2.75.5.1.1.19TruthValueread-writecurrent
hh3cDot11ResetAllDctSSID
OBJECT-TYPE
This object is used to clear the information of all detected SSIDs. It will return false for get operation.
1.3.6.1.4.1.25506.2.75.5.1.1.20TruthValueread-writecurrent
hh3cDot11WidsFloodInterval
OBJECT-TYPE
The interval of WIDS flood detection.
1.3.6.1.4.1.25506.2.75.5.1.1.21Unsigned32read-writecurrent
hh3cDot11WidsBlackListThreshold
OBJECT-TYPE
When flood attack exceeds the value of this node, the MAC address will be added into black list.
1.3.6.1.4.1.25506.2.75.5.1.1.22Unsigned32read-writecurrent
hh3cDot11SSIDFilterOnOff
OBJECT-TYPE
Represents whether the SSID permit feature is enabled or not.
1.3.6.1.4.1.25506.2.75.5.1.1.23INTEGER {on(1), off(2)}read-writecurrent
hh3cDot11BSSIDFilterOnOff
OBJECT-TYPE
Represents whether the BSSID permit feature is enabled or not.
1.3.6.1.4.1.25506.2.75.5.1.1.24INTEGER {on(1), off(2)}read-writecurrent
hh3cDot11WIDSPermitVendorTable
OBJECT-TYPE
The table provides the permitted vendor list, and each vendor will be identified by OUI. The legal device should be made by the permitted vendors.
1.3.6.1.4.1.25506.2.75.5.1.2not-accessiblecurrent
hh3cDot11WIDSPermitVendorEntry
OBJECT-TYPE
Each entry provides the information of permitted vendor.
1.3.6.1.4.1.25506.2.75.5.1.2.1not-accessiblecurrent
hh3cDot11VendorOUI
OBJECT-TYPE
Represents the vendor OUI information of the wireless device.
1.3.6.1.4.1.25506.2.75.5.1.2.1.1OCTET STRING (SIZE(3))not-accessiblecurrent
hh3cDot11PermitVendorRowStatus
OBJECT-TYPE
The status of this table entry.
1.3.6.1.4.1.25506.2.75.5.1.2.1.2RowStatusread-createcurrent
hh3cDot11VendorName
OBJECT-TYPE
Represents the vendor name of the wireless device.
1.3.6.1.4.1.25506.2.75.5.1.2.1.3OCTET STRING (SIZE(0..127))read-onlycurrent
hh3cDot11WIDSPermitSSIDTable
OBJECT-TYPE
The table represents the list of SSID could be permitted in the wireless network.
1.3.6.1.4.1.25506.2.75.5.1.3not-accessiblecurrent
hh3cDot11WIDSPermitSSIDEntry
OBJECT-TYPE
Each entry provides the information of permitted SSID.
1.3.6.1.4.1.25506.2.75.5.1.3.1not-accessiblecurrent
hh3cDot11PermitSSID
OBJECT-TYPE
Represents the permitted SSID in the wireless network.
1.3.6.1.4.1.25506.2.75.5.1.3.1.1Hh3cDot11SSIDStringType (SIZE(0..127))not-accessiblecurrent
hh3cDot11PermitSSIDRowStatus
OBJECT-TYPE
The status of this table entry.
1.3.6.1.4.1.25506.2.75.5.1.3.1.2RowStatusread-createcurrent
hh3cDot11PermitSSIDDetected
OBJECT-TYPE
Represents whether the permitted SSID is detected or not.
1.3.6.1.4.1.25506.2.75.5.1.3.1.3TruthValueread-onlycurrent
hh3cDot11WIDSIgnoreListTable
OBJECT-TYPE
The table provides the MAC address list of stations or APs, and WIDS always take them as legal stations or APs.
1.3.6.1.4.1.25506.2.75.5.1.4not-accessiblecurrent
hh3cDot11WIDSIgnoreListEntry
OBJECT-TYPE
Each entry contains the MAC address of station or AP, and WIDS always take it as legal station or AP.
1.3.6.1.4.1.25506.2.75.5.1.4.1not-accessiblecurrent
hh3cDot11IgnoreMAC
OBJECT-TYPE
Represents the MAC address of station or AP, and WIDS always take it as legal station or AP.
1.3.6.1.4.1.25506.2.75.5.1.4.1.1MacAddressnot-accessiblecurrent
hh3cDot11IgnoreListRowStatus
OBJECT-TYPE
The status of this table entry.
1.3.6.1.4.1.25506.2.75.5.1.4.1.2RowStatusread-createcurrent
hh3cDot11IgnoreMACDetected
OBJECT-TYPE
Represents whether the MAC address detected or not.
1.3.6.1.4.1.25506.2.75.5.1.4.1.3TruthValueread-onlycurrent
hh3cDot11IgnoreDevType
OBJECT-TYPE
Represents the type of the MAC address detected. The value of this object always is unknown if the MAC address is not detected.
1.3.6.1.4.1.25506.2.75.5.1.4.1.4Hh3cDot11WIDSDevTyperead-onlycurrent
hh3cDot11WIDSAttackListTable
OBJECT-TYPE
The table provides the MAC address list of rogue APs or rogue stations, the WIDS will take countermeasure as per the MAC address list.
1.3.6.1.4.1.25506.2.75.5.1.5not-accessiblecurrent
hh3cDot11WIDSAttackListEntry
OBJECT-TYPE
Each entry contains the MAC address of rogue AP or rogue station, and the countermeasure will be taken for it.
1.3.6.1.4.1.25506.2.75.5.1.5.1not-accessiblecurrent
hh3cDot11AttackDeviceMac
OBJECT-TYPE
Represents the MAC address of rogue AP or rogue station, and the countermeasure will be taken for it.
1.3.6.1.4.1.25506.2.75.5.1.5.1.1MacAddressnot-accessiblecurrent
hh3cDot11AttackListRowStatus
OBJECT-TYPE
The status of this table entry.
1.3.6.1.4.1.25506.2.75.5.1.5.1.2RowStatusread-createcurrent
hh3cDot11AttackDevDetected
OBJECT-TYPE
Represents whether the assigned MAC address in attack list is detected or not.
1.3.6.1.4.1.25506.2.75.5.1.5.1.3TruthValueread-onlycurrent
hh3cDot11AttackDevType
OBJECT-TYPE
Represents the type of detected MAC address in attack list. If the MAC address is not detected, it will return unknown(5) for get operation.
1.3.6.1.4.1.25506.2.75.5.1.5.1.4Hh3cDot11WIDSDevTyperead-onlycurrent
hh3cDot11StaticWhiteListTable
OBJECT-TYPE
The table provides the information of whitelist.
1.3.6.1.4.1.25506.2.75.5.1.6not-accessiblecurrent
hh3cDot11StaticWhiteListEntry
OBJECT-TYPE
Each entry contains the information of whitelist.
1.3.6.1.4.1.25506.2.75.5.1.6.1not-accessiblecurrent
hh3cDot11StaticWhiteListMAC
OBJECT-TYPE
Represents the MAC addresses in whitelist.
1.3.6.1.4.1.25506.2.75.5.1.6.1.1MacAddressnot-accessiblecurrent
hh3cDot11StaticWhiteListRowStatus
OBJECT-TYPE
The status of this table entry.
1.3.6.1.4.1.25506.2.75.5.1.6.1.2RowStatusread-createcurrent
hh3cDot11StaticBlackListTable
OBJECT-TYPE
The table provides the information of static blacklist.
1.3.6.1.4.1.25506.2.75.5.1.7not-accessiblecurrent
hh3cDot11StaticBlackListEntry
OBJECT-TYPE
Each entry contains the information of static blacklist.
1.3.6.1.4.1.25506.2.75.5.1.7.1not-accessiblecurrent
hh3cDot11StaticBlackListMAC
OBJECT-TYPE
Represents the MAC addresses in static blacklist.
1.3.6.1.4.1.25506.2.75.5.1.7.1.1MacAddressnot-accessiblecurrent
hh3cDot11StaticBlackListRowStatus
OBJECT-TYPE
The status of this table entry.
1.3.6.1.4.1.25506.2.75.5.1.7.1.2RowStatusread-createcurrent
hh3cDot11WIDSPermitBSSIDTable
OBJECT-TYPE
The table represents the list of BSSID could be permitted in the wireless network.
1.3.6.1.4.1.25506.2.75.5.1.8not-accessiblecurrent
hh3cDot11WIDSPermitBSSIDEntry
OBJECT-TYPE
Each entry provides the information of permitted BSSID.
1.3.6.1.4.1.25506.2.75.5.1.8.1not-accessiblecurrent
hh3cDot11PermitBSSID
OBJECT-TYPE
Represents the permitted BSSID in the wireless network.
1.3.6.1.4.1.25506.2.75.5.1.8.1.1MacAddressnot-accessiblecurrent
hh3cDot11PermitBSSIDDetected
OBJECT-TYPE
Represents whether the permitted BSSID is detected or not.
1.3.6.1.4.1.25506.2.75.5.1.8.1.2TruthValueread-onlycurrent
hh3cDot11PermitBSSIDRowStatus
OBJECT-TYPE
Represents the row status of permit BSSID table.
1.3.6.1.4.1.25506.2.75.5.1.8.1.3RowStatusread-createcurrent
hh3cDot11WIDSDetectGroup
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.75.5.2
hh3cDot11WIDSRogueAPTable
OBJECT-TYPE
The table represents the list of possible BSS information for rogue APs detected by the WIDS.
1.3.6.1.4.1.25506.2.75.5.2.1not-accessiblecurrent
hh3cDot11WIDSRogueAPEntry
OBJECT-TYPE
Each entry contains possible BSS information of each rogue AP detected by WIDS.
1.3.6.1.4.1.25506.2.75.5.2.1.1not-accessiblecurrent
hh3cDot11RogueAPBSSMAC
OBJECT-TYPE
Represents the BSS MAC address of rogue AP.
1.3.6.1.4.1.25506.2.75.5.2.1.1.1MacAddressnot-accessiblecurrent
hh3cDot11RogueAPVendorName
OBJECT-TYPE
Represents the vendor name of rogue AP.
1.3.6.1.4.1.25506.2.75.5.2.1.1.2OCTET STRING (SIZE(0..127))read-onlycurrent
hh3cDot11RogueAPMonitorNum
OBJECT-TYPE
Represents the number of monitor APs which detected the rogue AP.
1.3.6.1.4.1.25506.2.75.5.2.1.1.3Integer32read-onlycurrent
hh3cDot11RogueAPFirstDetectTm
OBJECT-TYPE
Represents the time that AP was detected as a rogue AP for the first time.
1.3.6.1.4.1.25506.2.75.5.2.1.1.4TimeTicksread-onlycurrent
hh3cDot11RogueAPLastDetectTm
OBJECT-TYPE
Represents the time that AP was detected as a rogue AP for the last time.
1.3.6.1.4.1.25506.2.75.5.2.1.1.5TimeTicksread-onlycurrent
hh3cDot11RogueAPSSID
OBJECT-TYPE
Represents the SSID broadcasted by rogue AP.
1.3.6.1.4.1.25506.2.75.5.2.1.1.6Hh3cDot11SSIDStringTyperead-onlycurrent
hh3cDot11RogueAPMaxSigStrength
OBJECT-TYPE
Represents the maximal value of signal strength that WIDS received from the rogue AP.
1.3.6.1.4.1.25506.2.75.5.2.1.1.7Integer32read-onlycurrent
hh3cDot11RogueAPChannel
OBJECT-TYPE
Represents on which radio channel of the rogue AP the maximal signal strength was received.
1.3.6.1.4.1.25506.2.75.5.2.1.1.8Hh3cDot11ChannelScopeTyperead-onlycurrent
hh3cDot11RogueAPBeaconInterval
OBJECT-TYPE
Represents the interval for Beacon management frame of rogue AP.
1.3.6.1.4.1.25506.2.75.5.2.1.1.9Integer32read-onlycurrent
hh3cDot11RogueAPAttackedStatus
OBJECT-TYPE
Represents whether the countermeasure have taken for the rogue AP.
1.3.6.1.4.1.25506.2.75.5.2.1.1.10TruthValueread-onlycurrent
hh3cDot11RogueAPToIgnore
OBJECT-TYPE
Represents whether the rogue AP will be taken as a rogue AP. If the value is true, NMS should not display the rogue AP as NMS display rogue AP list, and the MAC address will be automatically added into hh3cDot11WIDSIgnoreListTable. If the value is false, NMS will take it as a rogue AP.
1.3.6.1.4.1.25506.2.75.5.2.1.1.11TruthValueread-writecurrent
hh3cDot11RogueAPEncryptStatus
OBJECT-TYPE
Represents whether the rogue AP encrypt the frame or not.
1.3.6.1.4.1.25506.2.75.5.2.1.1.12TruthValueread-onlycurrent
hh3cDot11RogueAPReset
OBJECT-TYPE
This object is used to clear information of assigned AP. The information of AP which detect assigned rogue AP will be cleared together. It will return false for get operation.
1.3.6.1.4.1.25506.2.75.5.2.1.1.13TruthValueread-writecurrent
hh3cDot11RogueAPFirstDetectTmStr
OBJECT-TYPE
Represents the time that AP was detected as a rogue AP for the first time.
1.3.6.1.4.1.25506.2.75.5.2.1.1.14OCTET STRINGread-onlycurrent
hh3cDot11RogueAPLastDetectTmStr
OBJECT-TYPE
Represents the time that AP was detected as a rogue AP for the last time.
1.3.6.1.4.1.25506.2.75.5.2.1.1.15OCTET STRINGread-onlycurrent
hh3cDot11WIDSRogueAPExtTable
OBJECT-TYPE
As each rogue AP could be detected by multiple monitor APs, each monitor AP could have some kind of detailed information about a specific rogue AP. In the hh3cDot11WIDSRogueAPTable table, the detailed information for a specific rogue AP will be summarized from information in the hh3cDot11WIDSRogueAPExtTable table. For example, multiple monitor APs could receive RF signal of one rogue AP, and each monitor AP has its maximum signal strength by itself. The information will be kept as hh3cDot11DetectMaxAPSigStrength in the hh3cDot11WIDSRogueAPExtTable table. While only the maximum value among all the hh3cDot11DetectMaxAPSigStrength for each monitor AP will be kept in the hh3cDot11WIDSRogueAPTable as hh3cDot11RogueAPMaxSigStrength.
1.3.6.1.4.1.25506.2.75.5.2.2not-accessiblecurrent
hh3cDot11WIDSRogueAPExtEntry
OBJECT-TYPE
Each entry contains information of the rogue AP detected by each monitor AP.
1.3.6.1.4.1.25506.2.75.5.2.2.1not-accessiblecurrent
hh3cDot11WIDSAPID
OBJECT-TYPE
To uniquely identify each AP, and relation-ship between hh3cDot11WIDSAPID and AP device will be static.
1.3.6.1.4.1.25506.2.75.5.2.2.1.1Hh3cDot11ObjectIDTypenot-accessiblecurrent
hh3cDot11DetectCurAPSigStrength
OBJECT-TYPE
Represents the current value of signal strength that WIDS monitor AP received from the rogue AP.
1.3.6.1.4.1.25506.2.75.5.2.2.1.2Integer32read-onlycurrent
hh3cDot11DetectAPByChannel
OBJECT-TYPE
Represents on which radio channel that WIDS monitor AP detected the rogue AP.
1.3.6.1.4.1.25506.2.75.5.2.2.1.3Hh3cDot11ChannelScopeTyperead-onlycurrent
hh3cDot11DetectAPByRadioID
OBJECT-TYPE
Represents on which radio the monitor AP has detected the rogue AP.
1.3.6.1.4.1.25506.2.75.5.2.2.1.4Hh3cDot11RadioScopeTyperead-onlycurrent
hh3cDot11AttackAPStatus
OBJECT-TYPE
Represents whether monitor AP have taken countermeasure on the rogue AP.
1.3.6.1.4.1.25506.2.75.5.2.2.1.5TruthValueread-onlycurrent
hh3cDot11DetectAPFirstTm
OBJECT-TYPE
Represents the time that monitor AP detected the rogue AP for the first time.
1.3.6.1.4.1.25506.2.75.5.2.2.1.6TimeTicksread-onlycurrent
hh3cDot11DetectAPLastTm
OBJECT-TYPE
Represents the time that monitor AP detected the rogue AP for the last time.
1.3.6.1.4.1.25506.2.75.5.2.2.1.7TimeTicksread-onlycurrent
hh3cDot11WIDSRogueStaTable
OBJECT-TYPE
The table represents the list of rogue stations detected by the WIDS.
1.3.6.1.4.1.25506.2.75.5.2.3not-accessiblecurrent
hh3cDot11WIDSRogueStaEntry
OBJECT-TYPE
Each entry contains information of each rogue station.
1.3.6.1.4.1.25506.2.75.5.2.3.1not-accessiblecurrent
hh3cDot11RogueStaMAC
OBJECT-TYPE
Represents the MAC address of rogue station.
1.3.6.1.4.1.25506.2.75.5.2.3.1.1MacAddressnot-accessiblecurrent
hh3cDot11RogueStaVendorName
OBJECT-TYPE
Represents the vendor name of rogue station.
1.3.6.1.4.1.25506.2.75.5.2.3.1.2OCTET STRING (SIZE(0..127))read-onlycurrent
hh3cDot11RogueStaMonitorNum
OBJECT-TYPE
Represents the number of monitor APs which detected the rogue station.
1.3.6.1.4.1.25506.2.75.5.2.3.1.3Integer32read-onlycurrent
hh3cDot11RogueStaFirstDetectTm
OBJECT-TYPE
Represents the time that station was detected as a rogue station for the first time.
1.3.6.1.4.1.25506.2.75.5.2.3.1.4TimeTicksread-onlycurrent
hh3cDot11RogueStaLastDetectTm
OBJECT-TYPE
Represents the time that station was detected as a rogue station for the last time.
1.3.6.1.4.1.25506.2.75.5.2.3.1.5TimeTicksread-onlycurrent
hh3cDot11RogueStaAccessBSSID
OBJECT-TYPE
Represents BSS MAC address that rogue station try to access.
1.3.6.1.4.1.25506.2.75.5.2.3.1.6MacAddressread-onlycurrent
hh3cDot11RogueStaMaxSigStrength
OBJECT-TYPE
Represents the maximal value of signal strength that WIDS received from the rogue station.
1.3.6.1.4.1.25506.2.75.5.2.3.1.7Integer32read-onlycurrent
hh3cDot11RogueStaChannel
OBJECT-TYPE
Represents on which radio channel the maximal signal strength was received.
1.3.6.1.4.1.25506.2.75.5.2.3.1.8Hh3cDot11ChannelScopeTyperead-onlycurrent
hh3cDot11RogueStaAttackedStatus
OBJECT-TYPE
Represents whether the countermeasure have taken for the rogue station.
1.3.6.1.4.1.25506.2.75.5.2.3.1.9TruthValueread-onlycurrent
hh3cDot11RogueStaToIgnore
OBJECT-TYPE
Represents whether the rogue AP will be taken as a rogue station. If the value is true, NMS should not display the rogue station as NMS display rogue station list, and the MAC address will be automatically added into hh3cDot11WIDSIgnoreListTable. If the value is false, NMS will take it as a rogue station.
1.3.6.1.4.1.25506.2.75.5.2.3.1.10TruthValueread-writecurrent
hh3cDot11RogueStaAdHocStatus
OBJECT-TYPE
Represents whether the rogue station work on the Ad Hoc mode or not.
1.3.6.1.4.1.25506.2.75.5.2.3.1.11TruthValueread-onlycurrent
hh3cDot11RogueStaReset
OBJECT-TYPE
This object is used to clear information of assigned station. The information of AP which detects assigned rogue station will be cleared together. It will return false for get operation.
1.3.6.1.4.1.25506.2.75.5.2.3.1.12TruthValueread-writecurrent
hh3cDot11RogueStaFirstDetectTmStr
OBJECT-TYPE
Represents the time that station was detected as a rogue station for the first time.
1.3.6.1.4.1.25506.2.75.5.2.3.1.13OCTET STRINGread-onlycurrent
hh3cDot11RogueStaLastDetectTmStr
OBJECT-TYPE
Represents the time that station was detected as a rogue station for the last time.
1.3.6.1.4.1.25506.2.75.5.2.3.1.14OCTET STRINGread-onlycurrent
hh3cDot11WIDSRogueStaExtTable
OBJECT-TYPE
As each rogue station could be detected by multiple monitor APs, each monitor AP could have some kind of detailed information about a specific rogue station. In the hh3cDot11WIDSRogueStaTable table, the detailed information for a specific rogue station will be summarized from information in the hh3cDot11WIDSRogueStaExtTable table. For example, multiple monitor APs could receive RF signal of one rogue station, and each monitor AP has its maximum signal strength by itself. The information will be kept as hh3cDot11DetectMaxStaSigStrength in the hh3cDot11WIDSRogueStaExtTable table. While only the maximum value among all the hh3cDot11DetectMaxStaSigStrength for each monitor AP will be kept in the hh3cDot11WIDSRogueStaTable as hh3cDot11RogueStaMaxSigStrength.
1.3.6.1.4.1.25506.2.75.5.2.4not-accessiblecurrent
hh3cDot11WIDSRogueStaExtEntry
OBJECT-TYPE
Each entry contains information of rogue station detected by each monitor AP.
1.3.6.1.4.1.25506.2.75.5.2.4.1not-accessiblecurrent
hh3cDot11DetectCurStaSigStrength
OBJECT-TYPE
Represents the current value of signal strength that WIDS monitor AP received from the rogue station.
1.3.6.1.4.1.25506.2.75.5.2.4.1.1Integer32read-onlycurrent
hh3cDot11DetectStaByChannel
OBJECT-TYPE
Represents on which radio channel the maximal signal strength was received.
1.3.6.1.4.1.25506.2.75.5.2.4.1.2Hh3cDot11ChannelScopeTyperead-onlycurrent
hh3cDot11DetectStaByRadioID
OBJECT-TYPE
Represents which radio on the monitor AP has detected the rogue station.
1.3.6.1.4.1.25506.2.75.5.2.4.1.3Hh3cDot11RadioScopeTyperead-onlycurrent
hh3cDot11AttackStaStatus
OBJECT-TYPE
Represents whether monitor AP have taken countermeasure for the rogue station.
1.3.6.1.4.1.25506.2.75.5.2.4.1.4TruthValueread-onlycurrent
hh3cDot11DetectStaFirstTm
OBJECT-TYPE
Represents the time that monitor AP detected the rogue station for the first time.
1.3.6.1.4.1.25506.2.75.5.2.4.1.5TimeTicksread-onlycurrent
hh3cDot11DetectStaLastTm
OBJECT-TYPE
Represents the time that monitor AP detected the rogue station for the last time.
1.3.6.1.4.1.25506.2.75.5.2.4.1.6TimeTicksread-onlycurrent
hh3cDot11WIDSDetectedDevTable
OBJECT-TYPE
This Table contains information of detected devices.
1.3.6.1.4.1.25506.2.75.5.2.5not-accessiblecurrent
hh3cDot11WIDSDetectedDevEntry
OBJECT-TYPE
Each entry contains information of detected devices.
1.3.6.1.4.1.25506.2.75.5.2.5.1not-accessiblecurrent
hh3cDot11WIDSDevMAC
OBJECT-TYPE
Represents MAC address of the device detected.
1.3.6.1.4.1.25506.2.75.5.2.5.1.1MacAddressnot-accessiblecurrent
hh3cDot11WIDSDevType
OBJECT-TYPE
Represents type of the device detected.
1.3.6.1.4.1.25506.2.75.5.2.5.1.2Hh3cDot11WIDSDevTyperead-onlycurrent
hh3cDot11WIDSDevPermitType
OBJECT-TYPE
Represents whether the device detected is a rogue device or not.
1.3.6.1.4.1.25506.2.75.5.2.5.1.3Hh3cDot11WIDSDevPermitTyperead-onlycurrent
hh3cDot11WIDSDevVendor
OBJECT-TYPE
Represents Vendor of the detected device.
1.3.6.1.4.1.25506.2.75.5.2.5.1.4OCTET STRINGread-onlycurrent
hh3cDot11WIDSDevMonitorNum
OBJECT-TYPE
Represents the number of active APs that detect the device.
1.3.6.1.4.1.25506.2.75.5.2.5.1.5Integer32read-onlycurrent
hh3cDot11WIDSDevSSID
OBJECT-TYPE
Represents the service set identifier for the ESS of the device.
1.3.6.1.4.1.25506.2.75.5.2.5.1.6OCTET STRINGread-onlycurrent
hh3cDot11WIDSDevBSSID
OBJECT-TYPE
Represents the basic service set identifier of the detected device.
1.3.6.1.4.1.25506.2.75.5.2.5.1.7MacAddressread-onlycurrent
hh3cDot11WIDSDevChannel
OBJECT-TYPE
Represents the channel in which the device was last detected.
1.3.6.1.4.1.25506.2.75.5.2.5.1.8Hh3cDot11ChannelScopeTyperead-onlycurrent
hh3cDot11WIDSDevMaxRSSI
OBJECT-TYPE
Represents the maximum detected RSSI of the device.
1.3.6.1.4.1.25506.2.75.5.2.5.1.9Integer32read-onlycurrent
hh3cDot11WIDSDevBeaconIntvl
OBJECT-TYPE
Represents the beacon interval for the detected AP.
1.3.6.1.4.1.25506.2.75.5.2.5.1.10Integer32read-onlycurrent
hh3cDot11WIDSDevFstDctTime
OBJECT-TYPE
Represents the time at which the device was first detected.
1.3.6.1.4.1.25506.2.75.5.2.5.1.11DateAndTimeread-onlycurrent
hh3cDot11WIDSDevLstDctTime
OBJECT-TYPE
Represents the time at which the rogue AP was detected last time.
1.3.6.1.4.1.25506.2.75.5.2.5.1.12DateAndTimeread-onlycurrent
hh3cDot11WIDSDevReset
OBJECT-TYPE
This object is used to clears the information of the device detected in the WLAN. It will return false for get operation.
1.3.6.1.4.1.25506.2.75.5.2.5.1.13TruthValueread-writecurrent
hh3cDot11WIDSDevSnr
OBJECT-TYPE
Represents SNR of the device detected.
1.3.6.1.4.1.25506.2.75.5.2.5.1.14Integer32read-onlycurrent
hh3cDot11WIDSRptAPTable
OBJECT-TYPE
This Table contains information of the AP which detected device in the WLAN.
1.3.6.1.4.1.25506.2.75.5.2.6not-accessiblecurrent
hh3cDot11WIDSRptAPEntry
OBJECT-TYPE
Each entry contains information of the AP which detected device in the WLAN.
1.3.6.1.4.1.25506.2.75.5.2.6.1not-accessiblecurrent
hh3cDot11WIDSRptAPMAC
OBJECT-TYPE
Represents the MAC address of the AP that detected the device.
1.3.6.1.4.1.25506.2.75.5.2.6.1.1MacAddressnot-accessiblecurrent
hh3cDot11WIDSRptAPName
OBJECT-TYPE
Represents the name of the AP that detected the device.
1.3.6.1.4.1.25506.2.75.5.2.6.1.2OCTET STRINGread-onlycurrent
hh3cDot11WIDSRptAPRadioID
OBJECT-TYPE
Represents the radio index of the AP that detected the device.
1.3.6.1.4.1.25506.2.75.5.2.6.1.3Hh3cDot11RadioScopeTyperead-onlycurrent
hh3cDot11WIDSRptAPMaxRSSI
OBJECT-TYPE
Represents the maximum detected RSSI of the device.
1.3.6.1.4.1.25506.2.75.5.2.6.1.4Integer32read-onlycurrent
hh3cDot11WIDSRptAPFstDctTime
OBJECT-TYPE
Represents the time at which the rogue AP was detected first time.
1.3.6.1.4.1.25506.2.75.5.2.6.1.5DateAndTimeread-onlycurrent
hh3cDot11WIDSRptAPLstDctTime
OBJECT-TYPE
Represents the time at which the rogue AP was detected last time.
1.3.6.1.4.1.25506.2.75.5.2.6.1.6DateAndTimeread-onlycurrent
hh3cDot11DynBlackListTable
OBJECT-TYPE
This table contains information of dynamic blacklist entries.
1.3.6.1.4.1.25506.2.75.5.2.7not-accessiblecurrent
hh3cDot11DynBlackListEntry
OBJECT-TYPE
Each entry contains information of dynamic blacklist.
1.3.6.1.4.1.25506.2.75.5.2.7.1not-accessiblecurrent
hh3cDot11DynBlackListMAC
OBJECT-TYPE
Represents the MAC address of the device inserted into the dynamic blacklist.
1.3.6.1.4.1.25506.2.75.5.2.7.1.1MacAddressnot-accessiblecurrent
hh3cDot11DynBlackListTime
OBJECT-TYPE
Represents the time elapsed since the entry was last updated.
1.3.6.1.4.1.25506.2.75.5.2.7.1.2Unsigned32read-onlycurrent
hh3cDot11DynBlackListReason
OBJECT-TYPE
Represents the reason why the entry was added into the dynamic blacklist.
1.3.6.1.4.1.25506.2.75.5.2.7.1.3OCTET STRINGread-onlycurrent
hh3cDot11DynBlackListReset
OBJECT-TYPE
This object is used to remove designated entry from the dynamic blacklist. The value which read from this object always is false.
1.3.6.1.4.1.25506.2.75.5.2.7.1.4TruthValueread-writecurrent
hh3cDot11DynBlackListTimeTicks
OBJECT-TYPE
Represents the time elapsed since the entry was last updated in units TimeTicks.
1.3.6.1.4.1.25506.2.75.5.2.7.1.5TimeTicksread-onlycurrent
hh3cDot11WIDSRogueHistoryTable
OBJECT-TYPE
This table contains information of all expired rogue devices which have been deleted from the list of detected rogue devices because they could not be detected within the device aging duration.
1.3.6.1.4.1.25506.2.75.5.2.8not-accessiblecurrent
hh3cDot11WIDSRogueHistoryEntry
OBJECT-TYPE
Each entry contains information of an expired rogue device which has been deleted from the list of detected rogue devices because they could not be detected within the device aging duration.
1.3.6.1.4.1.25506.2.75.5.2.8.1not-accessiblecurrent
hh3cDot11WIDSRogueHisIndex
OBJECT-TYPE
Represents index of this entry.
1.3.6.1.4.1.25506.2.75.5.2.8.1.1Integer32not-accessiblecurrent
hh3cDot11WIDSRogueHisMAC
OBJECT-TYPE
Represents the MAC address of the device.
1.3.6.1.4.1.25506.2.75.5.2.8.1.2MacAddressread-onlycurrent
hh3cDot11WIDSRogueHisVendor
OBJECT-TYPE
Represents the vendor for the device.
1.3.6.1.4.1.25506.2.75.5.2.8.1.3OCTET STRINGread-onlycurrent
hh3cDot11WIDSRogueHisType
OBJECT-TYPE
Represents the type of the device.
1.3.6.1.4.1.25506.2.75.5.2.8.1.4Hh3cDot11WIDSDevTyperead-onlycurrent
hh3cDot11WIDSRogueHisChl
OBJECT-TYPE
Represents the channel in which the device was last detected.
1.3.6.1.4.1.25506.2.75.5.2.8.1.5Hh3cDot11ChannelScopeTyperead-onlycurrent
hh3cDot11WIDSRogueHisSSID
OBJECT-TYPE
Represents the service set identifier for the ESS of the device.
1.3.6.1.4.1.25506.2.75.5.2.8.1.6OCTET STRINGread-onlycurrent
hh3cDot11WIDSRogueHisLastDctTime
OBJECT-TYPE
Represents the time at which the device was last detected.
1.3.6.1.4.1.25506.2.75.5.2.8.1.7DateAndTimeread-onlycurrent
hh3cDot11WIDSAtkHistroyTable
OBJECT-TYPE
This table contains information of the history of attacks detected in the WLAN system.
1.3.6.1.4.1.25506.2.75.5.2.9not-accessiblecurrent
hh3cDot11WIDSAtkHistroyEntry
OBJECT-TYPE
Each entry contains information of the history of attacks detected in the WLAN system.
1.3.6.1.4.1.25506.2.75.5.2.9.1not-accessiblecurrent
hh3cDot11WIDSAtkHisIndex
OBJECT-TYPE
Represents index of this entry.
1.3.6.1.4.1.25506.2.75.5.2.9.1.1Integer32not-accessiblecurrent
hh3cDot11WIDSAtkHisMAC
OBJECT-TYPE
Represents the Mac address. In case of spoof attacks, this field provides the BSSID which was spoofed. In case of other attacks, this field provides the MAC address of the device which initiated the attack.
1.3.6.1.4.1.25506.2.75.5.2.9.1.2MacAddressread-onlycurrent
hh3cDot11WIDSAtkHisType
OBJECT-TYPE
Represents the type of attack.
1.3.6.1.4.1.25506.2.75.5.2.9.1.3Hh3cDot11WIDSAtkTyperead-onlycurrent
hh3cDot11WIDSAtkHisChl
OBJECT-TYPE
Represents the channel in which the attack was detected.
1.3.6.1.4.1.25506.2.75.5.2.9.1.4Hh3cDot11ChannelScopeTyperead-onlycurrent
hh3cDot11WIDSAtkHisRSSI
OBJECT-TYPE
Represents the average RSSI of the designated attack.
1.3.6.1.4.1.25506.2.75.5.2.9.1.5Integer32read-onlycurrent
hh3cDot11WIDSAtkHisDctTime
OBJECT-TYPE
Represents the time at which this attack was detected.
1.3.6.1.4.1.25506.2.75.5.2.9.1.6DateAndTimeread-onlycurrent
hh3cDot11WIDSAtkHisAPName
OBJECT-TYPE
Represents the name of the AP which detected this attack.
1.3.6.1.4.1.25506.2.75.5.2.9.1.7OCTET STRINGread-onlycurrent
hh3cDot11WIDSAtkStatis
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.75.5.2.10
hh3cDot11WIDSAtkStasStartTime
OBJECT-TYPE
Represents current attack tracking time. It is started at the system startup and is refreshed each hour subsequently.
1.3.6.1.4.1.25506.2.75.5.2.10.1DateAndTimeread-onlycurrent
hh3cDot11WIDSAtkStasTable
OBJECT-TYPE
This table contains information of the counts of attacks detected.
1.3.6.1.4.1.25506.2.75.5.2.10.2not-accessiblecurrent
hh3cDot11WIDSAtkStasEntry
OBJECT-TYPE
Each entry contains information of the counts of attacks detected.
1.3.6.1.4.1.25506.2.75.5.2.10.2.1not-accessiblecurrent
hh3cDot11WIDSAtkStasType
OBJECT-TYPE
Represents the type of attack.
1.3.6.1.4.1.25506.2.75.5.2.10.2.1.1Hh3cDot11WIDSAtkTypenot-accessiblecurrent
hh3cDot11WIDSAtkStasCurCnt
OBJECT-TYPE
Represents the count of attacks detected since the time specified by the current attack tracking time. The current attack tracking time is started at the system startup and is refreshed each hour subsequently.
1.3.6.1.4.1.25506.2.75.5.2.10.2.1.2Unsigned32read-onlycurrent
hh3cDot11WIDSAtkStasTotalCnt
OBJECT-TYPE
Represents the total count of the attacks detected since the system startup.
1.3.6.1.4.1.25506.2.75.5.2.10.2.1.3Unsigned32read-onlycurrent
hh3cDot11BlackListTable
OBJECT-TYPE
This table contains information of blacklist entries, including dynamic and static.
1.3.6.1.4.1.25506.2.75.5.2.11not-accessiblecurrent
hh3cDot11BlackListEntry
OBJECT-TYPE
Each entry contains information of blacklist.
1.3.6.1.4.1.25506.2.75.5.2.11.1not-accessiblecurrent
hh3cDot11BlackListMAC
OBJECT-TYPE
This object represents the MAC address of the device inserted into the table.
1.3.6.1.4.1.25506.2.75.5.2.11.1.1MacAddressnot-accessiblecurrent
hh3cDot11BlackListTime
OBJECT-TYPE
Represents the time elapsed since the entry was last updated. If it is static blacklist, the value is always 0.
1.3.6.1.4.1.25506.2.75.5.2.11.1.2Unsigned32read-onlycurrent
hh3cDot11BlackListReason
OBJECT-TYPE
Represents the reason why the entry was added into the blacklist.
1.3.6.1.4.1.25506.2.75.5.2.11.1.3OCTET STRINGread-onlycurrent
hh3cDot11BlackListRowStatus
OBJECT-TYPE
This object represents the status of this table entry.
1.3.6.1.4.1.25506.2.75.5.2.11.1.4RowStatusread-createcurrent
hh3cDot11BlackListTimeTicks
OBJECT-TYPE
Represents the time elapsed since the entry was last updated in timetick. If it is static blacklist, the value is always 0.
1.3.6.1.4.1.25506.2.75.5.2.11.1.5TimeTicksread-onlycurrent
hh3cDot11WIDSNotifyGroup
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.75.5.3
hh3cDot11WIDSTraps
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.75.5.3.1
hh3cDot11WIDSTrapVarObjects
OBJECT-IDENTITY
1.3.6.1.4.1.25506.2.75.5.3.2
hh3cDot11WIDSRogueMAC
OBJECT-TYPE
Represents which rogue AP or station.
1.3.6.1.4.1.25506.2.75.5.3.2.1MacAddressaccessible-for-notifycurrent
hh3cDot11WIDSRogueType
OBJECT-TYPE
Represents the rogue type. The following value are supported rogueAp(1) - A rogue AP rogueStation(2) - A rogue Station
1.3.6.1.4.1.25506.2.75.5.3.2.2INTEGER {rogueAp(1), rogueStation(2)}accessible-for-notifycurrent
hh3cDot11WIDSMonitorMAC
OBJECT-TYPE
Represents which monitor detected the rogue AP or station.
1.3.6.1.4.1.25506.2.75.5.3.2.3MacAddressaccessible-for-notifycurrent
hh3cDot11WIDSAdHocMAC
OBJECT-TYPE
Represents the MAC address of Ad hoc station.
1.3.6.1.4.1.25506.2.75.5.3.2.4MacAddressaccessible-for-notifycurrent
hh3cDot11UnauthorSSIDName
OBJECT-TYPE
Represents an unauthorized SSID.
1.3.6.1.4.1.25506.2.75.5.3.2.5Hh3cDot11SSIDStringTypeaccessible-for-notifycurrent
hh3cDot11MonitorAPID
OBJECT-TYPE
Represents monitor AP's APID.
1.3.6.1.4.1.25506.2.75.5.3.2.6Hh3cDot11ObjectIDTypeaccessible-for-notifycurrent
hh3cDot11MonitorApRadioID
OBJECT-TYPE
Represents monitor AP's radio ID
1.3.6.1.4.1.25506.2.75.5.3.2.7Hh3cDot11RadioScopeTypeaccessible-for-notifycurrent
hh3cDot11WIDSAtkMac
OBJECT-TYPE
Represents mac address of attack source.
1.3.6.1.4.1.25506.2.75.5.3.2.8MacAddressaccessible-for-notifycurrent
hh3cDot11WIDSAtkFrameType
OBJECT-TYPE
Represents attack frame type.
1.3.6.1.4.1.25506.2.75.5.3.2.9OCTET STRINGaccessible-for-notifycurrent
hh3cDot11WIDSAtkChannel
OBJECT-TYPE
Represents attack channel.
1.3.6.1.4.1.25506.2.75.5.3.2.10Hh3cDot11ChannelScopeTypeaccessible-for-notifycurrent
hh3cDot11WIDSAtkTime
OBJECT-TYPE
Represents when attacking happened.
1.3.6.1.4.1.25506.2.75.5.3.2.11OCTET STRINGaccessible-for-notifycurrent
hh3cDot11WIDSAtkDestMac
OBJECT-TYPE
Represents mac address of attack destination.
1.3.6.1.4.1.25506.2.75.5.3.2.12MacAddressaccessible-for-notifycurrent
hh3cDot11WIDSFirstTrapTime
OBJECT-TYPE
Represents the first trap time.
1.3.6.1.4.1.25506.2.75.5.3.2.13TimeTicksaccessible-for-notifycurrent

Notifications

NameOIDStatus
hh3cDot11WIDSDetectRogueTrap
NOTIFICATION-TYPE
The notification represents that a rogue AP or a station was detected by WIDS. The NMS would refer to MIB table under hh3cDot11WIDSDetectGroup group to get more detailed information.
1.3.6.1.4.1.25506.2.75.5.3.1.1current
hh3cDot11WIDSAdHocTrap
NOTIFICATION-TYPE
The notification represents a rogue Ad hoc station was detected.
1.3.6.1.4.1.25506.2.75.5.3.1.2current
hh3cDot11WIDSUnauthorSSIDTrap
NOTIFICATION-TYPE
The notification represents which unauthorized SSID are accessed in the network. The notification will be sent to NMS when an unauthorized SSID is detected on the network for the first time.
1.3.6.1.4.1.25506.2.75.5.3.1.3current
hh3cDot11WIDSDisappearRogueTrap
NOTIFICATION-TYPE
The notification represents that a rogue device has aged out and moved to history table or the device type has been changed to friendly. The notification will be sent to NMS whenever a rogue disappears.
1.3.6.1.4.1.25506.2.75.5.3.1.4current
hh3cDot11WIDSDetectAttack
NOTIFICATION-TYPE
This notification occurs when some type of attack is detected.
1.3.6.1.4.1.25506.2.75.5.3.1.5current
hh3cDot11WIDSDetectWBridge
NOTIFICATION-TYPE
This notification occurs whenever a detected device is classified as rogue wireless-bridge.
1.3.6.1.4.1.25506.2.75.5.3.1.6current
hh3cDot11WIDSFloodTrap
NOTIFICATION-TYPE
This notification occurs when flood attack is detected.
1.3.6.1.4.1.25506.2.75.5.3.1.7current
hh3cDot11WIDSSpoofTrap
NOTIFICATION-TYPE
This notification occurs when spoof attack is detected.
1.3.6.1.4.1.25506.2.75.5.3.1.8current
hh3cDot11WIDSWeakIVTrap
NOTIFICATION-TYPE
This notification occurs when weak IV attack is detected.
1.3.6.1.4.1.25506.2.75.5.3.1.9current