MIBs Depot

HPN-ICF-DOT11-WIDS-MIB

Registered at
1.3.6.1.4.1.11.2.14.11.15.2.75.5
Last updated
2010-05-31 18:00
Revisions
2010-05-31 18:00, 2009-07-29 18:00, 2009-05-07 20:00, 2008-07-25 19:00, 2007-06-19 19:00, 2007-05-16 19:00, 2006-08-20 19:00
Namespace
hp
Source file
HPN-ICF-DOT11-WIDS-MIB
Digest
sha256:b7b56abe221583cfbbabeb1591e2d27e45d59f37cc4589f318c32798ffd19464

Description

This MIB provides information about WIDS feature. GLOSSARY Wireless Intrusion Detection Sensor (WIDS) WIDS is designed to be employed in an area that is serviced by an existing wireless network. It aids in the early detection of malicious outsider attacks and intrusions via wireless networks. Rogue AP A rogue access point is any Wi-Fi access point connected to the network without authorization. As it is not authorized, if there is any weakness in the AP, the hacker will have chance to compromise the network. Rogue Station It is similiar to Rogue AP, while it is a station. Monitor AP An AP will scan or listen to the air, and try to detect wireless attack in the network. Some AP products will work only in monitor role, while some AP products could switch between normal AP role (only provide wireless access service)and monitor AP role. Ad Hoc Mode Station could work under Ad hoc mode, then they could directly do peer-to-peer communication without other device support.

Imports

FromSymbols
HPN-ICF-DOT11-REF-MIBHpnicfDot11ChannelScopeType, HpnicfDot11ObjectIDType, HpnicfDot11RadioScopeType, HpnicfDot11RadioType, HpnicfDot11SSIDStringType, hpnicfDot11
SNMPv2-CONFMODULE-COMPLIANCE, NOTIFICATION-GROUP
SNMPv2-SMIInteger32, MODULE-IDENTITY, NOTIFICATION-TYPE, OBJECT-IDENTITY, OBJECT-TYPE, TimeTicks, Unsigned32, iso
SNMPv2-TCDateAndTime, DisplayString, MacAddress, RowStatus, TEXTUAL-CONVENTION, TruthValue

Imported by

Nothing in this corpus imports this module.

Load order

Every file a consumer needs in order to load this module, dependencies first.

HPN-ICF-DOT11-REF-MIB
HPN-ICF-DOT11-WIDS-MIB
HPN-ICF-OID-MIB
SNMPv2-CONF
SNMPv2-SMI
SNMPv2-TC

Textual conventions

NameOIDSyntaxAccessStatus
HpnicfDot11WIDSAtkType
TEXTUAL-CONVENTION
The type of attack. This object has following defined values: 'act': Action Frame 'asr': Association Request 'aur': Authentication Request 'daf': Deauthentication Frame 'dar': Disassociation Request 'ndf': Null Data Frame 'pbr': Probe Request 'rar': Reassociation Request 'saf': Spoofed Disassociation Frame 'sdf': Spoofed Deauthentication Frame 'wiv': Weak IV Detected
current
HpnicfDot11WIDSDevPermitType
TEXTUAL-CONVENTION
Represents whether the detected device is permitted or a rogue.
current
HpnicfDot11WIDSDevType
TEXTUAL-CONVENTION
The type of device detected.
current

Objects

NameOIDSyntaxAccessStatus
hpnicfDot11WIDSConfigGroup
OBJECT-IDENTITY
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1
hpnicfDot11WIDSGlobalConfigGroup
OBJECT-IDENTITY
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1
hpnicfDot11WIDSScanMode
OBJECT-TYPE
Represents the scope of channels to be scanned. The following value are supported all(1) - Do scan on all the channels. auto(2) - Do scan for the channels that automatically selected by WIDS.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.1INTEGER {all(1), auto(2)}read-writecurrent
hpnicfDot11WIDSScanChannelList
OBJECT-TYPE
Represents the channel scope to be scanned when hpnicfDot11WIDSScanMode is configurated as channelSpec mode. Each channel value will be separated by comma character.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.2OCTET STRING (SIZE(0..128))read-writeobsolete
hpnicfDot11CntMsrMode
OBJECT-TYPE
Represents the countermeasures mode.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.3Bits {rogue(0), adhoc(1), config(2)}read-writecurrent
hpnicfDot11DevAgingTime
OBJECT-TYPE
Represents the age time for entries in the detected device table. If an entry is not detected within the interval, it is deleted from the detected device table. If the deleted entry is that of a rogue, it is added into the rogue history table.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.4Integer32 (300..1800)read-writecurrent
hpnicfDot11DynBlkListEnable
OBJECT-TYPE
Represents whether the dynamic blacklist feature is enabled or not. 'true' : Enable the dynamic blacklist feature to filter out unwanted clients, which will not get associated. 'false' : Disable the dynamic blacklist feature.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.5TruthValueread-writecurrent
hpnicfDot11DynBlkListLifeTime
OBJECT-TYPE
Represents the lifetime for dynamic blacklist entries. If a dynamic blacklist entry is not detected within the lifetime, the entry will be removed from the dynamic blacklist. The lifetime becomes active only if dynamic blacklist feature is enabled.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.6Integer32 (60..3600)read-writecurrent
hpnicfDot11FloodAtkDctEnable
OBJECT-TYPE
Represents whether detection of flood attack is enabled or not. 'true' : Enable the detection of flood attack. 'false' : Disable the detection of flood attack.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.7TruthValueread-writecurrent
hpnicfDot11SpoofAtkDctEnable
OBJECT-TYPE
Represents whether detection of Spoof attack is enabled or not. 'true' : Enable the detection of Spoof attack. 'false' : Disable the detection of Spoof attack.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.8TruthValueread-writecurrent
hpnicfDot11WeakIVAtkDctEnable
OBJECT-TYPE
Represents whether detection of weak-iv attack is enabled or not. 'true' : Enable the detection of weak-iv attack. 'false' : Disable the detection of weak-iv attack.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.9TruthValueread-writecurrent
hpnicfDot11ResetWIDSRogueHistory
OBJECT-TYPE
This object is used to clear all entries from the rogue history table. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.10TruthValueread-writecurrent
hpnicfDot11ResetWIDSHistroy
OBJECT-TYPE
This object is used to clear the history information of attacks detected in the WLAN system. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.11TruthValueread-writecurrent
hpnicfDot11ResetWIDSStatistics
OBJECT-TYPE
This object is used to clear the statistics of attacks detected in the WLAN system. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.12TruthValueread-writecurrent
hpnicfDot11ResetAllDynBlkList
OBJECT-TYPE
This object is used to remove all entries from the dynamic blacklist. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.13TruthValueread-writecurrent
hpnicfDot11ResetAllStcBlkList
OBJECT-TYPE
This object is used to remove all entries from the static blacklist. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.14TruthValueread-writecurrent
hpnicfDot11ResetAllWhtBlkList
OBJECT-TYPE
This object is used to remove all entries from the static whitelist. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.15TruthValueread-writecurrent
hpnicfDot11ResetAllDctRogueAP
OBJECT-TYPE
This object is used to clear the information of all detected rogue APs. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.16TruthValueread-writecurrent
hpnicfDot11ResetAllDctRogueSta
OBJECT-TYPE
This object is used to clear the information of all detected rogue clients. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.17TruthValueread-writecurrent
hpnicfDot11ResetAllDctAdhoc
OBJECT-TYPE
This object is used to clear the information of all detected ad hoc devices. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.18TruthValueread-writecurrent
hpnicfDot11ResetAllDctDevice
OBJECT-TYPE
This object is used to clear the information of all detected devices. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.19TruthValueread-writecurrent
hpnicfDot11ResetAllDctSSID
OBJECT-TYPE
This object is used to clear the information of all detected SSIDs. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.20TruthValueread-writecurrent
hpnicfDot11WidsFloodInterval
OBJECT-TYPE
The interval of WIDS flood detection.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.21Unsigned32read-writecurrent
hpnicfDot11WidsBlackListThreshold
OBJECT-TYPE
When flood attack exceeds the value of this node, the MAC address will be added into black list.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.22Unsigned32read-writecurrent
hpnicfDot11SSIDFilterOnOff
OBJECT-TYPE
Represents whether the SSID permit feature is enabled or not.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.23INTEGER {on(1), off(2)}read-writecurrent
hpnicfDot11BSSIDFilterOnOff
OBJECT-TYPE
Represents whether the BSSID permit feature is enabled or not.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.24INTEGER {on(1), off(2)}read-writecurrent
hpnicfDot11WIDSPermitVendorTable
OBJECT-TYPE
The table provides the permitted vendor list, and each vendor will be identified by OUI. The legal device should be made by the permitted vendors.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.2not-accessiblecurrent
hpnicfDot11WIDSPermitVendorEntry
OBJECT-TYPE
Each entry provides the information of permitted vendor.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.2.1not-accessiblecurrent
hpnicfDot11VendorOUI
OBJECT-TYPE
Represents the vendor OUI information of the wireless device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.2.1.1OCTET STRING (SIZE(3))not-accessiblecurrent
hpnicfDot11PermitVendorRowStatus
OBJECT-TYPE
The status of this table entry.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.2.1.2RowStatusread-createcurrent
hpnicfDot11VendorName
OBJECT-TYPE
Represents the vendor name of the wireless device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.2.1.3OCTET STRING (SIZE(0..127))read-onlycurrent
hpnicfDot11WIDSPermitSSIDTable
OBJECT-TYPE
The table represents the list of SSID could be permitted in the wireless network.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.3not-accessiblecurrent
hpnicfDot11WIDSPermitSSIDEntry
OBJECT-TYPE
Each entry provides the information of permitted SSID.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.3.1not-accessiblecurrent
hpnicfDot11PermitSSID
OBJECT-TYPE
Represents the permitted SSID in the wireless network.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.3.1.1HpnicfDot11SSIDStringType (SIZE(0..127))not-accessiblecurrent
hpnicfDot11PermitSSIDRowStatus
OBJECT-TYPE
The status of this table entry.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.3.1.2RowStatusread-createcurrent
hpnicfDot11PermitSSIDDetected
OBJECT-TYPE
Represents whether the permitted SSID is detected or not.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.3.1.3TruthValueread-onlycurrent
hpnicfDot11WIDSIgnoreListTable
OBJECT-TYPE
The table provides the MAC address list of stations or APs, and WIDS always take them as legal stations or APs.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.4not-accessiblecurrent
hpnicfDot11WIDSIgnoreListEntry
OBJECT-TYPE
Each entry contains the MAC address of station or AP, and WIDS always take it as legal station or AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.4.1not-accessiblecurrent
hpnicfDot11IgnoreMAC
OBJECT-TYPE
Represents the MAC address of station or AP, and WIDS always take it as legal station or AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.4.1.1MacAddressnot-accessiblecurrent
hpnicfDot11IgnoreListRowStatus
OBJECT-TYPE
The status of this table entry.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.4.1.2RowStatusread-createcurrent
hpnicfDot11IgnoreMACDetected
OBJECT-TYPE
Represents whether the MAC address detected or not.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.4.1.3TruthValueread-onlycurrent
hpnicfDot11IgnoreDevType
OBJECT-TYPE
Represents the type of the MAC address detected. The value of this object always is unknown if the MAC address is not detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.4.1.4HpnicfDot11WIDSDevTyperead-onlycurrent
hpnicfDot11WIDSAttackListTable
OBJECT-TYPE
The table provides the MAC address list of rogue APs or rogue stations, the WIDS will take countermeasure as per the MAC address list.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.5not-accessiblecurrent
hpnicfDot11WIDSAttackListEntry
OBJECT-TYPE
Each entry contains the MAC address of rogue AP or rogue station, and the countermeasure will be taken for it.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.5.1not-accessiblecurrent
hpnicfDot11AttackDeviceMac
OBJECT-TYPE
Represents the MAC address of rogue AP or rogue station, and the countermeasure will be taken for it.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.5.1.1MacAddressnot-accessiblecurrent
hpnicfDot11AttackListRowStatus
OBJECT-TYPE
The status of this table entry.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.5.1.2RowStatusread-createcurrent
hpnicfDot11AttackDevDetected
OBJECT-TYPE
Represents whether the assigned MAC address in attack list is detected or not.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.5.1.3TruthValueread-onlycurrent
hpnicfDot11AttackDevType
OBJECT-TYPE
Represents the type of detected MAC address in attack list. If the MAC address is not detected, it will return unknown(5) for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.5.1.4HpnicfDot11WIDSDevTyperead-onlycurrent
hpnicfDot11StaticWhiteListTable
OBJECT-TYPE
The table provides the information of whitelist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.6not-accessiblecurrent
hpnicfDot11StaticWhiteListEntry
OBJECT-TYPE
Each entry contains the information of whitelist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.6.1not-accessiblecurrent
hpnicfDot11StaticWhiteListMAC
OBJECT-TYPE
Represents the MAC addresses in whitelist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.6.1.1MacAddressnot-accessiblecurrent
hpnicfDot11StaticWhiteListRowStatus
OBJECT-TYPE
The status of this table entry.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.6.1.2RowStatusread-createcurrent
hpnicfDot11StaticBlackListTable
OBJECT-TYPE
The table provides the information of static blacklist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.7not-accessiblecurrent
hpnicfDot11StaticBlackListEntry
OBJECT-TYPE
Each entry contains the information of static blacklist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.7.1not-accessiblecurrent
hpnicfDot11StaticBlackListMAC
OBJECT-TYPE
Represents the MAC addresses in static blacklist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.7.1.1MacAddressnot-accessiblecurrent
hpnicfDot11StaticBlackListRowStatus
OBJECT-TYPE
The status of this table entry.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.7.1.2RowStatusread-createcurrent
hpnicfDot11WIDSPermitBSSIDTable
OBJECT-TYPE
The table represents the list of BSSID could be permitted in the wireless network.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.8not-accessiblecurrent
hpnicfDot11WIDSPermitBSSIDEntry
OBJECT-TYPE
Each entry provides the information of permitted BSSID.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.8.1not-accessiblecurrent
hpnicfDot11PermitBSSID
OBJECT-TYPE
Represents the permitted BSSID in the wireless network.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.8.1.1MacAddressnot-accessiblecurrent
hpnicfDot11PermitBSSIDDetected
OBJECT-TYPE
Represents whether the permitted BSSID is detected or not.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.8.1.2TruthValueread-onlycurrent
hpnicfDot11PermitBSSIDRowStatus
OBJECT-TYPE
Represents the row status of permit BSSID table.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.8.1.3RowStatusread-createcurrent
hpnicfDot11WIDSDetectGroup
OBJECT-IDENTITY
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2
hpnicfDot11WIDSRogueAPTable
OBJECT-TYPE
The table represents the list of possible BSS information for rogue APs detected by the WIDS.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1not-accessiblecurrent
hpnicfDot11WIDSRogueAPEntry
OBJECT-TYPE
Each entry contains possible BSS information of each rogue AP detected by WIDS.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1not-accessiblecurrent
hpnicfDot11RogueAPBSSMAC
OBJECT-TYPE
Represents the BSS MAC address of rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.1MacAddressnot-accessiblecurrent
hpnicfDot11RogueAPVendorName
OBJECT-TYPE
Represents the vendor name of rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.2OCTET STRING (SIZE(0..127))read-onlycurrent
hpnicfDot11RogueAPMonitorNum
OBJECT-TYPE
Represents the number of monitor APs which detected the rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.3Integer32read-onlycurrent
hpnicfDot11RogueAPFirstDetectTm
OBJECT-TYPE
Represents the time that AP was detected as a rogue AP for the first time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.4TimeTicksread-onlycurrent
hpnicfDot11RogueAPLastDetectTm
OBJECT-TYPE
Represents the time that AP was detected as a rogue AP for the last time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.5TimeTicksread-onlycurrent
hpnicfDot11RogueAPSSID
OBJECT-TYPE
Represents the SSID broadcasted by rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.6HpnicfDot11SSIDStringTyperead-onlycurrent
hpnicfDot11RogueAPMaxSigStrength
OBJECT-TYPE
Represents the maximal value of signal strength that WIDS received from the rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.7Integer32read-onlycurrent
hpnicfDot11RogueAPChannel
OBJECT-TYPE
Represents on which radio channel of the rogue AP the maximal signal strength was received.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.8HpnicfDot11ChannelScopeTyperead-onlycurrent
hpnicfDot11RogueAPBeaconInterval
OBJECT-TYPE
Represents the interval for Beacon management frame of rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.9Integer32read-onlycurrent
hpnicfDot11RogueAPAttackedStatus
OBJECT-TYPE
Represents whether the countermeasure have taken for the rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.10TruthValueread-onlycurrent
hpnicfDot11RogueAPToIgnore
OBJECT-TYPE
Represents whether the rogue AP will be taken as a rogue AP. If the value is true, NMS should not display the rogue AP as NMS display rogue AP list, and the MAC address will be automatically added into hpnicfDot11WIDSIgnoreListTable. If the value is false, NMS will take it as a rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.11TruthValueread-writecurrent
hpnicfDot11RogueAPEncryptStatus
OBJECT-TYPE
Represents whether the rogue AP encrypt the frame or not.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.12TruthValueread-onlycurrent
hpnicfDot11RogueAPReset
OBJECT-TYPE
This object is used to clear information of assigned AP. The information of AP which detect assigned rogue AP will be cleared together. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.13TruthValueread-writecurrent
hpnicfDot11RogueAPFirstDetectTmStr
OBJECT-TYPE
Represents the time that AP was detected as a rogue AP for the first time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.14OCTET STRINGread-onlycurrent
hpnicfDot11RogueAPLastDetectTmStr
OBJECT-TYPE
Represents the time that AP was detected as a rogue AP for the last time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.15OCTET STRINGread-onlycurrent
hpnicfDot11WIDSRogueAPExtTable
OBJECT-TYPE
As each rogue AP could be detected by multiple monitor APs, each monitor AP could have some kind of detailed information about a specific rogue AP. In the hpnicfDot11WIDSRogueAPTable table, the detailed information for a specific rogue AP will be summarized from information in the hpnicfDot11WIDSRogueAPExtTable table. For example, multiple monitor APs could receive RF signal of one rogue AP, and each monitor AP has its maximum signal strength by itself. The information will be kept as hpnicfDot11DetectMaxAPSigStrength in the hpnicfDot11WIDSRogueAPExtTable table. While only the maximum value among all the hpnicfDot11DetectMaxAPSigStrength for each monitor AP will be kept in the hpnicfDot11WIDSRogueAPTable as hpnicfDot11RogueAPMaxSigStrength.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.2not-accessiblecurrent
hpnicfDot11WIDSRogueAPExtEntry
OBJECT-TYPE
Each entry contains information of the rogue AP detected by each monitor AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.2.1not-accessiblecurrent
hpnicfDot11WIDSAPID
OBJECT-TYPE
To uniquely identify each AP, and relation-ship between hpnicfDot11WIDSAPID and AP device will be static.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.2.1.1HpnicfDot11ObjectIDTypenot-accessiblecurrent
hpnicfDot11DetectCurAPSigStrength
OBJECT-TYPE
Represents the current value of signal strength that WIDS monitor AP received from the rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.2.1.2Integer32read-onlycurrent
hpnicfDot11DetectAPByChannel
OBJECT-TYPE
Represents on which radio channel that WIDS monitor AP detected the rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.2.1.3HpnicfDot11ChannelScopeTyperead-onlycurrent
hpnicfDot11DetectAPByRadioID
OBJECT-TYPE
Represents on which radio the monitor AP has detected the rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.2.1.4HpnicfDot11RadioScopeTyperead-onlycurrent
hpnicfDot11AttackAPStatus
OBJECT-TYPE
Represents whether monitor AP have taken countermeasure on the rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.2.1.5TruthValueread-onlycurrent
hpnicfDot11DetectAPFirstTm
OBJECT-TYPE
Represents the time that monitor AP detected the rogue AP for the first time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.2.1.6TimeTicksread-onlycurrent
hpnicfDot11DetectAPLastTm
OBJECT-TYPE
Represents the time that monitor AP detected the rogue AP for the last time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.2.1.7TimeTicksread-onlycurrent
hpnicfDot11WIDSRogueStaTable
OBJECT-TYPE
The table represents the list of rogue stations detected by the WIDS.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3not-accessiblecurrent
hpnicfDot11WIDSRogueStaEntry
OBJECT-TYPE
Each entry contains information of each rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1not-accessiblecurrent
hpnicfDot11RogueStaMAC
OBJECT-TYPE
Represents the MAC address of rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.1MacAddressnot-accessiblecurrent
hpnicfDot11RogueStaVendorName
OBJECT-TYPE
Represents the vendor name of rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.2OCTET STRING (SIZE(0..127))read-onlycurrent
hpnicfDot11RogueStaMonitorNum
OBJECT-TYPE
Represents the number of monitor APs which detected the rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.3Integer32read-onlycurrent
hpnicfDot11RogueStaFirstDetectTm
OBJECT-TYPE
Represents the time that station was detected as a rogue station for the first time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.4TimeTicksread-onlycurrent
hpnicfDot11RogueStaLastDetectTm
OBJECT-TYPE
Represents the time that station was detected as a rogue station for the last time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.5TimeTicksread-onlycurrent
hpnicfDot11RogueStaAccessBSSID
OBJECT-TYPE
Represents BSS MAC address that rogue station try to access.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.6MacAddressread-onlycurrent
hpnicfDot11RogueStaMaxSigStrength
OBJECT-TYPE
Represents the maximal value of signal strength that WIDS received from the rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.7Integer32read-onlycurrent
hpnicfDot11RogueStaChannel
OBJECT-TYPE
Represents on which radio channel the maximal signal strength was received.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.8HpnicfDot11ChannelScopeTyperead-onlycurrent
hpnicfDot11RogueStaAttackedStatus
OBJECT-TYPE
Represents whether the countermeasure have taken for the rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.9TruthValueread-onlycurrent
hpnicfDot11RogueStaToIgnore
OBJECT-TYPE
Represents whether the rogue AP will be taken as a rogue station. If the value is true, NMS should not display the rogue station as NMS display rogue station list, and the MAC address will be automatically added into hpnicfDot11WIDSIgnoreListTable. If the value is false, NMS will take it as a rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.10TruthValueread-writecurrent
hpnicfDot11RogueStaAdHocStatus
OBJECT-TYPE
Represents whether the rogue station work on the Ad Hoc mode or not.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.11TruthValueread-onlycurrent
hpnicfDot11RogueStaReset
OBJECT-TYPE
This object is used to clear information of assigned station. The information of AP which detects assigned rogue station will be cleared together. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.12TruthValueread-writecurrent
hpnicfDot11RogueStaFirstDetectTmStr
OBJECT-TYPE
Represents the time that station was detected as a rogue station for the first time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.13OCTET STRINGread-onlycurrent
hpnicfDot11RogueStaLastDetectTmStr
OBJECT-TYPE
Represents the time that station was detected as a rogue station for the last time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.14OCTET STRINGread-onlycurrent
hpnicfDot11WIDSRogueStaExtTable
OBJECT-TYPE
As each rogue station could be detected by multiple monitor APs, each monitor AP could have some kind of detailed information about a specific rogue station. In the hpnicfDot11WIDSRogueStaTable table, the detailed information for a specific rogue station will be summarized from information in the hpnicfDot11WIDSRogueStaExtTable table. For example, multiple monitor APs could receive RF signal of one rogue station, and each monitor AP has its maximum signal strength by itself. The information will be kept as hpnicfDot11DetectMaxStaSigStrength in the hpnicfDot11WIDSRogueStaExtTable table. While only the maximum value among all the hpnicfDot11DetectMaxStaSigStrength for each monitor AP will be kept in the hpnicfDot11WIDSRogueStaTable as hpnicfDot11RogueStaMaxSigStrength.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.4not-accessiblecurrent
hpnicfDot11WIDSRogueStaExtEntry
OBJECT-TYPE
Each entry contains information of rogue station detected by each monitor AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.4.1not-accessiblecurrent
hpnicfDot11DetectCurStaSigStrength
OBJECT-TYPE
Represents the current value of signal strength that WIDS monitor AP received from the rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.4.1.1Integer32read-onlycurrent
hpnicfDot11DetectStaByChannel
OBJECT-TYPE
Represents on which radio channel the maximal signal strength was received.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.4.1.2HpnicfDot11ChannelScopeTyperead-onlycurrent
hpnicfDot11DetectStaByRadioID
OBJECT-TYPE
Represents which radio on the monitor AP has detected the rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.4.1.3HpnicfDot11RadioScopeTyperead-onlycurrent
hpnicfDot11AttackStaStatus
OBJECT-TYPE
Represents whether monitor AP have taken countermeasure for the rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.4.1.4TruthValueread-onlycurrent
hpnicfDot11DetectStaFirstTm
OBJECT-TYPE
Represents the time that monitor AP detected the rogue station for the first time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.4.1.5TimeTicksread-onlycurrent
hpnicfDot11DetectStaLastTm
OBJECT-TYPE
Represents the time that monitor AP detected the rogue station for the last time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.4.1.6TimeTicksread-onlycurrent
hpnicfDot11WIDSDetectedDevTable
OBJECT-TYPE
This Table contains information of detected devices.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5not-accessiblecurrent
hpnicfDot11WIDSDetectedDevEntry
OBJECT-TYPE
Each entry contains information of detected devices.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1not-accessiblecurrent
hpnicfDot11WIDSDevMAC
OBJECT-TYPE
Represents MAC address of the device detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.1MacAddressnot-accessiblecurrent
hpnicfDot11WIDSDevType
OBJECT-TYPE
Represents type of the device detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.2HpnicfDot11WIDSDevTyperead-onlycurrent
hpnicfDot11WIDSDevPermitType
OBJECT-TYPE
Represents whether the device detected is a rogue device or not.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.3HpnicfDot11WIDSDevPermitTyperead-onlycurrent
hpnicfDot11WIDSDevVendor
OBJECT-TYPE
Represents Vendor of the detected device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.4OCTET STRINGread-onlycurrent
hpnicfDot11WIDSDevMonitorNum
OBJECT-TYPE
Represents the number of active APs that detect the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.5Integer32read-onlycurrent
hpnicfDot11WIDSDevSSID
OBJECT-TYPE
Represents the service set identifier for the ESS of the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.6OCTET STRINGread-onlycurrent
hpnicfDot11WIDSDevBSSID
OBJECT-TYPE
Represents the basic service set identifier of the detected device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.7MacAddressread-onlycurrent
hpnicfDot11WIDSDevChannel
OBJECT-TYPE
Represents the channel in which the device was last detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.8HpnicfDot11ChannelScopeTyperead-onlycurrent
hpnicfDot11WIDSDevMaxRSSI
OBJECT-TYPE
Represents the maximum detected RSSI of the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.9Integer32read-onlycurrent
hpnicfDot11WIDSDevBeaconIntvl
OBJECT-TYPE
Represents the beacon interval for the detected AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.10Integer32read-onlycurrent
hpnicfDot11WIDSDevFstDctTime
OBJECT-TYPE
Represents the time at which the device was first detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.11DateAndTimeread-onlycurrent
hpnicfDot11WIDSDevLstDctTime
OBJECT-TYPE
Represents the time at which the rogue AP was detected last time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.12DateAndTimeread-onlycurrent
hpnicfDot11WIDSDevReset
OBJECT-TYPE
This object is used to clears the information of the device detected in the WLAN. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.13TruthValueread-writecurrent
hpnicfDot11WIDSDevSnr
OBJECT-TYPE
Represents SNR of the device detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.14Integer32read-onlycurrent
hpnicfDot11WIDSRptAPTable
OBJECT-TYPE
This Table contains information of the AP which detected device in the WLAN.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.6not-accessiblecurrent
hpnicfDot11WIDSRptAPEntry
OBJECT-TYPE
Each entry contains information of the AP which detected device in the WLAN.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.6.1not-accessiblecurrent
hpnicfDot11WIDSRptAPMAC
OBJECT-TYPE
Represents the MAC address of the AP that detected the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.6.1.1MacAddressnot-accessiblecurrent
hpnicfDot11WIDSRptAPName
OBJECT-TYPE
Represents the name of the AP that detected the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.6.1.2OCTET STRINGread-onlycurrent
hpnicfDot11WIDSRptAPRadioID
OBJECT-TYPE
Represents the radio index of the AP that detected the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.6.1.3HpnicfDot11RadioScopeTyperead-onlycurrent
hpnicfDot11WIDSRptAPMaxRSSI
OBJECT-TYPE
Represents the maximum detected RSSI of the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.6.1.4Integer32read-onlycurrent
hpnicfDot11WIDSRptAPFstDctTime
OBJECT-TYPE
Represents the time at which the rogue AP was detected first time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.6.1.5DateAndTimeread-onlycurrent
hpnicfDot11WIDSRptAPLstDctTime
OBJECT-TYPE
Represents the time at which the rogue AP was detected last time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.6.1.6DateAndTimeread-onlycurrent
hpnicfDot11DynBlackListTable
OBJECT-TYPE
This table contains information of dynamic blacklist entries.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.7not-accessiblecurrent
hpnicfDot11DynBlackListEntry
OBJECT-TYPE
Each entry contains information of dynamic blacklist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.7.1not-accessiblecurrent
hpnicfDot11DynBlackListMAC
OBJECT-TYPE
Represents the MAC address of the device inserted into the dynamic blacklist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.7.1.1MacAddressnot-accessiblecurrent
hpnicfDot11DynBlackListTime
OBJECT-TYPE
Represents the time elapsed since the entry was last updated.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.7.1.2Unsigned32read-onlycurrent
hpnicfDot11DynBlackListReason
OBJECT-TYPE
Represents the reason why the entry was added into the dynamic blacklist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.7.1.3OCTET STRINGread-onlycurrent
hpnicfDot11DynBlackListReset
OBJECT-TYPE
This object is used to remove designated entry from the dynamic blacklist. The value which read from this object always is false.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.7.1.4TruthValueread-writecurrent
hpnicfDot11DynBlackListTimeTicks
OBJECT-TYPE
Represents the time elapsed since the entry was last updated in units TimeTicks.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.7.1.5TimeTicksread-onlycurrent
hpnicfDot11WIDSRogueHistoryTable
OBJECT-TYPE
This table contains information of all expired rogue devices which have been deleted from the list of detected rogue devices because they could not be detected within the device aging duration.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.8not-accessiblecurrent
hpnicfDot11WIDSRogueHistoryEntry
OBJECT-TYPE
Each entry contains information of an expired rogue device which has been deleted from the list of detected rogue devices because they could not be detected within the device aging duration.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.8.1not-accessiblecurrent
hpnicfDot11WIDSRogueHisIndex
OBJECT-TYPE
Represents index of this entry.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.8.1.1Integer32not-accessiblecurrent
hpnicfDot11WIDSRogueHisMAC
OBJECT-TYPE
Represents the MAC address of the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.8.1.2MacAddressread-onlycurrent
hpnicfDot11WIDSRogueHisVendor
OBJECT-TYPE
Represents the vendor for the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.8.1.3OCTET STRINGread-onlycurrent
hpnicfDot11WIDSRogueHisType
OBJECT-TYPE
Represents the type of the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.8.1.4HpnicfDot11WIDSDevTyperead-onlycurrent
hpnicfDot11WIDSRogueHisChl
OBJECT-TYPE
Represents the channel in which the device was last detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.8.1.5HpnicfDot11ChannelScopeTyperead-onlycurrent
hpnicfDot11WIDSRogueHisSSID
OBJECT-TYPE
Represents the service set identifier for the ESS of the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.8.1.6OCTET STRINGread-onlycurrent
hpnicfDot11WIDSRogueHisLastDctTime
OBJECT-TYPE
Represents the time at which the device was last detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.8.1.7DateAndTimeread-onlycurrent
hpnicfDot11WIDSAtkHistroyTable
OBJECT-TYPE
This table contains information of the history of attacks detected in the WLAN system.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.9not-accessiblecurrent
hpnicfDot11WIDSAtkHistroyEntry
OBJECT-TYPE
Each entry contains information of the history of attacks detected in the WLAN system.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.9.1not-accessiblecurrent
hpnicfDot11WIDSAtkHisIndex
OBJECT-TYPE
Represents index of this entry.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.9.1.1Integer32not-accessiblecurrent
hpnicfDot11WIDSAtkHisMAC
OBJECT-TYPE
Represents the Mac address. In case of spoof attacks, this field provides the BSSID which was spoofed. In case of other attacks, this field provides the MAC address of the device which initiated the attack.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.9.1.2MacAddressread-onlycurrent
hpnicfDot11WIDSAtkHisType
OBJECT-TYPE
Represents the type of attack.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.9.1.3HpnicfDot11WIDSAtkTyperead-onlycurrent
hpnicfDot11WIDSAtkHisChl
OBJECT-TYPE
Represents the channel in which the attack was detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.9.1.4HpnicfDot11ChannelScopeTyperead-onlycurrent
hpnicfDot11WIDSAtkHisRSSI
OBJECT-TYPE
Represents the average RSSI of the designated attack.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.9.1.5Integer32read-onlycurrent
hpnicfDot11WIDSAtkHisDctTime
OBJECT-TYPE
Represents the time at which this attack was detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.9.1.6DateAndTimeread-onlycurrent
hpnicfDot11WIDSAtkHisAPName
OBJECT-TYPE
Represents the name of the AP which detected this attack.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.9.1.7OCTET STRINGread-onlycurrent
hpnicfDot11WIDSAtkStatis
OBJECT-IDENTITY
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.10
hpnicfDot11WIDSAtkStasStartTime
OBJECT-TYPE
Represents current attack tracking time. It is started at the system startup and is refreshed each hour subsequently.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.10.1DateAndTimeread-onlycurrent
hpnicfDot11WIDSAtkStasTable
OBJECT-TYPE
This table contains information of the counts of attacks detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.10.2not-accessiblecurrent
hpnicfDot11WIDSAtkStasEntry
OBJECT-TYPE
Each entry contains information of the counts of attacks detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.10.2.1not-accessiblecurrent
hpnicfDot11WIDSAtkStasType
OBJECT-TYPE
Represents the type of attack.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.10.2.1.1HpnicfDot11WIDSAtkTypenot-accessiblecurrent
hpnicfDot11WIDSAtkStasCurCnt
OBJECT-TYPE
Represents the count of attacks detected since the time specified by the current attack tracking time. The current attack tracking time is started at the system startup and is refreshed each hour subsequently.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.10.2.1.2Unsigned32read-onlycurrent
hpnicfDot11WIDSAtkStasTotalCnt
OBJECT-TYPE
Represents the total count of the attacks detected since the system startup.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.10.2.1.3Unsigned32read-onlycurrent
hpnicfDot11BlackListTable
OBJECT-TYPE
This table contains information of blacklist entries, including dynamic and static.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.11not-accessiblecurrent
hpnicfDot11BlackListEntry
OBJECT-TYPE
Each entry contains information of blacklist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.11.1not-accessiblecurrent
hpnicfDot11BlackListMAC
OBJECT-TYPE
This object represents the MAC address of the device inserted into the table.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.11.1.1MacAddressnot-accessiblecurrent
hpnicfDot11BlackListTime
OBJECT-TYPE
Represents the time elapsed since the entry was last updated. If it is static blacklist, the value is always 0.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.11.1.2Unsigned32read-onlycurrent
hpnicfDot11BlackListReason
OBJECT-TYPE
Represents the reason why the entry was added into the blacklist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.11.1.3OCTET STRINGread-onlycurrent
hpnicfDot11BlackListRowStatus
OBJECT-TYPE
This object represents the status of this table entry.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.11.1.4RowStatusread-createcurrent
hpnicfDot11BlackListTimeTicks
OBJECT-TYPE
Represents the time elapsed since the entry was last updated in timetick. If it is static blacklist, the value is always 0.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.11.1.5TimeTicksread-onlycurrent
hpnicfDot11WIDSNotifyGroup
OBJECT-IDENTITY
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3
hpnicfDot11WIDSTraps
OBJECT-IDENTITY
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1
hpnicfDot11WIDSTrapVarObjects
OBJECT-IDENTITY
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2
hpnicfDot11WIDSRogueMAC
OBJECT-TYPE
Represents which rogue AP or station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.1MacAddressaccessible-for-notifycurrent
hpnicfDot11WIDSRogueType
OBJECT-TYPE
Represents the rogue type. The following value are supported rogueAp(1) - A rogue AP rogueStation(2) - A rogue Station
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.2INTEGER {rogueAp(1), rogueStation(2)}accessible-for-notifycurrent
hpnicfDot11WIDSMonitorMAC
OBJECT-TYPE
Represents which monitor detected the rogue AP or station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.3MacAddressaccessible-for-notifycurrent
hpnicfDot11WIDSAdHocMAC
OBJECT-TYPE
Represents the MAC address of Ad hoc station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.4MacAddressaccessible-for-notifycurrent
hpnicfDot11UnauthorSSIDName
OBJECT-TYPE
Represents an unauthorized SSID.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.5HpnicfDot11SSIDStringTypeaccessible-for-notifycurrent
hpnicfDot11MonitorAPID
OBJECT-TYPE
Represents monitor AP's APID.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.6HpnicfDot11ObjectIDTypeaccessible-for-notifycurrent
hpnicfDot11MonitorApRadioID
OBJECT-TYPE
Represents monitor AP's radio ID
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.7HpnicfDot11RadioScopeTypeaccessible-for-notifycurrent
hpnicfDot11WIDSAtkMac
OBJECT-TYPE
Represents mac address of attack source.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.8MacAddressaccessible-for-notifycurrent
hpnicfDot11WIDSAtkFrameType
OBJECT-TYPE
Represents attack frame type.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.9OCTET STRINGaccessible-for-notifycurrent
hpnicfDot11WIDSAtkChannel
OBJECT-TYPE
Represents attack channel.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.10HpnicfDot11ChannelScopeTypeaccessible-for-notifycurrent
hpnicfDot11WIDSAtkTime
OBJECT-TYPE
Represents when attacking happened.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.11OCTET STRINGaccessible-for-notifycurrent
hpnicfDot11WIDSAtkDestMac
OBJECT-TYPE
Represents mac address of attack destination.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.12MacAddressaccessible-for-notifycurrent
hpnicfDot11WIDSFirstTrapTime
OBJECT-TYPE
Represents the first trap time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.13TimeTicksaccessible-for-notifycurrent

Notifications

NameOIDStatus
hpnicfDot11WIDSDetectRogueTrap
NOTIFICATION-TYPE
The notification represents that a rogue AP or a station was detected by WIDS. The NMS would refer to MIB table under hpnicfDot11WIDSDetectGroup group to get more detailed information.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1.1current
hpnicfDot11WIDSAdHocTrap
NOTIFICATION-TYPE
The notification represents a rogue Ad hoc station was detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1.2current
hpnicfDot11WIDSUnauthorSSIDTrap
NOTIFICATION-TYPE
The notification represents which unauthorized SSID are accessed in the network. The notification will be sent to NMS when an unauthorized SSID is detected on the network for the first time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1.3current
hpnicfDot11WIDSDisappearRogueTrap
NOTIFICATION-TYPE
The notification represents that a rogue device has aged out and moved to history table or the device type has been changed to friendly. The notification will be sent to NMS whenever a rogue disappears.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1.4current
hpnicfDot11WIDSDetectAttack
NOTIFICATION-TYPE
This notification occurs when some type of attack is detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1.5current
hpnicfDot11WIDSDetectWBridge
NOTIFICATION-TYPE
This notification occurs whenever a detected device is classified as rogue wireless-bridge.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1.6current
hpnicfDot11WIDSFloodTrap
NOTIFICATION-TYPE
This notification occurs when flood attack is detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1.7current
hpnicfDot11WIDSSpoofTrap
NOTIFICATION-TYPE
This notification occurs when spoof attack is detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1.8current
hpnicfDot11WIDSWeakIVTrap
NOTIFICATION-TYPE
This notification occurs when weak IV attack is detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1.9current