cdot11SecAuxSsid |
.1.3.6.1.4.1.9.9.413.1.1.1.1.1 |
This object specifies a SSID defined on this
IEEE 802.11 wireless LAN device. The SSID will
be installed on the radio interfaces for client
associations. The radio interface shall respond
to probe requests using this SSID, but it does
not advertise this SSID in its beacons unless
the cdot11SecAuxSsidBroadcast is 'true'.
|
cdot11SecAuxSsidBroadcast |
.1.3.6.1.4.1.9.9.413.1.1.1.1.2 |
This object indicates if an auxiliary SSID
is a Broadcast SSID. There should only be one
Broadcast SSID installed on any IEEE 802.11
radio interface if Multiple BSSID feature is
not enabled. To enable this SSID for MBSSID
broadcast, use cdot11SecAuxSsidMbssidBroadcast.
|
cdot11SecAuxSsidInfraStruct |
.1.3.6.1.4.1.9.9.413.1.1.1.1.3 |
This object indicates if an auxiliary SSID
is an infra-structure SSID. There should only be
one infra-structure SSID installed on any IEEE
802.11 radio interface. The infra-structure
SSID is used for uplink association while the
radio interface cd11IfStationRole is roleWgb(1),
roleRepeater(5), roleNrBridge(9), or
roleApNrBridge(10).
infraStructure(1) - infra-structure SSID,
nonInfraStructure(2) - Non infra-structure SSID,
optional(3) - use of this infra-structure SSID
is optional for uplink connection.
|
cdot11SecAuxSsidProxyMobileIp |
.1.3.6.1.4.1.9.9.413.1.1.1.1.4 |
This object indicates if an auxiliary SSID
is enabled for Proxy Mobile-IP support. If
Proxy Mobile-IP is not supported in VLAN
network environment, cdot11SecAuxSsidVlan should
be '0' when Proxy Mobile-IP is enabled via this
object.
|
cdot11SecAuxSsidMaxStations |
.1.3.6.1.4.1.9.9.413.1.1.1.1.5 |
This object defines the maximum number of IEEE
802.11 stations which may associate to a radio
interface through this SSID. If the value
is '0', the maximum number is limited only by the
IEEE 802.11 standard and any hardware or radio
firmware limitations of the access point.
|
cdot11SecAuxSsidVlan |
.1.3.6.1.4.1.9.9.413.1.1.1.1.6 |
This object defines the VLAN trunk at which the
traffic will be used when a client is associating
with this SSID. The default value is '0', no
VLAN is configured or used for this SSID.
|
cdot11SecAuxSsidWpaPsk |
.1.3.6.1.4.1.9.9.413.1.1.1.1.7 |
This object configures Wi-Fi Protected Access
Pre-shared Key for this SSID. This key is used
for association authentication and dynamic
encryption key generation. The default value
is ''H if this shared key feature is not enabled.
|
cdot11SecAuxRadiusAccounting |
.1.3.6.1.4.1.9.9.413.1.1.1.1.8 |
This object defines the name of the AAA accounting
list to be used for association accounting. The
default value is an empty string if AAA accounting
is not enabled.
|
cdot11SecAuxSsidLoginUsername |
.1.3.6.1.4.1.9.9.413.1.1.1.1.9 |
This object specifies the username used for
LEAP authentication and association to an uplink
AP while this SSID is in infra-structure mode, i.e.
cdot11SecAuxSsidInfraStruct is 'true'. The default
value is an empty string if this feature is not
enabled.
|
cdot11SecAuxSsidLoginPassword |
.1.3.6.1.4.1.9.9.413.1.1.1.1.10 |
This object specifies the password used for
LEAP authentication association to an uplink
AP while this SSID is in infra-structure mode, i.e.
cdot11SecAuxSsidInfraStruct is 'true'. The default
value is an empty string if this feature is not
enabled.
|
cdot11SecAuxSsidAuthKeyMgmt |
.1.3.6.1.4.1.9.9.413.1.1.1.1.11 |
This object specifies the type of key management
employed for encryption keys defined for the VLAN
in cdot11SecAuxSsidVlan.
WPA key management should only be selected
when encryption is TKIP and authentication is
open, i.e. dot11AuthenticationAlgorithmsIndex
is openSystem(1), together either with EAP or
WPA-PSK for this SSID.
CCKM key management can be used with encryption
TKIP, WEP, CKIP, and Network-EAP authentication
for this SSID.
If none of the bits are set, there is no run-time
key management for this SSID.
|
cdot11SecAuxSsidAuthKeyMgmtOpt |
.1.3.6.1.4.1.9.9.413.1.1.1.1.12 |
This object specifies if the type of key
management, cdot11SecAuxSsidAuthKeyMgmt,
selected is optional. If it is 'true' and
cdot11SecAuxSsidAuthKeyMgmt is not 'none',
the key management is optional. If it is
'false' and cdot11SecAuxSsidAuthKeyMgmt
is not 'none', the key management is
mandatory.
|
cdot11SecAuxSsidRowStatus |
.1.3.6.1.4.1.9.9.413.1.1.1.1.13 |
This is used to create a new SSID entry on this
device, and modify or delete an existing SSID
entry.
Creation of rows must be done via 'createAndGo'
with or without optional objects. This object will
become 'active' if the NMS performs a multivarbind
set including this object and successfully creates
the SSID on this device.
Modification and deletion (via 'destroy') of rows can
be done when this object is 'active'. Any change
to an existing SSID configuration can cause clients
associating with the SSID to disassociate. And,
depends on the implementation, changes on the
existing SSIDs may not affect installed SSID on the
radio interfaces. Therefore, users are advised
to reset the corresponding SSID on the radio
interface via the cdot11SecInterfSsidTable.
|
cdot11SecAuxSsidWirelessNetId |
.1.3.6.1.4.1.9.9.413.1.1.1.1.14 |
This object sets the Wireless Network ID of this
SSID. This ID is used for Cisco GRE tunneling in
layer 3 switching. The valid range for the ID is
'1' to '4096' and the default value is '0' and it
indicates no ID is configured or used on this SSID.
|
cdot11SecSsidRedirectAddrType |
.1.3.6.1.4.1.9.9.413.1.1.1.1.15 |
This is the address type of for the
cdot11SecSsidRedirectDestAddr.
|
cdot11SecSsidRedirectDestAddr |
.1.3.6.1.4.1.9.9.413.1.1.1.1.16 |
This is the destination address set to all packets
received from wireless clients associated to this
wireless station using the cdot11SecAuxSsid. The
cdot11SecSsidRedirectAddrType specifies the type
of this address. The default value '00000000'H
of cdot11SecSsidRedirectAddrType 'ipv4' indicates
that this packet redirection feature is not
enabled.
|
cdot11SecSsidRedirectFilter |
.1.3.6.1.4.1.9.9.413.1.1.1.1.17 |
When the packet redirection feature is enable
(i.e., cdot11SecSsidRedirectAddrType is 'ipv4'
and cdot11SecSsidRedirectDestAddr value is not
'00000000'H), this is the Cisco IP extended
access list number or name used for filtering
packets from wireless clients. Only packets
passed by the access list will be allowed to
forward to the cdot11SecSsidRedirectDestAddr.
If packet redirection is disabled, this
access list will not be applied.
The default value is an empty string to
indicate that no access list filter will be
applied.
|
cdot11SecSsidInformationElement |
.1.3.6.1.4.1.9.9.413.1.1.1.1.18 |
This is the set of Information Elements and
extended capabilities embedded in the SSID
broadcasted in beacons and probe responses.
The extended capabilities 'advertisement' and 'wps'
are allowed only if 'ssidl' is set.
|
cdot11SecAuxSsidVlanName |
.1.3.6.1.4.1.9.9.413.1.1.1.1.19 |
This is the name of the cdot11SecAuxSsidVlan. Either
cdot11SecAuxSsidVlan or cdot11SecAuxSsidVlanName can
be used to set the VLAN trunk for client traffic of
this SSID. If both cdot11SecAuxSsidVlanName and
cdot11SecAuxSsidVlan are set in a query, the set query
will succeed if only if there is a matching pair of
cdot11SecVlanName and cdot11SecVlanNameId in the
cdot11SecVlanNameTable.
The default value is a blank string, no VLAN or VLAN
name is configured or used for this SSID.
|
cdot11SecAuxSsidMbssidBroadcast |
.1.3.6.1.4.1.9.9.413.1.1.1.1.20 |
This object controls if this SSID shall be
broadcasted if MBSSID is enabled at the interface
which this SSID is attached, i.e.
if both cd11IfMultipleBssidEnable and
cdot11SecAuxSsidMbssidBroadcastis are 'true', then
this SSID is broadcasted. Otherwise, this SSID
is not broadcasted.
|
cdot11SecAuxSsidMbssidDtimPeriod |
.1.3.6.1.4.1.9.9.413.1.1.1.1.21 |
This is the DTIM period for this MBSSID enabled SSID.
It is the number of beacon intervals that shall elapse
between transmission of Beacons frames containing a
TIM element whose DTIM Count field is 0.
This DTIM period is only applicable if MBSSID is
enabled at the interface which this SSID is attached,
i.e. cd11IfMultipleBssidEnable is 'true'.
The default value is 0 which indicates dot11DTIMPeriod
of IEEE802dot11-MIB is used. The current valid DTIM
period range for the radio is 1 to 100.
|
cdot11SecAuxSsidAuthEnabled |
.1.3.6.1.4.1.9.9.413.1.1.2.1.1 |
If the value is 'true', this device may
authenticate an association using SSID (specified
by cdot11SecAuxSsid) with the corresponding
pre-defined algorithm (identified by the
dot11AuthenticationAlgorithmsIndex). The default
value is 'true'.
|
cdot11SecAuxSsidAuthPlusEap |
.1.3.6.1.4.1.9.9.413.1.1.2.1.2 |
If both the values of this object and
cdot11SecAuxSsidAuthEnabled are 'true', the
association authentication must complete additional
network-level EAP authentication before client
stations will be unblocked from their association
attempts. If the value of this object is 'false'
while cdot11SecAuxSsidAuthEnabled is 'true', client
stations will be unblocked as soon as they
complete the enabled IEEE 802.11 authentication.
The default value is 'false' for no additional
EAP authentication.
|
cdot11SecAuxSsidAuthPlusMac |
.1.3.6.1.4.1.9.9.413.1.1.2.1.3 |
If both the values of this object and
cdot11SecAuxSsidAuthEnabled are 'true', the
association authentication must complete additional
MAC address authentication before client stations
will be unblocked from their association
attempts. If the value of this object is 'false'
while cdot11SecAuxSsidAuthEnabled is 'true', client
stations will be unblocked as soon as they
complete the enabled IEEE 802.11 authentication.
The default value is 'false' for no additional
MAC address authentication.
|
cdot11SecAuxSsidAuthEapMethod |
.1.3.6.1.4.1.9.9.413.1.1.2.1.4 |
If the value of cdot11SecAuxSsidAuthPlusEap
is 'true' or dot11AuthenticationAlgorithm is
Network-EAP, this is the EAP method list to use
for the EAP authentication. The default is an
empty string if EAP is not used.
|
cdot11SecAuxSsidAuthMacMethod |
.1.3.6.1.4.1.9.9.413.1.1.2.1.5 |
If the value of cdot11SecAuxSsidAuthPlusMac
is 'true', this is the MAC address method list to
use for the MAC authentication. The default is
an empty string if MAC address authentication
is not used.
|
cdot11SecAuxSsidAuthMacAlternate |
.1.3.6.1.4.1.9.9.413.1.1.2.1.6 |
If the values of this object,
cdot11SecAuxSsidAuthEnabled,
cdot11SecAuxSsidAuthPlusMac, and
cdot11SecAuxSsidAuthPlusEap are all 'true' and
the dot11AuthenticationAlgorithm is 'openSystem'
the, the association authentication only need to
complete either additional MAC address or
additional EAP authentication before client
stations will be unblocked from their association
attempts. If the value of this object is 'false',
only one of the two additional authentications
should be enabled. The default value is 'false'
for only one additional should be configured.
|
cdot11SecInterfSsidRowStatus |
.1.3.6.1.4.1.9.9.413.1.1.3.1.1 |
This is used to install a new SSID configuration,
and modify or delete an existing SSID configuration
on a radio interface.
Creation of rows must be done via 'createAndGo' and
with an existing ifIndex of ifType ieee80211(71)
and an existing cdot11SecAuxSsid in the
cdot11SecAuxSsidTable. This object will become
'active' if the NMS performs a multivarbind set
including this object and successfully installs
the SSID on this interface.
Modification and deletion (via 'destroy') of rows can
be done when this object is 'active'. Any change
to an existing SSID configuration can cause clients
associating with the SSID to disassociate.
|
cdot11MbssidMacAddrIndex |
.1.3.6.1.4.1.9.9.413.1.1.4.1.1 |
This is an unique index identifying the
MAC address assigned on the radio. If MBSSID
is not supported on this device, the only
available index number is 1. Currently, if MBSSID
is supported, the index numbers are 1 to 16.
|
cdot11MbssidMacAddrSupported |
.1.3.6.1.4.1.9.9.413.1.1.4.1.2 |
This MAC address can be used as BSSID and
broadcasted in the beacon with a SSID when
cd11IfMultipleBssidEnable is 'true'.
|
cdot11MbssidIfMacAddress |
.1.3.6.1.4.1.9.9.413.1.1.5.1.1 |
This is the BSSID to be sent with the radio SSID.
If MBSSID feature is not enabled (i.e.
cd11IfMultipleBssidEnable is 'false'), all SSIDs
will be sent by the radio with the same BSSID and
that is the radio hardware MAC address.
If MBSSID feature is enabled (i.e.
cd11IfMultipleBssidEnable is 'true'), all SSIDs
will be sent by the radio with different BSSIDs.
|
cdot11MbssidIfBroadcast |
.1.3.6.1.4.1.9.9.413.1.1.5.1.2 |
If d11IfMultipleBssidEnable is 'true', MBSSID
is enabled for the radio and this SSID is a
broadcast SSID as follows
'true' - This SSID is a broadcast SSID and
being broadcasted in the radio beacon.
'false' - This SSID is not a broadcast SSID and
is not broadcasted in the radio beacon.
|
cdot11SecVlanName |
.1.3.6.1.4.1.9.9.413.1.4.1.1.1 |
This object defines the VLAN name assigned to
wireless clients by the RADIUS server serving
this wireless station.
|
cdot11SecVlanNameId |
.1.3.6.1.4.1.9.9.413.1.4.1.1.2 |
This object defines the VLAN trunk to which
a client associating to this wireless station
will be on. The value is '0' is not valid.
|
cdot11SecVlanNameRowStatus |
.1.3.6.1.4.1.9.9.413.1.4.1.1.3 |
This is used to create a new VLAN name to ID
mapping entry on this device, and modify or delete
an existing mapping entry.
Creation of rows must be done via 'createAndGo'
with all other mandatory objects. This object will
become 'active' if the NMS performs a multivarbind
set including this object and successfully creates
the VLAN name entry on this device.
Modification and deletion (via 'destroy') of rows can
be done when this object is 'active'. Any change
to an existing VLAN name to ID mapping configuration
do not affect existing associated wireless clients.
|