MIB Viewer

HPN-ICF-DOT11-WIDS-MIB

204 objects
This MIB provides information about WIDS feature. GLOSSARY Wireless Intrusion Detection Sensor (WIDS) WIDS is designed to be employed in an area that is serviced by an existing wireless network. It aids in the early detection of malicious outsider attacks and intrusions via wireless networks. Rogue AP A rogue access point is any Wi-Fi access point connected to the network without authorization. As it is not authorized, if there is any weakness in the AP, the hacker will have chance to compromise the network. Rogue Station It is similiar to Rogue AP, while it is a station. Monitor AP An AP will scan or listen to the air, and try to detect wireless attack in the network. Some AP products will work only in monitor role, while some AP products could switch between normal AP role (only provide wireless access service)and monitor AP role. Ad Hoc Mode Station could work under Ad hoc mode, then they could directly do peer-to-peer communication without other device support.
OIDNameAccessStatusDescription
1.3.6.1.4.1.11.2.14.11.15.2.75.5IdentityhpnicfDot11WIDSThis MIB provides information about WIDS feature. GLOSSARY Wireless Intrusion Detection Sensor (WIDS) WIDS is designed to be employed in an area that is servic…
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1NodehpnicfDot11WIDSConfigGroup
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1NodehpnicfDot11WIDSGlobalConfigGroup
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.1ScalarhpnicfDot11WIDSScanModeread-writecurrentRepresents the scope of channels to be scanned. The following value are supported all(1) - Do scan on all the channels. auto(2) - Do scan for the channels that…
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.2ScalarhpnicfDot11WIDSScanChannelListread-writeobsoleteRepresents the channel scope to be scanned when hpnicfDot11WIDSScanMode is configurated as channelSpec mode. Each channel value will be separated by comma char…
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.3ScalarhpnicfDot11CntMsrModeread-writecurrentRepresents the countermeasures mode.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.4ScalarhpnicfDot11DevAgingTimeread-writecurrentRepresents the age time for entries in the detected device table. If an entry is not detected within the interval, it is deleted from the detected device table…
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.5ScalarhpnicfDot11DynBlkListEnableread-writecurrentRepresents whether the dynamic blacklist feature is enabled or not. 'true' : Enable the dynamic blacklist feature to filter out unwanted clients, which will no…
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.6ScalarhpnicfDot11DynBlkListLifeTimeread-writecurrentRepresents the lifetime for dynamic blacklist entries. If a dynamic blacklist entry is not detected within the lifetime, the entry will be removed from the dyn…
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.7ScalarhpnicfDot11FloodAtkDctEnableread-writecurrentRepresents whether detection of flood attack is enabled or not. 'true' : Enable the detection of flood attack. 'false' : Disable the detection of flood attack.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.8ScalarhpnicfDot11SpoofAtkDctEnableread-writecurrentRepresents whether detection of Spoof attack is enabled or not. 'true' : Enable the detection of Spoof attack. 'false' : Disable the detection of Spoof attack.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.9ScalarhpnicfDot11WeakIVAtkDctEnableread-writecurrentRepresents whether detection of weak-iv attack is enabled or not. 'true' : Enable the detection of weak-iv attack. 'false' : Disable the detection of weak-iv a…
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.10ScalarhpnicfDot11ResetWIDSRogueHistoryread-writecurrentThis object is used to clear all entries from the rogue history table. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.11ScalarhpnicfDot11ResetWIDSHistroyread-writecurrentThis object is used to clear the history information of attacks detected in the WLAN system. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.12ScalarhpnicfDot11ResetWIDSStatisticsread-writecurrentThis object is used to clear the statistics of attacks detected in the WLAN system. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.13ScalarhpnicfDot11ResetAllDynBlkListread-writecurrentThis object is used to remove all entries from the dynamic blacklist. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.14ScalarhpnicfDot11ResetAllStcBlkListread-writecurrentThis object is used to remove all entries from the static blacklist. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.15ScalarhpnicfDot11ResetAllWhtBlkListread-writecurrentThis object is used to remove all entries from the static whitelist. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.16ScalarhpnicfDot11ResetAllDctRogueAPread-writecurrentThis object is used to clear the information of all detected rogue APs. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.17ScalarhpnicfDot11ResetAllDctRogueStaread-writecurrentThis object is used to clear the information of all detected rogue clients. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.18ScalarhpnicfDot11ResetAllDctAdhocread-writecurrentThis object is used to clear the information of all detected ad hoc devices. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.19ScalarhpnicfDot11ResetAllDctDeviceread-writecurrentThis object is used to clear the information of all detected devices. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.20ScalarhpnicfDot11ResetAllDctSSIDread-writecurrentThis object is used to clear the information of all detected SSIDs. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.21ScalarhpnicfDot11WidsFloodIntervalread-writecurrentThe interval of WIDS flood detection.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.22ScalarhpnicfDot11WidsBlackListThresholdread-writecurrentWhen flood attack exceeds the value of this node, the MAC address will be added into black list.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.23ScalarhpnicfDot11SSIDFilterOnOffread-writecurrentRepresents whether the SSID permit feature is enabled or not.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.1.24ScalarhpnicfDot11BSSIDFilterOnOffread-writecurrentRepresents whether the BSSID permit feature is enabled or not.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.2TablehpnicfDot11WIDSPermitVendorTablenot-accessiblecurrentThe table provides the permitted vendor list, and each vendor will be identified by OUI. The legal device should be made by the permitted vendors.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.2.1RowhpnicfDot11WIDSPermitVendorEntrynot-accessiblecurrentEach entry provides the information of permitted vendor.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.2.1.1ColumnhpnicfDot11VendorOUInot-accessiblecurrentRepresents the vendor OUI information of the wireless device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.2.1.2ColumnhpnicfDot11PermitVendorRowStatusread-createcurrentThe status of this table entry.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.2.1.3ColumnhpnicfDot11VendorNameread-onlycurrentRepresents the vendor name of the wireless device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.3TablehpnicfDot11WIDSPermitSSIDTablenot-accessiblecurrentThe table represents the list of SSID could be permitted in the wireless network.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.3.1RowhpnicfDot11WIDSPermitSSIDEntrynot-accessiblecurrentEach entry provides the information of permitted SSID.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.3.1.1ColumnhpnicfDot11PermitSSIDnot-accessiblecurrentRepresents the permitted SSID in the wireless network.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.3.1.2ColumnhpnicfDot11PermitSSIDRowStatusread-createcurrentThe status of this table entry.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.3.1.3ColumnhpnicfDot11PermitSSIDDetectedread-onlycurrentRepresents whether the permitted SSID is detected or not.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.4TablehpnicfDot11WIDSIgnoreListTablenot-accessiblecurrentThe table provides the MAC address list of stations or APs, and WIDS always take them as legal stations or APs.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.4.1RowhpnicfDot11WIDSIgnoreListEntrynot-accessiblecurrentEach entry contains the MAC address of station or AP, and WIDS always take it as legal station or AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.4.1.1ColumnhpnicfDot11IgnoreMACnot-accessiblecurrentRepresents the MAC address of station or AP, and WIDS always take it as legal station or AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.4.1.2ColumnhpnicfDot11IgnoreListRowStatusread-createcurrentThe status of this table entry.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.4.1.3ColumnhpnicfDot11IgnoreMACDetectedread-onlycurrentRepresents whether the MAC address detected or not.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.4.1.4ColumnhpnicfDot11IgnoreDevTyperead-onlycurrentRepresents the type of the MAC address detected. The value of this object always is unknown if the MAC address is not detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.5TablehpnicfDot11WIDSAttackListTablenot-accessiblecurrentThe table provides the MAC address list of rogue APs or rogue stations, the WIDS will take countermeasure as per the MAC address list.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.5.1RowhpnicfDot11WIDSAttackListEntrynot-accessiblecurrentEach entry contains the MAC address of rogue AP or rogue station, and the countermeasure will be taken for it.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.5.1.1ColumnhpnicfDot11AttackDeviceMacnot-accessiblecurrentRepresents the MAC address of rogue AP or rogue station, and the countermeasure will be taken for it.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.5.1.2ColumnhpnicfDot11AttackListRowStatusread-createcurrentThe status of this table entry.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.5.1.3ColumnhpnicfDot11AttackDevDetectedread-onlycurrentRepresents whether the assigned MAC address in attack list is detected or not.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.5.1.4ColumnhpnicfDot11AttackDevTyperead-onlycurrentRepresents the type of detected MAC address in attack list. If the MAC address is not detected, it will return unknown(5) for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.6TablehpnicfDot11StaticWhiteListTablenot-accessiblecurrentThe table provides the information of whitelist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.6.1RowhpnicfDot11StaticWhiteListEntrynot-accessiblecurrentEach entry contains the information of whitelist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.6.1.1ColumnhpnicfDot11StaticWhiteListMACnot-accessiblecurrentRepresents the MAC addresses in whitelist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.6.1.2ColumnhpnicfDot11StaticWhiteListRowStatusread-createcurrentThe status of this table entry.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.7TablehpnicfDot11StaticBlackListTablenot-accessiblecurrentThe table provides the information of static blacklist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.7.1RowhpnicfDot11StaticBlackListEntrynot-accessiblecurrentEach entry contains the information of static blacklist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.7.1.1ColumnhpnicfDot11StaticBlackListMACnot-accessiblecurrentRepresents the MAC addresses in static blacklist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.7.1.2ColumnhpnicfDot11StaticBlackListRowStatusread-createcurrentThe status of this table entry.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.8TablehpnicfDot11WIDSPermitBSSIDTablenot-accessiblecurrentThe table represents the list of BSSID could be permitted in the wireless network.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.8.1RowhpnicfDot11WIDSPermitBSSIDEntrynot-accessiblecurrentEach entry provides the information of permitted BSSID.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.8.1.1ColumnhpnicfDot11PermitBSSIDnot-accessiblecurrentRepresents the permitted BSSID in the wireless network.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.8.1.2ColumnhpnicfDot11PermitBSSIDDetectedread-onlycurrentRepresents whether the permitted BSSID is detected or not.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.1.8.1.3ColumnhpnicfDot11PermitBSSIDRowStatusread-createcurrentRepresents the row status of permit BSSID table.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2NodehpnicfDot11WIDSDetectGroup
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1TablehpnicfDot11WIDSRogueAPTablenot-accessiblecurrentThe table represents the list of possible BSS information for rogue APs detected by the WIDS.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1RowhpnicfDot11WIDSRogueAPEntrynot-accessiblecurrentEach entry contains possible BSS information of each rogue AP detected by WIDS.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.1ColumnhpnicfDot11RogueAPBSSMACnot-accessiblecurrentRepresents the BSS MAC address of rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.2ColumnhpnicfDot11RogueAPVendorNameread-onlycurrentRepresents the vendor name of rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.3ColumnhpnicfDot11RogueAPMonitorNumread-onlycurrentRepresents the number of monitor APs which detected the rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.4ColumnhpnicfDot11RogueAPFirstDetectTmread-onlycurrentRepresents the time that AP was detected as a rogue AP for the first time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.5ColumnhpnicfDot11RogueAPLastDetectTmread-onlycurrentRepresents the time that AP was detected as a rogue AP for the last time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.6ColumnhpnicfDot11RogueAPSSIDread-onlycurrentRepresents the SSID broadcasted by rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.7ColumnhpnicfDot11RogueAPMaxSigStrengthread-onlycurrentRepresents the maximal value of signal strength that WIDS received from the rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.8ColumnhpnicfDot11RogueAPChannelread-onlycurrentRepresents on which radio channel of the rogue AP the maximal signal strength was received.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.9ColumnhpnicfDot11RogueAPBeaconIntervalread-onlycurrentRepresents the interval for Beacon management frame of rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.10ColumnhpnicfDot11RogueAPAttackedStatusread-onlycurrentRepresents whether the countermeasure have taken for the rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.11ColumnhpnicfDot11RogueAPToIgnoreread-writecurrentRepresents whether the rogue AP will be taken as a rogue AP. If the value is true, NMS should not display the rogue AP as NMS display rogue AP list, and the MA…
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.12ColumnhpnicfDot11RogueAPEncryptStatusread-onlycurrentRepresents whether the rogue AP encrypt the frame or not.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.13ColumnhpnicfDot11RogueAPResetread-writecurrentThis object is used to clear information of assigned AP. The information of AP which detect assigned rogue AP will be cleared together. It will return false fo…
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.14ColumnhpnicfDot11RogueAPFirstDetectTmStrread-onlycurrentRepresents the time that AP was detected as a rogue AP for the first time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.1.1.15ColumnhpnicfDot11RogueAPLastDetectTmStrread-onlycurrentRepresents the time that AP was detected as a rogue AP for the last time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.2TablehpnicfDot11WIDSRogueAPExtTablenot-accessiblecurrentAs each rogue AP could be detected by multiple monitor APs, each monitor AP could have some kind of detailed information about a specific rogue AP. In the hpni…
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.2.1RowhpnicfDot11WIDSRogueAPExtEntrynot-accessiblecurrentEach entry contains information of the rogue AP detected by each monitor AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.2.1.1ColumnhpnicfDot11WIDSAPIDnot-accessiblecurrentTo uniquely identify each AP, and relation-ship between hpnicfDot11WIDSAPID and AP device will be static.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.2.1.2ColumnhpnicfDot11DetectCurAPSigStrengthread-onlycurrentRepresents the current value of signal strength that WIDS monitor AP received from the rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.2.1.3ColumnhpnicfDot11DetectAPByChannelread-onlycurrentRepresents on which radio channel that WIDS monitor AP detected the rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.2.1.4ColumnhpnicfDot11DetectAPByRadioIDread-onlycurrentRepresents on which radio the monitor AP has detected the rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.2.1.5ColumnhpnicfDot11AttackAPStatusread-onlycurrentRepresents whether monitor AP have taken countermeasure on the rogue AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.2.1.6ColumnhpnicfDot11DetectAPFirstTmread-onlycurrentRepresents the time that monitor AP detected the rogue AP for the first time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.2.1.7ColumnhpnicfDot11DetectAPLastTmread-onlycurrentRepresents the time that monitor AP detected the rogue AP for the last time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3TablehpnicfDot11WIDSRogueStaTablenot-accessiblecurrentThe table represents the list of rogue stations detected by the WIDS.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1RowhpnicfDot11WIDSRogueStaEntrynot-accessiblecurrentEach entry contains information of each rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.1ColumnhpnicfDot11RogueStaMACnot-accessiblecurrentRepresents the MAC address of rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.2ColumnhpnicfDot11RogueStaVendorNameread-onlycurrentRepresents the vendor name of rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.3ColumnhpnicfDot11RogueStaMonitorNumread-onlycurrentRepresents the number of monitor APs which detected the rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.4ColumnhpnicfDot11RogueStaFirstDetectTmread-onlycurrentRepresents the time that station was detected as a rogue station for the first time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.5ColumnhpnicfDot11RogueStaLastDetectTmread-onlycurrentRepresents the time that station was detected as a rogue station for the last time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.6ColumnhpnicfDot11RogueStaAccessBSSIDread-onlycurrentRepresents BSS MAC address that rogue station try to access.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.7ColumnhpnicfDot11RogueStaMaxSigStrengthread-onlycurrentRepresents the maximal value of signal strength that WIDS received from the rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.8ColumnhpnicfDot11RogueStaChannelread-onlycurrentRepresents on which radio channel the maximal signal strength was received.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.9ColumnhpnicfDot11RogueStaAttackedStatusread-onlycurrentRepresents whether the countermeasure have taken for the rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.10ColumnhpnicfDot11RogueStaToIgnoreread-writecurrentRepresents whether the rogue AP will be taken as a rogue station. If the value is true, NMS should not display the rogue station as NMS display rogue station l…
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.11ColumnhpnicfDot11RogueStaAdHocStatusread-onlycurrentRepresents whether the rogue station work on the Ad Hoc mode or not.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.12ColumnhpnicfDot11RogueStaResetread-writecurrentThis object is used to clear information of assigned station. The information of AP which detects assigned rogue station will be cleared together. It will retu…
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.13ColumnhpnicfDot11RogueStaFirstDetectTmStrread-onlycurrentRepresents the time that station was detected as a rogue station for the first time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.3.1.14ColumnhpnicfDot11RogueStaLastDetectTmStrread-onlycurrentRepresents the time that station was detected as a rogue station for the last time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.4TablehpnicfDot11WIDSRogueStaExtTablenot-accessiblecurrentAs each rogue station could be detected by multiple monitor APs, each monitor AP could have some kind of detailed information about a specific rogue station. I…
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.4.1RowhpnicfDot11WIDSRogueStaExtEntrynot-accessiblecurrentEach entry contains information of rogue station detected by each monitor AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.4.1.1ColumnhpnicfDot11DetectCurStaSigStrengthread-onlycurrentRepresents the current value of signal strength that WIDS monitor AP received from the rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.4.1.2ColumnhpnicfDot11DetectStaByChannelread-onlycurrentRepresents on which radio channel the maximal signal strength was received.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.4.1.3ColumnhpnicfDot11DetectStaByRadioIDread-onlycurrentRepresents which radio on the monitor AP has detected the rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.4.1.4ColumnhpnicfDot11AttackStaStatusread-onlycurrentRepresents whether monitor AP have taken countermeasure for the rogue station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.4.1.5ColumnhpnicfDot11DetectStaFirstTmread-onlycurrentRepresents the time that monitor AP detected the rogue station for the first time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.4.1.6ColumnhpnicfDot11DetectStaLastTmread-onlycurrentRepresents the time that monitor AP detected the rogue station for the last time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5TablehpnicfDot11WIDSDetectedDevTablenot-accessiblecurrentThis Table contains information of detected devices.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1RowhpnicfDot11WIDSDetectedDevEntrynot-accessiblecurrentEach entry contains information of detected devices.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.1ColumnhpnicfDot11WIDSDevMACnot-accessiblecurrentRepresents MAC address of the device detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.2ColumnhpnicfDot11WIDSDevTyperead-onlycurrentRepresents type of the device detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.3ColumnhpnicfDot11WIDSDevPermitTyperead-onlycurrentRepresents whether the device detected is a rogue device or not.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.4ColumnhpnicfDot11WIDSDevVendorread-onlycurrentRepresents Vendor of the detected device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.5ColumnhpnicfDot11WIDSDevMonitorNumread-onlycurrentRepresents the number of active APs that detect the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.6ColumnhpnicfDot11WIDSDevSSIDread-onlycurrentRepresents the service set identifier for the ESS of the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.7ColumnhpnicfDot11WIDSDevBSSIDread-onlycurrentRepresents the basic service set identifier of the detected device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.8ColumnhpnicfDot11WIDSDevChannelread-onlycurrentRepresents the channel in which the device was last detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.9ColumnhpnicfDot11WIDSDevMaxRSSIread-onlycurrentRepresents the maximum detected RSSI of the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.10ColumnhpnicfDot11WIDSDevBeaconIntvlread-onlycurrentRepresents the beacon interval for the detected AP.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.11ColumnhpnicfDot11WIDSDevFstDctTimeread-onlycurrentRepresents the time at which the device was first detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.12ColumnhpnicfDot11WIDSDevLstDctTimeread-onlycurrentRepresents the time at which the rogue AP was detected last time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.13ColumnhpnicfDot11WIDSDevResetread-writecurrentThis object is used to clears the information of the device detected in the WLAN. It will return false for get operation.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.5.1.14ColumnhpnicfDot11WIDSDevSnrread-onlycurrentRepresents SNR of the device detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.6TablehpnicfDot11WIDSRptAPTablenot-accessiblecurrentThis Table contains information of the AP which detected device in the WLAN.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.6.1RowhpnicfDot11WIDSRptAPEntrynot-accessiblecurrentEach entry contains information of the AP which detected device in the WLAN.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.6.1.1ColumnhpnicfDot11WIDSRptAPMACnot-accessiblecurrentRepresents the MAC address of the AP that detected the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.6.1.2ColumnhpnicfDot11WIDSRptAPNameread-onlycurrentRepresents the name of the AP that detected the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.6.1.3ColumnhpnicfDot11WIDSRptAPRadioIDread-onlycurrentRepresents the radio index of the AP that detected the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.6.1.4ColumnhpnicfDot11WIDSRptAPMaxRSSIread-onlycurrentRepresents the maximum detected RSSI of the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.6.1.5ColumnhpnicfDot11WIDSRptAPFstDctTimeread-onlycurrentRepresents the time at which the rogue AP was detected first time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.6.1.6ColumnhpnicfDot11WIDSRptAPLstDctTimeread-onlycurrentRepresents the time at which the rogue AP was detected last time.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.7TablehpnicfDot11DynBlackListTablenot-accessiblecurrentThis table contains information of dynamic blacklist entries.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.7.1RowhpnicfDot11DynBlackListEntrynot-accessiblecurrentEach entry contains information of dynamic blacklist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.7.1.1ColumnhpnicfDot11DynBlackListMACnot-accessiblecurrentRepresents the MAC address of the device inserted into the dynamic blacklist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.7.1.2ColumnhpnicfDot11DynBlackListTimeread-onlycurrentRepresents the time elapsed since the entry was last updated.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.7.1.3ColumnhpnicfDot11DynBlackListReasonread-onlycurrentRepresents the reason why the entry was added into the dynamic blacklist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.7.1.4ColumnhpnicfDot11DynBlackListResetread-writecurrentThis object is used to remove designated entry from the dynamic blacklist. The value which read from this object always is false.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.7.1.5ColumnhpnicfDot11DynBlackListTimeTicksread-onlycurrentRepresents the time elapsed since the entry was last updated in units TimeTicks.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.8TablehpnicfDot11WIDSRogueHistoryTablenot-accessiblecurrentThis table contains information of all expired rogue devices which have been deleted from the list of detected rogue devices because they could not be detected…
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.8.1RowhpnicfDot11WIDSRogueHistoryEntrynot-accessiblecurrentEach entry contains information of an expired rogue device which has been deleted from the list of detected rogue devices because they could not be detected wi…
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.8.1.1ColumnhpnicfDot11WIDSRogueHisIndexnot-accessiblecurrentRepresents index of this entry.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.8.1.2ColumnhpnicfDot11WIDSRogueHisMACread-onlycurrentRepresents the MAC address of the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.8.1.3ColumnhpnicfDot11WIDSRogueHisVendorread-onlycurrentRepresents the vendor for the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.8.1.4ColumnhpnicfDot11WIDSRogueHisTyperead-onlycurrentRepresents the type of the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.8.1.5ColumnhpnicfDot11WIDSRogueHisChlread-onlycurrentRepresents the channel in which the device was last detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.8.1.6ColumnhpnicfDot11WIDSRogueHisSSIDread-onlycurrentRepresents the service set identifier for the ESS of the device.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.8.1.7ColumnhpnicfDot11WIDSRogueHisLastDctTimeread-onlycurrentRepresents the time at which the device was last detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.9TablehpnicfDot11WIDSAtkHistroyTablenot-accessiblecurrentThis table contains information of the history of attacks detected in the WLAN system.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.9.1RowhpnicfDot11WIDSAtkHistroyEntrynot-accessiblecurrentEach entry contains information of the history of attacks detected in the WLAN system.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.9.1.1ColumnhpnicfDot11WIDSAtkHisIndexnot-accessiblecurrentRepresents index of this entry.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.9.1.2ColumnhpnicfDot11WIDSAtkHisMACread-onlycurrentRepresents the Mac address. In case of spoof attacks, this field provides the BSSID which was spoofed. In case of other attacks, this field provides the MAC ad…
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.9.1.3ColumnhpnicfDot11WIDSAtkHisTyperead-onlycurrentRepresents the type of attack.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.9.1.4ColumnhpnicfDot11WIDSAtkHisChlread-onlycurrentRepresents the channel in which the attack was detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.9.1.5ColumnhpnicfDot11WIDSAtkHisRSSIread-onlycurrentRepresents the average RSSI of the designated attack.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.9.1.6ColumnhpnicfDot11WIDSAtkHisDctTimeread-onlycurrentRepresents the time at which this attack was detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.9.1.7ColumnhpnicfDot11WIDSAtkHisAPNameread-onlycurrentRepresents the name of the AP which detected this attack.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.10NodehpnicfDot11WIDSAtkStatis
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.10.1ScalarhpnicfDot11WIDSAtkStasStartTimeread-onlycurrentRepresents current attack tracking time. It is started at the system startup and is refreshed each hour subsequently.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.10.2TablehpnicfDot11WIDSAtkStasTablenot-accessiblecurrentThis table contains information of the counts of attacks detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.10.2.1RowhpnicfDot11WIDSAtkStasEntrynot-accessiblecurrentEach entry contains information of the counts of attacks detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.10.2.1.1ColumnhpnicfDot11WIDSAtkStasTypenot-accessiblecurrentRepresents the type of attack.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.10.2.1.2ColumnhpnicfDot11WIDSAtkStasCurCntread-onlycurrentRepresents the count of attacks detected since the time specified by the current attack tracking time. The current attack tracking time is started at the syste…
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.10.2.1.3ColumnhpnicfDot11WIDSAtkStasTotalCntread-onlycurrentRepresents the total count of the attacks detected since the system startup.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.11TablehpnicfDot11BlackListTablenot-accessiblecurrentThis table contains information of blacklist entries, including dynamic and static.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.11.1RowhpnicfDot11BlackListEntrynot-accessiblecurrentEach entry contains information of blacklist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.11.1.1ColumnhpnicfDot11BlackListMACnot-accessiblecurrentThis object represents the MAC address of the device inserted into the table.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.11.1.2ColumnhpnicfDot11BlackListTimeread-onlycurrentRepresents the time elapsed since the entry was last updated. If it is static blacklist, the value is always 0.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.11.1.3ColumnhpnicfDot11BlackListReasonread-onlycurrentRepresents the reason why the entry was added into the blacklist.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.11.1.4ColumnhpnicfDot11BlackListRowStatusread-createcurrentThis object represents the status of this table entry.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.2.11.1.5ColumnhpnicfDot11BlackListTimeTicksread-onlycurrentRepresents the time elapsed since the entry was last updated in timetick. If it is static blacklist, the value is always 0.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3NodehpnicfDot11WIDSNotifyGroup
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1NodehpnicfDot11WIDSTraps
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1.1NotificationhpnicfDot11WIDSDetectRogueTrapcurrentThe notification represents that a rogue AP or a station was detected by WIDS. The NMS would refer to MIB table under hpnicfDot11WIDSDetectGroup group to get m…
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1.2NotificationhpnicfDot11WIDSAdHocTrapcurrentThe notification represents a rogue Ad hoc station was detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1.3NotificationhpnicfDot11WIDSUnauthorSSIDTrapcurrentThe notification represents which unauthorized SSID are accessed in the network. The notification will be sent to NMS when an unauthorized SSID is detected on …
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1.4NotificationhpnicfDot11WIDSDisappearRogueTrapcurrentThe notification represents that a rogue device has aged out and moved to history table or the device type has been changed to friendly. The notification will …
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1.5NotificationhpnicfDot11WIDSDetectAttackcurrentThis notification occurs when some type of attack is detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1.6NotificationhpnicfDot11WIDSDetectWBridgecurrentThis notification occurs whenever a detected device is classified as rogue wireless-bridge.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1.7NotificationhpnicfDot11WIDSFloodTrapcurrentThis notification occurs when flood attack is detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1.8NotificationhpnicfDot11WIDSSpoofTrapcurrentThis notification occurs when spoof attack is detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.1.9NotificationhpnicfDot11WIDSWeakIVTrapcurrentThis notification occurs when weak IV attack is detected.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2NodehpnicfDot11WIDSTrapVarObjects
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.1ScalarhpnicfDot11WIDSRogueMACaccessible-for-notifycurrentRepresents which rogue AP or station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.2ScalarhpnicfDot11WIDSRogueTypeaccessible-for-notifycurrentRepresents the rogue type. The following value are supported rogueAp(1) - A rogue AP rogueStation(2) - A rogue Station
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.3ScalarhpnicfDot11WIDSMonitorMACaccessible-for-notifycurrentRepresents which monitor detected the rogue AP or station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.4ScalarhpnicfDot11WIDSAdHocMACaccessible-for-notifycurrentRepresents the MAC address of Ad hoc station.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.5ScalarhpnicfDot11UnauthorSSIDNameaccessible-for-notifycurrentRepresents an unauthorized SSID.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.6ScalarhpnicfDot11MonitorAPIDaccessible-for-notifycurrentRepresents monitor AP's APID.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.7ScalarhpnicfDot11MonitorApRadioIDaccessible-for-notifycurrentRepresents monitor AP's radio ID
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.8ScalarhpnicfDot11WIDSAtkMacaccessible-for-notifycurrentRepresents mac address of attack source.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.9ScalarhpnicfDot11WIDSAtkFrameTypeaccessible-for-notifycurrentRepresents attack frame type.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.10ScalarhpnicfDot11WIDSAtkChannelaccessible-for-notifycurrentRepresents attack channel.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.11ScalarhpnicfDot11WIDSAtkTimeaccessible-for-notifycurrentRepresents when attacking happened.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.12ScalarhpnicfDot11WIDSAtkDestMacaccessible-for-notifycurrentRepresents mac address of attack destination.
1.3.6.1.4.1.11.2.14.11.15.2.75.5.3.2.13ScalarhpnicfDot11WIDSFirstTrapTimeaccessible-for-notifycurrentRepresents the first trap time.
Type Definitions
NameSyntaxStatusDescription
HpnicfDot11WIDSAtkTypeINTEGER { act(1), asr(2), aur(3), daf(4), dar(5), ndf(6), pbr(7), rar(8), saf(9), sdf(10), wiv(11), unknown(12) }currentThe type of attack. This object has following defined values: 'act': Action Frame 'asr': Association Request 'aur': Authentication Request 'daf': Deauthentication Frame 'dar': Disassociation Request 'ndf': Null Data Fra…
HpnicfDot11WIDSDevPermitTypeINTEGER { permit(1), rogue(2) }currentRepresents whether the detected device is permitted or a rogue.
HpnicfDot11WIDSDevTypeINTEGER { client(1), ap(2), adhoc(3), wirelessBridge(4), unknown(5) }currentThe type of device detected.