Home/Catalog/CISCO-LWAPP-WEBAUTH-MIB

CISCO-LWAPP-WEBAUTH-MIB

AI MIB Summary

The CISCO-LWAPP-WEBAUTH-MIB provides SNMP instrumentation for Cisco Central Controllers to configure and monitor web authentication parameters for mobile nodes associated with LWAPP-enabled Access Points. It enables the management of guest user access policies and HTTP-based credential validation for WLANs where web security is enforced.

This MIB is intended to be implemented on all those devices operating as Central controllers, that terminate the Light Weight Access Point Protocol tunnel from Cisco Light-weight LWAPP Access Points. This MIB is used to configure web authentication parameters in the controller to manage clients' authentication. The mobile nodes are web-authenticated if they select the WLAN that has web security enabled. The relationship between CC and the LWAPP APs can be depicted as follows: +......+ +......+ +......+ +......+ + + + + + + + + + CC + + CC + + CC + + CC + + + + + + + + + +......+ +......+ +......+ +......+ .. . . . .. . . . . . . . . . . . . . . . . . . . . . . . +......+ +......+ +......+ +......+ +......+ + + + + + + + + + + + AP + + AP + + AP + + AP + + AP + + + + + + + + + + + +......+ +......+ +......+ +......+ +......+ . . . . . . . . . . . . . . . . . . . . . . . . +......+ +......+ +......+ +......+ +......+ + + + + + + + + + + + MN + + MN + + MN + + MN + + MN + + + + + + + + + + + +......+ +......+ +......+ +......+ +......+ The LWAPP tunnel exists between the controller and the APs. The MNs communicate with the APs through the protocol defined by the 802.11 standard. LWAPP APs, upon bootup, discover and join one of the controllers and the controller pushes the configuration, that includes the WLAN parameters, to the LWAPP APs. The APs then encapsulate all the 802.11 frames from wireless clients inside LWAPP frames and forward the LWAPP frames to the controller. GLOSSARY Access Point ( AP ) An entity that contains an 802.11 medium access control ( MAC ) and physical layer ( PHY ) interface and provides access to the distribution services via the wireless medium for associated clients. LWAPP APs encapsulate all the 802.11 frames in LWAPP frames and sends them to the controller to which it is logically connected. Central Controller ( CC ) The central entity that terminates the LWAPP protocol tunnel from the LWAPP APs. Throughout this MIB, this entity also referred to as 'controller'. Guest User A guest user is a temporary user with access privileges for configuring the wireless network for a finite life time. The wireless networks are configured on the controller. The method of authentication to the controller can be configured using this MIB instrumentation. Light Weight Access Point Protocol ( LWAPP ) This is a generic protocol that defines the communication between the Access Points and the Central Controller. Mobile Node ( MN ) A roaming 802.11 wireless device in a wireless network associated with an access point. Mobile Node, Mobile Station(Ms) and client are used interchangeably. Web-Authentication Clients are web authenticated, when clients open the web-browser and send HTTP packets. Then user is asked to enter login and password. This is known as Web Authentication. REFERENCE [1] Wireless LAN Medium Access Control ( MAC ) and Physical Layer ( PHY ) Specifications. [2] Draft-obara-capwap-lwapp-00.txt, IETF Light Weight Access Point Protocol
Main OID:
ciscoLwappWebAuthMIB.1.3.6.1.4.1.9.9.515
29
Objects
Active
Status
7
Dependencies

Imported Objects

Objects

29 total
Object Name
ciscoLwappWebAuthMIBThis MIB is intended to be implemented on all those devices operating as Central controllers, that terminate the Light Weight Access Point Protocol tunnel from Cisco Light-weight LWAPP Access Points. This MIB is used to configure web authentication parameters in the controller to manage clients' authentication. The mobile nodes are web-authenticated if they select the WLAN that has web security enabled. The relationship between CC and the LWAPP APs can be depicted as follows: +......+ +......+ +......+ +......+ + + + + + + + + + CC + + CC + + CC + + CC + + + + + + + + + +......+ +......+ +......+ +......+ .. . . . .. . . . . . . . . . . . . . . . . . . . . . . . +......+ +......+ +......+ +......+ +......+ + + + + + + + + + + + AP + + AP + + AP + + AP + + AP + + + + + + + + + + + +......+ +......+ +......+ +......+ +......+ . . . . . . . . . . . . . . . . . . . . . . . . +......+ +......+ +......+ +......+ +......+ + + + + + + + + + + + MN + + MN + + MN + + MN + + MN + + + + + + + + + + + +......+ +......+ +......+ +......+ +......+ The LWAPP tunnel exists between the controller and the APs. The MNs communicate with the APs through the protocol defined by the 802.11 standard. LWAPP APs, upon bootup, discover and join one of the controllers and the controller pushes the configuration, that includes the WLAN parameters, to the LWAPP APs. The APs then encapsulate all the 802.11 frames from wireless clients inside LWAPP frames and forward the LWAPP frames to the controller. GLOSSARY Access Point ( AP ) An entity that contains an 802.11 medium access control ( MAC ) and physical layer ( PHY ) interface and provides access to the distribution services via the wireless medium for associated clients. LWAPP APs encapsulate all the 802.11 frames in LWAPP frames and sends them to the controller to which it is logically connected. Central Controller ( CC ) The central entity that terminates the LWAPP protocol tunnel from the LWAPP APs. Throughout this MIB, this entity also referred to as 'controller'. Guest User A guest user is a temporary user with access privileges for configuring the wireless network for a finite life time. The wireless networks are configured on the controller. The method of authentication to the controller can be configured using this MIB instrumentation. Light Weight Access Point Protocol ( LWAPP ) This is a generic protocol that defines the communication between the Access Points and the Central Controller. Mobile Node ( MN ) A roaming 802.11 wireless device in a wireless network associated with an access point. Mobile Node, Mobile Station(Ms) and client are used interchangeably. Web-Authentication Clients are web authenticated, when clients open the web-browser and send HTTP packets. Then user is asked to enter login and password. This is known as Web Authentication. REFERENCE [1] Wireless LAN Medium Access Control ( MAC ) and Physical Layer ( PHY ) Specifications. [2] Draft-obara-capwap-lwapp-00.txt, IETF Light Weight Access Point Protocol
MODULE-IDENTITY
.1.3.6.1.4.1.9.9.515
ciscoLwappWebAuthMIBNotifs
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.515.0
cLWAGuestUserRemovedThis notification is generated when the lifetime of the guest-user expires and the guest-user's accounts are removed.
NOTIFICATION-TYPE
.1.3.6.1.4.1.9.9.515.0.1
ciscoLwappWebAuthMIBNotifObjs
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.515.1
cLWAGuestUserNameThis object indicates the name of the guest user.ro
OCTET STRING
.1.3.6.1.4.1.9.9.515.1.1
ciscoLwappWebAuthMIBObjects
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.515.2
ciscoLwappWebAuthConfig
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.515.2.1
cLWAWebAuthTypeThe type of web authentication for the clients. Web Authentication can be of three types; internalDefault - The default login page will be presented to the client for authentication. internalCustom - The administrator has created and uploaded a custom login page and it will be presented to the clients for authentication. external - This value indicates that the login page will be served from the external web server. Note that cLWAWebAuthType can be successfully set to this value when the cLWAExternalWebAuthURL object has been set to string with non-zero length.rw
Enumeration
.1.3.6.1.4.1.9.9.515.2.1.1
cLWACustomLogoFileNameThe name of the custom logo file. The logo in this file will appear on the login page when the value of cLWebAuthType is 'internalDefault'.ro
SnmpAdminString (SNMP-FRAMEWORK-MIB)
.1.3.6.1.4.1.9.9.515.2.1.3
cLWACustomWebTitleThe title text that appears on the login page of the clients when the value of cLWebAuthType is 'internalDefault'.rw
SnmpAdminString
.1.3.6.1.4.1.9.9.515.2.1.4
cLWACustomWebMessageThe message that appears on the login page of clients when the value of cLWebAuthType is 'internalDefault'.rw
SnmpAdminString (SNMP-FRAMEWORK-MIB)
.1.3.6.1.4.1.9.9.515.2.1.5
cLWACustomWebRedirectURLThe URL used to load client web page after successful authentication.rw
CiscoURLString (CISCO-TC)
.1.3.6.1.4.1.9.9.515.2.1.6
cLWAExternalWebAuthURLThe URL to which the client web page will be directed for authentication. This object will be used when the cLWebAuthType object is set to 'external'. The configured URL should resolve to one of the Web Server IP addresses configured through cLWAExternalWebServerTable.rw
CiscoURLString (CISCO-TC)
.1.3.6.1.4.1.9.9.515.2.1.7
ciscoLwappWebAuthExtConfig
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.515.2.2
cLWAExternalWebServerTableThis table provides the list of external web servers used for external web authentication. These are the addresses from which the controller will allow traffic before client authentication to show the login page. The controller is expected to use the services of these web servers for performing the authentication. The user is expected to provide correct Internet addresses of those servers available for authentication through this table. The web authentication is done with the help of only those Web Servers configured through this table only when the cLWAWebAuthType is configured as 'external'.
SEQUENCE OF CLWAExternalWebServerEntry
.1.3.6.1.4.1.9.9.515.2.2.1
cLWAExternalWebServerEntryA conceptual row in cLWAExternalWebServerTable. Each entry corresponds to one external web authentication server whose address is represented by cLWAExternalWebServerAddr.
CLWAExternalWebServerEntry
.1.3.6.1.4.1.9.9.515.2.2.1.1
cLWAExternalWebServerIndexThis object uniquely identifies one specific entry in this table.
Unsigned32 (1..32 )
.1.3.6.1.4.1.9.9.515.2.2.1.1.1
cLWAExternalWebServerAddrTypeThe type of the Web Server address as represented by the value of the corresponding instance of 'cLWAExternalWebServerAddr'.rw
InetAddressType (INET-ADDRESS-MIB)
.1.3.6.1.4.1.9.9.515.2.2.1.1.2
cLWAExternalWebServerAddrThe Internet address of the Web Server from which traffic is allowed before client's authentication. Please note that the row creation will be successful only if the address of the Web Server represented by the values of cLWAExternalWebServerAddrType and cLWAExternalWebServerAddr is unique across all the entries.rw
InetAddress (INET-ADDRESS-MIB)
.1.3.6.1.4.1.9.9.515.2.2.1.1.3
cLWAExternalWebServerRowStatusThe status of the conceptual row used to create and delete specific instances of rows in this table. This object can not be set to 'active' unless the values of the corresponding instances of cLWAExternalWebServerAddr and cLWAExternalWebServerAddrType are set.rw
RowStatus (SNMPv2-TC)
.1.3.6.1.4.1.9.9.515.2.2.1.1.4
ciscoLwappLocalNetUserConfig
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.515.2.3
cLWALocalNetUserTableThe table lists the user type for each user present in the controller. The user type can be guest or permanent.
SEQUENCE OF CLWALocalNetUserEntry
.1.3.6.1.4.1.9.9.515.2.3.1
cLWALocalNetUserEntryThis is a row in the cLWALocalNetUserTable. Each entry corresponds to a guest/permanent user present in the controller.
CLWALocalNetUserEntry
.1.3.6.1.4.1.9.9.515.2.3.1.1
cLWALocalNetUserNameThis object identifies the user name of the guest user or the permanent user in the controller.
SnmpAdminString
.1.3.6.1.4.1.9.9.515.2.3.1.1.1
cLWALocalNetUserIsGuestThis object is used to specify the type of user in the controller. A value of 'true' is used to specify a guest user and a value of 'false' is used to specify a permanent user.rw
TruthValue (SNMPv2-TC)
.1.3.6.1.4.1.9.9.515.2.3.1.1.2
ciscoLwappWebAuthMIBConform
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.515.3
ciscoLwappWebAuthMIBCompliances
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.515.3.1
ciscoLwappWebAuthMIBGroups
OBJECT IDENTIFIER
.1.3.6.1.4.1.9.9.515.3.2
CISCO-LWAPP-WEBAUTH-MIB - SNMP MIB Reference | MIBs Explorer