HUAWEI-WLAN-SECURITY-MIB
AI MIB Summary
The HUAWEI-WLAN-SECURITY-MIB provides programmatic access to monitor and configure security parameters for Huawei WLAN controllers and access points, specifically tracking authentication states, encryption algorithm configurations, and rogue AP detection events. This module enables the retrieval of critical security metrics such as active user authentication sessions, WPA/WPA2/WPA3 policy enforcement status, and intrusion detection system (IDS) alerts within the wireless infrastructure.
huawei HUAWEI-WLAN-SECURITY-MIB.
Main OID:
hwWlanSecurity.1.3.6.1.4.1.2011.6.139.6
146
Objects
Active
Status
7
Dependencies
Imported Objects
Objects
146 total| Object Name |
|---|
hwWlanSecurityhuawei HUAWEI-WLAN-SECURITY-MIB. MODULE-IDENTITY .1.3.6.1.4.1.2011.6.139.6 |
hwWsecProfileTableWLAN access security profile table. SEQUENCE OF HwWsecProfileEntry .1.3.6.1.4.1.2011.6.139.6.1 |
hwWsecProfileEntryWLAN access security profile entry. HwWsecProfileEntry .1.3.6.1.4.1.2011.6.139.6.1.1 |
hwWsecProfileNameWLAN access security profile Name.rw OCTET STRING .1.3.6.1.4.1.2011.6.139.6.1.1.1 |
hwWsecProfileWEPDataEncryptWhen this attribute is TRUE, WEP data will be encrypted.
When this attribute is FALSE, WEP data will not be encrypted.
The default value of this attribute is FALSE.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.6.139.6.1.1.2 |
hwWsecProfileWEPDefaultKeyIDThis attribute shall indicate the use of the first,
second, third, or fourth element of the WEPDefaultKeys
array when set to values of zero, one, two, or three. The
default value of this attribute shall be 0.rw Integer32 .1.3.6.1.4.1.2011.6.139.6.1.1.3 |
hwWsecProfileWEPKeyMappingLengthThe maximum number of tuples that hwWsecWEPKeyMappings can hold.rw Integer32 .1.3.6.1.4.1.2011.6.139.6.1.1.4 |
hwWsecProfileAsuIpAddrASU IP address for WAPI certification authenticationrw IpAddress .1.3.6.1.4.1.2011.6.139.6.1.1.5 |
hwWsecProfileCaCertFileNameCA certification file namerw OCTET STRING .1.3.6.1.4.1.2011.6.139.6.1.1.6 |
hwWsecProfileAsuCertFileNameASU certification file namerw OCTET STRING .1.3.6.1.4.1.2011.6.139.6.1.1.7 |
hwWsecProfileAcCertFileNameAC certification file namerw OCTET STRING .1.3.6.1.4.1.2011.6.139.6.1.1.8 |
hwWsecProfileAcPrvKeyFileNameAC private key file namerw OCTET STRING .1.3.6.1.4.1.2011.6.139.6.1.1.9 |
hwWsecProfileRsnaVersionThe highest WAPI/RSNA version this entity supports. See 7.3.2.9.ro Integer32 .1.3.6.1.4.1.2011.6.139.6.1.1.10 |
hwWsecProfileWapiVersionThis object indicates the highest WAPI version that this entity supports.ro Integer32 .1.3.6.1.4.1.2011.6.139.6.1.1.11 |
hwWsecProfileRowStatusRow statusrw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.2011.6.139.6.1.1.12 |
hwWsecProfileCaPfxPasswordDescription.rw OCTET STRING .1.3.6.1.4.1.2011.6.139.6.1.1.13 |
hwWsecProfileCaCertStateDescription.ro Enumeration .1.3.6.1.4.1.2011.6.139.6.1.1.14 |
hwWsecProfileAsuPfxPasswordDescription.rw OCTET STRING .1.3.6.1.4.1.2011.6.139.6.1.1.15 |
hwWsecProfileAsuCertStateDescription.ro Enumeration .1.3.6.1.4.1.2011.6.139.6.1.1.16 |
hwWsecProfileAcPfxPasswordDescription.rw OCTET STRING .1.3.6.1.4.1.2011.6.139.6.1.1.17 |
hwWsecProfileAcCertStateDescription.ro Enumeration .1.3.6.1.4.1.2011.6.139.6.1.1.18 |
hwWsecProfileKeyPfxPasswordDescription.rw OCTET STRING .1.3.6.1.4.1.2011.6.139.6.1.1.19 |
hwWsecProfileAsuTypeDescription.rw Enumeration .1.3.6.1.4.1.2011.6.139.6.1.1.20 |
hwWsecProfileWpaPtkRekeySwitchDescription.rw Enumeration .1.3.6.1.4.1.2011.6.139.6.1.1.21 |
hwWsecProfileWpa2PtkRekeySwitchDescription.rw Enumeration .1.3.6.1.4.1.2011.6.139.6.1.1.22 |
hwWsecProfileWpaWpa2PtkRekeySwitchDescription.rw Enumeration .1.3.6.1.4.1.2011.6.139.6.1.1.23 |
hwWsecProfileWpaPtkRekeyIntervalDescription.rw Integer32 .1.3.6.1.4.1.2011.6.139.6.1.1.24 |
hwWsecProfileWpa2PtkRekeyIntervalDescription.rw Integer32 .1.3.6.1.4.1.2011.6.139.6.1.1.25 |
hwWsecProfileWpaWpa2PtkRekeyIntervalDescription.rw Integer32 .1.3.6.1.4.1.2011.6.139.6.1.1.26 |
hwWsecWEPDefaultKeysTableConceptual table for WEP default keys. This table shall
contain the four WEP default secret key values
corresponding to the four possible KeyID values. The WEP
default secret keys are logically WRITE-ONLY. Attempts to
read the entries in this table shall return unsuccessful
status and values of null or zero. The default value of
each WEP default key shall be null. SEQUENCE OF HwWsecWEPDefaultKeysEntry .1.3.6.1.4.1.2011.6.139.6.2 |
hwWsecWEPDefaultKeysEntryAn Entry (conceptual row) in the WEP Default Keys Table. HwWsecWEPDefaultKeysEntry .1.3.6.1.4.1.2011.6.139.6.2.1 |
hwWsecWEPDefaultKeyIndexThe auxiliary variable used to identify instances
of the columnar objects in the WEP Default Keys Table.
The value of this variable is equal to the WEPDefaultKeyID + 1 Integer32 .1.3.6.1.4.1.2011.6.139.6.2.1.1 |
hwWsecWEPDefaultKeyValueA WEP default secret hexadecimal key value.
10 byte for WEP-40, 26 byte for WEP-104, 32 byte for WEP-128.
Reading this variable shall return unsuccessful status or null or zero.rw OCTET STRING .1.3.6.1.4.1.2011.6.139.6.2.1.2 |
hwWsecWEPPassPhraseA WEP default secret ASCII key value.
5 byte for WEP-40, 13 byte for WEP-104, 16 byte for WEP-128.
Reading this variable shall return unsuccessful status or null or zero.rw DisplayString (SNMPv2-TC) .1.3.6.1.4.1.2011.6.139.6.2.1.4 |
hwWsecWEPKeyMappingsTableConceptual table for WEP Key Mappings. The MIB supports
the ability to share a separate WEP key for each RA/TA
pair. The Key Mappings Table contains zero or one entry
for each MAC address and contains two fields for each
entry: WEPOn and the corresponding WEP key. The WEP key
mappings are logically WRITE-ONLY. Attempts to read the
entries in this table shall return unsuccessful status and
values of null or zero. The default value for all WEPOn
fields is FALSE. SEQUENCE OF HwWsecWEPKeyMappingsEntry .1.3.6.1.4.1.2011.6.139.6.3 |
hwWsecWEPKeyMappingsEntryAn Entry (conceptual row) in the WEP Key Mappings Table. HwWsecWEPKeyMappingsEntry .1.3.6.1.4.1.2011.6.139.6.3.1 |
hwWsecWEPKeyMappingIndexThe auxiliary variable used to identify instances
of the columnar objects in the WEP Key Mappings Table. Integer32 .1.3.6.1.4.1.2011.6.139.6.3.1.1 |
hwWsecWEPKeyMappingAddressThe MAC address of the STA for which the values from this
key mapping entry are to be used.rw MacAddress (SNMPv2-TC) .1.3.6.1.4.1.2011.6.139.6.3.1.2 |
hwWsecWEPKeyMappingWEPOnBoolean as to whether WEP is to be used when communicating
with the hwWsecWEPKeyMappingAddress STA.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.6.139.6.3.1.3 |
hwWsecWEPKeyMappingValueA WEP secret key value.rw OCTET STRING .1.3.6.1.4.1.2011.6.139.6.3.1.4 |
hwWsecWEPKeyMappingStatusThe status column used for creating, modifying, and
deleting instances of the columnar objects in the WEP key
mapping Table.rw RowStatus (SNMPv2-TC) .1.3.6.1.4.1.2011.6.139.6.3.1.5 |
hwWsecAuthSuitesTableThis table lists the AKM suites supported by this entity. Each AKM
suite can be individually enabled and disabled. The AKM suite list
in the RSN information element is formed using the information in
this table. SEQUENCE OF HwWsecAuthSuitesEntry .1.3.6.1.4.1.2011.6.139.6.4 |
hwWsecAuthSuitesEntryAn entry (row) in the hwWsecAuthSuitesTable. HwWsecAuthSuitesEntry .1.3.6.1.4.1.2011.6.139.6.4.1 |
hwWsecAuthSuiteIndexThe auxiliary variable used as an index into the
hwWsecAuthSuitesTable. Enumeration .1.3.6.1.4.1.2011.6.139.6.4.1.1 |
hwWsecAuthSuiteThe selector of an AKM suite. It consists of an OUI (the first 3
octets) and a cipher suite identifier (the last octet).
0x00147201 : WAPI certification authentication
0x00147202 : WAPI preShare key authentication
0x000FAC01 : WPA1(WPA version 1) 802.1X authentication
0x000FAC02 : WPA1(WPA version 1) preShare key authentication
0x00E0FC01 : WPA2(WPA version 2) 802.1X authentication
0x00E0FC02 : WPA2(WPA version 2) preShare key authentication
0x00E0FC03 : share key (for WEP)
0x00E0FC04 : open system (no authentication)
0x00E0FC05 : wpa-wpa2-preShareKey
0x00E0FC06 : wpa-wpa2-8021xro OCTET STRING .1.3.6.1.4.1.2011.6.139.6.4.1.2 |
hwWsecAuthSuiteEnabledThis variable indicates whether the corresponding AKM suite is
enabled/disabled.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.6.139.6.4.1.3 |
hwWsecAuthPreauthenticationImplementedThis variable indicates whether the entity supports WAPI pre-authentication. This cannot
be TRUE unless hwWsecAuthOptionImplemented is TRUE.ro TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.6.139.6.4.1.4 |
hwWsecAuthPreauthenticationEnabledWhen this object is set to TRUE, this shall indicate that WAPI pre-authentication is
enabled on this entity. This object requires that WAPI authentication of this profile Enabled.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.6.139.6.4.1.5 |
hwWsecAuthUnicastKeysSupportedThis object indicates the number of the unicast keys that a WAPI/RSNA of this entity supports.ro Integer32 .1.3.6.1.4.1.2011.6.139.6.4.1.6 |
hwWsecAuthPairwiseCipherThe selector of a supported pairwise cipher. It consists of an OUI
(the first 3 octets) and a cipher suite identifier (the last octet).
0x00147201 : WPI-SMS4
0x000FAC00 : Use group cipher suite
0x000FAC01 : WEP-40
0x000FAC02 : TKIP
0x000FAC04 : CCMP-default in an RSNA
0x000FAC05 : WEP-104
0x000FAC06 : wep-128
0x000FAC07 : tkip-ccmp
0x00E0FC01 : null (no encryption), only for open system authentication
The cipher suite selector 00-0F-AC:4 (CCMP) shall be the default cipher suite value.
The cipher suite selectors 00-0F-AC:1 (WEP-40) and 00-0F-AC:5 (WEP-104) are only valid as a group
cipher suite in a transition security network (TSN) to allow pre-RSNA devices to join the BSS.
Use of CCMP as the group cipher suite with TKIP as the pairwise cipher suite shall not be supported.
NOTE?If the STAs can support CCMP, then there is no need for a weaker data confidentiality protocol.
The cipher suite selector 00-0F-AC:0 (Use group cipher suite) is only valid as the pairwise cipher suite. An
AP may specify the selector 00-0F-AC:0 (Use group cipher suite) for a pairwise cipher suite if it does not
cipher selection, this shall be the only pairwise cipher selection the AP advertises.
If CCMP is enabled, then the AP supports pairwise keys, and thus the suite selector 00-0F-AC:0 (Use group
cipher suite) shall not be a valid option.rw Enumeration .1.3.6.1.4.1.2011.6.139.6.4.1.7 |
hwWsecAuthPairwiseCipherSizeThis object indicates the length in bits of the pairwise cipher
key. This should be 256 for TKIP and 128 for CCMP.ro Integer32 .1.3.6.1.4.1.2011.6.139.6.4.1.8 |
hwWsecAuthUnicastRekeyMethodThis object selects a mechanism for rekeying the WAPI/RSNA USK. The default is time-based,
once per day. Rekeying the USK is only applicable to an entity acting in the AE or ASUE
role.rw Enumeration .1.3.6.1.4.1.2011.6.139.6.4.1.9 |
hwWsecAuthUnicastRekeyTimeThe time in seconds after which the WAPI/RSNA USK shall be refreshed. The timer shall start
at the moment the USK was set using the MLME-SETWPIKEYS.request primitive.rw Unsigned32 UNITS "seconds" .1.3.6.1.4.1.2011.6.139.6.4.1.10 |
hwWsecAuthUnicastRekeyPacketsA packet count (in 1000s of packets) after which the WAPI/RSNA USK shall be refreshed. The
packet counter shall start at the moment the USK was set using the
MLME-SETWPIKEYS.request primitive and it shall count all packets encrypted using
the current USK.rw Unsigned32 UNITS "1000 packets" .1.3.6.1.4.1.2011.6.139.6.4.1.11 |
hwWsecAuthMulticastCipherThis object indicates the multicast cipher suite that this entity must adopt. The WAPI/RSNA
information element shall adopt the value of this variable, which contains a 3-octet OUI and
a one-octet cipher suite identifier.
0x00147201 : WPI-SMS4
0x000FAC01 : WEP-40
0x000FAC02 : TKIP
0x000FAC04 : CCMP-default in an RSNA
0x000FAC05 : WEP-104
0x000FAC06 : wep-128
0x000FAC07 : tkip-ccmp
0x00E0FC01 : null (no encryption), only for open system authenticationrw Enumeration .1.3.6.1.4.1.2011.6.139.6.4.1.12 |
hwWsecAuthMulticastCipherSizeThis object indicates the length in bit of the multicast cipher key.
This should be 256 for in SMS4.
The former 128bits is the encryption key and the latter 128bits is the message
integrity check key.
This should be 256 for in TKIP.
The former 128bits is the encryption key and the latter 128bits is the message
integrity check key.
This should be 128 for in CCMP.
The 128bits is the encryption key and the message integrity check key.
This should be 40 for in WEP-40.
The 40bits is the encryption key.
This should be 40 for in WEP-104.
The 104bits is the encryption key.
This should be 40 for in WEP-128.
The 128bits is the encryption key.ro Integer32 .1.3.6.1.4.1.2011.6.139.6.4.1.13 |
hwWsecAuthMulticastRekeyMethodThis object selects a mechanism for rekeying the WAPI/RSNA MSK. The default is time-based,
once per day. Rekeying the MSK is only applicable to an entity acting in the
Authenticator role.rw Enumeration .1.3.6.1.4.1.2011.6.139.6.4.1.14 |
hwWsecAuthMulticastRekeyTimeThe time in seconds after which the WAPI/RSNA MSK shall be refreshed. The timer shall start
at the moment the MSK was set using the MLME-SETWPIKEYS.request primitive.rw Unsigned32 UNITS "seconds" .1.3.6.1.4.1.2011.6.139.6.4.1.15 |
hwWsecAuthMulticastRekeyPacketsA packet count (in 1000s of packets) after which the WAPI/RSNA MSK shall be refreshed. The
packet counter shall start at the moment the MSK was set using the
MLME-SETWPIKEYS.request primitive and it shall count all packets encrypted using
the current MSK.rw Unsigned32 UNITS "1000 packets" .1.3.6.1.4.1.2011.6.139.6.4.1.16 |
hwWsecAuthMulticastRekeyStrictThis object signals that the MSK shall be refreshed whenever a STA leaves the BSS that
possesses the MSK.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.6.139.6.4.1.17 |
hwWsecAuthPSKValueThe PSK for when WAPI/RSNA in PSK mode is the selected AKM suite. In that case, the BK/PMK
will obtain its value from this object. This object is logically write-only. Reading this
variable shall return unsuccessful status or null or zero.
WAPI need 16 byte Hex, RSNA need 32 byte Hex. User should input Hex data for this node.rw OCTET STRING .1.3.6.1.4.1.2011.6.139.6.4.1.18 |
hwWsecAuthPSKPassPhraseThe PSK, for when WAPI/RSNA in PSK mode is the selected AKM suite, is configured by
hwWsecAuthPSKValue. An alternative manner of setting the PSK uses the
password-to-key algorithm. This variable provides a means to enter a pass-phrase. When
this object is written, the WAPI/RSNA entity shall use the password-to-key algorithm to derive a
pre-shared and populate hwWsecAuthPSKValue with this key. This object is
logically write-only. Reading this variable shall return unsuccessful status or null or zero.rw DisplayString (SNMPv2-TC) .1.3.6.1.4.1.2011.6.139.6.4.1.19 |
hwWsecAuthCertificateUpdateCountThe number of times messages in the WAPI Certificate Authentication Handshake
protocol will be retried per Certificate Authentication Handshake attempt.rw Unsigned32 .1.3.6.1.4.1.2011.6.139.6.4.1.20 |
hwWsecAuthMulticastUpdateCountThe number of times Message 1 in the WAPI Multicast Key Announcement Handshake
will be retried per MSK Handshake attempt.
The number of times Message 1 in the RSNA Group Key Handshake will
be retried per GTK Handshake attempt.rw Unsigned32 .1.3.6.1.4.1.2011.6.139.6.4.1.21 |
hwWsecAuthUnicastUpdateCountThe number of times Message 1 and Message 3 in the WAPI Unicast Key Negotiation
Handshake will be retried per USK Handshake attempt.
The number of times Message 1 and Message 3 in the RSNA 4-Way Handshake
will be retried per 4-Way Handshake attempt.rw Unsigned32 .1.3.6.1.4.1.2011.6.139.6.4.1.22 |
hwWsecAuthBKLifetimeThe maximum lifetime of a BK in the BK cache.rw Unsigned32 UNITS "seconds" .1.3.6.1.4.1.2011.6.139.6.4.1.23 |
hwWsecAuthBKReauthThresholdThe percentage of the BK lifetime that should expire before a WAI/RSNA re-authentication
occurs.rw Unsigned32 UNITS "percentage" .1.3.6.1.4.1.2011.6.139.6.4.1.24 |
hwWsecAuthSATimeoutThe maximum time a security association shall take to set up.rw Unsigned32 UNITS "seconds" .1.3.6.1.4.1.2011.6.139.6.4.1.25 |
hwWsecAuthExcludeUnencryptedWhen this attribute is TRUE, the STA shall not indicate at the MAC service
interface received MSDUs that have the Protected Frame subfield of
the Frame Control field equal to zero. When this attribute is FALSE,
the STA may accept MSDUs that have the Protected Frame subfield of
the Frame Control field equal to zero. The default value of this attribute
shall be FALSE.rw TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.6.139.6.4.1.26 |
hwWsecAuthDot1XMethodLeaf don't sustain for V2R3 on 2012/11/26.rw Integer32 .1.3.6.1.4.1.2011.6.139.6.4.1.27 |
hwWsecAuthControlledAuthControlThis attribute indicates whether the entity enable the authentication. If the value is '0'
which means 'authentication disabled', the state of the controlled port shall be set to
'authenticated'; else the value is '1' which means 'authentication enabled', the state of the
controlled port shall be based on the hwWsecAuthControlledPortControl.ro TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.6.139.6.4.1.28 |
hwWsecAuthControlledPortControlThis attribute, when the hwWsecAuthControlledAuthControl is set to true, shall be
effective and indicate the methods by which the port is controlled. If the value is '0' which
means 'auto', the state of the controlled port shall be based on the result of the
authentication; else the value is '1' which means 'force unauthenticated', the state of the
controlled port shall be unconditionally set to 'unauthenticated'.ro Integer32 .1.3.6.1.4.1.2011.6.139.6.4.1.29 |
hwWsecAuthOptionalImplementedThis attribute, when true, shall indicate that the WAPI, WPA, RSNA option is implemented; else, this
attribute shall be false.ro TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.6.139.6.4.1.30 |
hwWsecStatsTableThis table maintains per-STA statistics in an RSN. The entry with
hwWsecStatsSTAAddress set to FF-FF-FF-FF-FF-FF shall contain
statistics for broadcast/multicast traffic. SEQUENCE OF HwWsecStatsEntry .1.3.6.1.4.1.2011.6.139.6.5 |
hwWsecStatsEntryAn entry in the hwWsecStatsTable. HwWsecStatsEntry .1.3.6.1.4.1.2011.6.139.6.5.1 |
hwWsecStatsSTAAddressThe MAC address of the STA to which the statistics in this
conceptual row belong.ro MacAddress (SNMPv2-TC) .1.3.6.1.4.1.2011.6.139.6.5.1.1 |
hwWsecStatsVersionThe RSNA version with which the STA associated.ro Integer32 .1.3.6.1.4.1.2011.6.139.6.5.1.2 |
hwWsecStatsBKIDUsedThe selector of the last BKID of WAPI used in the last Unicast Key Negotiation Handshake.
The selector of the last PMKID of RSNA used in the last 4-Way Handshake.ro OCTET STRING .1.3.6.1.4.1.2011.6.139.6.5.1.3 |
hwWsecStatsAuthenticationSuiteSelectedThe selector of the last AKM suite negotiated.ro Enumeration .1.3.6.1.4.1.2011.6.139.6.5.1.4 |
hwWsecStatsUnicastCipherSelectedThe selector of the last unicast cipher suite negotiated.ro Enumeration .1.3.6.1.4.1.2011.6.139.6.5.1.5 |
hwWsecStatsMulticastCipherSelectedThe selector of the last multicast cipher suite negotiatedro Enumeration .1.3.6.1.4.1.2011.6.139.6.5.1.6 |
hwWsecStatsAuthenticationSuiteRequestedThe selector of the last AKM suite requested.ro Enumeration .1.3.6.1.4.1.2011.6.139.6.5.1.7 |
hwWsecStatsUnicastCipherRequestedThe selector of the last unicast cipher suite requestedro Enumeration .1.3.6.1.4.1.2011.6.139.6.5.1.8 |
hwWsecStatsMulticastCipherRequestedThe selector of the last multicast cipher suite requested.ro Enumeration .1.3.6.1.4.1.2011.6.139.6.5.1.9 |
hwWsecStatsWEPICVErrorCountThis counter shall increment when a frame is received with the Protected
Frame subfield of the Frame Control field set to one and the value
of the ICV as received in the frame does not match the ICV value that
is calculated for the contents of the received frame. ICV errors for
TKIP are not counted in this variable but in
hwWsecStatsTKIPICVErrors.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.10 |
hwWsecStatsWEPExcludedCountThis counter shall increment when a frame is received with the Protected
Frame subfield of the Frame Control field set to zero and the value
of hwWsecProfileExcludeUnencrypted causes that frame to be discarded.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.11 |
hwWsecStatsWEPUndecryptableCountThis counter shall increment when a frame is received with the
Protected Frame subfield of the Frame Control field set to one and
the WEPOn value for the key mapped to the transmitter's MAC address
indicates that the frame should not have been encrypted or that frame
is discarded due to the receiving STA not implementing the privacy
option.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.12 |
hwWsecStatsTKIPICVErrorsCounts the number of TKIP ICV errors encountered when decrypting
packets for the STA.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.13 |
hwWsecStatsTKIPLocalMICFailuresCounts the number of MIC failures encountered when checking the
integrity of packets received from the STA at this entity.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.14 |
hwWsecStatsTKIPRemoteMICFailuresCounts the number of MIC failures encountered by the STA identified
by dot11StatsSTAAddress and reported back to this entity.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.15 |
hwWsecStatsTKIPReplaysCounts the number of TKIP replay errors detected.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.16 |
hwWsecStatsCCMPReplaysThe number of received CCMP MPDUs discarded by the replay
mechanism.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.17 |
hwWsecStatsCCMPDecryptErrorsThe number of received MPDUs discarded by the CCMP decryption
algorithm.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.18 |
hwWsecStatsWAISignatureErrorsThis counter shall increment when the signature in the received WAI packet is wrong.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.19 |
hwWsecStatsWAIHMACErrorsThis counter shall increment when the message authentication code in the received WAI
packet is wrong.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.20 |
hwWsecStatsWAIAuthenticationResultFailuresThis counter shall increment when the WAI authentication is unsuccessful.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.21 |
hwWsecStatsWAIDiscardCountersThis counter shall increment when the received WAI packet is discarded.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.22 |
hwWsecStatsWAITimeoutCountersThis counter shall increment when the WAI packet is timeout.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.23 |
hwWsecStatsWAIFormatErrorsThis counter shall increment when there exists format error in the WAI packet.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.24 |
hwWsecStatsWAICertificateHandshakeFailuresThis counter shall increment when the WAI certificate authentication is unsuccessful.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.25 |
hwWsecStatsWAIUnicastHandshakeFailuresThis counter shall increment when the WAI unicast key negotiation process is
unsuccessful.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.26 |
hwWsecStatsWAIMulticastHandshakeFailuresThis counter shall increment when the WAI multicast key announcement process is
unsuccessful.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.27 |
hwWsecStatsWPIReplayCounterThe number of received WPI MPDUs discarded by the replay mechanism.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.28 |
hwWsecStatsWPIDecryptableErrorsThe number of received MPDUs discarded by the WPI decryption algorithm because of no
valid key.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.29 |
hwWsecStatsWPIMICErrorsThe number of received MPDUs discarded because of the MIC check error during the WPI
decryption.ro Counter32 .1.3.6.1.4.1.2011.6.139.6.5.1.30 |
hwWsecStatsControlledPortStatusThis attribute indicates the state of the controlled port in a authenticator subsystem. If value
is '1', the state is set to'authenticated'; else, the state is set to 'unauthenticated'.ro TruthValue (SNMPv2-TC) .1.3.6.1.4.1.2011.6.139.6.5.1.31 |
hwWsecStatsNumberOfPTKSAReplayCountersSpecifies the number of PTKSA replay counters per association:
0 ?> 1 replay counter,
1 ?> 2 replay counters,
2 ?> 4 replay counters,
3 ?> 16 replay countersro Integer32 .1.3.6.1.4.1.2011.6.139.6.5.1.32 |
hwWsecStatsNumberOfGTKSAReplayCountersSpecifies the number of GTKSA replay counters per association:
0 ?> 1 replay counter,
1 ?> 2 replay counters,
2 ?> 4 replay counters,
3 ?> 16 replay countersro Integer32 .1.3.6.1.4.1.2011.6.139.6.5.1.33 |
hwWsecStatsTKIPCounterMeasuresInvokedCounts the number of times that a TKIP MIC failure occurred two
times within 60 s and TKIP countermeasures were invoked. This
attribute counts both local and remote MIC failure events reported
to this STA. It increments every time TKIP countermeasures are
invokedro Integer32 .1.3.6.1.4.1.2011.6.139.6.5.1.34 |
hwWsecStatsWpa4WayHandshakeFailuresCounts the number of 4-Way Handshake failures.ro Integer32 .1.3.6.1.4.1.2011.6.139.6.5.1.35 |
hwWsecBatchProfileInfo OBJECT IDENTIFIER .1.3.6.1.4.1.2011.6.139.6.6 |
hwWsecBatchProfileStartNumberThe security profile start number in batch operation. This node is used with node
hwWsecBatchProfileWantNumber, for example, hwWsecBatchProfileStartNumber
is set to one, and hwWsecBatchProfileWantNumber is set to three, then get
the node hwWsecBatchProfileReturnNumber,hwWsecBatchProfileName,
that means start from the first security profile, get three
security profile's name list. if it dose not exist three security profile, the
hwWsecBatchProfileReturnNumber will be the real security profile number, otherwise,
it is equal to hwWsecBatchProfileWantNumber.rw Integer32 .1.3.6.1.4.1.2011.6.139.6.6.1 |
hwWsecBatchProfileWantNumberThe security profile number that want to get in batch operation.This node is used with node
hwWsecBatchProfileWantNumber, for example, hwWsecBatchProfileStartNumber
is set to one, and hwWsecBatchProfileWantNumber is set to three, then get
the node hwWsecBatchProfileReturnNumber,hwWsecBatchProfileName,
that means start from the first security profile, get three
security profile's name list. if it dose not exist three security profile, the
hwWsecBatchProfileReturnNumber will be the real security profile number, otherwise,
it is equal to hwWsecBatchProfileWantNumber.rw Integer32 .1.3.6.1.4.1.2011.6.139.6.6.2 |
hwWsecBatchProfileReturnNumberThe ess number get in batch operation.ro Integer32 .1.3.6.1.4.1.2011.6.139.6.6.3 |
hwWsecBatchProfileNameThe names of security profile which are determined by node hwWsecBatchProfileStratNumber
and node hwWsecBatchProfileWantNumber.
each hwWsecProfileName name is divided by '?'.ro OCTET STRING .1.3.6.1.4.1.2011.6.139.6.6.4 |
hwWsecNotifications OBJECT IDENTIFIER .1.3.6.1.4.1.2011.6.139.6.9 |
hwWsecNotify OBJECT IDENTIFIER .1.3.6.1.4.1.2011.6.139.6.9.1 |
hwStaAuthErrorNotifyDescription. NOTIFICATION-TYPE .1.3.6.1.4.1.2011.6.139.6.9.1.1 |
hwStaAssociationFailNotifyDescription. NOTIFICATION-TYPE .1.3.6.1.4.1.2011.6.139.6.9.1.2 |
hwUserWithInvalidCerficationInbreakNetworkNotifyDescription. NOTIFICATION-TYPE .1.3.6.1.4.1.2011.6.139.6.9.1.3 |
hwStationRepititiveAttackNotifyDescription. NOTIFICATION-TYPE .1.3.6.1.4.1.2011.6.139.6.9.1.4 |
hwTamperAttackNotifyDescription. NOTIFICATION-TYPE .1.3.6.1.4.1.2011.6.139.6.9.1.5 |
hwLowSafeLevelAttackNotifyDescription. NOTIFICATION-TYPE .1.3.6.1.4.1.2011.6.139.6.9.1.6 |
hwAddressRedirectionAttackNotifyDescription. NOTIFICATION-TYPE .1.3.6.1.4.1.2011.6.139.6.9.1.7 |
hwWepIDConflictNotifyDescription. NOTIFICATION-TYPE .1.3.6.1.4.1.2011.6.139.6.9.1.8 |
hwStaAuthEncryptModeNotMatchNotifyDescription. NOTIFICATION-TYPE .1.3.6.1.4.1.2011.6.139.6.9.1.9 |
hwWsecNotifyObjects OBJECT IDENTIFIER .1.3.6.1.4.1.2011.6.139.6.9.2 |
hwStaAuthenticationModeDescription.ro Integer32 .1.3.6.1.4.1.2011.6.139.6.9.2.1 |
hwStaAuthenticationFailCauseDescription.ro Integer32 .1.3.6.1.4.1.2011.6.139.6.9.2.2 |
hwStaAssociationFailCauseDescription.ro Integer32 .1.3.6.1.4.1.2011.6.139.6.9.2.3 |
hwStaAssocBssidDescription.ro MacAddress (SNMPv2-TC) .1.3.6.1.4.1.2011.6.139.6.9.2.4 |
hwStaFailCodeTypeDescription.ro Enumeration .1.3.6.1.4.1.2011.6.139.6.9.2.5 |
hwWepIDConflictTrapAPMACDescription.ro MacAddress (SNMPv2-TC) .1.3.6.1.4.1.2011.6.139.6.9.2.6 |
hwWepIDConflictTrapAPIDDescription.ro Integer32 .1.3.6.1.4.1.2011.6.139.6.9.2.7 |
hwWepIDConflictTrapRadioIdDescription.ro Integer32 .1.3.6.1.4.1.2011.6.139.6.9.2.8 |
hwWepIDConflictTrapPreSSIDDescription.ro OCTET STRING .1.3.6.1.4.1.2011.6.139.6.9.2.9 |
hwWepIDConflictTrapCurrSSIDDescription.ro OCTET STRING .1.3.6.1.4.1.2011.6.139.6.9.2.10 |
hwWepIDConflictTrapCipherIdxDescription.ro Integer32 .1.3.6.1.4.1.2011.6.139.6.9.2.11 |
hwWlanStaAuthEncryptModeDescription.ro Integer32 .1.3.6.1.4.1.2011.6.139.6.9.2.12 |
hwWlanVapAuthEncryptModeDescription.ro Integer32 .1.3.6.1.4.1.2011.6.139.6.9.2.13 |
hwStaAuthenticationFailCauseStrDescription.ro OCTET STRING .1.3.6.1.4.1.2011.6.139.6.9.2.14 |
hwStaAssociationFailCauseStrDescription.ro OCTET STRING .1.3.6.1.4.1.2011.6.139.6.9.2.15 |
hwWlanSecurityObject OBJECT IDENTIFIER .1.3.6.1.4.1.2011.6.139.6.10 |
hwWlanSecurityConformance OBJECT IDENTIFIER .1.3.6.1.4.1.2011.6.139.6.11 |
hwWlanSecurityCompliances OBJECT IDENTIFIER .1.3.6.1.4.1.2011.6.139.6.11.1 |
hwWlanSecurityObjectGroups OBJECT IDENTIFIER .1.3.6.1.4.1.2011.6.139.6.11.2 |