CISCO-LWAPP-DOT11-CLIENT-MIB :: ciscoLwappDot11ClientDisassocNacAlert

MIB Reference — IPNetwork Monitor · Updated September 14, 2026

All MIBsCISCO-LWAPP-DOT11-CLIENT-MIBciscoLwappDot11ClientDisassocNacAlert

ciscoLwappDot11ClientDisassocNacAlert

Module: CISCO-LWAPP-DOT11-CLIENT-MIB

OID (symbolic): CISCO-LWAPP-DOT11-CLIENT-MIB::ciscoLwappDot11ClientDisassocNacAlert

OID (numeric): 1.3.6.1.4.1.9.9.599.0.3

Node type: NOTIFICATION-TYPE

Description: This notification is generated when the controller removes the client entry on NAC enabled SSIDs. cldcClientWlanProfileName represents the profile name of the WLAN, this 802.11 wireless client is connected to. cldcClientIPAddress represents the unique ipaddress of the client. cldcApMacAddress represents the MacAddress of the AP to which the client is associated. cldcClientQuarantineVLAN represents the quarantine VLAN for the client. cldcClientAccessVLAN represents the access VLAN for the client. This is issued on NAC enabled ssids, whenever WLC removes client's entry.

What is ciscoLwappDot11ClientDisassocNacAlert?

This notification is sent when a wireless client is removed from a NAC (Network Admission Control) enabled SSID by the controller. The trap includes the client's WLAN profile name, IP address, associated AP MAC address, and quarantine VLAN if applicable. Network security teams use this to track clients rejected by access control policies.

Examples

Send this trap to an SNMP manager — replace <manager> with the IP or hostname of your monitoring server (SNMPv2c):

snmptrap -v2c -c public <manager> '' CISCO-LWAPP-DOT11-CLIENT-MIB::ciscoLwappDot11ClientDisassocNacAlert
snmptrap -v2c -c public <manager> '' 1.3.6.1.4.1.9.9.599.0.3

Listen for incoming traps on the manager host (-f keeps it in the foreground, -Lo prints to stdout — useful for testing):

snmptrapd -f -Lo -c /dev/null authCommunity log public

Example snmptrapd log entry:

zoo11-linux.zoo [UDP: [192.168.30.111]:50027->[192.168.30.10]:162]:
  DISMAN-EVENT-MIB::sysUpTimeInstance = Timeticks: (349547883) 40 days, 10:57:58.83
  SNMPv2-MIB::snmpTrapOID.0 = OID: CISCO-LWAPP-DOT11-CLIENT-MIB::ciscoLwappDot11ClientDisassocNacAlert

Start monitoring Cisco Wireless LAN Controllers (LWAPP-based) with a free 30-day trial of IPNetwork Monitor. Create custom SNMP monitor using the CISCO-LWAPP-DOT11-CLIENT-MIB::ciscoLwappDot11ClientDisassocNacAlert OID value, configure state conditions and alerts, and monitor any Cisco Wireless LAN Controllers (LWAPP-based) from a single console.

OID Breakdown

Upper-level ancestors (8 from the standard OID tree / other modules)
Numeric OIDNameModule
1isoLANART-AGENT
1.3orgAirPair-MIB
1.3.6dodAirPair-MIB
1.3.6.1internetAirPair-MIB
1.3.6.1.4privateAirPair-MIB
1.3.6.1.4.1enterprisesAirPair-MIB
1.3.6.1.4.1.9ciscoCAT2600-MIB
1.3.6.1.4.1.9.9ciscoMgmtCISCO-SMI
Numeric OIDNameModule
1.3.6.1.4.1.9.9.599ciscoLwappDot11ClientMIBCISCO-LWAPP-DOT11-CLIENT-MIB
1.3.6.1.4.1.9.9.599.0ciscoLwappDot11ClientMIBNotifsCISCO-LWAPP-DOT11-CLIENT-MIB
1.3.6.1.4.1.9.9.599.0.3ciscoLwappDot11ClientDisassocNacAlertCISCO-LWAPP-DOT11-CLIENT-MIB