All MIBs › CISCO-LWAPP-DOT11-CLIENT-MIB › ciscoLwappDot11ClientDisassocNacAlert
ciscoLwappDot11ClientDisassocNacAlert
Module: CISCO-LWAPP-DOT11-CLIENT-MIB
OID (symbolic): CISCO-LWAPP-DOT11-CLIENT-MIB::ciscoLwappDot11ClientDisassocNacAlert
OID (numeric): 1.3.6.1.4.1.9.9.599.0.3
Node type: NOTIFICATION-TYPE
Description: This notification is generated when the controller removes the client entry on NAC enabled SSIDs. cldcClientWlanProfileName represents the profile name of the WLAN, this 802.11 wireless client is connected to. cldcClientIPAddress represents the unique ipaddress of the client. cldcApMacAddress represents the MacAddress of the AP to which the client is associated. cldcClientQuarantineVLAN represents the quarantine VLAN for the client. cldcClientAccessVLAN represents the access VLAN for the client. This is issued on NAC enabled ssids, whenever WLC removes client's entry.
What is ciscoLwappDot11ClientDisassocNacAlert?
This notification is sent when a wireless client is removed from a NAC (Network Admission Control) enabled SSID by the controller. The trap includes the client's WLAN profile name, IP address, associated AP MAC address, and quarantine VLAN if applicable. Network security teams use this to track clients rejected by access control policies.
Examples
Send this trap to an SNMP manager — replace <manager> with the IP or hostname of your monitoring server (SNMPv2c):
snmptrap -v2c -c public <manager> '' CISCO-LWAPP-DOT11-CLIENT-MIB::ciscoLwappDot11ClientDisassocNacAlert snmptrap -v2c -c public <manager> '' 1.3.6.1.4.1.9.9.599.0.3
Listen for incoming traps on the manager host (-f keeps it in the foreground, -Lo prints to stdout — useful for testing):
snmptrapd -f -Lo -c /dev/null authCommunity log public
Example snmptrapd log entry:
zoo11-linux.zoo [UDP: [192.168.30.111]:50027->[192.168.30.10]:162]: DISMAN-EVENT-MIB::sysUpTimeInstance = Timeticks: (349547883) 40 days, 10:57:58.83 SNMPv2-MIB::snmpTrapOID.0 = OID: CISCO-LWAPP-DOT11-CLIENT-MIB::ciscoLwappDot11ClientDisassocNacAlert
Start monitoring Cisco Wireless LAN Controllers (LWAPP-based) with a free 30-day trial of IPNetwork Monitor. Create custom SNMP monitor using the CISCO-LWAPP-DOT11-CLIENT-MIB::ciscoLwappDot11ClientDisassocNacAlert OID value, configure state conditions and alerts, and monitor any Cisco Wireless LAN Controllers (LWAPP-based) from a single console.
OID Breakdown
Upper-level ancestors (8 from the standard OID tree / other modules)
| Numeric OID | Name | Module |
|---|---|---|
| 1 | iso | LANART-AGENT |
| 1.3 | org | AirPair-MIB |
| 1.3.6 | dod | AirPair-MIB |
| 1.3.6.1 | internet | AirPair-MIB |
| 1.3.6.1.4 | private | AirPair-MIB |
| 1.3.6.1.4.1 | enterprises | AirPair-MIB |
| 1.3.6.1.4.1.9 | cisco | CAT2600-MIB |
| 1.3.6.1.4.1.9.9 | ciscoMgmt | CISCO-SMI |
| Numeric OID | Name | Module |
|---|---|---|
| 1.3.6.1.4.1.9.9.599 | ciscoLwappDot11ClientMIB | CISCO-LWAPP-DOT11-CLIENT-MIB |
| 1.3.6.1.4.1.9.9.599.0 | ciscoLwappDot11ClientMIBNotifs | CISCO-LWAPP-DOT11-CLIENT-MIB |
| 1.3.6.1.4.1.9.9.599.0.3 | ciscoLwappDot11ClientDisassocNacAlert | CISCO-LWAPP-DOT11-CLIENT-MIB |