SNMP Trap Controls
Use MANAGEMENT > SNMP > Trap Controls to navigate to this page.
This page allows you to select which traps logs should be captured. Select the applicable logs and select Apply.
Table 7-10 Miscellaneous Traps Trap Name Description
SNMP Authentication The SNMPv2 entity has received a protocol message that is not properly authenticated.
Link (Port) Up/Down Port changes status from up or down. Multiple Users Two users login with the same login ID.
Spanning Tree Spanning Tree traps. Refer to the STP specifications for descriptions of individual parameters.
Rogue AP Whenever a rogue access point is detected this trap is sent with its MAC Address; When a rogue access point that was detected earlier and it no longer exists this trap is sent.
Config Save Notification sent when the configuration is modified.
Table 7-11 Client Related Traps Trap Name Description
802.11 Disassociation The disassociate notification is sent when the client sends a disassociation frame.
802.11 Deauthentication The deauthenticate notification is sent when the client sends a deauthentication frame.
802.11 Failed Authentication
The authenticate failure notification is sent when the client sends an authentication frame with a status code other than 'successful'. 802.11 Failed
Association
The associate failure notification is sent when the client sends an association frame with a status code other than 'successful'.
Exclusion The associate failure notification is sent when a client is Exclusion Listed (blacklisted).
Table 7-12 Cisco AP Traps Trap Name Description
AP Register Notification sent when the access point associates or disassociates with the controller.
AP Interface Up/Down Notification sent when the access point interface (802.11a or 802.11b/g) status changes to up or down.
Chapter 7 Management Menu Bar Selection
SNMP Trap Controls
Table 7-13 Auto RF Profile Traps Trap Name Description
Load Profile Notification sent when Load Profile state changes between PASS and FAIL.
Noise Profile Notification sent when Noise Profile state changes between PASS and FAIL.
Interference Profile Notification sent when Interference Profile state changes between PASS and FAIL.
Coverage Profile Notification sent when Coverage Profile state changes between PASS and FAIL.
Table 7-14 Auto RF Update Traps Trap Name Description
Channel Update Notification sent when the access point’s dynamic channel algorithm is updated.
Tx Power Update Notification sent when the access point’s dynamic transmit power algorithm is updated.
Antenna Update Notification sent when the access point’s dynamic antenna algorithm is updated.
Table 7-15 AAA Traps
Trap Name Description
User Authentication This trap is to inform that a client RADIUS authentication failure has occurred.
RADIUS Servers Not Responding
This trap is to indicate that no RADIUS server(s) are responding to authentication requests sent by the RADIUS client.
Table 7-16 IP Security Traps Trap Name Description
ESP Authentication Failure IPSec packets with invalid hashes were found in an inbound ESP SA. ESP Replay Failure IPSec packets with invalid sequence numbers were found in an inbound
ESP SA.
Invalid SPI A packet with an unknown SPI was detected from the specified peer with the specified SPI using the specified protocol.
IKE Negotiation Failure An attempt to negotiate a phase 1 IKE SA failed. The notification counts are also sent as part of the trap, along with the current value of the total negotiation error counters.
Chapter 7 Management Menu Bar Selection SNMP Trap Controls
Command Buttons
• Apply: Data is sent to the controller and made to take effect, but not preserved across a power cycle; these parameters are stored temporarily in volatile RAM.
• Help: Request that the help page be displayed in a new browser window.
Trap Logs
Use MANAGEMENT > SNMP/Trap Logs to navigate to this page.
You can view the traps logs which have been captured by the controller. Each trap entry includes the Log Number, System Time, and Trap Description.
This screen also displays the number of traps since Last Reset and number of traps since Log Last Viewed.
Note Review the following Client Reason and Status Codes shown below. You are likely to encounter them when reviewing the Trap Logs.
IKE Suite Failure An attempt to negotiate a phase 2 SA suite for the specified selector failed. The current total failure counts are passed as well as the notification type counts for the notify involved in the failure.
Invalid Cookie ISAKMP packets with invalid cookies were detected from the specified source, intended for the specified destination. The initiator and responder cookies are also sent with the trap.
Table 7-17 802.11 Security Traps Trap Name Description
WEP Decrypt Error This trap is to inform that an error has occurred while a WEP entity is being decrypted.
Table 7-18 WPS Traps
Trap Name Description
Rogue Auto Containment An AP which is being contained will either not be able to provide service at all, or will provide exceedingly slow service.
Table 7-16 IP Security Traps (continued) Trap Name Description
Chapter 7 Management Menu Bar Selection
SNMP Trap Controls
Command Buttons
Table 7-19 Client Reason Code Descriptions and Meanings Client
Reason
Code Description Meaning
0 noReasonCode normal operation
1 unspecifiedReason client associated but no longer authorized 2 previousAuthNotValid client associated but not authorized
3 deauthenticationLeaving the access point went offline, de-authenticating the client
4 disassociationDueToInactivity client session timeout exceeded
5 disassociationAPBusy the access point is busy, performing load balancing, for example
6 class2FrameFromNonAuthStation client attempted to transfer data before it was authenticated
7
class2FrameFromNonAssStation
client attempted to transfer data before it was associated
8 disassociationStaHasLeft the Operating System moved the client to another access point using non-aggressive load balancing
9 staReqAssociationWithoutAuth client not authorized yet, still attempting to associate with an access point
99 missingReasonCode client momentarily in an unknown state
Table 7-20 Client Status Code Descriptions and Meanings Client Status
Code Description Meaning
0 idle normal operation -- no rejections of client association requests
1 aaaPending completing an aaa transaction 2 authenticated 802.11 authentication completed 3 associated 802.11 association completed 4 powersave client in powersave mode 5 disassociated 802.11 disassociation completed 6 tobedeleted to be deleted after disassociation 7 probing client not associated or authorized yet 8 disabled automatically disabled by the Operating
Chapter 7 Management Menu Bar Selection SNMP Trap Controls
Chapter 7 Management Menu Bar Selection