Cisco Catalyst Center Rogue Management and aWIPS Application Quick Start Guide, Release 3.1.x

PDF

About the allowed list workflow

Want to summarize with AI?

Log in

Overview

For a rogue AP with wireless containment status as Partial, an i icon appears adjacent to Partial state under the Containment column in the Threat 360 window. Hover your cursor over the i icon to view the current wireless containment status of the Rogue SSIDs.

The Catalyst Center Rogue Management and aWIPS workflow allows you to review and mark the MAC addresses of rogue access points to move them to the allowed list in bulk. You can then process the allowed list of selected AP MAC addresses.

The Rogue Management and aWIPS workflow supports APs that are associated with Cisco AireOS Wireless Controllers and Cisco Catalyst 9800 Series Wireless Controllers.

See Set up the allowed list workflow for instructions about moving these rogue AP types to the allowed list:

  • Rogue on Wire

  • Honeypot

  • Interferer

  • Neighbor

The Rogue Management and aWIPS workflow does not support moving these AP types to the allowed list:

  • Beacon Wrong Channel

  • Beacon DS Attack

  • AP Impersonation

  • Friendly