Overview
For a rogue AP with wireless containment status as Partial, an i icon appears adjacent to Partial state under the Containment column in the Threat 360 window. Hover your cursor over the i icon to view the current wireless containment status of the Rogue SSIDs.
The Catalyst Center Rogue Management and aWIPS workflow allows you to review and mark the MAC addresses of rogue access points to move them to the allowed list in bulk. You can then process the allowed list of selected AP MAC addresses.
The Rogue Management and aWIPS workflow supports APs that are associated with Cisco AireOS Wireless Controllers and Cisco Catalyst 9800 Series Wireless Controllers.
See Set up the allowed list workflow for instructions about moving these rogue AP types to the allowed list:
-
Rogue on Wire
-
Honeypot
-
Interferer
-
Neighbor
The Rogue Management and aWIPS workflow does not support moving these AP types to the allowed list:
-
Beacon Wrong Channel
-
Beacon DS Attack
-
AP Impersonation
-
Friendly