Explains wireless service assurance rogue events, including event monitoring and configuration steps, to enhance visibility and proactive management of rogue devices in the wireless network.
Wireless Service Assurance (WSA) rogue events are telemetry notifications that replicate the information of corresponding SNMP traps. Support is available in Release 16.12.x, where x denotes a release version.
-
You receive details such as the MAC address of the rogue AP.
-
You receive information about the managed AP and the radio that detected the rogue AP with the strongest RSSI.
-
You receive event-specific data, such as SSID; channel for potential honeypot events; and MAC address of the impersonating AP for impersonation events.
WSA Rogue Events: Details and Support
For all exported events, these details are provided to the wireless service assurance (WSA) infrastructure:
-
MAC address of the rogue AP
-
Details of the managed AP and the radio that detected the rogue AP with the strongest RSSI
-
Event-specific data such as SSID; channel for potential honeypot events; and MAC address of the impersonating AP for impersonation events.
You can scale the WSA rogue events feature up to four times the maximum number of supported access points (APs). You can also scale it to one-half of the maximum number of supported clients.
The WSA rogue events feature is supported on Cisco Catalyst Center and other third-party infrastructure.