Juniper Mist AI Sites Clients - NAC API is one of 211 APIs that Juniper Mist AI publishes on the APIs.io network, described by a machine-readable OpenAPI specification.
Tagged areas include Sites Clients - NAC. The published artifact set on APIs.io includes an OpenAPI specification and API documentation.
This API exposes
5 operations
across 5 paths,
and defines 74 schemas.
It is described by OpenAPI 3.1.0, at version 2604.1.1.
Requests are made against 12 base URLs: https://api.mist.com, https://api.gc1.mist.com, https://api.ac2.mist.com, https://api.gc2.mist.com, https://api.gc4.mist.com, https://api.eu.mist.com, https://api.gc3.mist.com, https://api.ac6.mist.com, https://api.gc6.mist.com, https://api.ac5.mist.com, https://api.gc5.mist.com, https://api.gc7.mist.com.
The identity and technical contract details declared by the specification.
nac_event_dryrun_nacrule_id
string
NAC Policy Dry Run Rule ID, if present and matched
nac_event_type
string
Event type, e.g. NACCLIENTPERMIT. Use the [List NAC Events Definitions](/operations/listNacEventsDefinitions) endpoint to get the full list of available values.
last_cert_expiry
number
When certificate based authentication is used, the expiration date from the latest certificate used
last_cert_serial
string
When certificate based authentication is used, the Serial from the latest certificate used
last_cert_subject
string
When certificate based authentication is used, the Subject from the latest certificate used
nac_cert_cn
array
When certificate based authentication is used, the CN from the certificates used for the specified duration
nac_client_coa
object
1 property
nac_event_idp_username
string
If IDP is used, the username presented to the Identity Provider
timestamp
number
Epoch (seconds)
last_ssid
string
If Wireless authentication, the latest SSID the client was connected to
nac_event_nas_vendor
string
Vendor name of the NAS
nac_client_last_status
string
Latest Authentication status of the client. enum: denied, permitted, sessionstarted, sessionstopped
nac_event_nacrule_id
string
NAC Policy Rule ID, if matched
nac_auth_type
string
enum: cert, device-auth, eap-teap, eap-tls, eap-ttls, idp, mab, eap-peap
resp_attrs
array
List of Radius AVP returned by the Authentication Server
nac_client_ip
array
The known IP Addresses used by the client for the specified duration
last_nacrule_id
string
ID of the latest NAC Rule used to authenticate the client
response_events_nac_client_search
object
6 properties
device_type
string
enum: ap, gateway, switch
last_nacrule_name
string
Name of the latest NAC Rule used to authenticate the client
response_http401
object
1 property
nac_nas_vendor
array
Vendor name of the NAS for the specified duration
response_count
object
6 properties
6 required
response_client_nac_search
object
6 properties
last_username
string
If dot1x authentication, the username used during the latest authentication. Otherwise, the MAC address of the client
nac_nacrule_id
array
IDs of the NAC Rules used to authenticate the client for the specified duration
nac_device_mac
string
MAC Address of the device (AP, Switch) the client is connected to
nac_event_nacrule_matched
boolean
NAC Policy Rule Matched
nac_client_mac
string
Client MAC address
nac_event_username
string
username assigned to the client
random_mac
string
Whether the client is using randomized MAC Address or not
nac_cert_subject
array
When certificate based authentication is used, the Subject from the certificates used for the specified duration
edr_status
string
EDR Status of the NAC client. enum: sentinelonehealthy, sentineloneinfected, crowdstrikelow, crowdstrikemedium, crowdstrikehigh, crowdstrikecritical, crowdstri…
nac_cert_issuer
array
When certificate based authentication is used, the Issuer from the certificates used for the specified duration
edr_provider
string
enum: sentinelone, crowdstrike
nac_client_vlan
array
List of vlans that have been assigned to the client
last_client_ip
string
The last known IP Address for the client
response_client_nac_search_results
array
nac_client_event_usermac_labels
array
Labels derived from usermac entry
last_port_id
string
If Wired authentication, the latest Port-id the client was connected to
count_result
object
1 property
1 required
last_vlan
integer
Latest VLAN ID assigned to the client
nac_event_vlan
string
vlan that assigned to the client
last_nas_vendor
string
Vendor name of the NAS for the latest authentication
nac_coa_type
string
CoA type to send. enum: reauth, disconnect
site_nac_client_events_count_distinct
string
enum: ap, authtype, dryrunnacruleid, mac, nacruleid, nasvendor, ssid, type, username, vlan
response_http429
object
1 property
nac_event_ssid
string
SSIDs the client was connecting to
client_nac
object
46 properties
nac_ssid
array
SSIDs the client was connected to for the specified duration
nac_event_dryrun_nacrule_matched
boolean
true if dryrun rule present and matched with priority, false if not matched or not present
nac_event_port_id
string
Port ID where the NAC client event occurred
nac_client_event
object
28 properties
last_ap
string
Latest AP where the client is/was connected to
nac_client_coa_response
object
2 properties
response_http403
object
1 property
nac_port_id
array
Port-ids the client was connected to for the specified duration
site_nac_clients_count_distinct
string
enum: ap, authtype, devicemac, edrmanaged, edrprovider, edrstatus, family, hostname, idpid, mfg, mdmcompliance, mdmmanaged, mdmprovider, model, mxedgeid, nacru…
last_cert_issuer
string
When certificate based authentication is used, the Issuer from the latest certificate used
response_http404
object
1 property
nac_client_event_idp_role
array
response_http400
object
1 property
nac_access_type
string
Type of network access. enum: wireless, wired, vty
nac_client_username
array
List of usernames that have been assigned to the client
nac_event_idp_id
string
If IDP is used, the id of the IDP configuration used
last_cert_cn
string
When certificate based authentication is used, the CN from the latest certificate used
nac_cert_serial
array
When certificate based authentication is used, the Serial from the certificates used for the specified duration
nac_nacrule_name
array
Name of the NAC Rules used to authenticate the client for the specified duration
The full machine-readable OpenAPI contract behind this narrative.
Other APIs Juniper Mist AI publishes across the network.