A
rogue AP is an unauthorized wireless access point — either an internal employee creating a backdoor or an attacker's evil twin AP to intercept traffic.
Wireless IDS (WIDS) detects rogue APs by monitoring for unauthorized SSIDs/BSSIDs. Regular wireless surveys detect rogue APs. 802.1X authentication prevents internal rogue APs from accessing the network.