Question on ACL

Discussion in 'Networks' started by Delgee, Sep 20, 2007.

  1. Delgee

    Delgee Bit Poster

    11
    0
    24
    A simple question on ACL.
    Can i configure an acl or extended acl to deny tcp packets from a host based on that host's MAC ADDRESS instead of ip address?
    Because i tried doing that and it seems i can't configure acl to deny based on mac.
    The reason is our network uses DHCP and i want to block a pc's internet.
    Thanks in advance for all replies.
     
    Certifications: CCNA
    WIP: CCNA Voice
  2. BosonMichael
    Honorary Member Highly Decorated Member Award 500 Likes Award

    BosonMichael Yottabyte Poster

    19,183
    500
    414
    An ACL with a range from 700-799 can be used to filter on MAC address: link
     
    Certifications: CISSP, MCSE+I, MCSE: Security, MCSE: Messaging, MCDST, MCDBA, MCTS, OCP, CCNP, CCDP, CCNA Security, CCNA Voice, CNE, SCSA, Security+, Linux+, Server+, Network+, A+
    WIP: Just about everything!
  3. r.h.lee

    r.h.lee Gigabyte Poster

    1,011
    52
    105
    Delgee,

    Do you have any managed switches that the host connects to?
     
    Certifications: MCSE, MCP+I, MCP, CCNA, A+
    WIP: CCDA
  4. Delgee

    Delgee Bit Poster

    11
    0
    24
    to BosonMichael: Thanks, i'll try that.
    to r.h.lee: I don't. We have WAP in our dept and it connects directly to our router.
     
    Certifications: CCNA
    WIP: CCNA Voice

Share This Page

Loading...
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.