cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
650
Views
0
Helpful
5
Replies

MAC based authentication for Wired Users

acharyr123
Level 3
Level 3

Hi!!

I want to have the quarantine type facility in my network.

I do have ACS, 2960, 4500 & 6500 switches etc in my network.

I want any user tries to login to he network has to authenticate via AMC address of the nic card.

The end users mac will be there in the ACS. If he tries to login ACS will authentication & assign him an IP from the DHCP pool from the DHCP server. But if his/her MAC is not there in the ACS, then he will be allocated with a different IP from the dhcp pool created into the switch. In this IP pool only internet access will be available rest will be blocked. This i can achieve by VACL.

Can someone help me to understand whether it will work or not!!!!

5 Replies 5

can i have a sample config for the same!!

Thanks for replying....

please suggest me whether the kind of solution i am looking for is possible or not!!

Should be. With MAC-Auth Bypass, you can authenticate via MAC address check.

This implementation guide may help:

<http://www.cisco.com/univercd/cc/td/doc/solution/macauthb.pdf>

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: