Cisco asa-5505 port security

Unanswered Question
Jan 12th, 2010
User Badges:

Sorry, if this request is already answered. I tried searching with no luck yet for a solution.


I am looking to hardcode a desktop mac address to a specific port on the asa-5505 so that if someone tries to use a different mac address it will violate and shutdown the port. just like on the cisco switches.


Any assistance is greatly appreciated.


Jason

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
JORGE RODRIGUEZ Tue, 01/12/2010 - 09:31
User Badges:
  • Green, 3000 points or more

Jason,


As far as I know port security is not supported  in the intergrated switch the asa5505 have.  The least you can do for that requirement  is to use an external switch as your inside device  that supports port security.


Rgds

peelpolice Tue, 01/12/2010 - 09:38
User Badges:

Thanks... I thought so because I don't see the commands... figured there may have been something else I could do... so I will investigate security for the device for use in an unsecure location, or find a way to prevent someone pulling the client cable and using it directly; as I am not currently using NAC so perhaps that is the key. will have to focus on that.


Thanks again for the confirmation.


Jason

Kent Heide Tue, 01/12/2010 - 23:29
User Badges:

I guess the closest you will come is to use a mac-list.

Actions

This Discussion