cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
215
Views
0
Helpful
1
Replies

VPN Question

js358
Level 1
Level 1

Hello All:

Is there anyway to filter client VPN access through a 1721 router by client MAC address. We have a handful of users who require VPN access and would like to tighten it up a bit by allowing only specified MAC addresses. If this is possible, can someone point me to any How To's.

Thanks

1 Reply 1

n3tn0tw0rk
Level 1
Level 1

Question:

Could you just not cofnig an ACL on the inside interface blocking there IP's from using the ports VPN uses? I guess if that are DHCP then this would casue a problem.

I've never done it but according to this Cisco Doc (http://www.cisco.com/univercd/cc/td/doc/product/software/ssr90/rpc_r/21972.htm#xtocid161035)

you can filter on Ethernet MAC with access-lists 700-799

You'd have to do this on the inbound of the inside interface i'd supose.

As i said i've never done it or seen it done so let me know if it works or does not.