cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
213
Views
0
Helpful
1
Replies

VPN Question

js358
Level 1
Level 1

Hello All:

Is there anyway to filter client VPN access through a 1721 router by client MAC address. We have a handful of users who require VPN access and would like to tighten it up a bit by allowing only specified MAC addresses. If this is possible, can someone point me to any How To's.

Thanks

1 Reply 1

n3tn0tw0rk
Level 1
Level 1

Question:

Could you just not cofnig an ACL on the inside interface blocking there IP's from using the ports VPN uses? I guess if that are DHCP then this would casue a problem.

I've never done it but according to this Cisco Doc (http://www.cisco.com/univercd/cc/td/doc/product/software/ssr90/rpc_r/21972.htm#xtocid161035)

you can filter on Ethernet MAC with access-lists 700-799

You'd have to do this on the inbound of the inside interface i'd supose.

As i said i've never done it or seen it done so let me know if it works or does not.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: