Click to See Complete Forum and Search --> : MAC filtering at the Firewall????


Sully
01-09-2003, 10:36 AM
Preface: I am aware of the ability to spoof both MAC and IP addresses....I am trying to block the other 99% of the neighborhood***

I have setup a neighborhood wireless network. I now have my access point plugged directly into a port on the router/stateful firewall. I have assigned static PRIVATE IPs to all neighbors.

Can someone PLEASE provide me with some advice on MAC filtering at the firewall???? I am attempting to stop connections at the firewall for computers (MAC addressess) that have not registered with me. I do not have the ability to do this at the Access Point itself...so I must do it at the router. Oh...I am NOT using a server, nor do I particullary want to.

This is my only requirement (I BEG FOR ASSISTANCE!!):
1. Have the ability to drop packets as they come into my router/stateful firewall on the LAN side, if they are not in my MAC listing.

As I stated above, I have assigned static IPs and have also obtained each and every MAC address that connects to the network. If I telnet into my router, I can do an ARP LIST and it will show the IP/MAC pairing. I should say this, my router is SNMP capable and I have set the community name and password. I just dont know what to do from here????

Thanks for any and all help!!
Sully

aguy
01-09-2003, 11:49 AM
The following is stating the obvious, so I probably don't fully understand your quest.

MAC filtering capability is typically built in to the firmware of the router. If this is the case with your router, there will be some interface SNMP or a web interface that will allow you to access this capability (although not always intuitively). For example, the Linksys wireless router I use at home has MAC address filtering (and more limited IP filtering) that allows me to do what you want.

Bottom line: you need to check with the manufacturer of your router, I think.

biksingh
02-28-2003, 07:06 PM
Try the Nomadix HSG between your LAN and the Router...