How to block Unknown Mac Addresses

Author
lmumbua
New Member
  • Total Posts : 2
  • Scores: 0
  • Reward points: 0
  • Joined: 2019/09/09 05:38:40
  • Status: offline
2019/09/09 06:04:38 (permalink) 6.0
0

How to block Unknown Mac Addresses

Hello,
 
I have a Fortigate 90D. I have been asked by the management to setup policies to block internet access to specific users.
I successfully managed to do this,however, I recently discovered that the users are bypassing the IPv4 Policy by Mac spoofing.
Kindly assist on this.
#1

4 Replies Related Threads

    orani
    Silver Member
    • Total Posts : 90
    • Scores: 1
    • Reward points: 0
    • Joined: 2019/07/11 12:54:18
    • Location: Athens
    • Status: online
    Re: How to block Unknown Mac Addresses 2019/09/09 06:39:10 (permalink)
    0
    You can create devices on your fortigate with mac's that you want to allow traffic and then create a policy and set the source with attributes all and the mac's you want to allow.
    #2
    lmumbua
    New Member
    • Total Posts : 2
    • Scores: 0
    • Reward points: 0
    • Joined: 2019/09/09 05:38:40
    • Status: offline
    Re: How to block Unknown Mac Addresses 2019/09/09 07:15:50 (permalink)
    0
    I have already done this. Although some of the users keep changing the Mac address of their devices.
    Therefore the policy will not be useful once they change the MAC address
    #3
    OneOfUs
    Bronze Member
    • Total Posts : 30
    • Scores: 6
    • Reward points: 0
    • Joined: 2019/07/16 06:32:59
    • Status: offline
    Re: How to block Unknown Mac Addresses 2019/09/09 08:08:28 (permalink)
    0
    You may need to do things outside the realm of the firewall like:
    • 802.1x authentication on the wired/wireless network
    • DHCP reservation / filter (Allow / Deny)
    • Sticky MAC on the switch ports
    • HR Policy: termination of offending employees
    #4
    orani
    Silver Member
    • Total Posts : 90
    • Scores: 1
    • Reward points: 0
    • Joined: 2019/07/11 12:54:18
    • Location: Athens
    • Status: online
    Re: How to block Unknown Mac Addresses 2019/09/09 08:18:55 (permalink)
    0
    Also you can try block through your antivirus programs thatdo mac spoofing
    #5
    Jump to:
    © 2019 APG vNext Commercial Version 5.5