Cisco SA520-K9 Administration Guide - Page 120

Configuring IP/MAC Binding, Block and permit the rest, Permit and block the rest, Apply, Other options

Page 120 highlights

Firewall Configuration Using Other Tools to Prevent Attacks, Restrict Access, and Control Inbound Traffic 4 - Block and permit the rest: All addresses in the MAC Addresses table are blocked. All other addresses are allowed. - Permit and block the rest: All addresses in the MAC Addresses table are permitted. All other addresses are blocked. - Click Apply to save your settings. STEP 3 To add a MAC address to the table, click Add. Other options: Click the Edit button to edit an entry. To delete an entry, check the box and then click Delete. To select all entries, check the box in the first column of the table heading. After you click Add or Edit, the MAC Filtering Configuration window opens. STEP 4 Enter the MAC Address. STEP 5 Click Apply to save your settings. Configuring IP/MAC Binding IP/MAC Binding allows you to bind IP addresses to a MAC address and vice-versa. Some systems are configured with static addresses. To prevent the user from changing static IP addresses, the router needs to enable IP/MAC Binding. If the router sees packets with matching IP addresses but inconsistent MAC addresses or vice-versa, it will drop these packets. STEP 1 Click Firewall > MAC Filtering > IP/MAC Binding. The IP/MAC Binding window opens. All currently defined rules appear in the IP/MAC Binding table. STEP 2 To add a new IP/MAC rule, click Add. Other options: Click the Edit button to edit an entry. To delete an entry, check the box and then click Delete. To change the status of a rule, check the box and then click Enable or Disable. To select all entries, check the box in the first column of the table heading. Cisco SA500 Series Security Appliances Administration Guide 120

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240

Firewall Configuration
Using Other Tools to Prevent Attacks, Restrict Access, and Control Inbound Traffic
Cisco SA500 Series Security Appliances Administration Guide
120
4
-
Block and permit the rest:
All addresses in the MAC Addresses table
are blocked. All other addresses are allowed.
-
Permit and block the rest:
All addresses in the MAC Addresses table
are permitted. All other addresses are blocked.
-
Click
Apply
to save your settings.
STEP 3
To add a MAC address to the table, click
Add
.
Other options:
Click the
Edit
button to edit an entry. To delete an entry, check the
box and then click
Delete
. To select all entries, check the box in the first column of
the table heading.
After you click Add or Edit, the MAC Filtering Configuration window opens.
STEP 4
Enter the MAC Address.
STEP
5
Click
Apply
to save your settings.
Configuring IP/MAC Binding
IP/MAC Binding allows you to bind IP addresses to a MAC address and vice-versa.
Some systems are configured with static addresses. To prevent the user from
changing static IP addresses, the router needs to enable IP/MAC Binding. If the
router sees packets with matching IP addresses but inconsistent MAC addresses
or vice-versa, it will drop these packets.
STEP 1
Click
Firewall
> MAC Filtering > IP/MAC Binding
. The IP/MAC Binding window
opens.
All currently defined rules appear in the IP/MAC Binding table.
STEP 2
To add a new IP/MAC rule, click
Add
.
Other options:
Click the
Edit
button to edit an entry. To delete an entry, check the
box and then click
Delete
. To change the status of a rule, check the box and then
click
Enable
or
Disable
. To select all entries, check the box in the first column of
the table heading.