<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Help!! configuration in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/help-configuration/m-p/2064441#M397789</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hello Omer,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In Normal routed mode ASA, there is no native way of mac filtering. If you want the client to access http/ftp/telnet traffic through MPLS, then you can use cut through proxy and give mac excemption for you specific PC..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If that solution in place, it will ask for an authentication if other PC's trying to access and the pc with mac excemption configred will bypass the authentication and can access&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the following link provide you information on the solution&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://hanlinag.blogspot.com/2011/10/how-to-block-out-going-traffic-by-mac.html"&gt;http://hanlinag.blogspot.com/2011/10/how-to-block-out-going-traffic-by-mac.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Harish.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 10 Oct 2012 07:05:26 GMT</pubDate>
    <dc:creator>Harish Balakrishnan</dc:creator>
    <dc:date>2012-10-10T07:05:26Z</dc:date>
    <item>
      <title>Help!! configuration</title>
      <link>https://community.cisco.com/t5/network-security/help-configuration/m-p/2064436#M397782</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;my current network layout is attached.&lt;/P&gt;&lt;P&gt;The service provider will be preparing an MPLS-VPN network as per our request.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The required scenario is:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Only one PC from the 10.50.10.0/24 subnet is required to connect to mpls network directly. Other PCs should remain the same.&lt;/P&gt;&lt;P&gt;Is that possible? if yes, what configuration that can be done?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Note: PCs of the 10.50.10.0/24 subnet got the ip addresses from dhcp server which managed by other department (same building), and they can cooperate.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please advise.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 00:06:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/help-configuration/m-p/2064436#M397782</guid>
      <dc:creator>omer_babiker</dc:creator>
      <dc:date>2019-03-12T00:06:57Z</dc:date>
    </item>
    <item>
      <title>Help!! configuration</title>
      <link>https://community.cisco.com/t5/network-security/help-configuration/m-p/2064437#M397784</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hello Omer,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You meant to say only 1 PC at a time or a specific defined PC but the IP address may change since it is DHCP &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards&lt;/P&gt;&lt;P&gt;Harish.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Oct 2012 06:38:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/help-configuration/m-p/2064437#M397784</guid>
      <dc:creator>Harish Balakrishnan</dc:creator>
      <dc:date>2012-10-10T06:38:05Z</dc:date>
    </item>
    <item>
      <title>Help!! configuration</title>
      <link>https://community.cisco.com/t5/network-security/help-configuration/m-p/2064438#M397785</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Harish,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It is specific defined PC but ip address may change.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Oct 2012 06:42:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/help-configuration/m-p/2064438#M397785</guid>
      <dc:creator>omer_babiker</dc:creator>
      <dc:date>2012-10-10T06:42:18Z</dc:date>
    </item>
    <item>
      <title>Help!! configuration</title>
      <link>https://community.cisco.com/t5/network-security/help-configuration/m-p/2064439#M397786</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hello Omer,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks for the info.. What type of firewall are you using and the OS version if it is Cisco&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards&lt;/P&gt;&lt;P&gt;Harish&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Oct 2012 06:44:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/help-configuration/m-p/2064439#M397786</guid>
      <dc:creator>Harish Balakrishnan</dc:creator>
      <dc:date>2012-10-10T06:44:09Z</dc:date>
    </item>
    <item>
      <title>Help!! configuration</title>
      <link>https://community.cisco.com/t5/network-security/help-configuration/m-p/2064440#M397788</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Harish,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It's ASA5510, and the version is 8.0 (4).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Oct 2012 06:48:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/help-configuration/m-p/2064440#M397788</guid>
      <dc:creator>omer_babiker</dc:creator>
      <dc:date>2012-10-10T06:48:20Z</dc:date>
    </item>
    <item>
      <title>Help!! configuration</title>
      <link>https://community.cisco.com/t5/network-security/help-configuration/m-p/2064441#M397789</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hello Omer,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In Normal routed mode ASA, there is no native way of mac filtering. If you want the client to access http/ftp/telnet traffic through MPLS, then you can use cut through proxy and give mac excemption for you specific PC..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If that solution in place, it will ask for an authentication if other PC's trying to access and the pc with mac excemption configred will bypass the authentication and can access&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the following link provide you information on the solution&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://hanlinag.blogspot.com/2011/10/how-to-block-out-going-traffic-by-mac.html"&gt;http://hanlinag.blogspot.com/2011/10/how-to-block-out-going-traffic-by-mac.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Harish.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Oct 2012 07:05:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/help-configuration/m-p/2064441#M397789</guid>
      <dc:creator>Harish Balakrishnan</dc:creator>
      <dc:date>2012-10-10T07:05:26Z</dc:date>
    </item>
    <item>
      <title>Help!! configuration</title>
      <link>https://community.cisco.com/t5/network-security/help-configuration/m-p/2064442#M397790</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Harish,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you so much for your help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;do you think it's possible to define static ip address for that specific PC?&lt;/P&gt;&lt;P&gt;If that possible, the traffic from that pc can easily be routed to go to mpls network. please correct me if I'm wrong.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Oct 2012 07:20:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/help-configuration/m-p/2064442#M397790</guid>
      <dc:creator>omer_babiker</dc:creator>
      <dc:date>2012-10-10T07:20:31Z</dc:date>
    </item>
    <item>
      <title>Help!! configuration</title>
      <link>https://community.cisco.com/t5/network-security/help-configuration/m-p/2064443#M397791</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hello Omer,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thant is the ideal solution,, give the static IP for that PC and exclude that IP in DHCP server..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Create ACL in ASA so that only that IP is permitted to MPLS network and deny complete subnet to MPLS network as second line and permit ip any any as the third line of the ACL&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards&lt;/P&gt;&lt;P&gt;Harish.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Oct 2012 07:28:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/help-configuration/m-p/2064443#M397791</guid>
      <dc:creator>Harish Balakrishnan</dc:creator>
      <dc:date>2012-10-10T07:28:39Z</dc:date>
    </item>
  </channel>
</rss>

