cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1190
Views
0
Helpful
5
Replies

Cisco FMC/FTD 7.x -> Can you build rules using mac addresses?

mik31
Level 1
Level 1
 
We recently updated FMC and our FTD's to code 7.x.
 

Are we able to build rules using MAC addresses yet?

5 Replies 5

balaji.bandi
Hall of Fame
Hall of Fame
Are we able to build rules using MAC addresses yet?

have upgrade to latest due to this ?

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Sorry? We upgraded for other reasons.

 

This is more of a question, is it possible now?

Are we able to build rules using MAC addresses yet?

if you looking to Build ACP rules using MAC address - unfortunatly never done myself ?

I never heard that, how FW know the MAC address of end device ?

 

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Marvin Rhoads
Hall of Fame
Hall of Fame

No. You need to use Layer 3 and above in your rules (protocol, IP address, etc.).

Most often the client is not on the same subnet as the firewall's interface so the MAC address would not be known in that case.

If you are looking to create access rules based on MAC then best to look into ISE or similar product

--
Please remember to select a correct answer and rate helpful posts
Review Cisco Networking for a $25 gift card