cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
206
Views
0
Helpful
2
Replies

Port Security with ARP table

woxagheto29
Level 1
Level 1

Hello Guys,

I have a question and been unable to find the answer. Right now, we use Port security and stick the MACs to the ports. However, My organization is moving to the hoteling system where people would be moving around. Is there anyway I can have port security to point toward ARP table to see whether the MAC address is registered or not. Any advice is much appreciated.

Thank You

2 Replies 2

marce1000
VIP
VIP

 

  - Can't see how this could be done ; better is move forward to identity based authentication schemes , 

 M.



-- Each morning when I wake up and look into the mirror I always say ' Why am I so brilliant ? '
    When the mirror will then always repond to me with ' The only thing that exceeds your brilliance is your beauty! '

@woxagheto29 a NAC solution such as Cisco ISE would be the most suitable solution, where you can or the users register the device centrally in ISE and be authorised to access the network. The device MAC address could be used for authentication or you could pre-deploy certificates via AD GPO or allow the users to register for a certificate, which would be more secure than authentication based on the MAC, which can easily be spoofed.

Review Cisco Networking for a $25 gift card