cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
5593
Views
0
Helpful
4
Replies

Block DHCP by MAC address

tech
Level 1
Level 1

Is it possible to block DHCP requests to an IOS DHCP server (v12.3T) by using a MAC address access-list (700-799)? Where would the access-list be applied?

Thanks,

RJ

4 Replies 4

paddyxdoyle
Level 6
Level 6

Hi,

I've never really played around with MAC address access-lists, i have seen them configured though specifically for bridging mainframe protocols over a WAN.

One idea that springs to mind that could work is to create a DHCP reservation based on the MAC address with an IP that is not routable on your network.

Or you could look at configuring port security on your switches to specifically only allow access to your network from trusted hosts.

All the best

Paddy

Thanks for the reply. Unfortunately, I need some clients to make a request to a DHCP server on another segment after they have been denied by the local IOS DHCP server.

This is close but I cannot use it. This filters on Layer 2 protocol destination and source. I need to filter an OUI Layer 2 MAC as source to all Bootp packets. Besides, I am using a standard image on a 2950 and it does not have Vlan access maps.

Thanks,

RJ