cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
976
Views
1
Helpful
7
Replies

MAC based RA VPN

Dipak Masurkar
Level 1
Level 1

Hello Everyone,

Can anyone help me with mac based RA VPN access process in FTD which is managed by FMC.

 

7 Replies 7

For sure! Many members of this community can likely help you. What is your problem?

Dipak Masurkar
Level 1
Level 1

Hello Karsten,

My requirement is like i want to allow RA VPN to only whitelisted MAC address of source device whether it is laptop or desktop.

 

I would expect that you can achieve this with Dynamic Access Policies:

https://www.cisco.com/c/en/us/td/docs/security/secure-firewall/management-center/cluster/ftd_dap_usecases.html

But I think that a solution that works on certificates could be more beneficial to solve this problem. 

Dipak Masurkar
Level 1
Level 1

Hello MHM,

Thanks for guide.

But it is showing there is no mac based authentication on RA VPN.

Ruben Cocheno
Spotlight
Spotlight

@Dipak Masurkar 

It's possible to use Mac-address based authentication if you use AAA with a Radius system either Cisco ISE, or any other vendor (Windows NPS).

Tag me to follow up.
Please mark it as Helpful and/or Solution Accepted if that is the case. Thanks for making Engineering easy again.
Connect with me for more on Linkedin https://www.linkedin.com/in/rubencocheno/

Dipak Masurkar
Level 1
Level 1

Hello Ruben,

Thanks for reply, I got it now we will try with either AAA or NPS.

 

Thanks you