Page 1 of 1

mac address policy rule

Posted: 10 Dec 2015 08:53
by ydeschoe
Gents,

We have a duplicate ip address running at this moment and we would like to have the unknown host blocked so that he is not able to send any traffic anymore.

This can be done by the means of a policy

Is the bellow correct

policy condition source1 source_mac 00:9c:02:73:35:9d
policy action source1 disposition deny
qos apply

Re: mac address policy rule

Posted: 10 Dec 2015 10:57
by silvio
Hi,
the importants one you have forgotten - the rule:

policy condition source1 source_mac 00:9c:02:73:35:9d
policy action source1 disposition deny
policy rule deny-source1 condition source1 action source1
qos apply

regards
Silvio

Re: mac address policy rule

Posted: 10 Dec 2015 11:22
by devnull
I prefer the "rubber hose" - method.

identify the user, get a rubber hose and beat them till they promise to not doing it again ;-)