MAC Filtering on a Cisco 2960

Posted on 2014-08-14
Last Modified: 2014-08-14
I am trying to block internet access from a specific mac address on the network with our Cisco 2960.  Ideally I'd like to only block access to f0/2, as this is where the firewall (Cisco ASA 5505) is connected.  I have tried:

mac address-table static bc30.5ba5.4812 vlan 20 interface fastEthernet 0/2

This command unfortunately blocks all traffic to the unit.  Also tried:

mac access-list extended BlockInternet
 deny   host bc30.5ba5.4812 any
 deny   any host bc30.5ba5.4812
 permit any any

On the f0/2 interface i applied:

 mac access-group BlockInternet in

This doesn't seem to work either.

Question by:Railroad
    1 Comment

    Accepted Solution

    Well I gave up.  Switched to using an IP based ACL.  Not as clean, as it requires an reservation in DHCP, but on well.

    Featured Post

    Top 6 Sources for Identifying Threat Actor TTPs

    Understanding your enemy is essential. These six sources will help you identify the most popular threat actor tactics, techniques, and procedures (TTPs).

    Join & Write a Comment

    This tutorial will go through the steps required to write a script that will back up the configuration settings of a HP-ProCurve switch. You will need to get the following things to follow this tutorial: Telnet Scripting Tool e.g. TST10.exe …
    I eventually solved a perplexing problem setting up telnet for a new switch.  I installed a new Cisco WS-03560X-24P switch connected to an existing Cisco 4506 running a WS-X4013-10GE Sup II-Plus. After configuring vlans and trunking,  I could no…
    Need more eyes on your posted question? Go ahead and follow the quick steps in this video to learn how to Request Attention to your question. *Log into your Experts Exchange account *Find the question you want to Request Attention for *Go to the e…
    Sending a Secure fax is easy with eFax Corporate ( First, Just open a new email message.  In the To field, type your recipient's fax number You can even send a secure international fax — just include t…

    755 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    22 Experts available now in Live!

    Get 1:1 Help Now