Mac address filtering on ATP/USG

it would be very useful to be able to create security policies based on mac address objects. In Zyxel firewall there is no possibility to create mac address objects like in other vendors firewall. Is this a feature you plan to implement on your firewalls as well?
1 votes

Active · Last Updated

Comments

  • dpipro
    dpipro Posts: 54  ZCNE Certified
    Hello @DiegoF

    as a workaround you can configure IP/MAC binding to specify a fixed IP to each MAC address.

    Best regards
    Best regards
  • DiegoF
    DiegoF Posts: 4
    Hello @dpipro
    thanks for the suggestion, for a small enviroment your workaround it's ok but i need this feature for deploying firewall in school with hundreds of student's device

    Best regards
  • PeterUK
    PeterUK Posts: 1,114  Guru Member
    Why not use a switch?
  • DiegoF
    DiegoF Posts: 4
    PeterUK said:
    Why not use a switch?
    the need is for wireless client, many hundreds
  • dpipro
    dpipro Posts: 54  ZCNE Certified
    Hello @DiegoF

    you can configure a dedicated wireless SSID for students with an associated VLAN in a different subnet. With this configuration you can isolate the students network from the LAN and you can add security policies for them. What you think?

    Best regards
  • PeterUK
    PeterUK Posts: 1,114  Guru Member
    DiegoF said:
    PeterUK said:
    Why not use a switch?
    the need is for wireless client, many hundreds
    That does not stop from using a switch for MAC filtering you can go from  ATP/USG  to switch to AP or you can get a AP with filtering.